Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-11-2014
- Ran by Dardan (administrator) on DARDAN-PC on 21-11-2014 01:25:26
- Running from C:\Users\Dardan\Downloads
- Loaded Profile: Dardan (Available profiles: Dardan)
- Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
- Internet Explorer Version 11
- Boot Mode: Normal
- Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- (AVAST Software) D:\Program Files\AVAST Software\Avast\AvastSvc.exe
- () C:\Windows\SysWOW64\PnkBstrA.exe
- (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
- (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
- (http://tortoisesvn.net) D:\Program Files\TortoiseSVN\bin\TSVNCache.exe
- (AVAST Software) D:\Program Files\AVAST Software\Avast\avastui.exe
- (Razer USA Ltd) D:\Program Files (x86)\Razer\Abyssus1800\Abyssus1800Tray.exe
- (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
- (Microsoft Corporation) C:\Windows\System32\dllhost.exe
- (Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
- (Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.5293\Battle.net.exe
- (Piriform Ltd) D:\Program Files\CCleaner\CCleaner64.exe
- (Valve Corporation) E:\Steam\Steam.exe
- (Valve Corporation) E:\Steam\bin\steamwebhelper.exe
- (Mozilla Corporation) D:\Program Files (x86)\Mozilla Firefox\firefox.exe
- (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
- (Blizzard Entertainment) E:\Games\World of Warcraft\World of Warcraft\Wow-64.exe
- (VS Revo Group) D:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
- (Mozilla Corporation) D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
- (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_223.exe
- (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_223.exe
- (Microsoft Corporation) C:\Windows\System32\dllhost.exe
- ==================== Registry (Whitelisted) ==================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM-x32\...\Run: [AvastUI.exe] => D:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-10-03] (AVAST Software)
- HKLM-x32\...\Run: [Razer Abyssus1800 Driver] => D:\Program Files (x86)\Razer\Abyssus1800\Abyssus1800Tray.exe [821136 2011-04-28] (Razer USA Ltd)
- HKLM-x32\...\Run: [] => [X]
- HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585536 2014-09-29] (Razer Inc.)
- HKU\S-1-5-19\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
- HKU\S-1-5-20\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
- HKU\S-1-5-21-1363601413-4122985648-467028356-1000\...\Policies\system: [DisableLockWorkstation] 0
- HKU\S-1-5-21-1363601413-4122985648-467028356-1000\...\MountPoints2: {3218ddcb-15b1-11e0-894b-806e6f6e6963} - F:\setup.exe
- HKU\S-1-5-21-1363601413-4122985648-467028356-1000\...\MountPoints2: {90200a4f-8f0a-11e2-b764-806e6f6e6963} - F:\Setup.exe
- HKU\S-1-5-21-1363601413-4122985648-467028356-1000\...\MountPoints2: {ca2d9514-3b1e-11e4-9d85-e06995e3b1a1} - G:\Startme.exe
- ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => D:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
- ShellIconOverlayIdentifiers: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dardan\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dardan\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dardan\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dardan\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
- ShellIconOverlayIdentifiers: [HardLinkMenu] -> {0A479751-02BC-11d3-A855-0004AC2568AA} => d:\Program Files\LinkShellExtension\HardlinkShellExt.dll (Hermann Schinagl)
- ShellIconOverlayIdentifiers: [IconOverlayHardLink] -> {0A479751-02BC-11d3-A855-0004AC2568DD} => d:\Program Files\LinkShellExtension\HardlinkShellExt.dll (Hermann Schinagl)
- ShellIconOverlayIdentifiers: [IconOverlaySymbolicLink] -> {0A479751-02BC-11d3-A855-0004AC2568EE} => d:\Program Files\LinkShellExtension\HardlinkShellExt.dll (Hermann Schinagl)
- ShellIconOverlayIdentifiers-x32: [1TortoiseNormal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers-x32: [2TortoiseModified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers-x32: [3TortoiseConflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers-x32: [4TortoiseLocked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers-x32: [5TortoiseReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers-x32: [6TortoiseDeleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers-x32: [7TortoiseAdded] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers-x32: [8TortoiseIgnored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers-x32: [9TortoiseUnversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll (http://tortoisesvn.net)
- ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dardan\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dardan\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dardan\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dardan\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
- ShellIconOverlayIdentifiers-x32: [HardLinkMenu] -> {0A479751-02BC-11d3-A855-0004AC2568AA} => d:\Program Files\LinkShellExtension\32\HardlinkShellExt.dll (Hermann Schinagl)
- ShellIconOverlayIdentifiers-x32: [IconOverlayHardLink] -> {0A479751-02BC-11d3-A855-0004AC2568DD} => d:\Program Files\LinkShellExtension\32\HardlinkShellExt.dll (Hermann Schinagl)
- ShellIconOverlayIdentifiers-x32: [IconOverlaySymbolicLink] -> {0A479751-02BC-11d3-A855-0004AC2568EE} => d:\Program Files\LinkShellExtension\32\HardlinkShellExt.dll (Hermann Schinagl)
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- ProxyServer: [S-1-5-21-1363601413-4122985648-467028356-1000] => 85.214.242.208:3128
- HKU\S-1-5-21-1363601413-4122985648-467028356-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://at.msn.com/?ocid=iehp
- HKU\S-1-5-21-1363601413-4122985648-467028356-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xDEB22FA65F2ECE01
- HKU\S-1-5-21-1363601413-4122985648-467028356-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-AT
- SearchScopes: HKLM -> DefaultScope value is missing.
