Prosím o překontrolování
Napsal: 16 čer 2016 03:43
Dobrý den
Již nějakou dobu mám podezření že je mé PC zpomalené a i na internetu se mi to pomalu ztahuje. Zatím jsem nikdy od vás pomoc nežádál, tudíš jsem tu nový. Předem děkuji..........
LOG:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:15-06-2016
Ran by Elite (administrator) on ELITE-PC (16-06-2016 04:23:00)
Running from C:\Users\Elite\Desktop
Loaded Profiles: Elite (Available Profiles: Elite)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.8\ToolbarUpdater.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.8\loggingserver.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Akamai Technologies, Inc.) C:\Users\Elite\AppData\Local\Akamai\netsession_win.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Akamai Technologies, Inc.) C:\Users\Elite\AppData\Local\Akamai\netsession_win.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(forum.viry.cz) C:\Users\Elite\Desktop\FRSTLauncher(1).exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\reader_sl.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-27] (NVIDIA Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [186640 2016-05-18] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6570256 2016-06-09] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [2875464 2016-03-12] ()
HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [286960 2016-03-26] (RealNetworks, Inc.)
HKLM-x32\...\Run: [RealDownloader] => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [712432 2016-02-03] ()
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596504 2016-04-01] (Oracle Corporation)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [57981568 2015-09-28] (Skype Technologies S.A.)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [OEXPRESS] => C:\Windows\OETRN.EXE [26624 2016-02-09] ()
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [3077712 2016-04-30] (Valve Corporation)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4290240 2016-03-01] (Disc Soft Ltd)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Elite\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Elite\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Elite\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-18\...\Run: [KSS] => "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\kss.exe" autorun
HKU\S-1-5-18\...\Run: [] => 0
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-10-02] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealTimes.lnk [2016-03-26]
ShortcutTarget: RealTimes.lnk -> C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe (No File)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{678933F2-E21D-46B1-AAF9-777B54CF6A5A}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=U453&ocid=U453DHP&osmkt=en-us
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/1me10IE11ENUS/WOL_WCP
SearchScopes: HKU\S-1-5-21-338995101-2285461181-1699903247-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=U453DF&PC=U453 ... -SearchBox
SearchScopes: HKU\S-1-5-21-338995101-2285461181-1699903247-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=U453DF&PC=U453 ... -SearchBox
SearchScopes: HKU\S-1-5-21-338995101-2285461181-1699903247-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={0A6DF020-E236-4FF3-A8D7-6CCF2493E523}&mid=0b57840dd60d47cc9a26d1530bb4dec6-f085c69b56e62b06dc3125509ca44fa51f4b15c0&lang=en&ds=AVG&coid=avgtbavg&cmpid=0116pi&pr=fr&d=2016-03-01 22:54:31&v=4.2.8.608&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll [2016-02-03] (RealDownloader)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll [2016-04-26] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-26] (Oracle Corporation)
BHO-x32: WebTransBHO Class -> {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} -> C:\Windows\WebIE.dll => No File
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2016-02-03] (RealDownloader)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-04-26] (Oracle Corporation)
BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.2.8.608\AVG Web TuneUp.dll => No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-26] (Oracle Corporation)
Toolbar: HKLM-x32 - WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Windows\WebIE.dll No File
FireFox:
========
FF ProfilePath: C:\Users\Elite\AppData\Roaming\Mozilla\Firefox\Profiles\rd2q0j5q.default-1465018658771
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_242.dll [2016-05-13] ()
FF Plugin: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-04-26] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-04-26] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll [2016-05-13] ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.2.8\\npsitesafety.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-04-26] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-04-26] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2016-06-04] (Nexon)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-05] (NVIDIA Corporation)
FF Plugin-x32: @real.com/nppl3260;version=18.1.3.100 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2016-03-26] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=18.1.3.100 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2016-03-26] (RealPlayer)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-338995101-2285461181-1699903247-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Elite\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-03-11] (Unity Technologies ApS)
FF Extension: Customize about:newtab - C:\Users\Elite\AppData\Roaming\Mozilla\Firefox\Profiles\rd2q0j5q.default-1465018658771\extensions\customizenewtab@alejandrobrizuela.com.ar.xpi [2016-06-07]
FF Extension: Easy Youtube Video Downloader Express - C:\Users\Elite\AppData\Roaming\Mozilla\Firefox\Profiles\rd2q0j5q.default-1465018658771\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2016-06-05]
FF Extension: New Tab King - C:\Users\Elite\AppData\Roaming\Mozilla\Firefox\Profiles\rd2q0j5q.default-1465018658771\Extensions\{FC5BAC7D-D696-4ba6-B913-CF8F000C33DF} [2016-06-07]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [636312 2016-06-09] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5165824 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1080592 2016-05-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [705528 2016-06-09] (AVG Technologies CZ, s.r.o.)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1444544 2016-03-01] (Disc Soft Ltd)
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [236840 2016-05-06] (EasyAntiCheat Ltd)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-27] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation)
R2 RealPlayerUpdateSvc; C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [32544 2016-02-03] ()
R2 RealTimes Desktop Service; C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe [1095440 2016-03-26] (RealNetworks, Inc.)
