Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:13-06-2015 Ran by Michal (administrator) on STACJONARNY on 15-06-2015 16:21:17 Running from C:\Users\Michal\Desktop Loaded Profiles: Michal (Available Profiles: Michal) Platform: Windows 8.1 Pro (X64) OS Language: Polski (Polska) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Update\GoogleUpdate.exe (BitTorrent, Inc.) C:\Program Files (x86)\uTorrent\uTorrent.exe (Murray Hurps Software Pty Ltd) C:\Program Files (x86)\Ad Muncher\AdMunch.exe (Murray Hurps Software Pty Ltd) C:\Program Files (x86)\Ad Muncher\AdMunch64.exe (Flux Software LLC) C:\Users\Michal\AppData\Local\FluxSoftware\Flux\flux.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Media) C:\Users\Michal\AppData\Local\Orbitum\Application\OrbitumUpdater\OrbitumUpdater.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Michal\AppData\Local\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17200_none_fa7026dd9b04586e\TiWorker.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-08] (NVIDIA Corporation) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5581888 2014-02-24] (ESET) HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-04-10] (Oracle Corporation) HKU\S-1-5-21-3917850209-3315541947-2670492561-1001\...\Run: [Google Update] => C:\Users\Michal\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-10-10] (Google Inc.) HKU\S-1-5-21-3917850209-3315541947-2670492561-1001\...\Run: [uTorrent] => C:\Program Files (x86)\uTorrent\uTorrent.exe [399224 2014-10-10] (BitTorrent, Inc.) HKU\S-1-5-21-3917850209-3315541947-2670492561-1001\...\Run: [AdMuncher] => C:\Program Files (x86)\Ad Muncher\Admunch.exe [595144 2012-10-19] (Murray Hurps Software Pty Ltd) HKU\S-1-5-21-3917850209-3315541947-2670492561-1001\...\Run: [F.lux] => C:\Users\Michal\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-24] (Flux Software LLC) HKU\S-1-5-21-3917850209-3315541947-2670492561-1001\...\Run: [OrbitumAutoLaunch_D4CFEB95258DA051505FACEB1B7B096A] => C:\Users\Michal\AppData\Local\Orbitum\Application\chrome.exe [709120 2015-04-02] (The Orbitum Authors) HKU\S-1-5-21-3917850209-3315541947-2670492561-1001\...\MountPoints2: {fa41eb62-cb40-11e4-bea4-10bf48bd2099} - "G:\LGAutoRun.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2014-10-14] ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OrbitumUpdate.lnk [2015-04-18] ShortcutTarget: OrbitumUpdate.lnk -> C:\Users\Michal\AppData\Local\Orbitum\Application\OrbitumUpdater\OrbitumUpdater.exe (Media) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-3917850209-3315541947-2670492561-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://hi.ru/search/?q={searchTerms} HKU\S-1-5-21-3917850209-3315541947-2670492561-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://hi.ru/?10 HKU\S-1-5-21-3917850209-3315541947-2670492561-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pl-pl/?ocid=iehp BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-18] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-18] (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-18] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-18] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-05-12] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-05-12] (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin HKU\S-1-5-21-3917850209-3315541947-2670492561-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Michal\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.) FF Plugin HKU\S-1-5-21-3917850209-3315541947-2670492561-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Michal\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.) FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2014-10-10] Chrome: ======= CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-10-10] CHR Extension: (Google Docs) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-10-10] CHR Extension: (Google Drive) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-10] CHR Extension: (YouTube) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-10] CHR Extension: (Adblock Plus) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-10-10] CHR Extension: (Google Search) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-10] CHR Extension: (Google Sheets) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-10-10] CHR Extension: (TinEye Reverse Image Search) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\haebnnbpedcbhciplfhjjkbafijpncjl [2014-10-10] CHR Extension: (Google