Tak to se moc omlouvám...koukal jsem nejspíš do jiného threadu. A za postnutí 2x toho samého taky

Tohle byl měl být log z frst:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:18-04-2016
Ran by Rigin (administrator) on RIGIN-PC (18-04-2016 22:37:30)
Running from C:\Users\Rigin\Downloads
Loaded Profiles: Rigin (Available Profiles: Rigin)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Highresolution Enterprises) C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Akamai Technologies, Inc.) C:\Users\Rigin\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Rigin\AppData\Local\Akamai\netsession_win.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
() C:\Users\Rigin\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Rigin\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Mister Group) C:\Program Files (x86)\System Explorer\SystemExplorer.exe
(Mister Group) C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Microsoft Corporation) C:\Windows\System32\wbengine.exe
(Microsoft Corporation) C:\Windows\System32\vds.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7174728 2013-03-29] (Realtek Semiconductor)
HKLM\...\Run: [XMouseButtonControl] => C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe [1171088 2013-10-06] (Highresolution Enterprises)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397568 2016-03-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-11] (Intel Corporation)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [506864 2013-03-08] (MSI)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282120 2013-05-02] (CANON INC.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [453736 2013-02-19] (CANON INC.)
HKLM-x32\...\Run: [SystemExplorerAutoStart] => "C:\Program Files (x86)\System Explorer\SystemExplorer.exe" /TRAY
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [589976 2015-11-16] (Razer Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7390608 2016-04-17] (AVAST Software)
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673184 2013-07-03] (Disc Soft Ltd)
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Rigin\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Rigin\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Rigin\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\...\Run: [EA Core] => "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [28201096 2012-01-12] (Electronic Arts)
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\...\Policies\Explorer: []
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\...\MountPoints2: {71a8838e-2698-11e3-afdd-d43d7ed88a52} - D:\Autorun.exe
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\ssText3d.scr [333824 2010-11-21] (Microsoft Corporation)
HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-04-17] (AVAST Software)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2013-02-08] (Autodesk, Inc.)
ShellIconOverlayIdentifiers: [Správa překryvné ikony digitálních podpisů AutoCADu ] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2013-02-08] (Autodesk, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{631FAC45-085B-4166-AC2A-24F2F69C281E}: [DhcpNameServer] 10.0.0.138
ManualProxies:
Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://
www.google.com/?trackid=sp-006
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://
www.google.com/search?trackid=sp-006&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://
www.google.com/search?trackid=sp-006&q={searchTerms}
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3790502155-2551764370-1862606806-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://
www.google.com/?trackid=sp-006
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://
www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://
www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {1CAB7C62-64CF-4CD3-8E3B-731F358C685A} URL = hxxp://
www.firmy.cz/?q={searchTerms}&sourceid= ... arch_16194
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {1D1B6D60-921D-4684-9EED-6CA48E4F5E1C} URL = hxxp://
www.mapy.cz/?query={searchTerms}&source ... arch_16194
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {29BC9CE6-F45D-4868-BC65-24FBD13070DE} URL = hxxp://
www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_16194
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {2E88F80C-6737-4D27-AC17-30687E590353} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {54BDAEEA-FF7D-452F-AC58-84ABC8F1CEC7} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {7B8F7331-C609-4D10-A8EA-B6AF09AC0056} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {C60BF837-A45D-485D-ABC1-0CFDE6275B29} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_16194
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {D89ACC6B-1096-4C8B-B852-8D1E7D642DD2} URL = hxxp://
www.novinky.cz/hledej?w={searchTerms}&s ... arch_16194
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://
www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> {F3F64BB4-6C79-4560-8848-F35E60005164} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_16194
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll [2014-01-24] (CANON INC.)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-04-17] (AVAST Software)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2014-01-24] (CANON INC.)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-04-17] (AVAST Software)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2014-01-24] (CANON INC.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2014-01-24] (CANON INC.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.)
Toolbar: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.)
