Ano za to se omlouvám, dával sem to i jinam ale žádná odpověď tak sem zkusil i vás jestli to třeba není nějaký vir.
Dodávám log:
cScan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-01-2017
Ran by Denis (administrator) on DENIS-PC (29-01-2017 21:26:43)
Running from C:\Users\Denis\Desktop
Loaded Profiles: Denis (Available Profiles: Denis & Guest)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser not detected!)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Windows\Temp\gB987.tmp.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\42.0.2393.517\opera.exe
(forum.viry.cz) C:\Users\Denis\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16776192 2016-12-16] (Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM\...\RunOnce: [wd] => C:\Windows\TEMP\gB987.tmp.exe [240640 2017-01-29] () <===== ATTENTION
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\Run: [SmartRAM] => "C:\Program Files (x86)\IObit\Advanced SystemCare\Suo10_SmartRAM.exe" /m
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: F - F:\setup.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: G - G:\setup.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: H - H:\setup.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: I - I:\setup.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {3d86806d-700b-11e5-9331-d050995d1883} - J:\Lenovo_Suite.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {69abef0c-bacf-11e5-9cd9-d050995d1883} - J:\Lenovo_Suite.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {69abef0d-bacf-11e5-9cd9-d050995d1883} - J:\Lenovo_Suite.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {81fad7fd-6b83-11e5-8512-d050995d1883} - H:\setup.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {86efd449-8c45-11e5-8b87-d050995d1883} - I:\setup.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {ab1a1a91-9b77-11e5-996d-d050995d1883} - J:\Lenovo_Suite.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {c0d3c484-53e3-11e6-b777-d050995d1883} - G:\Lenovo_Suite.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {c0d3c48c-53e3-11e6-b777-d050995d1883} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {f35da13d-699f-11e5-b637-d050995d1883} - F:\setup.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {fa58ac97-7e1b-11e5-a96d-d050995d1883} - G:\Lenovo_Suite.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\...\MountPoints2: {fa58adf4-7e1b-11e5-a96d-d050995d1883} - I:\setup.exe
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [899584 2010-11-21] (Microsoft Corporation)
HKU\S-1-5-18\...\Run: [] => 0
ShellExecuteHooks: No Name - {3E07EA28-AB6D-11E6-B40F-64006A5CFC23} - -> No File
ShellExecuteHooks: No Name - {5FFEB2DE-CB68-11E6-A1F7-64006A5CFC23} - -> No File
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Denis\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Denis\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Denis\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [KzShlobj] -> {AAA0C5B8-933F-4200-93AD-B143D7FFF9F2} => -> No File
ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Denis\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Denis\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Denis\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
GroupPolicyScripts: Restriction <======= ATTENTION
GroupPolicyScripts\User: Restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\Parameters: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{C806701D-CAD0-475F-B686-7C1FBF374F1C}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131131080308624351&GUID=00000000-0000-0000-0000-000000000000
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131131080308644352&GUID=00000000-0000-0000-0000-000000000000
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
www.google.com
HKU\S-1-5-21-3921696331-1691386709-4026121632-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://
www.google.cz/
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxp://
www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-3921696331-1691386709-4026121632-1000 -> {ielnksrch} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2016-05-23] (IObit)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2017-01-28] (Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2017-01-28] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_112\bin\ssv.dll [2016-12-06] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_112\bin\jp2ssv.dll [2016-12-06] (Oracle Corporation)
FireFox:
========
FF DefaultProfile: 2c9np9kq.default
FF ProfilePath: C:\Users\Denis\AppData\Roaming\Mozilla\Profiles\2c9np9kq.default\Profiles\9uin2w3r.default [not found]
FF ProfilePath: C:\Users\Denis\AppData\Roaming\Mozilla\Profiles\2c9np9kq.default [2016-12-13]
FF NewTab: Mozilla\Profiles\2c9np9kq.default -> C:\\ProgramData\\Quoteexs\\ff.NT
FF DefaultSearchEngine: Mozilla\Profiles\2c9np9kq.default -> hohosearch
FF DefaultSearchEngine.US: Mozilla\Profiles\2c9np9kq.default -> data:text/plain,browser.search.defaultenginename.US=hohosearch
FF Homepage: Mozilla\Profiles\2c9np9kq.default -> C:\\ProgramData\\Quoteexs\\ff.HP
FF Keyword.URL: Mozilla\Profiles\2c9np9kq.default -> hxxp://d2ucfwpxlh3zh3.cloudfront.net/chrome.php?uid=5EB3A4D7DDBBC2BD8F0C675F8925F8CD&ptid=amz&ts=AHEqBXEpB34tBE..&v=20160620&mode=ffexttoolbar&q=
FF ProfilePath: C:\Users\Denis\AppData\Roaming\Mozilla\Firefox\Profiles\9uin2w3r.default [2017-01-25]
FF user.js: detected! => C:\Users\Denis\AppData\Roaming\Mozilla\Firefox\Profiles\9uin2w3r.default\user.js [2017-01-25]
FF Homepage: Mozilla\Firefox\Profiles\9uin2w3r.default -> user_pref("browser.startup.homepage", "hxxps://
www.malwarebytes.org/restorebrowser/
FF Extension: (MEGA) - C:\Users\Denis\AppData\Roaming\Mozilla\Firefox\Profiles\9uin2w3r.default\Extensions\
firefox@mega.co.nz.xpi [2016-05-22]
FF Extension: (Seznam lištička) - C:\Users\Denis\AppData\Roaming\Mozilla\Firefox\Profiles\9uin2w3r.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2016-05-24]
