svchost.com ,se ukazuje a blokuje vše
Napsal: 01 říj 2015 18:21
zdravim,byl bych rád za radu,co stim -děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:30-09-2015
Ran by jemin (administrator) on JEMIN-PC (01-10-2015 19:16:25)
Running from C:\Users\jemin\Desktop
Loaded Profiles: jemin (Available Profiles: jemin)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReader\10.00\Licensing\Home\NetworkLicenseServer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(SlimWare Utilities, Inc.) C:\Program Files\SlimService\SlimServiceFactory.exe
(PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(SlimWare Utilities, Inc.) C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~1.EXE
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~2.EXE
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~1.EXE
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~2.EXE
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~1.EXE
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~2.EXE
() C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_64.exe
(Microsoft Corporation) C:\Windows\System32\pcaui.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-27] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2000-01-01] (Logitech Inc.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13876952 2000-01-01] (Realtek Semiconductor)
HKLM\...\Run: [3bd13f8af846694af836aa5a2c763ceb] => "C:\ProgramData\system32.exe" ..
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [334320 2015-10-01] ()
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2015-10-01] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [Sv�tky a v�ro**�<*>] => C:\Program Files (x86)\OKsoftware\Svátky a výročí\Vyroci.exe [ ] () <===== ATTENTION (Value Name with invalid characters)
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [194608 2015-10-01] ()
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [HP Deskjet 3520 series (NET)] => C:\Program Files\HP\HP Deskjet 3520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3169312 2015-10-01] ()
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53736048 2015-08-07] (Skype Technologies S.A.)
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [SlimCleaner Plus] => C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe [26169624 2015-09-08] (SlimWare Utilities, Inc.)
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [eeghnaujgi] => wscript.exe //B "C:\ProgramData\eeghnaujgi.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [awmboplwtl] => wscript.exe //B "C:\ProgramData\awmboplwtl.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmpF6E6] => wscript.exe //B "C:\Users\jemin\AppData\Roaming\tmpF6E6.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp3C12] => wscript.exe //B "C:\Users\jemin\AppData\Roaming\tmp3C12.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp5666] => wscript.exe //B "C:\Users\jemin\AppData\Roaming\tmp5666.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp2359] => wscript.exe //B "C:\Users\jemin\tmp2359.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp401D] => wscript.exe //B "C:\Users\jemin\tmp401D.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp78AB] => wscript.exe //B "C:\Users\jemin\tmp78AB.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp92FF] => wscript.exe //B "C:\Users\jemin\tmp92FF.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmpB57B] => wscript.exe //B "C:\Users\jemin\tmpB57B.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmpD24F] => wscript.exe //B "C:\Users\jemin\tmpD24F.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [78da0422172bb1c4bf8f5b473fa4639a] => "C:\Users\jemin\AppData\Local\Temp\dorogomyi.exe" .. <===== ATTENTION
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [CO] => wscript.exe //B "C:\Users\jemin\AppData\Local\Temp\CO.vbs" <===== ATTENTION
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\SysWOW64\CUCKOO~1.SCR [842752 2008-03-28] (3Planesoft)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk [2014-03-22]
ShortcutTarget: GamePark klient 2.lnk -> C:\Program Files\GamePark2\gpcl.exe (Allstar Group, s.r.o.)
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\3107e2cc85325510acbf81112a41804e.exe [2015-10-01] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\3bd13f8af846694af836aa5a2c763ceb.exe [2015-09-28] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\78da0422172bb1c4bf8f5b473fa4639a.exe [2015-09-30] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\awmboplwtl.vbs [2015-09-27] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CO.vbs [2015-09-28] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\dorogomyi.exe [2015-09-30] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\eeghnaujgi.vbs [2015-09-27] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP Deskjet 3520 series (Síť).lnk [2014-05-21]
ShortcutTarget: Sledovat výstrahy inkoustu - HP Deskjet 3520 series (Síť).lnk -> C:\Program Files\HP\HP Deskjet 3520 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Vesmír na dlani.lnk [2014-03-28]
ShortcutTarget: Vesmír na dlani.lnk -> C:\Program Files (x86)\Noční obloha\vesmir.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{D3772582-8A4C-49F2-A2DC-A95D5181C2B6}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> {1A366EDE-D70D-49EE-A453-A757CE160C68} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> {5630B555-ECD5-4CB2-89C5-14866469CFC3} URL = hxxp://search.centrum.cz/index.php?utm_source=ch-browser&utm_medium=IE-9&utm_content=searchbox&channel_id=custom-browser,IE-9&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-30] (Oracle Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-09-24] (Google Inc.)
BHO: Lišta Centrum.cz - pomocný objekt -> {C91BA35D-6516-489F-A203-2992ED9A4132} -> C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho64.dll [2013-01-23] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-30] (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-24] (Google Inc.)
BHO-x32: Lišta Centrum.cz - pomocný objekt -> {C91BA35D-6516-489F-A203-2992ED9A4132} -> C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho32.dll [2013-01-23] ()
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation.)
Toolbar: HKLM - Lišta Centrum.cz - {5D9C17C6-093D-43E5-BF3D-4A13D162AB74} - C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho64.dll [2013-01-23] ()
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-09-24] (Google Inc.)
Toolbar: HKLM-x32 - Lišta Centrum.cz - {5D9C17C6-093D-43E5-BF3D-4A13D162AB74} - C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho32.dll [2013-01-23] ()
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-24] (Google Inc.)
Toolbar: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-09-24] (Google Inc.)
DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-05-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-05-30] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\jemin\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (RocketLife, LLP)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3158200304-2993081581-1989350980-1000: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\jemin\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (RocketLife, LLP)
FF Plugin HKU\S-1-5-21-3158200304-2993081581-1989350980-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\jemin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-09-05] (Unity Technologies ApS)
Chrome:
=======
CHR Profile: C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-12-20]
CHR Extension: (Dokumenty Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-23]
CHR Extension: (Disk Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-23]
CHR Extension: (YouTube) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-23]
CHR Extension: (Vyhledávání Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-23]
CHR Extension: (Tabulky Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-12-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-23]
CHR Extension: (Gmail) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-23]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.Home.10.0; C:\Program Files (x86)\Common Files\ABBYY\FineReader\10.00\Licensing\Home\NetworkLicenseServer.exe [814344 2010-07-21] (ABBYY)
S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
S2 BBSvc; C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BBSvc.exe [234264 2015-09-30] () [File not signed]
S3 BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.exe [281880 2015-10-01] () [File not signed]
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [178960 2015-09-30] () [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation)
S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [185672 2015-09-30] () [File not signed]
S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [185672 2015-09-30] () [File not signed]
S3 gusvc; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [235504 2015-09-30] () [File not signed]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319080 2000-01-01] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [252376 2015-10-01] () [File not signed]
S2 LMS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [473560 2015-10-01] () [File not signed]
S3 Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [106328 2015-09-30] () [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
S3 NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [815616 2015-09-30] () [File not signed]
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [313392 2015-10-01] () [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-27] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation)
S3 odserv; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [482168 2015-09-30] () [File not signed]
S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [186656 2015-09-30] () [File not signed]
S2 SkypeUpdate; C:\Program Files (x86)\Skype\Updater\Updater.exe [368768 2015-09-30] () [File not signed]
R2 SlimService; C:\Program Files\SlimService\SlimServiceFactory.exe [245016 2015-09-08] (SlimWare Utilities, Inc.)
R2 ssinstall; C:\Windows\SysWOW64\ssins.exe [2324216 2015-05-13] (PS Media s.r.o.)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [32768 2010-04-29] (Google Inc)
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21584 2013-02-19] ()
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-05-30] (AVG Technologies)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-06-28] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-08-07] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16056 2015-10-01] (SlimWare Utilities, Inc.)
S1 UsbCharger; C:\Windows\System32\DRIVERS\UsbCharger.sys [21584 2013-05-06] ()
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S1 MpKsl561a97af; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{29CE705E-E86C-4B09-9E9E-6B47C8595B0B}\MpKsl561a97af.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-01 19:16 - 2015-10-01 19:16 - 00025892 _____ C:\Users\jemin\Desktop\FRST.txt
2015-10-01 19:15 - 2015-10-01 19:16 - 02192384 _____ (Farbar) C:\Users\jemin\Desktop\FRST64.exe
2015-10-01 19:15 - 2015-10-01 19:16 - 00000000 ____D C:\FRST
2015-10-01 19:10 - 2015-10-01 19:10 - 00001011 _____ C:\Users\jemin\Desktop\CCleaner.lnk
2015-10-01 19:10 - 2015-10-01 19:10 - 00000000 ____D C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-10-01 19:08 - 2015-10-01 19:08 - 00000540 _____ C:\Windows\PFRO.log
2015-10-01 19:08 - 2015-09-27 20:18 - 00014278 _____ C:\ProgramData\awmboplwtl.vbs
2015-10-01 19:08 - 2015-09-27 20:03 - 00014278 _____ C:\ProgramData\eeghnaujgi.vbs
2015-10-01 19:07 - 2015-10-01 19:07 - 00037031 _____ C:\ComboFix.txt
2015-10-01 19:06 - 2015-10-01 19:16 - 00000073 _____ C:\Windows\directx.sys
2015-10-01 18:51 - 2015-10-01 18:51 - 00350800 _____ C:\Windows\Minidump\100115-6474-01.dmp
2015-10-01 18:28 - 2015-10-01 18:51 - 01712128 _____ C:\Users\jemin\Desktop\adwcleaner_5.009.exe
2015-10-01 18:26 - 2015-10-01 19:08 - 00041472 _____ C:\Windows\svchost.com
2015-10-01 17:50 - 2015-10-01 17:50 - 00003216 _____ C:\Windows\System32\Tasks\{FB6429D6-6C14-4633-A83B-164E822229EA}
2015-09-30 17:40 - 2015-09-30 17:40 - 00003480 _____ C:\Windows\System32\Tasks\savhost
2015-09-29 21:07 - 2015-09-29 21:07 - 00014273 _____ C:\Users\jemin\tmpD24F.tmp.vbs
2015-09-29 21:07 - 2015-09-29 21:07 - 00014273 _____ C:\Users\jemin\tmpB57B.tmp.vbs
2015-09-29 15:27 - 2015-09-29 15:27 - 00014273 _____ C:\Users\jemin\tmp92FF.tmp.vbs
2015-09-29 15:27 - 2015-09-29 15:27 - 00014273 _____ C:\Users\jemin\tmp78AB.tmp.vbs
2015-09-29 15:25 - 2015-09-29 15:25 - 00014273 _____ C:\Users\jemin\tmp401D.tmp.vbs
2015-09-29 15:25 - 2015-09-29 15:25 - 00014273 _____ C:\Users\jemin\tmp2359.tmp.vbs
2015-09-28 16:30 - 2015-09-28 16:30 - 00000000 ____D C:\Users\jemin\Documents\KONAMI
2015-09-28 16:30 - 2015-09-28 16:30 - 00000000 ____D C:\ProgramData\KONAMI
2015-09-27 21:01 - 2015-10-01 18:26 - 00000000 ____D C:\Users\jemin\Documents\MSDCSC
2015-09-27 19:56 - 2015-09-29 20:25 - 00000000 ____D C:\ProgramData\Isolated Storage
2015-09-24 18:04 - 2015-09-24 18:04 - 00000615 _____ C:\Users\Public\Desktop\Pro Evolution Soccer 2016.lnk
2015-09-24 18:04 - 2015-09-24 18:04 - 00000615 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pro Evolution Soccer 2016.lnk
2015-09-24 09:04 - 2015-09-13 23:50 - 00574072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-09-24 09:03 - 2015-09-14 02:29 - 42840368 _____ C:\Windows\system32\nvcompiler.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 37819000 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 22525560 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 18543736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 16637528 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 14936264 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 13660648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 12185344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 11096696 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-09-24 09:03 - 2015-09-14 02:29 - 02940024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 02627192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01898288 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435598.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01558832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435598.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01105976 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01074808 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01064056 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00986232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00944760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00943712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00512904 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00421544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00408184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00364152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00176904 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00155792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-09-24 08:01 - 2015-09-24 08:01 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-09-24 08:00 - 2015-09-24 08:00 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-09-24 08:00 - 2015-09-24 08:00 - 00000000 ____D C:\Program Files\Realtek
2015-09-24 08:00 - 2000-01-01 02:00 - 72113152 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2015-09-24 08:00 - 2000-01-01 02:00 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 07087448 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 04467928 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-09-24 08:00 - 2000-01-01 02:00 - 03218800 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 02907864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 02846424 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 02702040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-09-24 08:00 - 2000-01-01 02:00 - 02014958 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-09-24 08:00 - 2000-01-01 02:00 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01739992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01316056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00631000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00168816 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00109848 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00096568 _____ C:\Windows\system32\audioLibVc.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-09-24 07:54 - 2015-09-24 07:54 - 00000144 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-09-24 07:14 - 2015-09-24 07:14 - 00019486 _____ C:\Windows\system32\results.xml
2015-09-24 07:14 - 2015-09-24 07:14 - 00000451 _____ C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-09-23 18:58 - 2015-10-01 19:07 - 00000366 _____ C:\Windows\Tasks\SlimCleaner Plus (Scheduled Scan - jemin).job
2015-09-23 18:58 - 2015-09-23 18:58 - 00003024 _____ C:\Windows\System32\Tasks\SlimCleaner Plus (Scheduled Scan - jemin)
2015-09-23 18:12 - 2015-09-23 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-09-23 18:12 - 2015-09-23 18:12 - 00000000 ____D C:\Program Files\Logitech
2015-09-23 18:12 - 2015-09-23 18:12 - 00000000 ____D C:\Program Files\Common Files\Logitech
2015-09-23 18:10 - 2015-09-23 18:10 - 00000704 _____ C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk
2015-09-23 18:09 - 2000-01-01 02:00 - 22905344 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 17837568 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 12218376 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 11793480 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 10948400 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 10474552 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 08593920 _____ (Intel Corporation) C:\Windows\system32\ig75icd64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 06587904 _____ (Intel Corporation) C:\Windows\SysWOW64\ig75icd32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 04587608 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 04362344 _____ (Intel Corporation) C:\Windows\system32\Gfxv4_0.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 04358760 _____ (Intel Corporation) C:\Windows\system32\Gfxv2_0.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 03788728 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2015-09-23 18:09 - 2000-01-01 02:00 - 03628160 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 02027008 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01985536 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01784320 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01758208 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01137120 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01133000 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00959592 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00734720 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00670208 _____ (Intel Corporation) C:\Windows\system32\igfxDH.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00545896 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00545384 _____ (Intel Corporation) C:\Windows\system32\DPTopologyAppv2_0.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00530536 _____ (Intel Corporation) C:\Windows\system32\igfxEM.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00454760 _____ (Intel Corporation) C:\Windows\system32\igdmd64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00454416 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2015-09-23 18:09 - 2000-01-01 02:00 - 00399976 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00399464 _____ (Intel Corporation) C:\Windows\system32\CustomModeAppv2_0.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00384104 _____ (Intel Corporation) C:\Windows\system32\igfxTray.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00384000 _____ (Intel Corporation) C:\Windows\system32\igfxOSP.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00376832 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00366680 _____ (Intel Corporation) C:\Windows\SysWOW64\igdmd32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00365568 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00320512 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00319080 _____ (Intel Corporation) C:\Windows\system32\igfxCUIService.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00286720 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00280680 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00276480 _____ (Intel Corporation) C:\Windows\system32\igfxDI.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00255488 _____ C:\Windows\system32\igfxCPL.cpl
2015-09-23 18:09 - 2000-01-01 02:00 - 00252416 _____ (Intel Corporation) C:\Windows\system32\igfxLHM.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00247400 _____ (Intel Corporation) C:\Windows\system32\igfxHK.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00224256 _____ C:\Windows\system32\igdde64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00220160 _____ (Intel Corporation) C:\Windows\system32\igfxDTCM.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00218848 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00194664 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00188496 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00187844 _____ C:\Windows\system32\resTHA.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00185856 _____ C:\Windows\SysWOW64\igdde32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00184832 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00183840 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00183296 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v4226.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00180644 _____ C:\Windows\system32\resELL.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00176500 _____ C:\Windows\system32\resRUS.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00162356 _____ C:\Windows\system32\resARA.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00162304 _____ C:\Windows\system32\igdail64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00161812 _____ C:\Windows\system32\resHEB.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00161764 _____ C:\Windows\system32\resJPN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00159096 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00157172 _____ C:\Windows\system32\resFRA.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00157156 _____ C:\Windows\system32\resHUN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155460 _____ C:\Windows\system32\resKOR.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155364 _____ C:\Windows\system32\resITA.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155364 _____ C:\Windows\system32\resDEU.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155204 _____ C:\Windows\system32\resROM.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155136 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00155092 _____ C:\Windows\system32\resESN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00154728 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00154660 _____ C:\Windows\system32\resPLK.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00154516 _____ C:\Windows\system32\resSKY.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00154324 _____ C:\Windows\system32\resNLD.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153764 _____ C:\Windows\system32\resPTB.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153620 _____ C:\Windows\system32\resTRK.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153604 _____ C:\Windows\system32\resCSY.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153460 _____ C:\Windows\system32\resPTG.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153060 _____ C:\Windows\system32\resFIN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00152612 _____ C:\Windows\system32\resHRV.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00152164 _____ C:\Windows\system32\resSVE.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00152004 _____ C:\Windows\system32\resSLV.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00151060 _____ C:\Windows\system32\resNOR.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00150548 _____ C:\Windows\system32\resDAN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00149236 _____ C:\Windows\system32\resENU.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00147460 _____ C:\Windows\system32\resCHT.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00146628 _____ C:\Windows\system32\resCHS.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00143872 _____ C:\Windows\SysWOW64\igdail32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00086528 _____ C:\Windows\system32\igfxCUIServicePS.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00069632 _____ ( ) C:\Windows\system32\igfxDHLibv2_0.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00059392 _____ ( ) C:\Windows\system32\igfxDHLib.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00031448 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00030720 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00010752 _____ ( ) C:\Windows\system32\igfxDILib.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00010240 _____ ( ) C:\Windows\system32\igfxEMLibv2_0.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00010240 _____ ( ) C:\Windows\system32\igfxEMLib.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00010240 _____ ( ) C:\Windows\system32\igfxDILibv2_0.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00005120 _____ ( ) C:\Windows\system32\igfxLHMLibv2_0.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00005120 _____ ( ) C:\Windows\system32\igfxLHMLib.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00002564 _____ C:\Windows\system32\iglhxs64.vp
2015-09-23 18:08 - 2015-09-23 18:08 - 00000000 ____D C:\ProgramData\SlimWare Utilities, Inc
2015-09-23 18:07 - 2015-09-23 18:07 - 00002465 _____ C:\Users\Public\Desktop\SlimCleaner Plus.lnk
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\Users\jemin\AppData\Local\Downloaded Installers
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\ProgramData\SlimWare Utilities Inc
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SlimCleaner Plus
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\Program Files\SlimService
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\Program Files\SlimCleaner Plus
2015-09-23 18:06 - 2015-09-30 18:02 - 01023064 _____ C:\Users\jemin\Desktop\SlimDrivers-setup.exe
2015-09-23 18:05 - 2015-10-01 19:08 - 00016056 _____ (SlimWare Utilities, Inc.) C:\Windows\system32\Drivers\SWDUMon.sys
2015-09-23 18:05 - 2015-10-01 19:08 - 00002836 _____ C:\Windows\System32\Tasks\SlimDrivers Startup
2015-09-23 18:05 - 2015-10-01 19:08 - 00000410 _____ C:\Windows\Tasks\SlimDrivers Startup.job
2015-09-23 18:05 - 2015-09-23 18:58 - 00000000 ____D C:\Users\jemin\AppData\Local\SlimWare Utilities Inc
2015-09-23 18:05 - 2015-09-23 18:07 - 00002483 _____ C:\Users\Public\Desktop\SlimDrivers.lnk
2015-09-23 17:37 - 2015-09-23 17:37 - 00002566 _____ C:\Windows\diagwrn.xml
2015-09-23 17:37 - 2015-09-23 17:37 - 00001908 _____ C:\Windows\diagerr.xml
2015-09-22 16:59 - 2015-09-22 16:59 - 00000147 _____ C:\Users\jemin\Desktop\Nový textový dokument.txt
2015-09-22 16:10 - 2015-09-22 16:10 - 00000000 ____D C:\Users\jemin\Desktop\kaja
2015-09-22 16:07 - 2015-09-22 16:07 - 00000000 ____D C:\Users\jemin\Documents\Electronic Arts
2015-09-22 15:47 - 2015-09-22 15:47 - 00001307 _____ C:\Users\jemin\Desktop\The Sims 4 Deluxe Edition.lnk
2015-09-22 15:47 - 2015-09-22 15:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GMT-MAX.ORG
2015-09-21 16:14 - 2015-07-15 01:35 - 00000000 ____D C:\Users\jemin\Desktop\3DMGAME-The.Sims.4.Crack.Only-3DM
2015-09-20 01:05 - 2015-09-30 18:02 - 06562656 _____ C:\Users\jemin\Downloads\FileZilla_3.14.0_win64-setup.exe
2015-09-15 13:46 - 2015-09-24 08:29 - 00000000 ____D C:\Users\jemin\Desktop\MalwareBytes.Anti-Malware.Premium.v2.1.6.1022.Incl.Keygen-AMPED
2015-09-14 12:26 - 2015-09-14 12:26 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-09-14 12:26 - 2015-09-14 12:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-01 19:15 - 2009-07-14 06:45 - 00020192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-10-01 19:15 - 2009-07-14 06:45 - 00020192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-10-01 19:14 - 2009-07-26 20:41 - 00669904 _____ C:\Windows\system32\perfh005.dat
2015-10-01 19:14 - 2009-07-26 20:41 - 00142062 _____ C:\Windows\system32\perfc005.dat
2015-10-01 19:14 - 2009-07-14 07:13 - 01587976 _____ C:\Windows\system32\PerfStringBackup.INI
2015-10-01 19:11 - 2014-03-18 17:11 - 01288938 _____ C:\Windows\WindowsUpdate.log
2015-10-01 19:10 - 2014-11-16 09:32 - 00000000 ____D C:\Program Files (x86)\CCleaner
2015-10-01 19:09 - 2014-03-18 17:15 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-01 19:08 - 2015-08-30 11:23 - 00005451 _____ C:\Windows\setupact.log
2015-10-01 19:08 - 2015-05-13 16:20 - 00000000 _____ C:\Windows\SysWOW64\sinstall.log
2015-10-01 19:08 - 2014-03-20 12:12 - 00000000 ____D C:\ProgramData\NVIDIA
2015-10-01 19:08 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-10-01 19:07 - 2015-08-09 06:36 - 00000000 ____D C:\Qoobox
2015-10-01 19:06 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2015-10-01 19:00 - 2014-06-27 11:32 - 00000000 ____D C:\Users\jemin\Documents\antiviry
2015-10-01 18:51 - 2015-08-31 20:03 - 704750146 _____ C:\Windows\MEMORY.DMP
2015-10-01 18:51 - 2015-06-24 16:08 - 00000402 _____ C:\Windows\Tasks\HP Photo Creations Communicator.job
2015-10-01 18:51 - 2014-04-11 19:06 - 00000000 ____D C:\Windows\Minidump
2015-10-01 18:43 - 2015-04-16 12:58 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-10-01 18:40 - 2014-03-18 17:15 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-10-01 18:28 - 2014-05-10 17:37 - 00000000 ____D C:\AdwCleaner
2015-10-01 18:27 - 2014-03-20 16:53 - 00000000 ____D C:\Users\jemin\AppData\Roaming\Skype
2015-10-01 18:27 - 2014-03-20 15:14 - 00003138 _____ C:\Windows\System32\Tasks\FRAPS
2015-10-01 18:27 - 2014-03-20 15:14 - 00000000 ____D C:\Fraps
2015-10-01 18:26 - 2014-03-18 17:12 - 00000000 ____D C:\Users\jemin
2015-10-01 18:25 - 2014-03-20 16:53 - 00000000 ____D C:\ProgramData\Skype
2015-10-01 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Globalization
2015-10-01 17:51 - 2014-05-11 07:47 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-10-01 17:49 - 2014-03-20 15:30 - 00000000 ____D C:\Users\jemin\AppData\Local\CrashDumps
2015-10-01 17:38 - 2014-05-08 14:35 - 00008776 _____ C:\Windows\SysWOW64\Cuckoo Clock.log
2015-10-01 15:50 - 2014-03-23 16:59 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{6E8F5136-D671-44DD-8634-E280556768FA}
2015-09-30 18:02 - 2015-07-18 14:25 - 02614864 _____ C:\Users\jemin\Documents\TrueCrypt-7.2.exe
2015-09-30 18:02 - 2015-05-10 07:15 - 06560744 _____ C:\Users\jemin\Documents\Setup_FreeConverter.exe
2015-09-30 18:02 - 2015-03-30 17:01 - 01618984 _____ C:\Users\jemin\Documents\cpu-z_1.71-setup-en.exe
2015-09-30 17:17 - 2014-11-11 20:03 - 00000000 ____D C:\Users\jemin\AppData\Roaming\FileZilla
2015-09-24 18:11 - 2015-04-15 12:07 - 00129697 _____ C:\Windows\DirectX.log
2015-09-24 09:04 - 2014-05-30 10:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-09-24 09:04 - 2014-03-18 17:27 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-09-24 08:45 - 2014-03-18 17:15 - 00000000 ____D C:\Users\jemin\AppData\Local\Google
2015-09-24 08:01 - 2014-03-18 17:19 - 00000000 ___HD C:\Program Files (x86)\Temp
2015-09-24 08:00 - 2014-03-18 17:18 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-09-23 17:37 - 2015-08-30 11:23 - 00000000 _____ C:\Windows\setuperr.log
2015-09-23 15:12 - 2014-11-18 16:56 - 00000000 ____D C:\Users\jemin\Documents\Assassin's Creed Unity
2015-09-22 16:04 - 2015-08-31 20:03 - 00000000 ____D C:\temp
2015-09-22 16:04 - 2014-10-20 18:13 - 00000000 ____D C:\Windows\SysWOW64\directx
2015-09-22 16:03 - 2014-03-20 15:08 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-22 15:11 - 2015-04-16 12:58 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-09-22 15:11 - 2015-04-16 12:58 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-09-22 15:11 - 2015-04-16 12:58 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-09-21 16:27 - 2014-11-11 20:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-09-21 16:27 - 2014-11-11 20:03 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2015-09-19 20:54 - 2009-07-14 07:08 - 00032582 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-09-19 20:53 - 2014-03-18 17:15 - 00000000 ____D C:\ProgramData\Google
2015-09-19 20:53 - 2014-03-18 17:15 - 00000000 ____D C:\Program Files\Google
2015-09-19 20:53 - 2014-03-18 17:15 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-19 20:51 - 2014-04-03 16:18 - 00000000 ____D C:\Users\jemin\AppData\Local\Adobe
2015-09-16 21:35 - 2014-03-18 17:15 - 00003948 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-16 21:35 - 2014-03-18 17:15 - 00003696 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-16 10:41 - 2015-04-27 17:46 - 00000000 ____D C:\Users\jemin\AppData\Roaming\Trine3
2015-09-16 10:32 - 2015-05-20 02:18 - 00000000 ____D C:\Users\jemin\Documents\The Witcher 3
2015-09-14 02:29 - 2015-08-13 18:27 - 15513208 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-09-14 02:29 - 2015-07-30 21:40 - 14635600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-09-14 02:29 - 2014-08-09 08:24 - 17082928 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-09-14 02:29 - 2014-08-09 08:24 - 12514824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-09-14 02:29 - 2014-08-09 08:24 - 03530608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-09-14 02:29 - 2014-03-20 12:12 - 00033079 _____ C:\Windows\system32\nvinfo.pb
2015-09-14 02:29 - 2014-03-20 12:11 - 03116160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 06884984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 03496056 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 02558584 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 00937776 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-09-14 00:09 - 2014-03-20 12:12 - 00385144 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 00062584 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-09-11 14:17 - 2014-03-20 12:12 - 05231082 _____ C:\Windows\system32\nvcoproc.bin
==================== Files in the root of some directories =======
2014-03-20 19:44 - 2014-03-20 19:45 - 0000156 _____ () C:\Users\jemin\AppData\Roaming\default.rss
2014-10-08 16:49 - 2014-05-24 21:09 - 0042496 ___SH (Open Source Software community project) C:\Users\jemin\AppData\Roaming\pthreadGC2-w64.dll
2014-03-29 09:04 - 2015-08-14 16:32 - 0017920 _____ () C:\Users\jemin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-05-30 07:41 - 2014-06-02 06:48 - 0007618 _____ () C:\Users\jemin\AppData\Local\Resmon.ResmonCfg
2014-03-31 15:50 - 2014-03-31 15:50 - 0000080 _____ () C:\Users\jemin\AppData\Local\X-Plane Installer.prf
2014-03-31 15:28 - 2014-03-31 15:28 - 0000020 _____ () C:\Users\jemin\AppData\Local\x-plane_install_10.txt
2014-05-21 14:50 - 2014-05-21 14:50 - 0000057 _____ () C:\ProgramData\Ament.ini
2015-10-01 19:08 - 2015-09-27 20:18 - 0014278 _____ () C:\ProgramData\awmboplwtl.vbs
2015-09-24 08:01 - 2015-09-24 08:01 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-10-01 19:08 - 2015-09-27 20:03 - 0014278 _____ () C:\ProgramData\eeghnaujgi.vbs
Files to move or delete:
====================
C:\Program Files (x86)\OKsoftware\Svátky a výročí\Vyroci.exe
C:\ProgramData\awmboplwtl.vbs
C:\ProgramData\eeghnaujgi.vbs
C:\Users\jemin\tmp2359.tmp.vbs
C:\Users\jemin\tmp401D.tmp.vbs
C:\Users\jemin\tmp78AB.tmp.vbs
C:\Users\jemin\tmp92FF.tmp.vbs
C:\Users\jemin\tmpB57B.tmp.vbs
C:\Users\jemin\tmpD24F.tmp.vbs
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-09-21 13:53
==================== End of FRST.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:30-09-2015
Ran by jemin (administrator) on JEMIN-PC (01-10-2015 19:16:25)
Running from C:\Users\jemin\Desktop
Loaded Profiles: jemin (Available Profiles: jemin)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReader\10.00\Licensing\Home\NetworkLicenseServer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(SlimWare Utilities, Inc.) C:\Program Files\SlimService\SlimServiceFactory.exe
(PS Media s.r.o.) C:\Windows\SysWOW64\ssins.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(SlimWare Utilities, Inc.) C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~1.EXE
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~2.EXE
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~1.EXE
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~2.EXE
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~1.EXE
(Google Inc.) C:\Users\jemin\AppData\Local\Temp\3582-490\GOOGLE~2.EXE
() C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_64.exe
(Microsoft Corporation) C:\Windows\System32\pcaui.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-27] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2000-01-01] (Logitech Inc.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13876952 2000-01-01] (Realtek Semiconductor)
HKLM\...\Run: [3bd13f8af846694af836aa5a2c763ceb] => "C:\ProgramData\system32.exe" ..
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [334320 2015-10-01] ()
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2015-10-01] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [Sv�tky a v�ro**�<*>] => C:\Program Files (x86)\OKsoftware\Svátky a výročí\Vyroci.exe [ ] () <===== ATTENTION (Value Name with invalid characters)
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [194608 2015-10-01] ()
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [HP Deskjet 3520 series (NET)] => C:\Program Files\HP\HP Deskjet 3520 series\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3169312 2015-10-01] ()
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53736048 2015-08-07] (Skype Technologies S.A.)
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [SlimCleaner Plus] => C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe [26169624 2015-09-08] (SlimWare Utilities, Inc.)
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [eeghnaujgi] => wscript.exe //B "C:\ProgramData\eeghnaujgi.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [awmboplwtl] => wscript.exe //B "C:\ProgramData\awmboplwtl.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmpF6E6] => wscript.exe //B "C:\Users\jemin\AppData\Roaming\tmpF6E6.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp3C12] => wscript.exe //B "C:\Users\jemin\AppData\Roaming\tmp3C12.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp5666] => wscript.exe //B "C:\Users\jemin\AppData\Roaming\tmp5666.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp2359] => wscript.exe //B "C:\Users\jemin\tmp2359.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp401D] => wscript.exe //B "C:\Users\jemin\tmp401D.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp78AB] => wscript.exe //B "C:\Users\jemin\tmp78AB.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmp92FF] => wscript.exe //B "C:\Users\jemin\tmp92FF.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmpB57B] => wscript.exe //B "C:\Users\jemin\tmpB57B.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [tmpD24F] => wscript.exe //B "C:\Users\jemin\tmpD24F.tmp.vbs"
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [78da0422172bb1c4bf8f5b473fa4639a] => "C:\Users\jemin\AppData\Local\Temp\dorogomyi.exe" .. <===== ATTENTION
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\...\Run: [CO] => wscript.exe //B "C:\Users\jemin\AppData\Local\Temp\CO.vbs" <===== ATTENTION
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\SysWOW64\CUCKOO~1.SCR [842752 2008-03-28] (3Planesoft)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-07-29] (Google)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GamePark klient 2.lnk [2014-03-22]
ShortcutTarget: GamePark klient 2.lnk -> C:\Program Files\GamePark2\gpcl.exe (Allstar Group, s.r.o.)
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\3107e2cc85325510acbf81112a41804e.exe [2015-10-01] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\3bd13f8af846694af836aa5a2c763ceb.exe [2015-09-28] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\78da0422172bb1c4bf8f5b473fa4639a.exe [2015-09-30] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\awmboplwtl.vbs [2015-09-27] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CO.vbs [2015-09-28] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\dorogomyi.exe [2015-09-30] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\eeghnaujgi.vbs [2015-09-27] ()
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP Deskjet 3520 series (Síť).lnk [2014-05-21]
ShortcutTarget: Sledovat výstrahy inkoustu - HP Deskjet 3520 series (Síť).lnk -> C:\Program Files\HP\HP Deskjet 3520 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
Startup: C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Vesmír na dlani.lnk [2014-03-28]
ShortcutTarget: Vesmír na dlani.lnk -> C:\Program Files (x86)\Noční obloha\vesmir.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{D3772582-8A4C-49F2-A2DC-A95D5181C2B6}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3158200304-2993081581-1989350980-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> {1A366EDE-D70D-49EE-A453-A757CE160C68} URL = hxxps://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> {5630B555-ECD5-4CB2-89C5-14866469CFC3} URL = hxxp://search.centrum.cz/index.php?utm_source=ch-browser&utm_medium=IE-9&utm_content=searchbox&channel_id=custom-browser,IE-9&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-05-30] (Oracle Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-09-24] (Google Inc.)
BHO: Lišta Centrum.cz - pomocný objekt -> {C91BA35D-6516-489F-A203-2992ED9A4132} -> C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho64.dll [2013-01-23] ()
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-05-30] (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-24] (Google Inc.)
BHO-x32: Lišta Centrum.cz - pomocný objekt -> {C91BA35D-6516-489F-A203-2992ED9A4132} -> C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho32.dll [2013-01-23] ()
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation.)
Toolbar: HKLM - Lišta Centrum.cz - {5D9C17C6-093D-43E5-BF3D-4A13D162AB74} - C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho64.dll [2013-01-23] ()
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-09-24] (Google Inc.)
Toolbar: HKLM-x32 - Lišta Centrum.cz - {5D9C17C6-093D-43E5-BF3D-4A13D162AB74} - C:\Program Files (x86)\Centrum Holdings s.r.o\Lišta Centrum.cz\cenbho32.dll [2013-01-23] ()
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-24] (Google Inc.)
Toolbar: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKU\S-1-5-21-3158200304-2993081581-1989350980-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-09-24] (Google Inc.)
DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700} hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-05-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-05-30] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-09-13] (NVIDIA Corporation)
FF Plugin-x32: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\jemin\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (RocketLife, LLP)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3158200304-2993081581-1989350980-1000: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\jemin\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-05-13] (RocketLife, LLP)
FF Plugin HKU\S-1-5-21-3158200304-2993081581-1989350980-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\jemin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-09-05] (Unity Technologies ApS)
Chrome:
=======
CHR Profile: C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-12-20]
CHR Extension: (Dokumenty Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-23]
CHR Extension: (Disk Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-23]
CHR Extension: (YouTube) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-23]
CHR Extension: (Vyhledávání Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-23]
CHR Extension: (Tabulky Google) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-12-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-23]
CHR Extension: (Gmail) - C:\Users\jemin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-23]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.Home.10.0; C:\Program Files (x86)\Common Files\ABBYY\FineReader\10.00\Licensing\Home\NetworkLicenseServer.exe [814344 2010-07-21] (ABBYY)
S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
S2 BBSvc; C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BBSvc.exe [234264 2015-09-30] () [File not signed]
S3 BBUpdate; C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.exe [281880 2015-10-01] () [File not signed]
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [178960 2015-09-30] () [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation)
S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [185672 2015-09-30] () [File not signed]
S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [185672 2015-09-30] () [File not signed]
S3 gusvc; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [235504 2015-09-30] () [File not signed]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319080 2000-01-01] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [252376 2015-10-01] () [File not signed]
S2 LMS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [473560 2015-10-01] () [File not signed]
S3 Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [106328 2015-09-30] () [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
S3 NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [815616 2015-09-30] () [File not signed]
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [313392 2015-10-01] () [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-27] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation)
S3 odserv; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [482168 2015-09-30] () [File not signed]
S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [186656 2015-09-30] () [File not signed]
S2 SkypeUpdate; C:\Program Files (x86)\Skype\Updater\Updater.exe [368768 2015-09-30] () [File not signed]
R2 SlimService; C:\Program Files\SlimService\SlimServiceFactory.exe [245016 2015-09-08] (SlimWare Utilities, Inc.)
R2 ssinstall; C:\Windows\SysWOW64\ssins.exe [2324216 2015-05-13] (PS Media s.r.o.)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [32768 2010-04-29] (Google Inc)
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21584 2013-02-19] ()
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-05-30] (AVG Technologies)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-06-28] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-08-07] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16056 2015-10-01] (SlimWare Utilities, Inc.)
S1 UsbCharger; C:\Windows\System32\DRIVERS\UsbCharger.sys [21584 2013-05-06] ()
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S1 MpKsl561a97af; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{29CE705E-E86C-4B09-9E9E-6B47C8595B0B}\MpKsl561a97af.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-01 19:16 - 2015-10-01 19:16 - 00025892 _____ C:\Users\jemin\Desktop\FRST.txt
2015-10-01 19:15 - 2015-10-01 19:16 - 02192384 _____ (Farbar) C:\Users\jemin\Desktop\FRST64.exe
2015-10-01 19:15 - 2015-10-01 19:16 - 00000000 ____D C:\FRST
2015-10-01 19:10 - 2015-10-01 19:10 - 00001011 _____ C:\Users\jemin\Desktop\CCleaner.lnk
2015-10-01 19:10 - 2015-10-01 19:10 - 00000000 ____D C:\Users\jemin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-10-01 19:08 - 2015-10-01 19:08 - 00000540 _____ C:\Windows\PFRO.log
2015-10-01 19:08 - 2015-09-27 20:18 - 00014278 _____ C:\ProgramData\awmboplwtl.vbs
2015-10-01 19:08 - 2015-09-27 20:03 - 00014278 _____ C:\ProgramData\eeghnaujgi.vbs
2015-10-01 19:07 - 2015-10-01 19:07 - 00037031 _____ C:\ComboFix.txt
2015-10-01 19:06 - 2015-10-01 19:16 - 00000073 _____ C:\Windows\directx.sys
2015-10-01 18:51 - 2015-10-01 18:51 - 00350800 _____ C:\Windows\Minidump\100115-6474-01.dmp
2015-10-01 18:28 - 2015-10-01 18:51 - 01712128 _____ C:\Users\jemin\Desktop\adwcleaner_5.009.exe
2015-10-01 18:26 - 2015-10-01 19:08 - 00041472 _____ C:\Windows\svchost.com
2015-10-01 17:50 - 2015-10-01 17:50 - 00003216 _____ C:\Windows\System32\Tasks\{FB6429D6-6C14-4633-A83B-164E822229EA}
2015-09-30 17:40 - 2015-09-30 17:40 - 00003480 _____ C:\Windows\System32\Tasks\savhost
2015-09-29 21:07 - 2015-09-29 21:07 - 00014273 _____ C:\Users\jemin\tmpD24F.tmp.vbs
2015-09-29 21:07 - 2015-09-29 21:07 - 00014273 _____ C:\Users\jemin\tmpB57B.tmp.vbs
2015-09-29 15:27 - 2015-09-29 15:27 - 00014273 _____ C:\Users\jemin\tmp92FF.tmp.vbs
2015-09-29 15:27 - 2015-09-29 15:27 - 00014273 _____ C:\Users\jemin\tmp78AB.tmp.vbs
2015-09-29 15:25 - 2015-09-29 15:25 - 00014273 _____ C:\Users\jemin\tmp401D.tmp.vbs
2015-09-29 15:25 - 2015-09-29 15:25 - 00014273 _____ C:\Users\jemin\tmp2359.tmp.vbs
2015-09-28 16:30 - 2015-09-28 16:30 - 00000000 ____D C:\Users\jemin\Documents\KONAMI
2015-09-28 16:30 - 2015-09-28 16:30 - 00000000 ____D C:\ProgramData\KONAMI
2015-09-27 21:01 - 2015-10-01 18:26 - 00000000 ____D C:\Users\jemin\Documents\MSDCSC
2015-09-27 19:56 - 2015-09-29 20:25 - 00000000 ____D C:\ProgramData\Isolated Storage
2015-09-24 18:04 - 2015-09-24 18:04 - 00000615 _____ C:\Users\Public\Desktop\Pro Evolution Soccer 2016.lnk
2015-09-24 18:04 - 2015-09-24 18:04 - 00000615 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pro Evolution Soccer 2016.lnk
2015-09-24 09:04 - 2015-09-13 23:50 - 00574072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-09-24 09:03 - 2015-09-14 02:29 - 42840368 _____ C:\Windows\system32\nvcompiler.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 37819000 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 22525560 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 18543736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 16637528 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 14936264 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 13660648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 12185344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 11096696 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-09-24 09:03 - 2015-09-14 02:29 - 02940024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 02627192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01898288 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435598.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01558832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435598.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01105976 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01074808 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 01064056 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00986232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00944760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00943712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00512904 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00421544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00408184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00364152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00176904 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00155792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00150832 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-09-24 09:03 - 2015-09-14 02:29 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-09-24 08:01 - 2015-09-24 08:01 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-09-24 08:00 - 2015-09-24 08:00 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-09-24 08:00 - 2015-09-24 08:00 - 00000000 ____D C:\Program Files\Realtek
2015-09-24 08:00 - 2000-01-01 02:00 - 72113152 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2015-09-24 08:00 - 2000-01-01 02:00 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 07087448 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 04467928 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-09-24 08:00 - 2000-01-01 02:00 - 03218800 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 02907864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 02846424 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 02702040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-09-24 08:00 - 2000-01-01 02:00 - 02014958 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-09-24 08:00 - 2000-01-01 02:00 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01739992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 01316056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00631000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00168816 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00109848 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00096568 _____ C:\Windows\system32\audioLibVc.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2015-09-24 08:00 - 2000-01-01 02:00 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-09-24 07:54 - 2015-09-24 07:54 - 00000144 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-09-24 07:14 - 2015-09-24 07:14 - 00019486 _____ C:\Windows\system32\results.xml
2015-09-24 07:14 - 2015-09-24 07:14 - 00000451 _____ C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-09-23 18:58 - 2015-10-01 19:07 - 00000366 _____ C:\Windows\Tasks\SlimCleaner Plus (Scheduled Scan - jemin).job
2015-09-23 18:58 - 2015-09-23 18:58 - 00003024 _____ C:\Windows\System32\Tasks\SlimCleaner Plus (Scheduled Scan - jemin)
2015-09-23 18:12 - 2015-09-23 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-09-23 18:12 - 2015-09-23 18:12 - 00000000 ____D C:\Program Files\Logitech
2015-09-23 18:12 - 2015-09-23 18:12 - 00000000 ____D C:\Program Files\Common Files\Logitech
2015-09-23 18:10 - 2015-09-23 18:10 - 00000704 _____ C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk
2015-09-23 18:09 - 2000-01-01 02:00 - 22905344 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 17837568 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 12218376 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 11793480 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 10948400 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 10474552 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 08593920 _____ (Intel Corporation) C:\Windows\system32\ig75icd64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 06587904 _____ (Intel Corporation) C:\Windows\SysWOW64\ig75icd32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 04587608 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 04362344 _____ (Intel Corporation) C:\Windows\system32\Gfxv4_0.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 04358760 _____ (Intel Corporation) C:\Windows\system32\Gfxv2_0.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 03788728 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2015-09-23 18:09 - 2000-01-01 02:00 - 03628160 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 02027008 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01985536 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01784320 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01758208 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01137120 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 01133000 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00959592 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00734720 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00670208 _____ (Intel Corporation) C:\Windows\system32\igfxDH.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00545896 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00545384 _____ (Intel Corporation) C:\Windows\system32\DPTopologyAppv2_0.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00530536 _____ (Intel Corporation) C:\Windows\system32\igfxEM.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00454760 _____ (Intel Corporation) C:\Windows\system32\igdmd64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00454416 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2015-09-23 18:09 - 2000-01-01 02:00 - 00399976 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00399464 _____ (Intel Corporation) C:\Windows\system32\CustomModeAppv2_0.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00384104 _____ (Intel Corporation) C:\Windows\system32\igfxTray.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00384000 _____ (Intel Corporation) C:\Windows\system32\igfxOSP.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00376832 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00366680 _____ (Intel Corporation) C:\Windows\SysWOW64\igdmd32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00365568 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00320512 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00319080 _____ (Intel Corporation) C:\Windows\system32\igfxCUIService.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00286720 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00280680 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00276480 _____ (Intel Corporation) C:\Windows\system32\igfxDI.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00255488 _____ C:\Windows\system32\igfxCPL.cpl
2015-09-23 18:09 - 2000-01-01 02:00 - 00252416 _____ (Intel Corporation) C:\Windows\system32\igfxLHM.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00247400 _____ (Intel Corporation) C:\Windows\system32\igfxHK.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00224256 _____ C:\Windows\system32\igdde64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00220160 _____ (Intel Corporation) C:\Windows\system32\igfxDTCM.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00218848 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00194664 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00188496 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00187844 _____ C:\Windows\system32\resTHA.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00185856 _____ C:\Windows\SysWOW64\igdde32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00184832 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00183840 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00183296 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v4226.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00180644 _____ C:\Windows\system32\resELL.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00176500 _____ C:\Windows\system32\resRUS.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00162356 _____ C:\Windows\system32\resARA.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00162304 _____ C:\Windows\system32\igdail64.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00161812 _____ C:\Windows\system32\resHEB.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00161764 _____ C:\Windows\system32\resJPN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00159096 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00157172 _____ C:\Windows\system32\resFRA.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00157156 _____ C:\Windows\system32\resHUN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155460 _____ C:\Windows\system32\resKOR.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155364 _____ C:\Windows\system32\resITA.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155364 _____ C:\Windows\system32\resDEU.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155204 _____ C:\Windows\system32\resROM.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00155136 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00155092 _____ C:\Windows\system32\resESN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00154728 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2015-09-23 18:09 - 2000-01-01 02:00 - 00154660 _____ C:\Windows\system32\resPLK.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00154516 _____ C:\Windows\system32\resSKY.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00154324 _____ C:\Windows\system32\resNLD.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153764 _____ C:\Windows\system32\resPTB.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153620 _____ C:\Windows\system32\resTRK.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153604 _____ C:\Windows\system32\resCSY.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153460 _____ C:\Windows\system32\resPTG.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00153060 _____ C:\Windows\system32\resFIN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00152612 _____ C:\Windows\system32\resHRV.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00152164 _____ C:\Windows\system32\resSVE.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00152004 _____ C:\Windows\system32\resSLV.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00151060 _____ C:\Windows\system32\resNOR.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00150548 _____ C:\Windows\system32\resDAN.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00149236 _____ C:\Windows\system32\resENU.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00147460 _____ C:\Windows\system32\resCHT.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00146628 _____ C:\Windows\system32\resCHS.cui
2015-09-23 18:09 - 2000-01-01 02:00 - 00143872 _____ C:\Windows\SysWOW64\igdail32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00086528 _____ C:\Windows\system32\igfxCUIServicePS.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00069632 _____ ( ) C:\Windows\system32\igfxDHLibv2_0.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00059392 _____ ( ) C:\Windows\system32\igfxDHLib.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00031448 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00030720 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00010752 _____ ( ) C:\Windows\system32\igfxDILib.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00010240 _____ ( ) C:\Windows\system32\igfxEMLibv2_0.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00010240 _____ ( ) C:\Windows\system32\igfxEMLib.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00010240 _____ ( ) C:\Windows\system32\igfxDILibv2_0.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00005120 _____ ( ) C:\Windows\system32\igfxLHMLibv2_0.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00005120 _____ ( ) C:\Windows\system32\igfxLHMLib.dll
2015-09-23 18:09 - 2000-01-01 02:00 - 00002564 _____ C:\Windows\system32\iglhxs64.vp
2015-09-23 18:08 - 2015-09-23 18:08 - 00000000 ____D C:\ProgramData\SlimWare Utilities, Inc
2015-09-23 18:07 - 2015-09-23 18:07 - 00002465 _____ C:\Users\Public\Desktop\SlimCleaner Plus.lnk
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\Users\jemin\AppData\Local\Downloaded Installers
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\ProgramData\SlimWare Utilities Inc
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SlimCleaner Plus
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\Program Files\SlimService
2015-09-23 18:07 - 2015-09-23 18:07 - 00000000 ____D C:\Program Files\SlimCleaner Plus
2015-09-23 18:06 - 2015-09-30 18:02 - 01023064 _____ C:\Users\jemin\Desktop\SlimDrivers-setup.exe
2015-09-23 18:05 - 2015-10-01 19:08 - 00016056 _____ (SlimWare Utilities, Inc.) C:\Windows\system32\Drivers\SWDUMon.sys
2015-09-23 18:05 - 2015-10-01 19:08 - 00002836 _____ C:\Windows\System32\Tasks\SlimDrivers Startup
2015-09-23 18:05 - 2015-10-01 19:08 - 00000410 _____ C:\Windows\Tasks\SlimDrivers Startup.job
2015-09-23 18:05 - 2015-09-23 18:58 - 00000000 ____D C:\Users\jemin\AppData\Local\SlimWare Utilities Inc
2015-09-23 18:05 - 2015-09-23 18:07 - 00002483 _____ C:\Users\Public\Desktop\SlimDrivers.lnk
2015-09-23 17:37 - 2015-09-23 17:37 - 00002566 _____ C:\Windows\diagwrn.xml
2015-09-23 17:37 - 2015-09-23 17:37 - 00001908 _____ C:\Windows\diagerr.xml
2015-09-22 16:59 - 2015-09-22 16:59 - 00000147 _____ C:\Users\jemin\Desktop\Nový textový dokument.txt
2015-09-22 16:10 - 2015-09-22 16:10 - 00000000 ____D C:\Users\jemin\Desktop\kaja
2015-09-22 16:07 - 2015-09-22 16:07 - 00000000 ____D C:\Users\jemin\Documents\Electronic Arts
2015-09-22 15:47 - 2015-09-22 15:47 - 00001307 _____ C:\Users\jemin\Desktop\The Sims 4 Deluxe Edition.lnk
2015-09-22 15:47 - 2015-09-22 15:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GMT-MAX.ORG
2015-09-21 16:14 - 2015-07-15 01:35 - 00000000 ____D C:\Users\jemin\Desktop\3DMGAME-The.Sims.4.Crack.Only-3DM
2015-09-20 01:05 - 2015-09-30 18:02 - 06562656 _____ C:\Users\jemin\Downloads\FileZilla_3.14.0_win64-setup.exe
2015-09-15 13:46 - 2015-09-24 08:29 - 00000000 ____D C:\Users\jemin\Desktop\MalwareBytes.Anti-Malware.Premium.v2.1.6.1022.Incl.Keygen-AMPED
2015-09-14 12:26 - 2015-09-14 12:26 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-09-14 12:26 - 2015-09-14 12:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-01 19:15 - 2009-07-14 06:45 - 00020192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-10-01 19:15 - 2009-07-14 06:45 - 00020192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-10-01 19:14 - 2009-07-26 20:41 - 00669904 _____ C:\Windows\system32\perfh005.dat
2015-10-01 19:14 - 2009-07-26 20:41 - 00142062 _____ C:\Windows\system32\perfc005.dat
2015-10-01 19:14 - 2009-07-14 07:13 - 01587976 _____ C:\Windows\system32\PerfStringBackup.INI
2015-10-01 19:11 - 2014-03-18 17:11 - 01288938 _____ C:\Windows\WindowsUpdate.log
2015-10-01 19:10 - 2014-11-16 09:32 - 00000000 ____D C:\Program Files (x86)\CCleaner
2015-10-01 19:09 - 2014-03-18 17:15 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-01 19:08 - 2015-08-30 11:23 - 00005451 _____ C:\Windows\setupact.log
2015-10-01 19:08 - 2015-05-13 16:20 - 00000000 _____ C:\Windows\SysWOW64\sinstall.log
2015-10-01 19:08 - 2014-03-20 12:12 - 00000000 ____D C:\ProgramData\NVIDIA
2015-10-01 19:08 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-10-01 19:07 - 2015-08-09 06:36 - 00000000 ____D C:\Qoobox
2015-10-01 19:06 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2015-10-01 19:00 - 2014-06-27 11:32 - 00000000 ____D C:\Users\jemin\Documents\antiviry
2015-10-01 18:51 - 2015-08-31 20:03 - 704750146 _____ C:\Windows\MEMORY.DMP
2015-10-01 18:51 - 2015-06-24 16:08 - 00000402 _____ C:\Windows\Tasks\HP Photo Creations Communicator.job
2015-10-01 18:51 - 2014-04-11 19:06 - 00000000 ____D C:\Windows\Minidump
2015-10-01 18:43 - 2015-04-16 12:58 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-10-01 18:40 - 2014-03-18 17:15 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-10-01 18:28 - 2014-05-10 17:37 - 00000000 ____D C:\AdwCleaner
2015-10-01 18:27 - 2014-03-20 16:53 - 00000000 ____D C:\Users\jemin\AppData\Roaming\Skype
2015-10-01 18:27 - 2014-03-20 15:14 - 00003138 _____ C:\Windows\System32\Tasks\FRAPS
2015-10-01 18:27 - 2014-03-20 15:14 - 00000000 ____D C:\Fraps
2015-10-01 18:26 - 2014-03-18 17:12 - 00000000 ____D C:\Users\jemin
2015-10-01 18:25 - 2014-03-20 16:53 - 00000000 ____D C:\ProgramData\Skype
2015-10-01 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Globalization
2015-10-01 17:51 - 2014-05-11 07:47 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-10-01 17:49 - 2014-03-20 15:30 - 00000000 ____D C:\Users\jemin\AppData\Local\CrashDumps
2015-10-01 17:38 - 2014-05-08 14:35 - 00008776 _____ C:\Windows\SysWOW64\Cuckoo Clock.log
2015-10-01 15:50 - 2014-03-23 16:59 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{6E8F5136-D671-44DD-8634-E280556768FA}
2015-09-30 18:02 - 2015-07-18 14:25 - 02614864 _____ C:\Users\jemin\Documents\TrueCrypt-7.2.exe
2015-09-30 18:02 - 2015-05-10 07:15 - 06560744 _____ C:\Users\jemin\Documents\Setup_FreeConverter.exe
2015-09-30 18:02 - 2015-03-30 17:01 - 01618984 _____ C:\Users\jemin\Documents\cpu-z_1.71-setup-en.exe
2015-09-30 17:17 - 2014-11-11 20:03 - 00000000 ____D C:\Users\jemin\AppData\Roaming\FileZilla
2015-09-24 18:11 - 2015-04-15 12:07 - 00129697 _____ C:\Windows\DirectX.log
2015-09-24 09:04 - 2014-05-30 10:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-09-24 09:04 - 2014-03-18 17:27 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-09-24 08:45 - 2014-03-18 17:15 - 00000000 ____D C:\Users\jemin\AppData\Local\Google
2015-09-24 08:01 - 2014-03-18 17:19 - 00000000 ___HD C:\Program Files (x86)\Temp
2015-09-24 08:00 - 2014-03-18 17:18 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-09-23 17:37 - 2015-08-30 11:23 - 00000000 _____ C:\Windows\setuperr.log
2015-09-23 15:12 - 2014-11-18 16:56 - 00000000 ____D C:\Users\jemin\Documents\Assassin's Creed Unity
2015-09-22 16:04 - 2015-08-31 20:03 - 00000000 ____D C:\temp
2015-09-22 16:04 - 2014-10-20 18:13 - 00000000 ____D C:\Windows\SysWOW64\directx
2015-09-22 16:03 - 2014-03-20 15:08 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-22 15:11 - 2015-04-16 12:58 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-09-22 15:11 - 2015-04-16 12:58 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-09-22 15:11 - 2015-04-16 12:58 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-09-21 16:27 - 2014-11-11 20:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-09-21 16:27 - 2014-11-11 20:03 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2015-09-19 20:54 - 2009-07-14 07:08 - 00032582 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-09-19 20:53 - 2014-03-18 17:15 - 00000000 ____D C:\ProgramData\Google
2015-09-19 20:53 - 2014-03-18 17:15 - 00000000 ____D C:\Program Files\Google
2015-09-19 20:53 - 2014-03-18 17:15 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-19 20:51 - 2014-04-03 16:18 - 00000000 ____D C:\Users\jemin\AppData\Local\Adobe
2015-09-16 21:35 - 2014-03-18 17:15 - 00003948 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-16 21:35 - 2014-03-18 17:15 - 00003696 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-16 10:41 - 2015-04-27 17:46 - 00000000 ____D C:\Users\jemin\AppData\Roaming\Trine3
2015-09-16 10:32 - 2015-05-20 02:18 - 00000000 ____D C:\Users\jemin\Documents\The Witcher 3
2015-09-14 02:29 - 2015-08-13 18:27 - 15513208 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-09-14 02:29 - 2015-07-30 21:40 - 14635600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-09-14 02:29 - 2014-08-09 08:24 - 17082928 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-09-14 02:29 - 2014-08-09 08:24 - 12514824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-09-14 02:29 - 2014-08-09 08:24 - 03530608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-09-14 02:29 - 2014-03-20 12:12 - 00033079 _____ C:\Windows\system32\nvinfo.pb
2015-09-14 02:29 - 2014-03-20 12:11 - 03116160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 06884984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 03496056 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 02558584 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 00937776 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-09-14 00:09 - 2014-03-20 12:12 - 00385144 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-09-14 00:09 - 2014-03-20 12:12 - 00062584 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-09-11 14:17 - 2014-03-20 12:12 - 05231082 _____ C:\Windows\system32\nvcoproc.bin
==================== Files in the root of some directories =======
2014-03-20 19:44 - 2014-03-20 19:45 - 0000156 _____ () C:\Users\jemin\AppData\Roaming\default.rss
2014-10-08 16:49 - 2014-05-24 21:09 - 0042496 ___SH (Open Source Software community project) C:\Users\jemin\AppData\Roaming\pthreadGC2-w64.dll
2014-03-29 09:04 - 2015-08-14 16:32 - 0017920 _____ () C:\Users\jemin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-05-30 07:41 - 2014-06-02 06:48 - 0007618 _____ () C:\Users\jemin\AppData\Local\Resmon.ResmonCfg
2014-03-31 15:50 - 2014-03-31 15:50 - 0000080 _____ () C:\Users\jemin\AppData\Local\X-Plane Installer.prf
2014-03-31 15:28 - 2014-03-31 15:28 - 0000020 _____ () C:\Users\jemin\AppData\Local\x-plane_install_10.txt
2014-05-21 14:50 - 2014-05-21 14:50 - 0000057 _____ () C:\ProgramData\Ament.ini
2015-10-01 19:08 - 2015-09-27 20:18 - 0014278 _____ () C:\ProgramData\awmboplwtl.vbs
2015-09-24 08:01 - 2015-09-24 08:01 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-10-01 19:08 - 2015-09-27 20:03 - 0014278 _____ () C:\ProgramData\eeghnaujgi.vbs
Files to move or delete:
====================
C:\Program Files (x86)\OKsoftware\Svátky a výročí\Vyroci.exe
C:\ProgramData\awmboplwtl.vbs
C:\ProgramData\eeghnaujgi.vbs
C:\Users\jemin\tmp2359.tmp.vbs
C:\Users\jemin\tmp401D.tmp.vbs
C:\Users\jemin\tmp78AB.tmp.vbs
C:\Users\jemin\tmp92FF.tmp.vbs
C:\Users\jemin\tmpB57B.tmp.vbs
C:\Users\jemin\tmpD24F.tmp.vbs
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-09-21 13:53
==================== End of FRST.txt ============================