Toolbar: HKU\S-1-5-21-3790502155-2551764370-1862606806-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll [2014-01-24] (CANON INC.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll [2016-04-07] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll [2016-04-07] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-03-12] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-03-12] (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-03] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-01-21] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-01-21] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-01-21] (VideoLAN)
FF HKLM\...\Firefox\Extensions: [
wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-04-17]
FF HKLM-x32\...\Firefox\Extensions: [
wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
Chrome:
=======
CHR HomePage: Default -> hxxp://
www.search.ask.com/?gct=hp
CHR StartupUrls: Default -> "hxxps://
www.google.com/?trackid=sp-006"
CHR DefaultSearchURL: Default -> hxxps://
www.google.de/search?q={searchTerms}?trackid=sp-006
CHR DefaultSuggestURL: Default -> hxxps://
www.google.com/complete/search?client=c ... earchTerms}
CHR Profile: C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (Disk Google) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2015-02-20]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2016-02-11]
CHR Extension: (YouTube) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-26]
CHR Extension: (Adblock Plus) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-10]
CHR Extension: (Vyhledávání Google) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
CHR Extension: (Avast Online Security) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-04-17]
CHR Extension: (Facebook Unseen) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\iicapmagmhahddefgokbabbgieiogjop [2015-12-31]
CHR Extension: (Skype) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-12-19]
CHR Extension: (iLivid) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nafaimnnclfjfedmmabolbppcngeolgf [2016-04-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-03]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2015-10-27]
CHR Extension: (Gmail) - C:\Users\Rigin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-04-17]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296 2016-04-17] (AVAST Software)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation)
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [175136 2014-09-04] (EasyAntiCheat Ltd)
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-05-07] (Freemake) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1164672 2016-03-30] (NVIDIA Corporation)
R2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-12-15] (Hi-Rez Studios) [File not signed]
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140936 2013-05-14] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-03-12] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation)
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161264 2013-02-20] (MSI)
R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [30240 2013-04-18] (MICRO-STAR INTERNATIONAL CO., LTD.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1880960 2016-03-30] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634048 2016-03-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522496 2016-03-30] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [338576 2012-01-12] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-02-20] ()
S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP4c\RpcAgentSrv.exe [68760 2009-06-13] (SiSoftware) [File not signed]
