Prosím o kontrola logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
LosMajos
Level 3.5
Level 3.5
Příspěvky: 663
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrola logu

Příspěvekod LosMajos » 05 pro 2015 05:16

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:01-12-2015
Ran by Pepa7 (administrator) on PEPA (05-12-2015 05:13:27)
Running from C:\Users\Pepa7\Desktop
Loaded Profiles: Pepa7 (Available Profiles: Pepa7)
Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe
(Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Micro-Star International) C:\MSI\Smart Utilities\SuperRAIDSvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
() C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Realtek Semiconductor) C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe
(MSI) C:\Windows\SysWOW64\muachost.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320360 2014-08-04] (Intel Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672664 2014-06-30] (Realtek Semiconductor)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4866760 2015-11-29] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Imperator] => C:\Program Files (x86)\Genius\Imperator\IMhid.exe
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-02] (Raptr, Inc)
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\Run: [OscarEditor] => C:\Program Files (x86)\OSCAR Editor X7\OscarEditor.exe [3340288 2012-03-20] ()
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [788480 2014-10-29] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dual Smart Solution.lnk [2015-05-07]
ShortcutTarget: Dual Smart Solution.lnk -> C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Smart Solution\bin\Dual Smart Solution.exe (LG Electronics)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 213.194.204.126 85.132.148.70
Tcpip\..\Interfaces\{87D0EC6C-D6FB-4148-8303-F6792D713566}: [DhcpNameServer] 213.194.204.126 85.132.148.70

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKU\S-1-5-21-1765931364-2895769979-1631063868-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-09-13] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-09-13] (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\izam6xh7.default-1442147379569
FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-10] ()
FF Plugin: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelogx64.dll [No File]
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-10] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1219160.dll [2015-07-23] (Adobe Systems, Inc.)
FF Plugin-x32: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelog.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-09-13] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-09-13] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-1765931364-2895769979-1631063868-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Pepa7\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF Extension: No Name - C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\izam6xh7.default-1442147379569\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [not found]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [245544 2015-07-27] (EasyAntiCheat Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [344288 2015-03-20] (Futuremark)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\MSI Gaming APP\GamingApp_Service.exe [22184 2015-07-29] (Micro-Star Int'l Co., Ltd.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-08-04] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [355232 2015-08-09] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [1741992 2015-07-30] (Micro-Star INT'L CO., LTD.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2099720 2015-11-28] (Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2014-12-26] ()
R2 SuperRAIDSvc; C:\MSI\Smart Utilities\SuperRAIDSvc.exe [29648 2014-08-13] (Micro-Star International)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [18384 2014-08-07] (Intel(R) Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AcpiCtlDrv; C:\Windows\System32\drivers\AcpiCtlDrv.sys [25880 2012-07-17] (Intel Corporation)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
R3 athur; C:\Windows\system32\DRIVERS\athuw8x.sys [2919936 2013-06-02] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [102912 2015-07-15] (Advanced Micro Devices)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [44296 2015-01-20] (LogMeIn Inc.)
R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [28912 2014-06-17] (Intel Corporation)
R3 KYEGKB; C:\Windows\system32\drivers\KYEGKB.sys [25600 2011-09-05] ( )
S3 LGDDCDevice; C:\WINDOWS\SysWOW64\LGI2CDriver.sys [16384 2012-10-17] (LG Soft India) [File not signed]
S3 LGII2CDevice; C:\WINDOWS\SysWOW64\LGPII2CDriver.sys [10752 2012-11-23] (LG Soft India) [File not signed]
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2015-01-06] (Intel Corporation)
R3 NTIOLib_MSI_RAID; C:\MSI\Smart Utilities\NTIOLib_X64.sys [13808 2014-03-17] (MSI)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13536 2015-06-02] ()
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-05 05:13 - 2015-12-05 05:13 - 00011922 _____ C:\Users\Pepa7\Desktop\FRST.txt
2015-12-05 05:13 - 2015-12-05 05:13 - 00000000 ____D C:\FRST
2015-12-05 04:55 - 2015-12-05 04:45 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2015-12-05 04:45 - 2015-12-05 04:53 - 00000000 ____D C:\zoek_backup
2015-12-05 04:44 - 2015-12-05 04:44 - 02350080 _____ (Farbar) C:\Users\Pepa7\Desktop\FRST64.exe
2015-12-05 04:44 - 2015-12-05 04:44 - 01309184 _____ C:\Users\Pepa7\Desktop\zoek.exe
2015-12-04 21:41 - 2015-12-04 21:41 - 00000000 ____D C:\Users\Pepa7\AppData\Local\CrashDumps
2015-12-04 18:12 - 2015-12-04 18:12 - 25023048 _____ C:\Users\Pepa7\Desktop\RogueKillerX64 (1).exe
2015-12-04 18:07 - 2015-12-04 18:07 - 00000553 _____ C:\Users\Pepa7\Desktop\JRT.txt
2015-12-04 18:03 - 2015-12-04 18:03 - 01599336 _____ (Malwarebytes) C:\Users\Pepa7\Desktop\JRT.exe
2015-12-04 16:59 - 2015-12-04 16:59 - 00001118 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-12-04 16:57 - 2015-12-04 16:57 - 22908888 _____ (Malwarebytes ) C:\Users\Pepa7\Downloads\mbam-setup-2.2.0.1024.exe
2015-12-04 16:54 - 2015-12-04 17:58 - 00000000 ____D C:\AdwCleaner
2015-12-04 16:52 - 2015-12-04 16:52 - 01736704 _____ C:\Users\Pepa7\Downloads\AdwCleaner.exe
2015-12-04 16:47 - 2015-12-04 20:47 - 00000000 ____D C:\Users\Pepa7\AppData\Local\AMD
2015-12-04 16:42 - 2015-12-04 16:42 - 00448512 _____ (OldTimer Tools) C:\Users\Pepa7\Downloads\TFC.exe
2015-12-04 16:34 - 2015-12-04 16:34 - 00050688 _____ (Atribune.org) C:\Users\Pepa7\Downloads\ATF-Cleaner.exe
2015-12-04 16:05 - 2015-12-04 16:05 - 00388608 _____ (Trend Micro Inc.) C:\Users\Pepa7\Desktop\HijackThis.exe
2015-12-03 10:43 - 2015-12-03 10:43 - 00004238 _____ C:\WINDOWS\System32\Tasks\AMD Updater
2015-12-03 10:42 - 2015-12-03 10:42 - 00000000 ____D C:\Program Files (x86)\AMD
2015-12-03 10:34 - 2015-12-03 10:37 - 329110880 _____ (AMD Inc.) C:\Users\Pepa7\Downloads\Radeon-Software-Crimson-Edition-15.11.1-Beta-64Bit-Win10-Win8.1-Win7-Nov30.exe
2015-12-02 22:29 - 2015-12-02 22:29 - 36270887 _____ C:\Users\Pepa7\Downloads\MSIAfterburnerSetup.zip
2015-12-02 21:30 - 2015-12-02 21:32 - 216257094 _____ (Valve ) C:\Users\Pepa7\Downloads\cs16full_v43g_cskocz.exe
2015-12-02 15:04 - 2015-12-04 21:17 - 00003014 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner
2015-11-30 18:32 - 2015-11-30 18:33 - 00000026 _____ C:\Users\Pepa7\Desktop\msi afterburner hodnoty.txt
2015-11-29 22:19 - 2015-11-29 22:19 - 00458472 _____ C:\WINDOWS\system32\amdmiracast.dll
2015-11-29 22:19 - 2015-11-29 22:19 - 00141792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2015-11-29 22:19 - 2015-11-29 22:19 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2015-11-29 22:19 - 2015-11-29 22:19 - 00120656 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2015-11-29 22:19 - 2015-11-29 22:19 - 00118608 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2015-11-29 22:19 - 2015-11-29 22:19 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2015-11-29 22:19 - 2015-11-29 22:19 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2015-11-29 22:19 - 2015-11-29 22:19 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2015-11-29 22:19 - 2015-11-29 22:19 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2015-11-29 22:19 - 2015-11-29 22:19 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2015-11-29 22:18 - 2015-11-29 22:18 - 10815664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2015-11-29 22:18 - 2015-11-29 22:18 - 09070320 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2015-11-29 22:18 - 2015-11-29 22:18 - 09017808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2015-11-29 22:18 - 2015-11-29 22:18 - 08089248 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2015-11-29 22:15 - 2015-11-29 22:15 - 00296648 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2015-11-29 22:12 - 2015-11-29 22:12 - 23961088 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2015-11-29 22:08 - 2015-11-29 22:08 - 49984512 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2015-11-29 22:08 - 2015-11-29 22:08 - 00235008 _____ C:\WINDOWS\system32\clinfo.exe
2015-11-29 22:05 - 2015-11-29 22:05 - 00065024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2015-11-29 22:05 - 2015-11-29 22:05 - 00059392 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2015-11-29 22:04 - 2015-11-29 22:04 - 27596288 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2015-11-29 21:44 - 2015-11-29 21:44 - 00677888 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2015-11-29 21:43 - 2015-11-29 21:43 - 06643200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2015-11-29 21:43 - 2015-11-29 21:43 - 00562688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2015-11-29 21:43 - 2015-11-29 21:43 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2015-11-29 21:43 - 2015-11-29 21:43 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2015-11-29 21:38 - 2015-11-29 21:38 - 05223936 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2015-11-29 21:36 - 2015-11-29 21:36 - 00134656 _____ C:\WINDOWS\system32\amdhdl64.dll
2015-11-29 21:36 - 2015-11-29 21:36 - 00123392 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2015-11-29 21:35 - 2015-11-29 21:35 - 31376896 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2015-11-29 21:34 - 2015-11-29 21:34 - 00096256 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2015-11-29 21:34 - 2015-11-29 21:34 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2015-11-29 21:32 - 2015-11-29 21:32 - 00683968 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2015-11-29 21:32 - 2015-11-29 21:32 - 00683968 _____ C:\WINDOWS\system32\atiapfxx.blb
2015-11-29 21:32 - 2015-11-29 21:32 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2015-11-29 21:30 - 2015-11-29 21:30 - 00941568 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2015-11-29 21:29 - 2015-11-29 21:29 - 25840128 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2015-11-29 21:29 - 2015-11-29 21:29 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2015-11-29 21:29 - 2015-11-29 21:29 - 00039424 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2015-11-29 21:27 - 2015-11-29 21:27 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2015-11-29 21:25 - 2015-11-29 21:25 - 15711744 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2015-11-29 21:25 - 2015-11-29 21:25 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2015-11-29 21:25 - 2015-11-29 21:25 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2015-11-29 21:25 - 2015-11-29 21:25 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2015-11-29 21:25 - 2015-11-29 21:25 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2015-11-29 21:24 - 2015-11-29 21:24 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2015-11-29 21:22 - 2015-11-29 21:22 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2015-11-29 21:20 - 2015-11-29 21:20 - 00552448 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2015-11-29 21:20 - 2015-11-29 21:20 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2015-11-29 21:20 - 2015-11-29 21:20 - 00246272 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2015-11-29 21:20 - 2015-11-29 21:20 - 00223744 _____ C:\WINDOWS\system32\dgtrayicon.exe
2015-11-29 21:20 - 2015-11-29 21:20 - 00204800 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2015-11-29 21:20 - 2015-11-29 21:20 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2015-11-29 21:20 - 2015-11-29 21:20 - 00189952 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2015-11-29 21:20 - 2015-11-29 21:20 - 00162304 _____ C:\WINDOWS\system32\atieah64.exe
2015-11-29 21:20 - 2015-11-29 21:20 - 00145408 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2015-11-29 21:20 - 2015-11-29 21:20 - 00031744 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2015-11-29 21:18 - 2015-11-29 21:18 - 01272832 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2015-11-29 21:18 - 2015-11-29 21:18 - 00157696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2015-11-29 21:18 - 2015-11-29 21:18 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2015-11-29 21:18 - 2015-11-29 21:18 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2015-11-29 21:18 - 2015-11-29 21:18 - 00075776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2015-11-29 21:18 - 2015-11-29 21:18 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2015-11-29 21:18 - 2015-11-29 21:18 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2015-11-29 21:17 - 2015-11-29 21:17 - 00671232 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2015-11-29 21:17 - 2015-11-29 21:17 - 00195072 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2015-11-29 21:17 - 2015-11-29 21:17 - 00174592 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2015-11-29 21:17 - 2015-11-29 21:17 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2015-11-29 12:42 - 2015-11-29 12:42 - 00000222 _____ C:\Users\Pepa7\Desktop\Happy Wars.url
2015-11-28 10:29 - 2015-11-28 10:29 - 00000000 ____D C:\ProgramData\ATI
2015-11-28 10:21 - 2015-11-28 10:21 - 00001190 _____ C:\Users\Pepa7\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CNext.lnk
2015-11-28 10:21 - 2015-10-22 18:43 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdgeoqw.dll
2015-11-28 10:21 - 2015-10-22 18:43 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAZST.DLL
2015-11-28 10:21 - 2015-10-22 18:43 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAZEL.DLL
2015-11-28 10:21 - 2015-10-22 18:43 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAZE.DLL
2015-11-28 10:21 - 2015-10-22 17:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdgeoqw.dll
2015-11-28 10:21 - 2015-10-22 17:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAZST.DLL
2015-11-28 10:21 - 2015-10-22 17:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAZEL.DLL
2015-11-28 10:21 - 2015-10-22 17:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAZE.DLL
2015-11-28 10:21 - 2015-10-22 17:21 - 01200128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2015-11-28 10:21 - 2015-10-22 17:21 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2015-11-28 10:21 - 2015-10-22 16:58 - 00868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2015-11-28 10:21 - 2015-10-22 16:58 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
2015-11-28 10:21 - 2015-10-22 15:08 - 00513456 _____ C:\WINDOWS\SysWOW64\locale.nls
2015-11-28 10:21 - 2015-10-22 15:08 - 00513456 _____ C:\WINDOWS\system32\locale.nls
2015-11-28 10:20 - 2015-10-11 07:34 - 00468824 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-11-28 10:20 - 2015-10-11 07:34 - 00462168 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-11-28 10:20 - 2015-10-11 07:34 - 00443224 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbport.sys
2015-11-28 10:20 - 2015-10-11 07:34 - 00092504 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbehci.sys
2015-11-28 10:20 - 2015-10-11 07:34 - 00027992 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbd.sys
2015-11-28 10:20 - 2015-10-10 19:41 - 00037376 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbuhci.sys
2015-11-28 10:20 - 2015-10-10 19:41 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbohci.sys
2015-11-28 10:20 - 2015-10-10 18:20 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-11-28 10:20 - 2015-10-08 17:11 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2015-11-28 10:20 - 2015-10-08 16:50 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2015-11-28 10:20 - 2015-10-05 19:28 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-11-28 10:20 - 2015-10-05 19:25 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-11-28 10:20 - 2015-10-03 20:41 - 01385280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-11-28 10:20 - 2015-10-03 20:41 - 01124384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-11-28 10:20 - 2015-09-28 19:31 - 02775552 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-11-28 10:20 - 2015-09-28 19:24 - 02462720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-11-28 10:16 - 2015-12-03 10:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2015-11-28 10:08 - 2015-11-28 10:10 - 263415464 _____ (AMD Inc.) C:\Users\Pepa7\Downloads\radeon-crimson-15.11-win8.1-64bit.exe
2015-11-22 20:23 - 2015-11-22 20:23 - 00000222 _____ C:\Users\Pepa7\Desktop\South Park The Stick of Truth.url
2015-11-22 12:18 - 2015-11-22 12:18 - 08173005 _____ C:\Users\Pepa7\Downloads\Huzuni 3.5.zip
2015-11-22 12:05 - 2015-12-04 20:56 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\.minecraft
2015-11-18 09:20 - 2015-11-29 22:19 - 00133016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2015-11-18 09:20 - 2015-11-29 22:18 - 10907328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2015-11-18 09:20 - 2015-11-29 22:18 - 01229984 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2015-11-18 04:40 - 2015-11-29 21:32 - 00865280 _____ (AMD) C:\WINDOWS\system32\coinst_15.30.dll
2015-11-17 13:17 - 2015-11-17 13:20 - 315832000 _____ (AMD Inc.) C:\Users\Pepa7\Downloads\amd-catalyst-15.11.1beta-64bit-win10-win8.1-win7-nov14.exe
2015-11-16 21:51 - 2015-11-16 21:51 - 00000781 _____ C:\Users\Public\Desktop\World of Tanks.lnk
2015-11-16 21:50 - 2015-11-16 21:51 - 04999352 _____ (Wargaming.net ) C:\Users\Pepa7\Downloads\WoT_internet_install_eu(3).exe
2015-11-16 18:11 - 2015-11-16 18:13 - 100982897 _____ (Aslain ) C:\Users\Pepa7\Downloads\Aslains_XVM_WoT_Modpack_Installer_v.9.10.48(3).exe
2015-11-16 15:32 - 2015-11-16 15:32 - 04999352 _____ (Wargaming.net ) C:\Users\Pepa7\Downloads\WoT_internet_install_eu(2).exe
2015-11-15 23:36 - 2015-11-15 23:36 - 09971163 _____ (XVM team ) C:\Users\Pepa7\Downloads\xvm-6.1.5.exe
2015-11-15 20:02 - 2015-11-15 20:11 - 100982897 _____ (Aslain ) C:\Users\Pepa7\Downloads\Aslains_XVM_WoT_Modpack_Installer_v.9.10.48(2).exe
2015-11-15 20:00 - 2015-11-15 20:01 - 04999352 _____ (Wargaming.net ) C:\Users\Pepa7\Downloads\WoT_internet_install_eu(1).exe
2015-11-15 14:48 - 2015-11-15 14:50 - 100982897 _____ (Aslain ) C:\Users\Pepa7\Downloads\Aslains_XVM_WoT_Modpack_Installer_v.9.10.48(1).exe
2015-11-15 13:04 - 2015-11-15 13:09 - 04999352 _____ (Wargaming.net ) C:\Users\Pepa7\Downloads\WoT_internet_install_eu.exe
2015-11-15 10:05 - 2015-11-15 10:07 - 100982897 _____ (Aslain ) C:\Users\Pepa7\Downloads\Aslains_XVM_WoT_Modpack_Installer_v.9.10.48.exe
2015-11-14 14:15 - 2015-11-14 14:15 - 00000221 _____ C:\Users\Pepa7\Desktop\Mafia II.url
2015-11-14 11:33 - 2015-11-14 11:34 - 05093504 _____ (Wargaming.net ) C:\Users\Pepa7\Downloads\WoT_internet_install_ct(1).exe
2015-11-14 11:08 - 2015-11-14 11:08 - 05093504 _____ (Wargaming.net ) C:\Users\Pepa7\Downloads\WoT_internet_install_ct.exe
2015-11-13 21:00 - 2015-12-02 22:30 - 00001102 _____ C:\Users\Pepa7\Desktop\MSI Afterburner.lnk
2015-11-11 13:56 - 2015-10-20 22:54 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-11-11 13:56 - 2015-10-20 15:53 - 03705856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-11-11 13:56 - 2015-10-20 15:36 - 02243072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-11-11 13:56 - 2015-10-20 15:35 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-11-11 13:56 - 2015-10-20 15:34 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-11-11 13:56 - 2015-10-20 15:34 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-11-11 13:56 - 2015-10-20 15:34 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-11-11 13:56 - 2015-10-20 15:33 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-11-11 13:56 - 2015-10-20 15:14 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-11-11 13:56 - 2015-10-20 15:13 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-11-11 13:56 - 2015-10-20 15:13 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-11-11 13:56 - 2015-10-20 15:13 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-11-11 13:56 - 2015-10-15 17:08 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-11-11 13:56 - 2015-10-15 16:46 - 00803328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-11-11 13:56 - 2015-10-15 00:02 - 07455064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-11-11 13:56 - 2015-10-15 00:02 - 01659560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-11-11 13:56 - 2015-10-15 00:02 - 01519592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-11-11 13:56 - 2015-10-15 00:02 - 01487008 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-11-11 13:56 - 2015-10-15 00:02 - 01355848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-11-11 13:56 - 2015-10-13 18:10 - 00559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-11-11 13:56 - 2015-10-13 18:10 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-11-11 13:56 - 2015-10-13 16:59 - 00397224 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2015-11-11 13:56 - 2015-10-13 16:59 - 00340872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2015-11-11 13:56 - 2015-10-13 16:59 - 00137960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2015-11-11 13:56 - 2015-10-13 16:59 - 00120376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll
2015-11-11 13:56 - 2015-10-13 16:59 - 00106952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2015-11-11 13:56 - 2015-10-13 16:59 - 00091416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2015-11-11 13:56 - 2015-10-11 07:36 - 00561952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-11-11 13:56 - 2015-10-11 07:36 - 00177496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-11-11 13:56 - 2015-10-10 19:40 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2015-11-11 13:56 - 2015-10-10 19:39 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2015-11-11 13:56 - 2015-10-10 19:07 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2015-11-11 13:56 - 2015-10-10 18:33 - 01441280 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-11-11 13:56 - 2015-10-10 18:27 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-11-11 13:56 - 2015-10-10 18:11 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2015-11-11 13:56 - 2015-10-10 17:45 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-11-11 13:56 - 2015-09-29 13:24 - 00155480 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2015-11-11 13:56 - 2015-09-12 14:47 - 00414559 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-11-11 13:56 - 2015-09-07 17:22 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2015-11-11 13:56 - 2015-09-07 16:54 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2015-11-11 13:56 - 2015-09-07 16:30 - 01091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-11-11 13:56 - 2015-09-04 20:24 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2015-11-11 13:56 - 2015-08-28 23:20 - 00183368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2015-11-11 13:56 - 2015-08-20 21:45 - 01380048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-11-11 13:56 - 2015-08-20 18:48 - 01096704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-11-11 13:55 - 2015-10-31 00:46 - 25818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-11-11 13:55 - 2015-10-31 00:25 - 02886656 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-11-11 13:55 - 2015-10-31 00:24 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-11-11 13:55 - 2015-10-31 00:11 - 05990912 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-11-11 13:55 - 2015-10-31 00:11 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-11-11 13:55 - 2015-10-30 23:52 - 20331520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-11-11 13:55 - 2015-10-30 23:47 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-11-11 13:55 - 2015-10-30 23:42 - 02279936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-11-11 13:55 - 2015-10-30 23:39 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-11-11 13:55 - 2015-10-30 23:36 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-11-11 13:55 - 2015-10-30 23:32 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-11-11 13:55 - 2015-10-30 23:31 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-11-11 13:55 - 2015-10-30 23:22 - 14457856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-11-11 13:55 - 2015-10-30 23:17 - 02487808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-11-11 13:55 - 2015-10-30 23:16 - 04527616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-11-11 13:55 - 2015-10-30 23:14 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-11-11 13:55 - 2015-10-30 23:10 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-11-11 13:55 - 2015-10-30 23:09 - 12854272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-11-11 13:55 - 2015-10-30 23:04 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-11-11 13:55 - 2015-10-30 22:53 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-11-11 13:55 - 2015-10-30 22:51 - 02011136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-11-11 13:55 - 2015-10-30 22:48 - 01311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-11-11 13:55 - 2015-10-30 22:46 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-11-11 13:55 - 2015-10-17 15:19 - 04176384 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-11-11 13:55 - 2015-10-08 17:08 - 01083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-11-11 13:55 - 2015-08-10 19:15 - 00845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-11-11 13:55 - 2015-08-10 19:06 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2015-11-11 13:55 - 2015-08-10 18:49 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2015-11-11 13:55 - 2015-08-10 17:56 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2015-11-11 13:55 - 2015-08-10 17:46 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2015-11-10 23:32 - 2015-11-10 23:32 - 05286088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2015-11-10 17:31 - 2015-11-10 17:31 - 216358356 _____ (Valve ) C:\Users\Pepa7\Downloads\cs16full_v43f_cskocz.exe
2015-11-09 20:03 - 2015-11-09 20:04 - 22939720 _____ C:\Users\Pepa7\Downloads\RogueKillerX64(2).exe
2015-11-09 20:01 - 2015-11-09 20:02 - 22933064 _____ C:\Users\Pepa7\Downloads\RogueKillerX64(1).exe
2015-11-08 21:39 - 2015-11-08 21:39 - 00000000 ____D C:\Users\Pepa7\Desktop\Lego a Bruder
2015-11-08 12:48 - 2015-11-08 12:51 - 315854000 _____ (AMD Inc.) C:\Users\Pepa7\Downloads\AMD-Catalyst-15.11Beta-64Bit-Win10-Win8.1-Win7-Nov3.exe
2015-11-08 11:21 - 2015-11-08 12:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-07 14:10 - 2015-11-12 15:43 - 00000000 ____D C:\Users\Pepa7\Downloads\Gameforge Live
2015-11-06 17:44 - 2015-11-06 17:44 - 00000222 _____ C:\Users\Pepa7\Desktop\Unturned.url

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-05 05:13 - 2013-08-22 14:36 - 00000000 ____D C:\Windows
2015-12-05 05:11 - 2015-08-12 21:06 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Raptr
2015-12-05 05:10 - 2014-12-27 17:37 - 00000000 __SHD C:\Users\Pepa7\IntelGraphicsProfiles
2015-12-05 05:10 - 2014-12-24 23:39 - 00000000 ___DO C:\Users\Pepa7\OneDrive
2015-12-05 04:59 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-12-05 04:58 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-12-05 04:32 - 2015-09-22 14:47 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-12-05 04:23 - 2015-05-24 10:35 - 00036608 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2015-12-04 22:28 - 2015-10-01 17:26 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-12-04 20:55 - 2015-09-25 16:59 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\TS3Client
2015-12-04 18:22 - 2015-05-25 15:26 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1765931364-2895769979-1631063868-1001
2015-12-04 16:59 - 2015-10-01 17:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-12-04 16:59 - 2015-10-01 17:26 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-12-04 14:38 - 2014-12-25 00:02 - 00000000 ____D C:\Program Files (x86)\Steam
2015-12-04 14:37 - 2015-01-19 17:12 - 00000000 ____D C:\Users\Pepa7\Documents\TmForever
2015-12-04 14:17 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-12-03 21:00 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf
2015-12-03 20:54 - 2014-12-25 10:29 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2015-12-03 17:01 - 2015-09-19 05:56 - 00000080 _____ C:\Users\Pepa7\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦
2015-12-03 11:33 - 2014-12-25 23:32 - 00007598 _____ C:\Users\Pepa7\AppData\Local\Resmon.ResmonCfg
2015-12-03 10:42 - 2014-12-24 22:55 - 00000000 ____D C:\Program Files\AMD
2015-12-03 10:37 - 2014-12-27 17:09 - 00000000 ____D C:\AMD
2015-12-02 21:10 - 2015-03-29 10:11 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Skype
2015-12-02 21:09 - 2015-03-29 10:10 - 00000000 ____D C:\ProgramData\Skype
2015-12-02 20:56 - 2014-12-27 16:56 - 00000000 ____D C:\Program Files (x86)\Raptr
2015-11-29 22:55 - 2014-12-25 15:12 - 00000000 ____D C:\ProgramData\Origin
2015-11-29 22:19 - 2014-11-21 03:09 - 00110344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2015-11-29 22:19 - 2013-12-06 23:04 - 00152568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2015-11-29 22:18 - 2013-12-06 23:01 - 01497248 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2015-11-29 22:18 - 2013-12-06 23:00 - 13189336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2015-11-29 22:07 - 2014-11-21 03:32 - 41510912 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2015-11-29 22:04 - 2015-07-29 04:05 - 22348800 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2015-11-29 21:30 - 2014-11-21 03:09 - 00941568 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2015-11-29 21:17 - 2014-11-21 03:08 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2015-11-29 20:35 - 2014-12-25 21:15 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr
2015-11-29 20:35 - 2014-12-25 20:22 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe
2015-11-29 20:34 - 2014-12-25 20:22 - 00280904 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2015-11-29 12:06 - 2014-12-25 15:16 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Origin
2015-11-28 16:29 - 2013-08-22 15:44 - 00486792 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-28 11:40 - 2014-12-25 11:10 - 00000000 ____D C:\MSI
2015-11-28 10:52 - 2014-12-25 15:12 - 00000000 ____D C:\Program Files (x86)\Origin
2015-11-28 10:22 - 2013-08-22 16:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-11-22 21:59 - 2014-12-24 22:47 - 00000000 ____D C:\Users\Pepa7
2015-11-22 21:31 - 2015-01-07 22:18 - 00000000 ____D C:\Users\Pepa7\Documents\My Games
2015-11-22 20:21 - 2014-12-27 11:29 - 00000000 ____D C:\Users\Pepa7\Desktop\Složky
2015-11-16 21:51 - 2014-12-31 15:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks
2015-11-16 21:51 - 2014-12-31 11:33 - 00000000 ____D C:\Games
2015-11-15 23:02 - 2014-03-18 16:33 - 00005640 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-15 23:02 - 2014-03-18 15:54 - 00899074 _____ C:\WINDOWS\system32\perfh005.dat
2015-11-15 23:02 - 2014-03-18 15:54 - 00204486 _____ C:\WINDOWS\system32\perfc005.dat
2015-11-15 20:01 - 2014-12-25 10:29 - 00000000 ____D C:\WINDOWS\SysWOW64\directx
2015-11-15 13:00 - 2014-12-31 11:33 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2015-11-14 11:35 - 2015-01-24 10:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks - Common Test
2015-11-13 21:00 - 2014-12-25 10:29 - 00000000 ____D C:\Users\Pepa7\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2015-11-13 15:20 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\rescache
2015-11-11 15:22 - 2013-08-22 16:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-11-11 15:18 - 2014-12-25 20:49 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-11-11 15:17 - 2014-12-25 20:49 - 145617392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-11-10 23:32 - 2015-07-02 10:56 - 00003802 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-11-10 17:42 - 2014-12-24 22:43 - 00000000 ___DC C:\WINDOWS\Panther
2015-11-08 12:16 - 2015-08-19 00:07 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-06 13:48 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps

==================== Files in the root of some directories =======

2015-03-21 17:39 - 2015-03-21 17:39 - 0001068 _____ () C:\Users\Pepa7\AppData\Roaming\.minecraft – zástupce (2).lnk
2015-03-21 17:39 - 2015-03-21 17:39 - 0001068 _____ () C:\Users\Pepa7\AppData\Roaming\.minecraft – zástupce.lnk
2015-03-09 19:08 - 2015-03-10 15:43 - 0000098 _____ () C:\Users\Pepa7\AppData\Roaming\LauncherSettings_live.cfg
2015-03-09 21:50 - 2015-03-09 21:56 - 0000040 _____ () C:\Users\Pepa7\AppData\Roaming\TheHunterSettings_live.cfg
2014-12-25 23:32 - 2015-12-03 11:33 - 0007598 _____ () C:\Users\Pepa7\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-26 17:25

==================== End of FRST.txt ============================
Don’t panic, it’s organic!

Intel Core i5-10400F, Gigabyte GTX 1660 Super OC, HyperX Predator 16GB (2x8GB) DDR4 2666 CL13, Seasonic CORE GM-500 - 500W, ASRock B460M PRO4 - Intel B460, Kingston A2000, M.2 - 1TB, Arctic Freezer 34 eSports, Ducky Shine 7 MX silent red, Endgame Gear XM1.

Reklama
Uživatelský avatar
LosMajos
Level 3.5
Level 3.5
Příspěvky: 663
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrola logu

Příspěvekod LosMajos » 05 pro 2015 05:16

Additional scan result of Farbar Recovery Scan Tool (x64) Version:01-12-2015
Ran by Pepa7 (2015-12-05 05:14:26)
Running from C:\Users\Pepa7\Desktop
Windows 8.1 (X64) (2014-12-24 21:47:49)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1765931364-2895769979-1631063868-500 - Administrator - Disabled)
Guest (S-1-5-21-1765931364-2895769979-1631063868-501 - Limited - Disabled)
Pepa7 (S-1-5-21-1765931364-2895769979-1631063868-1001 - Administrator - Enabled) => C:\Users\Pepa7

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

3DMark Demo (HKLM-x32\...\Steam App 231350) (Version: - Futuremark)
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.9.160 - Adobe Systems, Inc.)
AIDA64 Extreme v5.00 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 5.00 - FinalWire Ltd.)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.)
Aslain's XVM WoT Modpack verze 9.10.48 (HKLM-x32\...\ZRwTINhSZfduKONYrSCTiCiGPggQZdcLRvoAVxyCOXXpkHeC~1DC3968F_is1) (Version: 9.10.48 - Aslain)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version: - Irrational Games)
Catalyst Control Center Next Localization BR (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2015.1129.1552.28517 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform)
Coin Crypt (HKLM-x32\...\Steam App 264690) (Version: - Dumb and Fat Games)
CPUID CPU-Z 1.71.1 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
CPUID HWMonitor 1.27 (HKLM\...\CPUID HWMonitor_is1) (Version: - )
CrystalDiskInfo 6.3.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.3.1 - Crystal Dew World)
Čeština do hry South Park: Klacek Pravdy verze 1.0 (HKLM-x32\...\{C1EA3034-6A86-4C18-A91F-SPSOTCZ7E0FE}_is1) (Version: 1.0 - Ubisoft)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform)
Dual Smart Solution (HKLM-x32\...\{E61F7C73-277C-44CE-87C4-B574BF0F3803}) (Version: 2.5 - LG Soft India Pvt Ltd)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Free Auto Clicker 4.1.6 (HKLM-x32\...\Free Auto Clicker_is1) (Version: - FreeAutoClicker Co., Ltd.)
Futuremark SystemInfo (HKLM-x32\...\{79659071-4B68-4EC8-833C-49C97B68FCD0}) (Version: 4.36.512.0 - Futuremark)
Gameforge Live 2.0.8 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.8 - Gameforge)
Geeks3D FurMark 1.15.1.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\Steam App 271590) (Version: - Rockstar North)
Happy Wars (HKLM-x32\...\Steam App 246280) (Version: - Toylogic inc.)
HeavyLoad V2.4 (HKLM-x32\...\HeavyLoad_is1) (Version: - JAM Software GmbH)
Imperator Gaming Keyboard (HKLM-x32\...\{12A8DEA6-1DA3-403F-BD28-D61C3908117F}}_is1) (Version: - )
Intel(R) Driver Update Utility 2.0 (x32 Version: 2.0.0.29 - Intel) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.38.1036 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.2.4.1000 - Intel Corporation)
Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel)
Intel® Chipset Device Software (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version: - Intel Corporation)
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version: - Intel Corporation)
Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation)
LEGO® Worlds (HKLM-x32\...\Steam App 332310) (Version: - TT Games)
Mafia II (HKLM-x32\...\Steam App 50130) (Version: - 2K Czech)
Malwarebytes Anti-Malware verze 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Metric Collection SDK 35 (x32 Version: 1.2.0006.00 - Lenovo Group Limited) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 42.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 cs)) (Version: 42.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0.0.5780 - Mozilla)
MSI Afterburner 4.1.1 (HKLM-x32\...\Afterburner) (Version: 4.1.1 - MSI Co., LTD)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 5.0.0.16 - MSI)
MSI Intel Extreme Tuning Utility (HKLM-x32\...\{56351c83-306c-4135-a570-2784d3025548}) (Version: 5.1.0.101 - Intel Corporation)
MSI Intel Extreme Tuning Utility (x32 Version: 5.1.0.101 - Intel Corporation) Hidden
MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.0.025 - MSI)
MSI Smart Utilities (HKLM-x32\...\{009E5DF2-3F97-480B-89DA-F2D5E672E14A}_is1) (Version: 2.0.0.10 - MSI)
Need for Speed™ Most Wanted (HKLM-x32\...\{FB0127F3-985B-44CE-AE29-378CAF60B361}) (Version: 1.5.0.0 - Electronic Arts)
Need for Speed™ Rivals (HKLM-x32\...\{E0A32336-AA27-4053-99B2-C3380B7B95AC}) (Version: 1.4.0.0 - Electronic Arts)
NetworkGenie (HKLM-x32\...\{B416A23D-C2BD-4956-8BAE-5C3BAFF1AC1E}) (Version: 1.0.0.10 - MSI)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.2 - Notepad++ Team)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
OCCT 4.4.1 (HKLM-x32\...\OCCT) (Version: 4.4.1 - Ocbase.com)
Origin (HKLM-x32\...\Origin) (Version: 9.5.12.2862 - Electronic Arts, Inc.)
OSCAR Editor (x32 Version: 12.03.0004 - A4TECH) Hidden
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
Raptr (HKLM-x32\...\Raptr) (Version: - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.35.716.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.8 - Rockstar Games)
SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts)
Skype™ 7.15 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.15.102 - Skype Technologies S.A.)
South Park™: The Stick of Truth™ (HKLM-x32\...\Steam App 213670) (Version: - Obsidian Entertainment)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM-x32\...\{F89CDED6-B1F1-489F-BA44-698BF6A737C2}) (Version: 6.1.6.0 - Husdawg, LLC)
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
TERA (HKLM-x32\...\{A2F166A0-F031-4E27-A057-C69733219434}_is1) (Version: 28 - Gameforge Productions GmbH)
TmNationsForever (HKLM-x32\...\TmNationsForever_is1) (Version: - Nadeo)
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 8.51 - Ghisler Software GmbH)
TP-LINK TL-WN721N_TL-WN722N Driver (HKLM-x32\...\{86A7EED0-02D0-4D91-8183-8D2F23F5E6AE}) (Version: 1.3.1 - TP-LINK)
Trove (HKLM-x32\...\Steam App 304050) (Version: - Trion Worlds)
Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton)
Uplay (HKLM-x32\...\Uplay) (Version: 6.1 - Ubisoft)
Watch_Dogs (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
World of Tanks (HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net)
X7 Oscar Editor (HKLM-x32\...\InstallShield_{3C2379D2-337A-4FFA-9017-BDFB80EC0931}) (Version: 12.03.0004 - A4TECH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1765931364-2895769979-1631063868-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)

==================== Restore Points =========================

14-11-2015 15:42:56 Nainstalováno rozhraní DirectX
22-11-2015 15:29:48 Naplánovaný kontrolní bod
28-11-2015 10:21:14 Windows Update
04-12-2015 18:06:30 JRT Pre-Junkware Removal
05-12-2015 04:14:17 5.12. mazání celených věcí v RogeuKiller
05-12-2015 04:46:27 zoek.exe restore point

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-08-10 17:25 - 2015-12-05 04:46 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts


127.0.0.1 localhost

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1C009115-C159-4BDC-A38E-C2248E9E668A} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {31D90DEB-F9CE-45E2-B4EE-C2A8446C772B} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1765931364-2895769979-1631063868-1001
Task: {357A24A5-386B-4227-8A6F-E52086B5694A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {3E8D8338-CE8F-4039-96E3-854F854A0639} - System32\Tasks\{780AFBB0-3D8D-49A6-BF1E-B4C42B528B6C} => pcalua.exe -a C:\Users\Pepa7\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=smt
Task: {5DB6A30D-3CEB-47C6-A96D-CACD09127F6E} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2015-11-29] (Advanced Micro Devices, Inc.)
Task: {86C2A4AD-4008-4139-A957-32C494C70E27} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2015-06-02] ()
Task: {8E2E4079-6C96-4719-8AE9-29BE1F728C57} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {B1151369-063C-41C4-AE18-A60C7AC8AB5C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-09-16] (Piriform Ltd)
Task: {BB56E747-2BE7-4037-8EEF-559DF9F4E689} - System32\Tasks\RtlNetworkGenieVistaStart => C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe [2014-11-19] (Realtek Semiconductor)
Task: {C7753DE4-7C08-47FD-A362-C1AA13AA4901} - System32\Tasks\MSISW_Host => C:\WINDOWS\SysWOW64\muachost.exe [2015-08-18] (MSI)
Task: {D970A760-2A8E-4869-A6A7-8D0D6A4E5CF9} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-11-11] (Microsoft Corporation)
Task: {DBD46E86-9852-4D1C-92D9-1E430A31D312} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-10] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2014-12-25 20:22 - 2014-12-26 11:20 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2015-06-02 02:19 - 2015-06-02 02:19 - 00578272 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
2015-07-14 13:45 - 2005-07-18 12:43 - 00160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll
2014-12-27 17:46 - 2014-08-13 20:10 - 01723856 _____ () C:\MSI\Smart Utilities\SuperRAIDExt.DLL
2015-05-18 12:43 - 2015-05-18 12:43 - 00071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
2015-05-18 12:43 - 2015-05-18 12:43 - 00057856 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll
2015-05-18 12:43 - 2015-05-18 12:43 - 00218624 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll
2015-05-22 11:56 - 2015-05-22 11:56 - 00357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll
2015-05-22 12:36 - 2015-05-22 12:36 - 00649216 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll
2014-12-27 16:46 - 2014-04-21 15:09 - 00150528 _____ () C:\Program Files (x86)\MSI\NetworkGenie\gep.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd
2011-02-15 19:17 - 2011-02-15 19:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd
2015-10-21 21:29 - 2015-10-21 21:29 - 00113171 _____ () C:\Program Files (x86)\Raptr\libvlc.dll
2015-10-21 21:29 - 2015-10-21 21:29 - 02396691 _____ () C:\Program Files (x86)\Raptr\libvlccore.dll
2015-06-27 00:09 - 2015-06-27 00:09 - 00271872 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00324608 _____ () C:\Program Files (x86)\Raptr\PIL._imaging.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd
2014-06-18 01:56 - 2014-06-18 01:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd
2011-02-15 19:17 - 2011-02-15 19:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll
2010-11-23 00:06 - 2010-11-23 00:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Pepa7\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 213.194.204.126 - 85.132.148.70
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\StartupFolder: => "Dual Smart Solution.lnk"
HKLM\...\StartupApproved\Run32: => "Imperator"
HKLM\...\StartupApproved\Run32: => "Live Update"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\StartupApproved\Run: => "OscarEditor"
HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\...\StartupApproved\Run: => "CCleaner Monitoring"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{7366F5E1-A8D1-450F-B1BF-24BE00E51901}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{5F826DEB-511E-4686-871E-DA017191A7FD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{3C8CAD66-643D-4C84-B975-A894FE0AF130}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{180A2CF3-5021-4273-A2FB-37A1FE2B8F55}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [TCP Query User{1FB326A7-818F-42EC-AA15-4F498EA1C57B}C:\users\pepa7\desktop\složky\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\pepa7\desktop\složky\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{3C92043F-41C4-4902-85E0-3416B698220C}C:\users\pepa7\desktop\složky\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\pepa7\desktop\složky\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{32A8043B-2C51-403D-92C0-1FF305CB9120}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{47BCF864-10DB-4859-84FC-5245CAB70EFB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{345DDB4E-1871-45E9-8815-96D6F528FFD5}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{8472C36F-A71D-40F0-89BE-DEEFFAF326CC}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{CCF251DF-52C7-4B3C-9C07-1B169AD06A80}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{82A456E3-0F6D-444C-B516-645ACAA38691}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [TCP Query User{376AAD66-2D97-47FF-9036-463267D7A1DC}C:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) C:\program files (x86)\tmnationsforever\tmforever.exe
FirewallRules: [UDP Query User{C23CCAB9-CC48-4191-BA8A-E2D9B04BA817}C:\program files (x86)\tmnationsforever\tmforever.exe] => (Allow) C:\program files (x86)\tmnationsforever\tmforever.exe
FirewallRules: [TCP Query User{82DA4AC6-D94B-494F-ABE9-549B815BDCDC}C:\program files (x86)\gameforgelive\games\gbr_eng\tera\tera-launcher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\gbr_eng\tera\tera-launcher.exe
FirewallRules: [UDP Query User{F1F1F65F-BCD2-413A-9975-7D6893F5F79C}C:\program files (x86)\gameforgelive\games\gbr_eng\tera\tera-launcher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\gbr_eng\tera\tera-launcher.exe
FirewallRules: [{661BD1CE-F6F4-48C6-ADB3-16D4FC3421E0}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe
FirewallRules: [{7C04B40B-6370-4C99-B578-F4D2B858EA66}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe
FirewallRules: [{4236E886-F639-421E-8AE8-349C017CE92F}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{26AD009B-5E69-4ECB-8D27-0EDB749061E9}] => (Allow) LPort=2869
FirewallRules: [{103BD253-6597-4465-A59F-014844812D9D}] => (Allow) LPort=1900
FirewallRules: [{F42422A0-4473-4D33-A684-012DE3305F3A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{73F42723-A75B-4D1A-B25F-4CB291F17B38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [TCP Query User{8D665D37-F320-4501-B5C1-BC84D96AD22B}C:\users\pepa7\desktop\složky\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\pepa7\desktop\složky\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{9E0F0534-DDBC-4D14-994C-E72E1F7C84EE}C:\users\pepa7\desktop\složky\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\pepa7\desktop\složky\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{71DB6533-9483-411F-A1AD-D56679578364}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{F5A3BE3C-CA7C-4140-93F8-AF7C2FBDDE74}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{D2E44A63-A879-45E9-A1DC-6FE594810F59}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{9F65789E-56AE-40A3-B99B-0201A93BC780}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\3DMarkLauncher.exe
FirewallRules: [{72B3D437-8348-40CC-9A4A-7261DDCC6A89}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Watch_Dogs\bin\watch_dogs.exe
FirewallRules: [{31D2FDCD-E226-4DA7-A32A-D539B366F975}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Watch_Dogs\bin\watch_dogs.exe
FirewallRules: [{92CDF857-C91A-408C-A8BB-2F1928F97C80}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Rivals\NFS14_x86.exe
FirewallRules: [{CA962410-8E0B-4A8F-A307-AEDD574D6FBA}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Rivals\NFS14_x86.exe
FirewallRules: [{241C69B0-2F71-41E9-AE1E-1C969D453B6A}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Rivals\NFS14.exe
FirewallRules: [{689614C3-AD1C-4A80-B4E6-43F64F963F51}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Rivals\NFS14.exe
FirewallRules: [{4DBABEA0-1B06-4982-B902-1869D9115F51}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\NFS13.exe
FirewallRules: [{7F120A4D-F092-4579-8D34-DA48A84D09DC}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\NFS13.exe
FirewallRules: [{913A3E85-06D5-4760-9B39-350D39B5D623}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe
FirewallRules: [TCP Query User{CEE7332A-DD02-40A9-AF51-48C6F241E512}C:\users\pepa7\counter-strike 1.6 fusion\hl.exe] => (Allow) C:\users\pepa7\counter-strike 1.6 fusion\hl.exe
FirewallRules: [UDP Query User{10A93DCD-CC21-45AD-B637-1C845A79922D}C:\users\pepa7\counter-strike 1.6 fusion\hl.exe] => (Allow) C:\users\pepa7\counter-strike 1.6 fusion\hl.exe
FirewallRules: [{D197510C-CD7F-4760-A325-5D8A895B43BA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trove\GlyphClient.exe
FirewallRules: [{52957058-DB70-4BA7-9961-6832A8869DC4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trove\GlyphClient.exe
FirewallRules: [{00616373-80E6-47D9-88A2-15E35A4B51BF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{87487D04-1B8D-4E1F-8E66-B01ACAB77CC4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7B153ADD-4571-45C6-9009-EE04B6588CED}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{8DF0DE93-EE51-42DE-8407-0A0EEF9E78BF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [TCP Query User{08F7812B-B3B5-40B9-9678-B33D3A8BD5CF}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{FA36B8D9-284F-4F07-AD30-3886358FD4A0}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [{2B069C0C-95B3-4105-AE5E-250D0ECEA6BA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Coin Crypt\PC\CoinCrypt-win.exe
FirewallRules: [{3C7FE830-4EFA-4E6F-B512-5E50919B7094}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Coin Crypt\PC\CoinCrypt-win.exe
FirewallRules: [{446BF19E-2F30-478D-BAB6-E4F781596F80}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{90B1AB68-7152-460F-BA17-163E0CF2C433}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [TCP Query User{2AB303E5-0199-46EB-B92D-41C77779623E}C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe
FirewallRules: [UDP Query User{0CEFAC5D-037D-4EA5-8B77-84E55047E8A0}C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe
FirewallRules: [{B4BB8C2F-72E6-4B7E-8696-6857E83669A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe
FirewallRules: [{347099C3-BCEB-4D14-9F76-58F12E5A6620}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe
FirewallRules: [{4A324F04-8274-42C9-9831-497C39C6131C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{0E3E3022-4225-4A86-B10E-4D77B12ED33E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{1A553669-4290-47F3-A0AC-7226BDDEBFDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{2F2B740E-B68B-4DA8-B952-C93E1FF35704}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe
FirewallRules: [{68D193C3-1885-47C4-94B2-140AE3938158}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{8FFEAA43-DCAB-417F-9CA0-EF979CB98BD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe
FirewallRules: [{ED2A8FC9-4718-4556-B15A-E9E254DD394F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{A352402C-00FC-42D5-AB26-0C1BD55D973A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia II\pc\mafia2.exe
FirewallRules: [{0A376D49-E11C-402D-8A17-D88FCB5F56EA}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe
FirewallRules: [{5B7A9D9E-461B-421B-A1A7-612201957763}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe
FirewallRules: [{D8A9646A-4A0C-4BF3-B304-33579DA2038F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe
FirewallRules: [TCP Query User{3DF34EB8-9821-44A7-9228-FD654B832665}C:\program files (x86)\steam\steamapps\common\happywars\happywars.exe] => (Block) C:\program files (x86)\steam\steamapps\common\happywars\happywars.exe
FirewallRules: [UDP Query User{06513118-169C-4021-B7D4-20B4A658638D}C:\program files (x86)\steam\steamapps\common\happywars\happywars.exe] => (Block) C:\program files (x86)\steam\steamapps\common\happywars\happywars.exe
FirewallRules: [{1CFDA29B-0067-4ECF-8EAD-7937C2551083}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{6C76A765-6275-47A2-96CE-33D1A2FAB5F3}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{4E2AE9ED-E6A0-4A50-AD1D-6623786B043B}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{CC0CF9E3-947C-4EC5-B071-F046CDB7D3CB}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (12/04/2015 09:41:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.9600.17840, časové razítko: 0x555fe1bb
Název chybujícího modulu: d3d11.dll, verze: 6.3.9600.17415, časové razítko: 0x54503b6b
Kód výjimky: 0xc0000005
Posun chyby: 0x0001a2f5
ID chybujícího procesu: 0x1138
Čas spuštění chybující aplikace: 0xIEXPLORE.EXE0
Cesta k chybující aplikaci: IEXPLORE.EXE1
Cesta k chybujícímu modulu: IEXPLORE.EXE2
ID zprávy: IEXPLORE.EXE3
Úplný název chybujícího balíčku: IEXPLORE.EXE4
ID aplikace související s chybujícím balíčkem: IEXPLORE.EXE5

Error: (12/04/2015 04:22:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GWXUX.exe, verze: 6.3.9600.18064, časové razítko: 0x56042d8f
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.18007, časové razítko: 0x55c4c16b
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003d86e
ID chybujícího procesu: 0xfec
Čas spuštění chybující aplikace: 0xGWXUX.exe0
Cesta k chybující aplikaci: GWXUX.exe1
Cesta k chybujícímu modulu: GWXUX.exe2
ID zprávy: GWXUX.exe3
Úplný název chybujícího balíčku: GWXUX.exe4
ID aplikace související s chybujícím balíčkem: GWXUX.exe5

Error: (12/04/2015 02:17:14 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GWXUX.exe, verze: 6.3.9600.18064, časové razítko: 0x56042d8f
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.18007, časové razítko: 0x55c4c16b
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003d86e
ID chybujícího procesu: 0x11f0
Čas spuštění chybující aplikace: 0xGWXUX.exe0
Cesta k chybující aplikaci: GWXUX.exe1
Cesta k chybujícímu modulu: GWXUX.exe2
ID zprávy: GWXUX.exe3
Úplný název chybujícího balíčku: GWXUX.exe4
ID aplikace související s chybujícím balíčkem: GWXUX.exe5

Error: (12/02/2015 05:31:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GWXUX.exe, verze: 6.3.9600.18064, časové razítko: 0x56042d8f
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.18007, časové razítko: 0x55c4c16b
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003d86e
ID chybujícího procesu: 0xab4
Čas spuštění chybující aplikace: 0xGWXUX.exe0
Cesta k chybující aplikaci: GWXUX.exe1
Cesta k chybujícímu modulu: GWXUX.exe2
ID zprávy: GWXUX.exe3
Úplný název chybujícího balíčku: GWXUX.exe4
ID aplikace související s chybujícím balíčkem: GWXUX.exe5

Error: (12/02/2015 05:27:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GWXUX.exe, verze: 6.3.9600.18064, časové razítko: 0x56042d8f
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.18007, časové razítko: 0x55c4c16b
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003d86e
ID chybujícího procesu: 0x1f4
Čas spuštění chybující aplikace: 0xGWXUX.exe0
Cesta k chybující aplikaci: GWXUX.exe1
Cesta k chybujícímu modulu: GWXUX.exe2
ID zprávy: GWXUX.exe3
Úplný název chybujícího balíčku: GWXUX.exe4
ID aplikace související s chybujícím balíčkem: GWXUX.exe5

Error: (12/02/2015 03:09:19 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT AUTHORITY)
Description: There was an error with the Windows Location Provider database

Error: (11/28/2015 06:19:04 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PEPA)
Description: Aplikaci Microsoft.BingWeather_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927142. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (11/28/2015 06:19:04 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program wwahost.exe verze 6.3.9600.17415 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: c6c

Čas spuštění: 01d12a00ba8e3f48

Čas ukončení: 4294967295

Cesta k aplikaci: C:\WINDOWS\system32\wwahost.exe

ID hlášení: 1e0ea836-95f4-11e5-82f3-fcaa14231eaa

Úplný název chybujícího balíčku: Microsoft.BingWeather_3.0.4.337_x64__8wekyb3d8bbwe

ID aplikace související s chybujícím balíčkem: App

Error: (11/28/2015 06:19:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: PEPA)
Description: Aplikace Microsoft.BingWeather_3.0.4.337_x64__8wekyb3d8bbwe+App se nespustila ve stanovenou dobu.

Error: (11/28/2015 04:22:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: cnext.exe, verze: 10.1.1.1522, časové razítko: 0x564c17eb
Název chybujícího modulu: qwindows.dll, verze: 5.5.0.0, časové razítko: 0x558c6f1f
Kód výjimky: 0xc000041d
Posun chyby: 0x000000000000f5ef
ID chybujícího procesu: 0xf30
Čas spuštění chybující aplikace: 0xcnext.exe0
Cesta k chybující aplikaci: cnext.exe1
Cesta k chybujícímu modulu: cnext.exe2
ID zprávy: cnext.exe3
Úplný název chybujícího balíčku: cnext.exe4
ID aplikace související s chybujícím balíčkem: cnext.exe5


System errors:
=============
Error: (12/05/2015 04:53:25 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (12/05/2015 04:53:25 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (12/05/2015 04:53:25 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (12/05/2015 04:53:25 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (12/05/2015 04:53:24 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (12/04/2015 07:00:57 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Výstraha o závažné chybě byla vygenerována a zaslána na vzdálený koncový bod. To může vést k ukončení připojení. Kód závažné chyby definovaný protokolem TLS: 10. Stav chyby Windows SChannel: 10

Error: (12/04/2015 07:00:57 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Výstraha o závažné chybě byla vygenerována a zaslána na vzdálený koncový bod. To může vést k ukončení připojení. Kód závažné chyby definovaný protokolem TLS: 10. Stav chyby Windows SChannel: 10

Error: (12/04/2015 06:56:53 PM) (Source: Tcpip) (EventID: 4199) (User: )
Description: Systém zjistil konflikt IP adresy 192.168.1.102 se systémem,
jehož síťová hardwarová adresa je A0-F4-50-EB-08-EA. Síťové operace v systému mohou
být přerušeny.

Error: (12/04/2015 05:58:56 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Integrated Clock Controller Service - Intel(R) ICCS byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/04/2015 05:58:56 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Extreme Tuning Utility Service byla neočekávaně ukončena. Tento stav nastal již 1krát.


CodeIntegrity:
===================================
Date: 2015-12-02 20:56:44.344
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-12-02 20:56:44.226
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-12-02 20:56:44.107
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-12-02 20:56:43.983
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-12-02 20:56:43.790
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-12-02 20:56:39.609
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-12-02 20:56:39.112
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-12-02 20:56:32.518
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-12-02 20:56:32.373
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2015-12-02 20:56:32.201
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-4160 CPU @ 3.60GHz
Percentage of memory in use: 25%
Total physical RAM: 8088.29 MB
Available physical RAM: 6024.42 MB
Total Virtual: 9368.29 MB
Available Virtual: 7806.88 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.17 GB) (Free:645.86 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 04419E09)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.2 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================
Don’t panic, it’s organic!

Intel Core i5-10400F, Gigabyte GTX 1660 Super OC, HyperX Predator 16GB (2x8GB) DDR4 2666 CL13, Seasonic CORE GM-500 - 500W, ASRock B460M PRO4 - Intel B460, Kingston A2000, M.2 - 1TB, Arctic Freezer 34 eSports, Ducky Shine 7 MX silent red, Endgame Gear XM1.

Uživatelský avatar
Orcus
člen Security týmu
Elite Level 10.5
Elite Level 10.5
Příspěvky: 10645
Registrován: duben 10
Bydliště: Okolo rostou 3 růže =o)
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrola logu

Příspěvekod Orcus » 05 pro 2015 09:41

Podívej se co je v této složce:
C:\Users\Pepa7\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.


Kód: Vybrat vše

Start
CloseProcesses:
CreateRestorePoint:

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKU\S-1-5-21-1765931364-2895769979-1631063868-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
FF ProfilePath: C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\izam6xh7.default-1442147379569
FF Plugin: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelogx64.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelog.dll [No File]
FF Plugin HKU\S-1-5-21-1765931364-2895769979-1631063868-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Pepa7\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF Extension: No Name - C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\izam6xh7.default-1442147379569\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [not found]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
C:\WINDOWS\CbsTemp
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
Task: {1C009115-C159-4BDC-A38E-C2248E9E668A} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {31D90DEB-F9CE-45E2-B4EE-C2A8446C772B} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1765931364-2895769979-1631063868-1001
Task: {357A24A5-386B-4227-8A6F-E52086B5694A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {8E2E4079-6C96-4719-8AE9-29BE1F728C57} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {DBD46E86-9852-4D1C-92D9-1E430A31D312} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-10] (Adobe Systems Incorporated)
Task: {1C009115-C159-4BDC-A38E-C2248E9E668A} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {31D90DEB-F9CE-45E2-B4EE-C2A8446C772B} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1765931364-2895769979-1631063868-1001
Task: {357A24A5-386B-4227-8A6F-E52086B5694A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {8E2E4079-6C96-4719-8AE9-29BE1F728C57} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {DBD46E86-9852-4D1C-92D9-1E430A31D312} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-10] (Adobe Systems Incorporated)




(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusť FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Láska hřeje, ale uhlí je uhlí. :fire:



Log z HJT vkládejte do HJT sekce. Je-li moc dlouhý, rozděl jej do více zpráv.

Pár rad k bezpečnosti PC.

Po dobu mé nepřítomnosti mě zastupuje memphisto, jaro3 a Diallix

Pokud budete spokojeni , můžete podpořit naše fórum.

Uživatelský avatar
LosMajos
Level 3.5
Level 3.5
Příspěvky: 663
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrola logu

Příspěvekod LosMajos » 05 pro 2015 11:11

Soubor pc-help.png


Mám to odstranit?
Don’t panic, it’s organic!

Intel Core i5-10400F, Gigabyte GTX 1660 Super OC, HyperX Predator 16GB (2x8GB) DDR4 2666 CL13, Seasonic CORE GM-500 - 500W, ASRock B460M PRO4 - Intel B460, Kingston A2000, M.2 - 1TB, Arctic Freezer 34 eSports, Ducky Shine 7 MX silent red, Endgame Gear XM1.

Uživatelský avatar
LosMajos
Level 3.5
Level 3.5
Příspěvky: 663
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrola logu

Příspěvekod LosMajos » 05 pro 2015 11:30

Fix result of Farbar Recovery Scan Tool (x64) Version:01-12-2015
Ran by Pepa7 (2015-12-05 11:19:15) Run:1
Running from C:\Users\Pepa7\Desktop
Loaded Profiles: Pepa7 (Available Profiles: Pepa7)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKU\S-1-5-21-1765931364-2895769979-1631063868-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
FF ProfilePath: C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\izam6xh7.default-1442147379569
FF Plugin: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelogx64.dll [No File]
FF Plugin-x32: @esn/npbattlelog,version=2.7.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.0\npbattlelog.dll [No File]
FF Plugin HKU\S-1-5-21-1765931364-2895769979-1631063868-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Pepa7\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [No File]
FF Extension: No Name - C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\izam6xh7.default-1442147379569\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [not found]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
C:\WINDOWS\CbsTemp
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
Task: {1C009115-C159-4BDC-A38E-C2248E9E668A} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {31D90DEB-F9CE-45E2-B4EE-C2A8446C772B} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1765931364-2895769979-1631063868-1001
Task: {357A24A5-386B-4227-8A6F-E52086B5694A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {8E2E4079-6C96-4719-8AE9-29BE1F728C57} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {DBD46E86-9852-4D1C-92D9-1E430A31D312} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-10] (Adobe Systems Incorporated)
Task: {1C009115-C159-4BDC-A38E-C2248E9E668A} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {31D90DEB-F9CE-45E2-B4EE-C2A8446C772B} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1765931364-2895769979-1631063868-1001
Task: {357A24A5-386B-4227-8A6F-E52086B5694A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {8E2E4079-6C96-4719-8AE9-29BE1F728C57} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {DBD46E86-9852-4D1C-92D9-1E430A31D312} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-10] (Adobe Systems Incorporated)



*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
"HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}" => key removed successfully
HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => key not found.
FF ProfilePath: C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\izam6xh7.default-1442147379569 => FRST is scripted not to move this directory.
"HKLM\Software\MozillaPlugins\@esn/npbattlelog,version=2.7.0" => key removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.7.0" => key removed successfully
"HKU\S-1-5-21-1765931364-2895769979-1631063868-1001\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0" => key removed successfully
C:\Users\Pepa7\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll => not found.
C:\Users\Pepa7\AppData\Roaming\Mozilla\Firefox\Profiles\izam6xh7.default-1442147379569\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi => path removed successfully
"HKLM\SOFTWARE\Google\Chrome\Extensions\flliilndjeohchalpbbcdekjklbdgfkk" => key removed successfully
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\flliilndjeohchalpbbcdekjklbdgfkk" => key removed successfully
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => moved successfully
C:\WINDOWS\CbsTemp => moved successfully
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1C009115-C159-4BDC-A38E-C2248E9E668A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1C009115-C159-4BDC-A38E-C2248E9E668A}" => key removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Lenovo Customer Feedback Program 64 35" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{31D90DEB-F9CE-45E2-B4EE-C2A8446C772B}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{31D90DEB-F9CE-45E2-B4EE-C2A8446C772B}" => key removed successfully
C:\WINDOWS\System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1765931364-2895769979-1631063868-1001 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1765931364-2895769979-1631063868-1001" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{357A24A5-386B-4227-8A6F-E52086B5694A}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{357A24A5-386B-4227-8A6F-E52086B5694A}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8E2E4079-6C96-4719-8AE9-29BE1F728C57}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8E2E4079-6C96-4719-8AE9-29BE1F728C57}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DBD46E86-9852-4D1C-92D9-1E430A31D312}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DBD46E86-9852-4D1C-92D9-1E430A31D312}" => key removed successfully
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater" => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1C009115-C159-4BDC-A38E-C2248E9E668A} => key not found.
C:\WINDOWS\System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Lenovo Customer Feedback Program 64 35 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{31D90DEB-F9CE-45E2-B4EE-C2A8446C772B} => key not found.
C:\WINDOWS\System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1765931364-2895769979-1631063868-1001 => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-1765931364-2895769979-1631063868-1001 => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{357A24A5-386B-4227-8A6F-E52086B5694A} => key not found.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8E2E4079-6C96-4719-8AE9-29BE1F728C57} => key not found.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DBD46E86-9852-4D1C-92D9-1E430A31D312} => key not found.
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater => key not found.


The system needed a reboot.

==== End of Fixlog 11:19:42 ====
Don’t panic, it’s organic!

Intel Core i5-10400F, Gigabyte GTX 1660 Super OC, HyperX Predator 16GB (2x8GB) DDR4 2666 CL13, Seasonic CORE GM-500 - 500W, ASRock B460M PRO4 - Intel B460, Kingston A2000, M.2 - 1TB, Arctic Freezer 34 eSports, Ducky Shine 7 MX silent red, Endgame Gear XM1.

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrola logu

Příspěvekod jerabina » 05 pro 2015 14:22

Ano, smaž to.

Co problémy?
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

Uživatelský avatar
LosMajos
Level 3.5
Level 3.5
Příspěvky: 663
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrola logu

Příspěvekod LosMajos » 05 pro 2015 18:20

Smazáno. No jak jsem psal, zjistil jsem že internet jde blbě po celém městě. Jestli je to všechno tak všem moc děkuji za pomoc :-)
Don’t panic, it’s organic!

Intel Core i5-10400F, Gigabyte GTX 1660 Super OC, HyperX Predator 16GB (2x8GB) DDR4 2666 CL13, Seasonic CORE GM-500 - 500W, ASRock B460M PRO4 - Intel B460, Kingston A2000, M.2 - 1TB, Arctic Freezer 34 eSports, Ducky Shine 7 MX silent red, Endgame Gear XM1.

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrola logu

Příspěvekod jerabina » 05 pro 2015 18:25

Stáhni si zde DelFix
https://toolslib.net/downloads/viewdownload/2-delfix/

ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7 a 8, musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore) .
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci.

Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem. Jinak je zpráva zde:
v C: \ DelFix.txt

Pokud nejsou problémy, je to vše a můžeš dát vyřešeno - zelenou "fajfku" ;)
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

Uživatelský avatar
LosMajos
Level 3.5
Level 3.5
Příspěvky: 663
Registrován: prosinec 13
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrola logu  Vyřešeno

Příspěvekod LosMajos » 05 pro 2015 19:13

# DelFix v1.011 - Logfile created 05/12/2015 at 19:09:37
# Updated 18/08/2015 by Xplode
# Username : Pepa7 - PEPA
# Operating System : Windows 8.1 (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\zoek-results.log
Deleted : C:\Users\Pepa7\Downloads\AdwCleaner.exe
Deleted : C:\Users\Pepa7\Downloads\hijackthis.log
Deleted : C:\Users\Pepa7\Downloads\RogueKillerX64(1).exe
Deleted : C:\Users\Pepa7\Downloads\RogueKillerX64(2).exe
Deleted : C:\Users\Pepa7\Downloads\RogueKillerX64.exe
Deleted : C:\Users\Pepa7\Downloads\TFC.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis

~ Cleaning system restore ...

Deleted : RP #93 [Nainstalováno rozhraní DirectX | 11/14/2015 14:42:56]
Deleted : RP #94 [Naplánovaný kontrolní bod | 11/22/2015 14:29:48]
Deleted : RP #95 [Windows Update | 11/28/2015 09:21:14]
Deleted : RP #96 [JRT Pre-Junkware Removal | 12/04/2015 17:06:30]
Deleted : RP #97 [5.12. mazání celených věcí v RogeuKiller | 12/05/2015 03:14:17]
Deleted : RP #98 [zoek.exe restore point | 12/05/2015 03:46:27]
Deleted : RP #100 [Restore Point Created by FRST | 12/05/2015 10:19:17]

New restore point created !

########## - EOF - ##########

Tak ještě jednou všem mockrát děkuji :-)
Don’t panic, it’s organic!

Intel Core i5-10400F, Gigabyte GTX 1660 Super OC, HyperX Predator 16GB (2x8GB) DDR4 2666 CL13, Seasonic CORE GM-500 - 500W, ASRock B460M PRO4 - Intel B460, Kingston A2000, M.2 - 1TB, Arctic Freezer 34 eSports, Ducky Shine 7 MX silent red, Endgame Gear XM1.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 82 hostů