FF Extension: (No Name) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [not found]
FF ProfilePath: C:\Users\Denis\AppData\Roaming\Profiles\2c9np9kq.default [2017-01-25]
FF user.js: detected! => C:\Users\Denis\AppData\Roaming\Profiles\2c9np9kq.default\user.js [2017-01-25]
FF SelectedSearchEngine: Profiles\2c9np9kq.default -> trotux
FF Homepage: Profiles\2c9np9kq.default -> hxxp://
www.trotux.com/?z=fcb15cbf8f6e5a145140b ... CA&type=hp
FF Keyword.URL: Profiles\2c9np9kq.default -> hxxp://d2ucfwpxlh3zh3.cloudfront.net/chrome.php?uid=5EB3A4D7DDBBC2BD8F0C675F8925F8CD&ptid=amz&ts=AHEqBXEpB34tBE..&v=20160620&mode=ffexttoolbar&q=
FF Extension: (uBlock Origin) - C:\Users\Denis\AppData\Roaming\Profiles\2c9np9kq.default\Extensions\
uBlock0@raymondhill.net.xpi [2016-12-14]
FF Extension: (Adblock Plus) - C:\Users\Denis\AppData\Roaming\Profiles\2c9np9kq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-12-14]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_186.dll [2016-12-14] ()
FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2017-01-28] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2017-01-28] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_186.dll [2016-12-14] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll [2016-09-20] (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.112.2 -> C:\Program Files (x86)\Java\jre1.8.0_112\bin\dtplugin\npDeployJava1.dll [2016-12-06] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.112.2 -> C:\Program Files (x86)\Java\jre1.8.0_112\bin\plugin2\npjp2.dll [2016-12-06] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-29] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-29] (NVIDIA Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-01-21] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-01-21] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
Opera:
=======
OPR Extension: (gera2ld) - C:\Users\Denis\AppData\Roaming\Opera Software\Opera Stable\Extensions\niofholngoecgnpgamgbiiijcjlllpge [2017-01-14]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-04-02] (Advanced Micro Devices, Inc.) [File not signed]
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1362464 2016-07-31] ()
S3 BstHdAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Service.exe [445976 2016-10-10] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe [425496 2016-10-10] (BlueStack Systems, Inc.)
S3 BstHdPlusAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Plus-Service.exe [466456 2016-10-10] (BlueStack Systems, Inc.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd)
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [229648 2016-10-07] (EasyAntiCheat Ltd)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6394432 2016-09-27] (GOG.com)
S3 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1165368 2016-06-15] (NVIDIA Corporation)
S2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [1600800 2016-10-21] (IObit)
S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [360736 2016-10-28] (IObit)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [3046688 2016-07-29] (IObit)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4362656 2016-02-24] (INCA Internet Co., Ltd.) [File not signed]
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176 2016-12-29] (NVIDIA Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-06-15] (NVIDIA Corporation)
S3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-06-15] (NVIDIA Corporation)
S3 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-06-15] (NVIDIA Corporation)
S2 sgbupt; C:\Program Files (x86)\SuperBoost\SuperBoost Software Updater\SuperBoostUpdater.exe [2600256 2016-04-21] (SuperBoost Software)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856 2016-12-15] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S4 WpSvc; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S4 WpSvc; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [11944 2016-09-29] (Advanced Micro Devices Inc.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-11-04] (Advanced Micro Devices)
S3 AsrSetupDrv; no ImagePath
S3 AtcL001; C:\Windows\System32\DRIVERS\l160x64.sys [58368 2009-06-25] (Atheros Communications, Inc.)
S3 BstHdDrv; C:\Program Files (x86)\Bluestacks\HD-Hypervisor-amd64.sys [152672 2016-10-10] (BlueStack Systems)
S3 BstkDrv; C:\Program Files (x86)\Bluestacks\BstkDrv.sys [270904 2016-10-07] (Bluestack System Inc. )
S3 catchme; no ImagePath
S3 cpuz138; no ImagePath
S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-10-03] (Disc Soft Ltd)
R2 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [155912 2016-03-31] (BitDefender LLC)
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [54736 2016-12-18] ()
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-09-29] (REALiX(tm))
S4 IMFFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\IMFFilter.sys [22208 2016-04-01] (IObit)
R3 L1C; C:\Windows\System32\DRIVERS\L1C60x64.sys [121032 2013-07-16] (Qualcomm Atheros Co., Ltd.)
S3 MBAMSwissArmy; no ImagePath
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-06-15] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [46016 2016-12-06] (NVIDIA Corporation)
S3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2016-07-27] (IObit.com)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21360 2016-03-22] (IObit)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 Trufos; C:\Windows\System32\DRIVERS\TRUFOS.sys [452040 2016-03-31] (BitDefender S.R.L.)
R1 UCGuard; C:\Windows\System32\DRIVERS\ucguard.sys [80768 2016-04-25] (Huorong Borui (Beijing) Technology Co., Ltd.) <==== ATTENTION
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [151184 2016-03-10] (MBB)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
NETSVCx32: HpSvc -> no filepath.
NETSVCx32: GmSvc -> no filepath.
NETSVCx32: WpSvc -> no filepath.
