Rozšíření, které nejde odstranit z prohlížeče google chrome
Napsal: 04 zář 2017 16:16
Dobrý den,
nechtěně jsem si do google chrome natahal několik rozšíření, vymazal jsem to co jsem zvládl, ale jedno rozšíření zůstalo a nešlo vymazat (Nainstalováno podnikovými zásadami.). Pošlu vám sem log z FRST podle postupu tady z fóra, tak bych poprosil o pomoc při zbavování se toho. Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-08-2017
Ran by Kostra (administrator) on KUBA (04-09-2017 17:06:21)
Running from C:\Users\Kostra\Desktop
Loaded Profiles: Kostra (Available Profiles: Kostra & Guest)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.03\atkexComSvc.exe
() C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
() C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\GPU TweakII\GPUTweakII.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.25\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.17\AsusFanControlService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 3.1 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\GPU TweakII\Monitor.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\Kostra\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9068040 2016-11-09] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2017-01-05] (Intel Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 3.1 eXtensible Host Controller Driver\Application\iusb3mon.exe [299504 2016-04-19] (Intel Corporation)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\Run: [RGSC] => C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\MountPoints2: G - G:\setup.exe
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\MountPoints2: {62166bf1-7915-11e7-ab89-2c4d5458da91} - D:\Autorun.exe
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\MountPoints2: {e00cf949-40be-11e7-84d6-806e6f6e6963} - D:\Bin\Instv2.exe
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\MountPoints2: {e1a6619e-8fcb-11e7-9606-2c4d5458da91} - E:\setup.exe
HKU\S-1-5-18\...\Run: [Free Download Manager] => "C:\Program Files (x86)\FreeDownloadManager.ORG\Free Download Manager\fdm.exe" --minimized
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2017-05-25] (Microsoft Corporation)
GroupPolicy: Restriction - Chrome <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{664BD440-510A-4BD1-8298-F22FC705A0FA}: [NameServer] 10.255.255.10,10.255.255.20
Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_144\bin\ssv.dll [2017-07-26] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-07-26] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-3379645968-3260110219-3458388111-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FireFox:
========
FF DefaultProfile: pulzv5w9.default
FF ProfilePath: C:\Users\Kostra\AppData\Roaming\Mozilla\Firefox\Profiles\pulzv5w9.default [2017-09-04]
FF Extension: (Firefox Screenshots) - C:\Users\Kostra\AppData\Roaming\Mozilla\Firefox\Profiles\pulzv5w9.default\features\{c3931705-5ad1-48c1-a818-90858281a186}\screenshots@mozilla.org.xpi [2017-09-04]
FF Plugin: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-07-26] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-07-26] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-05-18] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-05-18] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-09-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-09-04] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-10] (Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default [2017-09-04]
CHR Extension: (Prezentace Google) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-09-04]
CHR Extension: (Dokumenty Google) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-09-04]
CHR Extension: (Disk Google) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-04]
CHR Extension: (YouTube) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-04]
CHR Extension: (Adobe Acrobat) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-09-04]
CHR Extension: (Tabulky Google) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-09-04]
CHR Extension: (Tabs 2 Grid) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhhlffidbdcekjjclelmafdgfpekkgeh [2017-09-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-09-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-09-04]
CHR Extension: (Gmail) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-09-04]
CHR Extension: (Chrome Media Router) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-09-04]
CHR HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iinglghmhcgdgjjlafobajghjamdchik] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.03\atkexComSvc.exe [933840 2017-01-22] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.25\aaHMSvc.exe [963544 2016-08-05] (ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.17\AsusFanControlService.exe [2394072 2016-09-20] (ASUSTeK Computer Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1530376 2017-07-26] ()
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2017-06-04] (BitRaider, LLC)
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [382504 2017-04-04] (EasyAntiCheat Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2017-03-09] (Futuremark)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17992 2017-01-05] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [987432 2016-07-26] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [177440 2016-09-14] (Intel Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-05-18] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [449984 2017-08-18] (NVIDIA Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2014-02-24] ()
S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2017-06-04] (BitRaider)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [32240 2017-01-05] (Intel Corporation)
R3 IOMap; C:\Windows\system32\drivers\IOMap64.sys [25920 2017-01-26] (ASUSTeK Computer Inc.)
