Stránka 1 z 1

Hjt

Napsal: 30 bře 2016 15:42
od Blaza7507
Ahoj, chtěl bych vás poprosit o kontrolu logu z HJT.. Děkuji moc

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:27:20, on 30. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.16518)

FIREFOX: 45.0.1 (x86 cs)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Domča\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... YJY60YJY60
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... YJY60YJY60
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [BingSvc] C:\Users\Domča\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Curse.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{00C5FED7-9408-4311-AB93-9666932C69F6}: NameServer = 8.8.8.8,8.8.4.4
O17 - HKLM\System\CS1\Services\Tcpip\..\{00C5FED7-9408-4311-AB93-9666932C69F6}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Avast Firewall (avast! Firewall) - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @oem36.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Windows\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Overwolf Updater Windows SCM (OverwolfUpdater) - Overwolf LTD - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SuperBoost Software Updater (sgbupt) - SuperBoost Software - C:\Program Files (x86)\SuperBoost\SuperBoost Software Updater\SuperBoostUpdater.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

--
End of file - 10043 bytes

Re: Hjt

Napsal: 30 bře 2016 17:14
od Rudy
Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Hjt

Napsal: 30 bře 2016 19:30
od Blaza7507
Tak tady to je....

# AdwCleaner v5.107 - Log soubor vytvořen 30/03/2016 o 20:24:57
# Aktualizováno 28/03/2016 by Xplode
# Databáze : 2016-03-30.1 [Server]
# Operační systém : Windows 8.1 Enterprise (x64)
# Jméno uživatele : Domča - DOMINIK
# Spuštěno z : C:\Users\Domča\Desktop\adwcleaner_5.107.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum

***** [ Služby ] *****


***** [ Složky ] *****

[-] Složka Smazáno : C:\Program Files (x86)\LuckyBrowse
[-] Složka Smazáno : C:\Program Files (x86)\bestadblocker
[-] Složka Smazáno : C:\Program Files (x86)\PriCeMinus
[-] Složka Smazáno : C:\Program Files (x86)\PriceMinuus
[-] Složka Smazáno : C:\ProgramData\LuckyBrowse
[-] Složka Smazáno : C:\ProgramData\15283751289368402890
[-] Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\LuckyBrowse
[-] Složka Smazáno : C:\Users\Domča\AppData\Roaming\RHEng
[-] Složka Smazáno : C:\Users\Domča\AppData\Roaming\SpringFiles
[-] Složka Smazáno : C:\Users\Domča\AppData\Roaming\Mozilla\Firefox\Profiles\m6hzd79r.default\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

***** [ Soubory ] *****

[-] Soubor Smazáno : C:\END

***** [ DLLs ] *****


***** [ Zástupci ] *****

[-] Zástupce Odvirováno : C:\Users\Domča\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] Zástupce Odvirováno : C:\Users\Domča\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofWarships.lnk
[-] Zástupce Odvirováno : C:\Users\Domča\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[-] Zástupce Odvirováno : C:\Users\Domča\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WorldofWarships.lnk
[-] Zástupce Odvirováno : C:\Users\Domča\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk

***** [ Naplánované úkoly ] *****


***** [ Registr ] *****

[-] Klávesa Smazáno : HKLM\SOFTWARE\86fdf46f-ee9c-34e8-8dc5-471c2dbb1e94
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\Interface\{2704C5CE-6D55-4E23-9B0F-CFE24AA97234}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\Interface\{970836ED-AE00-478D-BDF1-90D17713D3A2}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\Interface\{B3321940-9C27-4ABD-9AEF-F93D0B6E1238}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\Interface\{B985E3F1-6AB3-49C6-B4BE-DB354176C4DF}
[-] Klávesa Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{A336F17E-321F-43FA-9BE6-873BBDFF418E}
[-] Klávesa Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{2704C5CE-6D55-4E23-9B0F-CFE24AA97234}
[-] Klávesa Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{970836ED-AE00-478D-BDF1-90D17713D3A2}
[-] Klávesa Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{B3321940-9C27-4ABD-9AEF-F93D0B6E1238}
[-] Klávesa Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{B985E3F1-6AB3-49C6-B4BE-DB354176C4DF}
[-] Klávesa Smazáno : HKCU\Software\PRODUCTSETUP
[-] Klávesa Smazáno : HKCU\Software\WEBAPP
[-] Klávesa Smazáno : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Klávesa Smazáno : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
[-] Klávesa Smazáno : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Klávesa Smazáno : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
[-] Klávesa Smazáno : HKLM\SOFTWARE\LuckyBrowse
[-] Klávesa Smazáno : HKLM\SOFTWARE\mystartsearchSoftware
[-] Klávesa Smazáno : HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Obnoveno : HKU\S-1-5-21-2496355970-3517682961-3470756293-1001\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Hodnota Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]
[-] Klávesa Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[#] Hodnota Smazáno : HKU\S-1-5-21-2496355970-3517682961-3470756293-1001\Software\Microsoft\Internet Explorer\SearchScopes [DoNotAskAgain]

***** [ Webové prohlížeče ] *****


*************************

:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [4807 bytes] - [30/03/2016 20:24:57]
C:\AdwCleaner\AdwCleaner[S1].txt - [7248 bytes] - [30/03/2016 20:21:53]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [4953 bytes] ##########



Ještě bych se Vás chtěl zeptat, jestli jste se někdy nesetkal s touto hláškou : Ovladač zobrazení přestal pracovat a byl obnoven.. Asi to sem nepatří ale možná mi poradíte.. Vždy když spustím hru, tak se mi to třeba po 5 minutách objeví a celá hra spadne.. Hledal jsem to už snad všude na netu, ale nenašel jsem žádnou kloudnou odpověď. Prosím Vas tedy jestli by jste mi nepomohl.. Děkuju

Jinak mám tento ntb : Asus X553MA-SX376H

Re: Hjt

Napsal: 30 bře 2016 20:12
od Rudy

Re: Hjt

Napsal: 30 bře 2016 20:32
od Blaza7507
Tak snad jsem to udělal správně....

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Ran by Domča (administrator) on DOMINIK (30-03-2016 21:28:07)
Running from C:\Users\Domča\Desktop
Loaded Profiles: Domča (Available Profiles: Domča)
Platform: Windows 8.1 Enterprise (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(IObit) C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(SuperBoost Software) C:\Program Files (x86)\SuperBoost\SuperBoost Software Updater\SuperBoostUpdater.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(SuperBoost Software) C:\Program Files (x86)\SuperBoost\Superb Game Boost\SuperbGameBoostMain.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\Domča\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7021880 2015-12-05] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565448 2016-03-22] (LogMeIn Inc.)
Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKU\S-1-5-21-2496355970-3517682961-3470756293-1001\...\Run: [BingSvc] => C:\Users\Domča\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-04-07] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-2496355970-3517682961-3470756293-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3074128 2016-03-10] (Valve Corporation)
HKU\S-1-5-21-2496355970-3517682961-3470756293-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd)
HKU\S-1-5-21-2496355970-3517682961-3470756293-1001\...\Policies\Explorer: [HideSCAHealth] 1
HKU\S-1-5-18\...\Policies\Explorer: [HideSCAHealth] 1
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-12-05] (AVAST Software)
Startup: C:\Users\Domča\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk [2015-12-29]
ShortcutTarget: Curse.lnk -> C:\Users\Domča\AppData\Roaming\Curse Client\Bin\Curse.exe (Curse, Inc)
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\..\Interfaces\{00C5FED7-9408-4311-AB93-9666932C69F6}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{00C5FED7-9408-4311-AB93-9666932C69F6}: [DhcpNameServer] 192.168.254.254 10.0.254.1 10.0.0.1 8.8.8.8
Tcpip\..\Interfaces\{F0718E58-BA8F-4216-B8C1-529428B7AC14}: [DhcpNameServer] 192.168.254.254 10.0.254.1 10.0.0.1 8.8.8.8

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\S-1-5-21-2496355970-3517682961-3470756293-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-02-09] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2015-12-12] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-12-05] (AVAST Software)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-02-09] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-12-12] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-02-09] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-12-12] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-12-05] (AVAST Software)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-02-09] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-12] (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Domča\AppData\Roaming\Mozilla\Firefox\Profiles\m6hzd79r.default
FF Homepage: www.google.com
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_197.dll [2016-03-24] ()
FF Plugin: @java.com/DTPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-12-12] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2015-12-12] (Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @unity3d.com/UnityPlayer64,version=1.0 -> C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll [2015-08-15] (Unity Technologies ApS)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-24] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-12-12] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-12-12] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-18] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-2496355970-3517682961-3470756293-1001: @nsroblox.roblox.com/launcher -> C:\Users\Domča\AppData\Local\Roblox\Versions\version-4bc75dd7e05f4feb\\NPRobloxProxy.dll [2013-01-01] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-2496355970-3517682961-3470756293-1001: @nsroblox.roblox.com/launcher64 -> C:\Users\Domča\AppData\Local\Roblox\Versions\version-4bc75dd7e05f4feb\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-2496355970-3517682961-3470756293-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Domča\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-11-18] (Microsoft Corporation)
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-03-20] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-05]
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2015-12-05]

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-12-05]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [226440 2015-12-05] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [109520 2015-12-05] (AVAST Software)
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2278152 2015-12-09] (Broadcom Corporation.)
S4 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
S4 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [245544 2015-09-23] (EasyAntiCheat Ltd)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282096 2015-09-15] (Intel Corporation)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2945312 2016-01-14] (IObit)
R3 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2016-03-22] (LogMeIn, Inc.)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1284848 2016-03-21] (Overwolf LTD)
S3 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2016-03-27] ()
R2 sgbupt; C:\Program Files (x86)\SuperBoost\SuperBoost Software Updater\SuperBoostUpdater.exe [2444608 2016-02-01] (SuperBoost Software)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [348392 2013-10-31] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2013-10-31] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-12-05] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28144 2015-12-05] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2015-12-19] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [466400 2015-12-05] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-12-05] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-12-05] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1065720 2016-03-02] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [464256 2016-01-20] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [155304 2015-12-05] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2015-12-05] (AVAST Software)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2016-03-30] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [10491152 2016-03-30] (Broadcom Corporation)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 EvolveVirtualAdapter; C:\Windows\system32\DRIVERS\evolve.sys [21656 2015-08-29] (Echobit, LLC)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2016-03-22] (LogMeIn Inc.)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-09-15] (REALiX(tm))
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33960 2016-03-30] (Synaptics Incorporated)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2015-09-15] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [35856 2013-10-31] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [236888 2013-10-31] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124760 2013-10-31] (Microsoft Corporation)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-03-30 21:28 - 2016-03-30 21:28 - 00015814 _____ C:\Users\Domča\Desktop\FRST.txt
2016-03-30 21:26 - 2016-03-30 21:28 - 00000000 ____D C:\FRST
2016-03-30 21:25 - 2016-03-30 21:25 - 00112640 _____ (forum.viry.cz) C:\Users\Domča\Desktop\FRSTLauncher.exe
2016-03-30 21:23 - 2016-03-30 21:23 - 02374144 _____ (Farbar) C:\Users\Domča\Desktop\FRST64.exe
2016-03-30 20:21 - 2016-03-30 20:24 - 00000000 ____D C:\AdwCleaner
2016-03-30 20:20 - 2016-03-30 20:20 - 03102208 _____ C:\Users\Domča\Desktop\adwcleaner_5.107.exe
2016-03-30 18:56 - 2016-03-30 18:56 - 01046528 _____ C:\Users\Domča\Downloads\MicrosoftFixit50848.msi
2016-03-30 18:30 - 2016-03-30 18:30 - 00000000 ____D C:\Intel
2016-03-30 18:29 - 2016-03-30 18:30 - 00000000 ____D C:\Users\Domča\Downloads\VGA_Intel_Win81_64_VER101810340801
2016-03-30 18:28 - 2016-03-30 18:29 - 153021380 _____ C:\Users\Domča\Downloads\VGA_Intel_Win81_64_VER101810340801.zip
2016-03-30 16:26 - 2016-03-30 16:26 - 00388608 _____ (Trend Micro Inc.) C:\Users\Domča\Downloads\HijackThis.exe
2016-03-30 16:03 - 2016-03-30 16:03 - 00000000 ____D C:\Windows\LastGood.Tmp
2016-03-30 14:16 - 2016-03-30 14:16 - 00170712 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\bcbtums.sys
2016-03-30 14:16 - 2016-03-30 14:16 - 00166104 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwampfl.sys
2016-03-30 14:11 - 2016-03-30 14:11 - 03299832 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE2.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 02190992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 02110600 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 01928632 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 01435144 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 01382240 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 01286152 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 01008360 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00965032 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00933640 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00888472 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00873472 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00716112 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00596120 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00589072 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.DLL