R2 Themes; C:\Windows\system32\themeservice.dll [44544 2016-04-25] (Microsoft Corporation) [File not signed]
R2 vToolbarUpdater40.2.8; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.8\ToolbarUpdater.exe [1957448 2016-03-08] (AVG Secure Search)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [1216584 2016-03-12] ()
S2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162592 2016-02-16] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [307456 2016-05-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [272304 2016-01-26] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-05-02] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [247040 2016-05-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [51968 2016-05-02] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [279296 2016-05-17] (AVG Technologies CZ, s.r.o.)
R0 Avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [71936 2016-05-05] (AVG Technologies CZ, s.r.o.)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2016-03-04] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2016-03-04] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [28624 2016-02-09] () [File not signed]
S3 cpuz134; \??\C:\Users\Elite\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-16 04:23 - 2016-06-16 04:23 - 00017026 _____ C:\Users\Elite\Desktop\FRST.txt
2016-06-16 04:22 - 2016-06-16 04:23 - 00000000 ____D C:\FRST
2016-06-16 04:20 - 2016-06-16 04:20 - 00112640 _____ (forum.viry.cz) C:\Users\Elite\Desktop\FRSTLauncher(1).exe
2016-06-16 04:18 - 2016-06-16 04:18 - 00000000 _____ C:\Users\Elite\Desktop\FRSTLauncher.exe
2016-06-16 03:45 - 2016-06-16 03:46 - 02385920 _____ (Farbar) C:\Users\Elite\Desktop\FRST64.exe
2016-06-16 03:07 - 2016-06-16 03:07 - 00000000 ____D C:\Users\Elite\Downloads\Total.War.ROME.II.Emperor.Edition.MULTi9-PROPHET
2016-06-16 03:02 - 2016-06-16 03:02 - 00110008 _____ C:\Users\Elite\Desktop\[CzT]Total_War_Rome_II_Emperor_Edition_v2_2_0_11_DLC_2014_CZ_.torrent
2016-06-15 01:40 - 2016-06-15 01:47 - 123797504 _____ C:\Users\Elite\Desktop\Krajni_meze-s01e03-Pokrevni-bratri.avi
2016-06-13 03:45 - 2016-06-13 03:46 - 00000000 ____D C:\Users\Elite\Desktop\FreeRapid-0.9u4
2016-06-13 03:45 - 2016-06-13 03:45 - 17403694 _____ C:\Users\Elite\Downloads\FreeRapid-0.9u4.zip
2016-06-12 23:48 - 2016-06-14 03:45 - 00000000 ____D C:\Users\Elite\AppData\Local\Free Download Manager
2016-06-12 23:47 - 2016-06-12 23:47 - 00000000 ____D C:\Program Files\FreeDownloadManager.ORG
2016-06-10 00:07 - 2016-06-11 22:52 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-06-08 23:38 - 2016-06-08 23:42 - 00000000 ____D C:\Users\Elite\AppData\Local\NexonLauncher
2016-06-08 23:38 - 2016-06-08 23:38 - 00000000 ____D C:\Users\Elite\AppData\Roaming\NexonLauncher
2016-06-08 23:36 - 2016-06-08 23:36 - 00000000 ____D C:\Program Files (x86)\Nexon
2016-06-04 07:05 - 2016-06-04 07:05 - 00001779 _____ C:\Users\Public\Desktop\Vindictus EU.lnk
2016-06-04 02:49 - 2016-06-04 02:50 - 04485099 _____ C:\Users\Elite\Downloads\Tip-Jak snížit přehříváni PC,Notebooku.flv
2016-06-04 02:48 - 2016-06-04 02:48 - 00000000 ____D C:\Users\Elite\dwhelper
2016-06-03 23:23 - 2016-06-15 23:23 - 00000000 ____D C:\Users\Elite\AppData\Roaming\Awesomium
2016-06-03 23:22 - 2016-06-03 23:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panzar
2016-06-02 23:39 - 2016-06-02 23:39 - 00000000 ____D C:\ProgramData\Gaijin
2016-05-31 04:05 - 2016-05-31 04:05 - 00000000 ____D C:\ProgramData\Nexon
2016-05-31 03:27 - 2016-06-01 03:42 - 00000000 ____D C:\Users\Elite\Documents\Vindictus EU
2016-05-31 02:34 - 2016-06-04 07:04 - 00000000 ____D C:\Program Files (x86)\BandiMPEG1
2016-05-30 05:14 - 2016-05-30 05:23 - 00000000 ____D C:\Users\Elite\AppData\Local\Akamai
2016-05-18 12:13 - 2016-05-18 12:13 - 00307456 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2016-05-17 10:50 - 2016-05-17 10:50 - 00279296 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2016-05-17 00:21 - 2016-05-29 05:21 - 00000000 ____D C:\QuadcoreM2
2016-05-17 00:21 - 2016-05-17 00:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuadcoreM2
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-16 04:19 - 2016-03-01 23:45 - 00000000 ____D C:\ProgramData\MFAData
2016-06-16 04:19 - 2009-07-14 06:45 - 00015520 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-16 04:19 - 2009-07-14 06:45 - 00015520 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-16 04:15 - 2016-03-13 00:54 - 00000000 ____D C:\Users\Elite\AppData\Roaming\Seznam.cz
2016-06-16 04:11 - 2015-10-02 16:05 - 00000000 ____D C:\Users\Elite\AppData\Roaming\Skype
2016-06-16 04:10 - 2016-03-02 00:05 - 00000000 ____D C:\Program Files (x86)\Steam
2016-06-16 04:10 - 2015-10-02 14:12 - 00000000 ____D C:\ProgramData\NVIDIA
2016-06-16 04:10 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-16 03:52 - 2016-03-04 03:10 - 00000000 ____D C:\Users\Elite\AppData\Roaming\uTorrent
2016-06-16 03:52 - 2015-10-07 17:02 - 00000000 ____D C:\Users\Elite\AppData\Roaming\vlc
2016-06-16 03:48 - 2016-03-20 00:08 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-06-16 03:29 - 2016-03-03 23:59 - 00000000 ____D C:\Users\Elite\Desktop\VsemoznoRo
2016-06-15 04:28 - 2015-10-06 15:15 - 00000000 ____D C:\Users\Elite\Documents\Stažené soubory
2016-06-15 04:26 - 2016-03-02 04:53 - 05551616 ___SH C:\Users\Elite\Downloads\Thumbs.db
2016-06-15 00:06 - 2016-03-01 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-06-14 22:43 - 2016-03-04 00:59 - 04187648 ___SH C:\Users\Elite\Desktop\Thumbs.db
2016-06-13 23:49 - 2016-04-13 23:41 - 00000000 ____D C:\WarThunder
2016-06-12 23:05 - 2016-03-02 03:33 - 00006404 _____ C:\Users\Elite\Desktop\Uztovalii.txt
2016-06-12 06:09 - 2016-05-03 22:53 - 00000884 _____ C:\Users\Elite\Desktop\Heeslla.txt
2016-06-11 22:52 - 2016-03-01 23:59 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-06-11 04:03 - 2016-05-07 03:07 - 00000000 ____D C:\Users\Elite\AppData\Local\NXEPassportClient
2016-06-09 00:13 - 2015-11-04 23:46 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-06-04 07:05 - 2016-05-07 02:58 - 00000000 ____D C:\Nexon
2016-06-04 07:04 - 2016-05-07 03:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon
2016-06-04 06:12 - 2009-07-14 07:08 - 00032630 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-06-04 02:48 - 2015-10-02 13:50 - 00000000 ____D C:\Users\Elite
2016-06-03 23:22 - 2015-10-06 16:54 - 00000000 ____D C:\GAMES
2016-06-03 06:38 - 2015-10-02 15:37 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-05-31 04:10 - 2016-05-07 03:02 - 00000000 ____D C:\ProgramData\NexonEU
2016-05-30 02:02 - 2015-12-10 00:28 - 00000000 ____D C:\Users\Elite\Desktop\nasheed muziky
2016-05-17 00:23 - 2016-05-16 04:21 - 00000000 ____D C:\ProgramData\regid.1995-09.com.example
2016-05-17 00:23 - 2016-05-16 04:19 - 00000000 ____D C:\Users\Elite\AppData\Roaming\Quadcore
==================== Files in the root of some directories =======
2016-04-02 02:10 - 2016-04-02 02:10 - 0000000 ___SH () C:\Users\Elite\AppData\Local\LumaEmu
Some files in TEMP:
====================
C:\Users\Elite\AppData\Local\Temp\avguirn_081969101266.exe
C:\Users\Elite\AppData\Local\Temp\bdfilters.dll
C:\Users\Elite\AppData\Local\Temp\i4jdel0.exe
C:\Users\Elite\AppData\Local\Temp\NGMDll.dll
C:\Users\Elite\AppData\Local\Temp\NGMResource.dll
C:\Users\Elite\AppData\Local\Temp\NGMSetup.exe
C:\Users\Elite\AppData\Local\Temp\proxy_vole8933005148635692656.dll
C:\Users\Elite\AppData\Local\Temp\unicows.dll
C:\Users\Elite\AppData\Local\Temp\vlc-2.2.4-win64.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe
[2016-03-02 01:31] - [2016-01-22 07:19] - 3601408 ____A (Microsoft Corporation) 2CD82B089B4E43116968520AE46AC8DA
C:\Windows\SysWOW64\explorer.exe
[2016-03-02 01:31] - [2016-01-22 07:12] - 3343360 ____A (Microsoft Corporation) 319E57782ABFAB18C33D8DA0320C2A4C
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG AntiVirus Free Edition (Disabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition (Disabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Elite\Desktop" je 8651 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Již nějakou dobu mám podezření že je mé PC zpomalené a i na internetu se mi to pomalu ztahuje. Zatím jsem nikdy od vás pomoc nežádál, tudíš jsem tu nový. Předem děkuji..........
LOG:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:15-06-2016
Ran by Elite (administrator) on ELITE-PC (16-06-2016 04:23:00)
Running from C:\Users\Elite\Desktop
Loaded Profiles: Elite (Available Profiles: Elite)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.8\ToolbarUpdater.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.8\loggingserver.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Akamai Technologies, Inc.) C:\Users\Elite\AppData\Local\Akamai\netsession_win.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Akamai Technologies, Inc.) C:\Users\Elite\AppData\Local\Akamai\netsession_win.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(forum.viry.cz) C:\Users\Elite\Desktop\FRSTLauncher(1).exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\reader_sl.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-27] (NVIDIA Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [186640 2016-05-18] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6570256 2016-06-09] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [2875464 2016-03-12] ()
HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [286960 2016-03-26] (RealNetworks, Inc.)
HKLM-x32\...\Run: [RealDownloader] => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [712432 2016-02-03] ()
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596504 2016-04-01] (Oracle Corporation)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [57981568 2015-09-28] (Skype Technologies S.A.)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [OEXPRESS] => C:\Windows\OETRN.EXE [26624 2016-02-09] ()
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [3077712 2016-04-30] (Valve Corporation)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4290240 2016-03-01] (Disc Soft Ltd)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd)
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Elite\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Elite\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Elite\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-18\...\Run: [KSS] => "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan\kss.exe" autorun
HKU\S-1-5-18\...\Run: [] => 0
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-10-02] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealTimes.lnk [2016-03-26]
ShortcutTarget: RealTimes.lnk -> C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe (No File)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{678933F2-E21D-46B1-AAF9-777B54CF6A5A}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=U453&ocid=U453DHP&osmkt=en-us
HKU\S-1-5-21-338995101-2285461181-1699903247-1000\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.msn.com/1me10IE11ENUS/WOL_WCP
SearchScopes: HKU\S-1-5-21-338995101-2285461181-1699903247-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=U453DF&PC=U453 ... -SearchBox
SearchScopes: HKU\S-1-5-21-338995101-2285461181-1699903247-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=U453DF&PC=U453 ... -SearchBox
SearchScopes: HKU\S-1-5-21-338995101-2285461181-1699903247-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={0A6DF020-E236-4FF3-A8D7-6CCF2493E523}&mid=0b57840dd60d47cc9a26d1530bb4dec6-f085c69b56e62b06dc3125509ca44fa51f4b15c0&lang=en&ds=AVG&coid=avgtbavg&cmpid=0116pi&pr=fr&d=2016-03-01 22:54:31&v=4.2.8.608&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll [2016-02-03] (RealDownloader)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll [2016-04-26] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-26] (Oracle Corporation)
BHO-x32: WebTransBHO Class -> {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} -> C:\Windows\WebIE.dll => No File
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2016-02-03] (RealDownloader)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-04-26] (Oracle Corporation)
BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.2.8.608\AVG Web TuneUp.dll => No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-04-26] (Oracle Corporation)
Toolbar: HKLM-x32 - WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\Windows\WebIE.dll No File
FireFox:
========
FF ProfilePath: C:\Users\Elite\AppData\Roaming\Mozilla\Firefox\Profiles\rd2q0j5q.default-1465018658771
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_242.dll [2016-05-13] ()
FF Plugin: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-04-26] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-04-26] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll [2016-05-13] ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.2.8\\npsitesafety.dll [No File]
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-04-26] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-04-26] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2016-06-04] (Nexon)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-05] (NVIDIA Corporation)
FF Plugin-x32: @real.com/nppl3260;version=18.1.3.100 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2016-03-26] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=18.1.3.100 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2016-03-26] (RealPlayer)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-338995101-2285461181-1699903247-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Elite\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-03-11] (Unity Technologies ApS)
FF Extension: Customize about:newtab - C:\Users\Elite\AppData\Roaming\Mozilla\Firefox\Profiles\rd2q0j5q.default-1465018658771\extensions\customizenewtab@alejandrobrizuela.com.ar.xpi [2016-06-07]
FF Extension: Easy Youtube Video Downloader Express - C:\Users\Elite\AppData\Roaming\Mozilla\Firefox\Profiles\rd2q0j5q.default-1465018658771\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2016-06-05]
FF Extension: New Tab King - C:\Users\Elite\AppData\Roaming\Mozilla\Firefox\Profiles\rd2q0j5q.default-1465018658771\Extensions\{FC5BAC7D-D696-4ba6-B913-CF8F000C33DF} [2016-06-07]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [636312 2016-06-09] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5165824 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1080592 2016-05-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [705528 2016-06-09] (AVG Technologies CZ, s.r.o.)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1444544 2016-03-01] (Disc Soft Ltd)
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [236840 2016-05-06] (EasyAntiCheat Ltd)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-27] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation)
R2 RealPlayerUpdateSvc; C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [32544 2016-02-03] ()
R2 RealTimes Desktop Service; C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe [1095440 2016-03-26] (RealNetworks, Inc.)
R2 Themes; C:\Windows\system32\themeservice.dll [44544 2016-04-25] (Microsoft Corporation) [File not signed]
R2 vToolbarUpdater40.2.8; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.8\ToolbarUpdater.exe [1957448 2016-03-08] (AVG Secure Search)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [1216584 2016-03-12] ()
S2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162592 2016-02-16] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [307456 2016-05-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [272304 2016-01-26] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-05-02] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [247040 2016-05-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [51968 2016-05-02] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [279296 2016-05-17] (AVG Technologies CZ, s.r.o.)
R0 Avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [71936 2016-05-05] (AVG Technologies CZ, s.r.o.)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2016-03-04] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2016-03-04] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [28624 2016-02-09] () [File not signed]
S3 cpuz134; \??\C:\Users\Elite\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-16 04:23 - 2016-06-16 04:23 - 00017026 _____ C:\Users\Elite\Desktop\FRST.txt
2016-06-16 04:22 - 2016-06-16 04:23 - 00000000 ____D C:\FRST
2016-06-16 04:20 - 2016-06-16 04:20 - 00112640 _____ (forum.viry.cz) C:\Users\Elite\Desktop\FRSTLauncher(1).exe
2016-06-16 04:18 - 2016-06-16 04:18 - 00000000 _____ C:\Users\Elite\Desktop\FRSTLauncher.exe
2016-06-16 03:45 - 2016-06-16 03:46 - 02385920 _____ (Farbar) C:\Users\Elite\Desktop\FRST64.exe
2016-06-16 03:07 - 2016-06-16 03:07 - 00000000 ____D C:\Users\Elite\Downloads\Total.War.ROME.II.Emperor.Edition.MULTi9-PROPHET
2016-06-16 03:02 - 2016-06-16 03:02 - 00110008 _____ C:\Users\Elite\Desktop\[CzT]Total_War_Rome_II_Emperor_Edition_v2_2_0_11_DLC_2014_CZ_.torrent
2016-06-15 01:40 - 2016-06-15 01:47 - 123797504 _____ C:\Users\Elite\Desktop\Krajni_meze-s01e03-Pokrevni-bratri.avi
2016-06-13 03:45 - 2016-06-13 03:46 - 00000000 ____D C:\Users\Elite\Desktop\FreeRapid-0.9u4
2016-06-13 03:45 - 2016-06-13 03:45 - 17403694 _____ C:\Users\Elite\Downloads\FreeRapid-0.9u4.zip
2016-06-12 23:48 - 2016-06-14 03:45 - 00000000 ____D C:\Users\Elite\AppData\Local\Free Download Manager
2016-06-12 23:47 - 2016-06-12 23:47 - 00000000 ____D C:\Program Files\FreeDownloadManager.ORG
2016-06-10 00:07 - 2016-06-11 22:52 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-06-08 23:38 - 2016-06-08 23:42 - 00000000 ____D C:\Users\Elite\AppData\Local\NexonLauncher
2016-06-08 23:38 - 2016-06-08 23:38 - 00000000 ____D C:\Users\Elite\AppData\Roaming\NexonLauncher
2016-06-08 23:36 - 2016-06-08 23:36 - 00000000 ____D C:\Program Files (x86)\Nexon
2016-06-04 07:05 - 2016-06-04 07:05 - 00001779 _____ C:\Users\Public\Desktop\Vindictus EU.lnk
2016-06-04 02:49 - 2016-06-04 02:50 - 04485099 _____ C:\Users\Elite\Downloads\Tip-Jak snížit přehříváni PC,Notebooku.flv
2016-06-04 02:48 - 2016-06-04 02:48 - 00000000 ____D C:\Users\Elite\dwhelper
2016-06-03 23:23 - 2016-06-15 23:23 - 00000000 ____D C:\Users\Elite\AppData\Roaming\Awesomium
2016-06-03 23:22 - 2016-06-03 23:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panzar
2016-06-02 23:39 - 2016-06-02 23:39 - 00000000 ____D C:\ProgramData\Gaijin
2016-05-31 04:05 - 2016-05-31 04:05 - 00000000 ____D C:\ProgramData\Nexon
2016-05-31 03:27 - 2016-06-01 03:42 - 00000000 ____D C:\Users\Elite\Documents\Vindictus EU
2016-05-31 02:34 - 2016-06-04 07:04 - 00000000 ____D C:\Program Files (x86)\BandiMPEG1
2016-05-30 05:14 - 2016-05-30 05:23 - 00000000 ____D C:\Users\Elite\AppData\Local\Akamai
2016-05-18 12:13 - 2016-05-18 12:13 - 00307456 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2016-05-17 10:50 - 2016-05-17 10:50 - 00279296 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2016-05-17 00:21 - 2016-05-29 05:21 - 00000000 ____D C:\QuadcoreM2
2016-05-17 00:21 - 2016-05-17 00:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuadcoreM2
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-06-16 04:19 - 2016-03-01 23:45 - 00000000 ____D C:\ProgramData\MFAData
2016-06-16 04:19 - 2009-07-14 06:45 - 00015520 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-06-16 04:19 - 2009-07-14 06:45 - 00015520 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-06-16 04:15 - 2016-03-13 00:54 - 00000000 ____D C:\Users\Elite\AppData\Roaming\Seznam.cz
