Pomalý Internet
Napsal: 23 říj 2017 14:02
Dobrý den,mám takový problem,posledních pár dnů se stránky v prohlížeči načítají neúměrně dlouho a dokonce se i stává že stránka hlásí že nefunguje ale po opětovném načtení již jede. Děkuji za Pomoc a přeji příjemný den.
Log
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-10-2017
Ran by Dominik (administrator) on DOMINIK-PC (23-10-2017 14:59:40)
Running from C:\Users\Dominik\Downloads
Loaded Profiles: Dominik (Available Profiles: Dominik)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(Power Software Ltd) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Dominik\Downloads\FRST64 (1).exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [406664 2016-05-25] (Power Software Ltd)
HKU\S-1-5-21-707951698-1732677806-592134114-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd)
HKU\S-1-5-21-707951698-1732677806-592134114-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3101984 2017-10-17] (Valve Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{0AA83DC0-B66F-43FD-9DAD-56EA86565672}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-707951698-1732677806-592134114-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-707951698-1732677806-592134114-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-12] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-12] (Oracle Corporation)
FireFox:
========
FF DefaultProfile: k63582xc.default
FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\k63582xc.default [2017-10-23]
FF NewTab: Mozilla\Firefox\Profiles\k63582xc.default -> about:newtab
FF Homepage: Mozilla\Firefox\Profiles\k63582xc.default -> about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-23] ()
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-23] ()
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-12] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-12] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-06-08] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-06-08] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-10-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-10-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-01] (Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default [2017-10-23]
CHR Extension: (Prezentace) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-21]
CHR Extension: (Dokumenty) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-21]
CHR Extension: (Disk Google) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-10-21]
CHR Extension: (YouTube) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-10-21]
CHR Extension: (Adobe Acrobat) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-10-21]
CHR Extension: (Tabulky) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-22]
CHR Extension: (AdBlock) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-21]
CHR Extension: (Gmail) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-10-21]
CHR Extension: (Chrome Media Router) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-21]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960 2017-08-07] (Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-06-08] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-06-21] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2120032 2017-09-25] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3000168 2017-09-25] (Electronic Arts)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2016-04-02] ()
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2017-10-03] ()
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1254736 2017-04-11] (Bitdefender)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH)
R2 updatesrv; C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe [100392 2017-08-29] (Bitdefender)
R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [100392 2017-08-29] (Bitdefender)
R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [100392 2017-08-29] (Bitdefender)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
R0 atc; C:\Windows\System32\DRIVERS\atc.sys [1019880 2017-10-13] (BitDefender S.R.L. Bucharest, ROMANIA)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1763744 2017-08-29] (BitDefender)
S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [878072 2016-09-20] (BitDefender)
R0 BdDci; C:\Windows\System32\DRIVERS\bddci.sys [155624 2017-10-19] (Bitdefender)
R3 edrsensor; C:\Windows\System32\DRIVERS\edrsensor.sys [250504 2017-10-03] (BitDefender S.R.L. Bucharest, ROMANIA)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77440 2017-10-10] ()
R0 gzflt; C:\Windows\System32\drivers\gzflt.sys [187688 2017-07-24] (BitDefender LLC)
S3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus64.sys [261120 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
S3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [110016 2017-10-07] (Malwarebytes)
S3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [45504 2017-10-07] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [252232 2017-10-23] (Malwarebytes)
S3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [84256 2017-10-07] (Malwarebytes)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-06-21] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [48248 2017-06-21] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57976 2017-06-21] (NVIDIA Corporation)
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [18768 2017-07-25] () [File not signed]
R2 trufos; C:\Windows\System32\drivers\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-10-21 13:26 - 2017-10-21 13:26 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-10-21 13:26 - 2017-10-21 13:26 - 000002255 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-10-21 13:25 - 2017-10-21 13:25 - 001130328 _____ (Google Inc.) C:\Users\Dominik\Downloads\ChromeSetup(2).exe
2017-10-21 13:25 - 2017-10-21 13:25 - 000003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-10-21 13:25 - 2017-10-21 13:25 - 000003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-10-20 23:38 - 2017-10-20 23:38 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Kite Games
2017-10-20 23:37 - 2017-10-20 23:37 - 000001710 _____ C:\Users\Public\Desktop\Sudden Strike 4.lnk
2017-10-20 22:08 - 2017-10-20 22:16 - 000000000 ____D C:\Users\Dominik\Downloads\Sudden Strike 4 v1.01.19357 (14463) [GOG]
2017-10-20 22:07 - 2017-10-20 22:07 - 000014523 _____ C:\Users\Dominik\Downloads\[CzT]Sudden_Strike_4_Battle_of_Kursk_DLC_v_1_01_19357_2017_.torrent
2017-10-19 20:55 - 2017-10-19 20:55 - 008250832 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_7.0.3.1 (1).exe
2017-10-19 10:38 - 2017-10-19 10:38 - 000155624 _____ (Bitdefender) C:\Windows\system32\Drivers\bddci.sys
2017-10-18 20:14 - 2017-10-18 20:34 - 000000000 ____D C:\Users\Dominik\Downloads\REC
2017-10-18 20:14 - 2017-10-18 20:14 - 000014796 _____ C:\Users\Dominik\Downloads\[CzT]REC_Rec_1_2_2007_2009_CZ_.torrent
2017-10-18 10:42 - 2017-10-23 09:59 - 000252232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2017-10-17 21:31 - 2017-10-17 21:32 - 1002364168 _____ C:\Users\Dominik\Downloads\Fatherland - Beta 8 - Empires.zip
2017-10-10 17:49 - 2017-10-10 18:26 - 936135380 _____ C:\Users\Dominik\Downloads\Leights-OPFOR-Pack-version-1.9.7z
2017-10-10 14:35 - 2017-10-10 16:32 - 2144548822 _____ C:\Users\Dominik\Downloads\Trpká úroda (2017) CZ titulky v obraze.avi
2017-10-10 12:12 - 2017-10-10 12:12 - 000003644 _____ C:\Windows\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2017-10-10 12:07 - 2017-10-10 12:07 - 008250832 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_7.0.3.1.exe
2017-10-09 17:18 - 2017-10-09 17:18 - 000146432 _____ C:\Users\Dominik\Downloads\CUP-ACE3-Compatibility-Addon-Vehicles-version-1.9.0.7z
2017-10-09 13:23 - 2017-10-09 13:23 - 000020462 _____ C:\Users\Dominik\Downloads\CUP_Vehicles-1.9.1.zip.torrent
2017-10-09 11:53 - 2017-10-23 09:59 - 000003030 _____ C:\Windows\System32\Tasks\MSIAfterburner
2017-10-08 16:20 - 2017-10-08 16:20 - 000056572 _____ C:\Users\Dominik\Downloads\CUP_Terrains_Complete-1.3.0.zip.torrent
2017-10-07 12:17 - 2017-10-07 12:18 - 000000000 ____D C:\Program Files (x86)\Guild Wars 2
2017-10-07 12:17 - 2017-10-07 12:17 - 000000951 _____ C:\Users\Public\Desktop\Guild Wars 2.lnk
2017-10-07 12:17 - 2017-10-07 12:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2
2017-10-07 12:16 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64 (1).tmp
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 ____D C:\Users\Dominik\Downloads\bin64
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 _____ C:\Users\Dominik\Downloads\Gw2.tmp
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 _____ C:\Users\Dominik\Downloads\Gw2.dat
2017-10-07 12:15 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64 (1).exe
2017-10-06 14:34 - 2017-10-06 14:34 - 000451001 _____ C:\Users\Dominik\Downloads\CBA_A3_v3.4.1.zip
2017-10-06 11:13 - 2017-10-06 11:13 - 000001082 _____ C:\Users\Dominik\Desktop\Arma 3 Laws of War.lnk
2017-10-06 11:13 - 2017-10-06 11:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arma 3 Laws of War
2017-10-06 11:02 - 2017-10-10 18:30 - 000000000 ____D C:\Program Files (x86)\Arma 3 Laws of War
2017-10-06 10:47 - 2017-09-07 21:39 - 2111537152 _____ C:\codex-arma.3.laws.of.war.iso
2017-10-05 18:04 - 2017-10-05 18:04 - 002012413 _____ C:\Users\Dominik\Downloads\[CzT]Arma_3_Laws_of_War_2017_.torrent
2017-10-04 23:06 - 2017-10-07 12:03 - 000084256 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-10-04 23:06 - 2017-10-07 12:03 - 000045504 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-10-04 14:26 - 2017-10-04 14:26 - 000148636 _____ C:\Users\Dominik\Downloads\[CzT]Metal_Gear_Solid_V_The_Phantom_Pain_2015_CZ_.torrent
2017-10-03 18:56 - 2017-10-03 18:56 - 029340840 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64.exe
2017-10-02 19:01 - 2017-10-02 19:01 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Io Interactive
2017-10-01 17:48 - 2017-10-23 09:59 - 000000000 ____D C:\Program Files (x86)\Steam
2017-10-01 17:48 - 2017-10-01 17:48 - 001446792 _____ C:\Users\Dominik\Downloads\SteamSetup (2).exe
2017-10-01 17:48 - 2017-10-01 17:48 - 000000963 _____ C:\Users\Public\Desktop\Steam.lnk
2017-10-01 17:48 - 2017-10-01 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2017-09-26 14:16 - 2017-09-26 14:16 - 000233382 _____ C:\Users\Dominik\Downloads\[CzT]Dragon_Age_Inquisition_Deluxe_Edition_v1_11_2014_.torrent
2017-09-25 19:26 - 2017-09-25 19:26 - 000000000 ____D C:\Users\Dominik\AppData\Local\HellbladeGame
2017-09-25 19:26 - 2017-09-25 19:26 - 000000000 ____D C:\Users\Dominik\AppData\Local\GOG.com
2017-09-25 19:13 - 2017-09-25 19:13 - 000002269 _____ C:\Users\Public\Desktop\Hellblade - Senua's Sacrifice.lnk
2017-09-25 19:13 - 2017-09-25 19:13 - 000000000 ____D C:\Windows\SysWOW64\GOG.com
2017-09-25 19:13 - 2017-09-25 19:13 - 000000000 ____D C:\423a84e76e3c6b37d51afb
2017-09-25 16:01 - 2017-09-25 16:01 - 000035617 _____ C:\Users\Dominik\Downloads\[CzT]Hellblade_Senua_s_Sacrifice_v_1_02_2017_.torrent
2017-09-25 16:00 - 2017-09-25 16:00 - 000035535 _____ C:\Users\Dominik\Downloads\[CzT]Hellblade_Senua_s_Sacrifice_v_1_01_1_2017_.torrent
2017-09-25 15:56 - 2017-09-25 15:56 - 000839833 _____ C:\Users\Dominik\Downloads\hellblade_cz_v10.zip
2017-09-24 21:43 - 2017-09-24 21:43 - 000060079 _____ C:\Users\Dominik\Downloads\zivotopis (1).pdf
2017-09-24 17:21 - 2017-09-24 17:21 - 000021849 _____ C:\Users\Dominik\Downloads\[CzT]Tajny_zivot_mazlicku_The_Secret_Life_of_Pets_2016_CZ_SK_EN_720pHD_.torrent
2017-09-24 15:50 - 2017-09-24 15:50 - 000025034 _____ C:\Users\Dominik\Downloads\[CzT]Pirati_z_Karibiku_Salazarova_pomsta_Pirates_of_the_Caribbean_Dead_Men_Tell_No_Tales_2017_CZ_EN_WebRip_1080p_.torrent
2017-09-23 15:40 - 2017-10-07 12:03 - 000110016 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-09-23 15:40 - 2017-09-23 15:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-10-23 15:00 - 2017-02-02 15:00 - 000016208 _____ C:\Users\Dominik\Downloads\FRST.txt
2017-10-23 14:59 - 2017-06-07 17:10 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2017-10-23 14:59 - 2017-02-02 14:59 - 000000000 ____D C:\FRST
2017-10-23 14:58 - 2017-06-07 17:07 - 000000000 ____D C:\Program Files\Bitdefender Agent
2017-10-23 14:58 - 2016-11-19 14:32 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Mozilla
2017-10-23 14:57 - 2017-05-20 13:37 - 000000000 ____D C:\Users\Dominik\Downloads\FRST-OlderVersion
2017-10-23 14:57 - 2017-04-23 12:25 - 002402816 _____ (Farbar) C:\Users\Dominik\Downloads\FRST64 (1).exe
2017-10-23 12:25 - 2015-10-29 19:45 - 000000000 ____D C:\ProgramData\NVIDIA
2017-10-23 12:22 - 2016-11-18 12:15 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-10-23 12:22 - 2015-09-27 22:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-10-23 10:14 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-10-23 10:14 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-10-23 09:58 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-23 01:26 - 2017-04-03 00:34 - 000001532 _____ C:\Users\Dominik\Desktop\Los Angeles.txt
2017-10-21 13:26 - 2015-09-15 17:05 - 000000000 ____D C:\Users\Dominik\AppData\Local\Google
2017-10-21 13:26 - 2015-09-15 17:05 - 000000000 ____D C:\Program Files (x86)\Google
2017-10-20 23:38 - 2016-10-16 16:02 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\uTorrent
2017-10-20 23:37 - 2015-10-04 22:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2017-10-20 23:32 - 2015-12-13 21:39 - 000000000 ____D C:\GOG Games
2017-10-19 20:55 - 2017-02-09 01:22 - 000000000 ____D C:\AdwCleaner
2017-10-19 19:44 - 2015-10-22 15:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\Deployment
2017-10-19 19:44 - 2015-10-22 15:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\Apps\2.0
2017-10-19 19:41 - 2015-09-15 16:23 - 000001393 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-10-19 01:15 - 2015-09-19 20:01 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\vlc
2017-10-17 19:57 - 2015-11-19 22:51 - 000000000 ____D C:\Darkest Hour 1.03
2017-10-14 20:40 - 2015-12-13 22:19 - 000000000 ____D C:\Users\Dominik\Documents\The Witcher 3
2017-10-13 10:32 - 2017-06-24 13:08 - 001019880 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\atc.sys
2017-10-10 19:03 - 2016-03-12 17:03 - 000000000 ____D C:\Users\Dominik\AppData\Local\Arma 3
2017-10-10 00:02 - 2017-05-21 15:39 - 000077440 _____ C:\Windows\system32\Drivers\mbae64.sys
2017-10-08 16:10 - 2016-08-04 20:40 - 000000000 ____D C:\Users\Dominik\AppData\Local\CrashDumps
2017-10-08 15:06 - 2015-09-25 15:37 - 000000000 ____D C:\ProgramData\Origin
2017-10-08 14:59 - 2016-08-31 14:08 - 000000000 ____D C:\Users\Dominik\AppData\Local\ElevatedDiagnostics
2017-10-08 12:49 - 2016-10-14 17:34 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2017-10-08 12:49 - 2015-10-12 19:19 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.xtr
2017-10-08 12:49 - 2015-09-25 17:42 - 000280904 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2017-10-08 12:48 - 2015-09-25 15:39 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Origin
2017-10-08 01:30 - 2017-05-14 23:21 - 000000270 _____ C:\Users\Dominik\Desktop\Kroměříž.txt
2017-10-07 23:43 - 2017-01-20 02:09 - 000001407 _____ C:\Users\Dominik\Desktop\Nový textový dokument.txt
2017-10-07 21:11 - 2015-09-25 16:46 - 000000000 ____D C:\Program Files (x86)\Origin Games
2017-10-07 20:33 - 2016-08-30 12:44 - 000000000 ____D C:\ProgramData\Package Cache
2017-10-07 20:04 - 2015-09-25 17:43 - 000001231 _____ C:\Users\Public\Desktop\Battlefield 4.lnk
2017-10-07 17:43 - 2017-04-23 20:23 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2017-10-07 14:51 - 2015-09-25 15:37 - 000000000 ____D C:\Program Files (x86)\Origin
2017-10-07 12:18 - 2015-10-30 20:21 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Guild Wars 2
2017-10-03 19:19 - 2016-10-14 17:34 - 000076152 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2017-10-03 10:53 - 2017-06-07 17:11 - 000250504 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\edrsensor.sys
2017-09-29 00:14 - 2015-09-27 20:38 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2017-09-27 16:32 - 2015-10-21 20:28 - 000007602 _____ C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg
2017-09-25 19:26 - 2016-11-13 18:09 - 000000000 ____D C:\Users\Dominik\AppData\Local\UnrealEngine
2017-09-23 15:40 - 2017-05-21 15:39 - 000001867 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
==================== Files in the root of some directories =======
2016-09-04 22:01 - 2016-09-04 22:07 - 000000000 _____ () C:\Program Files (x86)\ToDownloadBase.db
2016-02-23 18:32 - 2016-02-23 18:32 - 000000913 _____ () C:\Users\Dominik\AppData\Local\recently-used.xbel
2015-10-21 20:28 - 2017-09-27 16:32 - 000007602 _____ () C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg
2016-10-14 17:37 - 2016-10-14 17:37 - 000000000 ___SH () C:\ProgramData\.rdata
2017-05-29 21:19 - 2017-05-29 21:19 - 000037824 _____ () C:\ProgramData\1496085544.bdinstall.bin
2017-05-29 21:21 - 2017-05-29 21:21 - 000097381 _____ () C:\ProgramData\1496085552.bdinstall.bin
2017-06-07 17:07 - 2017-06-07 17:07 - 000046889 _____ () C:\ProgramData\agent.1496848048.bdinstall.bin
2017-06-15 07:39 - 2017-06-15 07:39 - 000030967 _____ () C:\ProgramData\agent.update.1497505170.bdinstall.bin
Some files in TEMP:
====================
2017-06-26 20:42 - 2017-06-26 21:31 - 000000093 _____ () C:\Users\Dominik\AppData\Local\Temp\2736d40cf28af75310950a0112cdcd01.dll
2017-06-26 20:42 - 2017-06-26 20:42 - 000000180 _____ () C:\Users\Dominik\AppData\Local\Temp\6699d3ee8dd9cf775caae782c8f44f03.dll
2017-10-07 12:16 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\AppData\Local\Temp\Gw2.exe
2017-02-21 16:32 - 2017-02-10 00:39 - 000868152 _____ (NVIDIA Corporation) C:\Users\Dominik\AppData\Local\Temp\nvSCPAPI64.dll
2017-06-24 18:43 - 2017-02-10 00:39 - 000352704 _____ (NVIDIA Corporation) C:\Users\Dominik\AppData\Local\Temp\nvStInst.exe
2017-07-06 21:28 - 2017-07-06 21:28 - 007469104 _____ (Gold Click Ltd ) C:\Users\Dominik\AppData\Local\Temp\offerpg3.exe
2017-05-20 17:16 - 2017-09-29 00:14 - 000192512 _____ () C:\Users\Dominik\AppData\Local\Temp\sfamcc00001.dll
2017-06-14 23:06 - 2017-06-26 23:22 - 000192512 _____ () C:\Users\Dominik\AppData\Local\Temp\sfamcc00002.dll
2007-02-27 16:08 - 2007-02-27 16:08 - 000456416 ____R (Macrovision Corporation) C:\Users\Dominik\AppData\Local\Temp\_isC242.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-10-20 11:56
==================== End of FRST.txt ============================
Log
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-10-2017
Ran by Dominik (administrator) on DOMINIK-PC (23-10-2017 14:59:40)
Running from C:\Users\Dominik\Downloads
Loaded Profiles: Dominik (Available Profiles: Dominik)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(Power Software Ltd) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Bitdefender) C:\Program Files\Bitdefender Antivirus Free\bdagent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Dominik\Downloads\FRST64 (1).exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [406664 2016-05-25] (Power Software Ltd)
HKU\S-1-5-21-707951698-1732677806-592134114-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd)
HKU\S-1-5-21-707951698-1732677806-592134114-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3101984 2017-10-17] (Valve Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{0AA83DC0-B66F-43FD-9DAD-56EA86565672}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-707951698-1732677806-592134114-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-707951698-1732677806-592134114-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-03-12] (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-12] (Oracle Corporation)
FireFox:
========
FF DefaultProfile: k63582xc.default
FF ProfilePath: C:\Users\Dominik\AppData\Roaming\Mozilla\Firefox\Profiles\k63582xc.default [2017-10-23]
FF NewTab: Mozilla\Firefox\Profiles\k63582xc.default -> about:newtab
FF Homepage: Mozilla\Firefox\Profiles\k63582xc.default -> about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_171.dll [2017-05-23] ()
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll [2017-05-23] ()
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-12] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-12] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-06-08] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-06-08] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-10-21] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-10-21] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-01] (Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default [2017-10-23]
CHR Extension: (Prezentace) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-21]
CHR Extension: (Dokumenty) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-21]
CHR Extension: (Disk Google) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-10-21]
CHR Extension: (YouTube) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-10-21]
CHR Extension: (Adobe Acrobat) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-10-21]
CHR Extension: (Tabulky) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-22]
CHR Extension: (AdBlock) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-21]
CHR Extension: (Gmail) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-10-21]
CHR Extension: (Chrome Media Router) - C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-21]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960 2017-08-07] (Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-06-08] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-06-21] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2120032 2017-09-25] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3000168 2017-09-25] (Electronic Arts)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2016-04-02] ()
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2017-10-03] ()
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1254736 2017-04-11] (Bitdefender)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH)
R2 updatesrv; C:\Program Files\Bitdefender Antivirus Free\updatesrv.exe [100392 2017-08-29] (Bitdefender)
R2 vsserv; C:\Program Files\Bitdefender Antivirus Free\vsserv.exe [100392 2017-08-29] (Bitdefender)
R2 vsservppl; C:\Program Files\Bitdefender Antivirus Free\vsservppl.exe [100392 2017-08-29] (Bitdefender)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
R0 atc; C:\Windows\System32\DRIVERS\atc.sys [1019880 2017-10-13] (BitDefender S.R.L. Bucharest, ROMANIA)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1763744 2017-08-29] (BitDefender)
S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [878072 2016-09-20] (BitDefender)
R0 BdDci; C:\Windows\System32\DRIVERS\bddci.sys [155624 2017-10-19] (Bitdefender)
R3 edrsensor; C:\Windows\System32\DRIVERS\edrsensor.sys [250504 2017-10-03] (BitDefender S.R.L. Bucharest, ROMANIA)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77440 2017-10-10] ()
R0 gzflt; C:\Windows\System32\drivers\gzflt.sys [187688 2017-07-24] (BitDefender LLC)
S3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus64.sys [261120 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
S3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [110016 2017-10-07] (Malwarebytes)
S3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [45504 2017-10-07] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [252232 2017-10-23] (Malwarebytes)
S3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [84256 2017-10-07] (Malwarebytes)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-06-21] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [48248 2017-06-21] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57976 2017-06-21] (NVIDIA Corporation)
S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [18768 2017-07-25] () [File not signed]
R2 trufos; C:\Windows\System32\drivers\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-10-21 13:26 - 2017-10-21 13:26 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-10-21 13:26 - 2017-10-21 13:26 - 000002255 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-10-21 13:25 - 2017-10-21 13:25 - 001130328 _____ (Google Inc.) C:\Users\Dominik\Downloads\ChromeSetup(2).exe
2017-10-21 13:25 - 2017-10-21 13:25 - 000003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-10-21 13:25 - 2017-10-21 13:25 - 000003256 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-10-20 23:38 - 2017-10-20 23:38 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Kite Games
2017-10-20 23:37 - 2017-10-20 23:37 - 000001710 _____ C:\Users\Public\Desktop\Sudden Strike 4.lnk
2017-10-20 22:08 - 2017-10-20 22:16 - 000000000 ____D C:\Users\Dominik\Downloads\Sudden Strike 4 v1.01.19357 (14463) [GOG]
2017-10-20 22:07 - 2017-10-20 22:07 - 000014523 _____ C:\Users\Dominik\Downloads\[CzT]Sudden_Strike_4_Battle_of_Kursk_DLC_v_1_01_19357_2017_.torrent
2017-10-19 20:55 - 2017-10-19 20:55 - 008250832 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_7.0.3.1 (1).exe
2017-10-19 10:38 - 2017-10-19 10:38 - 000155624 _____ (Bitdefender) C:\Windows\system32\Drivers\bddci.sys
2017-10-18 20:14 - 2017-10-18 20:34 - 000000000 ____D C:\Users\Dominik\Downloads\REC
2017-10-18 20:14 - 2017-10-18 20:14 - 000014796 _____ C:\Users\Dominik\Downloads\[CzT]REC_Rec_1_2_2007_2009_CZ_.torrent
2017-10-18 10:42 - 2017-10-23 09:59 - 000252232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2017-10-17 21:31 - 2017-10-17 21:32 - 1002364168 _____ C:\Users\Dominik\Downloads\Fatherland - Beta 8 - Empires.zip
2017-10-10 17:49 - 2017-10-10 18:26 - 936135380 _____ C:\Users\Dominik\Downloads\Leights-OPFOR-Pack-version-1.9.7z
2017-10-10 14:35 - 2017-10-10 16:32 - 2144548822 _____ C:\Users\Dominik\Downloads\Trpká úroda (2017) CZ titulky v obraze.avi
2017-10-10 12:12 - 2017-10-10 12:12 - 000003644 _____ C:\Windows\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2017-10-10 12:07 - 2017-10-10 12:07 - 008250832 _____ (Malwarebytes) C:\Users\Dominik\Downloads\adwcleaner_7.0.3.1.exe
2017-10-09 17:18 - 2017-10-09 17:18 - 000146432 _____ C:\Users\Dominik\Downloads\CUP-ACE3-Compatibility-Addon-Vehicles-version-1.9.0.7z
2017-10-09 13:23 - 2017-10-09 13:23 - 000020462 _____ C:\Users\Dominik\Downloads\CUP_Vehicles-1.9.1.zip.torrent
2017-10-09 11:53 - 2017-10-23 09:59 - 000003030 _____ C:\Windows\System32\Tasks\MSIAfterburner
2017-10-08 16:20 - 2017-10-08 16:20 - 000056572 _____ C:\Users\Dominik\Downloads\CUP_Terrains_Complete-1.3.0.zip.torrent
2017-10-07 12:17 - 2017-10-07 12:18 - 000000000 ____D C:\Program Files (x86)\Guild Wars 2
2017-10-07 12:17 - 2017-10-07 12:17 - 000000951 _____ C:\Users\Public\Desktop\Guild Wars 2.lnk
2017-10-07 12:17 - 2017-10-07 12:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2
2017-10-07 12:16 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64 (1).tmp
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 ____D C:\Users\Dominik\Downloads\bin64
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 _____ C:\Users\Dominik\Downloads\Gw2.tmp
2017-10-07 12:16 - 2017-10-07 12:16 - 000000000 _____ C:\Users\Dominik\Downloads\Gw2.dat
2017-10-07 12:15 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64 (1).exe
2017-10-06 14:34 - 2017-10-06 14:34 - 000451001 _____ C:\Users\Dominik\Downloads\CBA_A3_v3.4.1.zip
2017-10-06 11:13 - 2017-10-06 11:13 - 000001082 _____ C:\Users\Dominik\Desktop\Arma 3 Laws of War.lnk
2017-10-06 11:13 - 2017-10-06 11:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arma 3 Laws of War
2017-10-06 11:02 - 2017-10-10 18:30 - 000000000 ____D C:\Program Files (x86)\Arma 3 Laws of War
2017-10-06 10:47 - 2017-09-07 21:39 - 2111537152 _____ C:\codex-arma.3.laws.of.war.iso
2017-10-05 18:04 - 2017-10-05 18:04 - 002012413 _____ C:\Users\Dominik\Downloads\[CzT]Arma_3_Laws_of_War_2017_.torrent
2017-10-04 23:06 - 2017-10-07 12:03 - 000084256 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-10-04 23:06 - 2017-10-07 12:03 - 000045504 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-10-04 14:26 - 2017-10-04 14:26 - 000148636 _____ C:\Users\Dominik\Downloads\[CzT]Metal_Gear_Solid_V_The_Phantom_Pain_2015_CZ_.torrent
2017-10-03 18:56 - 2017-10-03 18:56 - 029340840 _____ (ArenaNet) C:\Users\Dominik\Downloads\Gw2Setup-64.exe
2017-10-02 19:01 - 2017-10-02 19:01 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Io Interactive
2017-10-01 17:48 - 2017-10-23 09:59 - 000000000 ____D C:\Program Files (x86)\Steam
2017-10-01 17:48 - 2017-10-01 17:48 - 001446792 _____ C:\Users\Dominik\Downloads\SteamSetup (2).exe
2017-10-01 17:48 - 2017-10-01 17:48 - 000000963 _____ C:\Users\Public\Desktop\Steam.lnk
2017-10-01 17:48 - 2017-10-01 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2017-09-26 14:16 - 2017-09-26 14:16 - 000233382 _____ C:\Users\Dominik\Downloads\[CzT]Dragon_Age_Inquisition_Deluxe_Edition_v1_11_2014_.torrent
2017-09-25 19:26 - 2017-09-25 19:26 - 000000000 ____D C:\Users\Dominik\AppData\Local\HellbladeGame
2017-09-25 19:26 - 2017-09-25 19:26 - 000000000 ____D C:\Users\Dominik\AppData\Local\GOG.com
2017-09-25 19:13 - 2017-09-25 19:13 - 000002269 _____ C:\Users\Public\Desktop\Hellblade - Senua's Sacrifice.lnk
2017-09-25 19:13 - 2017-09-25 19:13 - 000000000 ____D C:\Windows\SysWOW64\GOG.com
2017-09-25 19:13 - 2017-09-25 19:13 - 000000000 ____D C:\423a84e76e3c6b37d51afb
2017-09-25 16:01 - 2017-09-25 16:01 - 000035617 _____ C:\Users\Dominik\Downloads\[CzT]Hellblade_Senua_s_Sacrifice_v_1_02_2017_.torrent
2017-09-25 16:00 - 2017-09-25 16:00 - 000035535 _____ C:\Users\Dominik\Downloads\[CzT]Hellblade_Senua_s_Sacrifice_v_1_01_1_2017_.torrent
2017-09-25 15:56 - 2017-09-25 15:56 - 000839833 _____ C:\Users\Dominik\Downloads\hellblade_cz_v10.zip
2017-09-24 21:43 - 2017-09-24 21:43 - 000060079 _____ C:\Users\Dominik\Downloads\zivotopis (1).pdf
2017-09-24 17:21 - 2017-09-24 17:21 - 000021849 _____ C:\Users\Dominik\Downloads\[CzT]Tajny_zivot_mazlicku_The_Secret_Life_of_Pets_2016_CZ_SK_EN_720pHD_.torrent
2017-09-24 15:50 - 2017-09-24 15:50 - 000025034 _____ C:\Users\Dominik\Downloads\[CzT]Pirati_z_Karibiku_Salazarova_pomsta_Pirates_of_the_Caribbean_Dead_Men_Tell_No_Tales_2017_CZ_EN_WebRip_1080p_.torrent
2017-09-23 15:40 - 2017-10-07 12:03 - 000110016 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-09-23 15:40 - 2017-09-23 15:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-10-23 15:00 - 2017-02-02 15:00 - 000016208 _____ C:\Users\Dominik\Downloads\FRST.txt
2017-10-23 14:59 - 2017-06-07 17:10 - 000000000 ____D C:\Program Files\Bitdefender Antivirus Free
2017-10-23 14:59 - 2017-02-02 14:59 - 000000000 ____D C:\FRST
2017-10-23 14:58 - 2017-06-07 17:07 - 000000000 ____D C:\Program Files\Bitdefender Agent
2017-10-23 14:58 - 2016-11-19 14:32 - 000000000 ____D C:\Users\Dominik\AppData\LocalLow\Mozilla
2017-10-23 14:57 - 2017-05-20 13:37 - 000000000 ____D C:\Users\Dominik\Downloads\FRST-OlderVersion
2017-10-23 14:57 - 2017-04-23 12:25 - 002402816 _____ (Farbar) C:\Users\Dominik\Downloads\FRST64 (1).exe
2017-10-23 12:25 - 2015-10-29 19:45 - 000000000 ____D C:\ProgramData\NVIDIA
2017-10-23 12:22 - 2016-11-18 12:15 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-10-23 12:22 - 2015-09-27 22:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-10-23 10:14 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-10-23 10:14 - 2009-07-14 06:45 - 000021872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-10-23 09:58 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-10-23 01:26 - 2017-04-03 00:34 - 000001532 _____ C:\Users\Dominik\Desktop\Los Angeles.txt
2017-10-21 13:26 - 2015-09-15 17:05 - 000000000 ____D C:\Users\Dominik\AppData\Local\Google
2017-10-21 13:26 - 2015-09-15 17:05 - 000000000 ____D C:\Program Files (x86)\Google
2017-10-20 23:38 - 2016-10-16 16:02 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\uTorrent
2017-10-20 23:37 - 2015-10-04 22:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2017-10-20 23:32 - 2015-12-13 21:39 - 000000000 ____D C:\GOG Games
2017-10-19 20:55 - 2017-02-09 01:22 - 000000000 ____D C:\AdwCleaner
2017-10-19 19:44 - 2015-10-22 15:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\Deployment
2017-10-19 19:44 - 2015-10-22 15:15 - 000000000 ____D C:\Users\Dominik\AppData\Local\Apps\2.0
2017-10-19 19:41 - 2015-09-15 16:23 - 000001393 _____ C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2017-10-19 01:15 - 2015-09-19 20:01 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\vlc
2017-10-17 19:57 - 2015-11-19 22:51 - 000000000 ____D C:\Darkest Hour 1.03
2017-10-14 20:40 - 2015-12-13 22:19 - 000000000 ____D C:\Users\Dominik\Documents\The Witcher 3
2017-10-13 10:32 - 2017-06-24 13:08 - 001019880 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\atc.sys
2017-10-10 19:03 - 2016-03-12 17:03 - 000000000 ____D C:\Users\Dominik\AppData\Local\Arma 3
2017-10-10 00:02 - 2017-05-21 15:39 - 000077440 _____ C:\Windows\system32\Drivers\mbae64.sys
2017-10-08 16:10 - 2016-08-04 20:40 - 000000000 ____D C:\Users\Dominik\AppData\Local\CrashDumps
2017-10-08 15:06 - 2015-09-25 15:37 - 000000000 ____D C:\ProgramData\Origin
2017-10-08 14:59 - 2016-08-31 14:08 - 000000000 ____D C:\Users\Dominik\AppData\Local\ElevatedDiagnostics
2017-10-08 12:49 - 2016-10-14 17:34 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2017-10-08 12:49 - 2015-10-12 19:19 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.xtr
2017-10-08 12:49 - 2015-09-25 17:42 - 000280904 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2017-10-08 12:48 - 2015-09-25 15:39 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Origin
2017-10-08 01:30 - 2017-05-14 23:21 - 000000270 _____ C:\Users\Dominik\Desktop\Kroměříž.txt
2017-10-07 23:43 - 2017-01-20 02:09 - 000001407 _____ C:\Users\Dominik\Desktop\Nový textový dokument.txt
2017-10-07 21:11 - 2015-09-25 16:46 - 000000000 ____D C:\Program Files (x86)\Origin Games
2017-10-07 20:33 - 2016-08-30 12:44 - 000000000 ____D C:\ProgramData\Package Cache
2017-10-07 20:04 - 2015-09-25 17:43 - 000001231 _____ C:\Users\Public\Desktop\Battlefield 4.lnk
2017-10-07 17:43 - 2017-04-23 20:23 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2017-10-07 14:51 - 2015-09-25 15:37 - 000000000 ____D C:\Program Files (x86)\Origin
2017-10-07 12:18 - 2015-10-30 20:21 - 000000000 ____D C:\Users\Dominik\AppData\Roaming\Guild Wars 2
2017-10-03 19:19 - 2016-10-14 17:34 - 000076152 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2017-10-03 10:53 - 2017-06-07 17:11 - 000250504 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\edrsensor.sys
2017-09-29 00:14 - 2015-09-27 20:38 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2017-09-27 16:32 - 2015-10-21 20:28 - 000007602 _____ C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg
2017-09-25 19:26 - 2016-11-13 18:09 - 000000000 ____D C:\Users\Dominik\AppData\Local\UnrealEngine
2017-09-23 15:40 - 2017-05-21 15:39 - 000001867 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
==================== Files in the root of some directories =======
2016-09-04 22:01 - 2016-09-04 22:07 - 000000000 _____ () C:\Program Files (x86)\ToDownloadBase.db
2016-02-23 18:32 - 2016-02-23 18:32 - 000000913 _____ () C:\Users\Dominik\AppData\Local\recently-used.xbel
2015-10-21 20:28 - 2017-09-27 16:32 - 000007602 _____ () C:\Users\Dominik\AppData\Local\Resmon.ResmonCfg
2016-10-14 17:37 - 2016-10-14 17:37 - 000000000 ___SH () C:\ProgramData\.rdata
2017-05-29 21:19 - 2017-05-29 21:19 - 000037824 _____ () C:\ProgramData\1496085544.bdinstall.bin
2017-05-29 21:21 - 2017-05-29 21:21 - 000097381 _____ () C:\ProgramData\1496085552.bdinstall.bin
2017-06-07 17:07 - 2017-06-07 17:07 - 000046889 _____ () C:\ProgramData\agent.1496848048.bdinstall.bin
2017-06-15 07:39 - 2017-06-15 07:39 - 000030967 _____ () C:\ProgramData\agent.update.1497505170.bdinstall.bin
Some files in TEMP:
====================
2017-06-26 20:42 - 2017-06-26 21:31 - 000000093 _____ () C:\Users\Dominik\AppData\Local\Temp\2736d40cf28af75310950a0112cdcd01.dll
2017-06-26 20:42 - 2017-06-26 20:42 - 000000180 _____ () C:\Users\Dominik\AppData\Local\Temp\6699d3ee8dd9cf775caae782c8f44f03.dll
2017-10-07 12:16 - 2017-10-07 12:16 - 032826536 _____ (ArenaNet) C:\Users\Dominik\AppData\Local\Temp\Gw2.exe
2017-02-21 16:32 - 2017-02-10 00:39 - 000868152 _____ (NVIDIA Corporation) C:\Users\Dominik\AppData\Local\Temp\nvSCPAPI64.dll
2017-06-24 18:43 - 2017-02-10 00:39 - 000352704 _____ (NVIDIA Corporation) C:\Users\Dominik\AppData\Local\Temp\nvStInst.exe
2017-07-06 21:28 - 2017-07-06 21:28 - 007469104 _____ (Gold Click Ltd ) C:\Users\Dominik\AppData\Local\Temp\offerpg3.exe
2017-05-20 17:16 - 2017-09-29 00:14 - 000192512 _____ () C:\Users\Dominik\AppData\Local\Temp\sfamcc00001.dll
2017-06-14 23:06 - 2017-06-26 23:22 - 000192512 _____ () C:\Users\Dominik\AppData\Local\Temp\sfamcc00002.dll
2007-02-27 16:08 - 2007-02-27 16:08 - 000456416 ____R (Macrovision Corporation) C:\Users\Dominik\AppData\Local\Temp\_isC242.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-10-20 11:56
==================== End of FRST.txt ============================