S3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [67736 2017-06-27] (Logitech Inc.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [199736 2016-09-06] (Intel Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-08-18] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [48064 2017-07-26] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57976 2017-06-21] (NVIDIA Corporation)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2016-10-24] ()
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-04 17:06 - 2017-09-04 17:06 - 000013640 _____ C:\Users\Kostra\Desktop\FRST.txt
2017-09-04 17:05 - 2017-09-04 17:06 - 000000000 ____D C:\FRST
2017-09-04 17:03 - 2017-09-04 17:03 - 000112640 _____ (forum.viry.cz) C:\Users\Kostra\Desktop\FRSTLauncher.exe
2017-09-04 17:02 - 2017-09-04 17:02 - 002395648 _____ (Farbar) C:\Users\Kostra\Desktop\FRST64.exe
2017-09-04 16:37 - 2017-09-04 16:37 - 001130328 _____ (Google Inc.) C:\Users\Kostra\Downloads\ChromeSetup.exe
2017-09-04 16:37 - 2017-09-04 16:37 - 000003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-09-04 16:37 - 2017-09-04 16:37 - 000003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-09-04 16:37 - 2017-09-04 16:37 - 000002271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-04 16:37 - 2017-09-04 16:37 - 000002259 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-09-04 16:36 - 2017-09-04 16:41 - 000000000 ____D C:\Users\Kostra\AppData\Local\Mozilla
2017-09-04 16:36 - 2017-09-04 16:36 - 000000936 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-09-04 16:36 - 2017-09-04 16:36 - 000000924 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-09-04 16:36 - 2017-09-04 16:36 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-09-04 16:35 - 2017-09-04 16:35 - 000245920 _____ (Mozilla) C:\Users\Kostra\Downloads\Firefox Installer.exe
2017-09-04 16:24 - 2017-09-04 16:24 - 000000270 __RSH C:\ProgramData\ntuser.pol
2017-09-04 16:21 - 2017-09-04 16:21 - 000001085 _____ C:\Users\Kostra\Desktop\The Escapists 2.lnk
2017-09-04 16:21 - 2017-09-04 16:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Escapists 2
2017-09-04 16:21 - 2017-09-04 16:21 - 000000000 ____D C:\Program Files (x86)\The Escapists 2
2017-09-04 16:03 - 2017-09-04 16:06 - 000000000 ____D C:\Users\Kostra\Downloads\plaza-the.escapists.2
2017-09-04 15:17 - 2017-09-04 15:35 - 000000000 ____D C:\Users\Kostra\Documents\The Escapists
2017-09-04 15:17 - 2017-09-04 15:17 - 000000000 ____D C:\Users\Kostra\Downloads\The.Escapists.v1.24.Incl.5.DLCs
2017-09-04 15:17 - 2017-09-04 15:17 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\WinRAR
2017-09-04 15:17 - 2017-09-04 15:17 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\MMFApplications
2017-09-04 15:14 - 2017-09-04 15:14 - 104655363 _____ C:\Users\Kostra\Downloads\The.Escapists.v1.24.Incl.5.DLCs.rar
2017-09-04 10:35 - 2017-01-26 13:27 - 000025920 _____ (ASUSTeK Computer Inc.) C:\Windows\system32\Drivers\IOMap64.sys
2017-09-02 16:35 - 2017-09-02 16:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call Of Duty Modern Warfare 2
2017-09-02 16:33 - 2017-09-02 16:33 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-09-02 16:33 - 2017-09-02 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-09-02 16:33 - 2017-09-02 16:33 - 000000000 ____D C:\Program Files\WinRAR
2017-09-02 16:27 - 2017-09-02 16:27 - 000809496 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmpAE4D.tmp
2017-09-02 16:27 - 2017-09-02 16:27 - 000466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2017-09-02 16:27 - 2017-09-02 16:27 - 000444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2017-09-02 16:27 - 2017-09-02 16:27 - 000122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2017-09-02 16:27 - 2017-09-02 16:27 - 000109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2017-09-02 16:27 - 2017-09-02 16:27 - 000000000 ____D C:\Program Files (x86)\OpenAL
2017-09-02 16:26 - 2017-09-02 16:29 - 000000000 ____D C:\Program Files (x86)\Call Of Duty Modern Warfare 2
2017-09-02 16:01 - 2017-09-02 16:02 - 000000000 ____D C:\Users\Kostra\Downloads\Call Of Duty Modern Warfare 2 - t2k9
2017-09-02 15:00 - 2017-09-02 15:03 - 1543228352 _____ C:\Users\Kostra\Downloads\A.Dogs.Purpose.2017.BRRip.XviD.AC3.CZ-PiRaTE.avi
2017-09-02 14:52 - 2017-09-02 14:52 - 000000000 ____D C:\Users\Kostra\AppData\Local\CallofDuty4MW
2017-09-02 14:14 - 2017-09-02 14:14 - 000002990 _____ C:\Windows\System32\Tasks\elbyExecuteWithUAC
2017-09-02 14:11 - 2017-09-02 14:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2017-09-02 14:03 - 2017-09-02 14:18 - 000000000 ____D C:\Users\Kostra\Downloads\Call of duty 4 Multiplayer
2017-09-01 16:31 - 2017-09-01 16:34 - 000000000 ____D C:\Users\Kostra\AppData\Local\Jyrkaa
2017-09-01 15:20 - 2017-09-01 15:20 - 000000000 ____D C:\Users\Kostra\Documents\Square Enix
2017-09-01 14:35 - 2017-09-01 14:35 - 000003122 _____ C:\Windows\System32\Tasks\{E66C38F9-32A4-4999-BD8D-A930657CE1BB}
2017-08-31 19:48 - 2017-08-31 19:49 - 000000000 ____D C:\Users\Kostra\Downloads\Harwia.cz - Klient v0.1
2017-08-29 14:46 - 2017-08-29 14:46 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Unity
2017-08-29 14:46 - 2017-08-29 14:46 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Noble Empire
2017-08-28 22:20 - 2017-08-28 22:20 - 000000000 __RHD C:\Users\Kostra\AppData\Roaming\SecuROM
2017-08-28 21:42 - 2017-08-28 21:42 - 001700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2017-08-28 21:42 - 2017-08-28 21:42 - 001060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2017-08-28 21:42 - 2017-08-28 21:42 - 000348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Msvcr71.dll
2017-08-28 21:38 - 2017-08-28 21:38 - 000178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll
2017-08-28 16:33 - 2017-08-28 16:33 - 000000000 ____D C:\Users\Kostra\Documents\Eek
2017-08-28 16:33 - 2017-08-28 16:33 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Eek
2017-08-28 11:17 - 2017-09-03 21:04 - 000000000 ____D C:\Users\Kostra\Desktop\Hry
2017-08-26 21:36 - 2017-08-26 22:46 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\discord
2017-08-26 21:36 - 2017-08-26 21:36 - 000002165 _____ C:\Users\Kostra\Desktop\Discord.lnk
2017-08-26 21:36 - 2017-08-26 21:36 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2017-08-26 21:36 - 2017-08-26 21:36 - 000000000 ____D C:\Users\Kostra\AppData\Local\SquirrelTemp
2017-08-26 21:36 - 2017-08-26 21:36 - 000000000 ____D C:\Users\Kostra\AppData\Local\Discord
2017-08-24 21:46 - 2017-08-24 21:46 - 000000000 ____D C:\Users\Kostra\Documents\DayZ Other Profiles
2017-08-24 21:38 - 2017-08-26 19:20 - 000000000 ____D C:\Users\Kostra\AppData\Local\DayZ
2017-08-24 21:34 - 2017-08-24 21:35 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\SmartSteamEmu
2017-08-24 21:33 - 2017-08-25 21:19 - 000000000 ____D C:\Users\Kostra\Documents\DayZ
2017-08-20 22:16 - 2005-03-18 17:19 - 002337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2017-08-20 20:04 - 2017-08-20 20:04 - 000000000 ____D C:\bin
2017-08-20 15:09 - 2017-08-20 15:11 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Heroes and Generals
2017-08-20 15:08 - 2017-08-20 15:08 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Macromedia
2017-08-20 10:57 - 2017-08-20 15:45 - 000000000 ____D C:\Users\Kostra\AppData\Local\PAYDAY 2
2017-08-08 22:05 - 2017-08-08 22:05 - 000000000 ____D C:\Users\Kostra\AppData\Local\Targem
2017-08-08 21:49 - 2017-08-08 23:09 - 000000000 ____D C:\Users\Kostra\AppData\Local\Crossout
2017-08-08 21:49 - 2017-08-08 21:49 - 000000000 ____D C:\ProgramData\Gaijin
2017-08-07 23:38 - 2017-08-20 15:10 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\NVIDIA
2017-08-07 23:36 - 2017-08-07 23:36 - 000000000 ____D C:\ProgramData\VS Revo Group
2017-08-07 23:30 - 2017-08-17 20:11 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2017-08-07 23:30 - 2017-08-07 23:30 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2017-08-07 23:30 - 2017-05-18 09:33 - 000513144 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2017-08-07 23:30 - 2017-05-18 09:33 - 000418752 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 006437824 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 002479736 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 001762936 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 000548984 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 000392312 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 000081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 000069752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2017-08-07 23:30 - 2017-05-18 07:21 - 000134592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2017-08-07 23:30 - 2017-05-16 20:09 - 007993157 _____ C:\Windows\system32\nvcoproc.bin
2017-08-07 23:30 - 2017-03-10 23:17 - 000536864 _____ C:\Windows\system32\vulkan-1.dll
2017-08-07 23:30 - 2017-03-10 23:17 - 000525600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2017-08-07 23:30 - 2017-03-10 23:17 - 000254240 _____ C:\Windows\system32\vulkaninfo.exe
2017-08-07 23:30 - 2017-03-10 23:17 - 000233760 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2017-08-05 17:30 - 2017-08-05 17:30 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2017-08-05 17:27 - 2017-08-29 19:59 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2017-08-05 17:27 - 2017-08-05 17:27 - 000001090 _____ C:\Users\Kostra\Desktop\MSI Afterburner.lnk
2017-08-05 17:27 - 2017-08-05 17:27 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2017-08-05 17:03 - 2017-08-05 17:03 - 000007888 _____ C:\Users\Kostra\AppData\Local\recently-used.xbel
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-04 16:37 - 2017-05-25 00:05 - 000000000 ____D C:\Users\Kostra\AppData\Local\Google
2017-09-04 16:37 - 2017-05-25 00:05 - 000000000 ____D C:\Program Files (x86)\Google
2017-09-04 16:36 - 2017-07-22 11:43 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Mozilla
2017-09-04 16:36 - 2017-07-22 11:43 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Mozilla
2017-09-04 16:36 - 2017-07-22 11:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-09-04 16:33 - 2017-05-24 22:20 - 000001397 _____ C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-09-04 16:24 - 2009-07-14 05:20 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2017-09-04 16:24 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2017-09-04 16:22 - 2017-07-26 18:31 - 000000000 ____D C:\Program Files (x86)\Steam
2017-09-04 16:21 - 2017-07-29 02:50 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\uTorrent
2017-09-04 12:25 - 2017-05-25 00:30 - 000000000 ____D C:\ProgramData\NVIDIA
2017-09-04 12:21 - 2017-07-26 18:49 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\.minecraft
2017-09-04 10:43 - 2009-07-14 06:45 - 000014240 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-09-04 10:43 - 2009-07-14 06:45 - 000014240 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-09-04 10:41 - 2009-07-14 17:18 - 000669176 _____ C:\Windows\system32\perfh005.dat
2017-09-04 10:41 - 2009-07-14 17:18 - 000141334 _____ C:\Windows\system32\perfc005.dat
2017-09-04 10:41 - 2009-07-14 07:13 - 001585684 _____ C:\Windows\system32\PerfStringBackup.INI
2017-09-04 10:41 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2017-09-04 10:35 - 2017-05-25 19:39 - 000002972 _____ C:\Windows\System32\Tasks\GPU Tweak II
2017-09-04 10:35 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-09-03 01:03 - 2017-08-03 19:32 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\TS3Client
2017-09-02 19:32 - 2017-06-06 20:54 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\vlc
2017-09-02 16:42 - 2017-05-26 16:02 - 000000000 ____D C:\Users\Kostra\AppData\Local\CrashDumps
2017-09-02 16:27 - 2009-06-03 11:25 - 000809496 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmpAE4C.tmp
2017-09-02 14:18 - 2017-07-27 19:19 - 000000000 ____D C:\Users\Kostra\AppData\Local\PunkBuster
2017-09-02 14:11 - 2017-08-04 16:39 - 000000000 ____D C:\Program Files (x86)\Elaborate Bytes
2017-09-02 13:13 - 2017-05-24 22:20 - 000000000 ____D C:\Users\Kostra\AppData\Local\VirtualStore
2017-09-01 16:42 - 2009-07-14 07:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2017-09-01 16:34 - 2017-05-24 22:20 - 000000000 ____D C:\Users\Kostra
2017-08-29 19:59 - 2017-07-28 22:53 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2017-08-29 17:06 - 2017-05-28 22:31 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-08-28 22:25 - 2017-06-05 20:21 - 000000000 ____D C:\Users\Kostra\Documents\Rockstar Games
2017-08-28 22:22 - 2017-06-05 20:21 - 000000000 ____D C:\Users\Kostra\AppData\Local\Rockstar Games
2017-08-28 22:21 - 2017-05-25 00:06 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-08-28 11:17 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2017-08-27 19:22 - 2017-05-25 20:25 - 000000022 _____ C:\Windows\GPU-Z.INI
2017-08-25 15:07 - 2017-05-25 00:29 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-08-24 19:50 - 2017-05-25 20:47 - 000004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003852 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000001416 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-08-24 19:50 - 2017-05-25 00:28 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2017-08-24 19:50 - 2017-05-25 00:28 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2017-08-24 19:48 - 2009-07-14 07:08 - 000032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2017-08-23 17:43 - 2017-08-03 19:31 - 000000000 ____D C:\Users\Kostra\AppData\Local\TeamSpeak 3 Client
2017-08-20 22:25 - 2017-05-26 16:02 - 000000000 ____D C:\Users\Kostra\Documents\My Games
2017-08-20 14:44 - 2017-07-01 09:39 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Skype
2017-08-19 21:32 - 2017-05-28 22:31 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2017-08-18 06:37 - 2017-05-25 20:47 - 001923008 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2017-08-18 06:37 - 2017-05-25 20:47 - 001755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2017-08-18 06:37 - 2017-05-25 20:47 - 001505728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2017-08-18 06:37 - 2017-05-25 20:47 - 001317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2017-08-18 06:37 - 2017-05-25 20:47 - 000121280 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2017-08-18 06:36 - 2017-07-25 17:05 - 000179136 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2017-08-18 06:36 - 2017-07-25 17:05 - 000146368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2017-08-17 18:26 - 2017-05-25 20:47 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2017-08-08 18:19 - 2017-08-03 16:57 - 000000000 ____D C:\Users\Kostra\Downloads\BeamNG.drive v0.9.0.5
2017-08-07 23:44 - 2017-05-25 00:30 - 000000000 ____D C:\Users\Kostra\AppData\Local\NVIDIA Corporation
2017-08-07 23:33 - 2017-05-25 20:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-08-07 23:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\Help
2017-08-07 21:56 - 2017-08-03 17:04 - 000000000 ____D C:\Users\Kostra\Documents\BeamNG.drive
2017-08-05 17:30 - 2017-07-28 22:53 - 000000000 ___HD C:\Windows\msdownld.tmp
2017-08-05 17:30 - 2017-06-05 20:19 - 000000000 ____D C:\Windows\SysWOW64\directx
2017-08-05 17:18 - 2017-07-29 03:23 - 000000000 ____D C:\Users\Kostra\.gimp-2.8
2017-08-05 16:59 - 2017-08-03 19:37 - 000000000 ____D C:\Users\Kostra\AppData\Local\gtk-2.0
==================== Files in the root of some directories =======
2017-08-05 17:03 - 2017-08-05 17:03 - 000007888 _____ () C:\Users\Kostra\AppData\Local\recently-used.xbel
2017-05-25 18:12 - 2017-05-25 18:12 - 000007602 _____ () C:\Users\Kostra\AppData\Local\Resmon.ResmonCfg
2017-05-25 00:07 - 2017-05-25 00:07 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
2017-08-28 22:20 - 2017-08-28 22:20 - 000204800 _____ (Sony DADC Austria AG) C:\Users\Kostra\AppData\Local\Temp\drm_dyndata_7370014.dll
2017-08-31 20:16 - 2017-08-31 20:16 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Kostra\AppData\Local\Temp\jansi-64-7069307973780323457.dll
2017-07-25 17:09 - 2017-07-19 00:38 - 000758472 _____ (NVIDIA Corporation) C:\Users\Kostra\AppData\Local\Temp\nvSCPAPI.dll
2017-07-25 17:09 - 2017-07-19 00:38 - 000873136 _____ (NVIDIA Corporation) C:\Users\Kostra\AppData\Local\Temp\nvSCPAPI64.dll
2017-07-25 17:07 - 2017-07-19 00:38 - 000368760 _____ (NVIDIA Corporation) C:\Users\Kostra\AppData\Local\Temp\nvStInst.exe
2017-08-03 19:31 - 2017-08-03 19:31 - 000065280 _____ () C:\Users\Kostra\AppData\Local\Temp\utils.dll
2017-07-22 12:11 - 2017-07-22 12:11 - 015301888 _____ (Microsoft Corporation) C:\Users\Kostra\AppData\Local\Temp\vcredist_x64.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-08-23 16:08
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:238.37 GB) (Free:30.35 GB) NTFS
Drive e: (The Escapists 2) (CDROM) (Total:1.24 GB) (Free:0 GB) UDF
Available physical RAM: 13264.9 MB
Total physical RAM: 16327.2 MB
Percentage of memory in use: 18%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: D5BF8D32)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=238.4 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Users\Kostra:Heroes & Generals [38]
==================== Security Center ==================
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Kostra\Desktop" je 4327 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FMClickerPro_Updater_1
C:\Users\Kostra\AppData\Roaming\FMClickerPro_v_1\FMClickerPro_Updater_1.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam
"C:\Program Files (x86)\Steam\steam.exe" -silent [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirtualCloneDrive
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Kostra^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^ts3server.exe - z stupce.lnk
C:\teamspeak3-server_win64\ts3server.exe [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
nechtěně jsem si do google chrome natahal několik rozšíření, vymazal jsem to co jsem zvládl, ale jedno rozšíření zůstalo a nešlo vymazat (Nainstalováno podnikovými zásadami.). Pošlu vám sem log z FRST podle postupu tady z fóra, tak bych poprosil o pomoc při zbavování se toho. Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-08-2017
Ran by Kostra (administrator) on KUBA (04-09-2017 17:06:21)
Running from C:\Users\Kostra\Desktop
Loaded Profiles: Kostra (Available Profiles: Kostra & Guest)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.03\atkexComSvc.exe
() C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
() C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\GPU TweakII\GPUTweakII.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.25\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.17\AsusFanControlService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 3.1 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\GPU TweakII\Monitor.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\Kostra\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9068040 2016-11-09] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2017-01-05] (Intel Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 3.1 eXtensible Host Controller Driver\Application\iusb3mon.exe [299504 2016-04-19] (Intel Corporation)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\Run: [RGSC] => C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\MountPoints2: G - G:\setup.exe
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\MountPoints2: {62166bf1-7915-11e7-ab89-2c4d5458da91} - D:\Autorun.exe
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\MountPoints2: {e00cf949-40be-11e7-84d6-806e6f6e6963} - D:\Bin\Instv2.exe
HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\...\MountPoints2: {e1a6619e-8fcb-11e7-9606-2c4d5458da91} - E:\setup.exe
HKU\S-1-5-18\...\Run: [Free Download Manager] => "C:\Program Files (x86)\FreeDownloadManager.ORG\Free Download Manager\fdm.exe" --minimized
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2017-05-25] (Microsoft Corporation)
GroupPolicy: Restriction - Chrome <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{664BD440-510A-4BD1-8298-F22FC705A0FA}: [NameServer] 10.255.255.10,10.255.255.20
Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_144\bin\ssv.dll [2017-07-26] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-07-26] (Oracle Corporation)
Toolbar: HKU\S-1-5-21-3379645968-3260110219-3458388111-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FireFox:
========
FF DefaultProfile: pulzv5w9.default
FF ProfilePath: C:\Users\Kostra\AppData\Roaming\Mozilla\Firefox\Profiles\pulzv5w9.default [2017-09-04]
FF Extension: (Firefox Screenshots) - C:\Users\Kostra\AppData\Roaming\Mozilla\Firefox\Profiles\pulzv5w9.default\features\{c3931705-5ad1-48c1-a818-90858281a186}\screenshots@mozilla.org.xpi [2017-09-04]
FF Plugin: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-07-26] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-07-26] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-05-18] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-05-18] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-09-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-09-04] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-10] (Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default [2017-09-04]
CHR Extension: (Prezentace Google) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-09-04]
CHR Extension: (Dokumenty Google) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-09-04]
CHR Extension: (Disk Google) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-04]
CHR Extension: (YouTube) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-04]
CHR Extension: (Adobe Acrobat) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-09-04]
CHR Extension: (Tabulky Google) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-09-04]
CHR Extension: (Tabs 2 Grid) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhhlffidbdcekjjclelmafdgfpekkgeh [2017-09-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-09-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-09-04]
CHR Extension: (Gmail) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-09-04]
CHR Extension: (Chrome Media Router) - C:\Users\Kostra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-09-04]
CHR HKU\S-1-5-21-3379645968-3260110219-3458388111-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [iinglghmhcgdgjjlafobajghjamdchik] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.03\atkexComSvc.exe [933840 2017-01-22] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.25\aaHMSvc.exe [963544 2016-08-05] (ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.17\AsusFanControlService.exe [2394072 2016-09-20] (ASUSTeK Computer Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1530376 2017-07-26] ()
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2017-06-04] (BitRaider, LLC)
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [382504 2017-04-04] (EasyAntiCheat Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2017-03-09] (Futuremark)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17992 2017-01-05] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [987432 2016-07-26] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [177440 2016-09-14] (Intel Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-05-18] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [449984 2017-08-18] (NVIDIA Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2014-02-24] ()
S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2017-06-04] (BitRaider)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [32240 2017-01-05] (Intel Corporation)
R3 IOMap; C:\Windows\system32\drivers\IOMap64.sys [25920 2017-01-26] (ASUSTeK Computer Inc.)
S3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [67736 2017-06-27] (Logitech Inc.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [199736 2016-09-06] (Intel Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-08-18] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [48064 2017-07-26] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57976 2017-06-21] (NVIDIA Corporation)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2016-10-24] ()
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-04 17:06 - 2017-09-04 17:06 - 000013640 _____ C:\Users\Kostra\Desktop\FRST.txt
2017-09-04 17:05 - 2017-09-04 17:06 - 000000000 ____D C:\FRST
2017-09-04 17:03 - 2017-09-04 17:03 - 000112640 _____ (forum.viry.cz) C:\Users\Kostra\Desktop\FRSTLauncher.exe
2017-09-04 17:02 - 2017-09-04 17:02 - 002395648 _____ (Farbar) C:\Users\Kostra\Desktop\FRST64.exe
2017-09-04 16:37 - 2017-09-04 16:37 - 001130328 _____ (Google Inc.) C:\Users\Kostra\Downloads\ChromeSetup.exe
2017-09-04 16:37 - 2017-09-04 16:37 - 000003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-09-04 16:37 - 2017-09-04 16:37 - 000003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-09-04 16:37 - 2017-09-04 16:37 - 000002271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-04 16:37 - 2017-09-04 16:37 - 000002259 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-09-04 16:36 - 2017-09-04 16:41 - 000000000 ____D C:\Users\Kostra\AppData\Local\Mozilla
2017-09-04 16:36 - 2017-09-04 16:36 - 000000936 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-09-04 16:36 - 2017-09-04 16:36 - 000000924 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-09-04 16:36 - 2017-09-04 16:36 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-09-04 16:35 - 2017-09-04 16:35 - 000245920 _____ (Mozilla) C:\Users\Kostra\Downloads\Firefox Installer.exe
2017-09-04 16:24 - 2017-09-04 16:24 - 000000270 __RSH C:\ProgramData\ntuser.pol
2017-09-04 16:21 - 2017-09-04 16:21 - 000001085 _____ C:\Users\Kostra\Desktop\The Escapists 2.lnk
2017-09-04 16:21 - 2017-09-04 16:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Escapists 2
2017-09-04 16:21 - 2017-09-04 16:21 - 000000000 ____D C:\Program Files (x86)\The Escapists 2
2017-09-04 16:03 - 2017-09-04 16:06 - 000000000 ____D C:\Users\Kostra\Downloads\plaza-the.escapists.2
2017-09-04 15:17 - 2017-09-04 15:35 - 000000000 ____D C:\Users\Kostra\Documents\The Escapists
2017-09-04 15:17 - 2017-09-04 15:17 - 000000000 ____D C:\Users\Kostra\Downloads\The.Escapists.v1.24.Incl.5.DLCs
2017-09-04 15:17 - 2017-09-04 15:17 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\WinRAR
2017-09-04 15:17 - 2017-09-04 15:17 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\MMFApplications
2017-09-04 15:14 - 2017-09-04 15:14 - 104655363 _____ C:\Users\Kostra\Downloads\The.Escapists.v1.24.Incl.5.DLCs.rar
2017-09-04 10:35 - 2017-01-26 13:27 - 000025920 _____ (ASUSTeK Computer Inc.) C:\Windows\system32\Drivers\IOMap64.sys
2017-09-02 16:35 - 2017-09-02 16:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call Of Duty Modern Warfare 2
2017-09-02 16:33 - 2017-09-02 16:33 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-09-02 16:33 - 2017-09-02 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-09-02 16:33 - 2017-09-02 16:33 - 000000000 ____D C:\Program Files\WinRAR
2017-09-02 16:27 - 2017-09-02 16:27 - 000809496 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmpAE4D.tmp
2017-09-02 16:27 - 2017-09-02 16:27 - 000466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2017-09-02 16:27 - 2017-09-02 16:27 - 000444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2017-09-02 16:27 - 2017-09-02 16:27 - 000122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2017-09-02 16:27 - 2017-09-02 16:27 - 000109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2017-09-02 16:27 - 2017-09-02 16:27 - 000000000 ____D C:\Program Files (x86)\OpenAL
2017-09-02 16:26 - 2017-09-02 16:29 - 000000000 ____D C:\Program Files (x86)\Call Of Duty Modern Warfare 2
2017-09-02 16:01 - 2017-09-02 16:02 - 000000000 ____D C:\Users\Kostra\Downloads\Call Of Duty Modern Warfare 2 - t2k9
2017-09-02 15:00 - 2017-09-02 15:03 - 1543228352 _____ C:\Users\Kostra\Downloads\A.Dogs.Purpose.2017.BRRip.XviD.AC3.CZ-PiRaTE.avi
2017-09-02 14:52 - 2017-09-02 14:52 - 000000000 ____D C:\Users\Kostra\AppData\Local\CallofDuty4MW
2017-09-02 14:14 - 2017-09-02 14:14 - 000002990 _____ C:\Windows\System32\Tasks\elbyExecuteWithUAC
2017-09-02 14:11 - 2017-09-02 14:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
2017-09-02 14:03 - 2017-09-02 14:18 - 000000000 ____D C:\Users\Kostra\Downloads\Call of duty 4 Multiplayer
2017-09-01 16:31 - 2017-09-01 16:34 - 000000000 ____D C:\Users\Kostra\AppData\Local\Jyrkaa
2017-09-01 15:20 - 2017-09-01 15:20 - 000000000 ____D C:\Users\Kostra\Documents\Square Enix
2017-09-01 14:35 - 2017-09-01 14:35 - 000003122 _____ C:\Windows\System32\Tasks\{E66C38F9-32A4-4999-BD8D-A930657CE1BB}
2017-08-31 19:48 - 2017-08-31 19:49 - 000000000 ____D C:\Users\Kostra\Downloads\Harwia.cz - Klient v0.1
2017-08-29 14:46 - 2017-08-29 14:46 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Unity
2017-08-29 14:46 - 2017-08-29 14:46 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Noble Empire
2017-08-28 22:20 - 2017-08-28 22:20 - 000000000 __RHD C:\Users\Kostra\AppData\Roaming\SecuROM
2017-08-28 21:42 - 2017-08-28 21:42 - 001700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2017-08-28 21:42 - 2017-08-28 21:42 - 001060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2017-08-28 21:42 - 2017-08-28 21:42 - 000348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Msvcr71.dll
2017-08-28 21:38 - 2017-08-28 21:38 - 000178800 _____ (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll
2017-08-28 16:33 - 2017-08-28 16:33 - 000000000 ____D C:\Users\Kostra\Documents\Eek
2017-08-28 16:33 - 2017-08-28 16:33 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Eek
2017-08-28 11:17 - 2017-09-03 21:04 - 000000000 ____D C:\Users\Kostra\Desktop\Hry
2017-08-26 21:36 - 2017-08-26 22:46 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\discord
2017-08-26 21:36 - 2017-08-26 21:36 - 000002165 _____ C:\Users\Kostra\Desktop\Discord.lnk
2017-08-26 21:36 - 2017-08-26 21:36 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2017-08-26 21:36 - 2017-08-26 21:36 - 000000000 ____D C:\Users\Kostra\AppData\Local\SquirrelTemp
2017-08-26 21:36 - 2017-08-26 21:36 - 000000000 ____D C:\Users\Kostra\AppData\Local\Discord
2017-08-24 21:46 - 2017-08-24 21:46 - 000000000 ____D C:\Users\Kostra\Documents\DayZ Other Profiles
2017-08-24 21:38 - 2017-08-26 19:20 - 000000000 ____D C:\Users\Kostra\AppData\Local\DayZ
2017-08-24 21:34 - 2017-08-24 21:35 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\SmartSteamEmu
2017-08-24 21:33 - 2017-08-25 21:19 - 000000000 ____D C:\Users\Kostra\Documents\DayZ
2017-08-20 22:16 - 2005-03-18 17:19 - 002337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2017-08-20 20:04 - 2017-08-20 20:04 - 000000000 ____D C:\bin
2017-08-20 15:09 - 2017-08-20 15:11 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Heroes and Generals
2017-08-20 15:08 - 2017-08-20 15:08 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Macromedia
2017-08-20 10:57 - 2017-08-20 15:45 - 000000000 ____D C:\Users\Kostra\AppData\Local\PAYDAY 2
2017-08-08 22:05 - 2017-08-08 22:05 - 000000000 ____D C:\Users\Kostra\AppData\Local\Targem
2017-08-08 21:49 - 2017-08-08 23:09 - 000000000 ____D C:\Users\Kostra\AppData\Local\Crossout
2017-08-08 21:49 - 2017-08-08 21:49 - 000000000 ____D C:\ProgramData\Gaijin
2017-08-07 23:38 - 2017-08-20 15:10 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\NVIDIA
2017-08-07 23:36 - 2017-08-07 23:36 - 000000000 ____D C:\ProgramData\VS Revo Group
2017-08-07 23:30 - 2017-08-17 20:11 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2017-08-07 23:30 - 2017-08-07 23:30 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2017-08-07 23:30 - 2017-05-18 09:33 - 000513144 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2017-08-07 23:30 - 2017-05-18 09:33 - 000418752 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 006437824 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 002479736 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 001762936 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 000548984 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 000392312 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 000081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2017-08-07 23:30 - 2017-05-18 07:48 - 000069752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2017-08-07 23:30 - 2017-05-18 07:21 - 000134592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2017-08-07 23:30 - 2017-05-16 20:09 - 007993157 _____ C:\Windows\system32\nvcoproc.bin
2017-08-07 23:30 - 2017-03-10 23:17 - 000536864 _____ C:\Windows\system32\vulkan-1.dll
2017-08-07 23:30 - 2017-03-10 23:17 - 000525600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2017-08-07 23:30 - 2017-03-10 23:17 - 000254240 _____ C:\Windows\system32\vulkaninfo.exe
2017-08-07 23:30 - 2017-03-10 23:17 - 000233760 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2017-08-05 17:30 - 2017-08-05 17:30 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
2017-08-05 17:27 - 2017-08-29 19:59 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2017-08-05 17:27 - 2017-08-05 17:27 - 000001090 _____ C:\Users\Kostra\Desktop\MSI Afterburner.lnk
2017-08-05 17:27 - 2017-08-05 17:27 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2017-08-05 17:03 - 2017-08-05 17:03 - 000007888 _____ C:\Users\Kostra\AppData\Local\recently-used.xbel
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-04 16:37 - 2017-05-25 00:05 - 000000000 ____D C:\Users\Kostra\AppData\Local\Google
2017-09-04 16:37 - 2017-05-25 00:05 - 000000000 ____D C:\Program Files (x86)\Google
2017-09-04 16:36 - 2017-07-22 11:43 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Mozilla
2017-09-04 16:36 - 2017-07-22 11:43 - 000000000 ____D C:\Users\Kostra\AppData\LocalLow\Mozilla
2017-09-04 16:36 - 2017-07-22 11:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-09-04 16:33 - 2017-05-24 22:20 - 000001397 _____ C:\Users\Kostra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-09-04 16:24 - 2009-07-14 05:20 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2017-09-04 16:24 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2017-09-04 16:22 - 2017-07-26 18:31 - 000000000 ____D C:\Program Files (x86)\Steam
2017-09-04 16:21 - 2017-07-29 02:50 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\uTorrent
2017-09-04 12:25 - 2017-05-25 00:30 - 000000000 ____D C:\ProgramData\NVIDIA
2017-09-04 12:21 - 2017-07-26 18:49 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\.minecraft
2017-09-04 10:43 - 2009-07-14 06:45 - 000014240 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-09-04 10:43 - 2009-07-14 06:45 - 000014240 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-09-04 10:41 - 2009-07-14 17:18 - 000669176 _____ C:\Windows\system32\perfh005.dat
2017-09-04 10:41 - 2009-07-14 17:18 - 000141334 _____ C:\Windows\system32\perfc005.dat
2017-09-04 10:41 - 2009-07-14 07:13 - 001585684 _____ C:\Windows\system32\PerfStringBackup.INI
2017-09-04 10:41 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2017-09-04 10:35 - 2017-05-25 19:39 - 000002972 _____ C:\Windows\System32\Tasks\GPU Tweak II
2017-09-04 10:35 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-09-03 01:03 - 2017-08-03 19:32 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\TS3Client
2017-09-02 19:32 - 2017-06-06 20:54 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\vlc
2017-09-02 16:42 - 2017-05-26 16:02 - 000000000 ____D C:\Users\Kostra\AppData\Local\CrashDumps
2017-09-02 16:27 - 2009-06-03 11:25 - 000809496 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmpAE4C.tmp
2017-09-02 14:18 - 2017-07-27 19:19 - 000000000 ____D C:\Users\Kostra\AppData\Local\PunkBuster
2017-09-02 14:11 - 2017-08-04 16:39 - 000000000 ____D C:\Program Files (x86)\Elaborate Bytes
2017-09-02 13:13 - 2017-05-24 22:20 - 000000000 ____D C:\Users\Kostra\AppData\Local\VirtualStore
2017-09-01 16:42 - 2009-07-14 07:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2017-09-01 16:34 - 2017-05-24 22:20 - 000000000 ____D C:\Users\Kostra
2017-08-29 19:59 - 2017-07-28 22:53 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2017-08-29 17:06 - 2017-05-28 22:31 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-08-28 22:25 - 2017-06-05 20:21 - 000000000 ____D C:\Users\Kostra\Documents\Rockstar Games
2017-08-28 22:22 - 2017-06-05 20:21 - 000000000 ____D C:\Users\Kostra\AppData\Local\Rockstar Games
2017-08-28 22:21 - 2017-05-25 00:06 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-08-28 11:17 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2017-08-27 19:22 - 2017-05-25 20:25 - 000000022 _____ C:\Windows\GPU-Z.INI
2017-08-25 15:07 - 2017-05-25 00:29 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-08-24 19:50 - 2017-05-25 20:47 - 000004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003852 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003554 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-08-24 19:50 - 2017-05-25 20:47 - 000001416 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2017-08-24 19:50 - 2017-05-25 00:28 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2017-08-24 19:50 - 2017-05-25 00:28 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2017-08-24 19:48 - 2009-07-14 07:08 - 000032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2017-08-23 17:43 - 2017-08-03 19:31 - 000000000 ____D C:\Users\Kostra\AppData\Local\TeamSpeak 3 Client
2017-08-20 22:25 - 2017-05-26 16:02 - 000000000 ____D C:\Users\Kostra\Documents\My Games
2017-08-20 14:44 - 2017-07-01 09:39 - 000000000 ____D C:\Users\Kostra\AppData\Roaming\Skype
2017-08-19 21:32 - 2017-05-28 22:31 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2017-08-18 06:37 - 2017-05-25 20:47 - 001923008 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2017-08-18 06:37 - 2017-05-25 20:47 - 001755072 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2017-08-18 06:37 - 2017-05-25 20:47 - 001505728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2017-08-18 06:37 - 2017-05-25 20:47 - 001317312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2017-08-18 06:37 - 2017-05-25 20:47 - 000121280 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2017-08-18 06:36 - 2017-07-25 17:05 - 000179136 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2017-08-18 06:36 - 2017-07-25 17:05 - 000146368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2017-08-17 18:26 - 2017-05-25 20:47 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2017-08-08 18:19 - 2017-08-03 16:57 - 000000000 ____D C:\Users\Kostra\Downloads\BeamNG.drive v0.9.0.5
2017-08-07 23:44 - 2017-05-25 00:30 - 000000000 ____D C:\Users\Kostra\AppData\Local\NVIDIA Corporation
2017-08-07 23:33 - 2017-05-25 20:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-08-07 23:30 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\Help
2017-08-07 21:56 - 2017-08-03 17:04 - 000000000 ____D C:\Users\Kostra\Documents\BeamNG.drive
2017-08-05 17:30 - 2017-07-28 22:53 - 000000000 ___HD C:\Windows\msdownld.tmp
2017-08-05 17:30 - 2017-06-05 20:19 - 000000000 ____D C:\Windows\SysWOW64\directx
2017-08-05 17:18 - 2017-07-29 03:23 - 000000000 ____D C:\Users\Kostra\.gimp-2.8
2017-08-05 16:59 - 2017-08-03 19:37 - 000000000 ____D C:\Users\Kostra\AppData\Local\gtk-2.0
==================== Files in the root of some directories =======
2017-08-05 17:03 - 2017-08-05 17:03 - 000007888 _____ () C:\Users\Kostra\AppData\Local\recently-used.xbel
2017-05-25 18:12 - 2017-05-25 18:12 - 000007602 _____ () C:\Users\Kostra\AppData\Local\Resmon.ResmonCfg
2017-05-25 00:07 - 2017-05-25 00:07 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
2017-08-28 22:20 - 2017-08-28 22:20 - 000204800 _____ (Sony DADC Austria AG) C:\Users\Kostra\AppData\Local\Temp\drm_dyndata_7370014.dll
2017-08-31 20:16 - 2017-08-31 20:16 - 000019968 ____N (Red Hat®, Inc.) C:\Users\Kostra\AppData\Local\Temp\jansi-64-7069307973780323457.dll
2017-07-25 17:09 - 2017-07-19 00:38 - 000758472 _____ (NVIDIA Corporation) C:\Users\Kostra\AppData\Local\Temp\nvSCPAPI.dll
2017-07-25 17:09 - 2017-07-19 00:38 - 000873136 _____ (NVIDIA Corporation) C:\Users\Kostra\AppData\Local\Temp\nvSCPAPI64.dll
2017-07-25 17:07 - 2017-07-19 00:38 - 000368760 _____ (NVIDIA Corporation) C:\Users\Kostra\AppData\Local\Temp\nvStInst.exe
2017-08-03 19:31 - 2017-08-03 19:31 - 000065280 _____ () C:\Users\Kostra\AppData\Local\Temp\utils.dll
2017-07-22 12:11 - 2017-07-22 12:11 - 015301888 _____ (Microsoft Corporation) C:\Users\Kostra\AppData\Local\Temp\vcredist_x64.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-08-23 16:08
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:238.37 GB) (Free:30.35 GB) NTFS
Drive e: (The Escapists 2) (CDROM) (Total:1.24 GB) (Free:0 GB) UDF
Available physical RAM: 13264.9 MB
Total physical RAM: 16327.2 MB
Percentage of memory in use: 18%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: D5BF8D32)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=238.4 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Users\Kostra:Heroes & Generals [38]
==================== Security Center ==================
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Kostra\Desktop" je 4327 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FMClickerPro_Updater_1
C:\Users\Kostra\AppData\Roaming\FMClickerPro_v_1\FMClickerPro_Updater_1.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam
"C:\Program Files (x86)\Steam\steam.exe" -silent [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirtualCloneDrive
"C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Kostra^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^ts3server.exe - z stupce.lnk
C:\teamspeak3-server_win64\ts3server.exe [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================