pro motji
Napsal: 09 črc 2016 19:51
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-07-2016
Ran by Tomas (administrator) on TOMAS-PC (09-07-2016 20:42:03)
Running from C:\Users\Tomas\Desktop
Loaded Profiles: Tomas (Available Profiles: Tomas)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
() C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
() C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMR\AODMR.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe
() C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
() C:\Windows\SysWOW64\ASGT.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe
() C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
() C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
() C:\Windows\SysWOW64\HsMgr.exe
() C:\Windows\system\HsMgr64.exe
(CMedia) C:\Program Files\UNi Xonar Audio\Customapp\AsusAudioCenter.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(SpiceBrains) C:\Program Files (x86)\InstantEyedropper\InstantEyedropper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.3.0.0\Lightshot.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
() C:\Program Files (x86)\ASUS\AI Suite III\AsusMiniBar.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7640944 2014-09-29] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation)
HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1610936 2016-07-03] (COMODO)
HKLM\...\Run: [Cmaudio8788] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd
HKLM\...\Run: [Cmaudio8788GX] => C:\Windows\syswow64\HsMgr.exe [200704 2015-12-28] ()
HKLM\...\Run: [Cmaudio8788GX64] => C:\Windows\system\HsMgr64.exe [282112 2015-12-28] ()
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [293872 2014-08-25] (Intel Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226560 2016-01-07] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595992 2016-06-01] (Oracle Corporation)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [windirs] => C:\Users\Tomas\AppData\Roaming\dirs\trwe.exe
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [uTorrent] => "C:\Users\Tomas\AppData\Roaming\uTorrent\utorrent.exe"
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8461224 2015-09-16] (Piriform Ltd)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53123712 2016-05-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3128408 2014-03-13] (Disc Soft Ltd)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [instanteyedropper] => C:\Program Files (x86)\InstantEyedropper\InstantEyedropper.exe [398848 2016-04-06] (SpiceBrains)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [Display] => C:\Users\Tomas\AppData\Roaming\uTorrent\nvtray.exe
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Policies\Explorer: []
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\MountPoints2: {b55be7dd-6108-11e5-a9a1-ed3dc3209012} - E:\setup.exe
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\MountPoints2: {fccf0273-6138-11e5-a72d-806e6f6e6963} - D:\Bin\ASSETUP.exe
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.0.1.213\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.0.1.213\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.0.1.213\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX64.dll No File
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX64.dll No File
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX64.dll No File
ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX32.dll No File
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX32.dll No File
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX32.dll No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{CBCDDB50-3195-4042-B7D5-109D87E1F755}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-01] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-01] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-3061203490-3799476124-1463932836-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FireFox:
========
FF ProfilePath: C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\lnagqaf9.default-1453036539048
FF NetworkProxy: "http", "85.207.69.6"
FF NetworkProxy: "http_port", 8080
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-17] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-17] ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-08-26] (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-04-29] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-04-29] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-01] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-01] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2016-04-13] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-06-03] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-06-03] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @verimatrix.com/ViewRightWeb -> C:\Program Files (x86)\Verimatrix\ViewRight Web\\npViewRight.dll [2012-12-19] (Verimatrix, Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3061203490-3799476124-1463932836-1000: @verimatrix.com/ViewRightWeb -> C:\Program Files (x86)\Verimatrix\ViewRight Web\\npViewRight.dll [2012-12-19] (Verimatrix, Inc.)
FF Extension: New Tab Override (browser.newtab.url replacement) - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\lnagqaf9.default-1453036539048\Extensions\newtaboverride@agenedia.com.xpi [2016-06-29]
FF Extension: Adblock Plus - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\lnagqaf9.default-1453036539048\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-04-28]
FF Extension: YouTube Flash Video Player - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\lnagqaf9.default-1453036539048\Extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi [2016-06-17]
FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon => not found
FF HKLM-x32\...\Firefox\Extensions: [{40211632-250D-4B8C-B04E-DA45BAE6DF8C}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\coFFPlgn => not found
FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon => not found
FF HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi => not found
Chrome:
=======
CHR DefaultSearchURL: Default -> hxxps://nortonsafe.search.ask.com/web?q={searchTerms}&o=APN11908&prt=cr
CHR DefaultSearchKeyword: Default -> NortonSafe
CHR DefaultSuggestURL: Default -> hxxp://ss-sym.ask.com/query?q={searchTerms}&sstype=prefix&li=ff
CHR Profile: C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentácie Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-19]
CHR Extension: (Dokumenty Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-20]
CHR Extension: (Disk Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-02]
CHR Extension: (YouTube) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-20]
CHR Extension: (Adblock Plus) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-07-09]
CHR Extension: (Google Search) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-02]
CHR Extension: (Norton Home Page for Chrome) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejbdobdndcjhdmljipngpeoekdinlohe [2016-03-22]
CHR Extension: (Tabuľky Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-19]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
CHR Extension: (Norton Safe) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmgcfemagnogdodbambjhdcmfcpicngl [2016-04-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-12]
CHR Extension: (Gmail) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-20]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
"BFE" => service could not be unlocked. <===== ATTENTION
U2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-04-25] ()
U2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]
U2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648 2014-01-22] (ASUSTeK Computer Inc.)
U2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe [384000 2014-08-04] (ASUSTeK Computer Inc.) [File not signed]
U2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5817712 2016-07-03] (COMODO)
U3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2271928 2016-07-03] (COMODO)
U3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2016-05-24] (Futuremark)
U2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation)
U3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
U2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-04-29] (Intel Corporation)
U2 MSSQL$ASUSHOMECLOUD; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\sqlservr.exe [43129288 2012-06-29] (Microsoft Corporation)
U2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [449472 2016-07-09] (NVIDIA Corporation)
U3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [449472 2016-07-09] (NVIDIA Corporation)
U2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712 2016-07-09] (NVIDIA Corporation)
U3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2122248 2016-06-18] (Electronic Arts)
U4 SQLAgent$ASUSHOMECLOUD; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\SQLAGENT.EXE [379848 2012-06-29] (Microsoft Corporation)
U2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
U3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
U1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-01-22] ()
U1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2014-02-24] ()
U3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation)
U1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [31648 2016-06-15] (COMODO)
U1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [829600 2016-06-15] (COMODO)
U1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [56472 2016-06-15] (COMODO)
U3 cmudaxp; C:\Windows\System32\drivers\cmudaxp.sys [2735616 2015-12-28] (C-Media Inc)
U1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2015-09-22] (Disc Soft Ltd)
U3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
U0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2014-05-28] (Intel Corporation)
U1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [116248 2016-06-15] (COMODO)
U3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation)
U3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [46016 2016-07-09] (NVIDIA Corporation)
U3 RTTEAMPT; C:\Windows\System32\DRIVERS\RtTeam620.sys [58512 2012-07-03] (Realtek Corporation)
U3 AIDA64Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [X]
U5 BFE; <===== ATTENTION: Locked Service
U3 cpuz138; \??\C:\Users\Tomas\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [X]
U4 IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [X]
U3 WinRing0_1_2_0; \??\C:\Program Files (x86)\NZXT\CAM\CAM_Client_V2.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-07-09 20:42 - 2016-07-09 20:42 - 00021811 _____ C:\Users\Tomas\Desktop\FRST.txt
2016-07-09 20:31 - 2016-07-09 20:31 - 02390016 _____ (Farbar) C:\Users\Tomas\Desktop\FRST64.exe
2016-07-09 20:08 - 2016-07-09 20:08 - 00104384 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2016-07-09 20:08 - 2016-07-09 20:08 - 00094144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2016-07-09 20:08 - 2016-07-09 20:08 - 00046016 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2016-07-09 20:08 - 2016-07-09 20:08 - 00000000 ____D C:\Windows\LastGood
2016-07-09 19:26 - 2016-07-09 19:26 - 03712064 _____ C:\Users\Tomas\Downloads\adwcleaner_5.201.exe
2016-07-08 12:48 - 2016-07-08 12:48 - 00003584 _____ C:\Users\Tomas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-07-08 12:48 - 2016-07-08 12:47 - 04932764 _____ C:\Users\Tomas\Desktop\Video_2016-07-08_124758.wmv
2016-07-08 12:44 - 2016-07-08 12:44 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\FastStone
2016-07-08 12:44 - 2016-07-08 12:44 - 00000000 ____D C:\Users\Tomas\AppData\Local\FastStone
2016-07-08 12:42 - 2016-07-08 12:42 - 09880924 _____ C:\Users\Tomas\Downloads\faststone-capture_7.3Shareware.exe
2016-07-08 12:39 - 2016-07-08 12:40 - 06770043 _____ ( ) C:\Users\Tomas\Downloads\screenrecorderfree.exe
2016-07-08 12:38 - 2016-07-08 12:38 - 40805888 _____ C:\Users\Tomas\Desktop\~temp-20160708_1238_14.avi
2016-07-08 12:38 - 2016-07-08 12:38 - 00000000 _____ C:\Users\Tomas\Desktop\~temp-20160708_1238_14.xnote.txt
2016-07-08 12:22 - 2016-07-08 12:23 - 10353883 _____ C:\Users\Tomas\Downloads\camstudio_2.6beta.exe
2016-07-08 11:51 - 2016-07-08 11:51 - 02915464 _____ (NTWind Software) C:\Users\Tomas\Downloads\WinSnap_4.5.3-setup.exe
2016-07-05 19:42 - 2016-07-05 19:42 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rocket League v1.17 (6 DLC)
2016-07-05 19:42 - 2016-07-05 19:42 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
2016-07-05 19:40 - 2016-07-05 19:40 - 00000000 ____D C:\2-click run
2016-07-04 11:36 - 2016-07-05 18:14 - 00000000 ____D C:\Users\Tomas\Downloads\Rocket League v1.17 (6 DLC)(2-click run)
2016-07-03 18:37 - 2016-07-03 18:37 - 01181560 _____ (EnTech Taiwan ) C:\Users\Tomas\Downloads\ddmsetup1800.exe
2016-07-03 13:11 - 2016-07-03 13:14 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\siw_tmp
2016-07-03 13:11 - 2016-07-03 13:11 - 00000000 ____D C:\Users\Tomas\AppData\Local\CrashRpt
2016-07-03 13:10 - 2016-07-03 13:14 - 00000000 ____D C:\Users\Tomas\Downloads\siw_tech
2016-07-03 13:09 - 2016-07-03 13:10 - 05885848 _____ C:\Users\Tomas\Downloads\siw_tech.zip
2016-07-01 21:37 - 2016-07-09 20:08 - 00003832 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-09 20:08 - 00003832 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-09 20:08 - 00003770 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-09 20:08 - 00003534 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-01 21:37 - 00003782 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-01 21:37 - 00001416 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2016-07-01 21:37 - 2016-07-01 21:37 - 00001416 _____ C:\ProgramData\Desktop\GeForce Experience.lnk
2016-07-01 21:37 - 2016-06-30 18:12 - 01799104 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2016-07-01 21:37 - 2016-06-30 18:12 - 01755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2016-07-01 21:37 - 2016-06-30 18:12 - 01403328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2016-07-01 21:37 - 2016-06-30 18:12 - 01317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2016-07-01 21:37 - 2016-06-30 18:12 - 00120256 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2016-07-01 21:23 - 2016-07-01 21:32 - 65850568 _____ (NVIDIA Corporation) C:\Users\Tomas\Downloads\GeForce_Experience_Beta_v3.0.2.190.exe
2016-06-30 16:26 - 2016-07-03 14:53 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-06-30 16:19 - 2016-06-30 16:19 - 00000000 ____D C:\Users\Tomas\AppData\Local\Steam
2016-06-30 16:08 - 2016-07-08 11:34 - 00000000 ____D C:\Program Files (x86)\Steam
2016-06-30 16:08 - 2016-06-30 16:08 - 00000967 _____ C:\Users\Public\Desktop\Steam.lnk
2016-06-30 16:08 - 2016-06-30 16:08 - 00000967 _____ C:\ProgramData\Desktop\Steam.lnk
2016-06-30 16:08 - 2016-06-30 16:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-06-30 16:07 - 2016-06-30 16:07 - 01444992 _____ C:\Users\Tomas\Downloads\SteamSetup.exe
2016-06-30 15:48 - 2016-06-30 15:48 - 00000000 ____D C:\Program Files (x86)\Futuremark
2016-06-30 15:47 - 2016-06-30 15:53 - 00000000 ____D C:\Users\Tomas\Documents\3DMark 11
2016-06-30 15:47 - 2016-06-30 15:48 - 02949120 _____ C:\Users\Tomas\Downloads\Futuremark_SystemInfo_v446_installer.msi
2016-06-30 15:47 - 2016-06-30 15:47 - 00000000 ____D C:\Users\Tomas\AppData\Local\Futuremark
2016-06-30 14:15 - 2016-06-30 14:44 - 271860249 _____ C:\Users\Tomas\Downloads\3DMark11-v1-0-132.zip
2016-06-29 17:42 - 2016-06-29 17:42 - 00002184 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
2016-06-29 17:42 - 2016-06-29 17:42 - 00000000 ____D C:\Users\Tomas\AppData\LocalLow\Google
2016-06-29 17:38 - 2016-06-29 17:38 - 00987728 _____ (Google Inc.) C:\Users\Tomas\Downloads\GoogleEarthProSetup.exe
2016-06-27 17:15 - 2016-06-27 17:17 - 00000000 ___HD C:\Users\Tomas\Desktop\.picasaoriginals
2016-06-23 13:37 - 2016-06-23 23:23 - 01065984 _____ C:\Users\Tomas\AppData\Local\file__0.localstorage
2016-06-23 13:37 - 2016-06-23 13:53 - 00000000 ____D C:\Users\Tomas\Heaven
2016-06-23 13:35 - 2016-06-23 13:35 - 00002121 _____ C:\Users\Public\Desktop\Heaven Benchmark 4.0.lnk
2016-06-23 13:35 - 2016-06-23 13:35 - 00002121 _____ C:\ProgramData\Desktop\Heaven Benchmark 4.0.lnk
2016-06-23 13:35 - 2016-06-23 13:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unigine
2016-06-23 13:35 - 2016-06-23 13:35 - 00000000 ____D C:\Program Files (x86)\Unigine
2016-06-23 13:25 - 2016-06-23 13:30 - 258728440 _____ (Unigine Corp. ) C:\Users\Tomas\Downloads\Unigine_Heaven-4.0.exe
2016-06-21 21:45 - 2016-06-21 21:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D
2016-06-21 21:45 - 2016-06-21 21:45 - 00000000 ____D C:\Program Files (x86)\Geeks3D
2016-06-21 21:44 - 2016-06-21 21:45 - 04856780 _____ (Geeks3D.com ) C:\Users\Tomas\Downloads\FurMark_1.10.2_Setup.exe
2016-06-21 21:33 - 2016-06-21 21:36 - 16335712 _____ (FinalWire Ltd. ) C:\Users\Tomas\Downloads\aida64extreme570.exe
2016-06-21 20:59 - 2016-06-21 21:15 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\NVIDIA
2016-06-21 20:24 - 2016-07-09 20:31 - 00000000 ____D C:\ProgramData\NVIDIA
2016-06-21 20:24 - 2016-06-03 09:38 - 00213952 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-06-21 20:24 - 2016-06-03 09:38 - 00203320 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 06362560 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 02453952 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 01351104 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2016-06-21 20:24 - 2016-06-03 05:26 - 00534072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 00071224 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-06-21 20:24 - 2016-06-03 05:19 - 00113208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2016-06-21 20:24 - 2016-06-02 14:19 - 06452948 _____ C:\Windows\system32\nvcoproc.bin
2016-06-21 20:22 - 2016-06-03 09:38 - 39979576 _____ C:\Windows\system32\nvcompiler.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 35115456 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 31603768 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 25377848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 21802280 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 21346712 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 19180152 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 18143912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 17738592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 17290416 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 16756888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 14346320 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 13460536 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-06-21 20:22 - 2016-06-03 09:38 - 10643240 _____ C:\Windows\system32\nvptxJitCompiler.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 08733608 _____ C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 03825896 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 03512888 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 03383472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 03065280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 01922616 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6436839.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 01581624 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 01571776 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6436839.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00985144 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00908736 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00769984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00707520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00669952 _____ C:\Windows\system32\nvfatbinaryLoader.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00565392 _____ C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00502080 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00476664 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00425016 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00422752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00394912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00379448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00178136 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00155768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00153416 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00141256 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2016-06-21 20:22 - 2016-06-03 09:38 - 00131768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00046024 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00039124 _____ C:\Windows\system32\nvinfo.pb
2016-06-21 20:22 - 2016-06-03 09:38 - 00000594 _____ C:\Windows\SysWOW64\nv-vk32.json
2016-06-21 20:22 - 2016-06-03 09:38 - 00000594 _____ C:\Windows\system32\nv-vk64.json
2016-06-20 15:10 - 2016-06-20 15:10 - 00002488 _____ C:\Users\Tomas\Downloads\setup registry file edit this.reg
2016-06-20 15:09 - 2016-06-20 15:09 - 00000546 _____ C:\Users\Tomas\Downloads\setup help read.txt
2016-06-20 10:08 - 2016-06-20 12:11 - 00000000 ____D C:\Users\Tomas\Downloads\The.Witcher.3.Wild.Hunt.Patch.1.22-GOG
2016-06-20 10:07 - 2016-06-20 10:07 - 00028569 _____ C:\Users\Tomas\Downloads\The.Witcher.3.Wild.Hunt.Patch.v1.22-GOG.torrent
2016-06-18 18:31 - 2016-07-09 11:43 - 00000000 ____D C:\Users\Tomas\AppData\Local\Ethash
2016-06-18 18:17 - 2016-06-18 18:17 - 00001401 _____ C:\Users\Tomas\Desktop\The Witcher 3 Wild Hunt Blood and Wine.lnk
2016-06-18 18:17 - 2016-06-18 18:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher 3 Wild Hunt Blood and Wine
2016-06-18 18:07 - 2016-06-18 18:17 - 00000000 ____D C:\Program Files (x86)\The Witcher 3 Wild Hunt Blood and Wine
2016-06-18 17:56 - 2016-06-18 18:18 - 00000000 ____D C:\Users\Tomas\Documents\FLiNGTrainer
2016-06-18 17:55 - 2016-06-18 17:55 - 00000000 ____D C:\Users\Tomas\Downloads\The.Witcher.3.Wild.Hunt.v1.02-v1.22.Plus.22.Trainer-FLiNG
2016-06-18 17:51 - 2016-06-18 17:52 - 00729141 _____ C:\Users\Tomas\Downloads\The.Witcher.3.Wild.Hunt.v1.02-v1.22.Plus.22.Trainer-FLiNG.rar
2016-06-18 15:20 - 2016-06-18 15:42 - 00000000 ____D C:\Users\Tomas\Downloads\Crash.Bandicoot.3.&.Tekken.3+PS1.Emulator-FrosCh
2016-06-16 20:34 - 2016-06-16 20:34 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Verimatrix
2016-06-16 20:30 - 2016-06-16 20:31 - 21124608 _____ C:\Users\Tomas\Downloads\ViewRightWebInstaller(1).msi
2016-06-16 12:31 - 2016-06-16 12:31 - 04182046 _____ C:\Users\Tomas\Downloads\zoznam_dlznikov_20_05_2016_csv.zip
2016-06-13 13:40 - 2016-06-13 13:40 - 00000000 ____D C:\Users\Tomas\Downloads\The-Walking-Dead-155-sk
2016-06-13 13:31 - 2016-06-13 13:33 - 20621617 _____ C:\Users\Tomas\Downloads\The-Walking-Dead-155-sk.cbr
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-07-09 20:36 - 2015-09-23 12:59 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Skype
2016-07-09 20:35 - 2015-11-22 22:12 - 01474832 _____ C:\Windows\system32\Drivers\sfi.dat
2016-07-09 20:35 - 2015-10-19 13:07 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-09 20:35 - 2015-09-23 15:17 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-07-09 20:32 - 2016-01-20 19:05 - 00000000 ____D C:\FRST
2016-07-09 20:31 - 2015-11-23 16:28 - 00015568 _____ C:\Windows\system32\Drivers\fvstore.dat
2016-07-09 20:20 - 2009-07-14 06:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-07-09 20:20 - 2009-07-14 06:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-07-09 20:10 - 2009-07-14 07:13 - 00007028 _____ C:\Windows\system32\PerfStringBackup.INI
2016-07-09 20:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-07-09 20:05 - 2015-10-19 13:07 - 00000932 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-09 20:05 - 2015-09-27 18:36 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\uTorrent
2016-07-09 20:05 - 2015-09-23 23:10 - 00000000 _____ C:\Windows\system32\Drivers\lvuvc.hs
2016-07-09 20:05 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-07-09 19:55 - 2015-10-19 18:43 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-07-09 19:45 - 2016-04-05 17:17 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\dirs
2016-07-09 19:45 - 2016-04-05 17:17 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\dirs
2016-07-09 19:32 - 2015-10-07 10:22 - 00000000 ____D C:\AdwCleaner
2016-07-09 11:11 - 2016-05-18 15:25 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Seznam.cz
2016-07-08 12:37 - 2015-09-23 18:36 - 00000000 ____D C:\Users\Tomas\AppData\Local\CrashDumps
2016-07-08 11:47 - 2015-12-15 18:18 - 00000000 ____D C:\Program Files\Recuva
2016-07-06 21:11 - 2015-09-24 17:25 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\foobar2000
2016-07-05 19:42 - 2016-02-10 16:26 - 00000000 ____D C:\Users\Tomas\Documents\My Games
2016-07-04 20:37 - 2015-09-22 11:03 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\DAEMON Tools Pro
2016-07-03 13:43 - 2015-11-22 22:12 - 00024802 _____ C:\Windows\system32\perfh041.dat
2016-07-03 13:43 - 2015-11-22 22:12 - 00016098 _____ C:\Windows\system32\perfc041.dat
2016-07-03 13:43 - 2015-11-22 22:12 - 00001985 _____ C:\Users\Public\Desktop\COMODO Internet Security.lnk
2016-07-03 13:43 - 2015-11-22 22:12 - 00001985 _____ C:\ProgramData\Desktop\COMODO Internet Security.lnk
2016-07-03 12:56 - 2015-10-26 17:22 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2016-07-02 11:57 - 2015-09-22 11:14 - 00000000 ____D C:\Users\Tomas\AppData\Local\NVIDIA Corporation
2016-07-01 21:37 - 2015-09-22 11:14 - 00000000 ____D C:\Users\Tomas\AppData\Local\NVIDIA
2016-07-01 21:37 - 2015-09-22 11:14 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-07-01 21:37 - 2015-09-22 11:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-07-01 21:37 - 2015-09-22 11:14 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-07-01 21:37 - 2015-09-22 11:10 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-06-30 16:25 - 2015-09-22 11:24 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-30 15:53 - 2015-09-22 12:13 - 00000022 _____ C:\Windows\GPU-Z.INI
2016-06-29 17:42 - 2015-09-22 11:09 - 00000000 ____D C:\Program Files (x86)\Google
2016-06-28 19:29 - 2015-09-23 15:16 - 00000000 ____D C:\Users\Tomas\AppData\Local\Adobe
2016-06-23 13:37 - 2015-09-22 10:51 - 00000000 ____D C:\Users\Tomas
2016-06-23 13:24 - 2015-10-26 19:58 - 00000000 ____D C:\Users\Tomas\Documents\The Witcher 3
2016-06-21 20:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help
2016-06-18 23:21 - 2015-10-06 16:13 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Origin
2016-06-18 23:21 - 2015-10-06 15:56 - 00000000 ____D C:\ProgramData\Origin
2016-06-18 23:18 - 2015-10-06 15:56 - 00000000 ____D C:\Program Files (x86)\Origin
2016-06-18 18:07 - 2015-09-22 11:38 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Intel Corporation
2016-06-18 12:39 - 2015-10-19 13:26 - 00002207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-06-17 11:37 - 2015-09-23 15:17 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-06-17 11:37 - 2015-09-23 15:17 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-06-17 11:37 - 2015-09-23 15:17 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-06-16 20:32 - 2015-09-23 14:54 - 00000000 ____D C:\Program Files (x86)\Verimatrix
2016-06-15 08:12 - 2015-11-18 18:14 - 00829600 _____ (COMODO) C:\Windows\system32\Drivers\cmdguard.sys
2016-06-15 08:12 - 2015-11-18 18:14 - 00031648 _____ (COMODO) C:\Windows\system32\Drivers\cmderd.sys
2016-06-15 08:12 - 2015-08-05 01:31 - 00116248 _____ (COMODO) C:\Windows\system32\Drivers\inspect.sys
2016-06-15 08:12 - 2015-08-05 01:31 - 00056472 _____ (COMODO) C:\Windows\system32\Drivers\cmdhlp.sys
2016-06-15 08:08 - 2015-09-03 12:52 - 00793104 _____ (COMODO) C:\Windows\system32\guard64.dll
2016-06-15 08:08 - 2015-09-03 12:52 - 00626288 _____ (COMODO) C:\Windows\SysWOW64\guard32.dll
2016-06-15 08:08 - 2015-08-05 01:29 - 00051800 _____ (COMODO) C:\Windows\system32\cmdcsr.dll
2016-06-15 08:04 - 2015-08-05 01:28 - 00365752 _____ (COMODO) C:\Windows\system32\cmdvrt64.dll
2016-06-15 08:02 - 2015-08-05 01:28 - 00051896 _____ (COMODO) C:\Windows\system32\cmdkbd64.dll
2016-06-15 07:58 - 2015-08-05 01:27 - 00296120 _____ (COMODO) C:\Windows\SysWOW64\cmdvrt32.dll
2016-06-15 07:56 - 2015-08-05 01:26 - 00046776 _____ (COMODO) C:\Windows\SysWOW64\cmdkbd32.dll
2016-06-14 20:46 - 2015-09-27 22:40 - 00000000 ____D C:\Users\Tomas\AppData\Local\ElevatedDiagnostics
2016-06-13 11:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2016-06-13 11:22 - 2009-07-14 07:08 - 00032538 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-06-12 12:17 - 2015-12-14 12:29 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-06-12 12:17 - 2015-09-23 12:59 - 00000000 ____D C:\ProgramData\Skype
==================== Files in the root of some directories =======
2015-09-26 22:23 - 2015-09-30 12:41 - 0000098 _____ () C:\Users\Tomas\AppData\Roaming\LauncherSettings_live.cfg
2015-09-26 15:11 - 2015-09-29 14:40 - 0000040 _____ () C:\Users\Tomas\AppData\Roaming\TheHunterSettings_live.cfg
2016-07-08 12:48 - 2016-07-08 12:48 - 0003584 _____ () C:\Users\Tomas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-06-23 13:37 - 2016-06-23 23:23 - 1065984 _____ () C:\Users\Tomas\AppData\Local\file__0.localstorage
2016-05-18 15:26 - 2016-05-18 15:26 - 0001064 _____ () C:\Users\Tomas\AppData\Local\recently-used.xbel
2015-09-30 15:42 - 2015-09-30 15:42 - 0007605 _____ () C:\Users\Tomas\AppData\Local\Resmon.ResmonCfg
2016-01-07 16:20 - 2016-01-07 16:20 - 0000003 _____ () C:\Users\Tomas\AppData\Local\updater.log
2016-01-07 16:20 - 2016-01-07 16:20 - 0000424 _____ () C:\Users\Tomas\AppData\Local\UserProducts.xml
2015-09-23 11:29 - 2015-09-23 11:29 - 0000000 _____ () C:\Users\Tomas\AppData\Local\{C7164F54-A819-4C1D-8F9A-A76D551A1A9A}
2015-09-23 12:37 - 2015-09-23 12:37 - 0000057 _____ () C:\ProgramData\Ament.ini
2015-09-22 11:27 - 2015-09-22 11:27 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-09-27 17:13 - 2015-09-27 17:13 - 0000133 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
Some files in TEMP:
====================
C:\Users\Tomas\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-06-07 20:39
==================== End of FRST.txt ============================
Ran by Tomas (administrator) on TOMAS-PC (09-07-2016 20:42:03)
Running from C:\Users\Tomas\Desktop
Loaded Profiles: Tomas (Available Profiles: Tomas)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
() C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
() C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMR\AODMR.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe
() C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
() C:\Windows\SysWOW64\ASGT.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe
() C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
() C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
() C:\Windows\SysWOW64\HsMgr.exe
() C:\Windows\system\HsMgr64.exe
(CMedia) C:\Program Files\UNi Xonar Audio\Customapp\AsusAudioCenter.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(SpiceBrains) C:\Program Files (x86)\InstantEyedropper\InstantEyedropper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.3.0.0\Lightshot.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
() C:\Program Files (x86)\ASUS\AI Suite III\AsusMiniBar.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7640944 2014-09-29] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation)
HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1610936 2016-07-03] (COMODO)
HKLM\...\Run: [Cmaudio8788] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd
HKLM\...\Run: [Cmaudio8788GX] => C:\Windows\syswow64\HsMgr.exe [200704 2015-12-28] ()
HKLM\...\Run: [Cmaudio8788GX64] => C:\Windows\system\HsMgr64.exe [282112 2015-12-28] ()
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [293872 2014-08-25] (Intel Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226560 2016-01-07] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595992 2016-06-01] (Oracle Corporation)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [windirs] => C:\Users\Tomas\AppData\Roaming\dirs\trwe.exe
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [uTorrent] => "C:\Users\Tomas\AppData\Roaming\uTorrent\utorrent.exe"
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8461224 2015-09-16] (Piriform Ltd)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53123712 2016-05-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3128408 2014-03-13] (Disc Soft Ltd)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [instanteyedropper] => C:\Program Files (x86)\InstantEyedropper\InstantEyedropper.exe [398848 2016-04-06] (SpiceBrains)
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Run: [Display] => C:\Users\Tomas\AppData\Roaming\uTorrent\nvtray.exe
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\Policies\Explorer: []
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\MountPoints2: {b55be7dd-6108-11e5-a9a1-ed3dc3209012} - E:\setup.exe
HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\MountPoints2: {fccf0273-6138-11e5-a72d-806e6f6e6963} - D:\Bin\ASSETUP.exe
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.0.1.213\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.0.1.213\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.0.1.213\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX64.dll No File
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX64.dll No File
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX64.dll No File
ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX32.dll No File
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX32.dll No File
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Tomas\AppData\Local\MEGAsync\ShellExtX32.dll No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{CBCDDB50-3195-4042-B7D5-109D87E1F755}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-01] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-01] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-3061203490-3799476124-1463932836-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FireFox:
========
FF ProfilePath: C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\lnagqaf9.default-1453036539048
FF NetworkProxy: "http", "85.207.69.6"
FF NetworkProxy: "http_port", 8080
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-17] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-17] ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-08-26] (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-04-29] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-04-29] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-01] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-01] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2016-04-13] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-06-03] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-06-03] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @verimatrix.com/ViewRightWeb -> C:\Program Files (x86)\Verimatrix\ViewRight Web\\npViewRight.dll [2012-12-19] (Verimatrix, Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3061203490-3799476124-1463932836-1000: @verimatrix.com/ViewRightWeb -> C:\Program Files (x86)\Verimatrix\ViewRight Web\\npViewRight.dll [2012-12-19] (Verimatrix, Inc.)
FF Extension: New Tab Override (browser.newtab.url replacement) - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\lnagqaf9.default-1453036539048\Extensions\newtaboverride@agenedia.com.xpi [2016-06-29]
FF Extension: Adblock Plus - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\lnagqaf9.default-1453036539048\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-04-28]
FF Extension: YouTube Flash Video Player - C:\Users\Tomas\AppData\Roaming\Mozilla\Firefox\Profiles\lnagqaf9.default-1453036539048\Extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi [2016-06-17]
FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon => not found
FF HKLM-x32\...\Firefox\Extensions: [{40211632-250D-4B8C-B04E-DA45BAE6DF8C}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\coFFPlgn => not found
FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_22.5.2.15\coFFAddon => not found
FF HKU\S-1-5-21-3061203490-3799476124-1463932836-1000\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi => not found
Chrome:
=======
CHR DefaultSearchURL: Default -> hxxps://nortonsafe.search.ask.com/web?q={searchTerms}&o=APN11908&prt=cr
CHR DefaultSearchKeyword: Default -> NortonSafe
CHR DefaultSuggestURL: Default -> hxxp://ss-sym.ask.com/query?q={searchTerms}&sstype=prefix&li=ff
CHR Profile: C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentácie Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-19]
CHR Extension: (Dokumenty Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-20]
CHR Extension: (Disk Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-02]
CHR Extension: (YouTube) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-20]
CHR Extension: (Adblock Plus) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-07-09]
CHR Extension: (Google Search) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-02]
CHR Extension: (Norton Home Page for Chrome) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejbdobdndcjhdmljipngpeoekdinlohe [2016-03-22]
CHR Extension: (Tabuľky Google) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-19]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16]
CHR Extension: (Norton Safe) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmgcfemagnogdodbambjhdcmfcpicngl [2016-04-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-12]
CHR Extension: (Gmail) - C:\Users\Tomas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-20]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
"BFE" => service could not be unlocked. <===== ATTENTION
U2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-04-25] ()
U2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]
U2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648 2014-01-22] (ASUSTeK Computer Inc.)
U2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.13\AsusFanControlService.exe [384000 2014-08-04] (ASUSTeK Computer Inc.) [File not signed]
U2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5817712 2016-07-03] (COMODO)
U3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2271928 2016-07-03] (COMODO)
U3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2016-05-24] (Futuremark)
U2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation)
U3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
U2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-04-29] (Intel Corporation)
U2 MSSQL$ASUSHOMECLOUD; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\sqlservr.exe [43129288 2012-06-29] (Microsoft Corporation)
U2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [449472 2016-07-09] (NVIDIA Corporation)
U3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [449472 2016-07-09] (NVIDIA Corporation)
U2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712 2016-07-09] (NVIDIA Corporation)
U3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2122248 2016-06-18] (Electronic Arts)
U4 SQLAgent$ASUSHOMECLOUD; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\SQLAGENT.EXE [379848 2012-06-29] (Microsoft Corporation)
U2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
U3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
U1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-01-22] ()
U1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2014-02-24] ()
U3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation)
U1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [31648 2016-06-15] (COMODO)
U1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [829600 2016-06-15] (COMODO)
U1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [56472 2016-06-15] (COMODO)
U3 cmudaxp; C:\Windows\System32\drivers\cmudaxp.sys [2735616 2015-12-28] (C-Media Inc)
U1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2015-09-22] (Disc Soft Ltd)
U3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
U0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2014-05-28] (Intel Corporation)
U1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [116248 2016-06-15] (COMODO)
U3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation)
U3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [46016 2016-07-09] (NVIDIA Corporation)
U3 RTTEAMPT; C:\Windows\System32\DRIVERS\RtTeam620.sys [58512 2012-07-03] (Realtek Corporation)
U3 AIDA64Driver; \??\C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [X]
U5 BFE; <===== ATTENTION: Locked Service
U3 cpuz138; \??\C:\Users\Tomas\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [X]
U4 IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [X]
U3 WinRing0_1_2_0; \??\C:\Program Files (x86)\NZXT\CAM\CAM_Client_V2.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-07-09 20:42 - 2016-07-09 20:42 - 00021811 _____ C:\Users\Tomas\Desktop\FRST.txt
2016-07-09 20:31 - 2016-07-09 20:31 - 02390016 _____ (Farbar) C:\Users\Tomas\Desktop\FRST64.exe
2016-07-09 20:08 - 2016-07-09 20:08 - 00104384 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2016-07-09 20:08 - 2016-07-09 20:08 - 00094144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2016-07-09 20:08 - 2016-07-09 20:08 - 00046016 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2016-07-09 20:08 - 2016-07-09 20:08 - 00000000 ____D C:\Windows\LastGood
2016-07-09 19:26 - 2016-07-09 19:26 - 03712064 _____ C:\Users\Tomas\Downloads\adwcleaner_5.201.exe
2016-07-08 12:48 - 2016-07-08 12:48 - 00003584 _____ C:\Users\Tomas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-07-08 12:48 - 2016-07-08 12:47 - 04932764 _____ C:\Users\Tomas\Desktop\Video_2016-07-08_124758.wmv
2016-07-08 12:44 - 2016-07-08 12:44 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\FastStone
2016-07-08 12:44 - 2016-07-08 12:44 - 00000000 ____D C:\Users\Tomas\AppData\Local\FastStone
2016-07-08 12:42 - 2016-07-08 12:42 - 09880924 _____ C:\Users\Tomas\Downloads\faststone-capture_7.3Shareware.exe
2016-07-08 12:39 - 2016-07-08 12:40 - 06770043 _____ ( ) C:\Users\Tomas\Downloads\screenrecorderfree.exe
2016-07-08 12:38 - 2016-07-08 12:38 - 40805888 _____ C:\Users\Tomas\Desktop\~temp-20160708_1238_14.avi
2016-07-08 12:38 - 2016-07-08 12:38 - 00000000 _____ C:\Users\Tomas\Desktop\~temp-20160708_1238_14.xnote.txt
2016-07-08 12:22 - 2016-07-08 12:23 - 10353883 _____ C:\Users\Tomas\Downloads\camstudio_2.6beta.exe
2016-07-08 11:51 - 2016-07-08 11:51 - 02915464 _____ (NTWind Software) C:\Users\Tomas\Downloads\WinSnap_4.5.3-setup.exe
2016-07-05 19:42 - 2016-07-05 19:42 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rocket League v1.17 (6 DLC)
2016-07-05 19:42 - 2016-07-05 19:42 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
2016-07-05 19:40 - 2016-07-05 19:40 - 00000000 ____D C:\2-click run
2016-07-04 11:36 - 2016-07-05 18:14 - 00000000 ____D C:\Users\Tomas\Downloads\Rocket League v1.17 (6 DLC)(2-click run)
2016-07-03 18:37 - 2016-07-03 18:37 - 01181560 _____ (EnTech Taiwan ) C:\Users\Tomas\Downloads\ddmsetup1800.exe
2016-07-03 13:11 - 2016-07-03 13:14 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\siw_tmp
2016-07-03 13:11 - 2016-07-03 13:11 - 00000000 ____D C:\Users\Tomas\AppData\Local\CrashRpt
2016-07-03 13:10 - 2016-07-03 13:14 - 00000000 ____D C:\Users\Tomas\Downloads\siw_tech
2016-07-03 13:09 - 2016-07-03 13:10 - 05885848 _____ C:\Users\Tomas\Downloads\siw_tech.zip
2016-07-01 21:37 - 2016-07-09 20:08 - 00003832 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-09 20:08 - 00003832 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-09 20:08 - 00003770 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-09 20:08 - 00003534 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-01 21:37 - 00003782 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-07-01 21:37 - 2016-07-01 21:37 - 00001416 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2016-07-01 21:37 - 2016-07-01 21:37 - 00001416 _____ C:\ProgramData\Desktop\GeForce Experience.lnk
2016-07-01 21:37 - 2016-06-30 18:12 - 01799104 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2016-07-01 21:37 - 2016-06-30 18:12 - 01755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2016-07-01 21:37 - 2016-06-30 18:12 - 01403328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2016-07-01 21:37 - 2016-06-30 18:12 - 01317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2016-07-01 21:37 - 2016-06-30 18:12 - 00120256 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2016-07-01 21:23 - 2016-07-01 21:32 - 65850568 _____ (NVIDIA Corporation) C:\Users\Tomas\Downloads\GeForce_Experience_Beta_v3.0.2.190.exe
2016-06-30 16:26 - 2016-07-03 14:53 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-06-30 16:19 - 2016-06-30 16:19 - 00000000 ____D C:\Users\Tomas\AppData\Local\Steam
2016-06-30 16:08 - 2016-07-08 11:34 - 00000000 ____D C:\Program Files (x86)\Steam
2016-06-30 16:08 - 2016-06-30 16:08 - 00000967 _____ C:\Users\Public\Desktop\Steam.lnk
2016-06-30 16:08 - 2016-06-30 16:08 - 00000967 _____ C:\ProgramData\Desktop\Steam.lnk
2016-06-30 16:08 - 2016-06-30 16:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-06-30 16:07 - 2016-06-30 16:07 - 01444992 _____ C:\Users\Tomas\Downloads\SteamSetup.exe
2016-06-30 15:48 - 2016-06-30 15:48 - 00000000 ____D C:\Program Files (x86)\Futuremark
2016-06-30 15:47 - 2016-06-30 15:53 - 00000000 ____D C:\Users\Tomas\Documents\3DMark 11
2016-06-30 15:47 - 2016-06-30 15:48 - 02949120 _____ C:\Users\Tomas\Downloads\Futuremark_SystemInfo_v446_installer.msi
2016-06-30 15:47 - 2016-06-30 15:47 - 00000000 ____D C:\Users\Tomas\AppData\Local\Futuremark
2016-06-30 14:15 - 2016-06-30 14:44 - 271860249 _____ C:\Users\Tomas\Downloads\3DMark11-v1-0-132.zip
2016-06-29 17:42 - 2016-06-29 17:42 - 00002184 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk
2016-06-29 17:42 - 2016-06-29 17:42 - 00000000 ____D C:\Users\Tomas\AppData\LocalLow\Google
2016-06-29 17:38 - 2016-06-29 17:38 - 00987728 _____ (Google Inc.) C:\Users\Tomas\Downloads\GoogleEarthProSetup.exe
2016-06-27 17:15 - 2016-06-27 17:17 - 00000000 ___HD C:\Users\Tomas\Desktop\.picasaoriginals
2016-06-23 13:37 - 2016-06-23 23:23 - 01065984 _____ C:\Users\Tomas\AppData\Local\file__0.localstorage
2016-06-23 13:37 - 2016-06-23 13:53 - 00000000 ____D C:\Users\Tomas\Heaven
2016-06-23 13:35 - 2016-06-23 13:35 - 00002121 _____ C:\Users\Public\Desktop\Heaven Benchmark 4.0.lnk
2016-06-23 13:35 - 2016-06-23 13:35 - 00002121 _____ C:\ProgramData\Desktop\Heaven Benchmark 4.0.lnk
2016-06-23 13:35 - 2016-06-23 13:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unigine
2016-06-23 13:35 - 2016-06-23 13:35 - 00000000 ____D C:\Program Files (x86)\Unigine
2016-06-23 13:25 - 2016-06-23 13:30 - 258728440 _____ (Unigine Corp. ) C:\Users\Tomas\Downloads\Unigine_Heaven-4.0.exe
2016-06-21 21:45 - 2016-06-21 21:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D
2016-06-21 21:45 - 2016-06-21 21:45 - 00000000 ____D C:\Program Files (x86)\Geeks3D
2016-06-21 21:44 - 2016-06-21 21:45 - 04856780 _____ (Geeks3D.com ) C:\Users\Tomas\Downloads\FurMark_1.10.2_Setup.exe
2016-06-21 21:33 - 2016-06-21 21:36 - 16335712 _____ (FinalWire Ltd. ) C:\Users\Tomas\Downloads\aida64extreme570.exe
2016-06-21 20:59 - 2016-06-21 21:15 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\NVIDIA
2016-06-21 20:24 - 2016-07-09 20:31 - 00000000 ____D C:\ProgramData\NVIDIA
2016-06-21 20:24 - 2016-06-03 09:38 - 00213952 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-06-21 20:24 - 2016-06-03 09:38 - 00203320 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 06362560 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 02453952 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 01351104 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2016-06-21 20:24 - 2016-06-03 05:26 - 00534072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-06-21 20:24 - 2016-06-03 05:26 - 00071224 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-06-21 20:24 - 2016-06-03 05:19 - 00113208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2016-06-21 20:24 - 2016-06-02 14:19 - 06452948 _____ C:\Windows\system32\nvcoproc.bin
2016-06-21 20:22 - 2016-06-03 09:38 - 39979576 _____ C:\Windows\system32\nvcompiler.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 35115456 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 31603768 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 25377848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 21802280 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 21346712 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 19180152 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 18143912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 17738592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 17290416 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 16756888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 14346320 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 13460536 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-06-21 20:22 - 2016-06-03 09:38 - 10643240 _____ C:\Windows\system32\nvptxJitCompiler.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 08733608 _____ C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 03825896 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 03512888 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 03383472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 03065280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 01922616 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6436839.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 01581624 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 01571776 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6436839.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00985144 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00908736 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00769984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00707520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00669952 _____ C:\Windows\system32\nvfatbinaryLoader.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00565392 _____ C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00502080 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00476664 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00425016 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00422752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00394912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00379448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00178136 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00155768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00153416 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00141256 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2016-06-21 20:22 - 2016-06-03 09:38 - 00131768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00046024 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2016-06-21 20:22 - 2016-06-03 09:38 - 00039124 _____ C:\Windows\system32\nvinfo.pb
2016-06-21 20:22 - 2016-06-03 09:38 - 00000594 _____ C:\Windows\SysWOW64\nv-vk32.json
2016-06-21 20:22 - 2016-06-03 09:38 - 00000594 _____ C:\Windows\system32\nv-vk64.json
2016-06-20 15:10 - 2016-06-20 15:10 - 00002488 _____ C:\Users\Tomas\Downloads\setup registry file edit this.reg
2016-06-20 15:09 - 2016-06-20 15:09 - 00000546 _____ C:\Users\Tomas\Downloads\setup help read.txt
2016-06-20 10:08 - 2016-06-20 12:11 - 00000000 ____D C:\Users\Tomas\Downloads\The.Witcher.3.Wild.Hunt.Patch.1.22-GOG
2016-06-20 10:07 - 2016-06-20 10:07 - 00028569 _____ C:\Users\Tomas\Downloads\The.Witcher.3.Wild.Hunt.Patch.v1.22-GOG.torrent
2016-06-18 18:31 - 2016-07-09 11:43 - 00000000 ____D C:\Users\Tomas\AppData\Local\Ethash
2016-06-18 18:17 - 2016-06-18 18:17 - 00001401 _____ C:\Users\Tomas\Desktop\The Witcher 3 Wild Hunt Blood and Wine.lnk
2016-06-18 18:17 - 2016-06-18 18:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher 3 Wild Hunt Blood and Wine
2016-06-18 18:07 - 2016-06-18 18:17 - 00000000 ____D C:\Program Files (x86)\The Witcher 3 Wild Hunt Blood and Wine
2016-06-18 17:56 - 2016-06-18 18:18 - 00000000 ____D C:\Users\Tomas\Documents\FLiNGTrainer
2016-06-18 17:55 - 2016-06-18 17:55 - 00000000 ____D C:\Users\Tomas\Downloads\The.Witcher.3.Wild.Hunt.v1.02-v1.22.Plus.22.Trainer-FLiNG
2016-06-18 17:51 - 2016-06-18 17:52 - 00729141 _____ C:\Users\Tomas\Downloads\The.Witcher.3.Wild.Hunt.v1.02-v1.22.Plus.22.Trainer-FLiNG.rar
2016-06-18 15:20 - 2016-06-18 15:42 - 00000000 ____D C:\Users\Tomas\Downloads\Crash.Bandicoot.3.&.Tekken.3+PS1.Emulator-FrosCh
2016-06-16 20:34 - 2016-06-16 20:34 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Verimatrix
2016-06-16 20:30 - 2016-06-16 20:31 - 21124608 _____ C:\Users\Tomas\Downloads\ViewRightWebInstaller(1).msi
2016-06-16 12:31 - 2016-06-16 12:31 - 04182046 _____ C:\Users\Tomas\Downloads\zoznam_dlznikov_20_05_2016_csv.zip
2016-06-13 13:40 - 2016-06-13 13:40 - 00000000 ____D C:\Users\Tomas\Downloads\The-Walking-Dead-155-sk
2016-06-13 13:31 - 2016-06-13 13:33 - 20621617 _____ C:\Users\Tomas\Downloads\The-Walking-Dead-155-sk.cbr
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-07-09 20:36 - 2015-09-23 12:59 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Skype
2016-07-09 20:35 - 2015-11-22 22:12 - 01474832 _____ C:\Windows\system32\Drivers\sfi.dat
2016-07-09 20:35 - 2015-10-19 13:07 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-09 20:35 - 2015-09-23 15:17 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-07-09 20:32 - 2016-01-20 19:05 - 00000000 ____D C:\FRST
2016-07-09 20:31 - 2015-11-23 16:28 - 00015568 _____ C:\Windows\system32\Drivers\fvstore.dat
2016-07-09 20:20 - 2009-07-14 06:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-07-09 20:20 - 2009-07-14 06:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-07-09 20:10 - 2009-07-14 07:13 - 00007028 _____ C:\Windows\system32\PerfStringBackup.INI
2016-07-09 20:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-07-09 20:05 - 2015-10-19 13:07 - 00000932 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-09 20:05 - 2015-09-27 18:36 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\uTorrent
2016-07-09 20:05 - 2015-09-23 23:10 - 00000000 _____ C:\Windows\system32\Drivers\lvuvc.hs
2016-07-09 20:05 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-07-09 19:55 - 2015-10-19 18:43 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-07-09 19:45 - 2016-04-05 17:17 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\dirs
2016-07-09 19:45 - 2016-04-05 17:17 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\dirs
2016-07-09 19:32 - 2015-10-07 10:22 - 00000000 ____D C:\AdwCleaner
2016-07-09 11:11 - 2016-05-18 15:25 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Seznam.cz
2016-07-08 12:37 - 2015-09-23 18:36 - 00000000 ____D C:\Users\Tomas\AppData\Local\CrashDumps
2016-07-08 11:47 - 2015-12-15 18:18 - 00000000 ____D C:\Program Files\Recuva
2016-07-06 21:11 - 2015-09-24 17:25 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\foobar2000
2016-07-05 19:42 - 2016-02-10 16:26 - 00000000 ____D C:\Users\Tomas\Documents\My Games
2016-07-04 20:37 - 2015-09-22 11:03 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\DAEMON Tools Pro
2016-07-03 13:43 - 2015-11-22 22:12 - 00024802 _____ C:\Windows\system32\perfh041.dat
2016-07-03 13:43 - 2015-11-22 22:12 - 00016098 _____ C:\Windows\system32\perfc041.dat
2016-07-03 13:43 - 2015-11-22 22:12 - 00001985 _____ C:\Users\Public\Desktop\COMODO Internet Security.lnk
2016-07-03 13:43 - 2015-11-22 22:12 - 00001985 _____ C:\ProgramData\Desktop\COMODO Internet Security.lnk
2016-07-03 12:56 - 2015-10-26 17:22 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2016-07-02 11:57 - 2015-09-22 11:14 - 00000000 ____D C:\Users\Tomas\AppData\Local\NVIDIA Corporation
2016-07-01 21:37 - 2015-09-22 11:14 - 00000000 ____D C:\Users\Tomas\AppData\Local\NVIDIA
2016-07-01 21:37 - 2015-09-22 11:14 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-07-01 21:37 - 2015-09-22 11:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-07-01 21:37 - 2015-09-22 11:14 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-07-01 21:37 - 2015-09-22 11:10 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-06-30 16:25 - 2015-09-22 11:24 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-30 15:53 - 2015-09-22 12:13 - 00000022 _____ C:\Windows\GPU-Z.INI
2016-06-29 17:42 - 2015-09-22 11:09 - 00000000 ____D C:\Program Files (x86)\Google
2016-06-28 19:29 - 2015-09-23 15:16 - 00000000 ____D C:\Users\Tomas\AppData\Local\Adobe
2016-06-23 13:37 - 2015-09-22 10:51 - 00000000 ____D C:\Users\Tomas
2016-06-23 13:24 - 2015-10-26 19:58 - 00000000 ____D C:\Users\Tomas\Documents\The Witcher 3
2016-06-21 20:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help
2016-06-18 23:21 - 2015-10-06 16:13 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Origin
2016-06-18 23:21 - 2015-10-06 15:56 - 00000000 ____D C:\ProgramData\Origin
2016-06-18 23:18 - 2015-10-06 15:56 - 00000000 ____D C:\Program Files (x86)\Origin
2016-06-18 18:07 - 2015-09-22 11:38 - 00000000 ____D C:\Users\Tomas\AppData\Roaming\Intel Corporation
2016-06-18 12:39 - 2015-10-19 13:26 - 00002207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-06-17 11:37 - 2015-09-23 15:17 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-06-17 11:37 - 2015-09-23 15:17 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-06-17 11:37 - 2015-09-23 15:17 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-06-16 20:32 - 2015-09-23 14:54 - 00000000 ____D C:\Program Files (x86)\Verimatrix
2016-06-15 08:12 - 2015-11-18 18:14 - 00829600 _____ (COMODO) C:\Windows\system32\Drivers\cmdguard.sys
2016-06-15 08:12 - 2015-11-18 18:14 - 00031648 _____ (COMODO) C:\Windows\system32\Drivers\cmderd.sys
2016-06-15 08:12 - 2015-08-05 01:31 - 00116248 _____ (COMODO) C:\Windows\system32\Drivers\inspect.sys
2016-06-15 08:12 - 2015-08-05 01:31 - 00056472 _____ (COMODO) C:\Windows\system32\Drivers\cmdhlp.sys
2016-06-15 08:08 - 2015-09-03 12:52 - 00793104 _____ (COMODO) C:\Windows\system32\guard64.dll
2016-06-15 08:08 - 2015-09-03 12:52 - 00626288 _____ (COMODO) C:\Windows\SysWOW64\guard32.dll
2016-06-15 08:08 - 2015-08-05 01:29 - 00051800 _____ (COMODO) C:\Windows\system32\cmdcsr.dll
2016-06-15 08:04 - 2015-08-05 01:28 - 00365752 _____ (COMODO) C:\Windows\system32\cmdvrt64.dll
2016-06-15 08:02 - 2015-08-05 01:28 - 00051896 _____ (COMODO) C:\Windows\system32\cmdkbd64.dll
2016-06-15 07:58 - 2015-08-05 01:27 - 00296120 _____ (COMODO) C:\Windows\SysWOW64\cmdvrt32.dll
2016-06-15 07:56 - 2015-08-05 01:26 - 00046776 _____ (COMODO) C:\Windows\SysWOW64\cmdkbd32.dll
2016-06-14 20:46 - 2015-09-27 22:40 - 00000000 ____D C:\Users\Tomas\AppData\Local\ElevatedDiagnostics
2016-06-13 11:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2016-06-13 11:22 - 2009-07-14 07:08 - 00032538 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-06-12 12:17 - 2015-12-14 12:29 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-06-12 12:17 - 2015-09-23 12:59 - 00000000 ____D C:\ProgramData\Skype
==================== Files in the root of some directories =======
2015-09-26 22:23 - 2015-09-30 12:41 - 0000098 _____ () C:\Users\Tomas\AppData\Roaming\LauncherSettings_live.cfg
2015-09-26 15:11 - 2015-09-29 14:40 - 0000040 _____ () C:\Users\Tomas\AppData\Roaming\TheHunterSettings_live.cfg
2016-07-08 12:48 - 2016-07-08 12:48 - 0003584 _____ () C:\Users\Tomas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-06-23 13:37 - 2016-06-23 23:23 - 1065984 _____ () C:\Users\Tomas\AppData\Local\file__0.localstorage
2016-05-18 15:26 - 2016-05-18 15:26 - 0001064 _____ () C:\Users\Tomas\AppData\Local\recently-used.xbel
2015-09-30 15:42 - 2015-09-30 15:42 - 0007605 _____ () C:\Users\Tomas\AppData\Local\Resmon.ResmonCfg
2016-01-07 16:20 - 2016-01-07 16:20 - 0000003 _____ () C:\Users\Tomas\AppData\Local\updater.log
2016-01-07 16:20 - 2016-01-07 16:20 - 0000424 _____ () C:\Users\Tomas\AppData\Local\UserProducts.xml
2015-09-23 11:29 - 2015-09-23 11:29 - 0000000 _____ () C:\Users\Tomas\AppData\Local\{C7164F54-A819-4C1D-8F9A-A76D551A1A9A}
2015-09-23 12:37 - 2015-09-23 12:37 - 0000057 _____ () C:\ProgramData\Ament.ini
2015-09-22 11:27 - 2015-09-22 11:27 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-09-27 17:13 - 2015-09-27 17:13 - 0000133 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
Some files in TEMP:
====================
C:\Users\Tomas\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-06-07 20:39
==================== End of FRST.txt ============================