- SearchScopes: HKLM-x32 -> DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL =
- BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> D:\Robo\RoboForm-x64.dll (Siber Systems Inc.)
- BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
- BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
- BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
- BHO-x32: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> D:\Robo\roboform.dll (Siber Systems Inc.)
- BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
- BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
- BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
- Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - D:\Robo\RoboForm-x64.dll (Siber Systems Inc.)
- Toolbar: HKLM-x32 - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - D:\Robo\roboform.dll (Siber Systems Inc.)
- Winsock: Catalog5 10 C:\Windows\SysWOW64\PrxerNsp.dll [56424] ()
- Winsock: Catalog5-x64 10 %SystemRoot%\system32\PrxerNsp.dll [57448] ()
- Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
- FireFox:
- ========
- FF ProfilePath: C:\Users\Dardan\AppData\Roaming\Mozilla\Firefox\Profiles\83nt9upu.default-1416522917525
- FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_223.dll ()
- FF Plugin: @java.com/DTPlugin,version=10.17.2 -> C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
- FF Plugin: @microsoft.com/GENUINE -> disabled No File
- FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
- FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
- FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> D:\Program Files (x86)\Mozilla Plugins\npitunes.dll ()
- FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
- FF Plugin-x32: @esn/esnlaunch,version=2.1.7 -> C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB)
- FF Plugin-x32: @esn/npbattlelog,version=2.3.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB)
- FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
- FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
- FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
- FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
- FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
- FF Plugin HKU\S-1-5-21-1363601413-4122985648-467028356-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Dardan\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
- FF Plugin HKU\S-1-5-21-1363601413-4122985648-467028356-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dardan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
- FF HKLM-x32\...\Firefox\Extensions: [{22119944-ED35-4ab1-910B-E619EA06A115}] - D:\Robo\Firefox
- FF Extension: RoboForm Toolbar for Firefox - D:\Robo\Firefox [2013-12-20]
- FF StartMenuInternet: FIREFOX.EXE - D:\Program Files (x86)\Mozilla Firefox\firefox.exe
- Chrome:
- =======
- ==================== Services (Whitelisted) =================
- (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
- R2 avast! Antivirus; D:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-10-03] (AVAST Software)
- S4 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-06-14] () [File not signed]
- S4 DisplayFusionService; d:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [5278064 2014-09-09] (Binary Fortress Software)
- S4 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160256 2012-02-01] (Intel Corporation) [File not signed]
- S4 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
- S2 MBAMScheduler; d:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-10-01] (Malwarebytes Corporation)
- S2 MBAMService; d:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [968504 2014-10-01] (Malwarebytes Corporation)
- S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1721800 2014-08-09] (NVIDIA Corporation)
- S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18974152 2014-08-09] (NVIDIA Corporation)
- R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-09-09] ()
- S2 SkypeUpdate; D:\Program Files (x86)\Skype\Updater\Updater.exe [315008 2014-04-03] (Skype Technologies)
- S4 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [14896 2012-04-13] (Intel Corporation)
- ==================== Drivers (Whitelisted) ====================
- (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
- R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-10-03] ()
- R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-10-03] (AVAST Software)
- R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-10-03] (AVAST Software)
- R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-10-03] ()
- R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-10-03] (AVAST Software)
- R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-10-03] (AVAST Software)
- R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-10-03] (AVAST Software)
- R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-10-03] ()
- R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [46792 2013-09-17] (AnchorFree Inc.)
- R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [31136 2013-09-07] (REALiX(tm))
- R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-11-19] (Intel Corporation)
- R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [22776 2011-12-22] (Intel Corporation)
- S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-10-01] (Malwarebytes Corporation)
- S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-10-01] (Malwarebytes Corporation)
- S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [21448 2014-08-09] (NVIDIA Corporation)
- R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
- R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-09-17] (Anchorfree Inc.)
- S3 tapoas; C:\Windows\System32\DRIVERS\tapoas.sys [30720 2012-07-15] (The OpenVPN Project)
- S3 USBADVAU; C:\Windows\System32\drivers\cm11264.sys [1308160 2010-04-23] (C-Media Electronics Inc)
- S3 wolfkr; E:\AeriaGames\WolfTeam-DE\avital\wolfk64.sys [86352 2014-09-08] ()
- S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
- S3 MSICDSetup; \??\F:\Treiber\CDriver64.sys [X]
- S3 vmci; \SystemRoot\system32\DRIVERS\vmci.sys [X]
- S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]
- S3 wolf; \??\E:\AeriaGames\WolfTeam-DE\avital\wolf64.sys [X]
- ==================== NetSvcs (Whitelisted) ===================
- (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
- ==================== One Month Created Files and Folders ========
- (If an entry is included in the fixlist, the file\folder will be moved.)
- 2014-11-21 01:25 - 2014-11-21 01:26 - 00019135 _____ () C:\Users\Dardan\Downloads\FRST.txt
- 2014-11-21 01:25 - 2014-11-21 01:25 - 02117632 _____ (Farbar) C:\Users\Dardan\Downloads\FRST64.exe
- 2014-11-21 01:19 - 2014-11-21 01:19 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Dardan\Downloads\revosetup95.exe
- 2014-11-21 00:45 - 2014-11-21 00:46 - 00350026 _____ () C:\Users\Dardan\Documents\cc_20141121_004549.reg
- 2014-11-21 00:05 - 2014-11-21 00:05 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin
- 2014-11-20 23:46 - 2014-11-20 23:46 - 00002726 _____ () C:\Windows\PFRO.log
- 2014-11-20 23:46 - 2014-11-20 23:46 - 00000056 _____ () C:\Windows\setupact.log
- 2014-11-20 23:46 - 2014-11-20 23:46 - 00000000 _____ () C:\Windows\setuperr.log
- 2014-11-20 23:34 - 2014-11-21 01:17 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
- 2014-11-20 23:34 - 2014-11-21 01:17 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
- 2014-11-20 22:18 - 2014-11-21 01:25 - 00000000 ____D () C:\FRST
- 2014-11-20 22:17 - 2014-11-20 23:47 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
- 2014-11-20 22:16 - 2014-11-20 22:16 - 00000790 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
- 2014-11-20 22:16 - 2014-11-20 22:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
- 2014-11-20 22:16 - 2014-11-20 22:16 - 00000000 ____D () C:\ProgramData\Malwarebytes
- 2014-11-20 22:16 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
- 2014-11-20 22:16 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
- 2014-11-20 22:16 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
- 2014-11-20 22:11 - 2014-11-20 22:11 - 00005923 _____ () C:\Users\Dardan\Desktop\JRT.txt
- 2014-11-20 22:08 - 2014-11-20 22:08 - 00000000 ____D () C:\Windows\ERUNT
- 2014-11-20 22:03 - 2014-11-21 00:19 - 00000000 ____D () C:\AdwCleaner
- 2014-11-20 20:33 - 2014-11-20 20:33 - 00000000 __SHD () C:\Users\Dardan\AppData\Local\EmieBrowserModeList
- 2014-11-19 12:17 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
- 2014-11-19 12:17 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
- 2014-11-19 12:17 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
- 2014-11-19 12:17 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
- 2014-11-16 18:08 - 2014-11-16 18:09 - 00000000 ____D () C:\Users\Dardan\Documents\London
- 2014-11-13 20:34 - 2014-11-13 20:34 - 00000000 ____D () C:\Users\Dardan\AppData\Local\LeagueSharp
- 2014-11-13 20:22 - 2014-11-14 21:24 - 00000000 ____D () C:\Users\Dardan\AppData\Roaming\LeagueSharp
- 2014-11-13 00:00 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
- 2014-11-13 00:00 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
- 2014-11-13 00:00 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
- 2014-11-13 00:00 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
- 2014-11-13 00:00 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
- 2014-11-13 00:00 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
- 2014-11-13 00:00 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