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-29 21:26 - 2017-01-29 21:27 - 00020475 _____ C:\Users\Denis\Desktop\FRST.txt
2017-01-29 21:25 - 2017-01-29 21:26 - 00000000 ____D C:\FRST
2017-01-29 21:24 - 2017-01-29 21:24 - 02420736 _____ (Farbar) C:\Users\Denis\Desktop\FRST64.exe
2017-01-29 21:24 - 2017-01-29 21:24 - 00112640 _____ (forum.viry.cz) C:\Users\Denis\Desktop\FRSTLauncher.exe
2017-01-29 15:56 - 2017-01-29 15:56 - 01543944 _____ (WiseCleaner.com ) C:\Users\Denis\Desktop\WMOSetup.exe
2017-01-29 15:56 - 2017-01-29 15:56 - 00000643 _____ C:\Users\Public\Desktop\Wise Memory Optimizer.lnk
2017-01-29 15:56 - 2017-01-29 15:56 - 00000000 ____D C:\Users\Denis\AppData\Roaming\Wise Care 365
2017-01-29 15:56 - 2017-01-29 15:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Memory Optimizer
2017-01-28 18:47 - 2017-01-28 18:47 - 00037289 _____ C:\Users\Denis\Downloads\Pirates-Of-The-Caribbean-Curse-Of-The-Black-Pearl(0000091778).zip
2017-01-28 18:02 - 2017-01-28 18:02 - 00032984 _____ C:\Users\Denis\Downloads\Pirates-of-the-Caribbean-Dead-Man-s-Chest(0000111040).zip
2017-01-28 17:59 - 2017-01-28 17:59 - 00031100 _____ C:\Users\Denis\Downloads\Pirates-of-the-Caribbean-Dead-Man-s-Chest(0000044845).zip
2017-01-28 17:57 - 2017-01-28 17:57 - 00031068 _____ C:\Users\Denis\Downloads\Pirates-of-the-Caribbean-Dead-Man-s-Chest(0000216911).zip
2017-01-28 17:55 - 2017-01-28 17:55 - 00068676 _____ C:\Users\Denis\Downloads\Pirates-of-the-Caribbean-Dead-Man-s-Chest(0000058351).zip
2017-01-28 17:52 - 2017-01-28 17:52 - 00040114 _____ C:\Users\Denis\Downloads\Pirates-of-the-Caribbean-Dead-Man-s-Chest(0000229261).zip
2017-01-28 17:47 - 2017-01-28 17:47 - 00035687 _____ C:\Users\Denis\Downloads\Pirates-of-the-Caribbean-Dead-Man-s-Chest(0000146149).zip
2017-01-28 17:44 - 2017-01-28 17:44 - 00031124 _____ C:\Users\Denis\Downloads\Pirates-of-the-Caribbean-Dead-Man-s-Chest(0000065209).zip
2017-01-28 16:09 - 2017-01-28 18:03 - 00000000 ____D C:\Users\Denis\Downloads\PiratesOfTheCaribbeanDeadMansChest20061080PHevcBluury
2017-01-28 13:30 - 2017-01-28 15:12 - 1809692624 _____ C:\Users\Denis\Downloads\Na-vlásku-(anim.-2010)cz---IRISA.avi
2017-01-28 12:22 - 2017-01-28 12:22 - 00110144 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-64.dll
2017-01-27 20:15 - 2017-01-27 20:15 - 00020747 _____ C:\Users\Denis\Desktop\Mad-Max-Fury-Road(0000258750).zip
2017-01-27 19:08 - 2017-01-28 18:47 - 00000000 ____D C:\Users\Denis\Downloads\Pirates of the Caribbean - Curse of the Black Pearl (2003) [1080p]
2017-01-27 19:08 - 2017-01-27 20:15 - 00000000 ____D C:\Users\Denis\Downloads\Mad Max Fury Road (2015) [1080p]
2017-01-25 21:49 - 2017-01-25 21:49 - 00000000 ____H C:\asc_rdflag
2017-01-25 21:02 - 2017-01-25 21:02 - 00000000 ____D C:\Program Files (x86)\AnalogX
2017-01-25 20:35 - 2016-11-18 07:18 - 01457312 _____ (Sysinternals -
www.sysinternals.com) C:\Users\Denis\Desktop\procexp64.exe
2017-01-24 13:04 - 2017-01-24 13:04 - 08813488 _____ (Piriform Ltd) C:\Users\Denis\Downloads\ccsetup526.exe
2017-01-24 11:10 - 2017-01-24 11:10 - 00959536 _____ C:\Users\Denis\Downloads\PANJ INCREASE RUST FPS (1).rar
2017-01-23 20:30 - 2017-01-23 20:33 - 2675735987 _____ C:\Users\Denis\Downloads\Polish.Language.Pack.rar
2017-01-23 19:22 - 2017-01-25 20:59 - 00000000 ____D C:\Users\Denis\Downloads\mody withcer 3
2017-01-23 18:52 - 2017-01-23 18:52 - 00002488 _____ C:\Users\Denis\Downloads\setup registry file edit this.reg
2017-01-23 18:52 - 2017-01-23 18:52 - 00000546 _____ C:\Users\Denis\Downloads\setup help read.txt
2017-01-23 17:56 - 2017-01-23 18:45 - 00002642 _____ C:\Users\Denis\Downloads\Witcher 3.reg
2017-01-23 17:39 - 2017-01-24 02:42 - 277400186 _____ C:\Users\Denis\Downloads\The.Witcher.3.Hild.Hunt.Hearts.of.Stone.v2.0.0.45-GOG.rar
2017-01-23 16:16 - 2017-01-23 16:39 - 547855608 _____ (GOG.com ) C:\Users\Denis\Downloads\setup_the_witcher3_dlc1-16_2.0.0.45.exe
2017-01-23 15:49 - 2017-01-23 16:05 - 471244984 _____ ( ) C:\Users\Denis\Downloads\patch_witcher3_blood_and_wine_2.0.0.51.exe
2017-01-23 15:47 - 2017-01-23 15:47 - 00003158 _____ C:\Windows\System32\Tasks\{7456155C-283F-4579-8DAF-E2585EF5D773}
2017-01-23 15:37 - 2017-01-23 15:45 - 150463144 _____ ( ) C:\Users\Denis\Downloads\patch_witcher3_hearts_of_stone_2.0.0.51.exe