2016-06-16 04:11 - 2015-10-02 16:05 - 00000000 ____D C:\Users\Elite\AppData\Roaming\Skype
2016-06-16 04:10 - 2016-03-02 00:05 - 00000000 ____D C:\Program Files (x86)\Steam
2016-06-16 04:10 - 2015-10-02 14:12 - 00000000 ____D C:\ProgramData\NVIDIA
2016-06-16 04:10 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-06-16 03:52 - 2016-03-04 03:10 - 00000000 ____D C:\Users\Elite\AppData\Roaming\uTorrent
2016-06-16 03:52 - 2015-10-07 17:02 - 00000000 ____D C:\Users\Elite\AppData\Roaming\vlc
2016-06-16 03:48 - 2016-03-20 00:08 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-06-16 03:29 - 2016-03-03 23:59 - 00000000 ____D C:\Users\Elite\Desktop\VsemoznoRo
2016-06-15 04:28 - 2015-10-06 15:15 - 00000000 ____D C:\Users\Elite\Documents\Stažené soubory
2016-06-15 04:26 - 2016-03-02 04:53 - 05551616 ___SH C:\Users\Elite\Downloads\Thumbs.db
2016-06-15 00:06 - 2016-03-01 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-06-14 22:43 - 2016-03-04 00:59 - 04187648 ___SH C:\Users\Elite\Desktop\Thumbs.db
2016-06-13 23:49 - 2016-04-13 23:41 - 00000000 ____D C:\WarThunder
2016-06-12 23:05 - 2016-03-02 03:33 - 00006404 _____ C:\Users\Elite\Desktop\Uztovalii.txt
2016-06-12 06:09 - 2016-05-03 22:53 - 00000884 _____ C:\Users\Elite\Desktop\Heeslla.txt
2016-06-11 22:52 - 2016-03-01 23:59 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-06-11 04:03 - 2016-05-07 03:07 - 00000000 ____D C:\Users\Elite\AppData\Local\NXEPassportClient
2016-06-09 00:13 - 2015-11-04 23:46 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-06-04 07:05 - 2016-05-07 02:58 - 00000000 ____D C:\Nexon
2016-06-04 07:04 - 2016-05-07 03:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon
2016-06-04 06:12 - 2009-07-14 07:08 - 00032630 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-06-04 02:48 - 2015-10-02 13:50 - 00000000 ____D C:\Users\Elite
2016-06-03 23:22 - 2015-10-06 16:54 - 00000000 ____D C:\GAMES
2016-06-03 06:38 - 2015-10-02 15:37 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-05-31 04:10 - 2016-05-07 03:02 - 00000000 ____D C:\ProgramData\NexonEU
2016-05-30 02:02 - 2015-12-10 00:28 - 00000000 ____D C:\Users\Elite\Desktop\nasheed muziky
2016-05-17 00:23 - 2016-05-16 04:21 - 00000000 ____D C:\ProgramData\regid.1995-09.com.example
2016-05-17 00:23 - 2016-05-16 04:19 - 00000000 ____D C:\Users\Elite\AppData\Roaming\Quadcore
==================== Files in the root of some directories =======
2016-04-02 02:10 - 2016-04-02 02:10 - 0000000 ___SH () C:\Users\Elite\AppData\Local\LumaEmu
Some files in TEMP:
====================
C:\Users\Elite\AppData\Local\Temp\avguirn_081969101266.exe
C:\Users\Elite\AppData\Local\Temp\bdfilters.dll
C:\Users\Elite\AppData\Local\Temp\i4jdel0.exe
C:\Users\Elite\AppData\Local\Temp\NGMDll.dll
C:\Users\Elite\AppData\Local\Temp\NGMResource.dll
C:\Users\Elite\AppData\Local\Temp\NGMSetup.exe
C:\Users\Elite\AppData\Local\Temp\proxy_vole8933005148635692656.dll
C:\Users\Elite\AppData\Local\Temp\unicows.dll
C:\Users\Elite\AppData\Local\Temp\vlc-2.2.4-win64.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe
[2016-03-02 01:31] - [2016-01-22 07:19] - 3601408 ____A (Microsoft Corporation) 2CD82B089B4E43116968520AE46AC8DA
C:\Windows\SysWOW64\explorer.exe
[2016-03-02 01:31] - [2016-01-22 07:12] - 3343360 ____A (Microsoft Corporation) 319E57782ABFAB18C33D8DA0320C2A4C
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG AntiVirus Free Edition (Disabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition (Disabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Elite\Desktop" je 8651 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================