- 2014-11-13 00:00 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
- 2014-11-13 00:00 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
- 2014-11-13 00:00 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
- 2014-11-13 00:00 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
- 2014-11-13 00:00 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
- 2014-11-13 00:00 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
- 2014-11-13 00:00 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
- 2014-11-13 00:00 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
- 2014-11-13 00:00 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
- 2014-11-13 00:00 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
- 2014-11-13 00:00 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
- 2014-11-13 00:00 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
- 2014-11-13 00:00 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
- 2014-11-13 00:00 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
- 2014-11-13 00:00 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
- 2014-11-13 00:00 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
- 2014-11-13 00:00 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
- 2014-11-13 00:00 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
- 2014-11-13 00:00 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
- 2014-11-13 00:00 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
- 2014-11-13 00:00 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
- 2014-11-13 00:00 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
- 2014-11-13 00:00 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
- 2014-11-13 00:00 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
- 2014-11-13 00:00 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
- 2014-11-13 00:00 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
- 2014-11-13 00:00 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
- 2014-11-13 00:00 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
- 2014-11-13 00:00 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
- 2014-11-13 00:00 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
- 2014-11-13 00:00 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
- 2014-11-13 00:00 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
- 2014-11-13 00:00 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
- 2014-11-13 00:00 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
- 2014-11-13 00:00 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
- 2014-11-13 00:00 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
- 2014-11-13 00:00 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
- 2014-11-13 00:00 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
- 2014-11-13 00:00 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
- 2014-11-13 00:00 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
- 2014-11-13 00:00 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
- 2014-11-13 00:00 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
- 2014-11-13 00:00 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
- 2014-11-13 00:00 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
- 2014-11-13 00:00 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
- 2014-11-13 00:00 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
- 2014-11-13 00:00 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
- 2014-11-13 00:00 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
- 2014-11-13 00:00 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
- 2014-11-13 00:00 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
- 2014-11-13 00:00 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
- 2014-11-13 00:00 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
- 2014-11-13 00:00 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
- 2014-11-13 00:00 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
- 2014-11-13 00:00 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
- 2014-11-13 00:00 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
- 2014-11-13 00:00 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
- 2014-11-13 00:00 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
- 2014-11-12 23:59 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
- 2014-11-12 23:59 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
- 2014-11-12 23:59 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
- 2014-11-12 23:59 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
