Prosím o preventívku
Napsal: 26 zář 2017 22:21
Ahoj,
poprosím o preventívku.
FRSTlauncher mi Chrome blokuje :-/ (Tento súbor je nebezpečný a preto ho Chrome zablokoval)
FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-09-2017 01
Ran by msi PC (administrator) on DESKTOP-02H91O1 (26-09-2017 23:18:52)
Running from C:\Users\msi PC\Desktop\132
Loaded Profiles: msi PC (Available Profiles: msi PC)
Platform: Windows 10 Home Version 1703 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Lenovo) C:\Program Files (x86)\MagicPlus\MagicPlus_helper.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Windows\System32\CastSrv.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.5798\Agent.exe
(Blizzard Entertainment) C:\Program Files (x86)\Blizzard App\Battle.net.9397\Battle.net.exe
() C:\Program Files (x86)\Blizzard App\Battle.net.9397\Battle.net Helper.exe
() C:\Program Files (x86)\Blizzard App\Battle.net.9397\Battle.net Helper.exe
(Blizzard Entertainment) C:\Program Files (x86)\World of Warcraft\Wow-64.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(BitTorrent Inc.) C:\Users\msi PC\AppData\Roaming\uTorrent\uTorrent.exe
(BitTorrent Inc.) C:\Users\msi PC\AppData\Roaming\uTorrent\updates\3.5.0_43916\utorrentie.exe
(BitTorrent Inc.) C:\Users\msi PC\AppData\Roaming\uTorrent\updates\3.5.0_43916\utorrentie.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3366624 2017-05-04] (ELAN Microelectronics Corp.)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17652344 2017-06-27] (Logitech Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [297784 2017-09-11] (Apple Inc.)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-12] (Oracle Corporation)
HKLM-x32\...\Run: [MagicPlus_helper] => C:\Program Files (x86)\MagicPlus\MagicPlus_helper.exe [3267208 2016-08-15] (Lenovo)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [uTorrent] => C:\Users\msi PC\AppData\Roaming\uTorrent\uTorrent.exe [2146496 2017-07-16] (BitTorrent Inc.)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [Boxoft Tools] => C:\ProgramData\Boxtools\Boxofttoolbox.exe [514048 2010-12-15] ()
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3071776 2017-09-07] (Valve Corporation)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9818328 2017-06-30] (Piriform Ltd)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2017-07-14] (Apple Inc.)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\MountPoints2: {19cf6b7f-88d9-11e7-86c3-240a649d0023} - "F:\Lenovo_Suite.exe"
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\MountPoints2: {97e5f77d-9a44-11e7-bba3-240a649ce882} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\MountPoints2: {9ea0cafd-9e32-11e7-bba4-240a649ce882} - "F:\Lenovo_Suite.exe"
Startup: C:\Users\msi PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NexonCs.vbs [2017-08-02] ()
Startup: C:\Users\msi PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2017-08-20]
ShortcutTarget: Twitch.lnk -> C:\Users\msi PC\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{572df3df-5cc4-46ba-84c2-cadf47c5d1bb}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{c623cfa5-ecf2-42d7-a396-e17aa1b0ea98}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_141\bin\ssv.dll [2017-07-24] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_141\bin\jp2ssv.dll [2017-07-24] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-04-26] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-26] (Oracle Corporation)
FireFox:
========
FF DefaultProfile: jv34688q.default
FF ProfilePath: C:\Users\msi PC\AppData\Roaming\Firefox\Firefox\Profiles\jv34688q.default [2017-05-22] <==== ATTENTION
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_130.dll [2017-09-13] ()
FF Plugin: @java.com/DTPlugin,version=11.141.2 -> C:\Program Files\Java\jre1.8.0_141\bin\dtplugin\npDeployJava1.dll [2017-07-24] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.141.2 -> C:\Program Files\Java\jre1.8.0_141\bin\plugin2\npjp2.dll [2017-07-24] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_130.dll [2017-09-13] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw.dll [2017-02-27] (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-04-26] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-04-26] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-06] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-06] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-10] (Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: ChromeDefaultData2
CHR HomePage: ChromeDefaultData2 -> hxxp://google.sk/
CHR StartupUrls: ChromeDefaultData2 -> "hxxp://google.sk/"
CHR Profile: C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2 [2017-09-26] <==== ATTENTION
CHR Extension: (Prezentácie Google) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-05-07]
CHR Extension: (Dokumenty Google) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\aohghmighlieiainnegkcijnfilokake [2017-05-07]
CHR Extension: (Disk Google) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-05-07]
CHR Extension: (YouTube) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-07]
CHR Extension: (Tampermonkey) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2017-09-08]
CHR Extension: (Adobe Acrobat) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-05-30]
CHR Extension: (Google Apps Script) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\eoieeedlomnegifmaghhjnghhmcldobl [2017-05-07]
CHR Extension: (Tabuľky Google) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-05-07]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-05-07]
CHR Extension: (AdBlock) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-09-19]
CHR Extension: (The West) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\ilkgeioneoemibpddeiamfgiofnpjifm [2017-05-07]
CHR Extension: (Skype) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-07-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22]
CHR Extension: (Script Installation Services/Website Setup) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\ojkfkmbechelifpehnokcfhlamloapmc [2017-05-07]
CHR Extension: (Gmail) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-05-07]
CHR Extension: (Chrome Media Router) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-09-19]
CHR HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-09-07] (Apple Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2836296 2016-12-14] (ESET)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144096 2017-05-04] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2017-03-17] (Intel Corporation)
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2017-06-27] (Logitech Inc.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-05-01] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [449984 2017-08-18] (NVIDIA Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-07-11] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
S3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30264 2017-02-12] (Disc Soft Ltd)
S3 dtultrausbbus; C:\WINDOWS\System32\drivers\dtultrausbbus.sys [47672 2017-02-12] (Disc Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [132272 2016-12-13] (ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [106768 2016-12-13] (ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15488 2016-12-13] (ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [180544 2016-12-13] (ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [49672 2016-12-13] (ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [77616 2016-12-13] (ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [96856 2016-12-13] (ESET)
R3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [31824 2017-05-04] (ELAN Microelectronic Corp.)
S3 ggsomc; C:\WINDOWS\System32\drivers\ggsomc.sys [30424 2017-05-02] (Sony Mobile Communications)
R3 KillerEth; C:\WINDOWS\System32\drivers\e2xw10x64.sys [145920 2017-03-18] (Qualcomm Atheros, Inc.)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2017-06-27] (Logitech Inc.)
R1 MpKsl0d85c4b5; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0D9B0D8E-D44C-49AD-88D3-64C9AD5BFA77}\MpKsl0d85c4b5.sys [44928 2017-09-26] (Microsoft Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvmi.inf_amd64_0401a47bc69f625c\nvlddmkm.sys [14456952 2017-06-26] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-08-18] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48064 2017-07-26] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-08-18] (NVIDIA Corporation)
R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [593624 2015-03-11] (Realtek Semiconductor Corporation)
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [760968 2017-02-23] (Realsil Semiconductor Corporation)
R3 rtwlane_13; C:\WINDOWS\System32\drivers\rtwlane_13.sys [3717120 2017-03-18] (Realtek Semiconductor Corporation )
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [37344 2017-04-30] (Wellbia.com Co., Ltd.)
S3 pccsmcfd; \SystemRoot\system32\DRIVERS\pccsmcfdx64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-26 23:12 - 2017-09-26 23:18 - 000000000 ____D C:\Users\msi PC\Desktop\132
2017-09-26 23:09 - 2017-09-26 23:11 - 000000000 ____D C:\Users\msi PC\Downloads\2. série
2017-09-26 23:09 - 2017-09-26 23:09 - 000027878 _____ C:\Users\msi PC\Downloads\[CzT]Vikingove_Vikings_2_serie_CZ_TvRip_.torrent
2017-09-26 23:09 - 2017-09-26 23:09 - 000000000 ____D C:\Users\msi PC\AppData\LocalLow\uTorrent
2017-09-25 12:04 - 2017-09-25 12:04 - 000000000 ____D C:\ProgramData\icondir
2017-09-25 12:03 - 2017-09-25 12:04 - 000001934 _____ C:\Users\Public\Desktop\乐助手.lnk
2017-09-25 12:03 - 2017-09-25 12:03 - 000004172 _____ C:\WINDOWS\System32\Tasks\lenovo mobile auto run
2017-09-25 12:03 - 2017-09-25 12:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\乐助手
2017-09-25 12:03 - 2017-09-25 12:03 - 000000000 ____D C:\Program Files (x86)\MagicPlus
2017-09-25 12:03 - 2017-09-25 12:03 - 000000000 ____D C:\MagicPlus
2017-09-25 12:00 - 2017-09-25 12:03 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\Lenovo
2017-09-25 12:00 - 2017-09-25 12:01 - 000000000 ____D C:\Users\msi PC\.android
2017-09-25 12:00 - 2017-09-25 12:00 - 000000000 ____D C:\Program Files (x86)\LenovoUsbDriver
2017-09-25 11:54 - 2017-09-25 11:54 - 000000000 ____D C:\Users\msi PC\Desktop\Vikingové
2017-09-22 19:01 - 2017-09-26 07:18 - 000000515 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2017-09-17 09:50 - 2017-09-17 09:50 - 000012232 _____ C:\Users\msi PC\Downloads\[CzT]Labuti_princezna_7_Kralovska_mise_The_Swan_Princess_Royally_Undercover_2017_CZ_.torrent
2017-09-17 09:49 - 2017-09-17 09:49 - 000215836 _____ C:\Users\msi PC\Downloads\[CzT]Ozzy_2016_CZ_SK_720pLQ_.torrent
2017-09-15 12:22 - 2017-09-17 09:49 - 000000000 ____D C:\Users\msi PC\Downloads\Alien.Covenant.2017.BRRip.XviD.AC3.CZ-PiRaTE
2017-09-15 11:30 - 2017-09-15 11:30 - 000000000 ____D C:\Users\msi PC\Downloads\Pirates.of.the.Caribbean.Dead.Men.Tell.No.Tales.2017.WEB-DL.XviD.AC3.CZ-PiRaTE
2017-09-15 11:29 - 2017-09-15 11:29 - 000019074 _____ C:\Users\msi PC\Downloads\[CzT]Pirati_z_Karibiku_Salazarova_pomsta_Pirates_of_the_Caribbean_Dead_Men_Tell_No_Tales_2017_CZ_WebRip_.torrent
2017-09-15 11:28 - 2017-09-17 09:49 - 000000000 ____D C:\Users\msi PC\Downloads\Guardians.of.the.Galaxy.Vol.2.2017.BRRip.XviD.AC3.CZ-PiRaTE
2017-09-15 11:28 - 2017-09-15 11:28 - 000018156 _____ C:\Users\msi PC\Downloads\[CzT]Strazci_Galaxie_Vol_2_Guardians_of_the_Galaxy_Vol_2_2017_CZ_.torrent
2017-09-15 11:28 - 2017-09-15 11:28 - 000016372 _____ C:\Users\msi PC\Downloads\[CzT]Vetrelec_Covenant_Alien_Covenant_2017_CZ_.torrent
2017-09-15 09:14 - 2017-09-15 09:14 - 000000936 _____ C:\Users\Public\Desktop\Diablo III.lnk
2017-09-15 09:14 - 2017-09-15 09:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2017-09-15 01:43 - 2017-09-15 09:30 - 000000000 ____D C:\Program Files (x86)\Diablo III
2017-09-15 00:54 - 2017-09-15 00:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III Public Test
2017-09-15 00:14 - 2017-09-15 00:14 - 000000000 ____D C:\Users\msi PC\AppData\Local\NokiaAccount
2017-09-15 00:11 - 2017-09-15 01:54 - 000000000 ____D C:\Program Files (x86)\Diablo III Public Test
2017-09-14 23:19 - 2017-09-14 23:19 - 000001816 _____ C:\Users\Public\Desktop\iTunes.lnk
2017-09-14 23:19 - 2017-09-14 23:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2017-09-14 23:19 - 2017-09-14 23:19 - 000000000 ____D C:\Program Files\iTunes
2017-09-14 23:19 - 2017-09-14 23:19 - 000000000 ____D C:\Program Files\iPod
2017-09-14 23:17 - 2017-09-14 23:17 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2017-09-14 23:17 - 2017-09-14 23:17 - 000000000 ____D C:\Program Files (x86)\Apple Software Update
2017-09-14 23:12 - 2017-09-14 23:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2017-09-12 23:21 - 2017-09-14 23:17 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2017-09-12 23:21 - 2017-09-14 23:12 - 000000000 ____D C:\Program Files\Common Files\Apple
2017-09-12 23:21 - 2017-09-12 23:21 - 000000000 ____D C:\Program Files\Bonjour
2017-09-12 23:21 - 2017-09-12 23:21 - 000000000 ____D C:\Program Files (x86)\Bonjour
2017-09-12 07:29 - 2017-09-12 07:29 - 000000000 ____D C:\Users\msi PC\Desktop\Five Finger Death Punch - Discography
2017-09-12 07:28 - 2017-09-12 07:28 - 000000000 ____D C:\Users\msi PC\Documents\FeedbackHub
2017-09-11 23:43 - 2017-09-11 23:53 - 881525766 _____ C:\Users\msi PC\Desktop\Five-Finger-Death-Punch---Discography-by-PETR.V.rar
2017-09-09 18:05 - 2017-09-09 18:05 - 004212384 _____ (Husdawg, LLC) C:\Users\msi PC\Desktop\Detection.exe
2017-09-03 15:19 - 2017-09-03 15:19 - 000000000 ____D C:\Users\msi PC\Downloads\Vikingové
2017-09-01 14:47 - 2017-09-01 14:47 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\Nokia
2017-09-01 14:46 - 2017-09-01 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
2017-09-01 14:46 - 2017-09-01 14:46 - 000000000 ____D C:\Program Files (x86)\PC Connectivity Solution
2017-09-01 14:32 - 2017-09-01 14:32 - 000000000 ____D C:\ProgramData\Installations
2017-09-01 14:22 - 2017-09-01 14:22 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
2017-09-01 14:22 - 2017-09-01 14:22 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ccdcmbx64_01009.Wdf
2017-09-01 14:13 - 2017-09-01 14:47 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\PC Suite
2017-09-01 14:13 - 2017-09-01 14:22 - 000000000 ____D C:\ProgramData\PC Suite
2017-09-01 14:13 - 2017-09-01 14:21 - 000000000 ____D C:\Users\msi PC\AppData\Local\Nokia
2017-09-01 14:12 - 2017-09-15 00:15 - 000000000 ____D C:\ProgramData\Nokia
2017-09-01 14:12 - 2013-01-23 10:31 - 000057856 _____ (Nokia) C:\WINDOWS\system32\nmwcdclsX64.dll
2017-09-01 14:09 - 2017-09-15 00:15 - 000000000 ____D C:\Program Files (x86)\Nokia
2017-09-01 14:09 - 2017-09-01 14:09 - 000000000 ____D C:\ProgramData\NokiaInstallerCache
2017-08-30 11:47 - 2017-08-30 12:28 - 3358991599 _____ C:\Users\msi PC\Downloads\Game.of.Thrones.S07E07.720p.WEB.H264.CZ.Titulky.mkv
2017-08-27 18:44 - 2017-08-27 18:44 - 000160822 _____ C:\Users\msi PC\Desktop\HandyNotes-v1.4.14.zip
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-26 23:19 - 2017-01-12 01:04 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\uTorrent
2017-09-26 23:18 - 2017-05-05 22:23 - 000000000 ____D C:\FRST
2017-09-26 23:17 - 2017-07-26 18:51 - 000000000 ____D C:\Users\msi PC\AppData\Local\Battle.net
2017-09-26 23:08 - 2017-08-18 12:59 - 000004214 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{C64E399A-027A-4EC2-85B6-848EE54437CA}
2017-09-26 23:08 - 2017-08-18 12:55 - 000000000 ____D C:\Users\msi PC
2017-09-26 23:08 - 2017-08-18 12:54 - 000000000 ____D C:\ProgramData\NVIDIA
2017-09-26 23:07 - 2017-07-26 18:58 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2017-09-26 23:07 - 2017-07-26 18:52 - 000000000 ____D C:\Program Files (x86)\Blizzard App
2017-09-26 23:05 - 2017-08-18 12:55 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-09-26 23:05 - 2017-01-09 20:47 - 000000000 __SHD C:\Users\msi PC\IntelGraphicsProfiles
2017-09-26 07:28 - 2017-03-18 22:51 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-09-26 07:22 - 2017-03-18 23:03 - 000000000 ___HD C:\Program Files\WindowsApps
2017-09-26 07:22 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-09-25 23:22 - 2017-08-18 12:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-09-25 23:05 - 2017-08-20 18:58 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\Twitch
2017-09-25 12:00 - 2017-03-18 23:01 - 000000000 ____D C:\WINDOWS\INF
2017-09-24 14:58 - 2017-01-09 20:45 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\vlc
2017-09-22 19:04 - 2017-08-18 13:01 - 003477908 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-09-22 19:04 - 2017-03-06 22:41 - 001912608 _____ C:\WINDOWS\system32\perfh01B.dat
2017-09-22 19:04 - 2017-03-06 22:41 - 000567086 _____ C:\WINDOWS\system32\perfc01B.dat
2017-09-22 16:49 - 2017-08-18 12:59 - 000003380 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1862971310-3561655192-1180766120-1001
2017-09-22 16:49 - 2017-01-09 20:40 - 000002374 _____ C:\Users\msi PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-09-22 16:49 - 2017-01-09 20:40 - 000000000 ___RD C:\Users\msi PC\OneDrive
2017-09-22 04:28 - 2017-05-06 19:52 - 000002284 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-20 20:36 - 2017-08-18 12:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-09-20 20:36 - 2017-08-18 12:54 - 000306200 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-09-20 17:40 - 2017-03-18 13:40 - 001572864 _____ C:\WINDOWS\system32\config\BBI
2017-09-16 09:01 - 2017-01-09 20:38 - 000000000 ____D C:\Users\msi PC\AppData\Local\Packages
2017-09-15 01:43 - 2017-01-12 18:34 - 000000000 ____D C:\Users\msi PC\Documents\Diablo III
2017-09-15 01:17 - 2017-08-11 19:13 - 000000000 ___DC C:\WINDOWS\Panther
2017-09-15 01:17 - 2017-04-30 13:29 - 000000000 ____D C:\Program Files (x86)\Steam
2017-09-15 01:17 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\ModemLogs
2017-09-15 01:17 - 2017-01-26 08:25 - 000000000 ____D C:\Users\msi PC\AppData\Local\CrashDumps
2017-09-14 23:53 - 2017-03-27 20:18 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\Apple Computer
2017-09-14 23:53 - 2017-03-27 20:18 - 000000000 ____D C:\Users\msi PC\AppData\Local\Apple Computer
2017-09-13 07:24 - 2017-08-18 12:59 - 000004422 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-09-13 07:24 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-09-12 23:27 - 2017-01-09 21:18 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-09-12 23:21 - 2017-03-27 20:16 - 000000000 ____D C:\ProgramData\Apple
2017-09-12 23:21 - 2017-01-09 21:17 - 138202976 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-09-12 07:31 - 2017-01-09 20:45 - 000001143 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-09-10 12:48 - 2017-08-18 12:54 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-09-09 20:33 - 2017-07-25 16:14 - 000000000 ____D C:\Fraps
2017-09-02 17:15 - 2017-03-18 23:06 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-09-02 17:15 - 2017-03-18 23:06 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-09-01 14:46 - 2017-01-09 21:21 - 000000000 ____D C:\Program Files\DIFX
2017-08-31 23:08 - 2017-01-09 20:56 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
==================== Files in the root of some directories =======
2017-07-02 12:37 - 2017-07-02 12:37 - 000000008 _____ () C:\Users\msi PC\AppData\Roaming\00000602001520
2017-03-27 21:36 - 2017-04-09 11:06 - 000000040 _____ () C:\Users\msi PC\AppData\Roaming\cdr.ini
2017-05-03 22:00 - 2017-05-03 22:02 - 000029696 _____ () C:\Users\msi PC\AppData\Local\MSGBOX.EXE
2017-07-25 10:10 - 2017-07-25 10:10 - 000000003 _____ () C:\Users\msi PC\AppData\Local\updater.log
2017-07-25 10:10 - 2017-07-28 19:35 - 000000059 _____ () C:\Users\msi PC\AppData\Local\UserProducts.xml
2017-01-10 22:47 - 2017-01-10 22:47 - 000000016 _____ () C:\ProgramData\mntemp
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-09-24 14:51
==================== End of FRST.txt ============================
poprosím o preventívku.
FRSTlauncher mi Chrome blokuje :-/ (Tento súbor je nebezpečný a preto ho Chrome zablokoval)
FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-09-2017 01
Ran by msi PC (administrator) on DESKTOP-02H91O1 (26-09-2017 23:18:52)
Running from C:\Users\msi PC\Desktop\132
Loaded Profiles: msi PC (Available Profiles: msi PC)
Platform: Windows 10 Home Version 1703 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Lenovo) C:\Program Files (x86)\MagicPlus\MagicPlus_helper.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Windows\System32\CastSrv.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.5798\Agent.exe
(Blizzard Entertainment) C:\Program Files (x86)\Blizzard App\Battle.net.9397\Battle.net.exe
() C:\Program Files (x86)\Blizzard App\Battle.net.9397\Battle.net Helper.exe
() C:\Program Files (x86)\Blizzard App\Battle.net.9397\Battle.net Helper.exe
(Blizzard Entertainment) C:\Program Files (x86)\World of Warcraft\Wow-64.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(BitTorrent Inc.) C:\Users\msi PC\AppData\Roaming\uTorrent\uTorrent.exe
(BitTorrent Inc.) C:\Users\msi PC\AppData\Roaming\uTorrent\updates\3.5.0_43916\utorrentie.exe
(BitTorrent Inc.) C:\Users\msi PC\AppData\Roaming\uTorrent\updates\3.5.0_43916\utorrentie.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3366624 2017-05-04] (ELAN Microelectronics Corp.)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17652344 2017-06-27] (Logitech Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [297784 2017-09-11] (Apple Inc.)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-12] (Oracle Corporation)
HKLM-x32\...\Run: [MagicPlus_helper] => C:\Program Files (x86)\MagicPlus\MagicPlus_helper.exe [3267208 2016-08-15] (Lenovo)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [uTorrent] => C:\Users\msi PC\AppData\Roaming\uTorrent\uTorrent.exe [2146496 2017-07-16] (BitTorrent Inc.)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [Boxoft Tools] => C:\ProgramData\Boxtools\Boxofttoolbox.exe [514048 2010-12-15] ()
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3071776 2017-09-07] (Valve Corporation)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9818328 2017-06-30] (Piriform Ltd)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2017-07-14] (Apple Inc.)
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\MountPoints2: {19cf6b7f-88d9-11e7-86c3-240a649d0023} - "F:\Lenovo_Suite.exe"
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\MountPoints2: {97e5f77d-9a44-11e7-bba3-240a649ce882} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\...\MountPoints2: {9ea0cafd-9e32-11e7-bba4-240a649ce882} - "F:\Lenovo_Suite.exe"
Startup: C:\Users\msi PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NexonCs.vbs [2017-08-02] ()
Startup: C:\Users\msi PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2017-08-20]
ShortcutTarget: Twitch.lnk -> C:\Users\msi PC\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{572df3df-5cc4-46ba-84c2-cadf47c5d1bb}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{c623cfa5-ecf2-42d7-a396-e17aa1b0ea98}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_141\bin\ssv.dll [2017-07-24] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_141\bin\jp2ssv.dll [2017-07-24] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-04-26] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-26] (Oracle Corporation)
FireFox:
========
FF DefaultProfile: jv34688q.default
FF ProfilePath: C:\Users\msi PC\AppData\Roaming\Firefox\Firefox\Profiles\jv34688q.default [2017-05-22] <==== ATTENTION
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_130.dll [2017-09-13] ()
FF Plugin: @java.com/DTPlugin,version=11.141.2 -> C:\Program Files\Java\jre1.8.0_141\bin\dtplugin\npDeployJava1.dll [2017-07-24] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.141.2 -> C:\Program Files\Java\jre1.8.0_141\bin\plugin2\npjp2.dll [2017-07-24] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_130.dll [2017-09-13] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw.dll [2017-02-27] (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-04-26] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-04-26] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-06] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-06] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-10] (Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: ChromeDefaultData2
CHR HomePage: ChromeDefaultData2 -> hxxp://google.sk/
CHR StartupUrls: ChromeDefaultData2 -> "hxxp://google.sk/"
CHR Profile: C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2 [2017-09-26] <==== ATTENTION
CHR Extension: (Prezentácie Google) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-05-07]
CHR Extension: (Dokumenty Google) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\aohghmighlieiainnegkcijnfilokake [2017-05-07]
CHR Extension: (Disk Google) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-05-07]
CHR Extension: (YouTube) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-07]
CHR Extension: (Tampermonkey) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2017-09-08]
CHR Extension: (Adobe Acrobat) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-05-30]
CHR Extension: (Google Apps Script) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\eoieeedlomnegifmaghhjnghhmcldobl [2017-05-07]
CHR Extension: (Tabuľky Google) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-05-07]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-05-07]
CHR Extension: (AdBlock) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-09-19]
CHR Extension: (The West) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\ilkgeioneoemibpddeiamfgiofnpjifm [2017-05-07]
CHR Extension: (Skype) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-07-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-22]
CHR Extension: (Script Installation Services/Website Setup) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\ojkfkmbechelifpehnokcfhlamloapmc [2017-05-07]
CHR Extension: (Gmail) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-05-07]
CHR Extension: (Chrome Media Router) - C:\Users\msi PC\AppData\Local\Google\Chrome\User Data\ChromeDefaultData2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-09-19]
CHR HKU\S-1-5-21-1862971310-3561655192-1180766120-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-09-07] (Apple Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2836296 2016-12-14] (ESET)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144096 2017-05-04] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2017-03-17] (Intel Corporation)
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2017-06-27] (Logitech Inc.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960 2017-08-18] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-05-01] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [449984 2017-08-18] (NVIDIA Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-07-11] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
S3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30264 2017-02-12] (Disc Soft Ltd)
S3 dtultrausbbus; C:\WINDOWS\System32\drivers\dtultrausbbus.sys [47672 2017-02-12] (Disc Soft Ltd)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [132272 2016-12-13] (ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [106768 2016-12-13] (ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15488 2016-12-13] (ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [180544 2016-12-13] (ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [49672 2016-12-13] (ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [77616 2016-12-13] (ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [96856 2016-12-13] (ESET)
R3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [31824 2017-05-04] (ELAN Microelectronic Corp.)
S3 ggsomc; C:\WINDOWS\System32\drivers\ggsomc.sys [30424 2017-05-02] (Sony Mobile Communications)
R3 KillerEth; C:\WINDOWS\System32\drivers\e2xw10x64.sys [145920 2017-03-18] (Qualcomm Atheros, Inc.)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2017-06-27] (Logitech Inc.)
R1 MpKsl0d85c4b5; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0D9B0D8E-D44C-49AD-88D3-64C9AD5BFA77}\MpKsl0d85c4b5.sys [44928 2017-09-26] (Microsoft Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvmi.inf_amd64_0401a47bc69f625c\nvlddmkm.sys [14456952 2017-06-26] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-08-18] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48064 2017-07-26] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-08-18] (NVIDIA Corporation)
R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [593624 2015-03-11] (Realtek Semiconductor Corporation)
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [760968 2017-02-23] (Realsil Semiconductor Corporation)
R3 rtwlane_13; C:\WINDOWS\System32\drivers\rtwlane_13.sys [3717120 2017-03-18] (Realtek Semiconductor Corporation )
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [37344 2017-04-30] (Wellbia.com Co., Ltd.)
S3 pccsmcfd; \SystemRoot\system32\DRIVERS\pccsmcfdx64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-26 23:12 - 2017-09-26 23:18 - 000000000 ____D C:\Users\msi PC\Desktop\132
2017-09-26 23:09 - 2017-09-26 23:11 - 000000000 ____D C:\Users\msi PC\Downloads\2. série
2017-09-26 23:09 - 2017-09-26 23:09 - 000027878 _____ C:\Users\msi PC\Downloads\[CzT]Vikingove_Vikings_2_serie_CZ_TvRip_.torrent
2017-09-26 23:09 - 2017-09-26 23:09 - 000000000 ____D C:\Users\msi PC\AppData\LocalLow\uTorrent
2017-09-25 12:04 - 2017-09-25 12:04 - 000000000 ____D C:\ProgramData\icondir
2017-09-25 12:03 - 2017-09-25 12:04 - 000001934 _____ C:\Users\Public\Desktop\乐助手.lnk
2017-09-25 12:03 - 2017-09-25 12:03 - 000004172 _____ C:\WINDOWS\System32\Tasks\lenovo mobile auto run
2017-09-25 12:03 - 2017-09-25 12:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\乐助手
2017-09-25 12:03 - 2017-09-25 12:03 - 000000000 ____D C:\Program Files (x86)\MagicPlus
2017-09-25 12:03 - 2017-09-25 12:03 - 000000000 ____D C:\MagicPlus
2017-09-25 12:00 - 2017-09-25 12:03 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\Lenovo
2017-09-25 12:00 - 2017-09-25 12:01 - 000000000 ____D C:\Users\msi PC\.android
2017-09-25 12:00 - 2017-09-25 12:00 - 000000000 ____D C:\Program Files (x86)\LenovoUsbDriver
2017-09-25 11:54 - 2017-09-25 11:54 - 000000000 ____D C:\Users\msi PC\Desktop\Vikingové
2017-09-22 19:01 - 2017-09-26 07:18 - 000000515 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2017-09-17 09:50 - 2017-09-17 09:50 - 000012232 _____ C:\Users\msi PC\Downloads\[CzT]Labuti_princezna_7_Kralovska_mise_The_Swan_Princess_Royally_Undercover_2017_CZ_.torrent
2017-09-17 09:49 - 2017-09-17 09:49 - 000215836 _____ C:\Users\msi PC\Downloads\[CzT]Ozzy_2016_CZ_SK_720pLQ_.torrent
2017-09-15 12:22 - 2017-09-17 09:49 - 000000000 ____D C:\Users\msi PC\Downloads\Alien.Covenant.2017.BRRip.XviD.AC3.CZ-PiRaTE
2017-09-15 11:30 - 2017-09-15 11:30 - 000000000 ____D C:\Users\msi PC\Downloads\Pirates.of.the.Caribbean.Dead.Men.Tell.No.Tales.2017.WEB-DL.XviD.AC3.CZ-PiRaTE
2017-09-15 11:29 - 2017-09-15 11:29 - 000019074 _____ C:\Users\msi PC\Downloads\[CzT]Pirati_z_Karibiku_Salazarova_pomsta_Pirates_of_the_Caribbean_Dead_Men_Tell_No_Tales_2017_CZ_WebRip_.torrent
2017-09-15 11:28 - 2017-09-17 09:49 - 000000000 ____D C:\Users\msi PC\Downloads\Guardians.of.the.Galaxy.Vol.2.2017.BRRip.XviD.AC3.CZ-PiRaTE
2017-09-15 11:28 - 2017-09-15 11:28 - 000018156 _____ C:\Users\msi PC\Downloads\[CzT]Strazci_Galaxie_Vol_2_Guardians_of_the_Galaxy_Vol_2_2017_CZ_.torrent
2017-09-15 11:28 - 2017-09-15 11:28 - 000016372 _____ C:\Users\msi PC\Downloads\[CzT]Vetrelec_Covenant_Alien_Covenant_2017_CZ_.torrent
2017-09-15 09:14 - 2017-09-15 09:14 - 000000936 _____ C:\Users\Public\Desktop\Diablo III.lnk
2017-09-15 09:14 - 2017-09-15 09:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2017-09-15 01:43 - 2017-09-15 09:30 - 000000000 ____D C:\Program Files (x86)\Diablo III
2017-09-15 00:54 - 2017-09-15 00:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III Public Test
2017-09-15 00:14 - 2017-09-15 00:14 - 000000000 ____D C:\Users\msi PC\AppData\Local\NokiaAccount
2017-09-15 00:11 - 2017-09-15 01:54 - 000000000 ____D C:\Program Files (x86)\Diablo III Public Test
2017-09-14 23:19 - 2017-09-14 23:19 - 000001816 _____ C:\Users\Public\Desktop\iTunes.lnk
2017-09-14 23:19 - 2017-09-14 23:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2017-09-14 23:19 - 2017-09-14 23:19 - 000000000 ____D C:\Program Files\iTunes
2017-09-14 23:19 - 2017-09-14 23:19 - 000000000 ____D C:\Program Files\iPod
2017-09-14 23:17 - 2017-09-14 23:17 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple
2017-09-14 23:17 - 2017-09-14 23:17 - 000000000 ____D C:\Program Files (x86)\Apple Software Update
2017-09-14 23:12 - 2017-09-14 23:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2017-09-12 23:21 - 2017-09-14 23:17 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2017-09-12 23:21 - 2017-09-14 23:12 - 000000000 ____D C:\Program Files\Common Files\Apple
2017-09-12 23:21 - 2017-09-12 23:21 - 000000000 ____D C:\Program Files\Bonjour
2017-09-12 23:21 - 2017-09-12 23:21 - 000000000 ____D C:\Program Files (x86)\Bonjour
2017-09-12 07:29 - 2017-09-12 07:29 - 000000000 ____D C:\Users\msi PC\Desktop\Five Finger Death Punch - Discography
2017-09-12 07:28 - 2017-09-12 07:28 - 000000000 ____D C:\Users\msi PC\Documents\FeedbackHub
2017-09-11 23:43 - 2017-09-11 23:53 - 881525766 _____ C:\Users\msi PC\Desktop\Five-Finger-Death-Punch---Discography-by-PETR.V.rar
2017-09-09 18:05 - 2017-09-09 18:05 - 004212384 _____ (Husdawg, LLC) C:\Users\msi PC\Desktop\Detection.exe
2017-09-03 15:19 - 2017-09-03 15:19 - 000000000 ____D C:\Users\msi PC\Downloads\Vikingové
2017-09-01 14:47 - 2017-09-01 14:47 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\Nokia
2017-09-01 14:46 - 2017-09-01 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
2017-09-01 14:46 - 2017-09-01 14:46 - 000000000 ____D C:\Program Files (x86)\PC Connectivity Solution
2017-09-01 14:32 - 2017-09-01 14:32 - 000000000 ____D C:\ProgramData\Installations
2017-09-01 14:22 - 2017-09-01 14:22 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
2017-09-01 14:22 - 2017-09-01 14:22 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ccdcmbx64_01009.Wdf
2017-09-01 14:13 - 2017-09-01 14:47 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\PC Suite
2017-09-01 14:13 - 2017-09-01 14:22 - 000000000 ____D C:\ProgramData\PC Suite
2017-09-01 14:13 - 2017-09-01 14:21 - 000000000 ____D C:\Users\msi PC\AppData\Local\Nokia
2017-09-01 14:12 - 2017-09-15 00:15 - 000000000 ____D C:\ProgramData\Nokia
2017-09-01 14:12 - 2013-01-23 10:31 - 000057856 _____ (Nokia) C:\WINDOWS\system32\nmwcdclsX64.dll
2017-09-01 14:09 - 2017-09-15 00:15 - 000000000 ____D C:\Program Files (x86)\Nokia
2017-09-01 14:09 - 2017-09-01 14:09 - 000000000 ____D C:\ProgramData\NokiaInstallerCache
2017-08-30 11:47 - 2017-08-30 12:28 - 3358991599 _____ C:\Users\msi PC\Downloads\Game.of.Thrones.S07E07.720p.WEB.H264.CZ.Titulky.mkv
2017-08-27 18:44 - 2017-08-27 18:44 - 000160822 _____ C:\Users\msi PC\Desktop\HandyNotes-v1.4.14.zip
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-26 23:19 - 2017-01-12 01:04 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\uTorrent
2017-09-26 23:18 - 2017-05-05 22:23 - 000000000 ____D C:\FRST
2017-09-26 23:17 - 2017-07-26 18:51 - 000000000 ____D C:\Users\msi PC\AppData\Local\Battle.net
2017-09-26 23:08 - 2017-08-18 12:59 - 000004214 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{C64E399A-027A-4EC2-85B6-848EE54437CA}
2017-09-26 23:08 - 2017-08-18 12:55 - 000000000 ____D C:\Users\msi PC
2017-09-26 23:08 - 2017-08-18 12:54 - 000000000 ____D C:\ProgramData\NVIDIA
2017-09-26 23:07 - 2017-07-26 18:58 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2017-09-26 23:07 - 2017-07-26 18:52 - 000000000 ____D C:\Program Files (x86)\Blizzard App
2017-09-26 23:05 - 2017-08-18 12:55 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-09-26 23:05 - 2017-01-09 20:47 - 000000000 __SHD C:\Users\msi PC\IntelGraphicsProfiles
2017-09-26 07:28 - 2017-03-18 22:51 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-09-26 07:22 - 2017-03-18 23:03 - 000000000 ___HD C:\Program Files\WindowsApps
2017-09-26 07:22 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-09-25 23:22 - 2017-08-18 12:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-09-25 23:05 - 2017-08-20 18:58 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\Twitch
2017-09-25 12:00 - 2017-03-18 23:01 - 000000000 ____D C:\WINDOWS\INF
2017-09-24 14:58 - 2017-01-09 20:45 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\vlc
2017-09-22 19:04 - 2017-08-18 13:01 - 003477908 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-09-22 19:04 - 2017-03-06 22:41 - 001912608 _____ C:\WINDOWS\system32\perfh01B.dat
2017-09-22 19:04 - 2017-03-06 22:41 - 000567086 _____ C:\WINDOWS\system32\perfc01B.dat
2017-09-22 16:49 - 2017-08-18 12:59 - 000003380 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1862971310-3561655192-1180766120-1001
2017-09-22 16:49 - 2017-01-09 20:40 - 000002374 _____ C:\Users\msi PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-09-22 16:49 - 2017-01-09 20:40 - 000000000 ___RD C:\Users\msi PC\OneDrive
2017-09-22 04:28 - 2017-05-06 19:52 - 000002284 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-09-20 20:36 - 2017-08-18 12:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-09-20 20:36 - 2017-08-18 12:54 - 000306200 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-09-20 17:40 - 2017-03-18 13:40 - 001572864 _____ C:\WINDOWS\system32\config\BBI
2017-09-16 09:01 - 2017-01-09 20:38 - 000000000 ____D C:\Users\msi PC\AppData\Local\Packages
2017-09-15 01:43 - 2017-01-12 18:34 - 000000000 ____D C:\Users\msi PC\Documents\Diablo III
2017-09-15 01:17 - 2017-08-11 19:13 - 000000000 ___DC C:\WINDOWS\Panther
2017-09-15 01:17 - 2017-04-30 13:29 - 000000000 ____D C:\Program Files (x86)\Steam
2017-09-15 01:17 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\ModemLogs
2017-09-15 01:17 - 2017-01-26 08:25 - 000000000 ____D C:\Users\msi PC\AppData\Local\CrashDumps
2017-09-14 23:53 - 2017-03-27 20:18 - 000000000 ____D C:\Users\msi PC\AppData\Roaming\Apple Computer
2017-09-14 23:53 - 2017-03-27 20:18 - 000000000 ____D C:\Users\msi PC\AppData\Local\Apple Computer
2017-09-13 07:24 - 2017-08-18 12:59 - 000004422 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-09-13 07:24 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-09-12 23:27 - 2017-01-09 21:18 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-09-12 23:21 - 2017-03-27 20:16 - 000000000 ____D C:\ProgramData\Apple
2017-09-12 23:21 - 2017-01-09 21:17 - 138202976 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-09-12 07:31 - 2017-01-09 20:45 - 000001143 _____ C:\Users\Public\Desktop\VLC media player.lnk
2017-09-10 12:48 - 2017-08-18 12:54 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-09-09 20:33 - 2017-07-25 16:14 - 000000000 ____D C:\Fraps
2017-09-02 17:15 - 2017-03-18 23:06 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-09-02 17:15 - 2017-03-18 23:06 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-09-01 14:46 - 2017-01-09 21:21 - 000000000 ____D C:\Program Files\DIFX
2017-08-31 23:08 - 2017-01-09 20:56 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
==================== Files in the root of some directories =======
2017-07-02 12:37 - 2017-07-02 12:37 - 000000008 _____ () C:\Users\msi PC\AppData\Roaming\00000602001520
2017-03-27 21:36 - 2017-04-09 11:06 - 000000040 _____ () C:\Users\msi PC\AppData\Roaming\cdr.ini
2017-05-03 22:00 - 2017-05-03 22:02 - 000029696 _____ () C:\Users\msi PC\AppData\Local\MSGBOX.EXE
2017-07-25 10:10 - 2017-07-25 10:10 - 000000003 _____ () C:\Users\msi PC\AppData\Local\updater.log
2017-07-25 10:10 - 2017-07-28 19:35 - 000000059 _____ () C:\Users\msi PC\AppData\Local\UserProducts.xml
2017-01-10 22:47 - 2017-01-10 22:47 - 000000016 _____ () C:\ProgramData\mntemp
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-09-24 14:51
==================== End of FRST.txt ============================