2017-01-23 15:37 - 2017-01-23 15:38 - 08986328 _____ ( ) C:\Users\Denis\Downloads\patch_witcher3_1-16dlc_2.0.0.51.exe
2017-01-23 15:32 - 2017-01-23 15:34 - 12099328 _____ ( ) C:\Users\Denis\Downloads\patch_witcher3_1.22-1.24.0_2.0.0.46.exe
2017-01-23 15:11 - 2017-01-23 15:11 - 00095564 _____ C:\Users\Denis\Downloads\The.Sims.4.City.Living.INTERNAL-RELOADED.torrent
2017-01-23 15:10 - 2017-01-23 15:10 - 00000204 _____ C:\Users\Denis\Downloads\The Sims 4 City Living INTERNAL-RELOADED Torrent.txt
2017-01-23 14:58 - 2017-01-23 15:24 - 469485976 _____ ( ) C:\Users\Denis\Downloads\patch_witcher3_1.30_2.0.0.51.exe
2017-01-23 14:58 - 2017-01-23 15:19 - 287475912 _____ ( ) C:\Users\Denis\Downloads\patch_witcher3_1.30-1.31_2.0.0.52.exe
2017-01-23 14:51 - 2017-01-23 14:51 - 00003246 _____ C:\Windows\System32\Tasks\{153A2C3C-E6AC-4FA8-A98E-1F6AF8895EA1}
2017-01-23 10:44 - 2016-12-29 13:43 - 00133056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2017-01-23 10:43 - 2016-12-29 14:06 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2017-01-21 21:05 - 2017-01-21 21:05 - 00034721 _____ C:\Users\Denis\Downloads\Percy-Jackson-Sea-of-Monsters(0000227700).zip
2017-01-21 19:54 - 2017-01-21 21:05 - 00000000 ____D C:\Users\Denis\Downloads\Percy Jackson Sea of Monsters (2013) [1080p]
2017-01-21 12:23 - 2017-01-21 12:23 - 00000000 ____D C:\Users\Denis\AppData\Local\TSR Workshop
2017-01-21 12:22 - 2017-01-21 12:22 - 00000000 ____D C:\Users\Denis\AppData\Roaming\TSRWorkshop
2017-01-21 12:22 - 2017-01-21 12:22 - 00000000 ____D C:\Users\Denis\AppData\Local\Ibibi_HB
2017-01-21 12:22 - 2017-01-21 12:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TSR Workshop
2017-01-21 12:20 - 2017-01-21 12:20 - 00000000 ____D C:\Users\Denis\AppData\Roaming\The Sims Resource
2017-01-21 12:18 - 2017-01-21 12:18 - 23552305 _____ C:\Users\Denis\Downloads\TSRW_2_2_34.zip
2017-01-19 22:40 - 2017-01-19 22:40 - 00000146 _____ C:\Users\Denis\Desktop\Ovládací panel NVIDIA.lnk
2017-01-19 22:21 - 2017-01-19 22:21 - 00228175 _____ C:\Users\Denis\Downloads\NV-Inspector-[Guru3D.com].rar
2017-01-19 22:15 - 2017-01-19 22:15 - 00959536 _____ C:\Users\Denis\Downloads\PANJ INCREASE RUST FPS.rar
2017-01-19 20:04 - 2017-01-19 20:04 - 00034192 _____ C:\Users\Denis\Downloads\Percy-Jackson-amp-the-Olympians-The-Lightning-Thief(0000158410).zip
2017-01-19 18:08 - 2017-01-19 20:05 - 00000000 ____D C:\Users\Denis\Downloads\Percy Jackson And The Olympians The Lightning Thief (2010) [1080p]
2017-01-17 17:22 - 2017-01-17 17:22 - 00947230 _____ C:\Users\Denis\Downloads\kardofe_Livingroom Graphite_Wood stove.package
2017-01-17 15:08 - 2017-01-17 15:08 - 00000000 ____D C:\Users\Denis\AppData\Local\Rusted.cz
2017-01-17 15:06 - 2017-01-23 17:04 - 00000000 ____D C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rusted.cz
2017-01-16 21:47 - 2017-01-16 21:48 - 527233700 _____ (Rusted.cz ) C:\Users\Denis\Downloads\Rust Legacy 1.9.7.exe
2017-01-16 20:44 - 2017-01-16 20:44 - 00000000 ____D C:\Users\Denis\AppData\Local\Disc_Soft_Ltd
2017-01-16 13:20 - 2017-01-16 13:20 - 00000000 ____D C:\Users\Denis\.oracle_jre_usage
2017-01-15 16:27 - 2017-01-15 16:27 - 00003591 _____ C:\Users\Denis\Documents\Msirepair.reg
2017-01-15 16:01 - 2017-01-15 16:01 - 00003272 _____ C:\Windows\System32\Tasks\{26EE4881-8D01-45BD-B910-7B39D9CB3EA4}
2017-01-15 15:58 - 2017-01-15 16:46 - 855998464 _____ C:\Users\Denis\Downloads\Shrek-2-CZ.avi.mpg
2017-01-15 15:51 - 2017-01-15 15:51 - 00003204 _____ C:\Windows\System32\Tasks\{7EF01A6D-3D5C-4024-9837-EA6A237F704D}
2017-01-15 15:51 - 2014-09-17 01:45 - 00447752 _____ (On2.com) C:\Windows\SysWOW64\vp6vfw.dll
2017-01-15 15:42 - 2017-01-16 19:33 - 00000000 ____D C:\Users\Denis\Documents\Electronic Arts
2017-01-14 19:14 - 2017-01-14 19:19 - 00000000 ____D C:\Users\Denis\Documents\CoA
2017-01-14 19:13 - 2017-01-16 10:04 - 00000669 _____ C:\Users\Denis\Desktop\Champions of Anteria.lnk
2017-01-14 18:55 - 2017-01-14 18:57 - 00000000 ____D C:\Users\Denis\Downloads\The.Sims.4.City.Living.INTERNAL-RELOADED
2017-01-14 01:10 - 2017-01-14 01:10 - 00001139 _____ C:\Users\Denis\Desktop\Opera.lnk
2017-01-14 00:48 - 2017-01-28 11:11 - 00003846 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1484351289