R3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [820960 2014-12-20] (Mister Group)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [762320 2015-01-17] (Tunngle.net GmbH) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-04-17] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-04-17] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-04-17] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-04-17] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-04-17] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-04-17] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [465792 2016-04-17] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [166432 2016-04-17] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287528 2016-04-17] (AVAST Software)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-09-26] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-04-16] ()
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [49584 2016-04-18] ()
S3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2013-02-13] ()
S1 mbmiodrvr; C:\Windows\syswow64\mbmiodrvr.sys [4608 2004-04-10] (
cansoft@livewiredev.com) [File not signed]
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MSI)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28032 2016-03-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-03-21] (NVIDIA Corporation)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
S4 NVHDA; system32\drivers\nvhda64v.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-18 22:37 - 2016-04-18 22:37 - 00027593 _____ C:\Users\Rigin\Downloads\FRST.txt
2016-04-18 22:37 - 2016-04-18 22:37 - 00000000 ____D C:\FRST
2016-04-18 22:35 - 2016-04-18 22:35 - 02375680 _____ (Farbar) C:\Users\Rigin\Downloads\FRST64.exe
2016-04-18 22:21 - 2016-04-18 22:21 - 03683904 _____ C:\Users\Rigin\Downloads\adwcleaner_5.112 (1).exe
2016-04-18 21:44 - 2016-04-18 21:44 - 00388608 _____ (Trend Micro Inc.) C:\Users\Rigin\Downloads\HijackThis.exe
2016-04-18 07:08 - 2016-04-18 07:08 - 00049584 _____ C:\Windows\system32\Drivers\hitmanpro37.sys
2016-04-18 07:01 - 2016-04-18 07:01 - 00004966 _____ C:\Windows\system32\.crusader
2016-04-17 22:48 - 2016-04-18 07:07 - 00000000 ____D C:\ProgramData\HitmanPro
2016-04-17 22:48 - 2016-04-17 22:48 - 11441744 _____ (SurfRight B.V.) C:\Users\Rigin\Downloads\hitmanpro_x64 (1).exe
2016-04-17 22:47 - 2016-04-17 22:47 - 11441744 _____ (SurfRight B.V.) C:\Users\Rigin\Downloads\hitmanpro_x64.exe
2016-04-17 22:33 - 2016-04-17 22:33 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-04-17 22:33 - 2016-04-17 22:33 - 00003048 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1460925214
2016-04-17 22:33 - 2016-04-17 22:33 - 00001037 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2016-04-17 22:33 - 2016-04-17 22:33 - 00001037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-04-17 22:32 - 2016-04-17 22:32 - 00287528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys
2016-04-17 22:32 - 2016-04-17 22:32 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-04-17 22:32 - 2016-04-17 22:32 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-04-17 22:32 - 2016-04-17 22:32 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2016-04-17 22:32 - 2016-04-17 22:32 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\AVAST Software
2016-04-17 22:32 - 2016-04-17 22:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-04-17 22:32 - 2016-04-17 22:31 - 01070904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2016-04-17 22:32 - 2016-04-17 22:31 - 00465792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2016-04-17 22:32 - 2016-04-17 22:31 - 00166432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-04-17 22:32 - 2016-04-17 22:31 - 00107792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-04-17 22:32 - 2016-04-17 22:31 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-04-17 22:32 - 2016-04-17 22:31 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-04-17 22:32 - 2016-04-17 22:31 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-04-17 22:31 - 2016-04-17 22:33 - 00000000 ____D C:\Program Files\AVAST Software
2016-04-17 22:31 - 2016-04-17 22:31 - 00398152 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-04-17 22:31 - 2016-04-17 22:31 - 00052184 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-04-17 22:23 - 2016-04-18 22:31 - 00000000 ____D C:\AdwCleaner
2016-04-17 22:07 - 2016-04-17 22:08 - 05206904 _____ (AVAST Software) C:\Users\Rigin\Downloads\avast_free_antivirus_setup_online.exe
2016-04-17 22:07 - 2016-04-17 22:08 - 05206904 _____ (AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe
2016-04-17 13:59 - 2016-04-17 13:59 - 00000000 ____D C:\Users\Rigin\Downloads\MirrorsEdge
2016-04-16 20:41 - 2016-04-16 20:41 - 01270466 _____ C:\Users\Rigin\Downloads\ProcessExplorer.zip
2016-04-16 20:41 - 2016-02-05 07:11 - 02694816 ____N (Sysinternals -
www.sysinternals.com) C:\Users\Rigin\Downloads\procexp.exe
2016-04-16 20:41 - 2016-02-05 07:03 - 00072154 ____N C:\Users\Rigin\Downloads\procexp.chm
2016-04-16 20:41 - 2015-10-27 07:32 - 00007490 ____N C:\Users\Rigin\Downloads\Eula.txt
2016-04-16 18:25 - 2016-04-16 18:29 - 12946874 _____ C:\Users\Rigin\Downloads\MirrorsEdge.rar
2016-04-16 13:04 - 2016-04-16 13:04 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys
2016-04-16 13:03 - 2016-04-16 13:03 - 03286400 _____ (Enigma Software Group USA, LLC.) C:\Users\Rigin\Downloads\SpyHunter-Installer.exe
2016-04-16 12:55 - 2016-04-16 12:55 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-04-16 12:54 - 2016-04-16 12:55 - 22851472 _____ (Malwarebytes ) C:\Users\Rigin\Downloads\mbam-setup-2.2.1.1043.exe
2016-04-15 17:56 - 2016-04-15 17:56 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\NVIDIA
2016-04-15 17:56 - 2016-04-15 17:56 - 00000000 ____D C:\ProgramData\EA Core
2016-04-15 17:54 - 2016-04-15 17:54 - 00000983 _____ C:\Users\Public\Desktop\Origin.lnk
2016-04-15 17:54 - 2016-04-15 17:54 - 00000000 ____D C:\Users\Rigin\AppData\Local\Origin
2016-04-15 17:54 - 2016-04-15 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2016-04-15 17:54 - 2016-04-15 17:54 - 00000000 ____D C:\Program Files (x86)\Origin Games
2016-04-15 17:54 - 2016-04-15 17:54 - 00000000 ____D C:\Program Files (x86)\Origin
2016-04-15 17:50 - 2016-04-15 17:50 - 00002181 _____ C:\Users\Public\Desktop\Mirror's Edge™.lnk
2016-04-15 17:44 - 2016-04-15 17:44 - 00000000 ____D C:\Windows\SysWOW64\AGEIA
2016-04-15 17:44 - 2016-04-15 17:44 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2016-04-15 17:03 - 2016-04-15 17:03 - 07878008 _____ (Microsoft Corporation) C:\Users\Rigin\Downloads\Xbox360_64Eng (2).exe
2016-04-15 16:52 - 2016-04-15 16:52 - 00000000 ____D C:\Program Files (x86)\EA Games
2016-04-15 16:01 - 2016-04-15 16:02 - 00000000 ____D C:\Program Files (x86)\Goat Simulator
2016-04-15 16:01 - 2016-04-15 16:01 - 00001144 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Goat Simulator.lnk
2016-04-15 16:01 - 2016-04-15 16:01 - 00001132 _____ C:\Users\Public\Desktop\Goat Simulator.lnk
2016-04-15 15:30 - 2016-04-15 16:01 - 00000000 ____D C:\Users\Rigin\Downloads\Goat.Simulator-DOGE
2016-04-15 15:30 - 2016-04-15 15:30 - 00010812 _____ C:\Users\Rigin\Downloads\[CzT]Goat_Simulator_2014_.torrent
2016-04-15 14:53 - 2016-04-15 14:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories
2016-04-15 14:53 - 2016-04-15 14:53 - 00000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2016-04-15 14:50 - 2016-04-15 14:51 - 00000000 ____D C:\31c48ac92c063bb19d9a
2016-04-15 14:49 - 2016-04-15 14:50 - 07878008 _____ (Microsoft Corporation) C:\Users\Rigin\Downloads\Xbox360_64Eng.exe
2016-04-15 14:49 - 2016-04-15 14:50 - 07878008 _____ (Microsoft Corporation) C:\Users\Rigin\Downloads\Xbox360_64Eng (1).exe
2016-04-15 13:58 - 2016-04-15 14:00 - 00000000 ____D C:\Users\Rigin\Downloads\Mirrors.Edge-RELOADED
2016-04-15 13:57 - 2016-04-15 13:57 - 00016599 _____ C:\Users\Rigin\Downloads\[CzT]Mirror_s_Edge_v1_01_CZ_2009_.torrent
2016-04-08 15:31 - 2016-04-08 15:33 - 00000000 ____D C:\Users\Rigin\Downloads\update
2016-04-08 15:30 - 2016-04-08 15:30 - 00011780 _____ C:\Users\Rigin\Downloads\[CzT]Fallout_4_Update_v1_1_30_2015_.torrent
