Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23.08.2018
- Ran by Konrad (administrator) on KONRAD-PC (03-09-2018 01:00:38)
- Running from C:\Users\Konrad\Downloads
- Loaded Profiles: Konrad (Available Profiles: Konrad)
- Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
- Internet Explorer Version 8 (Default browser: Chrome)
- Boot Mode: Safe Mode (with Networking)
- Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Processes (Whitelisted) =================
- (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
- ==================== Registry (Whitelisted) ===========================
- (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
- HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor)
- HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
- HKLM\...\Run: [VIAxHCUtl] => C:\Program Files\VIA XHCI UASP Utility\usb3Monitor.exe [331776 2011-07-12] (VIA Technologies, Inc.)
- HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2014-02-21] (Intel Corporation)
- HKU\S-1-5-21-1918193676-3051652380-1895253946-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3207968 2018-08-29] (Valve Corporation)
- HKU\S-1-5-21-1918193676-3051652380-1895253946-1000\...\Run: [EpicGamesLauncher] => C:\GRY\Fortnite\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32973712 2018-07-26] (Epic Games, Inc.)
- HKU\S-1-5-21-1918193676-3051652380-1895253946-1000\...\Run: [Discord] => C:\Users\Konrad\AppData\Local\Discord\app-0.0.301\Discord.exe [57816920 2018-04-30] (Discord Inc.)
- HKU\S-1-5-21-1918193676-3051652380-1895253946-1000\...\MountPoints2: {1c0967cb-e822-11e7-a83e-806e6f6e6963} - D:\cda_menu.exe
- HKU\S-1-5-21-1918193676-3051652380-1895253946-1000\...\MountPoints2: {5c0b14e8-e766-11e7-bad8-c46dfc8ef347} - F:\HTC_Sync_Manager_PC.exe
- HKU\S-1-5-21-1918193676-3051652380-1895253946-1000\...\MountPoints2: {a25dd302-9e20-11e8-b7c3-408d5c7e09f7} - E:\iLinker.exe
- ==================== Internet (Whitelisted) ====================
- (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
- Tcpip\Parameters: [DhcpNameServer] 37.8.214.2 31.11.202.254
- Tcpip\..\Interfaces\{E39D77E5-29DA-4CA8-8B50-CBCD5C5FA6E5}: [DhcpNameServer] 37.8.214.2 31.11.202.254
- Internet Explorer:
- ==================
- SearchScopes: HKU\S-1-5-21-1918193676-3051652380-1895253946-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
- Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
- Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
- Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
- FireFox:
- ========
- FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
- FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
- FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-16] (NVIDIA Corporation)
- FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-16] (NVIDIA Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-07-05] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-07-05] (Google Inc.)
- FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
- FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom)
- Chrome:
- =======
- CHR DefaultProfile: Default
- CHR HomePage: Default -> hxxp://www.google.pl/
- CHR Profile: C:\Users\Konrad\AppData\Local\Google\Chrome\User Data\Default [2018-09-03]
- CHR Extension: (James White) - C:\Users\Konrad\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkeidgmehkdjmpjodpjkepolokanalkm [2017-12-24]
- CHR Extension: (YouTube) - C:\Users\Konrad\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-12-23]
- CHR Extension: (AdBlock) - C:\Users\Konrad\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-07-28]
- CHR Extension: (Chrome Web Store Payments) - C:\Users\Konrad\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-07-05]
- CHR Extension: (Gmail) - C:\Users\Konrad\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-12-23]
- CHR Extension: (Chrome Media Router) - C:\Users\Konrad\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-08-10]
- CHR Profile: C:\Users\Konrad\AppData\Local\Google\Chrome\User Data\System Profile [2018-07-16]
- ==================== Services (Whitelisted) ====================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7206312 2018-07-17] ()
- S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [780928 2018-07-12] (EasyAntiCheat Ltd)
- S2 gramblrclient; C:\Program Files\Gramblr\gramblr.exe [14291536 2018-08-22] () [File not signed]
- S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
- S2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2015-07-10] (Intel Corporation)
- S2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
- S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
- S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
- S2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-12-16] (NVIDIA Corporation)
- S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-12-16] (NVIDIA Corporation)
- R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
- S2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [656664 2014-08-19] (Wacom Technology, Corp.)
- S2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
- S2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
- ===================== Drivers (Whitelisted) ======================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- S1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] ()
- R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-08-07] (Intel Corporation)
- R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
- R3 netr28ux; C:\Windows\System32\DRIVERS\netr28ux.sys [2255224 2017-07-04] (MediaTek Inc.)
- S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-12-16] (NVIDIA Corporation)
- S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50624 2017-12-16] (NVIDIA Corporation)
- R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-12-16] (NVIDIA Corporation)
- S3 RTTEAMPT; C:\Windows\System32\DRIVERS\RtTeam620.sys [58512 2012-07-03] (Realtek Corporation)
- S1 UsbCharger; C:\Windows\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] ()
- R3 VUSB3HUB; C:\Windows\System32\DRIVERS\ViaHub3.sys [223744 2013-03-19] (VIA Technologies, Inc.)
- R3 xhcdrv; C:\Windows\System32\DRIVERS\xhcdrv.sys [295424 2013-03-19] (VIA Technologies, Inc.)
- S3 gdrv; \??\C:\Windows\gdrv.sys [X]
- S3 VGPU; System32\drivers\rdvgkmd.sys [X]
- ==================== NetSvcs (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- ==================== One Month Created files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2018-09-03 01:00 - 2018-09-03 01:01 - 000010104 _____ C:\Users\Konrad\Downloads\FRST.txt
- 2018-09-03 01:00 - 2018-09-03 01:00 - 000000000 ____D C:\FRST
- 2018-09-03 01:00 - 2018-09-03 00:59 - 002413056 _____ (Farbar) C:\Users\Konrad\Downloads\FRST64.exe
- 2018-09-03 00:30 - 2018-09-03 00:30 - 000000278 _____ C:\Windows\Tasks\AdwCleaner_onReboot.job
- 2018-09-03 00:26 - 2018-09-03 00:59 - 000170986 _____ C:\Windows\ntbtlog.txt
- 2018-09-02 22:39 - 2018-09-02 22:39 - 000000000 ____D C:\Users\Konrad\AppData\Local\Introversion
- 2018-09-02 22:36 - 2018-09-03 00:32 - 000000000 ____D C:\Windows\{D32F0790-E651-41F4-9571-6065DA044B85}
- 2018-09-02 22:27 - 2018-09-02 22:27 - 007567568 _____ (Malwarebytes) C:\Users\Konrad\Downloads\AdwCleaner.exe
- 2018-09-02 21:50 - 2018-09-02 21:50 - 000001180 _____ C:\Users\Konrad\Desktop\Ad-Aware SE Personal.lnk
- 2018-09-02 21:50 - 2018-09-02 21:50 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-Aware SE Personal
- 2018-09-02 21:50 - 2018-09-02 21:50 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Lavasoft
- 2018-09-02 21:50 - 2018-09-02 21:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft Ad-Aware SE Personal
- 2018-09-02 21:50 - 2018-09-02 21:50 - 000000000 ____D C:\Program Files (x86)\Lavasoft
- 2018-09-02 21:49 - 2018-09-02 21:49 - 002855080 _____ C:\Users\Konrad\Downloads\aawsepersonal_www.INSTALKI.pl.exe
- 2018-09-02 21:47 - 2018-09-02 21:47 - 000003746 _____ C:\Windows\System32\Tasks\{FEE43EEB-D3F5-5AA0-545B-84AC8FA940BF}
- 2018-09-02 21:47 - 2018-09-02 21:47 - 000003626 _____ C:\Windows\System32\Tasks\{2A46A1B8-723D-C3EF-46FC-DCD5EBCE2344}
- 2018-09-02 21:47 - 2018-09-02 21:47 - 000003408 _____ C:\Windows\System32\Tasks\{25ED5849-EE23-3547-8CD6-DCB260856F0C}
- 2018-09-02 21:47 - 2018-09-02 21:47 - 000000002 _____ C:\Users\Konrad\AppData\Local\imw.ini
- 2018-09-02 21:46 - 2018-09-02 21:46 - 000060367 _____ C:\Users\Konrad\Downloads\prison-architect-update-15a.torrent
- 2018-09-02 21:45 - 2018-09-02 21:46 - 000000000 ____D C:\Users\Konrad\Downloads\PRISON ARCHITECT
- 2018-09-02 21:45 - 2018-09-02 21:45 - 000000292 _____ C:\Users\Konrad\Downloads\prison-architect-update-15a_P5TKI7.torrent
- 2018-09-02 21:12 - 2018-09-02 21:12 - 000000292 _____ C:\Users\Konrad\Downloads\prison-architect-update-15a_3U047B.torrent
- 2018-08-28 23:03 - 2018-08-28 23:05 - 010765738 _____ C:\Users\Konrad\Downloads\Unconfirmed 677331.crdownload
- 2018-08-28 19:31 - 2018-08-28 19:43 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\discord
- 2018-08-28 19:31 - 2018-08-28 19:31 - 000002131 _____ C:\Users\Konrad\Desktop\Discord.lnk
- 2018-08-28 19:31 - 2018-08-28 19:31 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
- 2018-08-28 19:31 - 2018-08-28 19:31 - 000000000 ____D C:\Users\Konrad\AppData\Local\SquirrelTemp
- 2018-08-28 19:31 - 2018-08-28 19:31 - 000000000 ____D C:\Users\Konrad\AppData\Local\Discord
- 2018-08-28 19:26 - 2018-08-28 19:27 - 060074328 _____ (Discord Inc.) C:\Users\Konrad\Downloads\DiscordSetup.exe
- 2018-08-28 18:30 - 2018-09-02 21:12 - 000000000 ____D C:\Users\Konrad\AppData\LocalLow\uTorrent
- 2018-08-27 20:55 - 2018-09-01 19:04 - 000000000 ____D C:\Users\Konrad\Downloads\west1
- 2018-08-26 20:11 - 2018-08-26 20:11 - 000011468 _____ C:\Users\Konrad\Downloads\S03E10 - The Dead - Ehhhh.txt
- 2018-08-25 21:46 - 2018-08-25 22:08 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\SpaceEngineers
- 2018-08-25 21:46 - 2018-08-25 21:46 - 000000000 ____D C:\Users\Konrad\AppData\Local\GameAnalytics
- 2018-08-25 21:46 - 2018-08-25 21:46 - 000000000 ____D C:\Users\Konrad\ansel
- 2018-08-25 20:45 - 2018-08-25 20:45 - 000000222 _____ C:\Users\Konrad\Desktop\Space Engineers.url
- 2018-08-25 19:13 - 2018-08-27 22:43 - 000001854 _____ C:\Users\Konrad\Desktop\Vikings Season 3 - COMPLETE S03 720p HDTV x264 [MKV, AC3,5.1] Ehhhh - Shortcut.lnk
- 2018-08-25 18:53 - 2018-08-25 18:53 - 218919488 _____ C:\Users\Konrad\Desktop\audiobook.zip
- 2018-08-25 18:52 - 2018-08-25 18:53 - 218919488 _____ C:\Users\Konrad\Downloads\audiobook.zip
- 2018-08-25 18:49 - 2018-08-26 20:09 - 000000000 ____D C:\Users\Konrad\Downloads\Vikings Season 3 - COMPLETE S03 720p HDTV x264 [MKV, AC3,5.1] Ehhhh
- 2018-08-25 18:48 - 2018-08-25 18:48 - 004489549 _____ C:\Users\Konrad\Desktop\Wez_sie_wreszcie_do_roboty.pdf
- 2018-08-25 15:03 - 2018-08-25 15:35 - 000000000 ____D C:\Users\Konrad\Downloads\Vikings Season 2 COMPLETE 720p HDTV x264 [MKV,AC3,5.1] Ehhhh
- 2018-08-25 14:57 - 2018-08-25 14:57 - 009348248 _____ ( ) C:\Users\Konrad\Downloads\NapiProjektSetup2.2.0.2399.exe
- 2018-08-25 14:43 - 2018-08-25 15:04 - 000000000 ____D C:\Users\Konrad\Downloads\Vikings S02 Complete Season 2 EXTENDED BluRay 720p x265 HEVC [nate_666]
- 2018-08-23 22:25 - 2018-08-23 22:36 - 000000000 ____D C:\Users\Konrad\Desktop\Tattoo
- 2018-08-22 17:29 - 2018-08-22 17:29 - 000000219 _____ C:\Users\Konrad\Desktop\Counter-Strike Global Offensive.url
- 2018-08-22 16:34 - 2018-08-22 16:34 - 000194413 _____ C:\Users\Konrad\Downloads\plecha.pdf
- 2018-08-22 16:34 - 2018-08-22 16:34 - 000194413 _____ C:\Users\Konrad\Desktop\plecha.pdf
- 2018-08-19 01:23 - 2018-08-24 20:47 - 000001593 _____ C:\Users\Konrad\Desktop\Medal Of Honor Allied Assault_CodeKing - Shortcut.lnk
- 2018-08-18 23:03 - 2018-08-18 23:03 - 000000000 ____D C:\Users\Konrad\Downloads\Medal Of Honor Allied Assault_CodeKing
- 2018-08-18 22:40 - 2018-08-18 22:49 - 1203110922 _____ C:\Users\Konrad\Downloads\Medal Of Honor Allied Assault_CodeKing.rar
- 2018-08-13 00:47 - 2018-08-13 00:47 - 000050811 _____ C:\Users\Konrad\Downloads\Application PDF.pdf
- 2018-08-13 00:36 - 2018-08-13 00:36 - 000170630 _____ C:\Users\Konrad\Downloads\Grant Agreement_Konrad Plecha.pdf
- 2018-08-13 00:33 - 2018-08-25 14:58 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Adobe
- 2018-08-13 00:26 - 2018-08-13 00:26 - 001182986 _____ C:\Users\Konrad\Downloads\Learning Agreement_Konrad Plecha (1).pdf
- 2018-08-13 00:25 - 2018-08-13 00:47 - 000000000 ____D C:\Users\Konrad\Documents\erasmus
- 2018-08-13 00:25 - 2018-08-13 00:25 - 001182986 _____ C:\Users\Konrad\Downloads\Learning Agreement_Konrad Plecha.pdf
- 2018-08-13 00:25 - 2018-08-13 00:25 - 000749132 _____ C:\Users\Konrad\Downloads\Grant Payment Form_Konrad Plecha.pdf
- 2018-08-13 00:25 - 2018-08-13 00:25 - 000749132 _____ C:\Users\Konrad\Downloads\Grant Payment Form_Konrad Plecha (1).pdf
- 2018-08-11 15:16 - 2018-08-25 22:12 - 000000000 ____D C:\Users\Konrad\AppData\Local\CrashDumps
- 2018-08-11 15:11 - 2018-08-11 15:13 - 000000000 ____D C:\Users\Konrad\Documents\NFS Most Wanted
- 2018-08-11 15:04 - 2018-08-11 15:04 - 000000901 _____ C:\Users\Public\Desktop\Need For Speed Most Wanted Black Edition.lnk
- 2018-08-11 15:04 - 2018-08-11 15:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Need For Speed Most Wanted Black Edition
- 2018-08-11 14:00 - 2018-08-11 14:02 - 000000000 ____D C:\Users\Konrad\AppData\Local\NFS Underground 2
- 2018-08-11 14:00 - 2018-08-11 14:00 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
- 2018-08-11 13:59 - 2018-08-11 13:59 - 000000824 _____ C:\Users\Public\Desktop\Need For Speed Underground 2.lnk
- 2018-08-11 13:59 - 2018-08-11 13:59 - 000000817 _____ C:\Users\Public\Desktop\Resolution Settings for NFS Underground 2.lnk
- 2018-08-11 13:59 - 2018-08-11 13:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Need For Speed Underground 2
- 2018-08-11 13:39 - 2018-08-11 14:12 - 000000000 ____D C:\Users\Konrad\Downloads\NFS
- 2018-08-10 21:36 - 2018-08-10 21:36 - 000000295 _____ C:\Users\Konrad\Desktop\Fortnite.url
- ==================== One Month Modified files and folders ========
- (If an entry is included in the fixlist, the file/folder will be moved.)
- 2018-09-03 00:44 - 2009-07-14 07:13 - 000784278 _____ C:\Windows\system32\PerfStringBackup.INI
- 2018-09-03 00:44 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
- 2018-09-03 00:38 - 2017-12-30 19:21 - 000000000 ____D C:\ProgramData\Gramblr
- 2018-09-03 00:38 - 2017-12-27 23:14 - 000000000 ____D C:\Program Files (x86)\Steam
- 2018-09-03 00:38 - 2017-12-23 23:27 - 000000000 ____D C:\ProgramData\NVIDIA
- 2018-09-03 00:38 - 2009-07-14 06:45 - 000026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- 2018-09-03 00:38 - 2009-07-14 06:45 - 000026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- 2018-09-03 00:31 - 2017-12-23 23:30 - 000000000 __SHD C:\Users\Konrad\IntelGraphicsProfiles
- 2018-09-03 00:30 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2018-09-02 22:33 - 2017-12-30 02:36 - 000000000 ____D C:\Program Files (x86)\Applian Technologies
- 2018-09-02 22:32 - 2017-12-30 00:53 - 000000000 ____D C:\Users\Konrad\AppData\Roaming\uTorrent
- 2018-09-02 22:28 - 2017-12-21 01:41 - 000000000 ____D C:\AdwCleaner
- 2018-09-02 22:24 - 2016-02-08 18:23 - 000000000 ____D C:\GRY
- 2018-09-02 21:47 - 2017-12-22 23:40 - 000000000 ____D C:\Users\Konrad
- 2018-08-25 21:44 - 2017-12-23 22:37 - 000775836 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
- 2018-08-25 21:42 - 2017-12-23 23:26 - 000000000 ____D C:\ProgramData\Package Cache
- 2018-08-25 14:58 - 2017-12-30 02:33 - 000001044 _____ C:\Users\Konrad\Desktop\NapiProjekt.lnk
- 2018-08-25 14:58 - 2017-12-30 02:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NapiProjekt
- 2018-08-25 14:58 - 2017-12-30 02:33 - 000000000 ____D C:\Program Files (x86)\NapiProjekt
- 2018-08-22 20:43 - 2017-12-30 19:21 - 000000000 ____D C:\Program Files\Gramblr
- 2018-08-16 15:37 - 2018-07-10 00:30 - 000000000 ____D C:\Users\Konrad\AppData\Local\ElevatedDiagnostics
- 2018-08-15 21:25 - 2017-12-24 00:04 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
- 2018-08-15 21:25 - 2017-12-24 00:04 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
- 2018-08-15 21:25 - 2017-12-24 00:04 - 000004478 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
- 2018-08-15 21:25 - 2017-12-24 00:04 - 000004324 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
- 2018-08-15 21:25 - 2017-12-24 00:04 - 000000000 ____D C:\Windows\SysWOW64\Macromed
- 2018-08-15 21:25 - 2017-12-24 00:04 - 000000000 ____D C:\Windows\system32\Macromed
- 2018-08-10 21:56 - 2017-12-23 22:33 - 000002224 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2018-08-10 21:56 - 2017-12-23 22:33 - 000002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- ==================== Files in the root of some directories =======
- 2009-07-14 03:14 - 2009-07-14 03:14 - 000073216 ____N (Microsoft Corporation) C:\Users\Konrad\yaiMWA.exe
- 2009-07-14 03:14 - 2009-07-14 03:14 - 000073216 ____N (Microsoft Corporation) C:\Program Files (x86)\eaIouxWE.exe
- 2018-09-02 21:47 - 2018-09-02 21:47 - 000000002 _____ () C:\Users\Konrad\AppData\Local\imw.ini
- 2009-07-14 03:14 - 2009-07-14 03:14 - 000186368 ____N (Microsoft Corporation) C:\Users\Konrad\AppData\Local\yYJtE.exe
- Some files in TEMP:
- ====================
- 2018-09-02 21:50 - 2004-10-12 11:14 - 000057344 _____ () C:\Users\Konrad\AppData\Local\Temp\InstHelp.dll
- ==================== Bamital & volsnap ======================
- (There is no automatic fix for files that do not pass verification.)
- C:\Windows\system32\winlogon.exe => File is digitally signed
- C:\Windows\system32\wininit.exe => File is digitally signed
- C:\Windows\SysWOW64\wininit.exe => File is digitally signed
- C:\Windows\explorer.exe => File is digitally signed
- C:\Windows\SysWOW64\explorer.exe => File is digitally signed
- C:\Windows\system32\svchost.exe => File is digitally signed
- C:\Windows\SysWOW64\svchost.exe => File is digitally signed
- C:\Windows\system32\services.exe => File is digitally signed
- C:\Windows\system32\User32.dll => File is digitally signed
- C:\Windows\SysWOW64\User32.dll => File is digitally signed
- C:\Windows\system32\userinit.exe => File is digitally signed
- C:\Windows\SysWOW64\userinit.exe => File is digitally signed
- C:\Windows\system32\rpcss.dll => File is digitally signed
- C:\Windows\system32\dnsapi.dll => File is digitally signed
- C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
- C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
- LastRegBack: 2018-08-28 22:46
- ==================== End of FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement