Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-02-2014 Ran by User (administrator) on FX6300 on 06-02-2014 17:56:29 Running from C:\Users\User\Desktop Windows 8.1 Pro (X64) OS Language: Polish Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe () C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Flux Software LLC) C:\Users\User\AppData\Local\FluxSoftware\Flux\flux.exe (NVIDIA Corporation) C:\Users\User\AppData\Local\NVIDIA Corporation\nvxsync.exe (Repkasoft) C:\Program Files (x86)\YoWindow\yowindow.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe () C:\Program Files (x86)\Opera Next\20.0.1387.24\opera_crashreporter.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Opera Software) C:\Program Files (x86)\Opera Next\20.0.1387.24\opera.exe (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\livecomm.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13653208 2013-11-08] (Realtek Semiconductor) HKLM\...\Run: [Launch LCore] - C:\Program Files\Logitech Gaming Software\LCore.exe [7406392 2012-11-29] (Logitech Inc.) HKLM\...\Run: [Nvtmru] - "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation) HKLM\...\Run: [ShadowPlay] - C:\WINDOWS\system32\nvspcap64.dll [1179576 2014-01-21] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-01-21] (NVIDIA Corporation) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2013-12-30] (AVAST Software) HKLM\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x91000000 HKU\S-1-5-21-1213781892-2790713729-861592193-1001\...\Run: [F.lux] - C:\Users\User\AppData\Local\FluxSoftware\Flux\flux.exe [1016712 2013-10-16] (Flux Software LLC) HKU\S-1-5-21-1213781892-2790713729-861592193-1001\...\Run: [Spotify Web Helper] - C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-18] (Spotify Ltd) HKU\S-1-5-21-1213781892-2790713729-861592193-1001\...\Run: [NvidiaHostStart] - C:\Users\User\AppData\Local\NVIDIA Corporation\nvsync.exe [55296 2014-02-06] () HKU\S-1-5-21-1213781892-2790713729-861592193-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x91000000 Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\YoWindow.lnk ShortcutTarget: YoWindow.lnk -> C:\Program Files (x86)\YoWindow\yowindow.exe (Repkasoft) SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\WINDOWS\system32\SSCbFsMntNtf3.dll (EldoS Corporation) SSODL-x32: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\WINDOWS\SysWow64\SSCbFsMntNtf3.dll (EldoS Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x4E09FD14DEECCD01 HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie SearchScopes: HKCU - {68FCDDE3-37BE-465D-979D-6D9BF8F1DBDC} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=902615&p={searchTerms} SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = http://mystart.incredibar.com/mb201/?search={searchTerms}&loc=IB_DS&a=6PQVIsQB26&i=26 BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll (Adblock Plus) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll (Adblock Plus) Handler: livecall - No CLSID Value - Handler: msnim - No CLSID Value - Handler-x32: livecall - No CLSID Value - Handler-x32: msnim - No CLSID Value - Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\user.js FF NewTab: hxxp://www.google.com/firefox FF SearchEngineOrder.1: Google FF SelectedSearchEngine: Google FF Keyword.URL: hxxp://www.google.com/search?ie=UTF-8&oe=utf-8&q= FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.17.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\Microsoft Office\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\User\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\User\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\User\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\User\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\User\AppData\Local\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\User\AppData\Local\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\User\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: facebook.com/fbDesktopPlugin - C:\Users\User\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.) FF Plugin ProgramFiles/Appdata: C:\Users\User\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google) FF Plugin ProgramFiles/Appdata: C:\Users\User\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll () FF Plugin ProgramFiles/Appdata: C:\Users\User\AppData\Roaming\mozilla\plugins\npo1d.dll (Google) FF Extension: Xmarks - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\foxmarks@kei.com [2013-05-22] FF Extension: HTTPS-Everywhere - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\https-everywhere@eff.org [2014-01-10] FF Extension: LastPass - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\support@lastpass.com [2013-04-24] FF Extension: YouTube Unblocker - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\youtubeunblocker@unblocker.yt [2013-11-07] FF Extension: Flagfox - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} [2014-01-02] FF Extension: Bamboo Feed Reader - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\{b2e69492-2358-071a-7056-24ad0c3defb1} [2013-09-20] FF Extension: SearchPreview - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\{EF522540-89F5-46b9-B6FE-1829E2B572C6} [2013-12-08] FF Extension: feedly - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\feedly@devhd.xpi [2013-06-26] FF Extension: FireGestures - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\firegestures@xuldev.org.xpi [2014-01-15] FF Extension: Imgur Uploader - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\giorgio@gilestro.tk.xpi [2013-05-27] FF Extension: Gmail Watcher - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\gmailwatcher@sonthakit.xpi [2013-03-20] FF Extension: Media Hint - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\mediahint@jetpack.xpi [2013-06-20] FF Extension: Private Tab - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\privateTab@infocatcher.xpi [2013-11-07] FF Extension: Thumbnail Zoom Plus - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\thumbnailZoom@dadler.github.com.xpi [2014-01-10] FF Extension: Search by Image for Google - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\{ab4b5718-3998-4a2c-91ae-18a7c2db513e}.xpi [2013-01-07] FF Extension: Adblock Plus - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-10-12] FF Extension: Greasemonkey - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\lmntr21i.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2013-12-25] Chrome: ======= CHR HomePage: CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Picasa) - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.124\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 6 U37) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll No File CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_110.dll No File CHR Plugin: (Java Deployment Toolkit 6.0.370.6) - C:\Windows\SysWOW64\npdeployJava1.dll No File CHR Extension: (Dysk Google) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-01-07] CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-01-07] CHR Extension: (Adblock Plus) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-06-26] CHR Extension: (Szukaj w Google) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-01-07] CHR Extension: (Tampermonkey) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2013-08-27] CHR Extension: (KodyRabatowe.pl) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\kafpjghdfockenndmdalblagbonhemkf [2013-05-14] CHR Extension: (Sprawdzanie poczty Google) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2013-01-07] CHR Extension: (Google Wallet) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-24] CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-01-07] CHR HKLM-x32\...\Chrome\Extension: [hbcennhacfaagdopikcegfcobcadeocj] - C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.0.crx [2012-11-22] CHR HKLM-x32\...\Chrome\Extension: [icdlfehblmklkikfigmjhbmmpmkmpooj] - C:\Program Files (x86)\Common Files\Spigot\GC\errorassistant_1.1.crx [2013-06-07] CHR HKLM-x32\...\Chrome\Extension: [mhkaekfpcppmmioggniknbnbdbcigpkk] - C:\Program Files (x86)\Common Files\Spigot\GC\coupons_2.4.crx [2013-04-26] CHR HKLM-x32\...\Chrome\Extension: [pfndaklgolladniicklehhancnlgocpp] - C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx [2012-11-22] CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [136648 2012-09-20] () R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-12-30] (AVAST Software) R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] () R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-10-25] (IObit) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-01-21] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [16939296 2014-01-21] (NVIDIA Corporation) S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [18360 2013-08-22] (Overwolf Ltd) R2 RzMaelstromVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [4241920 2013-09-04] (A-Volute) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) R2 AODDriver4.2.0; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [57512 2012-09-20] (Advanced Micro Devices) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [78648 2013-12-30] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [92544 2013-11-23] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-11-23] () R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1034464 2013-12-30] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [422216 2013-12-30] (AVAST Software) R3 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [79672 2013-12-30] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2013-12-30] () S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider) R3 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2013-11-27] (Disc Soft Ltd) S3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\atBIOS\GPCIDrv64.sys [14376 2010-02-04] () R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [29672 2013-01-07] (REALiX(tm)) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation) S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-09-30] (Microsoft Corporation) R3 LGSHidFilt; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [66360 2012-10-02] (Logitech Inc.) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [39200 2013-12-27] (NVIDIA Corporation) R2 PfFilter; C:\Program Files (x86)\IObit\Protected Folder\pffilter.sys [38392 2012-11-23] (IObit Information Technology) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation) S3 RZMAELSTROMVADService; C:\Windows\system32\drivers\RzMaelstromVAD.sys [40696 2013-09-04] (Windows (R) Win 7 DDK provider) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation) R3 SSCBFS3; C:\Windows\System32\drivers\sscbfs3.sys [347456 2012-10-30] (EldoS Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation) S3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2013-08-13] (Anchorfree Inc.) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 usbUDisc; C:\Windows\System32\drivers\USBDrv_AMD64.sys [18392 2013-01-25] (Scott) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) S3 XFDriver64; C:\Program Files (x86)\Xfire2\XFDriver64.sys [17160 2013-03-14] (XFire) S1 HssDRV6; \SystemRoot\system32\DRIVERS\hssdrv6.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-06 17:56 - 2014-02-06 17:56 - 00023893 _____ () C:\Users\User\Desktop\FRST.txt 2014-02-06 17:56 - 2014-02-06 17:56 - 00000000 ____D () C:\FRST 2014-02-06 17:54 - 2014-02-06 17:54 - 02082304 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2014-02-06 17:23 - 2014-02-06 17:34 - 00047013 _____ () C:\WINDOWS\DirectX.log 2014-02-06 17:23 - 2014-02-06 17:23 - 00000000 ____D () C:\WINDOWS\SysWOW64\directx 2014-02-05 21:42 - 2014-01-30 21:47 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-02-05 21:42 - 2014-01-30 21:47 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 14:44 - 2014-02-05 14:44 - 00655882 _____ () C:\Users\User\Downloads\YouTubeCenter.crx 2014-01-28 20:19 - 2014-01-28 20:19 - 00000875 _____ () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-28 18:00 - 2014-01-28 18:00 - 00033280 _____ () C:\Users\User\Desktop\Lista obecno-ci SK na m-c luty 2014.xls 2014-01-25 19:52 - 2014-01-21 03:53 - 01179576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2014-01-25 19:52 - 2014-01-21 03:53 - 01048152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2014-01-25 19:51 - 2014-01-25 19:52 - 00000039 _____ () C:\WINDOWS\setupact.log 2014-01-25 19:51 - 2014-01-25 19:51 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-01-25 19:51 - 2013-12-27 19:42 - 00039200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2014-01-25 19:51 - 2013-12-27 19:42 - 00035104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2014-01-25 19:51 - 2013-12-27 19:42 - 00033056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2014-01-18 18:16 - 2014-01-18 18:17 - 00000000 ____D () C:\Users\User\Documents\RPG 2014-01-16 12:16 - 2014-01-16 12:16 - 00000332 _____ () C:\WINDOWS\PFRO.log 2014-01-15 20:16 - 2013-12-09 01:15 - 00787968 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2014-01-15 20:16 - 2013-11-27 16:36 - 03395920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll 2014-01-15 20:16 - 2013-11-27 12:41 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe 2014-01-15 20:16 - 2013-11-27 11:34 - 00138240 _____ () C:\WINDOWS\system32\OEMLicense.dll 2014-01-15 20:16 - 2013-11-27 10:54 - 00103936 _____ () C:\WINDOWS\SysWOW64\OEMLicense.dll 2014-01-15 20:16 - 2013-11-27 09:48 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-15 20:16 - 2013-11-27 09:45 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll 2014-01-15 20:16 - 2013-11-27 09:40 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-01-15 20:16 - 2013-11-27 09:38 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll 2014-01-15 20:16 - 2013-11-27 09:17 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2014-01-15 20:16 - 2013-11-27 09:12 - 00848384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-01-13 12:39 - 2014-02-06 11:54 - 01612473 _____ () C:\WINDOWS\WindowsUpdate.log 2014-01-13 12:39 - 2014-01-13 12:39 - 00000388 _____ () C:\WINDOWS\LkmdfCoInst.log 2014-01-10 17:06 - 2014-01-10 17:06 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup 2014-01-08 12:32 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 15230352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2014-01-08 12:32 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 03071656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 02698272 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6433221.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6433221.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 01436528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00479520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00405280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00357152 _____ () C:\WINDOWS\system32\NvIFROpenGL.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00314656 _____ () C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2014-01-08 12:32 - 2013-12-19 21:33 - 00023754 _____ () C:\WINDOWS\system32\nvinfo.pb 2014-01-08 12:32 - 2013-11-28 14:38 - 00197408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2014-01-08 12:32 - 2013-11-28 14:38 - 00031520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2014-01-08 12:32 - 2013-11-22 09:36 - 01515296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll ==================== One Month Modified Files and Folders ======= 2014-02-06 17:56 - 2014-02-06 17:56 - 00023893 _____ () C:\Users\User\Desktop\FRST.txt 2014-02-06 17:56 - 2014-02-06 17:56 - 00000000 ____D () C:\FRST 2014-02-06 17:55 - 2013-01-07 15:03 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1213781892-2790713729-861592193-1001 2014-02-06 17:54 - 2014-02-06 17:54 - 02082304 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2014-02-06 17:53 - 2013-03-14 16:19 - 00003972 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{B7ACD7E1-556A-4627-9F4B-5C5803B7F6E2} 2014-02-06 17:52 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-02-06 17:46 - 2013-09-30 05:16 - 01825074 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-02-06 17:46 - 2013-09-30 05:00 - 00805918 _____ () C:\WINDOWS\system32\perfh015.dat 2014-02-06 17:46 - 2013-09-30 05:00 - 00163272 _____ () C:\WINDOWS\system32\perfc015.dat 2014-02-06 17:45 - 2013-01-13 21:23 - 00000000 ____D () C:\Users\User\AppData\Roaming\uTorrent 2014-02-06 17:45 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\LiveKernelReports 2014-02-06 17:41 - 2013-11-23 22:24 - 00000000 ____D () C:\Users\User\AppData\Local\NVIDIA Corporation 2014-02-06 17:40 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-02-06 17:39 - 2013-10-17 15:30 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-06 17:39 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2014-02-06 17:34 - 2014-02-06 17:23 - 00047013 _____ () C:\WINDOWS\DirectX.log 2014-02-06 17:23 - 2014-02-06 17:23 - 00000000 ____D () C:\WINDOWS\SysWOW64\directx 2014-02-06 16:44 - 2013-01-07 19:25 - 00000000 ____D () C:\Users\User\AppData\Roaming\.purple 2014-02-06 14:57 - 2013-01-16 00:50 - 00000000 ____D () C:\Users\User\AppData\Roaming\Skype 2014-02-06 11:54 - 2014-01-13 12:39 - 01612473 _____ () C:\WINDOWS\WindowsUpdate.log 2014-02-05 23:02 - 2013-01-11 14:09 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-02-05 15:59 - 2013-01-14 17:57 - 00000000 ____D () C:\Users\User\AppData\Roaming\GG 2014-02-05 15:58 - 2013-01-07 14:51 - 00000000 ____D () C:\Users\User\AppData\Roaming\AIMP3 2014-02-05 15:31 - 2013-01-14 17:57 - 00000000 ____D () C:\Users\User\AppData\Local\GG 2014-02-05 14:44 - 2014-02-05 14:44 - 00655882 _____ () C:\Users\User\Downloads\YouTubeCenter.crx 2014-02-05 10:26 - 2013-05-28 15:19 - 00000000 ____D () C:\Program Files (x86)\Opera Next 2014-02-04 20:03 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-02-03 06:52 - 2013-11-07 21:00 - 00000000 ____D () C:\ProgramData\ProductData 2014-02-01 22:02 - 2013-01-11 21:33 - 00000000 ____D () C:\Users\User\AppData\Roaming\Dropbox 2014-02-01 22:02 - 2013-01-11 21:21 - 00000000 ____D () C:\Program Files (x86)\SugarSync 2014-02-01 22:01 - 2013-01-11 21:34 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-02-01 11:01 - 2013-01-07 14:51 - 00000000 ____D () C:\Program Files (x86)\AIMP3 2014-02-01 10:56 - 2013-01-29 21:28 - 00000000 ____D () C:\Users\User\AppData\Local\ChomikBox 2014-02-01 10:53 - 2013-01-29 21:28 - 00000000 ____D () C:\Users\User\.gstreamer-0.10 2014-01-31 13:49 - 2013-02-12 02:25 - 00000000 ____D () C:\Users\User\AppData\Roaming\Spotify 2014-01-30 21:47 - 2014-02-05 21:42 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-01-30 21:47 - 2014-02-05 21:42 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-28 20:27 - 2013-01-07 14:54 - 00000000 ____D () C:\Users\User\AppData\Roaming\Media Player Classic 2014-01-28 20:19 - 2014-01-28 20:19 - 00000875 _____ () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-28 18:00 - 2014-01-28 18:00 - 00033280 _____ () C:\Users\User\Desktop\Lista obecno-ci SK na m-c luty 2014.xls 2014-01-28 10:27 - 2013-02-12 02:25 - 00000000 ____D () C:\Users\User\AppData\Local\Spotify 2014-01-25 19:52 - 2014-01-25 19:51 - 00000039 _____ () C:\WINDOWS\setupact.log 2014-01-25 19:52 - 2013-10-17 15:29 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-01-25 19:51 - 2014-01-25 19:51 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-01-21 03:53 - 2014-01-25 19:52 - 01179576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2014-01-21 03:53 - 2014-01-25 19:52 - 01048152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2014-01-18 18:17 - 2014-01-18 18:16 - 00000000 ____D () C:\Users\User\Documents\RPG 2014-01-18 18:17 - 2013-11-13 14:50 - 00000000 ____D () C:\Users\User\Desktop\Szkoła 2014-01-18 18:17 - 2013-02-18 17:03 - 00000000 ___RD () C:\Users\User\Desktop\Programy 2014-01-17 10:12 - 2013-12-30 10:12 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update 2014-01-16 15:44 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-01-16 12:16 - 2014-01-16 12:16 - 00000332 _____ () C:\WINDOWS\PFRO.log 2014-01-16 12:16 - 2013-01-07 20:09 - 00001058 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-16 12:16 - 2013-01-07 20:09 - 00001054 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-16 12:14 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\WinStore 2014-01-16 12:14 - 2013-08-14 08:27 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-01-16 12:13 - 2013-01-08 15:10 - 86054176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-01-13 17:15 - 2013-01-07 14:52 - 00000000 ____D () C:\Program Files (x86)\Google 2014-01-13 17:13 - 2013-01-07 20:09 - 00004032 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-01-13 17:13 - 2013-01-07 20:09 - 00003796 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-13 12:39 - 2014-01-13 12:39 - 00000388 _____ () C:\WINDOWS\LkmdfCoInst.log 2014-01-13 12:39 - 2013-10-17 15:29 - 00018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys 2014-01-13 12:21 - 2013-04-21 23:02 - 00000000 ____D () C:\Program Files (x86)\IrfanView 2014-01-13 12:16 - 2013-12-25 00:51 - 00000000 ____D () C:\Users\User\AppData\Roaming\Free Download Manager 2014-01-13 12:16 - 2013-09-12 20:59 - 00000000 ____D () C:\Users\User\AppData\Roaming\TS3Client 2014-01-13 12:15 - 2013-01-07 19:37 - 00000000 ____D () C:\Program Files\CCleaner 2014-01-12 23:10 - 2013-12-12 20:59 - 00000416 _____ () C:\WINDOWS\Tasks\Defraggler Volume F Task.job 2014-01-12 22:31 - 2013-12-12 20:59 - 00000416 _____ () C:\WINDOWS\Tasks\Defraggler Volume E Task.job 2014-01-12 21:44 - 2013-12-12 20:59 - 00000416 _____ () C:\WINDOWS\Tasks\Defraggler Volume C Task.job 2014-01-12 20:58 - 2013-12-12 20:59 - 00000416 _____ () C:\WINDOWS\Tasks\Defraggler Volume D Task.job 2014-01-12 20:58 - 2013-12-12 20:55 - 00000000 ____D () C:\Program Files\Defraggler 2014-01-11 11:09 - 2013-01-07 18:44 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-01-10 18:35 - 2013-06-26 11:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-01-10 17:06 - 2014-01-10 17:06 - 00000000 ____D () C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup 2014-01-10 13:03 - 2013-01-19 19:43 - 00000000 ____D () C:\Program Files (x86)\IObit Files to move or delete: ==================== C:\Users\User\comcat5.dll Some content of TEMP: ==================== C:\Users\User\AppData\Local\Temp\ggdrive-menu.exe C:\Users\User\AppData\Local\Temp\ggdrive-overlay.exe C:\Users\User\AppData\Local\Temp\installstats.exe C:\Users\User\AppData\Local\Temp\uttEB77.tmp.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-04 20:02 ==================== End Of Log ============================