2016-04-08 15:27 - 2016-04-15 17:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-04-08 15:27 - 2016-04-08 15:27 - 00001381 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2016-04-08 15:27 - 2016-03-30 04:21 - 01373680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2016-04-08 15:27 - 2016-03-30 04:21 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2016-04-08 15:27 - 2016-03-30 04:20 - 01767248 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2016-04-08 15:27 - 2016-03-30 04:20 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2016-04-08 15:27 - 2016-03-30 04:20 - 00112216 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2016-04-08 15:26 - 2016-03-21 22:01 - 00109632 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2016-04-08 15:26 - 2016-03-21 22:01 - 00100416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2016-04-08 15:26 - 2016-03-21 22:01 - 00056384 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2016-04-08 15:18 - 2016-04-08 15:20 - 360454008 _____ (NVIDIA Corporation) C:\Users\Rigin\Downloads\364.72-desktop-win8-win7-winvista-64bit-international-whql.exe
2016-04-08 15:18 - 2016-04-08 15:18 - 44960752 _____ (NVIDIA Corporation) C:\Users\Rigin\Downloads\GeForce_Experience_v2.11.2.55.exe
2016-04-07 19:29 - 2016-04-07 19:29 - 05934784 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2016-04-07 19:06 - 2016-04-07 19:06 - 00000000 ____D C:\Users\Rigin\AppData\Local\Fallout4
2016-04-07 14:26 - 2016-04-08 15:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout 4
2016-04-07 14:04 - 2016-04-08 15:51 - 00000000 ____D C:\Program Files (x86)\Fallout 4
2016-04-07 10:43 - 2016-04-07 19:30 - 00000000 ____D C:\Users\Rigin\Downloads\Fallout.4-CODEX
2016-04-07 10:43 - 2016-04-07 10:43 - 00031857 _____ C:\Users\Rigin\Downloads\[CzT]Fallout_4_2015_.torrent
2016-04-05 12:04 - 2016-04-08 15:11 - 00000000 ____D C:\ProgramData\NVIDIA
2016-04-05 12:03 - 2016-03-22 06:12 - 00213952 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-04-05 12:03 - 2016-03-22 06:12 - 00201664 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2016-04-05 12:03 - 2016-03-22 04:25 - 06369728 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-04-05 12:03 - 2016-03-22 04:25 - 02993088 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-04-05 12:03 - 2016-03-22 04:25 - 02561472 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-04-05 12:03 - 2016-03-22 04:25 - 01264064 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2016-04-05 12:03 - 2016-03-22 04:25 - 00532536 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-04-05 12:03 - 2016-03-22 04:25 - 00393784 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-04-05 12:03 - 2016-03-22 04:25 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-04-05 12:03 - 2016-03-22 04:25 - 00069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-04-05 12:03 - 2016-03-18 20:10 - 06253721 _____ C:\Windows\system32\nvcoproc.bin
2016-04-05 11:52 - 2016-03-22 06:12 - 42923576 _____ C:\Windows\system32\nvcompiler.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 37567424 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 31555008 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 25321408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 21355248 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 20897416 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 19004040 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 17748712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 17342392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 17248408 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 16446032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 14128840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 12567608 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-04-05 11:52 - 2016-03-22 06:12 - 10550736 _____ C:\Windows\system32\nvptxJitCompiler.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 08659472 _____ C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 03714472 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 03286992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 03235896 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 02809280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 01924152 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6436472.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 01573432 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6436472.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00959544 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00889400 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00753208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00695864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00678520 _____ C:\Windows\system32\nvfatbinaryLoader.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00571912 _____ C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00501896 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00473592 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00425016 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00423080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00391632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00377792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00175368 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00153392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00151368 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00129208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2016-04-05 11:52 - 2016-03-22 06:12 - 00037091 _____ C:\Windows\system32\nvinfo.pb
2016-04-05 11:52 - 2016-03-22 06:12 - 00000139 _____ C:\Windows\SysWOW64\nv-vk32.json
2016-04-05 11:52 - 2016-03-22 06:12 - 00000139 _____ C:\Windows\system32\nv-vk64.json
2016-04-02 21:51 - 2016-04-02 22:05 - 1485295596 _____ C:\Users\Rigin\Downloads\mafiani-goodfellas-dvdrip-pres-MultiLoad.cz.avi
2016-04-02 10:40 - 2016-04-02 10:40 - 00000000 ____D C:\Users\Rigin\Downloads\SMACK---SICK-(2015)
2016-04-02 10:40 - 2016-04-02 10:40 - 00000000 ____D C:\Users\Rigin\Downloads\SMACK---2051-(2012)
2016-04-01 22:16 - 2016-04-01 22:23 - 123774783 _____ C:\Users\Rigin\Downloads\SMACK---2051-(2012).rar
2016-04-01 22:11 - 2016-04-01 22:15 - 59518296 _____ C:\Users\Rigin\Downloads\SMACK---SICK-(2015).rar
2016-04-01 22:04 - 2016-04-01 22:04 - 00000000 ____D C:\Users\Rigin\Downloads\Maniak---AK-47-[2016-MP3]
2016-04-01 22:04 - 2016-04-01 22:04 - 00000000 ____D C:\Users\Rigin\Downloads\Dizzee-Rascal---2009---Tongue-n'-Cheek
2016-04-01 22:04 - 2016-04-01 22:04 - 00000000 ____D C:\Users\Rigin\Downloads\Dizzee_Rascal-The_Fifth--WEB-2013
2016-04-01 21:58 - 2016-04-01 22:07 - 1540769792 ____R C:\Users\Rigin\Downloads\Steve.Jobs.2015.BRRip.XviD.CZ-PiRaTE.avi
2016-04-01 21:58 - 2016-04-01 21:58 - 00015183 _____ C:\Users\Rigin\Downloads\[CzT]Steve_Jobs_2015_CZ_.torrent
2016-04-01 21:15 - 2016-04-01 21:22 - 118943238 _____ C:\Users\Rigin\Downloads\Dizzee_Rascal-The_Fifth--WEB-2013.rar
2016-04-01 21:12 - 2016-04-01 21:15 - 48022524 _____ C:\Users\Rigin\Downloads\Dizzee-Rascal---2009---Tongue-n'-Cheek.zip
2016-04-01 21:07 - 2016-04-01 21:12 - 57368486 _____ C:\Users\Rigin\Downloads\Maniak---AK-47-[2016-MP3].7z
2016-04-01 21:02 - 2016-04-01 21:05 - 00000000 ____D C:\Users\Rigin\Downloads\Crimson.Peak.2015.BDRip.x264.CZ-TreZzoR
2016-04-01 21:02 - 2016-04-01 21:02 - 00015458 _____ C:\Users\Rigin\Downloads\[CzT]Purpurovy_vrch_Crimson_Peak_2015_CZ_.torrent
2016-04-01 20:50 - 2016-04-01 20:50 - 00015577 _____ C:\Users\Rigin\Downloads\[CzT]Most_spionu_Bridge_of_Spies_2015_CZ_ (1).torrent
2016-03-27 23:18 - 2016-03-27 23:18 - 00014701 _____ C:\Users\Rigin\Downloads\[CzT]American_Ultra_2015_CZ_.torrent
2016-03-27 23:18 - 2016-03-27 23:18 - 00000000 ____D C:\Users\Rigin\Downloads\American.Ultra.2015.BRRip.XviD.CZ-PiRaTE
2016-03-27 23:17 - 2016-04-01 20:52 - 00000000 ____D C:\Users\Rigin\Downloads\Bridge of Spies 2015 BRRip x264 AC3 CZ -RiSiNG
2016-03-27 23:17 - 2016-03-27 23:17 - 00015577 _____ C:\Users\Rigin\Downloads\[CzT]Most_spionu_Bridge_of_Spies_2015_CZ_.torrent
2016-03-26 19:15 - 2016-03-26 19:23 - 1326241792 ____R C:\Users\Rigin\Downloads\Sicario.2015.AC3.BRRip.XviD.CZ.avi
2016-03-26 19:14 - 2016-03-26 19:15 - 00006816 _____ C:\Users\Rigin\Downloads\[CzT]Sicario_Najemny_vrah_Sicario_2015_CZ_.torrent
2016-03-20 17:11 - 2016-04-17 18:35 - 00003350 _____ C:\Windows\System32\Tasks\ESET Windows 10 upgrade – Refresh settings
2016-03-20 15:37 - 2016-03-20 15:49 - 00453486 _____ C:\Windows\ntbtlog.txt
2016-03-20 15:34 - 2016-03-20 15:34 - 00000000 ____D C:\Users\Rigin\AppData\Local\ESET
2016-03-20 15:17 - 2016-03-20 23:17 - 00000000 ____D C:\Users\Rigin\Downloads\ESET NOD32 antivirus 8.0.304.1 (x86,x64)(CZ,SK)
2016-03-20 15:17 - 2016-03-20 15:17 - 00012246 _____ C:\Users\Rigin\Downloads\[CzT]ESET_NOD32_antivirus_v8_0_304_1_x86_x64_CZ_SK_.torrent
2016-03-19 22:22 - 2016-03-19 22:32 - 1682085166 ____R C:\Users\Rigin\Downloads\Scouts Guide to the Zombie Apocalypse.avi
2016-03-19 22:21 - 2016-03-19 22:21 - 00016544 _____ C:\Users\Rigin\Downloads\[CzT]Skautuv_pruvodce_zombie_apokalypsou_Scouts_Guide_to_the_Zombie_Apocalypse_2015_CZ_.torrent
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-18 22:29 - 2013-09-26 14:10 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\Seznam.cz
2016-04-18 22:29 - 2013-09-25 19:29 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-04-18 22:26 - 2013-09-24 17:54 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-18 22:24 - 2013-09-24 17:54 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-18 22:23 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-04-18 22:22 - 2009-07-14 06:45 - 00016832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-04-18 22:22 - 2009-07-14 06:45 - 00016832 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-04-18 21:54 - 2014-02-03 22:48 - 00007596 _____ C:\Users\Rigin\AppData\Local\Resmon.ResmonCfg
2016-04-18 21:44 - 2013-09-24 19:22 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\TS3Client
2016-04-18 20:19 - 2015-08-06 18:22 - 00000000 ____D C:\Users\Rigin\Documents\Assassin's Creed Unity
2016-04-17 22:37 - 2014-06-26 17:06 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-04-17 22:33 - 2013-09-26 14:03 - 00000000 ____D C:\ProgramData\AVAST Software
2016-04-17 22:32 - 2015-06-12 11:54 - 00000000 ____D C:\Program Files\Common Files\AV
2016-04-17 22:25 - 2014-03-18 14:13 - 00000000 ____D C:\Windows\system32\log
2016-04-17 22:25 - 2013-09-24 17:01 - 00000000 ____D C:\Users\Rigin
2016-04-17 22:12 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-04-16 20:47 - 2014-01-02 14:50 - 00000000 ____D C:\Program Files (x86)\Steam
2016-04-16 20:36 - 2009-07-14 07:08 - 00032534 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-04-16 20:32 - 2011-04-12 10:34 - 00666194 _____ C:\Windows\system32\perfh005.dat
2016-04-16 20:32 - 2011-04-12 10:34 - 00139890 _____ C:\Windows\system32\perfc005.dat
2016-04-16 20:32 - 2009-07-14 07:13 - 01576554 _____ C:\Windows\system32\PerfStringBackup.INI
2016-04-16 18:28 - 2013-10-26 16:07 - 00000000 ____D C:\Users\Rigin\Documents\My Games
2016-04-16 18:22 - 2013-11-16 18:52 - 00000000 ____D C:\ProgramData\Package Cache
2016-04-16 18:18 - 2013-09-26 13:13 - 00000000 ____D C:\Users\Rigin\AppData\Local\CrashDumps
2016-04-16 17:18 - 2014-01-02 15:05 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-04-16 15:01 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\ModemLogs
2016-04-16 13:12 - 2014-03-10 20:07 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\.minecraft
2016-04-15 17:54 - 2014-08-02 14:02 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\Origin
2016-04-15 17:54 - 2014-08-02 14:02 - 00000000 ____D C:\ProgramData\Origin
2016-04-15 17:54 - 2014-08-02 14:01 - 00000000 ____D C:\ProgramData\Electronic Arts
2016-04-15 17:54 - 2014-08-02 14:00 - 00000000 ____D C:\Program Files (x86)\Electronic Arts
2016-04-15 17:36 - 2013-09-26 14:09 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\DAEMON Tools Lite
2016-04-15 17:12 - 2013-09-26 13:11 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\BitTorrent
2016-04-15 13:57 - 2013-10-08 16:26 - 00000000 ____D C:\Users\Rigin\AppData\LocalLow\Temp
2016-04-12 19:28 - 2013-09-24 17:54 - 00002195 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-12 19:28 - 2013-09-24 17:54 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-04-08 15:27 - 2013-12-23 16:14 - 00000000 ____D C:\Users\Rigin\AppData\Local\NVIDIA Corporation
2016-04-08 15:27 - 2013-12-23 16:12 - 00000000 ____D C:\Users\Rigin\AppData\Local\NVIDIA
2016-04-08 15:27 - 2013-09-24 18:27 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-04-08 15:27 - 2013-09-24 18:27 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-04-08 15:27 - 2013-09-24 18:26 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-04-07 19:29 - 2013-09-25 19:29 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-04-07 19:29 - 2013-09-25 19:29 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-04-07 19:29 - 2013-09-25 19:29 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-04-07 14:03 - 2013-11-30 19:26 - 00000000 ____D C:\Users\Rigin\Downloads\Films & serials
2016-04-06 10:18 - 2010-11-21 05:27 - 00453280 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-04-05 19:35 - 2013-09-24 19:22 - 00000000 ____D C:\Users\Rigin\AppData\Local\TeamSpeak 3 Client
2016-04-05 12:03 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help
2016-04-01 22:27 - 2013-10-08 16:27 - 00000000 ____D C:\Users\Rigin\AppData\Roaming\BSplayer
2016-03-20 15:37 - 2015-02-19 22:41 - 00000000 ____D C:\Program Files (x86)\Razer
2016-03-20 15:29 - 2015-02-22 03:00 - 00000000 ____D C:\ProgramData\AVG2015
2016-03-20 15:29 - 2015-02-22 02:55 - 00000000 ____D C:\ProgramData\MFAData
2016-03-20 15:22 - 2015-02-22 03:10 - 00000000 ___HD C:\$AVG
2016-03-20 15:20 - 2013-09-28 17:03 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-03-20 15:20 - 2013-09-28 17:03 - 00000000 ____D C:\ProgramData\Skype
2016-03-20 15:14 - 2014-02-25 22:48 - 00000000 ____D C:\ProgramData\CanonIJPLM
2016-03-20 15:11 - 2009-07-14 06:45 - 05051712 _____ C:\Windows\system32\FNTCACHE.DAT
==================== Files in the root of some directories =======
2015-08-08 11:25 - 2012-06-13 01:57 - 11632640 _____ () C:\Users\Rigin\AppData\Roaming\Sandra.mdb
2014-08-06 19:58 - 2014-08-06 19:58 - 0008192 _____ () C:\Users\Rigin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-10-25 20:38 - 2015-10-25 20:38 - 0002706 _____ () C:\Users\Rigin\AppData\Local\recently-used.xbel
2014-02-03 22:48 - 2016-04-18 21:54 - 0007596 _____ () C:\Users\Rigin\AppData\Local\Resmon.ResmonCfg
2013-10-18 18:44 - 2013-10-18 18:44 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
Some files in TEMP:
====================
C:\Users\Rigin\AppData\Local\Temp\27fff54a706caf16275619fa9b79269c.dll
C:\Users\Rigin\AppData\Local\Temp\drm_dyndata_7380015.dll
C:\Users\Rigin\AppData\Local\Temp\EADB3F6.exe
C:\Users\Rigin\AppData\Local\Temp\InstHelper.exe
C:\Users\Rigin\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Rigin\AppData\Local\Temp\nvStInst.exe
C:\Users\Rigin\AppData\Local\Temp\sfamcc00001.dll
C:\Users\Rigin\AppData\Local\Temp\Uninstall.exe
C:\Users\Rigin\AppData\Local\Temp\UninstallEADM.dll
C:\Users\Rigin\AppData\Local\Temp\vcredist_x64.exe
C:\Users\Rigin\AppData\Local\Temp\vcredist_x86.exe
C:\Users\Rigin\AppData\Local\Temp\vlc-2.2.1-win32.exe
C:\Users\Rigin\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-04-18 00:37
==================== End of FRST.txt ============================