Wallet) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-10] CHR Extension: (Click&Clean App) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2015-01-15] CHR Extension: (Gmail) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-10] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1343408 2014-02-24] (ESET) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-08] (NVIDIA Corporation) R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed] R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-08] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-08] (NVIDIA Corporation) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-09-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-09-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-09-25] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-09-25] (Windows (R) Win 7 DDK provider) R3 dtultrascsibus; C:\Windows\System32\drivers\dtultrascsibus.sys [30352 2015-06-11] (Disc Soft Ltd) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [239320 2013-09-17] (ESET) R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [239296 2013-09-17] (ESET) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [168256 2013-09-17] (ESET) R2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [220232 2013-09-17] (ESET) R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [44120 2013-09-17] (ESET) R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [62136 2013-09-17] (ESET) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-08] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-09-24] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-06-15 16:12 - 2015-06-15 16:12 - 00000000 ____D C:\Users\Michal\Desktop\FRST-OlderVersion 2015-06-11 19:25 - 2015-06-11 19:25 - 00009273 _____ C:\Users\Michal\Desktop\Gmer.txt 2015-06-11 18:52 - 2015-06-15 16:20 - 00000398 _____ C:\Users\Michal\Desktop\Nowy dokument tekstowy.txt 2015-06-11 18:45 - 2014-01-28 19:36 - 00380416 _____ C:\Users\Michal\Desktop\gmer.exe 2015-06-11 18:43 - 2015-06-11 18:43 - 00036528 _____ C:\Users\Michal\Desktop\Shortcut.txt 2015-06-11 18:43 - 2015-06-11 18:43 - 00025967 _____ C:\Users\Michal\Desktop\Addition.txt 2015-06-11 18:42 - 2015-06-15 16:21 - 00016887 _____ C:\Users\Michal\Desktop\FRST.txt 2015-06-11 18:40 - 2015-06-15 16:21 - 00000000 ____D C:\FRST 2015-06-11 18:39 - 2015-06-15 16:12 - 02109952 _____ (Farbar) C:\Users\Michal\Desktop\FRST64.exe 2015-06-11 17:39 - 2015-06-11 17:39 - 00000000 ____D C:\Program Files\DAEMON Tools Pro 2015-06-11 17:32 - 2015-06-11 17:32 - 00000000 ____D C:\Users\Public\Documents\Daemon Tools Images 2015-06-11 17:30 - 2015-06-11 17:30 - 00000000 ____D C:\Users\Michal\AppData\Local\Disc_Soft_Ltd 2015-06-11 17:25 - 2015-06-11 17:25 - 00000042 _____ C:\Users\Michal\Desktop\Ďîčńę â číňĺđíĺňĺ.URL 2015-06-11 16:56 - 2015-06-11 16:57 - 00030352 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtultrascsibus.sys 2015-05-28 17:00 - 2015-05-28 17:15 - 00000000 ____D C:\Users\Michal\Desktop\MAMY 2015-05-28 16:57 - 2015-06-11 17:07 - 00000000 ____D C:\ProgramData\Ashampoo 2015-05-28 16:57 - 2015-05-28 16:57 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Ashampoo 2015-05-28 16:57 - 2015-05-28 16:57 - 00000000 ____D C:\Users\Michal\AppData\Local\ashampoo 2015-05-18 18:39 - 2015-05-18 18:39 - 00000000 ____D C:\Users\Michal\AppData\Local\NVIDIA Corporation 2015-05-18 18:25 - 2015-05-08 02:35 - 01316184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2015-05-18 18:25 - 2015-05-08 02:35 - 01316000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2015-05-18 18:25 - 2015-05-08 02:34 - 01756424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2015-05-18 18:25 - 2015-05-08 02:34 - 01570672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2015-05-18 18:24 - 2015-05-18 18:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-05-18 18:24 - 2015-05-18 18:24 - 00002153 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2015-05-18 18:24 - 2015-05-12 04:34 - 00571024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2015-05-18 18:23 - 2015-05-18 18:24 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2015-05-18 18:23 - 2015-05-13 08:52 - 00195912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2015-05-18 18:23 - 2015-05-13 08:52 - 00031552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 42718864 _____ C:\WINDOWS\system32\nvcompiler.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 37741712 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 30478992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 22945424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 16145176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 15858728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 14455296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 13263568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 11790144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 10972304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2015-05-18 18:23 - 2015-05-12 08:27 - 03363224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 02932368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 02599056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 01898312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435286.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 01557648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435286.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 01099808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 01059984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 01050256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 00982672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 00974480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 00939080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 00878816 _____ C:\WINDOWS\system32\nvmcumd.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 00176064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 00154256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 00150832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2015-05-18 18:23 - 2015-05-12 08:27 - 00128512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2015-05-18 18:23 - 2014-11-22 12:46 - 00038032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2015-05-18 18:23 - 2014-11-22 12:46 - 00035472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2015-05-18 18:23 - 2014-11-22 12:46 - 00032400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2015-05-18 18:19 - 2015-05-18 18:19 - 00000000 ____D C:\NVIDIA ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-06-15 16:21 - 2014-10-10 16:01 - 00000000 ____D C:\Users\Michal\AppData\Roaming\uTorrent 2015-06-15 16:18 - 2014-10-10 10:09 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3917850209-3315541947-2670492561-1001 2015-06-15 16:13 - 2014-11-07 13:04 - 00000000 ____D C:\ProgramData\NVIDIA 2015-06-15 16:13 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-06-15 16:12 - 2014-12-20 19:40 - 00001163 _____ C:\Users\Public\Desktop\Opera.lnk 2015-06-15 16:12 - 2014-10-10 10:01 - 00002472 _____ C:\Users\Michal\Desktop\Google Chrome.lnk 2015-06-15 16:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-06-15 15:43 - 2014-10-10 19:04 - 00000000 ____D C:\Users\Michal\AppData\Roaming\vlc 2015-06-15 15:39 - 2014-11-07 13:04 - 01523609 _____ C:\WINDOWS\WindowsUpdate.log 2015-06-15 15:24 - 2014-10-10 10:00 - 00001086 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3917850209-3315541947-2670492561-1001UA.job 2015-06-13 14:51 - 2014-11-07 13:07 - 00000000 ____D C:\Users\Michal 2015-06-13 14:15 - 2014-10-10 10:00 - 00001034 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3917850209-3315541947-2670492561-1001Core.job 2015-06-11 18:50 - 2014-09-24 07:58 - 00125230 _____ C:\WINDOWS\PFRO.log 2015-06-11 17:27 - 2014-10-19 13:10 - 00000000 ____D C:\Users\Michal\AppData\Roaming\dvdcss 2015-06-11 16:53 - 2014-09-24 17:08 - 00005426 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-06-11 16:53 - 2014-09-24 16:35 - 00940558 _____ C:\WINDOWS\system32\perfh015.dat 2015-06-11 16:53 - 2014-09-24 16:35 - 00207470 _____ C:\WINDOWS\system32\perfc015.dat 2015-06-01 19:01 - 2013-08-22 16:46 - 00300077 _____ C:\WINDOWS\setupact.log 2015-05-18 18:40 - 2014-11-07 13:04 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-05-18 18:40 - 2014-10-10 10:09 - 00000000 ____D C:\Users\Michal\AppData\Local\NVIDIA 2015-05-18 18:25 - 2014-11-07 13:04 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-05-18 18:25 - 2014-11-07 13:04 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation ==================== Files in the root of some directories ======= 2014-10-14 08:31 - 2014-11-12 20:09 - 0001712 _____ () C:\ProgramData\hpzinstall.log 2015-01-04 18:26 - 2015-01-04 18:26 - 0003584 _____ () C:\ProgramData\wtwLicensing.db ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-11-07 13:03 ==================== End of log ============================