Pc je pomalý??
viewtopic.php?f=70&t=5119
Pc je pomalý.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
-
- Level 1.5
- Příspěvky: 141
- Registrován: květen 15
- Bydliště: Chodov u Karlových Varů
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
Prominte ze jsem to založil 2x tohle jsem udělal abych sem rovnou dal Log. Chtěl jsem tamten topic uzamknout ale zapomel jsem na to. Omlouvám se :)
- jerabina
- člen Security týmu
-
Level 6
- Příspěvky: 3647
- Registrován: březen 13
- Bydliště: Litoměřice
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
Návod na fixnutí najdeš zde: http://www.pc-help.cz/viewtopic.php?f=70&t=5119 bod 6)
Psal jsi, že máš zpomalený počítač, tak se ptáme, jestli je to lepší ..
Psal jsi, že máš zpomalený počítač, tak se ptáme, jestli je to lepší ..
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
-
- Level 1.5
- Příspěvky: 141
- Registrován: květen 15
- Bydliště: Chodov u Karlových Varů
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
Jako jo zdá se že je to lepší ale ještě to musím fixnout
-
- Level 1.5
- Příspěvky: 141
- Registrován: květen 15
- Bydliště: Chodov u Karlových Varů
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
DelFix: # DelFix v1.010 - Logfile created 11/06/2015 at 15:22:07
# Updated 26/04/2015 by Xplode
# Username : gamers - GAMERS-PC
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
~ Removing disinfection tools ...
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\RegBackup
Deleted : C:\log.txt
Deleted : C:\zoek-results.log
Deleted : C:\Users\gamers\Downloads\TFC.exe
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis
~ Cleaning system restore ...
Deleted : RP #449 [Removed League of Legends | 06/10/2015 16:23:13]
Deleted : RP #450 [zoek.exe restore point | 06/10/2015 19:02:44]
Deleted : RP #451 [Windows Update | 06/11/2015 12:00:22]
New restore point created !
########## - EOF - ##########
# Updated 26/04/2015 by Xplode
# Username : gamers - GAMERS-PC
# Operating System : Windows 7 Home Premium Service Pack 1 (32 bits)
~ Removing disinfection tools ...
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\RegBackup
Deleted : C:\log.txt
Deleted : C:\zoek-results.log
Deleted : C:\Users\gamers\Downloads\TFC.exe
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis
~ Cleaning system restore ...
Deleted : RP #449 [Removed League of Legends | 06/10/2015 16:23:13]
Deleted : RP #450 [zoek.exe restore point | 06/10/2015 19:02:44]
Deleted : RP #451 [Windows Update | 06/11/2015 12:00:22]
New restore point created !
########## - EOF - ##########
-
- Level 1.5
- Příspěvky: 141
- Registrován: květen 15
- Bydliště: Chodov u Karlových Varů
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
Je to lepší a hlavně mi to aspoň trochu uvolnilo disk :)
- jerabina
- člen Security týmu
-
Level 6
- Příspěvky: 3647
- Registrován: březen 13
- Bydliště: Litoměřice
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
Chceš to ještě zkusit doladit?
Pokud ANO:
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit Farbar Recovery Scan Tool (FRST)
32bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
64bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
a ulož jej na plochu. ,pak spusť FRST jako správce
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Pokud NE:
Můžeš to označit za vyřešené zelenou "fajfkou".
Pokud ANO:
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit Farbar Recovery Scan Tool (FRST)
32bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
64bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
a ulož jej na plochu. ,pak spusť FRST jako správce
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Pokud NE:
Můžeš to označit za vyřešené zelenou "fajfkou".
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
-
- Level 1.5
- Příspěvky: 141
- Registrován: květen 15
- Bydliště: Chodov u Karlových Varů
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
FEST Log: Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 08-06-2015
Ran by gamers (administrator) on GAMERS-PC on 11-06-2015 17:37:41
Running from C:\Users\gamers\Desktop
Loaded Profiles: gamers (Available Profiles: gamers)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
() C:\ProgramData\DatacardService\HWDeviceService.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
() C:\Program Files\MSI Afterburner\MSIAfterburner.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Razer Inc.) C:\Program Files\Razer\Synapse\RzSynapse.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files\Gaming Keyboard\Monitor.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files\Bloody5\Bloody5\Bloody5.exe
() C:\Program Files\Gaming Keyboard\OSD.exe
() C:\Windows\System32\PnkBstrA.exe
(Razer Inc.) C:\Program Files\Razer\Razer Game Booster\RzKLService.exe
(A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9398888 2010-07-28] (Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-11] (Avast Software s.r.o.)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Razer Synapse] => C:\Program Files\Razer\Synapse\RzSynapse.exe [585560 2014-06-23] (Razer Inc.)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\Run: [RazerGameBooster] => C:\Program Files\Razer\Razer Game Booster\RazerGameBooster.exe [61152 2014-02-25] (Razer Inc.)
HKLM\...\Run: [Gaming Keyboard] => C:\Program Files\Gaming Keyboard\Monitor.exe [479232 2014-01-16] ()
HKLM\...\Run: [Live Update] => C:\Program Files\MSI\Live Update\Live Update.exe [3450536 2015-05-04] (Micro-Star INT'L CO., LTD.)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [LaunchList] => C:\Program Files\Pinnacle\Studio 11\LaunchList2.exe [145496 2007-03-21] (Pinnacle Systems)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [ASRockIES] => [X]
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [ASRockOCTuner] => [X]
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [22041192 2014-08-27] (Skype Technologies S.A.)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [Bloody2] => C:\Program Files\Bloody5\Bloody5\Bloody5.exe [18905088 2015-02-13] ()
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6369048 2015-05-08] (Piriform Ltd)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: D - D:\ASRSetup.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: E - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: I - I:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {286d836e-b729-11e2-8da1-806e6f6e6963} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {34004fc6-c39f-11e2-8e75-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {5a59687a-43e1-11e4-a848-bc5ff4c3f641} - J:\SETUP.EXE
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {62701dfc-cd0c-11e2-ba92-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {86d63a5d-b708-11e2-8dea-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {a8b9ea6f-c2ce-11e2-8e5d-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {b3464e58-882c-11e4-892f-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {b3464e83-882c-11e4-892f-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {b817626e-56b8-11e4-94b6-bc5ff4c3f641} - K:\USBAutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {d3d60ca9-4015-11e4-a1c2-bc5ff4c3f641} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {f880b336-401a-11e4-a253-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {f880b342-401a-11e4-a253-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {f880b34c-401a-11e4-a253-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\avastSS.scr [43112 2015-04-27] (Avast Software s.r.o.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-05-25] (Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\system32\Macromed\Flash\FlashUtil32_14_0_0_145_ActiveX.exe -update activex
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll [2015-04-15] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll [2015-04-15] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll [2015-04-15] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-04-27] (Avast Software s.r.o.)
BootExecute: autocheck autochk * SmartDefragBootTime.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {23352B60-4F79-4D47-A986-1CAB42DB4AEB} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {25AC65E2-E0A3-4EF5-B748-4DF5B78B37F0} URL = http://www.firmy.cz/phr/{searchTerms}?sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {261EA39A-3656-4E0C-8395-D0BA915BBD0A} URL = http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {4187F0FC-AF41-4E4B-AE67-84C8FD35A0AE} URL = http://terra.im/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {713E0064-558F-4AF4-8A92-A10909AEF6DF} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {92BAC1FD-0E27-465F-B6C6-ACEF8099455C} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {ADBF7D0B-8DDB-4B88-8370-716876440C0A} URL = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
Toolbar: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} http://www.battlefieldheroes.com/static ... .203.0.cab
DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/stati ... 0.96.0.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-06-10] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1168638.dll [2012-10-04] (Adobe Systems, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-10-14] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-10-14] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-05-19] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation)
FF Plugin: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2014-12-01] (Nexon)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-11-12] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-11-12] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin: @VideoDownloadConverter_ScriptHelper.com/Plugin -> C:\Program Files\VideoDownloadConverter\npVDCPlugin.dll No File
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll No File
FF Plugin HKU\S-1-5-21-3288948882-2604745948-3918771127-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\gamers\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin HKU\S-1-5-21-3288948882-2604745948-3918771127-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\gamers\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3288948882-2604745948-3918771127-1001: ubisoft.com/uplaypc -> C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-05-19] (Microsoft Corporation)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-01-29]
Chrome:
=======
CHR Profile: C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-10]
CHR Extension: (Google Docs) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-10]
CHR Extension: (Google Drive) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-10]
CHR Extension: (YouTube) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-10]
CHR Extension: (Google Search) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-10]
CHR Extension: (Google Sheets) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-10]
CHR Extension: (Netpanel study) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl [2014-10-31]
CHR Extension: (Skype Click to Call) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-06-10]
CHR Extension: (Google Wallet) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-08]
CHR Extension: (WallPepper ВКонтакте) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\pepjgkdpkihjnbdaggonbpphlfkbhdli [2015-06-10]
CHR Extension: (Gmail) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-10]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-17]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
CHR HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kegdldmohomdaelnepdpbkdhfemobdgl] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pepjgkdpkihjnbdaggonbpphlfkbhdli] - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Extensions_packages\pepjgkdpkihjnbdaggonbpphlfkbhdli.crx [2014-10-06]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-27] (Avast Software s.r.o.)
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
S3 Desura Install Service; C:\Program Files\Common Files\Desura\desura_service.exe [1051088 2014-11-18] (Desura Net Pty Ltd)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915784 2015-01-16] (NVIDIA Corporation)
R2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe [271712 2011-03-14] ()
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 MSI_LiveUpdate_Service; C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe [1736872 2015-04-29] (Micro-Star INT'L CO., LTD.)
S3 npggsvc; C:\Windows\system32\GameMon.des [3191392 2014-05-15] (INCA Internet Co., Ltd.)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1706312 2015-01-16] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19775816 2015-01-16] (NVIDIA Corporation)
S2 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [File not signed]
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2014-09-11] ()
R2 RzKLService; C:\Program Files\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.)
R2 RzMaelstromVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [3672576 2014-06-09] (A-Volute) [File not signed]
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27768 2014-04-16] (VIA Technologies, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S2 AdvancedSystemCareService8; C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [X]
S2 O2 Internet. RunOuc; C:\Program Files\O2 Internet\UpdateDog\ouc.exe [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 adusbser; C:\Windows\System32\DRIVERS\adusbser.sys [106880 2009-11-06] (AnyDATA.NET INC.)
R1 AsrAppCharger; C:\Windows\System32\DRIVERS\AsrAppCharger.sys [13832 2010-06-11] (Windows (R) Win 7 DDK provider)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-04-27] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [74976 2015-04-27] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-04-27] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-04-27] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [787760 2015-04-27] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427992 2015-04-27] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-04-27] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [209048 2015-04-27] ()
S3 AVerA706; C:\Windows\System32\DRIVERS\AVerA706.sys [1169920 2009-06-10] (AVerMedia TECHNOLOGIES, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-09-24] (Disc Soft Ltd)
R3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
S3 huawei_cdcacm; C:\Windows\System32\DRIVERS\ew_jucdcacm.sys [97408 2013-01-25] (Huawei Technologies Co., Ltd.)
S3 huawei_ext_ctrl; C:\Windows\System32\DRIVERS\ew_juextctrl.sys [27776 2013-01-23] (Huawei Technologies Co., Ltd.)
S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [207360 2013-02-17] (Huawei Technologies Co., Ltd.)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2007-01-04] (Pinnacle Systems GmbH)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation)
R3 NTIOLib_1_0_4; C:\Program Files\MSI\Live Update\NTIOLib.sys [7680 2010-10-20] (MSI) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18760 2015-01-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [32912 2014-11-22] (NVIDIA Corporation)
R3 RTCore32; C:\Program Files\MSI Afterburner\RTCore32.sys [5632 2015-04-24] () [File not signed]
R3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [25088 2014-05-23] (Windows (R) Win 7 DDK provider)
S3 Ser2plx86; C:\Windows\System32\DRIVERS\ser2pl.sys [139776 2013-10-25] (Prolific Technology Inc.)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [18624 2014-06-04] (IObit)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-06-10] ()
S3 usbbus; C:\Windows\System32\DRIVERS\lgusbbus.sys [13056 2008-11-19] (LG Electronics Inc.)
S3 UsbDiag; C:\Windows\System32\DRIVERS\lgusbdiag.sys [19968 2008-11-19] (LG Electronics Inc.)
S3 USBModem; C:\Windows\System32\DRIVERS\lgusbmodem.sys [24832 2008-11-19] (LG Electronics Inc.)
R3 VIAHdAudAddService; C:\Windows\System32\drivers\viahduaa.sys [564912 2014-04-16] (VIA Technologies, Inc.)