- 2014-11-12 23:59 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
- 2014-11-12 23:59 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
- 2014-11-12 23:59 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
- 2014-11-12 23:59 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
- 2014-11-12 23:59 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
- 2014-11-12 23:59 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
- 2014-11-12 23:59 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
- 2014-11-12 23:59 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
- 2014-11-12 23:59 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
- 2014-11-12 23:59 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
- 2014-11-12 23:59 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
- 2014-11-12 23:59 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
- 2014-11-12 23:59 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
- 2014-11-12 23:59 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
- 2014-11-12 23:59 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
- 2014-11-12 23:58 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
- 2014-11-12 23:58 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
- 2014-11-12 23:58 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
- 2014-11-12 23:58 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
- 2014-11-12 23:58 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
- 2014-11-12 23:58 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
- 2014-11-12 23:58 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
- 2014-11-12 23:58 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
- 2014-11-12 23:58 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
- 2014-11-12 23:58 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
- 2014-11-12 23:58 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
- 2014-11-12 23:58 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
- 2014-11-12 23:58 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
- 2014-11-12 23:58 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
- 2014-11-04 21:55 - 2014-11-04 21:55 - 13168336 _____ (Opera Software ASA) C:\Users\Dardan\Downloads\Opera_1214_int_Setup.exe
- 2014-11-04 21:55 - 2014-11-04 21:55 - 13168336 _____ (Opera Software ASA) C:\Users\Dardan\Downloads\Opera_1214_int_Setup (1).exe
- 2014-11-04 21:54 - 2014-11-04 21:56 - 00397935 _____ () C:\Users\Dardan\Downloads\Opera_NI_stable.exe.opdownload
- 2014-11-04 21:48 - 2014-11-20 23:02 - 00000000 ____D () C:\Users\Dardan\AppData\Roaming\Opera
- 2014-11-04 21:48 - 2014-11-20 23:00 - 00000000 ____D () C:\Users\Dardan\AppData\Local\Opera
- 2014-11-04 19:41 - 2014-11-04 19:41 - 00001078 _____ () C:\Users\Public\Desktop\paint.net.lnk
- 2014-11-04 19:41 - 2014-11-04 19:41 - 00001078 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk
- 2014-11-04 19:40 - 2014-11-04 19:43 - 00000000 ____D () C:\Users\Dardan\AppData\Local\paint.net
- 2014-10-30 21:13 - 2014-10-30 21:13 - 00000000 ____D () C:\Users\Dardan\Documents\My Cheat Tables
- 2014-10-29 16:37 - 2014-10-29 16:37 - 00043343 _____ () C:\Users\Dardan\Downloads\game.htm
- 2014-10-24 15:07 - 2014-10-24 15:07 - 00000000 ____D () C:\Users\Dardan\AppData\Roaming\Opera Software
- 2014-10-24 15:07 - 2014-10-24 15:07 - 00000000 ____D () C:\Users\Dardan\AppData\Local\Opera Software
- 2014-10-23 17:55 - 2014-10-23 17:55 - 00000000 ____D () C:\Users\Dardan\AppData\Local\Razer
- 2014-10-23 17:54 - 2014-10-23 17:54 - 00000000 ____D () C:\ProgramData\Razer
- 2014-10-23 17:52 - 2014-10-23 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
- 2014-10-23 17:52 - 2014-10-23 17:54 - 00000000 ____D () C:\Program Files (x86)\Razer
- 2014-10-23 17:51 - 2014-10-23 17:51 - 00003124 _____ () C:\Windows\System32\Tasks\{2F1DEAF7-088D-4E38-9FA7-0E85AED0739A}
- ==================== One Month Modified Files and Folders =======
- (If an entry is included in the fixlist, the file\folder will be moved.)
- 2014-11-21 01:25 - 2013-12-10 20:33 - 00000000 ____D () C:\Users\Dardan\AppData\Local\Battle.net
- 2014-11-21 01:25 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system
- 2014-11-21 01:21 - 2013-07-06 21:47 - 00000000 ____D () C:\Users\Dardan\AppData\Local\Adobe
- 2014-11-21 01:13 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
- 2014-11-21 01:10 - 2013-03-17 01:04 - 00000000 ____D () C:\Users\Dardan\AppData\Roaming\Skype
- 2014-11-21 00:53 - 2013-11-27 15:17 - 00000000 ____D () C:\ProgramData\BlueStacks