2017-01-14 00:48 - 2017-01-14 00:48 - 00001139 _____ C:\Users\Public\Desktop\Opera.lnk
2017-01-14 00:48 - 2017-01-14 00:48 - 00001139 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2017-01-14 00:46 - 2017-01-28 11:11 - 00000000 ____D C:\Program Files (x86)\Opera
2017-01-13 20:14 - 2017-01-16 10:04 - 00000775 _____ C:\Users\Denis\Desktop\GTA - San Andreas.lnk
2017-01-13 19:45 - 2017-01-13 19:45 - 00003104 _____ C:\Windows\System32\Tasks\{88F77331-E0B7-4D00-B1B5-7F908920693F}
2017-01-13 18:34 - 2017-01-16 10:04 - 00001161 _____ C:\Users\Denis\Desktop\WitcherScriptMerger.lnk
2017-01-13 18:33 - 2017-01-16 10:04 - 00001033 _____ C:\Users\Denis\Desktop\TheForest 0.50.lnk
2017-01-13 17:39 - 2017-01-14 01:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dream Aquarium
2017-01-13 17:17 - 2017-01-16 10:04 - 00001113 _____ C:\Users\Denis\Desktop\Far Cry Primal.lnk
2017-01-13 15:02 - 2017-01-13 15:15 - 00000080 _____ C:\Users\Denis\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦
2017-01-12 13:28 - 2017-01-12 13:28 - 00000000 ____D C:\Users\Denis\Documents\Rockstar Games
2017-01-12 13:23 - 2017-01-12 13:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2017-01-12 04:18 - 2017-01-29 20:53 - 00014384 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-01-12 04:18 - 2017-01-29 20:53 - 00014384 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-01-12 01:23 - 2017-01-17 14:55 - 00000000 ____D C:\ProgramData\Avg
2017-01-12 00:26 - 2017-01-12 00:26 - 00081920 _____ C:\Users\Denis\AppData\Local\GDIPFONTCACHEV1.DAT
2017-01-11 23:46 - 2017-01-11 23:46 - 00003214 _____ C:\Windows\System32\Tasks\{7EF35AC1-0BE9-4278-AD71-03C7AE7CDEA8}
2017-01-11 23:17 - 2017-01-11 23:42 - 609291656 _____ (Macrovision Corporation) C:\Users\Denis\Downloads\TWEE_Polish_language_pack.exe
2017-01-11 22:31 - 2017-01-11 22:33 - 00034304 ___SH C:\Users\Denis\Thumbs.db
2017-01-11 13:02 - 2017-01-05 19:55 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2017-01-11 13:02 - 2017-01-05 19:55 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2017-01-11 13:02 - 2017-01-05 19:52 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2017-01-11 13:02 - 2017-01-05 19:52 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2017-01-11 13:02 - 2017-01-05 18:43 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2017-01-11 13:02 - 2017-01-05 18:42 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2017-01-11 13:02 - 2017-01-05 18:32 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2017-01-11 13:02 - 2017-01-05 18:25 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2017-01-11 13:02 - 2017-01-05 18:24 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2017-01-11 13:02 - 2017-01-05 18:24 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2017-01-11 13:02 - 2017-01-05 18:24 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2017-01-11 13:02 - 2017-01-05 18:23 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2017-01-11 13:02 - 2017-01-05 18:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2017-01-09 15:33 - 2017-01-09 15:36 - 91803275 _____ C:\Users\Denis\Downloads\Witcher Script Merger v0.6.2-484-0-6-2.zip
2017-01-09 11:34 - 2017-01-09 11:34 - 00000000 ____D C:\Users\Denis\Documents\CPY_SAVES
2017-01-08 03:28 - 2017-01-08 03:28 - 01953336 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437633.dll
2017-01-08 03:28 - 2017-01-08 03:28 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437633.dll
2017-01-08 03:28 - 2017-01-04 15:05 - 17537912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2017-01-08 03:28 - 2017-01-04 15:03 - 03518872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2017-01-08 03:17 - 2017-01-08 16:00 - 00002886 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (Denis)
2017-01-08 02:17 - 2017-01-08 21:18 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2017-01-08 02:17 - 2017-01-08 02:17 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-01-07 14:32 - 2017-01-16 10:04 - 00001515 _____ C:\Users\Denis\Desktop\Euro Truck Simulator 2 (x64.lnk
2017-01-07 14:32 - 2017-01-07 14:32 - 00000000 ____D C:\Users\Denis\Documents\SkidRow
2017-01-07 14:29 - 2017-01-16 13:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 - Vive la France !
2017-01-06 22:27 - 2017-01-06 23:28 - 00000000 ____D C:\Users\Denis\Downloads\Euro.Truck.Simulator.2.Vive.la.France-SKIDROW
2017-01-05 19:56 - 2017-01-29 21:27 - 00016706 _____ C:\Windows\System32\Tasks\951462v0a67h59
2017-01-05 19:56 - 2017-01-08 02:59 - 00000000 ____D C:\Program Files (x86)\Edechjiherly
2017-01-05 19:56 - 2017-01-05 19:56 - 00000000 ___HD C:\ProgramData\951462v0a67h59
2017-01-05 19:56 - 2017-01-05 19:56 - 00000000 ____D C:\Users\Denis\AppData\Roaming\win-svc
2017-01-05 19:43 - 2017-01-05 20:03 - 00000000 ____D C:\Program Files\Reimage
2017-01-04 15:28 - 2017-01-04 15:28 - 34712112 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2017-01-04 15:28 - 2017-01-04 15:28 - 28148792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2017-01-04 15:28 - 2017-01-04 15:28 - 14081592 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2017-01-04 15:27 - 2017-01-04 15:27 - 00951224 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2017-01-04 15:27 - 2017-01-04 15:27 - 00903096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2017-01-04 15:27 - 2017-01-04 15:27 - 00446904 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2017-01-04 15:27 - 2017-01-04 15:27 - 00398904 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2017-01-04 15:26 - 2017-01-04 15:26 - 01964600 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437653.dll
2017-01-04 15:26 - 2017-01-04 15:26 - 01604152 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2017-01-04 15:26 - 2017-01-04 15:26 - 01600056 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437653.dll
2017-01-04 15:26 - 2017-01-04 15:26 - 01044920 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2017-01-04 15:26 - 2017-01-04 15:26 - 00982456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2017-01-04 15:26 - 2017-01-04 15:26 - 00221632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2017-01-04 15:26 - 2017-01-04 15:26 - 00054728 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2017-01-04 15:25 - 2017-01-04 15:25 - 40132536 _____ C:\Windows\system32\nvcompiler.dll
2017-01-04 15:25 - 2017-01-04 15:25 - 35231160 _____ C:\Windows\SysWOW64\nvcompiler.dll
2017-01-04 15:25 - 2017-01-04 15:25 - 03647416 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2017-01-04 15:25 - 2017-01-04 15:25 - 03216440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2017-01-04 15:05 - 2017-01-04 15:05 - 11016832 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2017-01-04 15:05 - 2017-01-04 15:05 - 09000152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2017-01-04 15:05 - 2017-01-04 15:05 - 00504936 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2017-01-04 15:05 - 2017-01-04 15:05 - 00419704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 17598144 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 10898544 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 09240240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 00698728 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 00586968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 00534600 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 00448800 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 00181280 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 00163632 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 00158208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2017-01-04 15:04 - 2017-01-04 15:04 - 00141768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2017-01-04 15:03 - 2017-01-04 15:03 - 14545352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2017-01-04 15:03 - 2017-01-04 15:03 - 10444784 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2017-01-04 15:03 - 2017-01-04 15:03 - 08839216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2017-01-04 15:03 - 2017-01-04 15:03 - 03985104 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-12-30 22:04 - 2017-01-08 03:00 - 00001089 _____ C:\Users\Denis\Desktop\Cheat Engine.lnk
2016-12-30 22:04 - 2016-12-30 22:04 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.6
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-01-29 21:24 - 2015-09-24 08:59 - 00000000 ____D C:\Users\Denis\Documents\The Witcher 3
2017-01-29 20:52 - 2010-11-21 10:27 - 00668866 _____ C:\Windows\system32\perfh005.dat
2017-01-29 20:52 - 2010-11-21 10:27 - 00141526 _____ C:\Windows\system32\perfc005.dat
2017-01-29 20:52 - 2009-07-14 06:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2017-01-29 20:52 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2017-01-29 20:45 - 2016-12-24 20:44 - 00065536 _____ C:\Windows\system32\Ikeext.etl
2017-01-29 20:45 - 2015-09-21 06:34 - 00000000 ____D C:\ProgramData\NVIDIA
2017-01-29 20:45 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-01-29 19:23 - 2015-10-08 18:05 - 00000000 ____D C:\Program Files (x86)\Steam
2017-01-29 19:11 - 2016-06-07 03:27 - 00007596 _____ C:\Users\Denis\AppData\Local\resmon.resmoncfg
2017-01-29 13:56 - 2015-10-23 19:01 - 00000000 ____D C:\Users\Denis\AppData\Roaming\vlc
2017-01-29 01:32 - 2015-09-24 07:51 - 00000000 ____D C:\Users\Denis\AppData\Roaming\uTorrent
2017-01-28 16:08 - 2016-12-24 16:22 - 00000000 ____D C:\Users\Denis\AppData\LocalLow\uTorrent
2017-01-28 12:24 - 2015-10-13 14:15 - 00000000 ____D C:\Users\Denis\Desktop\Blbosti
2017-01-28 12:23 - 2015-09-21 07:53 - 00000000 ____D C:\ProgramData\Oracle
2017-01-28 12:23 - 2015-09-21 07:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-01-28 12:23 - 2015-09-21 07:53 - 00000000 ____D C:\Program Files (x86)\Java
2017-01-28 12:22 - 2016-09-29 14:11 - 00318528 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2017-01-28 12:22 - 2016-09-29 14:11 - 00110144 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2017-01-28 12:21 - 2016-09-24 20:35 - 00000000 ____D C:\Program Files\Java
2017-01-27 16:22 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\tracing
2017-01-26 12:53 - 2015-09-23 19:40 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2017-01-25 21:49 - 2016-12-14 01:14 - 00000000 ____D C:\Users\Guest
2017-01-25 21:49 - 2016-12-13 22:15 - 84623360 _____ C:\Windows\system32\config\SOFTWARE.iodefrag.bak
2017-01-25 21:49 - 2016-12-13 22:15 - 01146880 _____ C:\Windows\system32\config\DEFAULT.iodefrag.bak
2017-01-25 21:49 - 2016-12-13 22:15 - 00102400 _____ C:\Windows\system32\config\SAM.iodefrag.bak
2017-01-25 21:49 - 2016-12-13 22:15 - 00028672 _____ C:\Windows\system32\config\SECURITY.iodefrag.bak
2017-01-25 21:43 - 2015-09-23 19:36 - 00000000 ____D C:\ProgramData\Skype
2017-01-24 13:18 - 2015-09-21 08:22 - 00000000 ____D C:\Program Files (x86)\Google
2017-01-24 13:17 - 2015-09-21 08:22 - 00000000 ____D C:\Users\Denis\AppData\Local\Google
2017-01-24 13:03 - 2016-06-20 21:02 - 00000000 ____D C:\Users\Denis\AppData\Local\CrashDumps
2017-01-23 15:44 - 2015-10-08 16:02 - 00000000 ____D C:\Users\Denis\Documents\Nexus Mod Manager
2017-01-23 10:44 - 2016-09-06 10:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-01-23 10:44 - 2015-09-20 22:13 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2017-01-23 10:44 - 2015-09-20 22:13 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-01-21 14:30 - 2015-12-09 22:52 - 00000000 ____D C:\Users\Denis\Desktop\Hudba
2017-01-19 23:16 - 2015-09-20 22:16 - 01559268 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2017-01-17 14:55 - 2016-07-11 10:31 - 00000000 ____D C:\Program Files (x86)\AVG
2017-01-17 14:54 - 2015-10-03 17:56 - 00000000 ____D C:\Users\Denis\AppData\Roaming\DAEMON Tools Lite
2017-01-16 19:24 - 2016-07-04 18:20 - 00000000 ____D C:\ProgramData\Origin
2017-01-16 13:27 - 2015-09-23 21:56 - 00000000 ____D C:\Users\Denis\AppData\Roaming\.minecraft
2017-01-16 13:20 - 2015-09-20 21:53 - 00000000 ____D C:\Users\Denis
2017-01-16 13:01 - 2016-08-21 22:30 - 00000000 ____D C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cities Skylines - ČEŠTINA
2017-01-16 10:04 - 2016-12-21 02:00 - 00001279 _____ C:\Users\Denis\Desktop\Farming Simulator2017.lnk
2017-01-16 10:04 - 2016-11-30 01:05 - 00000991 _____ C:\Users\Denis\Desktop\Fallout 4.lnk
2017-01-16 10:04 - 2016-11-28 19:43 - 00001179 _____ C:\Users\Denis\Desktop\Rome2.lnk
2017-01-16 10:04 - 2016-11-28 12:48 - 00000737 _____ C:\Users\Denis\Desktop\No Mans Sky.lnk
2017-01-16 10:04 - 2016-11-27 14:23 - 00000996 _____ C:\Users\Denis\Desktop\7DayToDie.lnk
2017-01-16 10:04 - 2016-10-25 11:49 - 00001063 _____ C:\Users\Denis\Desktop\Sid Meiers Civilization VI.lnk
2017-01-16 10:04 - 2016-10-12 18:45 - 00000635 _____ C:\Users\Denis\Desktop\Mafia III.lnk
2017-01-16 10:04 - 2016-08-21 22:16 - 00000657 _____ C:\Users\Denis\Desktop\Cities Skylines.lnk
2017-01-16 10:04 - 2016-01-26 17:21 - 00000690 _____ C:\Users\Denis\Desktop\Assassin's Creed Black Flag.lnk
2017-01-16 10:04 - 2015-12-03 13:28 - 00001190 _____ C:\Users\Denis\Desktop\Fallout4 Mod Manager.lnk
2017-01-16 10:04 - 2015-10-30 22:07 - 00000767 _____ C:\Users\Denis\Desktop\SAMP.lnk
2017-01-15 19:39 - 2015-10-08 18:19 - 00000219 _____ C:\Users\Denis\Desktop\Dota 2.url
2017-01-14 00:48 - 2016-01-01 13:58 - 00000000 ____D C:\Users\Denis\AppData\Roaming\Opera Software
2017-01-14 00:48 - 2016-01-01 13:58 - 00000000 ____D C:\Users\Denis\AppData\Local\Opera Software
2017-01-14 00:05 - 2016-10-16 23:05 - 00000000 ____D C:\Users\Denis\Documents\Euro Truck Simulator 2
2017-01-13 17:08 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2017-01-12 13:28 - 2015-09-22 10:08 - 00000000 ____D C:\Users\Denis\AppData\Local\Rockstar Games
2017-01-12 11:50 - 2015-09-20 22:43 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-01-11 18:17 - 2015-12-10 00:15 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2017-01-11 17:11 - 2015-09-21 06:39 - 00000000 ____D C:\Windows\system32\MRT
2017-01-11 17:08 - 2015-09-21 06:39 - 135657872 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2017-01-09 11:34 - 2015-10-05 19:37 - 00000000 ____D C:\Users\Denis\Documents\My Games
2017-01-08 21:19 - 2016-09-29 12:58 - 00000000 ____D C:\ProgramData\ProductData
2017-01-08 15:55 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\Offline Web Pages
2017-01-08 03:01 - 2016-12-29 19:39 - 00001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk
2017-01-08 03:01 - 2016-11-14 23:04 - 00000080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-01-08 03:01 - 2016-10-15 20:22 - 00001859 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BlueStacks.lnk
2017-01-08 03:01 - 2016-09-29 12:58 - 00001370 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2017-01-08 03:01 - 2015-09-21 08:52 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-01-08 03:01 - 2015-09-21 02:44 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2017-01-08 03:01 - 2015-09-21 02:43 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2017-01-08 03:01 - 2009-07-14 06:01 - 00001282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
2017-01-08 03:01 - 2009-07-14 05:57 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2017-01-08 03:01 - 2009-07-14 05:57 - 00001352 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
2017-01-08 03:01 - 2009-07-14 05:57 - 00001330 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
2017-01-08 03:01 - 2009-07-14 05:57 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
2017-01-08 03:01 - 2009-07-14 05:54 - 00001210 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
2017-01-08 03:01 - 2009-07-14 05:49 - 00001266 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
2017-01-08 03:00 - 2016-12-29 19:39 - 00001035 _____ C:\Users\Public\Desktop\TeamViewer 12.lnk
2017-01-08 03:00 - 2016-12-18 02:35 - 00001358 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2017-01-08 03:00 - 2016-10-15 20:22 - 00001853 _____ C:\Users\Public\Desktop\BlueStacks.lnk
2017-01-08 03:00 - 2016-09-06 10:09 - 00001381 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-01-08 03:00 - 2016-08-21 11:37 - 00000934 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk
2017-01-08 03:00 - 2016-04-25 16:37 - 00002919 _____ C:\Users\Denis\Desktop\Microsoft PowerPoint 2010.lnk
2017-01-08 03:00 - 2016-02-09 14:51 - 00001955 _____ C:\Users\Public\Desktop\The Witcher 3 - Wild Hunt.lnk
2017-01-08 03:00 - 2016-01-24 18:35 - 00001166 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2017-01-08 03:00 - 2015-10-12 17:07 - 00001274 _____ C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\OpenIV.lnk
2017-01-08 03:00 - 2015-10-12 17:07 - 00001272 _____ C:\Users\Denis\Desktop\OpenIV.lnk
2017-01-08 03:00 - 2015-10-08 18:05 - 00000967 _____ C:\Users\Public\Desktop\Steam.lnk
2017-01-08 03:00 - 2015-10-03 17:56 - 00001817 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2017-01-08 03:00 - 2015-09-24 07:52 - 00002577 _____ C:\Users\Denis\Desktop\µTorrent.lnk
2017-01-08 03:00 - 2015-09-23 19:40 - 00001011 _____ C:\Users\Denis\Desktop\SpeedFan.lnk
2017-01-08 03:00 - 2015-09-21 08:52 - 00002047 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2017-01-05 21:04 - 2015-09-21 05:21 - 00000000 ____D C:\Users\Denis\AppData\Roaming\Adobe
2017-01-04 17:02 - 2016-09-29 12:43 - 00000000 ____D C:\Windows\pss
2017-01-04 15:05 - 2016-09-06 09:53 - 20130624 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2017-01-04 10:08 - 2016-09-06 09:53 - 00041334 _____ C:\Windows\system32\nvinfo.pb
2017-01-02 00:59 - 2015-09-23 19:37 - 00000000 ____D C:\Users\Denis\AppData\Roaming\Skype
2016-12-30 11:56 - 2016-12-13 21:04 - 00365808 _____ C:\Windows\system32\FNTCACHE.DAT
==================== Files in the root of some directories =======
2016-07-12 11:36 - 2016-07-12 11:36 - 7101952 _____ () C:\Users\Denis\AppData\Roaming\agent.dat
2016-07-12 11:36 - 2016-07-12 11:36 - 0128512 _____ () C:\Users\Denis\AppData\Roaming\Installer.dat
2016-07-12 11:36 - 2016-07-12 11:36 - 0018432 _____ () C:\Users\Denis\AppData\Roaming\Main.dat
2016-06-07 23:16 - 2016-06-07 23:16 - 0001002 ___SH () C:\Users\Denis\AppData\Roaming\Microsoft\Key.cfg
2015-09-23 21:33 - 2015-09-23 21:33 - 0000000 ___SH () C:\Users\Denis\AppData\Local\LumaEmu
2016-06-07 03:27 - 2017-01-29 19:11 - 0007596 _____ () C:\Users\Denis\AppData\Local\resmon.resmoncfg
Files to move or delete:
====================
C:\Windows\TEMP\gB987.tmp.exe
Some files in TEMP:
====================
2017-01-25 21:43 - 2017-01-25 21:03 - 0154196 _____ (AnalogX, LLC) C:\Users\Denis\AppData\Local\Temp\DelA03D.exe
2017-01-25 21:04 - 2017-01-25 21:03 - 0154196 _____ (AnalogX, LLC) C:\Users\Denis\AppData\Local\Temp\DelB929.exe
2017-01-26 12:53 - 2017-01-26 12:53 - 0192512 _____ () C:\Users\Denis\AppData\Local\Temp\sfamcc00001.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Windows\system32\drivers:ucdrv-x64.sys [80850]
AlternateDataStreams: C:\Windows\system32\drivers:x64 [360536]
AlternateDataStreams: C:\Windows\system32\drivers:x86 [1156450]
==================== Security Center ==================
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Denis\Desktop" je 788 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================