S3 AIDA64Driver; \??\C:\Program Files\FinalWire\AIDA64 Extreme\kerneld.x32 [X]
S3 AsrCDDrv; \??\C:\Windows\system32\Drivers\AsrCDDrv.sys [X]
S3 clwvd; system32\DRIVERS\clwvd.sys [X]
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
S3 IesDrv; \??\C:\Windows\system32\Drivers\IesDrv.sys [X]
S3 MSI_MSIBIOS_010507; \??\C:\Program Files\MSI\Live Update 5\msibios32_100507.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-06-11 17:37 - 2015-06-11 17:39 - 00024492 _____ C:\Users\gamers\Desktop\FRST.txt
2015-06-11 17:36 - 2015-06-11 17:37 - 00000000 ____D C:\FRST
2015-06-11 17:34 - 2015-06-11 17:35 - 01147904 _____ (Farbar) C:\Users\gamers\Desktop\FRST.exe
2015-06-11 15:22 - 2015-06-11 15:23 - 00000780 _____ C:\DelFix.txt
2015-06-11 15:12 - 2015-06-11 15:12 - 00000929 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-06-11 15:12 - 2015-06-11 15:12 - 00000000 ____D C:\Program Files\CCleaner
2015-06-11 15:09 - 2015-06-11 15:10 - 06549184 _____ (Piriform Ltd) C:\Users\gamers\Downloads\ccsetup506.exe
2015-06-11 14:18 - 2015-06-11 14:18 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-06-10 21:34 - 2015-06-10 21:34 - 00000000 ____D C:\ProgramData\DAEMON Tools Pro
2015-06-10 21:29 - 2015-06-10 21:00 - 00024064 _____ C:\Windows\zoek-delete.exe
2015-06-10 20:05 - 2015-06-10 20:35 - 00035064 _____ C:\Windows\system32\Drivers\TrueSight.sys
2015-06-10 20:05 - 2015-06-10 20:30 - 00000000 ____D C:\ProgramData\RogueKiller
2015-06-10 19:51 - 2015-06-10 19:51 - 00000207 _____ C:\Windows\tweaking.com-regbackup-GAMERS-PC-Windows-7-Home-Premium-(32-bit).dat
2015-06-10 19:44 - 2015-06-10 19:44 - 00052440 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\feekptv.sys
2015-06-10 19:35 - 2015-06-10 19:35 - 00125712 _____ C:\Users\gamers\AppData\Local\GDIPFONTCACHEV1.DAT
2015-06-10 16:53 - 2015-06-10 16:53 - 18169520 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerInstaller.exe
2015-06-10 16:47 - 2015-06-10 19:11 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-06-10 16:46 - 2015-06-10 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-06-10 16:46 - 2015-06-10 16:46 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-06-10 16:46 - 2015-06-10 16:46 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-06-10 16:46 - 2015-04-14 09:37 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-06-10 16:46 - 2015-04-14 09:37 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-06-10 16:46 - 2015-04-14 09:37 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-06-10 16:44 - 2015-06-10 16:44 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\gamers\Downloads\mbam-setup-2.1.6.1022.exe
2015-06-10 16:25 - 2015-06-10 16:25 - 00000000 _____ C:\asc_rdflag
2015-06-04 18:51 - 2015-06-04 18:51 - 03989440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 03934144 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 01307648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-06-04 18:51 - 2015-06-04 18:51 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-06-04 18:51 - 2015-06-04 18:51 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 02937344 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 02045952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-06-04 18:49 - 2015-06-04 18:49 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-06-04 18:49 - 2015-06-04 18:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-05-28 18:09 - 2015-06-03 18:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TPFanControl
2015-05-28 18:09 - 2006-10-13 03:21 - 00020512 _____ (EnTech Taiwan) C:\Windows\system32\Drivers\TVicPort.sys
2015-05-28 18:09 - 2005-03-30 12:11 - 00053248 _____ (EnTech Taiwan) C:\Windows\system\TVicPort.dll
2015-05-28 17:00 - 2015-05-28 17:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2015-05-28 17:00 - 2015-05-28 17:00 - 00000000 ____D C:\MSI
2015-05-28 17:00 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2015-05-28 16:58 - 2015-05-28 17:00 - 00000000 ____D C:\Program Files\MSI
2015-05-28 16:11 - 2015-05-28 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Kombustor 2.5
2015-05-28 16:11 - 2015-05-28 16:11 - 00000000 ____D C:\Program Files\MSI Kombustor 2.5
2015-05-28 15:43 - 2015-06-11 13:25 - 00000000 ____D C:\Program Files\RivaTuner Statistics Server
2015-05-28 15:39 - 2015-05-28 15:40 - 36270420 _____ C:\Users\gamers\Downloads\MSIAfterburnerSetup.zip
2015-05-28 15:35 - 2015-05-28 15:35 - 00000000 ____D C:\Users\gamers\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2015-05-28 15:34 - 2015-06-10 19:09 - 00000000 ____D C:\Program Files\MSI Afterburner
2015-05-25 15:15 - 2015-05-25 15:15 - 00054656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-05-18 20:53 - 2015-04-22 03:48 - 00342736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-18 20:53 - 2015-04-21 18:25 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-05-18 20:53 - 2015-04-21 18:25 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-05-18 20:53 - 2015-04-21 18:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-18 20:53 - 2015-04-21 18:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-18 20:53 - 2015-04-21 18:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-05-18 20:53 - 2015-04-21 18:10 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-05-18 20:53 - 2015-04-21 18:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-18 20:53 - 2015-04-21 18:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-05-18 20:53 - 2015-04-21 18:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-18 20:53 - 2015-04-21 18:03 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-05-18 20:53 - 2015-04-21 18:02 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-05-18 20:53 - 2015-04-21 18:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-18 20:53 - 2015-04-21 17:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-18 20:53 - 2015-04-21 17:58 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-05-18 20:53 - 2015-04-21 17:58 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-05-18 20:53 - 2015-04-21 17:57 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-05-18 20:53 - 2015-04-21 17:51 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-05-18 20:53 - 2015-04-21 17:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-05-18 20:53 - 2015-04-21 17:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-05-18 20:53 - 2015-04-21 17:39 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-05-18 20:53 - 2015-04-21 17:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-18 20:53 - 2015-04-21 17:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-18 20:53 - 2015-04-21 17:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-18 20:53 - 2015-04-21 17:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-18 20:53 - 2015-04-21 17:26 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-18 20:53 - 2015-04-21 17:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-18 20:53 - 2015-04-21 17:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-05-18 20:53 - 2015-04-21 17:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-18 20:53 - 2015-04-21 17:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-18 20:53 - 2015-04-21 16:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-18 20:53 - 2015-04-21 16:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-18 20:47 - 2015-04-08 05:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-05-18 20:47 - 2015-04-08 05:14 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-05-18 15:02 - 2015-05-18 15:02 - 00000000 ____D C:\Users\gamers\Documents\Skype Voice Records
2015-05-18 15:02 - 2015-05-18 15:02 - 00000000 ____D C:\Users\gamers\Documents\Clownfish Avatars
2015-05-18 13:52 - 2015-05-18 13:52 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-18 13:51 - 2015-05-18 13:51 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-18 13:50 - 2015-05-18 13:50 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-18 13:48 - 2015-05-18 13:48 - 02382336 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-18 13:48 - 2015-05-18 13:48 - 01250816 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-18 13:48 - 2015-05-18 13:48 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-14 14:04 - 2015-05-14 14:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gaming Keyboard
2015-05-14 14:03 - 2015-05-14 14:03 - 00000000 ____D C:\Program Files\Gaming Keyboard
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-06-11 17:28 - 2013-01-29 16:21 - 00000000 ____D C:\Users\gamers\AppData\Roaming\Skype
2015-06-11 16:53 - 2013-01-30 17:12 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-06-11 16:47 - 2013-01-29 16:01 - 00000940 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-11 16:23 - 2013-01-29 15:53 - 01627884 _____ C:\Windows\WindowsUpdate.log
2015-06-11 16:00 - 2013-02-04 19:55 - 00000932 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001UA.job
2015-06-11 15:14 - 2014-12-16 22:48 - 00000000 ____D C:\Users\gamers\AppData\Roaming\uTorrent
2015-06-11 15:04 - 2014-06-05 18:28 - 00000000 ___RD C:\Users\gamers\Desktop\Programy
2015-06-11 14:18 - 2014-09-24 14:56 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-06-11 14:17 - 2014-09-24 14:41 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-06-11 14:11 - 2013-10-19 14:15 - 00000000 ____D C:\Windows\system32\MRT
2015-06-11 14:01 - 2013-10-19 14:15 - 136900096 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-06-11 13:39 - 2009-07-14 06:34 - 00022656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-06-11 13:39 - 2009-07-14 06:34 - 00022656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-06-11 13:26 - 2013-01-29 16:01 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-06-11 13:26 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-11 13:25 - 2013-10-16 14:19 - 00000000 ____D C:\ProgramData\NVIDIA
2015-06-10 22:37 - 2015-04-13 20:56 - 00000000 ____D C:\Program Files\VideoLAN
2015-06-10 22:36 - 2013-03-11 20:33 - 00000000 ____D C:\Program Files\Steam
2015-06-10 22:36 - 2013-01-29 16:00 - 00000000 ____D C:\Users\gamers\AppData\Local\Google
2015-06-10 22:36 - 2013-01-29 16:00 - 00000000 ____D C:\Program Files\Google
2015-06-10 21:31 - 2013-07-11 15:05 - 00000008 __RSH C:\Users\gamers\ntuser.pol
2015-06-10 21:31 - 2013-01-29 15:55 - 00000000 ____D C:\Users\gamers
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\Guest\AppData\Local\Google
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Google
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Comodo
2015-06-10 21:25 - 2014-05-21 18:42 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google
2015-06-10 21:25 - 2014-05-21 18:42 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo
2015-06-10 21:25 - 2009-07-14 04:37 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2015-06-10 19:00 - 2013-02-04 19:55 - 00000910 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001Core.job
2015-06-10 18:46 - 2014-11-18 22:43 - 00960512 ___SH C:\Users\gamers\Desktop\Thumbs.db
2015-06-10 18:31 - 2014-06-04 15:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual DJ
2015-06-10 18:30 - 2015-03-24 15:09 - 00000000 ____D C:\Program Files\NCH Software
2015-06-10 18:20 - 2014-01-27 15:35 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-06-10 18:19 - 2013-02-10 21:54 - 00000000 ____D C:\Program Files\Adobe
2015-06-10 18:19 - 2013-01-30 17:12 - 00000000 ____D C:\Users\gamers\AppData\Roaming\Adobe
2015-06-10 18:17 - 2013-01-30 20:43 - 00000000 ____D C:\ProgramData\IObit
2015-06-10 16:54 - 2013-01-30 17:12 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-06-10 16:54 - 2013-01-30 17:12 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-06-10 16:25 - 2015-04-21 16:27 - 64073728 _____ C:\Windows\system32\config\software.iodefrag
2015-06-10 16:25 - 2015-04-21 16:27 - 00364544 _____ C:\Windows\system32\config\default.iodefrag
2015-06-10 16:25 - 2015-04-21 16:27 - 00061440 _____ C:\Windows\system32\config\sam.iodefrag
2015-06-10 16:25 - 2015-04-21 16:27 - 00032768 _____ C:\Windows\system32\config\security.iodefrag
2015-06-10 16:25 - 2014-01-26 00:16 - 64073728 _____ C:\Windows\system32\config\software.iodefrag.bak
2015-06-10 16:25 - 2014-01-26 00:16 - 00364544 _____ C:\Windows\system32\config\default.iodefrag.bak
2015-06-10 16:25 - 2014-01-26 00:16 - 00061440 _____ C:\Windows\system32\config\sam.iodefrag.bak
2015-06-10 16:25 - 2014-01-26 00:16 - 00032768 _____ C:\Windows\system32\config\security.iodefrag.bak
2015-06-10 14:14 - 2013-10-18 13:11 - 64073728 _____ C:\Windows\system32\config\software.iobit
2015-06-10 14:14 - 2013-10-18 13:11 - 00364544 _____ C:\Windows\system32\config\default.iobit
2015-06-10 14:14 - 2013-10-18 13:11 - 00061440 _____ C:\Windows\system32\config\sam.iobit
2015-06-10 14:14 - 2013-10-18 13:11 - 00032768 _____ C:\Windows\system32\config\security.iobit
2015-06-10 13:59 - 2013-02-11 15:58 - 00000000 ____D C:\Users\gamers\AppData\Local\Adobe
2015-06-09 14:21 - 2014-01-22 15:15 - 42868736 _____ C:\Windows\system32\config\components.iobit
2015-06-09 14:00 - 2013-01-29 16:00 - 01613968 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-09 13:53 - 2009-07-14 06:53 - 00032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-28 18:09 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system
2015-05-28 15:43 - 2013-07-12 11:24 - 00000000 ____D C:\Windows\system32\directx
2015-05-27 18:31 - 2014-09-06 18:57 - 00000000 ___RD C:\Program Files\Skype
2015-05-27 16:24 - 2013-03-11 20:33 - 00000000 ____D C:\Program Files\Common Files\Steam
2015-05-20 20:57 - 2013-02-01 16:06 - 00000000 ____D C:\Users\gamers\AppData\Roaming\.minecraft
2015-05-19 15:11 - 2013-11-03 20:12 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-05-19 14:25 - 2009-07-14 04:04 - 00000615 _____ C:\Windows\win.ini
2015-05-19 14:24 - 2009-07-14 11:20 - 00000000 ____D C:\Program Files\Windows Journal
2015-05-19 14:21 - 2013-11-03 20:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-05-18 20:29 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2015-05-18 16:32 - 2009-07-14 06:33 - 00452544 _____ C:\Windows\system32\FNTCACHE.DAT
2015-05-18 16:10 - 2015-04-30 12:58 - 42868736 _____ C:\Windows\system32\config\components.iodefrag.bak
2015-05-18 15:11 - 2014-06-05 18:23 - 00000000 ___RD C:\Users\gamers\Desktop\Hry
2015-05-18 13:43 - 2015-03-27 13:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2015-05-14 14:03 - 2013-01-30 20:31 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
==================== Files in the root of some directories =======
2013-03-08 18:02 - 2014-09-07 13:03 - 0022328 _____ () C:\Users\gamers\AppData\Roaming\PnkBstrK.sys
2014-05-20 14:11 - 2014-05-20 14:11 - 0000094 _____ () C:\Users\gamers\AppData\Local\fusioncache.dat
2013-10-20 16:31 - 2014-11-14 15:40 - 0000024 _____ () C:\ProgramData\__FileUploader.log
Some files in TEMP:
====================
C:\Users\gamers\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp3jj5px.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-06-03 19:18
==================== End of log ============================
Ran by gamers (administrator) on GAMERS-PC on 11-06-2015 17:37:41
Running from C:\Users\gamers\Desktop
Loaded Profiles: gamers (Available Profiles: gamers)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
() C:\ProgramData\DatacardService\HWDeviceService.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
() C:\Program Files\MSI Afterburner\MSIAfterburner.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Razer Inc.) C:\Program Files\Razer\Synapse\RzSynapse.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files\Gaming Keyboard\Monitor.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files\Bloody5\Bloody5\Bloody5.exe
() C:\Program Files\Gaming Keyboard\OSD.exe
() C:\Windows\System32\PnkBstrA.exe
(Razer Inc.) C:\Program Files\Razer\Razer Game Booster\RzKLService.exe
(A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9398888 2010-07-28] (Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-11] (Avast Software s.r.o.)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Razer Synapse] => C:\Program Files\Razer\Synapse\RzSynapse.exe [585560 2014-06-23] (Razer Inc.)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\Run: [RazerGameBooster] => C:\Program Files\Razer\Razer Game Booster\RazerGameBooster.exe [61152 2014-02-25] (Razer Inc.)
HKLM\...\Run: [Gaming Keyboard] => C:\Program Files\Gaming Keyboard\Monitor.exe [479232 2014-01-16] ()
HKLM\...\Run: [Live Update] => C:\Program Files\MSI\Live Update\Live Update.exe [3450536 2015-05-04] (Micro-Star INT'L CO., LTD.)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [LaunchList] => C:\Program Files\Pinnacle\Studio 11\LaunchList2.exe [145496 2007-03-21] (Pinnacle Systems)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [ASRockIES] => [X]
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [ASRockOCTuner] => [X]
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [22041192 2014-08-27] (Skype Technologies S.A.)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [Bloody2] => C:\Program Files\Bloody5\Bloody5\Bloody5.exe [18905088 2015-02-13] ()
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6369048 2015-05-08] (Piriform Ltd)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: D - D:\ASRSetup.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: E - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: I - I:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {286d836e-b729-11e2-8da1-806e6f6e6963} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {34004fc6-c39f-11e2-8e75-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {5a59687a-43e1-11e4-a848-bc5ff4c3f641} - J:\SETUP.EXE
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {62701dfc-cd0c-11e2-ba92-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {86d63a5d-b708-11e2-8dea-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {a8b9ea6f-c2ce-11e2-8e5d-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {b3464e58-882c-11e4-892f-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {b3464e83-882c-11e4-892f-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {b817626e-56b8-11e4-94b6-bc5ff4c3f641} - K:\USBAutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {d3d60ca9-4015-11e4-a1c2-bc5ff4c3f641} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {f880b336-401a-11e4-a253-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {f880b342-401a-11e4-a253-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {f880b34c-401a-11e4-a253-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\avastSS.scr [43112 2015-04-27] (Avast Software s.r.o.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-05-25] (Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\system32\Macromed\Flash\FlashUtil32_14_0_0_145_ActiveX.exe -update activex
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll [2015-04-15] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll [2015-04-15] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll [2015-04-15] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-04-27] (Avast Software s.r.o.)
BootExecute: autocheck autochk * SmartDefragBootTime.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {23352B60-4F79-4D47-A986-1CAB42DB4AEB} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {25AC65E2-E0A3-4EF5-B748-4DF5B78B37F0} URL = http://www.firmy.cz/phr/{searchTerms}?sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {261EA39A-3656-4E0C-8395-D0BA915BBD0A} URL = http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {4187F0FC-AF41-4E4B-AE67-84C8FD35A0AE} URL = http://terra.im/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {713E0064-558F-4AF4-8A92-A10909AEF6DF} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {92BAC1FD-0E27-465F-B6C6-ACEF8099455C} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {ADBF7D0B-8DDB-4B88-8370-716876440C0A} URL = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
Toolbar: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} http://www.battlefieldheroes.com/static ... .203.0.cab
DPF: {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/stati ... 0.96.0.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-06-10] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1168638.dll [2012-10-04] (Adobe Systems, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-10-14] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-10-14] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-05-19] (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation)
FF Plugin: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2014-12-01] (Nexon)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-11-12] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-11-12] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin: @VideoDownloadConverter_ScriptHelper.com/Plugin -> C:\Program Files\VideoDownloadConverter\npVDCPlugin.dll No File
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll No File
FF Plugin HKU\S-1-5-21-3288948882-2604745948-3918771127-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\gamers\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin HKU\S-1-5-21-3288948882-2604745948-3918771127-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\gamers\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3288948882-2604745948-3918771127-1001: ubisoft.com/uplaypc -> C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-05-19] (Microsoft Corporation)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-01-29]
Chrome:
=======
CHR Profile: C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-10]
CHR Extension: (Google Docs) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-10]
CHR Extension: (Google Drive) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-10]
CHR Extension: (YouTube) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-10]
CHR Extension: (Google Search) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-10]
CHR Extension: (Google Sheets) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-10]
CHR Extension: (Netpanel study) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\kegdldmohomdaelnepdpbkdhfemobdgl [2014-10-31]
CHR Extension: (Skype Click to Call) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-06-10]
CHR Extension: (Google Wallet) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-08]
CHR Extension: (WallPepper ВКонтакте) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\pepjgkdpkihjnbdaggonbpphlfkbhdli [2015-06-10]
CHR Extension: (Gmail) - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-10]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-17]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
CHR HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kegdldmohomdaelnepdpbkdhfemobdgl] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pepjgkdpkihjnbdaggonbpphlfkbhdli] - C:\Users\gamers\AppData\Local\Google\Chrome\User Data\Extensions_packages\pepjgkdpkihjnbdaggonbpphlfkbhdli.crx [2014-10-06]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-27] (Avast Software s.r.o.)
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
S3 Desura Install Service; C:\Program Files\Common Files\Desura\desura_service.exe [1051088 2014-11-18] (Desura Net Pty Ltd)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915784 2015-01-16] (NVIDIA Corporation)
R2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe [271712 2011-03-14] ()
S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 MSI_LiveUpdate_Service; C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe [1736872 2015-04-29] (Micro-Star INT'L CO., LTD.)
S3 npggsvc; C:\Windows\system32\GameMon.des [3191392 2014-05-15] (INCA Internet Co., Ltd.)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1706312 2015-01-16] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19775816 2015-01-16] (NVIDIA Corporation)
S2 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [File not signed]
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2014-09-11] ()
R2 RzKLService; C:\Program Files\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.)
R2 RzMaelstromVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [3672576 2014-06-09] (A-Volute) [File not signed]
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27768 2014-04-16] (VIA Technologies, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S2 AdvancedSystemCareService8; C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [X]
S2 O2 Internet. RunOuc; C:\Program Files\O2 Internet\UpdateDog\ouc.exe [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 adusbser; C:\Windows\System32\DRIVERS\adusbser.sys [106880 2009-11-06] (AnyDATA.NET INC.)
R1 AsrAppCharger; C:\Windows\System32\DRIVERS\AsrAppCharger.sys [13832 2010-06-11] (Windows (R) Win 7 DDK provider)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-04-27] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [74976 2015-04-27] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-04-27] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-04-27] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [787760 2015-04-27] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427992 2015-04-27] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-04-27] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [209048 2015-04-27] ()
S3 AVerA706; C:\Windows\System32\DRIVERS\AVerA706.sys [1169920 2009-06-10] (AVerMedia TECHNOLOGIES, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-09-24] (Disc Soft Ltd)
R3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
S3 huawei_cdcacm; C:\Windows\System32\DRIVERS\ew_jucdcacm.sys [97408 2013-01-25] (Huawei Technologies Co., Ltd.)
S3 huawei_ext_ctrl; C:\Windows\System32\DRIVERS\ew_juextctrl.sys [27776 2013-01-23] (Huawei Technologies Co., Ltd.)
S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [207360 2013-02-17] (Huawei Technologies Co., Ltd.)
R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2007-01-04] (Pinnacle Systems GmbH)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation)
R3 NTIOLib_1_0_4; C:\Program Files\MSI\Live Update\NTIOLib.sys [7680 2010-10-20] (MSI) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18760 2015-01-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [32912 2014-11-22] (NVIDIA Corporation)
R3 RTCore32; C:\Program Files\MSI Afterburner\RTCore32.sys [5632 2015-04-24] () [File not signed]
R3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [25088 2014-05-23] (Windows (R) Win 7 DDK provider)
S3 Ser2plx86; C:\Windows\System32\DRIVERS\ser2pl.sys [139776 2013-10-25] (Prolific Technology Inc.)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [18624 2014-06-04] (IObit)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-06-10] ()
S3 usbbus; C:\Windows\System32\DRIVERS\lgusbbus.sys [13056 2008-11-19] (LG Electronics Inc.)
S3 UsbDiag; C:\Windows\System32\DRIVERS\lgusbdiag.sys [19968 2008-11-19] (LG Electronics Inc.)
S3 USBModem; C:\Windows\System32\DRIVERS\lgusbmodem.sys [24832 2008-11-19] (LG Electronics Inc.)
R3 VIAHdAudAddService; C:\Windows\System32\drivers\viahduaa.sys [564912 2014-04-16] (VIA Technologies, Inc.)
S3 AIDA64Driver; \??\C:\Program Files\FinalWire\AIDA64 Extreme\kerneld.x32 [X]
S3 AsrCDDrv; \??\C:\Windows\system32\Drivers\AsrCDDrv.sys [X]
S3 clwvd; system32\DRIVERS\clwvd.sys [X]
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
S3 IesDrv; \??\C:\Windows\system32\Drivers\IesDrv.sys [X]
S3 MSI_MSIBIOS_010507; \??\C:\Program Files\MSI\Live Update 5\msibios32_100507.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-06-11 17:37 - 2015-06-11 17:39 - 00024492 _____ C:\Users\gamers\Desktop\FRST.txt
2015-06-11 17:36 - 2015-06-11 17:37 - 00000000 ____D C:\FRST
2015-06-11 17:34 - 2015-06-11 17:35 - 01147904 _____ (Farbar) C:\Users\gamers\Desktop\FRST.exe
2015-06-11 15:22 - 2015-06-11 15:23 - 00000780 _____ C:\DelFix.txt
2015-06-11 15:12 - 2015-06-11 15:12 - 00000929 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-06-11 15:12 - 2015-06-11 15:12 - 00000000 ____D C:\Program Files\CCleaner
2015-06-11 15:09 - 2015-06-11 15:10 - 06549184 _____ (Piriform Ltd) C:\Users\gamers\Downloads\ccsetup506.exe
2015-06-11 14:18 - 2015-06-11 14:18 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-06-10 21:34 - 2015-06-10 21:34 - 00000000 ____D C:\ProgramData\DAEMON Tools Pro
2015-06-10 21:29 - 2015-06-10 21:00 - 00024064 _____ C:\Windows\zoek-delete.exe
2015-06-10 20:05 - 2015-06-10 20:35 - 00035064 _____ C:\Windows\system32\Drivers\TrueSight.sys
2015-06-10 20:05 - 2015-06-10 20:30 - 00000000 ____D C:\ProgramData\RogueKiller
2015-06-10 19:51 - 2015-06-10 19:51 - 00000207 _____ C:\Windows\tweaking.com-regbackup-GAMERS-PC-Windows-7-Home-Premium-(32-bit).dat
2015-06-10 19:44 - 2015-06-10 19:44 - 00052440 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\feekptv.sys
2015-06-10 19:35 - 2015-06-10 19:35 - 00125712 _____ C:\Users\gamers\AppData\Local\GDIPFONTCACHEV1.DAT
2015-06-10 16:53 - 2015-06-10 16:53 - 18169520 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerInstaller.exe
2015-06-10 16:47 - 2015-06-10 19:11 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-06-10 16:46 - 2015-06-10 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-06-10 16:46 - 2015-06-10 16:46 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-06-10 16:46 - 2015-06-10 16:46 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-06-10 16:46 - 2015-04-14 09:37 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-06-10 16:46 - 2015-04-14 09:37 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-06-10 16:46 - 2015-04-14 09:37 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-06-10 16:44 - 2015-06-10 16:44 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\gamers\Downloads\mbam-setup-2.1.6.1022.exe
2015-06-10 16:25 - 2015-06-10 16:25 - 00000000 _____ C:\asc_rdflag
2015-06-04 18:51 - 2015-06-04 18:51 - 03989440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 03934144 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 01307648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-06-04 18:51 - 2015-06-04 18:51 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-06-04 18:51 - 2015-06-04 18:51 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-06-04 18:51 - 2015-06-04 18:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-06-04 18:51 - 2015-06-04 18:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 02937344 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 02045952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-06-04 18:49 - 2015-06-04 18:49 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-06-04 18:49 - 2015-06-04 18:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-06-04 18:49 - 2015-06-04 18:49 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-05-28 18:09 - 2015-06-03 18:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TPFanControl
2015-05-28 18:09 - 2006-10-13 03:21 - 00020512 _____ (EnTech Taiwan) C:\Windows\system32\Drivers\TVicPort.sys
2015-05-28 18:09 - 2005-03-30 12:11 - 00053248 _____ (EnTech Taiwan) C:\Windows\system\TVicPort.dll
2015-05-28 17:00 - 2015-05-28 17:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2015-05-28 17:00 - 2015-05-28 17:00 - 00000000 ____D C:\MSI
2015-05-28 17:00 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2015-05-28 16:58 - 2015-05-28 17:00 - 00000000 ____D C:\Program Files\MSI
2015-05-28 16:11 - 2015-05-28 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Kombustor 2.5
2015-05-28 16:11 - 2015-05-28 16:11 - 00000000 ____D C:\Program Files\MSI Kombustor 2.5
2015-05-28 15:43 - 2015-06-11 13:25 - 00000000 ____D C:\Program Files\RivaTuner Statistics Server
2015-05-28 15:39 - 2015-05-28 15:40 - 36270420 _____ C:\Users\gamers\Downloads\MSIAfterburnerSetup.zip
2015-05-28 15:35 - 2015-05-28 15:35 - 00000000 ____D C:\Users\gamers\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2015-05-28 15:34 - 2015-06-10 19:09 - 00000000 ____D C:\Program Files\MSI Afterburner
2015-05-25 15:15 - 2015-05-25 15:15 - 00054656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-05-18 20:53 - 2015-04-22 03:48 - 00342736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-18 20:53 - 2015-04-21 18:25 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-05-18 20:53 - 2015-04-21 18:25 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-05-18 20:53 - 2015-04-21 18:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-18 20:53 - 2015-04-21 18:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-18 20:53 - 2015-04-21 18:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-05-18 20:53 - 2015-04-21 18:10 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-05-18 20:53 - 2015-04-21 18:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-18 20:53 - 2015-04-21 18:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-05-18 20:53 - 2015-04-21 18:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-18 20:53 - 2015-04-21 18:03 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-05-18 20:53 - 2015-04-21 18:02 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-05-18 20:53 - 2015-04-21 18:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-18 20:53 - 2015-04-21 17:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-18 20:53 - 2015-04-21 17:58 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-05-18 20:53 - 2015-04-21 17:58 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-05-18 20:53 - 2015-04-21 17:57 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-05-18 20:53 - 2015-04-21 17:51 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-05-18 20:53 - 2015-04-21 17:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-05-18 20:53 - 2015-04-21 17:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-05-18 20:53 - 2015-04-21 17:39 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-05-18 20:53 - 2015-04-21 17:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-18 20:53 - 2015-04-21 17:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-18 20:53 - 2015-04-21 17:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-18 20:53 - 2015-04-21 17:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-18 20:53 - 2015-04-21 17:26 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-18 20:53 - 2015-04-21 17:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-18 20:53 - 2015-04-21 17:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-05-18 20:53 - 2015-04-21 17:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-18 20:53 - 2015-04-21 17:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-18 20:53 - 2015-04-21 16:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-18 20:53 - 2015-04-21 16:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-18 20:47 - 2015-04-08 05:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-05-18 20:47 - 2015-04-08 05:14 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-05-18 15:02 - 2015-05-18 15:02 - 00000000 ____D C:\Users\gamers\Documents\Skype Voice Records
2015-05-18 15:02 - 2015-05-18 15:02 - 00000000 ____D C:\Users\gamers\Documents\Clownfish Avatars
2015-05-18 13:52 - 2015-05-18 13:52 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-18 13:51 - 2015-05-18 13:51 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-18 13:50 - 2015-05-18 13:50 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-18 13:48 - 2015-05-18 13:48 - 02382336 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-18 13:48 - 2015-05-18 13:48 - 01250816 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-18 13:48 - 2015-05-18 13:48 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-14 14:04 - 2015-05-14 14:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gaming Keyboard
2015-05-14 14:03 - 2015-05-14 14:03 - 00000000 ____D C:\Program Files\Gaming Keyboard
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-06-11 17:28 - 2013-01-29 16:21 - 00000000 ____D C:\Users\gamers\AppData\Roaming\Skype
2015-06-11 16:53 - 2013-01-30 17:12 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-06-11 16:47 - 2013-01-29 16:01 - 00000940 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-11 16:23 - 2013-01-29 15:53 - 01627884 _____ C:\Windows\WindowsUpdate.log
2015-06-11 16:00 - 2013-02-04 19:55 - 00000932 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001UA.job
2015-06-11 15:14 - 2014-12-16 22:48 - 00000000 ____D C:\Users\gamers\AppData\Roaming\uTorrent
2015-06-11 15:04 - 2014-06-05 18:28 - 00000000 ___RD C:\Users\gamers\Desktop\Programy
2015-06-11 14:18 - 2014-09-24 14:56 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-06-11 14:17 - 2014-09-24 14:41 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-06-11 14:11 - 2013-10-19 14:15 - 00000000 ____D C:\Windows\system32\MRT
2015-06-11 14:01 - 2013-10-19 14:15 - 136900096 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-06-11 13:39 - 2009-07-14 06:34 - 00022656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-06-11 13:39 - 2009-07-14 06:34 - 00022656 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-06-11 13:26 - 2013-01-29 16:01 - 00000936 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-06-11 13:26 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-11 13:25 - 2013-10-16 14:19 - 00000000 ____D C:\ProgramData\NVIDIA
2015-06-10 22:37 - 2015-04-13 20:56 - 00000000 ____D C:\Program Files\VideoLAN
2015-06-10 22:36 - 2013-03-11 20:33 - 00000000 ____D C:\Program Files\Steam
2015-06-10 22:36 - 2013-01-29 16:00 - 00000000 ____D C:\Users\gamers\AppData\Local\Google
2015-06-10 22:36 - 2013-01-29 16:00 - 00000000 ____D C:\Program Files\Google
2015-06-10 21:31 - 2013-07-11 15:05 - 00000008 __RSH C:\Users\gamers\ntuser.pol
2015-06-10 21:31 - 2013-01-29 15:55 - 00000000 ____D C:\Users\gamers
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\Guest\AppData\Local\Google
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Google
2015-06-10 21:26 - 2014-05-21 18:42 - 00000000 ____D C:\Users\ASPNET\AppData\Local\Comodo
2015-06-10 21:25 - 2014-05-21 18:42 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google
2015-06-10 21:25 - 2014-05-21 18:42 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo
2015-06-10 21:25 - 2009-07-14 04:37 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2015-06-10 19:00 - 2013-02-04 19:55 - 00000910 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001Core.job
2015-06-10 18:46 - 2014-11-18 22:43 - 00960512 ___SH C:\Users\gamers\Desktop\Thumbs.db
2015-06-10 18:31 - 2014-06-04 15:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual DJ
2015-06-10 18:30 - 2015-03-24 15:09 - 00000000 ____D C:\Program Files\NCH Software
2015-06-10 18:20 - 2014-01-27 15:35 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-06-10 18:19 - 2013-02-10 21:54 - 00000000 ____D C:\Program Files\Adobe
2015-06-10 18:19 - 2013-01-30 17:12 - 00000000 ____D C:\Users\gamers\AppData\Roaming\Adobe
2015-06-10 18:17 - 2013-01-30 20:43 - 00000000 ____D C:\ProgramData\IObit
2015-06-10 16:54 - 2013-01-30 17:12 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-06-10 16:54 - 2013-01-30 17:12 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-06-10 16:25 - 2015-04-21 16:27 - 64073728 _____ C:\Windows\system32\config\software.iodefrag
2015-06-10 16:25 - 2015-04-21 16:27 - 00364544 _____ C:\Windows\system32\config\default.iodefrag
2015-06-10 16:25 - 2015-04-21 16:27 - 00061440 _____ C:\Windows\system32\config\sam.iodefrag
2015-06-10 16:25 - 2015-04-21 16:27 - 00032768 _____ C:\Windows\system32\config\security.iodefrag
2015-06-10 16:25 - 2014-01-26 00:16 - 64073728 _____ C:\Windows\system32\config\software.iodefrag.bak
2015-06-10 16:25 - 2014-01-26 00:16 - 00364544 _____ C:\Windows\system32\config\default.iodefrag.bak
2015-06-10 16:25 - 2014-01-26 00:16 - 00061440 _____ C:\Windows\system32\config\sam.iodefrag.bak
2015-06-10 16:25 - 2014-01-26 00:16 - 00032768 _____ C:\Windows\system32\config\security.iodefrag.bak
2015-06-10 14:14 - 2013-10-18 13:11 - 64073728 _____ C:\Windows\system32\config\software.iobit
2015-06-10 14:14 - 2013-10-18 13:11 - 00364544 _____ C:\Windows\system32\config\default.iobit
2015-06-10 14:14 - 2013-10-18 13:11 - 00061440 _____ C:\Windows\system32\config\sam.iobit
2015-06-10 14:14 - 2013-10-18 13:11 - 00032768 _____ C:\Windows\system32\config\security.iobit
2015-06-10 13:59 - 2013-02-11 15:58 - 00000000 ____D C:\Users\gamers\AppData\Local\Adobe
2015-06-09 14:21 - 2014-01-22 15:15 - 42868736 _____ C:\Windows\system32\config\components.iobit
2015-06-09 14:00 - 2013-01-29 16:00 - 01613968 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-09 13:53 - 2009-07-14 06:53 - 00032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-28 18:09 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system
2015-05-28 15:43 - 2013-07-12 11:24 - 00000000 ____D C:\Windows\system32\directx
2015-05-27 18:31 - 2014-09-06 18:57 - 00000000 ___RD C:\Program Files\Skype
2015-05-27 16:24 - 2013-03-11 20:33 - 00000000 ____D C:\Program Files\Common Files\Steam
2015-05-20 20:57 - 2013-02-01 16:06 - 00000000 ____D C:\Users\gamers\AppData\Roaming\.minecraft
2015-05-19 15:11 - 2013-11-03 20:12 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-05-19 14:25 - 2009-07-14 04:04 - 00000615 _____ C:\Windows\win.ini
2015-05-19 14:24 - 2009-07-14 11:20 - 00000000 ____D C:\Program Files\Windows Journal
2015-05-19 14:21 - 2013-11-03 20:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-05-18 20:29 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2015-05-18 16:32 - 2009-07-14 06:33 - 00452544 _____ C:\Windows\system32\FNTCACHE.DAT
2015-05-18 16:10 - 2015-04-30 12:58 - 42868736 _____ C:\Windows\system32\config\components.iodefrag.bak
2015-05-18 15:11 - 2014-06-05 18:23 - 00000000 ___RD C:\Users\gamers\Desktop\Hry
2015-05-18 13:43 - 2015-03-27 13:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2015-05-14 14:03 - 2013-01-30 20:31 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
==================== Files in the root of some directories =======
2013-03-08 18:02 - 2014-09-07 13:03 - 0022328 _____ () C:\Users\gamers\AppData\Roaming\PnkBstrK.sys
2014-05-20 14:11 - 2014-05-20 14:11 - 0000094 _____ () C:\Users\gamers\AppData\Local\fusioncache.dat
2013-10-20 16:31 - 2014-11-14 15:40 - 0000024 _____ () C:\ProgramData\__FileUploader.log
Some files in TEMP:
====================
C:\Users\gamers\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp3jj5px.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-06-03 19:18
==================== End of log ============================
-
- Level 1.5
- Příspěvky: 141
- Registrován: květen 15
- Bydliště: Chodov u Karlových Varů
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
Addition Log: Additional scan result of Farbar Recovery Scan Tool (x86) Version: 08-06-2015
Ran by gamers at 2015-06-11 17:39:56
Running from C:\Users\gamers\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3288948882-2604745948-3918771127-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3288948882-2604745948-3918771127-1101 - Limited - Enabled)
gamers (S-1-5-21-3288948882-2604745948-3918771127-1001 - Administrator - Enabled) => C:\Users\gamers
Guest (S-1-5-21-3288948882-2604745948-3918771127-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3288948882-2604745948-3918771127-1102 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.188 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.188 - Adobe Systems Incorporated)
Aktualizace NVIDIA 17.12.8 (Version: 17.12.8 - NVIDIA Corporation) Hidden
aTube Catcher verze 3.8 (HKLM\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Avast Free Antivirus (HKLM\...\Avast) (Version: 10.2.2218 - AVAST Software)
Balíček ovladače systému Windows - AnyDATA.NET (adusbser) Modem (07/08/2009 2.0.6.7) (HKLM\...\A62EB0F09AE784434BA394FE9A94191D93D2455E) (Version: 07/08/2009 2.0.6.7 - AnyDATA.NET)
Balíček ovladače systému Windows - AnyDATA.NET (adusbser) Ports (07/08/2009 2.0.6.7) (HKLM\...\32C2F49891B607A7BDC27D948AE1DA18BB7CAD43) (Version: 07/08/2009 2.0.6.7 - AnyDATA.NET)
Bloody5 (HKLM\...\Bloody3) (Version: 15.02.0007 - Bloody)
CCleaner (HKLM\...\CCleaner) (Version: 5.06 - Piriform)
Counter Strike 1.6 - Non-Steam Patch verze 36 protokol 48 version for Windows (HKLM\...\{00EA9C1F-167A-DA44-BA34-A499D5B1815C}_is1) (Version: for Windows - )
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
Cry of Fear (HKLM\...\Steam App 223710) (Version: - Team Psykskallar)
Desura (HKLM\...\Desura) (Version: 100.57 - Desura)
Desura: ERIE (HKLM\...\Desura_81776177315872) (Version: Full - UGF)
Gaming Keyboard Driver (HKLM\...\{4860EC50-3BEE-4AD4-9A52-D1D7CF92C592}) (Version: 1.0 - )
Garry's Mod (HKLM\...\Steam App 4000) (Version: - Facepunch Studios)
Google Chrome (HKLM\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.27.5 - Google Inc.) Hidden
Grand Theft Auto IV (HKLM\...\Steam App 12210) (Version: - Rockstar North)
GTA San Andreas Multiplayer 0.3x version for Windows (HKLM\...\{6EA6F2D6-C1BA-8FC8-D39E-9C7C3F4D67BD}_is1) (Version: for Windows - )
Cheat Engine 6.3 (HKLM\...\Cheat Engine 6.3_is1) (Version: - Cheat Engine)
LG Internet Kit (HKLM\...\{40034B11-149E-4310-AE89-BB575B02525B}) (Version: 3.2.0.1 - LG Electronics)
LG USB Modem Drivers (HKLM\...\{E1640DA5-89B4-4F52-B15D-5DA3D14F29D4}) (Version: 4.9.4 - LG Electronics)
Mafia II (HKLM\...\Steam App 50130) (Version: - 2K Czech)
Malwarebytes Anti-Malware verze 2.1.6.1022 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Maxthon Cloud Browser (HKLM\...\Maxthon3) (Version: 4.4.4.3000 - Maxthon International Limited)
Microsoft .NET Framework 1.1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE (HKLM\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Office Excel Viewer (HKLM\...\{95120000-003F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Word Viewer 2003 (HKLM\...\{90850405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office XP Professional s aplikací FrontPage (HKLM\...\{90280405-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
MSI Afterburner 4.1.1 (HKLM\...\Afterburner) (Version: 4.1.1 - MSI Co., LTD)
MSI Kombustor 2.5.0 (HKLM\...\{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1) (Version: - MSI Co., LTD)
MSI Live Update 6 (HKLM\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.0.017 - MSI)
My Game Long Name (HKLM\...\UDK-e33fa870-d3c9-4fda-a5cb-d7747c043e42) (Version: - Epic Games, Inc.)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
NetSoftware (HKLM\...\NetSoftware) (Version: - Gemius SA.)
NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 344.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 344.75 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.32.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.32.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 344.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 344.75 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 344.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.75 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
O2 Internet (HKLM\...\O2 Internet) (Version: 23.009.11.02.445 - Huawei Technologies Co.,Ltd)
Ovládací panel NVIDIA 344.75 (Version: 344.75 - NVIDIA Corporation) Hidden
Project My Screen App (HKLM\...\{DF901456-7160-49DB-977B-0E91858CA2CB}) (Version: - )
Realtek ALC888 1200 Intel 82801GB ICH7 High Definition Audio Controller version for Windows (HKLM\...\{96F0EBA2-6D18-5BBA-93DB-DECD6200BEAF}_is1) (Version: for Windows - )
Sada Compatibility Pack pro systém Office 2007 (HKLM\...\{90120000-0020-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version: - Microsoft)
Seznam Software (HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\SeznamInstall) (Version: - Seznam.cz)
SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation)
TPFanControl v0.61 (HKLM\...\{717F5741-5C2E-4469-BDA0-B5EC2243646F}_is1) (Version: - troubadix)
Unity Web Player (HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\UnityWebPlayer) (Version: 2.6.1f3_31223 - Unity Technologies ApS)
Update for Skype for Business 2015 (KB2889853) 32-Bit Edition (HKLM\...\{90150000-012B-0405-0000-0000000FF1CE}_Office15.PROPLUS_{6B99320D-817F-42CE-B45E-5C9AD42678E3}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition (HKLM\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{04ADDEC1-208F-4295-AA61-16789EA56814}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition (HKLM\...\{90150000-012B-0405-0000-0000000FF1CE}_Office15.PROPLUS_{04ADDEC1-208F-4295-AA61-16789EA56814}) (Version: - Microsoft)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
Windows Phone app for desktop (HKLM\...\{CE9BDD0F-BAF3-474D-B6D8-15B84BDAB229}) (Version: 1.1.2726.0 - Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\gamers\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{7B37E4E2-C62F-4914-9620-8FB5062718CC}\localserver32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{8B9F5BF4-0407-4BB2-9FED-4C0372DABD00}\localserver32 -> C:\Users\gamers\AppData\Local\Facebook\Video\Skype\FacebookVideoCallingProxy.exe (Skype Limited)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{AB807329-7324-431B-8B36-DBD581F56E0B}\localserver32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{CBE9C57E-FFA9-4123-8354-AD360D6DD3CC}\InprocServer32 -> C:\Users\gamers\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncApi.dll (Microsoft Corporation)
==================== Restore Points =========================
11-06-2015 15:22:36 End of disinfection
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:04 - 2015-06-10 21:03 - 00000841 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0537AA80-DBFC-475B-8644-334CE0DA7568} - System32\Tasks\Maxthon Update => C:\Program Files\Maxthon\Bin\Maxthon.exe [2015-04-21] (Maxthon International ltd.)
Task: {05F787A0-68B9-48B1-A8C0-DC1F9DA44EFA} - System32\Tasks\MSIAfterburner => C:\Program Files\MSI Afterburner\MSIAfterburner.exe [2015-05-27] ()
Task: {0764E723-063C-48B2-99BE-6B28260A53FB} - \Driver Booster Scan No Task File <==== ATTENTION
Task: {0F17F0DD-FE16-45AD-9963-51CA2DFF2337} - \avastBCLRestartS-1-5-21-3288948882-2604745948-3918771127-1001 No Task File <==== ATTENTION
Task: {1729876A-6922-48AC-85FA-4676FBB59DC9} - System32\Tasks\{27759288-1359-4D96-9727-B9E157346487} => Iexplore.exe http://ui.skype.com/ui/0/6.3.0.107/cs/g ... Error=1603
Task: {2104D8AF-096B-44EB-948B-1EAB47ABF807} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {2BBC3495-2433-46B0-9282-931A2B9F50EE} - \Game_Booster_Startup No Task File <==== ATTENTION
Task: {3EAB1FBD-7A59-458E-B610-2E1FDDFEED50} - System32\Tasks\{D379E7DF-EA2B-4ABB-87F8-CEB5ADA21CBF} => pcalua.exe -a "C:\Program Files\Activision\Call of Duty 2\main\unins000.exe"
Task: {41D313BE-1454-4EC6-BFEC-D2DDDA1B0E20} - \Driver Booster Update No Task File <==== ATTENTION
Task: {4334F530-56FF-4694-B181-76368B3C662A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-10] (Adobe Systems Incorporated)
Task: {517B5F27-87F7-4E4A-96D0-9C7F785E50E6} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-31] (Microsoft Corporation)
Task: {55C165F5-2E1C-4C3A-9F53-808BADBED08C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-05-08] (Piriform Ltd)
Task: {59ADCCF9-E48B-49A5-9EC7-F57AB47ADEDD} - System32\Tasks\SmartDefrag3_Update => C:\Program Files\IObit\Smart Defrag 3\AutoUpdate.exe
Task: {5EE1C4EE-E407-4811-89A0-F0616B242863} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-31] (Microsoft Corporation)
Task: {6A300077-C3CC-4DDE-9840-83CCCF98D050} - System32\Tasks\ASC8_SkipUac_gamers => C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe
Task: {7B65A7BF-2551-40B6-9D1F-AD457C47AB5C} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2014-09-24] ()
Task: {7DEF7729-DA20-419C-87ED-FD86597CE61B} - System32\Tasks\{E16FB6E6-8741-4F42-8B2B-5E74BBF98EF3} => Chrome.exe http://ui.skype.com/ui/0/6.21.0.104/cs/ ... Error=1638
Task: {81695B2B-4D4A-4AD9-AFD7-63D6E0092344} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files\IObit\Game Booster 3\AutoUpdate.exe
Task: {8B09FF82-850F-4259-9CA6-1656B003176F} - System32\Tasks\{17CC0A6D-C320-4899-858B-F082DF5CA983} => Iexplore.exe http://ui.skype.com/ui/0/6.9.59.106/cs/ ... Error=1603
Task: {8E774FF8-2EF7-45BC-B5D7-4EBE71293D1D} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001Core => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-04] (Facebook Inc.)
Task: {8E9647D5-85B4-4E8E-ACD4-DCE8BAC3246F} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {97690DDD-3370-4734-B70C-939F3DD2A5CC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {9CA3B10C-084D-4F6C-9176-711BA5CDE67F} - System32\Tasks\{DBE24F63-2222-4816-B372-D934F0328627} => pcalua.exe -a "C:\Users\gamers\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4Q9DYF5X\counter-strike-1-6-non-stream-09-21-2011-10-29-1018.exe" -d C:\Users\gamers\Desktop
Task: {B0CA6BCE-5BE5-4B71-9F5F-FA4C6E30B46A} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-31] (Microsoft Corporation)
Task: {B3105116-5B0E-4C67-B78A-130103C032C0} - System32\Tasks\{512649CA-897E-46FE-8145-2E15C9998029} => pcalua.exe -a "C:\Program Files\Activision\Call of Duty 2\main\unins000.exe"
Task: {B82C6A64-F8A3-4ACE-9E76-5D028DB93C1E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-04-27] (Avast Software s.r.o.)
Task: {BC2705BC-581D-4AA2-B54E-2FC9B94EB502} - \Driver Booster SkipUAC (gamers) No Task File <==== ATTENTION
Task: {BCE538E5-1BEA-4F89-BFA6-42BD07C77C38} - System32\Tasks\{7106C2D5-B5AB-43F8-9AAE-EBC9718CA656} => pcalua.exe -a "C:\Users\gamers\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J4HNKL5S\GTA---San-Andreas-(Multiplayer).exe" -d C:\Users\gamers\Desktop
Task: {C98CEB2A-C9B4-4376-A990-6D0DF123ABB8} - System32\Tasks\Microsoft Office 15 Sync Maintenance for gamers-PC-gamers gamers-PC => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-04-14] (Microsoft Corporation)
Task: {CD163AC7-190B-4603-AAA8-25DDEA5F4FDD} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001UA => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-04] (Facebook Inc.)
Task: {D284A0F0-2D32-4B6D-A4CE-1C2047B3E2DF} - \SmartDefrag3_Startup No Task File <==== ATTENTION
Task: {D87267FB-D7D6-4A50-8B05-A0DFCD686AD3} - System32\Tasks\ASRockOCTuner => C:\Program Files\ASRock Utility\OCTuner\ASROC.exe [2009-11-04] (ASRock)
Task: {DD574BFE-417C-4992-95CF-B3B26E678279} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-31] (Microsoft Corporation)
Task: {E2FFE418-BEFF-48D6-BDA8-9B08CC1807B8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {E459970A-16CC-4E99-8B6E-EF9CC9337430} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {EF7B842D-5073-4448-BF25-7737A2BBF6DD} - \Uninstaller_SkipUac_Administrator No Task File <==== ATTENTION
Task: {F4E51FBE-F44C-4AD5-847B-35825AB996B5} - System32\Tasks\{B28EE534-4DBE-4FF1-8740-B05F609B3795} => C:\Program Files\Rockstar Games\GTA San Andreas\samp.exe [2014-02-10] ()
Task: {F76330BB-B0F4-460A-9BB9-80AF2F2822B2} - System32\Tasks\{21D870D8-62FC-428E-A6A4-D3B97D4EC382} => Iexplore.exe http://ui.skype.com/ui/0/6.9.59.106/cs/ ... Error=1603
Task: {F8B0A8B0-9CCA-4953-97AC-DEF1A45E5853} - System32\Tasks\{1407F49D-0E30-40C0-B210-904974FDF494} => pcalua.exe -a "C:\Users\gamers\Desktop\Virtual DJ\Sound Effect Pack.exe" -d "C:\Users\gamers\Desktop\Virtual DJ"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001Core.job => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001UA.job => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (Whitelisted) ==============
2015-04-27 18:14 - 2015-04-27 18:14 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-04-27 18:14 - 2015-04-27 18:14 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-06-10 21:33 - 2015-06-10 21:33 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15061001\algo.dll
2015-06-11 13:32 - 2015-06-11 13:32 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15061100\algo.dll
2013-10-16 14:19 - 2014-11-12 23:43 - 00106824 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2011-03-14 17:27 - 2011-03-14 17:27 - 00271712 _____ () C:\ProgramData\DatacardService\HWDeviceService.exe
2015-05-27 12:05 - 2015-05-27 12:05 - 00578272 _____ () C:\Program Files\MSI Afterburner\MSIAfterburner.exe
2015-05-18 13:43 - 2015-05-18 13:43 - 00071680 _____ () C:\Program Files\MSI Afterburner\RTMUI.dll
2015-05-18 13:43 - 2015-05-18 13:43 - 00057856 _____ () C:\Program Files\MSI Afterburner\RTFC.dll
2015-05-18 13:43 - 2015-05-18 13:43 - 00218624 _____ () C:\Program Files\MSI Afterburner\RTCore.dll
2015-05-22 12:56 - 2015-05-22 12:56 - 00357888 _____ () C:\Program Files\MSI Afterburner\RTUI.dll
2015-05-22 13:36 - 2015-05-22 13:36 - 00649216 _____ () C:\Program Files\MSI Afterburner\RTHAL.dll
2015-03-17 14:58 - 2015-03-17 14:58 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-05-28 17:00 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files\MSI\Live Update\unrar.dll
2015-05-14 14:03 - 2014-01-16 15:21 - 00479232 _____ () C:\Program Files\Gaming Keyboard\Monitor.EXE
2015-05-14 14:03 - 2014-06-23 09:58 - 00057344 _____ () C:\Program Files\Gaming Keyboard\lan.dll
2015-05-14 14:03 - 2014-01-10 16:01 - 00061440 _____ () C:\Program Files\Gaming Keyboard\hiddriver.dll
2015-02-20 11:48 - 2015-02-13 11:18 - 18905088 _____ () C:\Program Files\Bloody5\Bloody5\Bloody5.exe
2009-07-13 23:03 - 2009-07-14 03:15 - 00364544 _____ () C:\Windows\system32\msjetoledb40.dll
2015-02-20 11:49 - 2013-04-03 19:29 - 00085504 _____ () C:\Program Files\Bloody5\Bloody5\DLL\DLL_ZoomControl.dll
2015-02-20 11:49 - 2014-01-10 18:48 - 04260352 _____ () C:\Program Files\Bloody5\Bloody5\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2015-05-14 14:03 - 2014-01-16 15:17 - 00372736 _____ () C:\Program Files\Gaming Keyboard\OSD.exe
2014-09-07 13:02 - 2014-09-11 17:06 - 00076888 _____ () C:\Windows\system32\PnkBstrA.exe
2015-05-08 20:50 - 2015-05-08 20:50 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-06-10 14:55 - 2015-06-05 20:22 - 01281864 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.124\libglesv2.dll
2015-06-10 14:55 - 2015-06-05 20:22 - 00080712 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.124\libegl.dll
2015-06-10 14:55 - 2015-06-05 20:22 - 15003464 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.124\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:56E2E879
==================== Safe Mode (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\100sexlinks.com -> 100sexlinks.com
There are 4792 more restricted sites.
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\gamers\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.0.138
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: cz.seznam.software.autoupdate => "c:\users\gamers\appdata\roaming\seznam.cz\szninstall.exe" -c
MSCONFIG\startupreg: cz.seznam.software.szndesktop => "c:\users\gamers\appdata\roaming\seznam.cz\bin\wszndesktop.exe" -q
MSCONFIG\startupreg: Facebook Update => "c:\users\gamers\appdata\local\facebook\update\facebookupdate.exe" /c /nocrashserver
MSCONFIG\startupreg: HDAudDeck => c:\program files\via\viaudioi\vdeck\vdeck.exe -r
MSCONFIG\startupreg: IgfxTray => c:\windows\system32\igfxtray.exe
MSCONFIG\startupreg: mncjudqSrv => c:\windows\inf\mncjudq.vbe
MSCONFIG\startupreg: MSStp => c:\windows\system32\msstp.vbe
MSCONFIG\startupreg: NvBackend => c:\program files\nvidia corporation\update core\nvbackend.exe
MSCONFIG\startupreg: Skype => "c:\program files\skype\phone\skype.exe" /minimized /regrun
MSCONFIG\startupreg: SunJavaUpdateSched => c:\program files\common files\java\java update\jusched.exe
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{7C96E967-14BD-4084-91F6-B11820658D17}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{46E4367E-281C-4F04-A25C-2EE03688A63C}] => (Allow) C:\Windows\System32\msiexec.exe
FirewallRules: [{CC5C41D3-20F4-4D05-AD33-AE5712F48256}] => (Allow) C:\Windows\System32\msiexec.exe
FirewallRules: [TCP Query User{EBB03509-52AE-45F2-A1ED-E81CB0B45D19}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [UDP Query User{B08D3122-70E7-4AE8-9860-26353531ED19}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [{20086DD7-5505-42A7-9B9D-F8941F159A65}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{37A81E0B-0D88-4E51-BA16-C81AC6E79234}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{591D3B4E-35E0-46F8-99B2-97B4029C1A49}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{8FD59F14-DB23-4D68-8B54-37F9749C26EC}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{07441D3F-63C8-400E-B770-8D9E9B2733DA}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [TCP Query User{301D61B9-1C8A-4E87-AF57-5108F23D5C45}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [UDP Query User{9BB8E0B1-478A-4BE4-AE2B-C1CD78BC639C}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [{57176C60-155A-4F4B-A2DF-98D5B4741933}] => (Allow) C:\Program Files\Cracked Steam\steam.exe
FirewallRules: [{1950271D-5F57-4F06-9370-2EFC6E32BACB}] => (Allow) C:\Program Files\Cracked Steam\steam.exe
FirewallRules: [TCP Query User{64754D0F-1414-45BD-8523-62D3F8F8E51C}C:\program files\valve\hlds.exe] => (Allow) C:\program files\valve\hlds.exe
FirewallRules: [UDP Query User{ED74F403-6E28-4657-9C0C-AFAF7F8CAE5C}C:\program files\valve\hlds.exe] => (Allow) C:\program files\valve\hlds.exe
FirewallRules: [{A97DD571-25AF-4C9E-A063-CF666B44DAEE}] => (Allow) C:\Program Files\Rockstar Games\EFLC\LaunchEFLC.exe
FirewallRules: [{70B44BAA-1B42-40E2-8322-7DCE2EA22384}] => (Allow) C:\Program Files\Rockstar Games\EFLC\LaunchEFLC.exe
FirewallRules: [TCP Query User{2FC6D716-965B-4644-99C1-76103703FA60}C:\program files\rockstar games\eflc\eflc.exe] => (Allow) C:\program files\rockstar games\eflc\eflc.exe
FirewallRules: [UDP Query User{C82E91F1-40DA-46AB-B3F5-6A84AD9FE938}C:\program files\rockstar games\eflc\eflc.exe] => (Allow) C:\program files\rockstar games\eflc\eflc.exe
FirewallRules: [{42716E63-0B49-40A5-8AA0-9A037603D2F4}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\RM.exe
FirewallRules: [{CB2636C1-282D-4120-8B71-1FD556BF6E11}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\RM.exe
FirewallRules: [{29A38714-0855-442B-AA78-E257D71A58A5}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\Studio.exe
FirewallRules: [{E6BF80F5-1433-4305-B045-EB224256CC86}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\Studio.exe
FirewallRules: [{58A9848F-11B1-4A43-BF53-B9EFACD5BCCB}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\PMSRegisterFile.exe
FirewallRules: [{DC28B233-661B-4BEE-9AA4-61CF8F583F43}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\PMSRegisterFile.exe
FirewallRules: [{963C9F00-1222-4370-978C-4FC9DC2887BC}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\umi.exe
FirewallRules: [{60033E62-67CD-4370-858A-F56BE2EBE7AD}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\umi.exe
FirewallRules: [{36F33B5D-3B87-4933-933A-8F83727E8C29}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutLauncher.exe
FirewallRules: [{AEA0C4F7-4B25-495E-8515-3B7913C69F18}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutLauncher.exe
FirewallRules: [{0D76E57F-9CDD-46C5-8F0C-D1C78A9DB8A3}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{1C849EE1-3DCD-4AEB-9E25-2FBB29C72E74}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{FCC294FB-C102-40D7-B637-676EEBBB406D}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{65CC62BF-F465-4156-B84C-4DC94717A6BC}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{EC59EEC5-660C-405D-8691-A0449D1CEBC8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{3C311BCA-F9B5-4D82-9412-DD46B21AB2D0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{7353C573-203F-4352-A06D-F5705F64EBBE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{2693DDE6-3D0C-454F-9D81-4E9D357DD0D9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{7385185A-E5D6-436B-97FD-4DCC0A3B285D}] => (Allow) C:\Program Files\Steam\Steam.exe
FirewallRules: [{98351F52-2D51-4D7B-9F62-D445BA2CD4C1}] => (Allow) C:\Program Files\Steam\Steam.exe
FirewallRules: [{CB077B47-48EF-4E73-A097-001E2D169F20}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{4C8861DA-DA76-45A7-9EEF-4D63640F2847}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{1B4C4E50-2793-49D0-90BE-7EADD2970148}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{29178217-0FEC-4B62-A45C-A7CAC374D65B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{C54AD1D2-8675-4381-B6E5-CBD5AAA70A0E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{85AC4FD9-A451-4005-B33C-8610AAFD4495}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{6D42FCEB-07B4-462F-A523-E2A21D989D3F}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{9EE1E0D4-5B5D-48E3-8E31-EB3026017CA1}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{6C8E6E20-355A-465D-B0A4-9F8FFC4EC9B1}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{54CEA1E1-7BD9-41BE-B09F-B0B54FA15AF2}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{7C25761B-DCA3-4624-B392-555BCC893A8D}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{D5620CF5-79C7-4B02-9B8C-762F0C4717CE}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{06756217-E7BD-4DC5-A0AB-E93CC549547B}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{C779D7BC-1356-423B-8E2B-486AE683D2CD}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{7D8DED63-3761-4F10-AA66-A5391490A6EF}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{6E85454F-6F52-40F6-BD33-6548B1348460}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{5D02ABE5-253A-4F78-AE90-E66582E05E56}] => (Allow) C:\Users\gamers\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe
FirewallRules: [{F7646ACB-A5A7-46B2-9B4A-BB0A8486F6FB}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe
FirewallRules: [{7039D84A-6001-424A-9D09-01135D9A72A1}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe
FirewallRules: [{957462F4-5B0A-447A-AB22-0F4612200A03}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe
FirewallRules: [{88C4D41F-4529-422C-8793-586A51737527}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe
FirewallRules: [{E4701E05-5FDC-482A-B31A-A3AC973AA3E8}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe
FirewallRules: [{38352512-3E75-45CD-9CD4-7F45E6207B1C}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe
FirewallRules: [TCP Query User{FCDCCB84-BCEA-432A-B7C5-ED9C50D297AC}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{7E4E8C20-072E-4F53-A708-A5947F70CACC}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [{EDEB2407-A4FB-49AC-A2E6-9C8E9B6B8235}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{DA30A9C7-DDA8-4846-A9E9-1AA813DBEA66}] => (Allow) LPort=2869
FirewallRules: [{9B4CC536-C4CC-48A8-B663-6BDA88D1D511}] => (Allow) LPort=1900
FirewallRules: [{39104A3D-4819-473B-AC55-7B34D76EBCA1}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [TCP Query User{B0787977-9A9C-4485-BC6E-02DE41FCFB38}C:\program files\ubisoft\far cry 2\bin\fc2serverlauncher.exe] => (Allow) C:\program files\ubisoft\far cry 2\bin\fc2serverlauncher.exe
FirewallRules: [UDP Query User{C4CF634F-5584-442F-AC02-8F374C0DF4AC}C:\program files\ubisoft\far cry 2\bin\fc2serverlauncher.exe] => (Allow) C:\program files\ubisoft\far cry 2\bin\fc2serverlauncher.exe
FirewallRules: [TCP Query User{8E784F3F-7ED2-47F6-850B-6D7ABD604D45}C:\program files\steam\steamapps\common\half-life\hltv.exe] => (Block) C:\program files\steam\steamapps\common\half-life\hltv.exe
FirewallRules: [UDP Query User{0998BEEA-EBC7-40EC-8790-DF7090930A27}C:\program files\steam\steamapps\common\half-life\hltv.exe] => (Block) C:\program files\steam\steamapps\common\half-life\hltv.exe
FirewallRules: [{F9A611D6-3C89-4CF2-BA1F-8C120A3342AA}] => (Allow) C:\Program Files\Winamp\winamp.exe
FirewallRules: [{533E0398-B46D-4C44-96B7-AA03F78442EE}] => (Allow) C:\Program Files\Winamp\winamp.exe
FirewallRules: [{0CCCD014-CD4F-45DC-B7CF-6CF3465AE4C0}] => (Allow) C:\Program Files\Steam\bin\steamwebhelper.exe
FirewallRules: [{AF9D0D2C-903F-47C7-B882-701422C18E37}] => (Allow) C:\Program Files\Steam\bin\steamwebhelper.exe
FirewallRules: [{5B2BF71B-FFA7-42E3-925D-C7F33D7211AE}] => (Allow) C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe
FirewallRules: [{FA2D75F4-54E1-469A-9C61-99EE3FD1B521}] => (Allow) C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe
FirewallRules: [{3F63CB90-0932-4E18-BE04-C1D39FB9615B}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{7C93689D-3887-446F-A777-0F708FD79741}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{CE496DFD-86A4-406B-A0F9-F1F8359082BD}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{88AB202B-6040-438F-90EF-7CBC3884D953}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [TCP Query User{C922A5F4-1A4B-4CFF-A5C0-547AEA667087}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{793BDBDA-FBF7-4DCE-B49E-08F9C6031F99}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [{BB1E9B44-729F-4F72-8177-3565F6B374E2}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{36B4CE34-3F2C-479D-88FF-0A59B75C6C11}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{801A6E78-E70E-43EA-866D-777E8BF24C0A}] => (Allow) C:\Program Files\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{07BFCFA3-6B87-4529-BA06-29C0A405AA4C}] => (Allow) C:\Program Files\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{1EC4682B-24FB-4BBB-8DD1-1759041D3F24}] => (Allow) C:\Program Files\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\LaunchGTAIV.exe
FirewallRules: [{34E0DDBE-C4C8-49B6-A3AD-62F90707356C}] => (Allow) C:\Program Files\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\LaunchGTAIV.exe
FirewallRules: [TCP Query User{20F76740-633F-433D-B78F-4B8B98AA5D84}C:\program files\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [UDP Query User{CDF978EF-0C47-4EF6-9D2D-491A6E701CCD}C:\program files\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [{603EA860-F01E-4ECF-AE10-5F70EF706B1B}] => (Allow) C:\Program Files\Steam\SteamApps\common\Half-Life\hl.exe
FirewallRules: [{B3D480B2-DCE6-4185-B807-38C433A6BCB7}] => (Allow) C:\Program Files\Steam\SteamApps\common\Half-Life\hl.exe
FirewallRules: [{4F58B8DA-3479-4F7F-88F6-9BB29C99329D}] => (Allow) C:\Program Files\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{069A4943-8E9C-48D1-AB39-6979287DB857}] => (Allow) C:\Program Files\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{B82A35AD-F7C2-461B-A3B7-141E7036638C}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe
FirewallRules: [{EC09B9EB-A3D8-49DA-AD04-54CBCE632806}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe
FirewallRules: [TCP Query User{28432D91-5782-4894-8473-3A08267106E7}C:\program files\steam\steamapps\common\cry of fear\cof.exe] => (Allow) C:\program files\steam\steamapps\common\cry of fear\cof.exe
FirewallRules: [UDP Query User{4679FD71-E2B9-4333-B4FA-C6BE91895140}C:\program files\steam\steamapps\common\cry of fear\cof.exe] => (Allow) C:\program files\steam\steamapps\common\cry of fear\cof.exe
FirewallRules: [{BBE0D52E-D636-4FA1-8297-46988B0B80D5}] => (Allow) C:\Program Files\Maxthon\Bin\MxUp.exe
FirewallRules: [{CF610AD8-C4EB-4E5B-B459-6266688A31FE}] => (Allow) C:\Program Files\Maxthon\Bin\Maxthon.exe
FirewallRules: [{219452F5-7AE2-4FA3-9850-12F17B9D0620}] => (Allow) C:\Program Files\Maxthon\Bin\MxUp.exe
FirewallRules: [{8471F66B-A319-4824-9D13-A48D50820C63}] => (Allow) C:\Program Files\Maxthon\Bin\Maxthon.exe
FirewallRules: [TCP Query User{49B1041A-79C0-46E1-97A4-0E646FFA1609}C:\users\gamers\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\gamers\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{075F907B-38A1-46B5-A207-72E93580B1F0}C:\users\gamers\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\gamers\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{E5454809-AC42-4351-8CC1-7ED110C69BA0}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
Name: Microsoft ISATAP Adapter
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Teredo Tunneling Pseudo-Interface
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (06/11/2015 03:22:43 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.
Details:
AddWin32ServiceFiles: Unable to back up image of service LMIGuardianSvc since QueryServiceConfig API failed
System Error:
Systém nemůže nalézt uvedený soubor.
.
Error: (06/10/2015 10:40:15 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (06/10/2015 10:40:15 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (06/10/2015 08:51:57 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program RogueKiller.exe verze 10.8.2.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 1cc4
Čas spuštění: 01d0a3ac368ca16c
Čas ukončení: 9
Cesta k aplikaci: C:\Users\gamers\Desktop\RogueKiller.exe
ID hlášení: baac01d9-0fa1-11e5-934b-bc5ff4c3f641
Error: (06/10/2015 03:19:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program HijackThis.exe verze 2.0.0.4 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 20e8
Čas spuštění: 01d0a37f835990bb
Čas ukončení: 12
Cesta k aplikaci: C:\Users\gamers\Desktop\HijackThis.exe
ID hlášení: 1c6cf543-0f73-11e5-9bb4-bc5ff4c3f641
Error: (06/10/2015 02:00:45 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: Služba Šifrování neinicializovala databázi katalogu. Chyba součásti ESENT: -550.
Error: (06/09/2015 01:55:48 PM) (Source: ESENT) (EventID: 455) (User: )
Description: DllHost (5628) WebCacheLocal: Při otevírání souboru protokolu C:\Users\gamers\AppData\Local\Microsoft\Windows\WebCache\V01.log došlo k chybě -1811 (0xfffff8ed).
Error: (06/05/2015 00:31:34 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač
Error: (06/05/2015 00:31:34 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač
Error: (06/03/2015 07:28:24 PM) (Source: IMFservice) (EventID: 0) (User: )
Description: Neplatný popisovač
System errors:
=============
Error: (06/11/2015 02:34:46 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Doporučená aktualizace Skypu pro plochu Windows 7.0 (kb2876229).
Error: (06/11/2015 01:28:30 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Skype Click to Call PNR Service přestala během spouštění reagovat.
Error: (06/11/2015 01:26:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba O2 Internet. OUC neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/11/2015 01:26:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba LMIGuardianSvc neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/11/2015 01:25:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Advanced SystemCare Service 8 neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/10/2015 09:33:12 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Skype Click to Call PNR Service přestala během spouštění reagovat.
Error: (06/10/2015 09:31:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba O2 Internet. OUC neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/10/2015 09:31:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba LMIGuardianSvc neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/10/2015 09:30:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Advanced SystemCare Service 8 neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/10/2015 09:25:33 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Microsoft Office:
=========================
Error: (06/11/2015 03:22:43 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description:
Details:
AddWin32ServiceFiles: Unable to back up image of service LMIGuardianSvc since QueryServiceConfig API failed
System Error:
Systém nemůže nalézt uvedený soubor.
Error: (06/10/2015 10:40:15 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\STMicroelectronics\Software\Virtual COM Port Driver\dpinst_ia64.exe
Error: (06/10/2015 10:40:15 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\STMicroelectronics\Software\Virtual COM Port Driver\dpinst_amd64.exe
Error: (06/10/2015 08:51:57 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: RogueKiller.exe10.8.2.01cc401d0a3ac368ca16c9C:\Users\gamers\Desktop\RogueKiller.exebaac01d9-0fa1-11e5-934b-bc5ff4c3f641
Error: (06/10/2015 03:19:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: HijackThis.exe2.0.0.420e801d0a37f835990bb12C:\Users\gamers\Desktop\HijackThis.exe1c6cf543-0f73-11e5-9bb4-bc5ff4c3f641
Error: (06/10/2015 02:00:45 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: -550
Error: (06/09/2015 01:55:48 PM) (Source: ESENT) (EventID: 455) (User: )
Description: DllHost5628WebCacheLocal: C:\Users\gamers\AppData\Local\Microsoft\Windows\WebCache\V01.log-1811 (0xfffff8ed)
Error: (06/05/2015 00:31:34 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač
Error: (06/05/2015 00:31:34 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač
Error: (06/03/2015 07:28:24 PM) (Source: IMFservice) (EventID: 0) (User: )
Description: Neplatný popisovač
==================== Memory info ===========================
Processor: Intel(R) Pentium(R) Dual CPU E2180 @ 2.00GHz
Percentage of memory in use: 84%
Total physical RAM: 2047.09 MB
Available physical RAM: 322.03 MB
Total Pagefile: 4094.17 MB
Available Pagefile: 1397.27 MB
Total Virtual: 2047.88 MB
Available Virtual: 1904.74 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:186.31 GB) (Free:10.31 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or
(Size: 186.3 GB) (Disk ID: B226D822)
Partition 1: (Active) - (Size=186.3 GB) - (Type=07 NTFS)
==================== End of log ============================
Ran by gamers at 2015-06-11 17:39:56
Running from C:\Users\gamers\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3288948882-2604745948-3918771127-500 - Administrator - Disabled)
ASPNET (S-1-5-21-3288948882-2604745948-3918771127-1101 - Limited - Enabled)
gamers (S-1-5-21-3288948882-2604745948-3918771127-1001 - Administrator - Enabled) => C:\Users\gamers
Guest (S-1-5-21-3288948882-2604745948-3918771127-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3288948882-2604745948-3918771127-1102 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.188 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.188 - Adobe Systems Incorporated)
Aktualizace NVIDIA 17.12.8 (Version: 17.12.8 - NVIDIA Corporation) Hidden
aTube Catcher verze 3.8 (HKLM\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Avast Free Antivirus (HKLM\...\Avast) (Version: 10.2.2218 - AVAST Software)
Balíček ovladače systému Windows - AnyDATA.NET (adusbser) Modem (07/08/2009 2.0.6.7) (HKLM\...\A62EB0F09AE784434BA394FE9A94191D93D2455E) (Version: 07/08/2009 2.0.6.7 - AnyDATA.NET)
Balíček ovladače systému Windows - AnyDATA.NET (adusbser) Ports (07/08/2009 2.0.6.7) (HKLM\...\32C2F49891B607A7BDC27D948AE1DA18BB7CAD43) (Version: 07/08/2009 2.0.6.7 - AnyDATA.NET)
Bloody5 (HKLM\...\Bloody3) (Version: 15.02.0007 - Bloody)
CCleaner (HKLM\...\CCleaner) (Version: 5.06 - Piriform)
Counter Strike 1.6 - Non-Steam Patch verze 36 protokol 48 version for Windows (HKLM\...\{00EA9C1F-167A-DA44-BA34-A499D5B1815C}_is1) (Version: for Windows - )
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve)
Cry of Fear (HKLM\...\Steam App 223710) (Version: - Team Psykskallar)
Desura (HKLM\...\Desura) (Version: 100.57 - Desura)
Desura: ERIE (HKLM\...\Desura_81776177315872) (Version: Full - UGF)
Gaming Keyboard Driver (HKLM\...\{4860EC50-3BEE-4AD4-9A52-D1D7CF92C592}) (Version: 1.0 - )
Garry's Mod (HKLM\...\Steam App 4000) (Version: - Facepunch Studios)
Google Chrome (HKLM\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.27.5 - Google Inc.) Hidden
Grand Theft Auto IV (HKLM\...\Steam App 12210) (Version: - Rockstar North)
GTA San Andreas Multiplayer 0.3x version for Windows (HKLM\...\{6EA6F2D6-C1BA-8FC8-D39E-9C7C3F4D67BD}_is1) (Version: for Windows - )
Cheat Engine 6.3 (HKLM\...\Cheat Engine 6.3_is1) (Version: - Cheat Engine)
LG Internet Kit (HKLM\...\{40034B11-149E-4310-AE89-BB575B02525B}) (Version: 3.2.0.1 - LG Electronics)
LG USB Modem Drivers (HKLM\...\{E1640DA5-89B4-4F52-B15D-5DA3D14F29D4}) (Version: 4.9.4 - LG Electronics)
Mafia II (HKLM\...\Steam App 50130) (Version: - 2K Czech)
Malwarebytes Anti-Malware verze 2.1.6.1022 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Maxthon Cloud Browser (HKLM\...\Maxthon3) (Version: 4.4.4.3000 - Maxthon International Limited)
Microsoft .NET Framework 1.1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE (HKLM\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Office Excel Viewer (HKLM\...\{95120000-003F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Word Viewer 2003 (HKLM\...\{90850405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Office XP Professional s aplikací FrontPage (HKLM\...\{90280405-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
MSI Afterburner 4.1.1 (HKLM\...\Afterburner) (Version: 4.1.1 - MSI Co., LTD)
MSI Kombustor 2.5.0 (HKLM\...\{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1) (Version: - MSI Co., LTD)
MSI Live Update 6 (HKLM\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.0.017 - MSI)
My Game Long Name (HKLM\...\UDK-e33fa870-d3c9-4fda-a5cb-d7747c043e42) (Version: - Epic Games, Inc.)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
NetSoftware (HKLM\...\NetSoftware) (Version: - Gemius SA.)
NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 344.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 344.75 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.32.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.32.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 344.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 344.75 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 344.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.75 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
O2 Internet (HKLM\...\O2 Internet) (Version: 23.009.11.02.445 - Huawei Technologies Co.,Ltd)
Ovládací panel NVIDIA 344.75 (Version: 344.75 - NVIDIA Corporation) Hidden
Project My Screen App (HKLM\...\{DF901456-7160-49DB-977B-0E91858CA2CB}) (Version: - )
Realtek ALC888 1200 Intel 82801GB ICH7 High Definition Audio Controller version for Windows (HKLM\...\{96F0EBA2-6D18-5BBA-93DB-DECD6200BEAF}_is1) (Version: for Windows - )
Sada Compatibility Pack pro systém Office 2007 (HKLM\...\{90120000-0020-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version: - Microsoft)
Seznam Software (HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\SeznamInstall) (Version: - Seznam.cz)
SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation)
TPFanControl v0.61 (HKLM\...\{717F5741-5C2E-4469-BDA0-B5EC2243646F}_is1) (Version: - troubadix)
Unity Web Player (HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\UnityWebPlayer) (Version: 2.6.1f3_31223 - Unity Technologies ApS)
Update for Skype for Business 2015 (KB2889853) 32-Bit Edition (HKLM\...\{90150000-012B-0405-0000-0000000FF1CE}_Office15.PROPLUS_{6B99320D-817F-42CE-B45E-5C9AD42678E3}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition (HKLM\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{04ADDEC1-208F-4295-AA61-16789EA56814}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition (HKLM\...\{90150000-012B-0405-0000-0000000FF1CE}_Office15.PROPLUS_{04ADDEC1-208F-4295-AA61-16789EA56814}) (Version: - Microsoft)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
Windows Phone app for desktop (HKLM\...\{CE9BDD0F-BAF3-474D-B6D8-15B84BDAB229}) (Version: 1.1.2726.0 - Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\gamers\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{7B37E4E2-C62F-4914-9620-8FB5062718CC}\localserver32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{8B9F5BF4-0407-4BB2-9FED-4C0372DABD00}\localserver32 -> C:\Users\gamers\AppData\Local\Facebook\Video\Skype\FacebookVideoCallingProxy.exe (Skype Limited)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{AB807329-7324-431B-8B36-DBD581F56E0B}\localserver32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{CBE9C57E-FFA9-4123-8354-AD360D6DD3CC}\InprocServer32 -> C:\Users\gamers\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\gamers\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\FileSyncApi.dll (Microsoft Corporation)
==================== Restore Points =========================
11-06-2015 15:22:36 End of disinfection
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:04 - 2015-06-10 21:03 - 00000841 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0537AA80-DBFC-475B-8644-334CE0DA7568} - System32\Tasks\Maxthon Update => C:\Program Files\Maxthon\Bin\Maxthon.exe [2015-04-21] (Maxthon International ltd.)
Task: {05F787A0-68B9-48B1-A8C0-DC1F9DA44EFA} - System32\Tasks\MSIAfterburner => C:\Program Files\MSI Afterburner\MSIAfterburner.exe [2015-05-27] ()
Task: {0764E723-063C-48B2-99BE-6B28260A53FB} - \Driver Booster Scan No Task File <==== ATTENTION
Task: {0F17F0DD-FE16-45AD-9963-51CA2DFF2337} - \avastBCLRestartS-1-5-21-3288948882-2604745948-3918771127-1001 No Task File <==== ATTENTION
Task: {1729876A-6922-48AC-85FA-4676FBB59DC9} - System32\Tasks\{27759288-1359-4D96-9727-B9E157346487} => Iexplore.exe http://ui.skype.com/ui/0/6.3.0.107/cs/g ... Error=1603
Task: {2104D8AF-096B-44EB-948B-1EAB47ABF807} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {2BBC3495-2433-46B0-9282-931A2B9F50EE} - \Game_Booster_Startup No Task File <==== ATTENTION
Task: {3EAB1FBD-7A59-458E-B610-2E1FDDFEED50} - System32\Tasks\{D379E7DF-EA2B-4ABB-87F8-CEB5ADA21CBF} => pcalua.exe -a "C:\Program Files\Activision\Call of Duty 2\main\unins000.exe"
Task: {41D313BE-1454-4EC6-BFEC-D2DDDA1B0E20} - \Driver Booster Update No Task File <==== ATTENTION
Task: {4334F530-56FF-4694-B181-76368B3C662A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-10] (Adobe Systems Incorporated)
Task: {517B5F27-87F7-4E4A-96D0-9C7F785E50E6} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-31] (Microsoft Corporation)
Task: {55C165F5-2E1C-4C3A-9F53-808BADBED08C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-05-08] (Piriform Ltd)
Task: {59ADCCF9-E48B-49A5-9EC7-F57AB47ADEDD} - System32\Tasks\SmartDefrag3_Update => C:\Program Files\IObit\Smart Defrag 3\AutoUpdate.exe
Task: {5EE1C4EE-E407-4811-89A0-F0616B242863} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-31] (Microsoft Corporation)
Task: {6A300077-C3CC-4DDE-9840-83CCCF98D050} - System32\Tasks\ASC8_SkipUac_gamers => C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe
Task: {7B65A7BF-2551-40B6-9D1F-AD457C47AB5C} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2014-09-24] ()
Task: {7DEF7729-DA20-419C-87ED-FD86597CE61B} - System32\Tasks\{E16FB6E6-8741-4F42-8B2B-5E74BBF98EF3} => Chrome.exe http://ui.skype.com/ui/0/6.21.0.104/cs/ ... Error=1638
Task: {81695B2B-4D4A-4AD9-AFD7-63D6E0092344} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files\IObit\Game Booster 3\AutoUpdate.exe
Task: {8B09FF82-850F-4259-9CA6-1656B003176F} - System32\Tasks\{17CC0A6D-C320-4899-858B-F082DF5CA983} => Iexplore.exe http://ui.skype.com/ui/0/6.9.59.106/cs/ ... Error=1603
Task: {8E774FF8-2EF7-45BC-B5D7-4EBE71293D1D} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001Core => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-04] (Facebook Inc.)
Task: {8E9647D5-85B4-4E8E-ACD4-DCE8BAC3246F} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {97690DDD-3370-4734-B70C-939F3DD2A5CC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {9CA3B10C-084D-4F6C-9176-711BA5CDE67F} - System32\Tasks\{DBE24F63-2222-4816-B372-D934F0328627} => pcalua.exe -a "C:\Users\gamers\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4Q9DYF5X\counter-strike-1-6-non-stream-09-21-2011-10-29-1018.exe" -d C:\Users\gamers\Desktop
Task: {B0CA6BCE-5BE5-4B71-9F5F-FA4C6E30B46A} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-31] (Microsoft Corporation)
Task: {B3105116-5B0E-4C67-B78A-130103C032C0} - System32\Tasks\{512649CA-897E-46FE-8145-2E15C9998029} => pcalua.exe -a "C:\Program Files\Activision\Call of Duty 2\main\unins000.exe"
Task: {B82C6A64-F8A3-4ACE-9E76-5D028DB93C1E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-04-27] (Avast Software s.r.o.)
Task: {BC2705BC-581D-4AA2-B54E-2FC9B94EB502} - \Driver Booster SkipUAC (gamers) No Task File <==== ATTENTION
Task: {BCE538E5-1BEA-4F89-BFA6-42BD07C77C38} - System32\Tasks\{7106C2D5-B5AB-43F8-9AAE-EBC9718CA656} => pcalua.exe -a "C:\Users\gamers\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J4HNKL5S\GTA---San-Andreas-(Multiplayer).exe" -d C:\Users\gamers\Desktop
Task: {C98CEB2A-C9B4-4376-A990-6D0DF123ABB8} - System32\Tasks\Microsoft Office 15 Sync Maintenance for gamers-PC-gamers gamers-PC => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-04-14] (Microsoft Corporation)
Task: {CD163AC7-190B-4603-AAA8-25DDEA5F4FDD} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001UA => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-04] (Facebook Inc.)
Task: {D284A0F0-2D32-4B6D-A4CE-1C2047B3E2DF} - \SmartDefrag3_Startup No Task File <==== ATTENTION
Task: {D87267FB-D7D6-4A50-8B05-A0DFCD686AD3} - System32\Tasks\ASRockOCTuner => C:\Program Files\ASRock Utility\OCTuner\ASROC.exe [2009-11-04] (ASRock)
Task: {DD574BFE-417C-4992-95CF-B3B26E678279} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-31] (Microsoft Corporation)
Task: {E2FFE418-BEFF-48D6-BDA8-9B08CC1807B8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {E459970A-16CC-4E99-8B6E-EF9CC9337430} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {EF7B842D-5073-4448-BF25-7737A2BBF6DD} - \Uninstaller_SkipUac_Administrator No Task File <==== ATTENTION
Task: {F4E51FBE-F44C-4AD5-847B-35825AB996B5} - System32\Tasks\{B28EE534-4DBE-4FF1-8740-B05F609B3795} => C:\Program Files\Rockstar Games\GTA San Andreas\samp.exe [2014-02-10] ()
Task: {F76330BB-B0F4-460A-9BB9-80AF2F2822B2} - System32\Tasks\{21D870D8-62FC-428E-A6A4-D3B97D4EC382} => Iexplore.exe http://ui.skype.com/ui/0/6.9.59.106/cs/ ... Error=1603
Task: {F8B0A8B0-9CCA-4953-97AC-DEF1A45E5853} - System32\Tasks\{1407F49D-0E30-40C0-B210-904974FDF494} => pcalua.exe -a "C:\Users\gamers\Desktop\Virtual DJ\Sound Effect Pack.exe" -d "C:\Users\gamers\Desktop\Virtual DJ"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001Core.job => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001UA.job => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (Whitelisted) ==============
2015-04-27 18:14 - 2015-04-27 18:14 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-04-27 18:14 - 2015-04-27 18:14 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-06-10 21:33 - 2015-06-10 21:33 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15061001\algo.dll
2015-06-11 13:32 - 2015-06-11 13:32 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15061100\algo.dll
2013-10-16 14:19 - 2014-11-12 23:43 - 00106824 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2011-03-14 17:27 - 2011-03-14 17:27 - 00271712 _____ () C:\ProgramData\DatacardService\HWDeviceService.exe
2015-05-27 12:05 - 2015-05-27 12:05 - 00578272 _____ () C:\Program Files\MSI Afterburner\MSIAfterburner.exe
2015-05-18 13:43 - 2015-05-18 13:43 - 00071680 _____ () C:\Program Files\MSI Afterburner\RTMUI.dll
2015-05-18 13:43 - 2015-05-18 13:43 - 00057856 _____ () C:\Program Files\MSI Afterburner\RTFC.dll
2015-05-18 13:43 - 2015-05-18 13:43 - 00218624 _____ () C:\Program Files\MSI Afterburner\RTCore.dll
2015-05-22 12:56 - 2015-05-22 12:56 - 00357888 _____ () C:\Program Files\MSI Afterburner\RTUI.dll
2015-05-22 13:36 - 2015-05-22 13:36 - 00649216 _____ () C:\Program Files\MSI Afterburner\RTHAL.dll
2015-03-17 14:58 - 2015-03-17 14:58 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-05-28 17:00 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files\MSI\Live Update\unrar.dll
2015-05-14 14:03 - 2014-01-16 15:21 - 00479232 _____ () C:\Program Files\Gaming Keyboard\Monitor.EXE
2015-05-14 14:03 - 2014-06-23 09:58 - 00057344 _____ () C:\Program Files\Gaming Keyboard\lan.dll
2015-05-14 14:03 - 2014-01-10 16:01 - 00061440 _____ () C:\Program Files\Gaming Keyboard\hiddriver.dll
2015-02-20 11:48 - 2015-02-13 11:18 - 18905088 _____ () C:\Program Files\Bloody5\Bloody5\Bloody5.exe
2009-07-13 23:03 - 2009-07-14 03:15 - 00364544 _____ () C:\Windows\system32\msjetoledb40.dll
2015-02-20 11:49 - 2013-04-03 19:29 - 00085504 _____ () C:\Program Files\Bloody5\Bloody5\DLL\DLL_ZoomControl.dll
2015-02-20 11:49 - 2014-01-10 18:48 - 04260352 _____ () C:\Program Files\Bloody5\Bloody5\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2015-05-14 14:03 - 2014-01-16 15:17 - 00372736 _____ () C:\Program Files\Gaming Keyboard\OSD.exe
2014-09-07 13:02 - 2014-09-11 17:06 - 00076888 _____ () C:\Windows\system32\PnkBstrA.exe
2015-05-08 20:50 - 2015-05-08 20:50 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-06-10 14:55 - 2015-06-05 20:22 - 01281864 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.124\libglesv2.dll
2015-06-10 14:55 - 2015-06-05 20:22 - 00080712 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.124\libegl.dll
2015-06-10 14:55 - 2015-06-05 20:22 - 15003464 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.124\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:56E2E879
==================== Safe Mode (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\100sexlinks.com -> 100sexlinks.com
There are 4792 more restricted sites.
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\gamers\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.0.0.138
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: cz.seznam.software.autoupdate => "c:\users\gamers\appdata\roaming\seznam.cz\szninstall.exe" -c
MSCONFIG\startupreg: cz.seznam.software.szndesktop => "c:\users\gamers\appdata\roaming\seznam.cz\bin\wszndesktop.exe" -q
MSCONFIG\startupreg: Facebook Update => "c:\users\gamers\appdata\local\facebook\update\facebookupdate.exe" /c /nocrashserver
MSCONFIG\startupreg: HDAudDeck => c:\program files\via\viaudioi\vdeck\vdeck.exe -r
MSCONFIG\startupreg: IgfxTray => c:\windows\system32\igfxtray.exe
MSCONFIG\startupreg: mncjudqSrv => c:\windows\inf\mncjudq.vbe
MSCONFIG\startupreg: MSStp => c:\windows\system32\msstp.vbe
MSCONFIG\startupreg: NvBackend => c:\program files\nvidia corporation\update core\nvbackend.exe
MSCONFIG\startupreg: Skype => "c:\program files\skype\phone\skype.exe" /minimized /regrun
MSCONFIG\startupreg: SunJavaUpdateSched => c:\program files\common files\java\java update\jusched.exe
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{7C96E967-14BD-4084-91F6-B11820658D17}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{46E4367E-281C-4F04-A25C-2EE03688A63C}] => (Allow) C:\Windows\System32\msiexec.exe
FirewallRules: [{CC5C41D3-20F4-4D05-AD33-AE5712F48256}] => (Allow) C:\Windows\System32\msiexec.exe
FirewallRules: [TCP Query User{EBB03509-52AE-45F2-A1ED-E81CB0B45D19}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [UDP Query User{B08D3122-70E7-4AE8-9860-26353531ED19}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [{20086DD7-5505-42A7-9B9D-F8941F159A65}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{37A81E0B-0D88-4E51-BA16-C81AC6E79234}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{591D3B4E-35E0-46F8-99B2-97B4029C1A49}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{8FD59F14-DB23-4D68-8B54-37F9749C26EC}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{07441D3F-63C8-400E-B770-8D9E9B2733DA}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [TCP Query User{301D61B9-1C8A-4E87-AF57-5108F23D5C45}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [UDP Query User{9BB8E0B1-478A-4BE4-AE2B-C1CD78BC639C}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [{57176C60-155A-4F4B-A2DF-98D5B4741933}] => (Allow) C:\Program Files\Cracked Steam\steam.exe
FirewallRules: [{1950271D-5F57-4F06-9370-2EFC6E32BACB}] => (Allow) C:\Program Files\Cracked Steam\steam.exe
FirewallRules: [TCP Query User{64754D0F-1414-45BD-8523-62D3F8F8E51C}C:\program files\valve\hlds.exe] => (Allow) C:\program files\valve\hlds.exe
FirewallRules: [UDP Query User{ED74F403-6E28-4657-9C0C-AFAF7F8CAE5C}C:\program files\valve\hlds.exe] => (Allow) C:\program files\valve\hlds.exe
FirewallRules: [{A97DD571-25AF-4C9E-A063-CF666B44DAEE}] => (Allow) C:\Program Files\Rockstar Games\EFLC\LaunchEFLC.exe
FirewallRules: [{70B44BAA-1B42-40E2-8322-7DCE2EA22384}] => (Allow) C:\Program Files\Rockstar Games\EFLC\LaunchEFLC.exe
FirewallRules: [TCP Query User{2FC6D716-965B-4644-99C1-76103703FA60}C:\program files\rockstar games\eflc\eflc.exe] => (Allow) C:\program files\rockstar games\eflc\eflc.exe
FirewallRules: [UDP Query User{C82E91F1-40DA-46AB-B3F5-6A84AD9FE938}C:\program files\rockstar games\eflc\eflc.exe] => (Allow) C:\program files\rockstar games\eflc\eflc.exe
FirewallRules: [{42716E63-0B49-40A5-8AA0-9A037603D2F4}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\RM.exe
FirewallRules: [{CB2636C1-282D-4120-8B71-1FD556BF6E11}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\RM.exe
FirewallRules: [{29A38714-0855-442B-AA78-E257D71A58A5}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\Studio.exe
FirewallRules: [{E6BF80F5-1433-4305-B045-EB224256CC86}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\Studio.exe
FirewallRules: [{58A9848F-11B1-4A43-BF53-B9EFACD5BCCB}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\PMSRegisterFile.exe
FirewallRules: [{DC28B233-661B-4BEE-9AA4-61CF8F583F43}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\PMSRegisterFile.exe
FirewallRules: [{963C9F00-1222-4370-978C-4FC9DC2887BC}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\umi.exe
FirewallRules: [{60033E62-67CD-4370-858A-F56BE2EBE7AD}] => (Allow) C:\Program Files\Pinnacle\Studio 11\programs\umi.exe
FirewallRules: [{36F33B5D-3B87-4933-933A-8F83727E8C29}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutLauncher.exe
FirewallRules: [{AEA0C4F7-4B25-495E-8515-3B7913C69F18}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutLauncher.exe
FirewallRules: [{0D76E57F-9CDD-46C5-8F0C-D1C78A9DB8A3}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{1C849EE1-3DCD-4AEB-9E25-2FBB29C72E74}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{FCC294FB-C102-40D7-B637-676EEBBB406D}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{65CC62BF-F465-4156-B84C-4DC94717A6BC}] => (Allow) C:\Program Files\Electronic Arts\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{EC59EEC5-660C-405D-8691-A0449D1CEBC8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{3C311BCA-F9B5-4D82-9412-DD46B21AB2D0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{7353C573-203F-4352-A06D-F5705F64EBBE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{2693DDE6-3D0C-454F-9D81-4E9D357DD0D9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{7385185A-E5D6-436B-97FD-4DCC0A3B285D}] => (Allow) C:\Program Files\Steam\Steam.exe
FirewallRules: [{98351F52-2D51-4D7B-9F62-D445BA2CD4C1}] => (Allow) C:\Program Files\Steam\Steam.exe
FirewallRules: [{CB077B47-48EF-4E73-A097-001E2D169F20}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{4C8861DA-DA76-45A7-9EEF-4D63640F2847}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{1B4C4E50-2793-49D0-90BE-7EADD2970148}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{29178217-0FEC-4B62-A45C-A7CAC374D65B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{C54AD1D2-8675-4381-B6E5-CBD5AAA70A0E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{85AC4FD9-A451-4005-B33C-8610AAFD4495}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{6D42FCEB-07B4-462F-A523-E2A21D989D3F}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{9EE1E0D4-5B5D-48E3-8E31-EB3026017CA1}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{6C8E6E20-355A-465D-B0A4-9F8FFC4EC9B1}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{54CEA1E1-7BD9-41BE-B09F-B0B54FA15AF2}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{7C25761B-DCA3-4624-B392-555BCC893A8D}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{D5620CF5-79C7-4B02-9B8C-762F0C4717CE}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{06756217-E7BD-4DC5-A0AB-E93CC549547B}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{C779D7BC-1356-423B-8E2B-486AE683D2CD}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{7D8DED63-3761-4F10-AA66-A5391490A6EF}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{6E85454F-6F52-40F6-BD33-6548B1348460}] => (Allow) C:\Program Files\Steam\SteamApps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{5D02ABE5-253A-4F78-AE90-E66582E05E56}] => (Allow) C:\Users\gamers\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe
FirewallRules: [{F7646ACB-A5A7-46B2-9B4A-BB0A8486F6FB}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe
FirewallRules: [{7039D84A-6001-424A-9D09-01135D9A72A1}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe
FirewallRules: [{957462F4-5B0A-447A-AB22-0F4612200A03}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe
FirewallRules: [{88C4D41F-4529-422C-8793-586A51737527}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe
FirewallRules: [{E4701E05-5FDC-482A-B31A-A3AC973AA3E8}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe
FirewallRules: [{38352512-3E75-45CD-9CD4-7F45E6207B1C}] => (Allow) C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe
FirewallRules: [TCP Query User{FCDCCB84-BCEA-432A-B7C5-ED9C50D297AC}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{7E4E8C20-072E-4F53-A708-A5947F70CACC}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe
FirewallRules: [{EDEB2407-A4FB-49AC-A2E6-9C8E9B6B8235}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{DA30A9C7-DDA8-4846-A9E9-1AA813DBEA66}] => (Allow) LPort=2869
FirewallRules: [{9B4CC536-C4CC-48A8-B663-6BDA88D1D511}] => (Allow) LPort=1900
FirewallRules: [{39104A3D-4819-473B-AC55-7B34D76EBCA1}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [TCP Query User{B0787977-9A9C-4485-BC6E-02DE41FCFB38}C:\program files\ubisoft\far cry 2\bin\fc2serverlauncher.exe] => (Allow) C:\program files\ubisoft\far cry 2\bin\fc2serverlauncher.exe
FirewallRules: [UDP Query User{C4CF634F-5584-442F-AC02-8F374C0DF4AC}C:\program files\ubisoft\far cry 2\bin\fc2serverlauncher.exe] => (Allow) C:\program files\ubisoft\far cry 2\bin\fc2serverlauncher.exe
FirewallRules: [TCP Query User{8E784F3F-7ED2-47F6-850B-6D7ABD604D45}C:\program files\steam\steamapps\common\half-life\hltv.exe] => (Block) C:\program files\steam\steamapps\common\half-life\hltv.exe
FirewallRules: [UDP Query User{0998BEEA-EBC7-40EC-8790-DF7090930A27}C:\program files\steam\steamapps\common\half-life\hltv.exe] => (Block) C:\program files\steam\steamapps\common\half-life\hltv.exe
FirewallRules: [{F9A611D6-3C89-4CF2-BA1F-8C120A3342AA}] => (Allow) C:\Program Files\Winamp\winamp.exe
FirewallRules: [{533E0398-B46D-4C44-96B7-AA03F78442EE}] => (Allow) C:\Program Files\Winamp\winamp.exe
FirewallRules: [{0CCCD014-CD4F-45DC-B7CF-6CF3465AE4C0}] => (Allow) C:\Program Files\Steam\bin\steamwebhelper.exe
FirewallRules: [{AF9D0D2C-903F-47C7-B882-701422C18E37}] => (Allow) C:\Program Files\Steam\bin\steamwebhelper.exe
FirewallRules: [{5B2BF71B-FFA7-42E3-925D-C7F33D7211AE}] => (Allow) C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe
FirewallRules: [{FA2D75F4-54E1-469A-9C61-99EE3FD1B521}] => (Allow) C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe
FirewallRules: [{3F63CB90-0932-4E18-BE04-C1D39FB9615B}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{7C93689D-3887-446F-A777-0F708FD79741}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{CE496DFD-86A4-406B-A0F9-F1F8359082BD}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{88AB202B-6040-438F-90EF-7CBC3884D953}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [TCP Query User{C922A5F4-1A4B-4CFF-A5C0-547AEA667087}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{793BDBDA-FBF7-4DCE-B49E-08F9C6031F99}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [{BB1E9B44-729F-4F72-8177-3565F6B374E2}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{36B4CE34-3F2C-479D-88FF-0A59B75C6C11}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{801A6E78-E70E-43EA-866D-777E8BF24C0A}] => (Allow) C:\Program Files\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{07BFCFA3-6B87-4529-BA06-29C0A405AA4C}] => (Allow) C:\Program Files\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{1EC4682B-24FB-4BBB-8DD1-1759041D3F24}] => (Allow) C:\Program Files\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\LaunchGTAIV.exe
FirewallRules: [{34E0DDBE-C4C8-49B6-A3AD-62F90707356C}] => (Allow) C:\Program Files\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\LaunchGTAIV.exe
FirewallRules: [TCP Query User{20F76740-633F-433D-B78F-4B8B98AA5D84}C:\program files\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [UDP Query User{CDF978EF-0C47-4EF6-9D2D-491A6E701CCD}C:\program files\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [{603EA860-F01E-4ECF-AE10-5F70EF706B1B}] => (Allow) C:\Program Files\Steam\SteamApps\common\Half-Life\hl.exe
FirewallRules: [{B3D480B2-DCE6-4185-B807-38C433A6BCB7}] => (Allow) C:\Program Files\Steam\SteamApps\common\Half-Life\hl.exe
FirewallRules: [{4F58B8DA-3479-4F7F-88F6-9BB29C99329D}] => (Allow) C:\Program Files\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{069A4943-8E9C-48D1-AB39-6979287DB857}] => (Allow) C:\Program Files\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{B82A35AD-F7C2-461B-A3B7-141E7036638C}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe
FirewallRules: [{EC09B9EB-A3D8-49DA-AD04-54CBCE632806}] => (Allow) C:\Program Files\Steam\SteamApps\common\Cry of Fear\CoFLaunchApp.exe
FirewallRules: [TCP Query User{28432D91-5782-4894-8473-3A08267106E7}C:\program files\steam\steamapps\common\cry of fear\cof.exe] => (Allow) C:\program files\steam\steamapps\common\cry of fear\cof.exe
FirewallRules: [UDP Query User{4679FD71-E2B9-4333-B4FA-C6BE91895140}C:\program files\steam\steamapps\common\cry of fear\cof.exe] => (Allow) C:\program files\steam\steamapps\common\cry of fear\cof.exe
FirewallRules: [{BBE0D52E-D636-4FA1-8297-46988B0B80D5}] => (Allow) C:\Program Files\Maxthon\Bin\MxUp.exe
FirewallRules: [{CF610AD8-C4EB-4E5B-B459-6266688A31FE}] => (Allow) C:\Program Files\Maxthon\Bin\Maxthon.exe
FirewallRules: [{219452F5-7AE2-4FA3-9850-12F17B9D0620}] => (Allow) C:\Program Files\Maxthon\Bin\MxUp.exe
FirewallRules: [{8471F66B-A319-4824-9D13-A48D50820C63}] => (Allow) C:\Program Files\Maxthon\Bin\Maxthon.exe
FirewallRules: [TCP Query User{49B1041A-79C0-46E1-97A4-0E646FFA1609}C:\users\gamers\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\gamers\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{075F907B-38A1-46B5-A207-72E93580B1F0}C:\users\gamers\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\gamers\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{E5454809-AC42-4351-8CC1-7ED110C69BA0}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
Name: Microsoft ISATAP Adapter
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Teredo Tunneling Pseudo-Interface
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (06/11/2015 03:22:43 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.
Details:
AddWin32ServiceFiles: Unable to back up image of service LMIGuardianSvc since QueryServiceConfig API failed
System Error:
Systém nemůže nalézt uvedený soubor.
.
Error: (06/10/2015 10:40:15 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (06/10/2015 10:40:15 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1 se nezdařilo.
Závislé sestavení Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.
Error: (06/10/2015 08:51:57 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program RogueKiller.exe verze 10.8.2.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 1cc4
Čas spuštění: 01d0a3ac368ca16c
Čas ukončení: 9
Cesta k aplikaci: C:\Users\gamers\Desktop\RogueKiller.exe
ID hlášení: baac01d9-0fa1-11e5-934b-bc5ff4c3f641
Error: (06/10/2015 03:19:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program HijackThis.exe verze 2.0.0.4 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.
ID procesu: 20e8
Čas spuštění: 01d0a37f835990bb
Čas ukončení: 12
Cesta k aplikaci: C:\Users\gamers\Desktop\HijackThis.exe
ID hlášení: 1c6cf543-0f73-11e5-9bb4-bc5ff4c3f641
Error: (06/10/2015 02:00:45 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: Služba Šifrování neinicializovala databázi katalogu. Chyba součásti ESENT: -550.
Error: (06/09/2015 01:55:48 PM) (Source: ESENT) (EventID: 455) (User: )
Description: DllHost (5628) WebCacheLocal: Při otevírání souboru protokolu C:\Users\gamers\AppData\Local\Microsoft\Windows\WebCache\V01.log došlo k chybě -1811 (0xfffff8ed).
Error: (06/05/2015 00:31:34 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač
Error: (06/05/2015 00:31:34 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač
Error: (06/03/2015 07:28:24 PM) (Source: IMFservice) (EventID: 0) (User: )
Description: Neplatný popisovač
System errors:
=============
Error: (06/11/2015 02:34:46 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Doporučená aktualizace Skypu pro plochu Windows 7.0 (kb2876229).
Error: (06/11/2015 01:28:30 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Skype Click to Call PNR Service přestala během spouštění reagovat.
Error: (06/11/2015 01:26:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba O2 Internet. OUC neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/11/2015 01:26:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba LMIGuardianSvc neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/11/2015 01:25:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Advanced SystemCare Service 8 neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/10/2015 09:33:12 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Skype Click to Call PNR Service přestala během spouštění reagovat.
Error: (06/10/2015 09:31:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba O2 Internet. OUC neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/10/2015 09:31:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba LMIGuardianSvc neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/10/2015 09:30:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Advanced SystemCare Service 8 neuspěla při spuštění v důsledku následující chyby:
%%2
Error: (06/10/2015 09:25:33 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.
Microsoft Office:
=========================
Error: (06/11/2015 03:22:43 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description:
Details:
AddWin32ServiceFiles: Unable to back up image of service LMIGuardianSvc since QueryServiceConfig API failed
System Error:
Systém nemůže nalézt uvedený soubor.
Error: (06/10/2015 10:40:15 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\STMicroelectronics\Software\Virtual COM Port Driver\dpinst_ia64.exe
Error: (06/10/2015 10:40:15 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\STMicroelectronics\Software\Virtual COM Port Driver\dpinst_amd64.exe
Error: (06/10/2015 08:51:57 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: RogueKiller.exe10.8.2.01cc401d0a3ac368ca16c9C:\Users\gamers\Desktop\RogueKiller.exebaac01d9-0fa1-11e5-934b-bc5ff4c3f641
Error: (06/10/2015 03:19:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: HijackThis.exe2.0.0.420e801d0a37f835990bb12C:\Users\gamers\Desktop\HijackThis.exe1c6cf543-0f73-11e5-9bb4-bc5ff4c3f641
Error: (06/10/2015 02:00:45 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: -550
Error: (06/09/2015 01:55:48 PM) (Source: ESENT) (EventID: 455) (User: )
Description: DllHost5628WebCacheLocal: C:\Users\gamers\AppData\Local\Microsoft\Windows\WebCache\V01.log-1811 (0xfffff8ed)
Error: (06/05/2015 00:31:34 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač
Error: (06/05/2015 00:31:34 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač
Error: (06/03/2015 07:28:24 PM) (Source: IMFservice) (EventID: 0) (User: )
Description: Neplatný popisovač
==================== Memory info ===========================
Processor: Intel(R) Pentium(R) Dual CPU E2180 @ 2.00GHz
Percentage of memory in use: 84%
Total physical RAM: 2047.09 MB
Available physical RAM: 322.03 MB
Total Pagefile: 4094.17 MB
Available Pagefile: 1397.27 MB
Total Virtual: 2047.88 MB
Available Virtual: 1904.74 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:186.31 GB) (Free:10.31 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or

Partition 1: (Active) - (Size=186.3 GB) - (Type=07 NTFS)
==================== End of log ============================
- jerabina
- člen Security týmu
-
Level 6
- Příspěvky: 3647
- Registrován: březen 13
- Bydliště: Litoměřice
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
Odinstaluj Razer Game Booster. Akorát víc bordelu než užitku.
Také tam máš hodně cracků, to je nejspíše i důvod, proč je počítač zpomalený a celkově takto zablešený, příště prosím legálně nejlépe ...
Na Virustotal otestuj následující soubory:
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Také tam máš hodně cracků, to je nejspíše i důvod, proč je počítač zpomalený a celkově takto zablešený, příště prosím legálně nejlépe ...
Na Virustotal otestuj následující soubory:
Kód: Vybrat vše
C:\Windows\system32\Drivers\AsrCDDrv.sys
C:\Windows\system32\Drivers\IesDrv.sys
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
Kód: Vybrat vše
Start
CloseProcesses:
HKLM\...\Run: [] => [X]
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\Run: [RazerGameBooster] => C:\Program Files\Razer\Razer Game Booster\RazerGameBooster.exe [61152 2014-02-25] (Razer Inc.)
HKLM\...\Run: [Live Update] => C:\Program Files\MSI\Live Update\Live Update.exe [3450536 2015-05-04] (Micro-Star INT'L CO., LTD.)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [ASRockIES] => [X]
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [ASRockOCTuner] => [X]
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6369048 2015-05-08] (Piriform Ltd)
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: D - D:\ASRSetup.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: E - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: I - I:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {286d836e-b729-11e2-8da1-806e6f6e6963} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {34004fc6-c39f-11e2-8e75-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {5a59687a-43e1-11e4-a848-bc5ff4c3f641} - J:\SETUP.EXE
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {62701dfc-cd0c-11e2-ba92-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {86d63a5d-b708-11e2-8dea-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {a8b9ea6f-c2ce-11e2-8e5d-001d7d3bccbb} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {b3464e58-882c-11e4-892f-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {b3464e83-882c-11e4-892f-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {b817626e-56b8-11e4-94b6-bc5ff4c3f641} - K:\USBAutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {d3d60ca9-4015-11e4-a1c2-bc5ff4c3f641} - E:\Launcher.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {f880b336-401a-11e4-a253-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {f880b342-401a-11e4-a253-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\MountPoints2: {f880b34c-401a-11e4-a253-bc5ff4c3f641} - E:\AutoRun.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-05-25] (Microsoft Corporation)
HKU\S-1-5-18\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\system32\Macromed\Flash\FlashUtil32_14_0_0_145_ActiveX.exe -update activex
BootExecute: autocheck autochk * SmartDefragBootTime.exe
SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {23352B60-4F79-4D47-A986-1CAB42DB4AEB} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {25AC65E2-E0A3-4EF5-B748-4DF5B78B37F0} URL = http://www.firmy.cz/phr/{searchTerms}?sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {261EA39A-3656-4E0C-8395-D0BA915BBD0A} URL = http://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {4187F0FC-AF41-4E4B-AE67-84C8FD35A0AE} URL = http://terra.im/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {713E0064-558F-4AF4-8A92-A10909AEF6DF} URL = http://www.mapy.cz/?query={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {92BAC1FD-0E27-465F-B6C6-ACEF8099455C} URL = http://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {ADBF7D0B-8DDB-4B88-8370-716876440C0A} URL = http://www.zbozi.cz/?q={searchTerms}&r=campmoz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
Toolbar: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin: @VideoDownloadConverter_ScriptHelper.com/Plugin -> C:\Program Files\VideoDownloadConverter\npVDCPlugin.dll No File
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll No File
FF Plugin HKU\S-1-5-21-3288948882-2604745948-3918771127-1001: ubisoft.com/uplaypc -> C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
R2 RzKLService; C:\Program Files\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.)
S2 AdvancedSystemCareService8; C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [X]
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [18624 2014-06-04] (IObit)
S3 WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [X]
C:\Windows\System32\Drivers\SmartDefragDriver.sys
C:\Program Files\IObit
C:\ProgramData\RogueKiller
C:\ProgramData\IObit
C:\Windows\system32\config\software.iodefrag
C:\Windows\system32\config\default.iodefrag
C:\Windows\system32\config\sam.iodefrag
C:\Windows\system32\config\security.iodefrag
C:\Windows\system32\config\software.iodefrag.bak
C:\Windows\system32\config\default.iodefrag.bak
C:\Windows\system32\config\sam.iodefrag.bak
C:\Windows\system32\config\security.iodefrag.bak
C:\Windows\system32\config\software.iobit
C:\Windows\system32\config\default.iobit
C:\Windows\system32\config\sam.iobit
C:\Windows\system32\config\security.iobit
C:\Windows\system32\config\components.iobit
C:\Windows\system32\config\components.iodefrag.bak
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
C:\Users\gamers\AppData\Local\fusioncache.dat
C:\ProgramData\__FileUploader.log
C:\Users\gamers\AppData\Roaming\PnkBstrK.sys
C:\Users\gamers\AppData\Local\Facebook\Update
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\gamers\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.)
CustomCLSID: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
Task: {0764E723-063C-48B2-99BE-6B28260A53FB} - \Driver Booster Scan No Task File <==== ATTENTION
Task: {0F17F0DD-FE16-45AD-9963-51CA2DFF2337} - \avastBCLRestartS-1-5-21-3288948882-2604745948-3918771127-1001 No Task File <==== ATTENTION
Task: {1729876A-6922-48AC-85FA-4676FBB59DC9} - System32\Tasks\{27759288-1359-4D96-9727-B9E157346487} => Iexplore.exe http://ui.skype.com/ui/0/6.3.0.107/cs/g ... Error=1603
Task: {2BBC3495-2433-46B0-9282-931A2B9F50EE} - \Game_Booster_Startup No Task File <==== ATTENTION
Task: {41D313BE-1454-4EC6-BFEC-D2DDDA1B0E20} - \Driver Booster Update No Task File <==== ATTENTION
Task: {4334F530-56FF-4694-B181-76368B3C662A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-10] (Adobe Systems Incorporated)
Task: {59ADCCF9-E48B-49A5-9EC7-F57AB47ADEDD} - System32\Tasks\SmartDefrag3_Update => C:\Program Files\IObit\Smart Defrag 3\AutoUpdate.exe
Task: {6A300077-C3CC-4DDE-9840-83CCCF98D050} - System32\Tasks\ASC8_SkipUac_gamers => C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe
Task: {7DEF7729-DA20-419C-87ED-FD86597CE61B} - System32\Tasks\{E16FB6E6-8741-4F42-8B2B-5E74BBF98EF3} => Chrome.exe http://ui.skype.com/ui/0/6.21.0.104/cs/ ... Error=1638
Task: {81695B2B-4D4A-4AD9-AFD7-63D6E0092344} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files\IObit\Game Booster 3\AutoUpdate.exe
Task: {8B09FF82-850F-4259-9CA6-1656B003176F} - System32\Tasks\{17CC0A6D-C320-4899-858B-F082DF5CA983} => Iexplore.exe http://ui.skype.com/ui/0/6.9.59.106/cs/ ... Error=1603
Task: {8E774FF8-2EF7-45BC-B5D7-4EBE71293D1D} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001Core => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-04] (Facebook Inc.)
Task: {BC2705BC-581D-4AA2-B54E-2FC9B94EB502} - \Driver Booster SkipUAC (gamers) No Task File <==== ATTENTION
Task: {CD163AC7-190B-4603-AAA8-25DDEA5F4FDD} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001UA => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-04] (Facebook Inc.)
Task: {D284A0F0-2D32-4B6D-A4CE-1C2047B3E2DF} - \SmartDefrag3_Startup No Task File <==== ATTENTION
Task: {E2FFE418-BEFF-48D6-BDA8-9B08CC1807B8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {E459970A-16CC-4E99-8B6E-EF9CC9337430} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-21] (Google Inc.)
Task: {EF7B842D-5073-4448-BF25-7737A2BBF6DD} - \Uninstaller_SkipUac_Administrator No Task File <==== ATTENTION
Task: {F76330BB-B0F4-460A-9BB9-80AF2F2822B2} - System32\Tasks\{21D870D8-62FC-428E-A6A4-D3B97D4EC382} => Iexplore.exe http://ui.skype.com/ui/0/6.9.59.106/cs/ ... Error=1603
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001Core.job => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3288948882-2604745948-3918771127-1001UA.job => C:\Users\gamers\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-3288948882-2604745948-3918771127-1001\...\100sexlinks.com -> 100sexlinks.com
DisableService: c2cautoupdatesvc
EmptyTemp:
End
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
-
- Level 1.5
- Příspěvky: 141
- Registrován: květen 15
- Bydliště: Chodov u Karlových Varů
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
Ale Razer GameBooster mi pomáhá ve hrách :) sekají se mi, s GameBoosterem se mi sekají míň
-
- Level 1.5
- Příspěvky: 141
- Registrován: květen 15
- Bydliště: Chodov u Karlových Varů
- Pohlaví:
- Stav:
Offline
Re: Pc je pomalý.
A kde je ten virustotal?
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 54 hostů