- 2014-11-21 00:53 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries
- 2014-11-21 00:24 - 2013-03-27 23:13 - 00000000 ____D () C:\Windows\ShellNew
- 2014-11-21 00:11 - 2011-01-01 15:22 - 01353802 _____ () C:\Windows\WindowsUpdate.log
- 2014-11-21 00:09 - 2013-10-17 18:33 - 00000000 ____D () C:\ProgramData\Package Cache
- 2014-11-20 23:53 - 2009-07-14 05:45 - 00022064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- 2014-11-20 23:53 - 2009-07-14 05:45 - 00022064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- 2014-11-20 23:52 - 2010-11-21 07:50 - 00702642 _____ () C:\Windows\system32\perfh007.dat
- 2014-11-20 23:52 - 2010-11-21 07:50 - 00150722 _____ () C:\Windows\system32\perfc007.dat
- 2014-11-20 23:52 - 2009-07-14 06:13 - 01629824 _____ () C:\Windows\system32\PerfStringBackup.INI
- 2014-11-20 23:46 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
- 2014-11-20 23:26 - 2013-10-22 13:21 - 00000932 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1363601413-4122985648-467028356-1000UA.job
- 2014-11-20 23:07 - 2013-06-06 12:20 - 00000000 ____D () C:\Program Files (x86)\Google
- 2014-11-20 23:06 - 2013-06-06 12:20 - 00000000 ____D () C:\Users\Dardan\AppData\Local\Google
- 2014-11-20 22:31 - 2013-04-23 16:47 - 00000000 ____D () C:\Users\Dardan\AppData\Local\TSVNCache
- 2014-11-20 22:31 - 2013-03-17 01:39 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
- 2014-11-20 22:30 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PLA
- 2014-11-20 22:02 - 2013-11-27 15:17 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
- 2014-11-20 22:02 - 2013-05-05 19:39 - 00000000 ____D () C:\Users\Dardan\AppData\Local\CrashDumps
- 2014-11-20 22:02 - 2013-04-12 12:09 - 00000000 ____D () C:\Users\Dardan\AppData\Roaming\TeamViewer
- 2014-11-20 22:02 - 2013-03-25 11:14 - 00000000 ____D () C:\Users\Dardan\Tracing
- 2014-11-20 22:02 - 2013-03-17 00:56 - 00000000 ____D () C:\Users\Dardan\AppData\Roaming\Media Player Classic
- 2014-11-20 22:02 - 2011-01-01 15:12 - 00000000 ____D () C:\Windows\Panther
- 2014-11-20 14:26 - 2013-10-22 13:21 - 00000910 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1363601413-4122985648-467028356-1000Core.job
- 2014-11-18 23:14 - 2014-09-25 14:11 - 00000000 ____D () C:\Program Files (x86)\Battle.net
- 2014-11-18 19:47 - 2013-09-18 16:51 - 00000000 ____D () C:\Users\Dardan\AppData\Roaming\.minecraft
- 2014-11-18 17:12 - 2014-10-16 21:01 - 00000000 ____D () C:\Users\Dardan\AppData\Local\Deployment
- 2014-11-16 19:41 - 2011-01-01 20:15 - 00117456 _____ () C:\Users\Dardan\AppData\Local\GDIPFONTCACHEV1.DAT
- 2014-11-14 16:55 - 2013-03-17 10:31 - 00000000 ____D () C:\Users\Dardan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
- 2014-11-13 03:21 - 2009-07-14 05:45 - 00437944 _____ () C:\Windows\system32\FNTCACHE.DAT
- 2014-11-13 03:04 - 2013-10-11 17:23 - 00000000 ____D () C:\ProgramData\Microsoft Help
- 2014-11-04 18:12 - 2013-12-10 21:10 - 00000000 ____D () C:\Program Files (x86)\Hearthstone
- 2014-11-02 10:30 - 2013-08-27 22:41 - 00000000 ____D () C:\Users\Dardan\AppData\Local\fabi.me
- 2014-10-23 17:28 - 2013-03-16 23:54 - 00033074 _____ () C:\Windows\system32\lvcoinst.log
- 2014-10-23 17:20 - 2011-01-01 18:17 - 00000000 ____D () C:\Users\Dardan
- 2014-10-23 17:19 - 2013-03-16 23:54 - 00000000 ____D () C:\Program Files\Common Files\logishrd
- 2014-10-23 17:19 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
- ==================== Bamital & volsnap Check =================
- (There is no automatic fix for files that do not pass verification.)
- C:\Windows\System32\winlogon.exe => File is digitally signed
- C:\Windows\System32\wininit.exe => File is digitally signed
- C:\Windows\SysWOW64\wininit.exe => File is digitally signed
- C:\Windows\explorer.exe => File is digitally signed
- C:\Windows\SysWOW64\explorer.exe => File is digitally signed
- C:\Windows\System32\svchost.exe => File is digitally signed
- C:\Windows\SysWOW64\svchost.exe => File is digitally signed
- C:\Windows\System32\services.exe => File is digitally signed
- C:\Windows\System32\User32.dll => File is digitally signed
- C:\Windows\SysWOW64\User32.dll => File is digitally signed
- C:\Windows\System32\userinit.exe => File is digitally signed
- C:\Windows\SysWOW64\userinit.exe => File is digitally signed
- C:\Windows\System32\rpcss.dll => File is digitally signed
- C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
- LastRegBack: 2014-11-15 00:44
- ==================== End Of Log ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement