ostepanek píše:Zdravím, mám problém s extrémně pomalým notebookem. Před pár dny jsem čistil i přes rady z tohoto fóra. Vše běželo perfektně, notebook se zrychlil. Druhý den ale z ničeho nic začal být extrémně pomalý. Po naběhnutí systému využití CPU stále kolísá a cca po 2 minutách vylítne na 50% a od té doby se drží cca kolem 50-100% výkonu... Práce na notebooku je prakticky nemožná. Prosím o pomoc....
Přikládám ještě jeden log. nyní je již využití CPU stále 100%
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:02-03-2016
Ran by Gabca (administrator) on GABCA-PC (02-03-2016 17:41:42)
Running from C:\Users\Gabca\Downloads
Loaded Profiles: Gabca (Available Profiles: Gabca)
Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) Language: English (United States)
Internet Explorer Version 7 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Av\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Av\avgcsrvx.exe
() C:\Program Files\AVG Web TuneUp\WtuSystemSupport.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
() C:\Windows\System32\WLTRYSVC.EXE
(Dell Inc.) C:\Windows\System32\BCMWLTRY.EXE
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\AERTSrv.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Av\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Framework\Common\avgsvcx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Av\avgwdsvcx.exe
(Nero AG) C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
(O2Micro International) C:\Windows\System32\drivers\o2flash.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Av\avgnsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Av\avgemcx.exe
() C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
(Creative Technology Ltd.) C:\Windows\OEM13Mon.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Dell Inc.) C:\Windows\System32\WLTRAY.EXE
(Realtek Semiconductor) C:\Windows\RtHDVCpl.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Av\avgui.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [OEM13Mon.exe] => C:\Windows\OEM13Mon.exe [36864 2008-01-07] (Creative Technology Ltd.)
HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Windows\system32\WLTRAY.exe [3563520 2009-01-20] (Dell Inc.)
HKLM\...\Run: [RtHDVCpl] => C:\Windows\RtHDVCpl.exe [4907008 2008-02-04] (Realtek Semiconductor)
HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\Av\avgui.exe [3873704 2016-02-01] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AvgUi] => C:\Program Files\AVG\Framework\Common\avguirnx.exe [179624 2016-02-18] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-2545414933-95109104-453651295-1000\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation)
HKU\S-1-5-21-2545414933-95109104-453651295-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [50599552 2016-02-10] (Skype Technologies S.A.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 10.0.0.138
Tcpip\..\Interfaces\{EE6E886F-BA96-423C-85E0-9F628A23B32B}: [DhcpNameServer] 10.0.0.138 10.0.0.138
Tcpip\..\Interfaces\{FF3BBD7E-2F67-4515-A199-FA23372CBC47}: [DhcpNameServer] 10.0.0.138 10.0.0.138
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKU\S-1-5-21-2545414933-95109104-453651295-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://
www.msn.com/
HKU\S-1-5-21-2545414933-95109104-453651295-1000\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/1ewenusDefaultPack/UP97_FRPage
HKU\S-1-5-21-2545414933-95109104-453651295-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://
www.google.com/ie
HKU\S-1-5-21-2545414933-95109104-453651295-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://
www.google.com/ie
SearchScopes: HKU\S-1-5-21-2545414933-95109104-453651295-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://
www.google.com/search?q={sear
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-26] (Microsoft Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-26] (Microsoft Corporation)
FireFox:
========
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1217157.dll [2015-02-16] (Adobe Systems, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2013-04-09] [not signed]
Chrome:
=======
CHR HomePage: Default -> hxxp://
www.msn.com/?pc=UP97&ocid=UP97DHP
CHR StartupUrls: Default -> "hxxp://
www.msn.com/?pc=UP97&ocid=UP97DHP"
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\48.0.2564.116\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\48.0.2564.116\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\48.0.2564.116\pdf.dll => No File
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll => No File
CHR Plugin: (Windows Presentation Foundation) - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Profile: C:\Users\Gabca\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Gabca\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-11]
CHR Extension: (Disk Google) - C:\Users\Gabca\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-09]
CHR Extension: (YouTube) - C:\Users\Gabca\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Vyhledávání Google) - C:\Users\Gabca\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-09]
CHR Extension: (Dokumenty Google offline) - C:\Users\Gabca\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Gabca\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-17]
CHR Extension: (Gmail) - C:\Users\Gabca\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-18]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AERTFilters; C:\Windows\system32\AERTSrv.exe [77824 2008-02-04] (Andrea Electronics Corporation)
R2 AVGIDSAgent; C:\Program Files\AVG\Av\avgidsagent.exe [3881184 2016-02-01] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files\AVG\Framework\Common\avgsvcx.exe [865704 2016-02-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\Av\avgwdsvcx.exe [561104 2016-02-01] (AVG Technologies CZ, s.r.o.)
R2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-06-27] (Nero AG)
R2 o2flash; C:\Windows\system32\DRIVERS\o2flash.exe [71512 2008-07-29] (O2Micro International)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [File not signed]
R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3275136 2013-10-09] (Skype Technologies S.A.)
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-21] (Microsoft Corporation)
R2 wltrysvc; C:\Windows\System32\bcmwltry.exe [2654208 2009-01-20] (Dell Inc.) [File not signed]
R2 WtuSystemSupport; C:\Program Files\AVG Web TuneUp\WtuSystemSupport.exe [1205832 2016-02-02] ()
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [149936 2015-11-06] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [257456 2016-01-05] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [207792 2016-01-08] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [31664 2015-11-20] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [229296 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [308656 2015-08-14] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [198576 2016-01-22] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [37296 2015-12-04] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [231856 2015-10-08] (AVG Technologies CZ, s.r.o.)
R0 Avgunivx; C:\Windows\System32\DRIVERS\avgunivx.sys [23472 2016-01-08] (AVG Technologies CZ, s.r.o.)
R3 BCM42RLY; C:\Windows\System32\drivers\BCM42RLY.sys [18424 2009-01-20] (Broadcom Corporation)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [389968 2015-11-18] (Symantec Corporation)
R3 OEM13Vfx; C:\Windows\System32\DRIVERS\OEM13Vfx.sys [7424 2007-03-05] (EyePower Games Pte. Ltd.)
R3 OEM13Vid; C:\Windows\System32\DRIVERS\OEM13Vid.sys [235840 2008-05-28] (Creative Technology Ltd.)
S3 qcserxp; C:\Windows\System32\DRIVERS\qcserxp.sys [103424 2009-01-24] (QUALCOMM Incorporated) [File not signed]
S3 HTCAND32; System32\Drivers\ANDROIDUSB.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-03-02 17:38 - 2016-03-02 17:38 - 00112640 _____ (forum.viry.cz) C:\Users\Gabca\Downloads\Nepotvrzeno 856873.crdownload
2016-03-02 14:39 - 2016-03-02 14:40 - 01722368 _____ (Farbar) C:\Users\Gabca\Downloads\FRST.exe
2016-02-29 14:36 - 2012-06-02 23:19 - 01933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-02-29 14:36 - 2012-06-02 23:19 - 00577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-02-29 14:36 - 2012-06-02 23:19 - 00053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-02-29 14:36 - 2012-06-02 23:19 - 00045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-02-29 14:36 - 2012-06-02 23:19 - 00035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-02-29 14:36 - 2012-06-02 23:12 - 02422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-02-29 14:36 - 2012-06-02 23:12 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-02-29 14:35 - 2012-06-02 15:19 - 00171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-02-29 14:35 - 2012-06-02 15:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-02-29 07:18 - 2016-02-29 08:38 - 00000000 ____D C:\Users\Gabca\AppData\Local\AvgSetupLog
2016-02-29 07:10 - 2016-02-29 07:10 - 00000452 __RSH C:\ProgramData\ntuser.pol
2016-02-28 22:43 - 2016-03-02 14:40 - 00004297 _____ C:\Users\Gabca\Downloads\Fixlog.txt
2016-02-28 21:53 - 2016-02-28 21:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-02-28 21:53 - 2016-02-28 21:53 - 00000000 ____D C:\Program Files\Common Files\Skype
2016-02-28 21:25 - 2016-03-02 14:25 - 00000000 ____D C:\AdwCleaner
2016-02-28 21:24 - 2016-02-28 21:24 - 01518592 _____ C:\Users\Gabca\Downloads\adwcleaner_5.037 (1).exe
2016-02-28 21:18 - 2016-02-28 21:18 - 01518592 _____ C:\Users\Gabca\Downloads\adwcleaner_5.037.exe
2016-02-28 20:12 - 2016-02-28 20:14 - 00023455 _____ C:\Users\Gabca\Downloads\Addition.txt
2016-02-28 20:11 - 2016-03-02 17:41 - 00012417 _____ C:\Users\Gabca\Downloads\FRST.txt
2016-02-28 20:11 - 2016-03-02 17:41 - 00000000 ____D C:\FRST
2016-02-28 20:10 - 2016-02-28 20:10 - 00112640 _____ (forum.viry.cz) C:\Users\Gabca\Downloads\Nepotvrzeno 152789.crdownload
2016-02-28 19:28 - 2016-02-29 07:14 - 00000000 ____D C:\Users\Gabca\Downloads\backups
2016-02-28 19:19 - 2016-02-28 19:19 - 00388608 _____ (Trend Micro Inc.) C:\Users\Gabca\Downloads\hijackthis (2).exe
2016-02-28 19:15 - 2016-02-28 19:15 - 00388608 _____ (Trend Micro Inc.) C:\Users\Gabca\Downloads\hijackthis (1).exe
2016-02-28 19:12 - 2016-02-28 19:12 - 00388608 _____ (Trend Micro Inc.) C:\Users\Gabca\Downloads\hijackthis.exe
2016-02-28 18:53 - 2016-02-28 18:55 - 00000000 ____D C:\Windows\system32\ca-ES
2016-02-28 18:53 - 2016-02-28 18:54 - 00000000 ____D C:\Windows\system32\vi-VN
2016-02-28 18:53 - 2016-02-28 18:54 - 00000000 ____D C:\Windows\system32\eu-ES
2016-02-28 18:25 - 2016-02-28 18:25 - 00000000 ____D C:\Windows\system32\EventProviders
2016-02-09 00:50 - 2016-02-09 00:50 - 00033792 _____ C:\Users\Gabca\Downloads\divadla (1).xls
2016-02-02 11:04 - 2016-03-02 16:11 - 00000000 ____D C:\Users\Gabca\AppData\Local\Avg
2016-02-02 11:04 - 2016-02-02 11:04 - 00000000 ____D C:\Users\Gabca\AppData\Roaming\AVG
2016-02-02 10:57 - 2016-02-29 07:20 - 00000735 _____ C:\Users\Public\Desktop\AVG.lnk
2016-02-02 10:57 - 2016-02-29 07:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-02-02 10:56 - 2016-02-29 07:22 - 00000000 ____D C:\ProgramData\Avg
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-03-02 17:00 - 2013-04-10 09:44 - 00000000 ____D C:\Users\Gabca\AppData\Roaming\Skype
2016-03-02 16:12 - 2013-04-10 09:34 - 00000000 ____D C:\ProgramData\MFAData
2016-03-02 16:06 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\inf
2016-03-02 16:06 - 2006-11-02 11:33 - 00703388 _____ C:\Windows\system32\PerfStringBackup.INI
2016-03-02 16:02 - 2015-07-31 10:25 - 00000000 ____D C:\Users\Gabca\AppData\Local\HTC MediaHub
2016-03-02 16:01 - 2006-11-02 14:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-03-02 16:01 - 2006-11-02 13:47 - 00003712 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2016-03-02 16:01 - 2006-11-02 13:47 - 00003712 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2016-03-02 14:26 - 2006-11-02 14:01 - 00023322 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-03-02 10:08 - 2013-04-10 20:26 - 00002633 _____ C:\Users\Gabca\Desktop\Microsoft Office Outlook 2007.lnk
2016-02-29 16:21 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\rescache
2016-02-29 14:37 - 2006-11-02 13:50 - 00001661 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2016-02-29 14:37 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-02-29 13:15 - 2015-04-01 16:33 - 00000440 ____H C:\Windows\Tasks\Norton Security Scan for Gabca.job
2016-02-29 12:34 - 2015-11-04 09:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-02-29 12:34 - 2013-04-10 09:37 - 00000000 ___HD C:\$AVG
2016-02-29 07:51 - 2013-04-09 19:21 - 00000000 ____D C:\Users\Gabca\AppData\Local\VirtualStore
2016-02-29 07:22 - 2013-04-10 09:36 - 00000000 ____D C:\Program Files\AVG
2016-02-29 07:10 - 2006-11-02 12:18 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2016-02-29 03:40 - 2013-05-05 22:13 - 00000000 ____D C:\Users\Gabca\AppData\Local\Htc
2016-02-28 22:43 - 2013-04-10 09:44 - 00000000 ___RD C:\Program Files\Skype
2016-02-28 21:56 - 2013-04-10 20:40 - 00002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2016-02-28 21:53 - 2014-06-13 19:15 - 00001896 _____ C:\Users\Public\Desktop\Skype.lnk
2016-02-28 21:53 - 2014-06-13 19:15 - 00000000 ____D C:\Users\Gabca\AppData\Local\Skype
2016-02-28 21:53 - 2013-04-10 09:44 - 00000000 ____D C:\ProgramData\Skype
2016-02-28 19:01 - 2013-04-10 20:36 - 00001989 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-28 19:01 - 2013-04-10 20:36 - 00001977 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-02-28 19:01 - 2013-04-09 19:21 - 00000955 _____ C:\Users\Gabca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-02-28 19:01 - 2013-04-09 19:21 - 00000921 _____ C:\Users\Gabca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
2016-02-28 18:59 - 2006-11-02 13:47 - 00375360 _____ C:\Windows\system32\FNTCACHE.DAT
2016-02-28 18:55 - 2006-11-02 13:37 - 00000000 ____D C:\Windows\system32\XPSViewer
2016-02-28 18:55 - 2006-11-02 13:37 - 00000000 ____D C:\Program Files\Windows Sidebar
2016-02-28 18:55 - 2006-11-02 13:37 - 00000000 ____D C:\Program Files\Windows Photo Gallery
2016-02-28 18:55 - 2006-11-02 13:37 - 00000000 ____D C:\Program Files\Windows Journal
2016-02-28 18:55 - 2006-11-02 13:37 - 00000000 ____D C:\Program Files\Windows Defender
2016-02-28 18:55 - 2006-11-02 13:37 - 00000000 ____D C:\Program Files\Windows Collaboration
2016-02-28 18:55 - 2006-11-02 13:37 - 00000000 ____D C:\Program Files\Windows Calendar
2016-02-28 18:55 - 2006-11-02 13:37 - 00000000 ____D C:\Program Files\Movie Maker
2016-02-28 18:55 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\lv-LV
2016-02-28 18:55 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\et-EE
2016-02-28 18:55 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\servicing
2016-02-28 18:55 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\IME
2016-02-28 18:55 - 2006-11-02 12:18 - 00000000 ____D C:\Program Files\Common Files\System
2016-02-28 18:54 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\SLUI
2016-02-28 18:54 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\setup
2016-02-28 18:54 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\oobe
2016-02-28 18:54 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\migwiz
2016-02-28 18:54 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\manifeststore
2016-02-28 18:54 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\lt-LT
2016-02-28 18:54 - 2006-11-02 12:18 - 00000000 ____D C:\Windows\system32\AdvancedInstallers
2016-02-28 18:51 - 2013-04-09 23:09 - 00000000 ____D C:\Windows\system32\RTCOM
2016-02-28 18:15 - 2014-12-11 12:58 - 00000000 ____D C:\ProgramData\AVG Web TuneUp
2016-02-23 13:18 - 2015-05-08 10:24 - 00000000 ____D C:\Program Files\AVG Web TuneUp
2016-02-13 03:08 - 2013-07-19 02:01 - 00000000 ____D C:\Windows\system32\MRT
2016-02-13 03:02 - 2006-11-02 11:24 - 144254680 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2016-02-02 10:58 - 2014-12-11 12:59 - 00000000 ____D C:\Users\Gabca\AppData\Local\AVG Web TuneUp
==================== Files in the root of some directories =======
2013-04-09 19:21 - 2013-04-09 19:37 - 0000680 _____ () C:\Users\Gabca\AppData\Local\d3d9caps.dat
Some files in TEMP:
====================
C:\Users\Gabca\AppData\Local\Temp\avguirn_081024586876.exe
C:\Users\Gabca\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-03-02 16:07
==================== End of FRST.txt ============================