2016-03-30 14:11 - 2016-03-30 14:11 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00467168 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00448592 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00381416 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00341160 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00341160 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00258504 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00231920 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00224264 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaemaxapo64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00221976 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00209544 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00172584 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00158704 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00090920 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00088328 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2016-03-30 14:11 - 2016-03-30 14:11 - 00075544 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 72203792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-03-30 14:10 - 2016-03-30 14:10 - 14057256 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 13120760 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 12986520 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO4064.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 10521552 _____ (Intel Corporation) C:\Windows\system32\IntelSSTAPO.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 07172920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 07096192 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 06264640 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64AF3.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 05776688 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICV2apo.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 05338936 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 05289952 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 04705536 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-03-30 14:10 - 2016-03-30 14:10 - 04486133 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-03-30 14:10 - 2016-03-30 14:10 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 03271912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 03195648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 03152591 _____ C:\Windows\system32\Drivers\rtkSSTsetting.dat
2016-03-30 14:10 - 2016-03-30 14:10 - 03052880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 02893568 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-03-30 14:10 - 2016-03-30 14:10 - 02823280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO7064.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 02692848 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RltkAPO.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 02437144 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv201.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 02030208 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01965816 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01959608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64AF3.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01601952 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01421104 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01356512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01334384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01211840 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01186168 _____ (Intel Corporation) C:\Windows\system32\IntelSstCApoPropPage.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01164336 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 01003864 _____ (Nahimic Inc) C:\Windows\system32\NahimicAPONSControl.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00998032 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00952984 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00931624 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00923752 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00727440 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00678192 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00677680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00618192 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00514528 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00500560 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00447728 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00428232 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00369304 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00362056 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64AF3.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00340648 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00327464 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00310424 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64F3.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00272720 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00253872 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00252880 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00192992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00151792 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00134208 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00118592 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00110992 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00105312 _____ C:\Windows\system32\audioLibVc.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00084616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-03-30 14:10 - 2016-03-30 14:10 - 00023696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-03-30 14:09 - 2016-03-30 14:09 - 00935168 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys
2016-03-30 14:09 - 2016-03-30 14:09 - 00082544 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2016-03-30 14:07 - 2016-03-30 14:07 - 10491152 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL63a.SYS
2016-03-30 14:07 - 2016-03-30 14:07 - 04151856 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv64.dll
2016-03-30 14:07 - 2016-03-30 14:07 - 03796016 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui64.dll
2016-03-30 14:07 - 2016-03-30 14:07 - 00033960 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2016-03-30 14:03 - 2016-03-30 14:03 - 00003272 _____ C:\Windows\System32\Tasks\SuperbGameBoost
2016-03-30 14:03 - 2016-03-30 14:03 - 00001270 _____ C:\Users\Public\Desktop\Superb Game Boost.lnk
2016-03-30 14:03 - 2016-03-30 14:03 - 00000000 ____D C:\Users\Domča\AppData\Roaming\SuperBoost
2016-03-30 14:03 - 2016-03-30 14:03 - 00000000 ____D C:\ProgramData\SuperBoost
2016-03-30 14:03 - 2016-03-30 14:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Superb Game Boost
2016-03-30 14:03 - 2016-03-30 14:03 - 00000000 ____D C:\Program Files (x86)\SuperBoost
2016-03-30 14:02 - 2016-03-30 14:02 - 00003182 _____ C:\Windows\System32\Tasks\SmartDefrag4_Startup
2016-03-30 14:02 - 2016-03-30 14:02 - 00003180 _____ C:\Windows\System32\Tasks\SmartDefrag4_Update
2016-03-30 14:02 - 2016-03-30 14:02 - 00001190 _____ C:\Users\Public\Desktop\Smart Defrag 4.lnk
2016-03-30 14:02 - 2016-03-30 14:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4
2016-03-30 14:02 - 2016-01-28 18:23 - 00033704 _____ (IObit) C:\Windows\system32\SmartDefragBootTime.exe
2016-03-30 14:02 - 2015-01-10 15:32 - 00128288 _____ (IObit) C:\Windows\SysWOW64\IObitSmartDefragExtension.dll
2016-03-30 14:02 - 2015-01-10 15:32 - 00128288 _____ (IObit) C:\Windows\system32\IObitSmartDefragExtension.dll
2016-03-30 14:02 - 2014-06-04 15:17 - 00021184 _____ (IObit) C:\Windows\system32\Drivers\SmartDefragDriver.sys
2016-03-30 13:49 - 2016-03-30 20:29 - 00003240 _____ C:\Windows\System32\Tasks\Driver Booster Scheduler
2016-03-30 13:49 - 2016-03-30 16:03 - 00002170 _____ C:\Users\Public\Desktop\Driver Booster 3.lnk
2016-03-30 13:49 - 2016-03-30 13:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3
2016-03-30 13:45 - 2016-03-30 13:45 - 14240797 _____ C:\Users\Domča\Downloads\Driver-Booster-3.0-Pro{SERIAL}-STEN.ok.rar
2016-03-30 13:45 - 2016-03-30 13:45 - 00000000 ____D C:\Users\Domča\Downloads\Driver-Booster-3.0-Pro{SERIAL}-STEN.ok
2016-03-28 21:15 - 2016-03-28 21:15 - 00001252 _____ C:\Users\Public\Desktop\World of Warcraft.lnk
2016-03-28 21:15 - 2016-03-28 21:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
2016-03-28 21:14 - 2016-03-29 20:29 - 00000000 ____D C:\Program Files (x86)\World of Warcraft
2016-03-28 21:12 - 2016-03-29 21:33 - 00000000 ____D C:\Users\Domča\AppData\Local\Battle.net
2016-03-28 21:12 - 2016-03-28 21:12 - 00001160 _____ C:\Users\Public\Desktop\Battle.net.lnk
2016-03-28 21:12 - 2016-03-28 21:12 - 00000000 ____D C:\Users\Domča\AppData\Local\Blizzard Entertainment
2016-03-28 21:12 - 2016-03-28 21:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2016-03-28 21:12 - 2016-03-28 21:12 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2016-03-28 21:11 - 2016-03-29 18:42 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-03-28 21:11 - 2016-03-28 21:13 - 00000000 ____D C:\Users\Domča\AppData\Roaming\Battle.net
2016-03-28 21:10 - 2016-03-28 21:10 - 02950200 _____ (Blizzard Entertainment) C:\Users\Domča\Downloads\Battle.net-Setup.exe
2016-03-27 13:13 - 2016-03-27 13:13 - 00283032 _____ C:\Windows\SysWOW64\PnkBstrB.xtr
2016-03-27 13:13 - 2016-03-27 13:13 - 00000000 ____D C:\Users\Domča\AppData\Local\PunkBuster
2016-03-27 11:44 - 2016-03-27 11:39 - 03130440 _____ C:\Windows\SysWOW64\pbsvc_blr.exe
2016-03-27 11:13 - 2016-03-27 11:13 - 00000222 _____ C:\Users\Domča\Desktop\Blacklight Retribution.url
2016-03-26 12:20 - 2016-03-26 12:20 - 00000000 ____D C:\Users\Domča\AppData\Local\EdgeOfReality
2016-03-26 11:38 - 2016-03-26 11:38 - 00000222 _____ C:\Users\Domča\Desktop\Loadout.url
2016-03-25 17:31 - 2016-03-25 17:35 - 732846080 _____ C:\Users\Domča\Downloads\Pach-Krve-3-CZ.avi
2016-03-25 17:25 - 2016-03-25 17:30 - 1190546272 _____ C:\Users\Domča\Downloads\Pach-krve-2.-cz.avi
2016-03-24 13:21 - 2016-03-24 13:21 - 00001786 _____ C:\Users\Domča\Desktop\Play Saints Row III DirectX 11.lnk
2016-03-24 13:21 - 2016-03-24 13:21 - 00001761 _____ C:\Users\Domča\Desktop\Play Saints Row III DirectX 9.lnk
2016-03-24 11:56 - 2016-03-24 12:11 - 00000000 ____D C:\Users\Domča\Downloads\Saints Row The Third PC full game + all DLC active ^^nosTEAM^^
2016-03-24 11:44 - 2016-03-24 11:50 - 54954582 _____ C:\Users\Domča\Downloads\SaintsRow3.exe
2016-03-24 09:07 - 2016-03-24 09:07 - 01090944 _____ (Unity Technologies ApS) C:\Users\Domča\Downloads\UnityWebPlayer(1).exe
2016-03-24 09:06 - 2016-03-24 09:07 - 03249480 _____ (Unity Technologies ApS) C:\Users\Domča\Downloads\UnityWebPlayer.exe
2016-03-23 19:47 - 2016-03-23 19:47 - 00000938 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2016-03-23 19:47 - 2016-03-23 19:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2016-03-23 19:47 - 2016-03-23 19:47 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2016-03-23 17:44 - 2016-03-23 17:44 - 02827339 _____ C:\Users\Domča\Downloads\vault-tecresourcepackv120alpha.zip
2016-03-23 17:35 - 2016-03-23 17:35 - 03620257 _____ C:\Users\Domča\Downloads\DayZ 1.8.X.zip
2016-03-22 18:34 - 2016-03-22 18:35 - 29093629 _____ C:\Users\Domča\Downloads\Last_Days_1.8.zip
2016-03-22 18:24 - 2016-03-22 18:25 - 43280054 _____ C:\Users\Domča\Downloads\MW3 Resource Pack.zip
2016-03-22 18:15 - 2016-03-22 18:15 - 03064022 _____ C:\Users\Domča\Downloads\MTA RP 2.0.zip
2016-03-22 18:06 - 2016-03-22 18:06 - 05315254 _____ C:\Users\Domča\Downloads\BOW TO GUN - v.1.7 for 1.8.X.zip
2016-03-22 17:16 - 2016-03-22 17:16 - 00045680 ____H (LogMeIn Inc.) C:\Windows\system32\Drivers\Hamdrv.sys
2016-03-20 22:15 - 2016-03-20 22:15 - 00000000 ____D C:\Users\Domča\Documents\Activision
2016-03-20 22:07 - 2016-03-20 22:07 - 00002368 _____ C:\Users\Domča\Desktop\Play PROTOTYPE 2 nosTEAM.lnk
2016-03-20 21:11 - 2016-03-23 15:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-03-20 20:37 - 2016-03-20 22:07 - 00000000 ____D C:\Users\Domča\Downloads\PROTOTYPE 2 PC full game + Radnet DLC ^^nosTEAM^^
2016-03-20 20:28 - 2016-03-20 20:33 - 55551658 _____ C:\Users\Domča\Downloads\Prototype2.exe
2016-03-18 19:12 - 2016-03-18 19:12 - 00003080 _____ C:\Windows\System32\Tasks\{4AE9201C-AFFF-4351-B043-8341D1B42BCF}
2016-03-18 19:10 - 2016-03-18 19:12 - 00000000 ____D C:\Users\Domča\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Return to Castle Wolfenstein
2016-03-18 19:10 - 2016-03-18 19:10 - 00001089 _____ C:\Users\Domča\Desktop\Wolfenstein (Single Player).lnk
2016-03-18 19:10 - 2016-03-18 19:10 - 00001089 _____ C:\Users\Domča\Desktop\Wolfenstein (Multiplayer).lnk
2016-03-18 19:10 - 2016-03-18 19:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Return to Castle Wolfenstein
2016-03-18 19:10 - 2016-03-18 19:10 - 00000000 ____D C:\Program Files (x86)\Return to Castle Wolfenstein
2016-03-18 19:08 - 2016-03-18 19:10 - 00000810 _____ C:\Windows\Rtcw.INI
2016-03-18 17:26 - 2013-12-29 12:30 - 1054997986 _____ C:\Users\Domča\Desktop\Return-to-Castle-Wolfenstein---Čeština-s-dabingem.rar
2016-03-18 16:46 - 2016-03-18 16:46 - 00000000 ____D C:\Users\Domča\Downloads\Metro 2033 Redux FIXED PC full game ^^nosTEAM^^
2016-03-18 16:39 - 2016-03-18 16:44 - 55225126 _____ C:\Users\Domča\Downloads\Metro2033-Redux.exe
2016-03-18 16:37 - 2016-03-18 16:37 - 00000000 ____D C:\Users\Domča\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crashday
2016-03-18 16:37 - 2016-03-18 16:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crashday
2016-03-18 16:34 - 2016-03-18 16:37 - 00000000 ____D C:\Program Files (x86)\Crashday
2016-03-18 16:28 - 2016-03-18 16:32 - 00000000 ____D C:\CrashDay
2016-03-18 16:20 - 2016-03-18 16:24 - 743993714 _____ C:\Users\Domča\Downloads\Crashday.rar
2016-03-18 16:03 - 2016-03-18 16:03 - 00000000 ____D C:\Users\Domča\Downloads\BioShock PC full game ^^nosTEAM^^
2016-03-18 15:56 - 2016-03-18 16:01 - 55053845 _____ C:\Users\Domča\Downloads\BioShock.exe
2016-03-13 19:23 - 2016-03-13 19:25 - 104908883 _____ (Aslain ) C:\Users\Domča\Downloads\Aslains_XVM_WoT_Modpack_Installer_v.9.14.04.exe
2016-03-11 20:00 - 2016-03-24 14:19 - 00000000 ____D C:\Users\Domča\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2016-03-06 16:58 - 2016-03-11 20:01 - 00000000 ____D C:\Users\Domča\Downloads\Killing Floor PC full game multiplayer + SP v_1.0.3.9 ^^nosTEAM^^
2016-03-06 16:51 - 2015-12-10 18:56 - 03589050 _____ () C:\Users\Domča\Desktop\Minecraft warez launcher.exe
2016-03-06 16:42 - 2016-03-06 16:42 - 00001920 _____ C:\Users\Public\Desktop\MC Titan Launcher.lnk
2016-03-06 16:38 - 2016-03-06 16:38 - 00001991 _____ C:\Users\Public\Desktop\Hrát na MC Titan www.mctitan.cz.lnk
2016-03-03 13:49 - 2015-04-04 15:08 - 00000000 ____D C:\Users\Domča\Desktop\com
2016-03-02 19:43 - 2016-03-02 19:44 - 01674929 _____ (TeamExtreme) C:\Users\Domča\Desktop\Minecraft-warez-Launcher-1.7.9-by-nečum.exe
2016-02-29 17:23 - 2016-02-29 17:23 - 00000000 ____D C:\ProgramData\RELOADED

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-03-30 21:26 - 2013-08-22 08:56 - 00148386 _____ C:\Windows\system32\slmgr.vbs
2016-03-30 21:26 - 2013-08-22 01:52 - 00148386 _____ C:\Windows\SysWOW64\slmgr.vbs
2016-03-30 21:18 - 2015-06-24 20:39 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-03-30 20:46 - 2015-05-01 13:46 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2496355970-3517682961-3470756293-1001
2016-03-30 20:29 - 2015-09-15 12:01 - 00002872 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Domča)
2016-03-30 20:27 - 2015-08-28 18:37 - 00000000 ____D C:\Users\Domča\AppData\Local\LogMeIn Hamachi
2016-03-30 20:26 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-03-30 20:24 - 2016-02-11 19:45 - 00001097 _____ C:\Users\Domča\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofWarships.lnk
2016-03-30 20:24 - 2015-05-01 13:37 - 00000981 _____ C:\Users\Domča\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-03-30 18:13 - 2015-09-15 12:06 - 00000000 ____D C:\ProgramData\ProductData
2016-03-30 16:15 - 2015-12-05 16:10 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-03-30 16:03 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf
2016-03-30 15:06 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2016-03-30 14:16 - 2015-09-15 12:33 - 00006786 _____ C:\Windows\system32\Drivers\rtwavesEFX.dat
2016-03-30 14:16 - 2015-09-15 12:33 - 00002626 _____ C:\Windows\system32\Drivers\rtwavesMFX.dat
2016-03-30 14:15 - 2015-09-15 12:32 - 00319042 _____ C:\Windows\system32\Drivers\RTWAVES40.dat
2016-03-30 14:14 - 2015-09-15 12:32 - 00000000 ____D C:\Windows\system32\DAX2
2016-03-30 14:13 - 2015-09-15 12:32 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-03-30 14:13 - 2013-09-30 06:21 - 01745984 _____ C:\Windows\system32\PerfStringBackup.INI
2016-03-30 14:13 - 2013-09-30 05:57 - 00739924 _____ C:\Windows\system32\perfh005.dat
2016-03-30 14:13 - 2013-09-30 05:57 - 00151610 _____ C:\Windows\system32\perfc005.dat
2016-03-30 14:02 - 2015-09-15 12:01 - 00000000 ____D C:\Users\Domča\AppData\Roaming\IObit
2016-03-30 14:02 - 2015-09-15 12:01 - 00000000 ____D C:\ProgramData\IObit
2016-03-30 14:02 - 2015-09-15 12:01 - 00000000 ____D C:\Program Files (x86)\IObit
2016-03-30 13:16 - 2015-05-01 13:37 - 00000000 ____D C:\Users\Domča
2016-03-29 15:36 - 2015-05-01 17:03 - 00352256 ___SH C:\Users\Domča\Desktop\Thumbs.db
2016-03-29 15:18 - 2015-07-24 10:16 - 00000000 ____D C:\Program Files (x86)\Steam
2016-03-29 15:18 - 2015-05-30 18:42 - 00000000 ____D C:\Users\Domča\AppData\Roaming\TS3Client
2016-03-29 15:17 - 2015-06-10 22:00 - 00000000 ____D C:\Users\Domča\AppData\Local\CrashDumps
2016-03-29 14:55 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\NDF
2016-03-28 21:11 - 2015-07-08 15:56 - 00000000 ____D C:\ProgramData\Battle.net
2016-03-27 22:20 - 2015-05-11 18:00 - 00000000 ____D C:\Users\Domča\AppData\Roaming\Skype
2016-03-27 22:10 - 2015-05-02 16:51 - 00000000 ____D C:\Users\Domča\AppData\LocalLow\RbxLogs
2016-03-27 13:13 - 2015-07-24 20:19 - 00283032 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2016-03-27 13:13 - 2015-07-24 20:19 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2016-03-27 11:44 - 2015-07-24 20:19 - 00189248 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2016-03-27 11:13 - 2015-05-02 12:35 - 00000000 ____D C:\Users\Domča\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-03-26 10:57 - 2015-09-10 12:31 - 00000000 ____D C:\Games
2016-03-25 11:49 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2016-03-25 11:34 - 2015-12-14 11:32 - 00000000 ____D C:\Program Files (x86)\Overwolf
2016-03-25 09:50 - 2015-05-25 17:06 - 00000000 ____D C:\Users\Domča\AppData\Local\Unity
2016-03-24 23:15 - 2015-12-29 18:33 - 00000000 ____D C:\Users\Domča\AppData\Roaming\Curse Client
2016-03-24 20:18 - 2015-06-24 20:39 - 00003802 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-03-24 14:00 - 2016-02-27 22:45 - 00000000 ____D C:\Users\Domča\AppData\Local\SKIDROW
2016-03-24 13:57 - 2015-06-15 15:53 - 00000000 ____D C:\Users\Domča\AppData\Roaming\uTorrent
2016-03-19 17:46 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2016-03-16 19:07 - 2015-06-03 19:10 - 00000000 ____D C:\Users\Domča\AppData\Local\ElevatedDiagnostics
2016-03-15 15:30 - 2015-05-17 18:19 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-03-12 13:40 - 2015-05-01 14:37 - 00000000 ____D C:\Windows\system32\MRT
2016-03-12 13:29 - 2015-05-01 14:37 - 143659408 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-03-11 20:23 - 2013-08-22 16:44 - 00411080 _____ C:\Windows\system32\FNTCACHE.DAT
2016-03-11 20:00 - 2015-05-02 16:51 - 00000250 _____ C:\Users\Domča\AppData\LocalLow\rbxcsettings.rbx
2016-03-10 06:18 - 2013-08-22 15:25 - 00000167 _____ C:\Windows\win.ini
2016-03-09 16:08 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-06 17:29 - 2015-12-05 16:12 - 00003046 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1449324775
2016-03-06 17:29 - 2015-12-05 16:12 - 00001059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-03-06 16:50 - 2015-06-12 17:37 - 00000000 ____D C:\Users\Domča\AppData\Roaming\.minecraft
2016-03-06 16:44 - 2016-01-23 15:05 - 00000000 ____D C:\Users\Domča\AppData\Roaming\.technic
2016-03-02 18:37 - 2015-12-05 16:10 - 01065720 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2016-02-29 17:23 - 2015-06-07 18:40 - 00000000 ____D C:\Users\Domča\Documents\My Games

==================== Files in the root of some directories =======

2015-06-22 20:15 - 2015-06-22 20:15 - 6420480 _____ () C:\Program Files (x86)\GUTABAE.tmp
2015-09-15 12:33 - 2015-09-15 12:33 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\Domča\AppData\Local\Temp\libeay32.dll
C:\Users\Domča\AppData\Local\Temp\msvcr120.dll
C:\Users\Domča\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Dom�a\Desktop" je 1044 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: Hjt

Napsal: 30 bře 2016 20:37
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
S4 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
S4 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
C:\Program Files (x86)\GUTABAE.tmp
C:\ProgramData\DP45977C.lfl
C:\Users\Domča\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Hjt

Napsal: 30 bře 2016 20:47
od Blaza7507
Fix result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by Domča (2016-03-30 21:46:36) Run:1
Running from C:\Users\Domča\Desktop
Loaded Profiles: Domča (Available Profiles: Domča)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528 2015-11-09] (Oracle Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
S4 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
S4 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
C:\Program Files (x86)\GUTABAE.tmp
C:\ProgramData\DP45977C.lfl
C:\Users\Domča\AppData\Local\Temp
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => key removed successfully
HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => key removed successfully
HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => key not found.
"HKCR\PROTOCOLS\Handler\skypec2c" => key removed successfully
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => key removed successfully
HKCR\Wow6432Node\PROTOCOLS\Handler\skypec2c => key not found.
"HKCR\Wow6432Node\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => key removed successfully
C:\Program Files (x86)\Skype\Toolbars => moved successfully
c2cautoupdatesvc => service removed successfully
c2cpnrsvc => service removed successfully
C:\Program Files (x86)\GUTABAE.tmp => moved successfully
C:\ProgramData\DP45977C.lfl => moved successfully
C:\Users\Domča\AppData\Local\Temp => moved successfully

==== End of Fixlog 21:46:36 ====

Re: Hjt

Napsal: 30 bře 2016 21:22
od Rudy
Smatáno. Log je již OK.

Re: Hjt

Napsal: 31 bře 2016 09:23
od Blaza7507
Moc Vám děkuji...

Re: Hjt

Napsal: 31 bře 2016 17:49
od Rudy
Rádo se stalo! :)