Премини към съдържанието

porata

Потребител
  • Публикации

    216
  • Регистрация

  • Последно онлайн

Харесвания

11 Добра репутация

Всичко за porata

  • Титла
    Почетен потребител
  • Рожден ден 4.05.1990

Информация

  • Пол
    Мъж
  • Град
    Pazardjik

Последни посетители

Информацията с последните посетители на профила ви е изключена и не се показва на другите потребители.

  1. porata

    Съмнение за вирус

    Fix result of Farbar Recovery Scan Tool (x64) Version: 01.09.2018 03 Ran by GAMEPC (02-09-2018 13:37:40) Run:1 Running from C:\Users\GAMEPC\Downloads Loaded Profiles: GAMEPC (Available Profiles: GAMEPC) Boot Mode: Normal ============================================== fixlist content: ***************** start CreateRestorePoint: EmptyTemp: CloseProcesses: HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {2d2c5be0-94b8-11e7-8704-048d38748987} - E:\stp-fifa18.exe HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {609d2171-c4d2-11e7-a1c0-048d38748987} - F:\Lenovo_Suite.exe Task: {853107D5-99D9-4ED4-9D50-87311C1ED5BC} - System32\Tasks\GAMEPC => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v GAMEPC /t REG_SZ /d "explorer.exe hxxp://exinariuminix.info" <==== ATTENTION AlternateDataStreams: C:\Users\Public\AppData:CSM [472] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [476] reboot: end ***************** Restore point was successfully created. Processes closed successfully. "HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2d2c5be0-94b8-11e7-8704-048d38748987}" => removed successfully HKLM\Software\Classes\CLSID\{2d2c5be0-94b8-11e7-8704-048d38748987} => not found "HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{609d2171-c4d2-11e7-a1c0-048d38748987}" => removed successfully HKLM\Software\Classes\CLSID\{609d2171-c4d2-11e7-a1c0-048d38748987} => not found "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{853107D5-99D9-4ED4-9D50-87311C1ED5BC}" => removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{853107D5-99D9-4ED4-9D50-87311C1ED5BC}" => removed successfully C:\Windows\System32\Tasks\GAMEPC => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GAMEPC" => removed successfully C:\Users\Public\AppData => ":CSM" ADS removed successfully C:\Users\Public\Shared Files => ":VersionCache" ADS removed successfully =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 74717645 B Java, Flash, Steam htmlcache => 36882886 B Windows/system/drivers => 272470749 B Edge => 0 B Chrome => 739939091 B Firefox => 378838671 B Opera => 373626447 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 0 B Public => 0 B ProgramData => 0 B systemprofile => 128 B systemprofile32 => 128 B LocalService => 0 B NetworkService => 0 B GAMEPC => 3381879203 B RecycleBin => 0 B EmptyTemp: => 4.9 GB temporary data Removed. ================================ The system needed a reboot. ==== End of Fixlog 13:38:50 ====
  2. Добър вечер имам съмнение за вирус който по някакъв начин е свързан с интернет-а ми През определен период от време от порядъка на час и половина нета ми буквално забива. Имам 2 лан карти тествах ги и не е от тях за това реших да се допитам до вас Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01.09.2018 03 Ran by GAMEPC (administrator) on GAMEPC-PC (01-09-2018 20:09:16) Running from C:\Users\GAMEPC\Downloads Loaded Profiles: GAMEPC (Available Profiles: GAMEPC) Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Български (България) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (TeamSpeak Systems GmbH) C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AutoKMS] => C:\Windows\AutoKMS.exe [615936 2017-09-08] () HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3207968 2018-08-30] (Valve Corporation) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32973712 2018-07-26] (Epic Games, Inc.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Viber] => C:\Users\GAMEPC\AppData\Local\Viber\Viber.exe [33453640 2018-08-21] (Viber Media S.Ã r.l.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {2d2c5be0-94b8-11e7-8704-048d38748987} - E:\stp-fifa18.exe HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {609d2171-c4d2-11e7-a1c0-048d38748987} - F:\Lenovo_Suite.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 87.121.24.12 Tcpip\..\Interfaces\{BFE47783-CFC6-4DEE-8858-A9889FC23A55}: [DhcpNameServer] 87.121.24.12 Tcpip\..\Interfaces\{F8E6BFBF-08DD-4CEC-8468-25670AF9DFE4}: [DhcpNameServer] 87.121.24.12 Internet Explorer: ================== HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_171\bin\ssv.dll [2018-04-20] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-04-20] (Oracle Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll [2018-04-20] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-04-20] (Oracle Corporation) FireFox: ======== FF DefaultProfile: mrpwyf7s.default FF ProfilePath: C:\Users\GAMEPC\AppData\Roaming\Mozilla\Firefox\Profiles\mrpwyf7s.default [2018-08-28] FF Homepage: Mozilla\Firefox\Profiles\mrpwyf7s.default -> google.bg FF Extension: (uBlock Origin) - C:\Users\GAMEPC\AppData\Roaming\Mozilla\Firefox\Profiles\mrpwyf7s.default\Extensions\uBlock0@raymondhill.net.xpi [2018-07-25] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_30_0_0_154.dll [2018-08-15] () FF Plugin: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-04-20] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-04-20] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [No File] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_154.dll [2018-08-15] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1229199.dll [2017-03-31] (Adobe Systems, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-04-20] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-04-20] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-08-21] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-08-21] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) Chrome: ======= CHR StartupUrls: Default -> "hxxp://google.bg/" CHR Profile: C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default [2018-09-01] CHR Extension: (Презентации) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13] CHR Extension: (Документи) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13] CHR Extension: (Google Диск) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-08] CHR Extension: (YouTube) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-08] CHR Extension: (Таблици) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13] CHR Extension: (Google Документи офлайн) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-16] CHR Extension: (Hoxx VPN Proxy) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbcojefnccbanplpoffopkoepjmhgdgh [2018-08-27] CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03] CHR Extension: (Gmail) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-09-08] CHR Extension: (Chrome Media Router) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-08-10] Opera: ======= OPR Extension: (uBlock Origin) - C:\Users\GAMEPC\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2018-06-25] ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7212480 2018-08-08] () S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2291392 2017-08-17] (Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2018-07-29] (EasyAntiCheat Ltd) U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-03-29] (Hi-Rez Studios) [File not signed] R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456 2018-07-19] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456 2018-07-19] (NVIDIA Corporation) S2 SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [24576 2017-09-08] (Realtek Semiconductor.) [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2017-06-20] (Microsoft Corporation) R2 wuauserv; C:\Windows\system32\wuaueng2.dll [2651136 2017-09-08] (Microsoft Corporation) [File not signed] R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [11944 2017-09-08] (Advanced Micro Devices Inc.) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-09-11] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2017-09-11] (Disc Soft Ltd) R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-09-08] (REALiX(tm)) S3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [129224 2017-09-08] (Qualcomm Atheros Co., Ltd.) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30656 2018-07-12] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [69544 2018-06-08] (NVIDIA Corporation) R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [65792 2018-04-24] (NVIDIA Corporation) R3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [61656 2017-09-08] (Realtek Semiconductor Corporation ) S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-09-01 20:09 - 2018-09-01 20:09 - 000015452 _____ C:\Users\GAMEPC\Downloads\FRST.txt 2018-09-01 20:08 - 2018-09-01 20:09 - 002413056 _____ (Farbar) C:\Users\GAMEPC\Downloads\FRST64.exe 2018-09-01 17:36 - 2018-09-01 17:36 - 000014477 _____ C:\Users\GAMEPC\Downloads\Upgrade.2018.BRRip.AC3.X264-CMRG.torrent 2018-09-01 03:38 - 2018-09-01 03:38 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\SmartSteamEmu 2018-09-01 03:13 - 2018-09-01 03:13 - 000059462 _____ C:\Users\GAMEPC\Downloads\HALF-LIFE 2 (1).torrent 2018-09-01 03:13 - 2018-09-01 03:13 - 000012474 _____ C:\Users\GAMEPC\Downloads\Half-Life 2 Episode Two v2257546 FiNAL.torrent 2018-09-01 03:12 - 2018-09-01 03:12 - 000059462 _____ C:\Users\GAMEPC\Downloads\HALF-LIFE 2.torrent 2018-09-01 02:55 - 2018-09-01 02:55 - 000060204 _____ C:\Users\GAMEPC\Downloads\Half Life 2. Crack & Cd Key. Works.rar.torrent 2018-08-30 15:56 - 2018-08-30 15:56 - 000013166 _____ C:\Users\GAMEPC\Downloads\Captain.America.The.First.Avenger.2011.BRRip.XviD.BGAudio-SLSS.torrent 2018-08-30 15:56 - 2018-08-30 15:56 - 000013166 _____ C:\Users\GAMEPC\Downloads\Captain.America.The.First.Avenger.2011.BRRip.XviD.BGAudio-SLSS (1).torrent 2018-08-30 15:54 - 2018-08-30 15:54 - 000019853 _____ C:\Users\GAMEPC\Downloads\Captain.America.The.First.Avenger.2011.480p.BDRip.XviD.DUAL-KiNGS.torrent 2018-08-28 18:10 - 2018-08-28 18:10 - 000014341 _____ C:\Users\GAMEPC\Downloads\Scary Movie 4 (2006) DVDRip.BGAudio-CoveR.avi.torrent 2018-08-28 00:34 - 2018-08-21 13:24 - 000132408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2018-08-28 00:31 - 2018-08-22 19:12 - 032457736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2018-08-28 00:31 - 2018-08-22 19:12 - 017014632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2018-08-28 00:31 - 2018-08-22 19:12 - 000628560 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2018-08-28 00:31 - 2018-08-22 19:12 - 000519120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 040346976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 035250176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 031248576 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 025964944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 019088480 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 017755768 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 015699512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 015169920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 013732120 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 011276424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 004085328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 003967304 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 003504968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 002015184 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439907.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 001564136 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 001467728 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439907.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 001420296 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 001217352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 001159096 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 001093456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 000906608 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 000546880 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 000464536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 000420032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 000182624 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 000164792 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 000159736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2018-08-28 00:31 - 2018-08-22 19:11 - 000142656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2018-08-27 18:10 - 2018-08-27 18:10 - 000106090 _____ C:\Users\GAMEPC\Downloads\Pirates_of_the_Caribbean_Dead_Men_Tell_No_Tales_2017.(subs.sab.bz).rar 2018-08-27 18:10 - 2018-08-27 18:10 - 000016254 _____ C:\Users\GAMEPC\Downloads\Pirates.of.the.Caribbean.Dead.Men.Tell.No.Tales.2017.BRRip.XViD.AC3-HUD.torrent 2018-08-27 02:28 - 2018-08-27 02:29 - 000493548 _____ C:\Users\GAMEPC\Downloads\The Simpsons S01 - S27 Mega Pack x265.torrent 2018-08-26 17:54 - 2018-08-26 17:54 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\Viber 2018-08-26 10:45 - 2018-08-26 10:45 - 000022858 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x19___Whiskey_Business.(subs.sab.bz).rar 2018-08-26 10:45 - 2018-08-26 10:45 - 000020450 _____ C:\Users\GAMEPC\Downloads\The_Simpsons__24x20__The_Fabulous_Faker_Boy.(subs.sab.bz).rar 2018-08-26 08:04 - 2018-08-26 08:04 - 000022840 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x17___What_Animated_Women_Want.(subs.sab.bz).rar 2018-08-26 08:04 - 2018-08-26 08:04 - 000021986 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x18___Pulpit_Friction.(subs.sab.bz).rar 2018-08-26 03:59 - 2018-08-26 03:59 - 000021949 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x16.(subs.sab.bz).rar 2018-08-26 03:59 - 2018-08-26 03:59 - 000020900 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x15___Black_Eyed__Please.(subs.sab.bz).rar 2018-08-26 03:22 - 2018-08-26 03:22 - 000022549 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x14___Gorgeous_Grampa.(subs.sab.bz).rar 2018-08-26 03:22 - 2018-08-26 03:22 - 000018792 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x13___Hardly_Kirk_ing.(subs.sab.bz).rar 2018-08-24 09:07 - 2018-08-24 09:07 - 000021584 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x12___Love_Is_a_Many_Splintered_Thing.(subs.sab.bz).rar 2018-08-24 08:28 - 2018-08-24 08:28 - 000021542 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x11___Changing_of_the_Guardian.(subs.sab.bz).rar 2018-08-24 08:28 - 2018-08-24 08:28 - 000018550 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x10___A_Test_Before_Trying.(subs.sab.bz).rar 2018-08-24 04:23 - 2018-08-24 04:23 - 000019082 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x09___Homer_Goes_to_Prep_School.(subs.sab.bz).rar 2018-08-24 03:33 - 2018-08-24 03:33 - 000022972 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x07___The_Day_The_Earth_Stood_Cool.(subs.sab.bz).rar 2018-08-24 03:33 - 2018-08-24 03:33 - 000020357 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x08___To_Cur_With_Love.(subs.sab.bz).rar 2018-08-23 09:03 - 2018-08-23 09:03 - 000018620 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x06___A_Tree_Grows_in_Springfield.(subs.sab.bz).rar 2018-08-23 08:41 - 2018-08-23 08:41 - 000020144 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x05___Penny_Wiseguys.(subs.sab.bz).rar 2018-08-23 04:21 - 2018-08-23 04:21 - 000020846 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x04___Gone_Abie_Gone..(subs.sab.bz).rar 2018-08-23 04:19 - 2018-08-23 04:19 - 000021718 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x03___Adventures_in_Baby_Getting.(subs.sab.bz).rar 2018-08-23 03:21 - 2018-08-23 03:21 - 000021140 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x01___Moonshine_River.(subs.sab.bz) (1).rar 2018-08-23 03:21 - 2018-08-23 03:21 - 000017872 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x02___Treehouse_of_Horror_XXIII.(subs.sab.bz) (1).rar 2018-08-23 03:21 - 2018-08-23 03:21 - 000014133 _____ C:\Users\GAMEPC\Downloads\The.Simpsons.Season.24.HDTV.x264-***.torrent 2018-08-23 03:21 - 2018-08-23 03:21 - 000014133 _____ C:\Users\GAMEPC\Downloads\The.Simpsons.Season.24.HDTV.x264-*** (1).torrent 2018-08-23 03:20 - 2018-08-23 03:20 - 000021140 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x01___Moonshine_River.(subs.sab.bz).rar 2018-08-23 03:20 - 2018-08-23 03:20 - 000017872 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x02___Treehouse_of_Horror_XXIII.(subs.sab.bz).rar 2018-08-23 03:19 - 2018-08-23 03:19 - 000012426 _____ C:\Users\GAMEPC\Downloads\The.Simpsons.Season.24.HDTV.XviD-***.torrent 2018-08-22 09:27 - 2018-08-22 09:27 - 000021840 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x21___Ned__N__Edna_s_Blend.(subs.sab.bz) (1).rar 2018-08-22 09:26 - 2018-08-22 09:26 - 000021840 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x21___Ned__N__Edna_s_Blend.(subs.sab.bz).rar 2018-08-22 09:26 - 2018-08-22 09:26 - 000019622 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x20___The_Spy_Who_Learned_Me.(subs.sab.bz).rar 2018-08-22 03:41 - 2018-08-22 03:41 - 000019260 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x19____A_Totally_Fun_Thing_Bart_Will_Never_Do_Again.(subs.sab.bz).rar 2018-08-22 03:41 - 2018-08-22 03:41 - 000018680 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x18___Beware_My_Cheating_Bart.(subs.sab.bz) (1).rar 2018-08-22 02:28 - 2018-08-22 02:28 - 000018680 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x18___Beware_My_Cheating_Bart.(subs.sab.bz).rar 2018-08-22 02:27 - 2018-08-22 02:27 - 000018962 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x17___Them__Robot.(subs.sab.bz).rar 2018-08-22 02:27 - 2018-08-22 02:27 - 000009178 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x16___How_I_Wet_Your_Mother.(subs.sab.bz) (1).rar 2018-08-21 16:59 - 2018-08-21 16:59 - 000003506 _____ C:\Windows\System32\Tasks\GAMEPC 2018-08-21 13:29 - 2018-08-21 13:29 - 000009178 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x16___How_I_Wet_Your_Mother.(subs.sab.bz).rar 2018-08-21 11:56 - 2018-08-21 11:56 - 000019710 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x15___Exit_Through_the_Kwik_E_Mart.(subs.sab.bz).rar 2018-08-21 11:14 - 2018-08-21 11:14 - 000018647 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x14___At_Long_Last_Leave.(subs.sab.bz).rar 2018-08-21 11:14 - 2018-08-21 11:14 - 000016842 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x13___The_Daughter_Also_Rises_.(subs.sab.bz).rar 2018-08-21 03:31 - 2018-08-21 03:31 - 000017623 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x12___Moe_Goes_from_Rags_to_Riches.(subs.sab.bz).rar 2018-08-21 02:23 - 2018-08-21 02:23 - 000022312 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x10___Politically_Inept__with_Homer_Simpson.(subs.sab.bz) (1).rar 2018-08-21 02:23 - 2018-08-21 02:23 - 000019117 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x11___The_D_oh_cial_Network.(subs.sab.bz).rar 2018-08-20 00:25 - 2018-08-20 00:25 - 000012347 _____ C:\Users\GAMEPC\Downloads\Euro Truck Simulator 2 [v 1.30.2.2s + 56 DLC] (2013) PC RePack.torrent 2018-08-19 21:03 - 2018-08-19 21:08 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\.ACEStream 2018-08-19 21:03 - 2018-08-19 21:03 - 000000000 ___HD C:\_acestream_cache_ 2018-08-19 20:58 - 2018-08-19 21:00 - 079522432 _____ C:\Users\GAMEPC\Downloads\Ace_Stream_Media_3.1.2.exe 2018-08-19 04:15 - 2018-08-19 04:15 - 000022312 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x10___Politically_Inept__with_Homer_Simpson.(subs.sab.bz).rar 2018-08-19 03:39 - 2018-08-19 03:39 - 000021035 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x08___The_Ten_Per_Cent_Solution.(subs.sab.bz).rar 2018-08-19 03:39 - 2018-08-19 03:39 - 000019249 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x09___Holidays_of_Future_Passed.(subs.sab.bz).rar 2018-08-19 02:42 - 2018-08-19 02:42 - 000023026 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x06___The_Book_Job.(subs.sab.bz).rar 2018-08-19 02:42 - 2018-08-19 02:42 - 000021969 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x07___The_Man_in_the_Blue_Flannel_Pants.(subs.sab.bz).rar 2018-08-18 17:22 - 2018-08-18 17:22 - 000000000 ____D C:\Users\GAMEPC\AppData\LocalLow\SKS 2018-08-13 21:06 - 2018-08-13 21:06 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\EasyAntiCheat 2018-08-04 02:57 - 2018-08-14 23:50 - 000000000 ____D C:\Users\GAMEPC\Documents\ETS2MP 2018-08-04 02:57 - 2018-08-04 02:57 - 000000000 ____D C:\ProgramData\TruckersMP 2018-08-04 02:56 - 2018-08-04 02:56 - 000000681 _____ C:\Users\Public\Desktop\TruckersMP.lnk 2018-08-04 02:56 - 2018-08-04 02:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TruckersMP Launcher 2018-08-03 23:58 - 2018-08-31 23:52 - 000000000 ____D C:\Users\GAMEPC\Documents\Euro Truck Simulator 2 2018-08-03 23:46 - 2018-08-03 23:46 - 000000222 _____ C:\Users\GAMEPC\Desktop\Euro Truck Simulator 2.url ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-09-01 20:09 - 2018-04-05 15:41 - 000000000 ____D C:\FRST 2018-09-01 19:59 - 2017-09-19 23:12 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\TS3Client 2018-09-01 19:47 - 2017-09-23 18:42 - 000000000 ____D C:\Program Files (x86)\Steam 2018-09-01 17:40 - 2009-07-14 07:45 - 000028352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-09-01 17:40 - 2009-07-14 07:45 - 000028352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-09-01 17:37 - 2017-09-10 01:33 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\qBittorrent 2018-09-01 17:33 - 2017-12-06 19:25 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\ViberPC 2018-09-01 17:33 - 2017-09-08 14:03 - 000000000 ____D C:\ProgramData\NVIDIA 2018-09-01 17:31 - 2017-12-08 19:36 - 000000000 ____D C:\Program Files (x86)\Hi-Rez Studios 2018-09-01 17:31 - 2009-07-14 08:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-09-01 03:37 - 2017-09-23 16:30 - 000000000 ____D C:\Windows\SysWOW64\directx 2018-08-31 14:43 - 2017-10-13 16:36 - 000000000 ____D C:\Users\GAMEPC\Documents\ViberDownloads 2018-08-31 14:42 - 2017-09-08 14:05 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\NVIDIA 2018-08-31 13:50 - 2017-09-08 13:35 - 000003864 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1504866897 2018-08-31 13:50 - 2017-09-08 13:34 - 000000000 ____D C:\Program Files (x86)\Opera 2018-08-28 14:52 - 2011-04-12 11:34 - 000000000 ___RD C:\Users\Public\Recorded TV 2018-08-28 14:40 - 2017-09-08 13:51 - 000000000 ____D C:\Users\GAMEPC\AppData\LocalLow\Mozilla 2018-08-28 14:39 - 2017-09-08 12:32 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\VirtualStore 2018-08-28 00:35 - 2017-09-08 14:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2018-08-28 00:35 - 2017-09-08 13:20 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-08-28 00:34 - 2018-05-24 22:23 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2018-08-28 00:34 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\inf 2018-08-28 00:33 - 2018-04-26 20:20 - 000000000 ____D C:\Windows\system32\unknown 2018-08-22 19:12 - 2018-08-01 22:39 - 040189616 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2018-08-22 19:11 - 2018-06-27 16:06 - 020330616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2018-08-22 19:11 - 2017-09-08 14:02 - 004616904 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2018-08-22 19:11 - 2017-09-08 14:02 - 000505592 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2018-08-22 19:11 - 2017-09-08 13:22 - 023305232 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2018-08-21 15:08 - 2017-09-08 13:21 - 000041866 _____ C:\Windows\system32\nvinfo.pb 2018-08-21 13:15 - 2017-09-08 14:03 - 000001951 _____ C:\Windows\NvContainerRecovery.bat 2018-08-21 13:14 - 2017-09-08 14:03 - 005947600 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2018-08-21 13:14 - 2017-09-08 14:03 - 002612264 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2018-08-21 13:14 - 2017-09-08 14:03 - 001767632 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2018-08-21 13:14 - 2017-09-08 14:03 - 000634352 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2018-08-21 13:14 - 2017-09-08 14:03 - 000450768 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2018-08-21 13:14 - 2017-09-08 14:03 - 000124216 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2018-08-21 13:14 - 2017-09-08 14:03 - 000083440 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2018-08-19 21:08 - 2018-07-25 19:56 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\ACEStream 2018-08-18 17:17 - 2018-07-30 18:09 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\.minecraft 2018-08-15 14:13 - 2017-09-18 19:14 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2018-08-15 14:13 - 2017-09-18 19:14 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2018-08-15 14:13 - 2017-09-18 19:14 - 000004478 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2018-08-15 14:13 - 2017-09-18 19:14 - 000004324 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2018-08-15 14:13 - 2017-09-18 19:14 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2018-08-15 14:13 - 2017-09-18 19:14 - 000000000 ____D C:\Windows\system32\Macromed 2018-08-15 10:27 - 2018-03-14 01:27 - 000004466 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier 2018-08-13 15:24 - 2017-09-08 15:54 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\CrashDumps 2018-08-10 03:55 - 2017-09-08 13:35 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-08-10 03:55 - 2017-09-08 13:35 - 000002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2018-08-03 01:32 - 2017-09-08 14:03 - 008273432 _____ C:\Windows\system32\nvcoproc.bin Some files in TEMP: ==================== 2018-01-11 20:05 - 2018-08-29 00:10 - 000000000 _____ () C:\Users\GAMEPC\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll 2018-07-28 16:07 - 2018-08-29 00:10 - 000000020 _____ () C:\Users\GAMEPC\AppData\Local\Temp\663bdeddf9fcedcae13cc41b1f0d9432.dll 2018-01-11 20:05 - 2018-07-27 00:20 - 000000020 _____ () C:\Users\GAMEPC\AppData\Local\Temp\9cfeec25b194d212cb1a549f559db4ab.dll 2018-04-08 23:24 - 2017-09-19 20:57 - 000037376 _____ (Microsoft) C:\Users\GAMEPC\AppData\Local\Temp\HiPatchSelfUpdateWindow.exe 2018-04-08 23:24 - 2017-09-19 20:57 - 000020480 _____ (Microsoft) C:\Users\GAMEPC\AppData\Local\Temp\HiRezLauncherControls.dll 2018-01-20 23:46 - 2018-01-20 23:46 - 001864256 _____ (Oracle Corporation) C:\Users\GAMEPC\AppData\Local\Temp\jre-8u161-windows-au.exe 2018-04-20 23:42 - 2018-04-20 23:42 - 001884616 _____ (Oracle Corporation) C:\Users\GAMEPC\AppData\Local\Temp\jre-8u171-windows-au.exe 2018-01-08 19:01 - 2018-06-01 11:47 - 000728648 _____ (NVIDIA Corporation) C:\Users\GAMEPC\AppData\Local\Temp\nvSCPAPI64.dll 2018-01-29 20:03 - 2018-07-30 20:50 - 000395656 _____ (NVIDIA Corporation) C:\Users\GAMEPC\AppData\Local\Temp\nvStInst.exe 2018-04-12 20:38 - 2018-04-12 20:38 - 058834376 _____ (Skype Technologies S.A.) C:\Users\GAMEPC\AppData\Local\Temp\SkypeSetup.exe ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2018-08-26 04:44 ==================== End of FRST.txt ============================ Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01.09.2018 03 Ran by GAMEPC (01-09-2018 20:10:01) Running from C:\Users\GAMEPC\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2017-09-08 09:32:01) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2297230751-1021565052-1431566534-500 - Administrator - Disabled) GAMEPC (S-1-5-21-2297230751-1021565052-1431566534-1000 - Administrator - Enabled) => C:\Users\GAMEPC Guest (S-1-5-21-2297230751-1021565052-1431566534-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 26.0.0.127 - Adobe Systems Incorporated) Adobe Flash Player 30 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 30.0.0.154 - Adobe Systems Incorporated) Adobe Flash Player 30 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 30.0.0.154 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.9.199 - Adobe Systems, Inc.) ATI Catalyst Install Manager (HKLM\...\{DC9C8BC1-72CE-B5FE-EA4F-6D9127E51746}) (Version: 3.0.736.0 - ATI Technologies, Inc.) CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6623 - CDBurnerXP) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.6.0.0283 - Disc Soft Ltd) Discord (HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Discord) (Version: 0.0.301 - Discord Inc.) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 399.07 - NVIDIA Corporation) Hidden Epic Games Launcher (HKLM-x32\...\{8F89B0CF-8144-43EE-AB9F-B7F8F23D85FB}) (Version: 1.1.135.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden FIFA18 version 1.0 (HKLM\...\FIFA18_is1) (Version: 1.0 - STEAMPUNKS) <==== ATTENTION GOM Player (HKLM-x32\...\GOM Player) (Version: 2.3.14.5270 - Gretech Corporation) Google Chrome (HKLM\...\{DA081EB6-F64C-358C-9BB0-AF1EA8001F34}) (Version: 68.0.3440.106 - Google, Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 6.0.2.4 - Hi-Rez Studios) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Java 8 Update 171 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180171F0}) (Version: 8.0.1710.11 - Oracle Corporation) Java 8 Update 171 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180171F0}) (Version: 8.0.1710.11 - Oracle Corporation) Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-CA) (HKLM-x32\...\{9C5505DA-F9C1-46CB-9F8F-AC38F8EA518A}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-GB) (HKLM-x32\...\{A0186231-0A8B-455A-8A25-B64AABCC11A6}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Microsoft .NET Framework 4.7 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02053 - Microsoft Corporation) Microsoft Office Language Pack 2010 - Bulgarian/български (HKLM-x32\...\Office14.OMUI.bg-bg) (Version: 14.0.4763.1021 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4734.1000 - Microsoft Corporation) Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation) Mozilla Firefox 61.0.1 (x64 bg) (HKLM\...\Mozilla Firefox 61.0.1 (x64 bg)) (Version: 61.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.3 - Mozilla) NVIDIA 3D Vision Controller Driver 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation) NVIDIA 3D Vision Driver 399.07 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 399.07 - NVIDIA Corporation) NVIDIA GeForce Experience 3.14.1.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.14.1.48 - NVIDIA Corporation) NVIDIA Graphics Driver 399.07 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 399.07 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.37.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.4 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation) NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Opera Stable 55.0.2994.44 (HKLM-x32\...\Opera 55.0.2994.44) (Version: 55.0.2994.44 - Opera Software) PotPlayer-64 bit (HKLM\...\PotPlayer64) (Version: 1.7.13622 - Kakao Corp.) PotPlayer-64 bit (HKLM-x32\...\PotPlayer64) (Version: 1.7.8556 - Kakao Corp.) qBittorrent 4.1.1 (HKLM-x32\...\qBittorrent) (Version: 4.1.1 - The qBittorrent project) Skype™ 7.41 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.41.101 - Skype Technologies S.A.) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamSpeak 3 Client (HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\TeamSpeak 3 Client) (Version: 3.1.8 - TeamSpeak Systems GmbH) TruckersMP Launcher 1.0.0.4 (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 1.0.0.4 - TruckersMP Team) Viber (HKLM-x32\...\{0235CB19-2284-4C34-9CF9-04078CF94C32}) (Version: 7.7.0.1126 - Viber Media Inc.) Hidden Viber (HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\{f37aa91a-8669-4ac1-bb40-8cc05c3beca1}) (Version: 7.7.0.1126 - Viber Media Inc.) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinRAR 5.40 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) WinRAR 5.50 (64-битова версия) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) World of Warcraft Classic (HKLM-x32\...\World of Warcraft Classic) (Version: 1.12.1.5875 - Blizzard Entertainment) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-08-21] (NVIDIA Corporation) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {17541074-21CD-4A00-B834-A5C51C9117DE} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-07-19] (NVIDIA Corporation) Task: {29CD2B59-F360-4EA0-8046-E993FB989355} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_pepper.exe [2018-08-15] (Adobe Systems Incorporated) Task: {2BEF52B4-7020-4DE8-A8E3-1EF9C11AE72E} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-07-19] (NVIDIA Corporation) Task: {4AD8F034-A7E9-402D-91CD-4DC03140A409} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-07-19] (NVIDIA Corporation) Task: {541488F0-996C-41A7-9FD0-B384D368B53E} - System32\Tasks\Opera scheduled Autoupdate 1504866897 => C:\Program Files (x86)\Opera\launcher.exe [2018-08-23] (Opera Software) Task: {5EB42901-F6E5-4B7E-ACED-5B56332750D0} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-07-19] (NVIDIA Corporation) Task: {64503CA0-D96B-485A-A2ED-32E1ADEC5130} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-08] (Google Inc.) Task: {73FC8EF7-E132-4317-92E8-E7FC4CA2F6EA} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation) Task: {8528CA4D-0B26-4E28-85F3-3F183D807591} - System32\Tasks\Driver Booster SkipUAC (GAMEPC) => C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe Task: {853107D5-99D9-4ED4-9D50-87311C1ED5BC} - System32\Tasks\GAMEPC => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v GAMEPC /t REG_SZ /d "explorer.exe hxxp://exinariuminix.info" <==== ATTENTION Task: {A19D33FF-7FBC-4D6F-B122-FFBC2947D956} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-08-15] (Adobe Systems Incorporated) Task: {A1D60D55-A6B8-401B-BC05-2938E02DF2F2} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => d:\program files\windows defender\MpCmdRun.exe Task: {C4E8B14A-4159-4C58-BDAD-281DBBFC97E8} - System32\Tasks\Microsoft\Windows Defender\MpIdleTask => d:\program files\windows defender\MpCmdRun.exe Task: {CE666270-E9FC-4C1B-B1E2-7F3D281B959B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-07-19] (NVIDIA Corporation) Task: {EB620B18-B5AA-4EB6-9CE3-AA5A941F2E00} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation) Task: {ED30AF38-938D-4526-94E7-55D411155D8F} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-07-19] (NVIDIA Corporation) Task: {EFA9CC79-0313-4D33-94BC-FED17F4BF7AA} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-07-19] (NVIDIA Corporation) Task: {F381ABC2-2626-4AC3-AE8D-FB12F3685D5D} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation) Task: {F67C982E-B27B-4B4D-B6F1-B5474BEA2341} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_Plugin.exe [2018-08-15] (Adobe Systems Incorporated) Task: {FB761E82-2ABF-4B7D-A0A8-3F00F3533DD3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-08] (Google Inc.) Task: {FFA6E2EE-E424-45AF-A108-E61D708B7695} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Браузър Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) <==== Cyrillic Shortcut: C:\Users\Public\Desktop\Браузър Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) <==== Cyrillic ==================== Loaded Modules (Whitelisted) ============== 2017-09-08 14:03 - 2018-08-21 13:14 - 000142888 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2010-01-09 20:17 - 2010-01-09 20:17 - 004254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2018-05-24 22:15 - 2018-07-19 23:20 - 001314856 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2018-08-29 02:53 - 2018-08-27 22:41 - 001054496 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\SDL2.dll 2018-08-29 02:53 - 2018-08-27 23:52 - 098006816 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libcef.dll 2018-01-22 13:34 - 2018-01-22 13:34 - 000174744 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\quazip.dll 2017-10-13 14:17 - 2017-10-13 14:17 - 000020632 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\libEGL.DLL 2017-10-13 14:17 - 2017-10-13 14:17 - 001981592 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\libGLESv2.dll 2018-01-22 13:34 - 2018-01-22 13:34 - 000125592 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2018-01-22 13:34 - 2018-01-22 13:34 - 000150680 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2017-09-19 23:12 - 2017-09-19 23:12 - 000157696 _____ () C:\Users\GAMEPC\AppData\Roaming\TS3Client\plugins\gamepad_joystick_win64.dll 2017-09-19 23:12 - 2017-09-19 23:12 - 000012288 _____ () C:\Users\GAMEPC\AppData\Roaming\TS3Client\plugins\gamepad_joystick\api_stub.dll 2017-09-19 23:12 - 2017-09-19 23:12 - 000345880 _____ () C:\Users\GAMEPC\AppData\Roaming\TS3Client\plugins\clientquery_plugin_win64.dll 2018-08-29 02:53 - 2018-08-27 23:52 - 004443424 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libglesv2.dll 2018-08-29 02:53 - 2018-08-27 23:52 - 000100128 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libegl.dll 2018-08-10 03:55 - 2018-08-08 03:41 - 004855640 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libglesv2.dll 2018-08-10 03:55 - 2018-08-08 03:41 - 000115544 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libegl.dll 2017-09-08 14:04 - 2018-07-19 23:19 - 001032744 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-09-23 18:44 - 2018-08-27 22:41 - 000874784 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2017-09-23 18:44 - 2016-09-01 04:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2017-09-23 18:44 - 2016-09-01 04:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2017-09-23 18:44 - 2016-09-01 04:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2017-09-23 18:44 - 2018-08-30 00:17 - 002646304 _____ () C:\Program Files (x86)\Steam\video.dll 2017-12-14 11:20 - 2017-12-20 04:43 - 005137696 _____ () C:\Program Files (x86)\Steam\libavcodec-57.dll 2017-12-14 11:20 - 2017-12-20 04:43 - 000847136 _____ () C:\Program Files (x86)\Steam\libavutil-55.dll 2017-12-14 11:20 - 2017-12-20 04:43 - 000695584 _____ () C:\Program Files (x86)\Steam\libavformat-57.dll 2017-12-14 11:20 - 2017-12-20 04:43 - 000351520 _____ () C:\Program Files (x86)\Steam\libavresample-3.dll 2017-12-14 11:20 - 2017-12-20 04:43 - 000783648 _____ () C:\Program Files (x86)\Steam\libswscale-4.dll 2017-09-23 18:44 - 2018-08-30 00:17 - 001015584 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2017-09-23 18:43 - 2016-07-05 01:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Public\AppData:CSM [472] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [476] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 05:34 - 2009-06-11 00:00 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\GAMEPC\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 87.121.24.12 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == MSCONFIG\startupfolder: C:^Users^GAMEPC^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Need for Speed™ Undercover Registration.lnk => C:\Windows\pss\Need for Speed™ Undercover Registration.lnk.Startup MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: Discord => C:\Users\GAMEPC\AppData\Local\Discord\app-0.0.300\Discord.exe MSCONFIG\startupreg: RazerCortex => "C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe" -autorun MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Viber => "C:\Users\GAMEPC\AppData\Local\Viber\Viber.exe" StartMinimized ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{11074DEE-7B8C-4DC2-AE4C-93DF0A309913}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{D19357FE-92D5-4C15-865D-6BA1144E3141}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{21EB0059-8DA7-4F26-8EBC-947F0C4E2AAA}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe FirewallRules: [{F8BB1871-4D02-4C5E-A222-4D557710B3E1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe FirewallRules: [{1E8A507C-3B06-43AB-92D1-1DF3E7592F50}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{1EE7FB5D-9E25-4DA9-ACB5-D608ECDBB452}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{84ACAD4A-CAC3-405E-BED8-CCE7B6F558B9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{ECD86BF2-018A-42DF-BDE1-D3B78B430449}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{5C9FEA0E-0037-4228-8A5E-308AD75AC1DF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{FD05E114-41E1-4EC3-B5A2-BBA593EE39E2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{831352BE-7396-43E6-9657-9ED9D8BAB30D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{AB5ACC3F-22CB-469F-9EB3-8D69417E7CD5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{F49F4A4B-5D47-4938-9A35-D5AC2266716F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{4145C754-6CAB-4BD7-B9A0-015670DBEB52}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{43ADA9C0-2E56-45D1-B73D-9C89040C463D}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{06129773-C563-4DFF-8D34-BEA82843A4F0}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7AEADA08-C908-4138-A481-C7A9273E9FCB}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{2570E448-A94B-49F4-BB96-09C89387333D}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [TCP Query User{A7A3205E-5145-4588-981D-700ACBF67C2F}D:\arc\s\fifa 17\fifa17.exe] => (Allow) D:\arc\s\fifa 17\fifa17.exe FirewallRules: [UDP Query User{FCB7CF1E-D214-47B7-8337-D288C7BAF41D}D:\arc\s\fifa 17\fifa17.exe] => (Allow) D:\arc\s\fifa 17\fifa17.exe FirewallRules: [TCP Query User{FE770401-859A-47E7-83C8-031A3CCB827E}D:\1.6\hl.exe] => (Allow) D:\1.6\hl.exe FirewallRules: [UDP Query User{6ADE0CF9-8E94-4097-8470-CF141DE016AF}D:\1.6\hl.exe] => (Allow) D:\1.6\hl.exe FirewallRules: [TCP Query User{0D1FADB8-FCE1-4E0E-B19A-D5490965A994}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{F6FECCC1-1C2E-45A5-B7AC-EAF4B88229DF}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [TCP Query User{71DEC4BA-0EE6-44EB-B6E4-3F2B7E7B033C}D:\sdad\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\sdad\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{AAFB686C-3BA7-489D-AD75-25F81C3129EA}D:\sdad\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\sdad\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{86071F7C-F2FF-404C-BDFF-DEC06251CE41}D:\sdad\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\sdad\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{8429747D-9E78-43DA-A34C-9E12DBE52ABD}D:\sdad\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\sdad\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [TCP Query User{190C4BF7-61BF-421A-87DE-236D48F2F203}D:\frot\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\frot\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [UDP Query User{F4C57F24-879D-4F9A-B8E8-DAFB45A1C764}D:\frot\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\frot\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [TCP Query User{662290C0-C811-4E20-AEF3-23DFAA94C7C1}D:\human\wolfenstein - the new order\wolfneworder_x64.exe] => (Allow) D:\human\wolfenstein - the new order\wolfneworder_x64.exe FirewallRules: [UDP Query User{D80C48E0-BCA2-4D0F-B628-97E9FF7A83E7}D:\human\wolfenstein - the new order\wolfneworder_x64.exe] => (Allow) D:\human\wolfenstein - the new order\wolfneworder_x64.exe FirewallRules: [TCP Query User{795A7748-4348-4E5A-B2D5-B4B7A1324DC7}D:\ijijj\f1 2016\f1_2016.exe] => (Allow) D:\ijijj\f1 2016\f1_2016.exe FirewallRules: [UDP Query User{BC1990C5-EB17-4471-A2D7-034561829F99}D:\ijijj\f1 2016\f1_2016.exe] => (Allow) D:\ijijj\f1 2016\f1_2016.exe FirewallRules: [TCP Query User{14DDF284-5460-443A-A985-ED25EFDEF97A}D:\aasd\battlefield hardline\bfh.exe] => (Allow) D:\aasd\battlefield hardline\bfh.exe FirewallRules: [UDP Query User{41B16D1B-DA09-4913-8F3D-A29DAAF8BC6D}D:\aasd\battlefield hardline\bfh.exe] => (Allow) D:\aasd\battlefield hardline\bfh.exe FirewallRules: [TCP Query User{7FFD35DD-B830-4881-9F21-B0DDD87C935E}D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [UDP Query User{0422AA3B-D32B-4AE2-8E19-F4D4ED2A2BDA}D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [TCP Query User{CD2A8849-5FA2-4B7F-9315-E011E25C0F34}D:\sc2\sc2\starcraft ii\versions\base60321\sc2_x64.exe] => (Allow) D:\sc2\sc2\starcraft ii\versions\base60321\sc2_x64.exe FirewallRules: [UDP Query User{21623E77-268D-4B31-B4E2-E4D028DC7916}D:\sc2\sc2\starcraft ii\versions\base60321\sc2_x64.exe] => (Allow) D:\sc2\sc2\starcraft ii\versions\base60321\sc2_x64.exe FirewallRules: [TCP Query User{E098DE48-4A6A-4CF4-AC43-CFCFEFC46C76}D:\diablo 3\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo 3\diablo iii\x64\diablo iii64.exe FirewallRules: [UDP Query User{74DA4CD7-8E73-4107-8D65-D40C2EE60DA9}D:\diablo 3\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo 3\diablo iii\x64\diablo iii64.exe FirewallRules: [TCP Query User{DF89E965-0B93-4801-A529-B1FDCF96DC5E}D:\heroes\might & magic.heroes 6.gold edition.v 2.1.1.0 + 4 dlc\might & magic heroes vi.exe] => (Allow) D:\heroes\might & magic.heroes 6.gold edition.v 2.1.1.0 + 4 dlc\might & magic heroes vi.exe FirewallRules: [UDP Query User{F4B31A0B-4922-456C-9A2B-33260CE59A1F}D:\heroes\might & magic.heroes 6.gold edition.v 2.1.1.0 + 4 dlc\might & magic heroes vi.exe] => (Allow) D:\heroes\might & magic.heroes 6.gold edition.v 2.1.1.0 + 4 dlc\might & magic heroes vi.exe FirewallRules: [TCP Query User{DEFA441A-0140-4630-9B49-0F0DB88705EC}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe FirewallRules: [UDP Query User{2F3AD7BE-C36D-4E24-BFFA-EED5BE5D11F4}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe FirewallRules: [TCP Query User{68773BE5-EEF8-470B-B1C8-8AEF54FF8AAC}D:\steamlibrary\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe FirewallRules: [UDP Query User{C67CBA43-ED5A-43CD-96B6-63C91FC29243}D:\steamlibrary\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe FirewallRules: [TCP Query User{B02A6D6E-E443-466D-A359-23CF0374577C}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{7800F34C-7767-4BDF-8A49-26D1C6C80F5F}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{B176F8F2-937B-49A8-AB1F-8E228B518267}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{94DE9988-CA46-400F-9C84-2E1FC7A47F6A}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [TCP Query User{366AF239-7D01-4970-8487-934BFB4B7396}D:\fortniteeeeeeeee\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortniteeeeeeeee\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [UDP Query User{8C9336D5-DCAF-4329-8BB8-4F1F6DB85DBF}D:\fortniteeeeeeeee\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortniteeeeeeeee\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [{3B7D3801-5557-4905-A940-9FFB3D9419C2}] => (Allow) D:\SteamLibrary\steamapps\common\WormsRevolution\WormsRevolution.exe FirewallRules: [{B5A843B5-4869-438A-A418-D42BF3EC672D}] => (Allow) D:\SteamLibrary\steamapps\common\WormsRevolution\WormsRevolution.exe FirewallRules: [TCP Query User{3E9CAAAF-B071-4C5A-BF3C-8D6CE738DDCF}D:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1\h1z1.exe FirewallRules: [UDP Query User{5D93D003-DFB9-4F4B-9146-7E5878848F21}D:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1\h1z1.exe FirewallRules: [TCP Query User{6974BC97-0928-445B-9F9D-0F91B4FFF12A}D:\raly\rads\projects\league_client\releases\0.0.0.132\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.132\deploy\leagueclient.exe FirewallRules: [UDP Query User{5B5C34D8-85D1-464C-BF0D-C0BC4965E441}D:\raly\rads\projects\league_client\releases\0.0.0.132\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.132\deploy\leagueclient.exe FirewallRules: [TCP Query User{9DFFCC02-9F9C-4A63-AEAD-98B046D6D7AF}D:\raly\rads\projects\league_client\releases\0.0.0.133\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.133\deploy\leagueclient.exe FirewallRules: [UDP Query User{B81959A2-C448-41BA-BA68-04828BCD4CA7}D:\raly\rads\projects\league_client\releases\0.0.0.133\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.133\deploy\leagueclient.exe FirewallRules: [TCP Query User{58724FF2-EE14-4D53-B797-DE1734F6983C}D:\raly\rads\projects\league_client\releases\0.0.0.134\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.134\deploy\leagueclient.exe FirewallRules: [UDP Query User{6D577E05-BA57-4526-A81E-254BD8C9E7EC}D:\raly\rads\projects\league_client\releases\0.0.0.134\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.134\deploy\leagueclient.exe FirewallRules: [TCP Query User{5B3437A8-B09D-438D-A545-CAE6B7A82962}D:\raly\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe FirewallRules: [UDP Query User{8939EF7B-A8BE-4730-93F9-D8778A56462D}D:\raly\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe FirewallRules: [{B5E37EE1-9BE1-4B57-9AD5-EEF981D7F031}] => (Allow) D:\SteamLibrary\steamapps\common\TheLongDark\tld.exe FirewallRules: [{DC6EA5CC-0B14-4DA5-BA55-E772E5860678}] => (Allow) D:\SteamLibrary\steamapps\common\TheLongDark\tld.exe FirewallRules: [{C118432B-871D-4268-9C07-248641F7E265}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2015\F1_2015.exe FirewallRules: [{9A5D2120-07BE-4587-9767-DFFC0484207F}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2015\F1_2015.exe FirewallRules: [{CC5A4281-306D-4711-91C7-E00E2ABEBC40}] => (Allow) D:\SteamLibrary\steamapps\common\Human Fall Flat\Human.exe FirewallRules: [{8A4DCBEC-E89C-462E-8216-8A9A38C394ED}] => (Allow) D:\SteamLibrary\steamapps\common\Human Fall Flat\Human.exe FirewallRules: [TCP Query User{9EB67BC3-E37B-4DDA-8152-C4C212BCDB94}D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe FirewallRules: [UDP Query User{06278712-8E63-4F40-ABC3-10BC10A83F0D}D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe FirewallRules: [{59C433B9-0583-47C6-BBD8-EF6CED25387C}] => (Allow) D:\SteamLibrary\steamapps\common\We Were Here\We Were Here.exe FirewallRules: [{D5D9E8C7-DA4C-4CBB-AC6A-B6BA5761875C}] => (Allow) D:\SteamLibrary\steamapps\common\We Were Here\We Were Here.exe FirewallRules: [{F504A400-375A-4791-AA80-1D9A6E9B02C0}] => (Allow) D:\SteamLibrary\steamapps\common\We Were Here\We Were Here VR.exe FirewallRules: [{82CB8FD2-99BF-4B0A-A00B-1E3B0460446C}] => (Allow) D:\SteamLibrary\steamapps\common\We Were Here\We Were Here VR.exe FirewallRules: [{BA413E19-022B-4719-B578-4F0E6C99F5FA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{FDAF511F-0C5C-4E27-8950-6B78D13412DB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{375984E1-0435-4BEC-A184-6481B3B25DF1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe FirewallRules: [{4694C972-1914-47E9-96EE-62ADBA23A733}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe FirewallRules: [TCP Query User{B1B4DF97-831E-413C-A928-4176B7B76801}D:\fifa\fifa18\fifa18.exe] => (Allow) D:\fifa\fifa18\fifa18.exe FirewallRules: [UDP Query User{8691C936-9089-4A6A-9831-A0087C639A9C}D:\fifa\fifa18\fifa18.exe] => (Allow) D:\fifa\fifa18\fifa18.exe FirewallRules: [{B55C2732-0E9E-43B3-B4D0-12834CB1DCC6}] => (Allow) D:\SteamLibrary\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe FirewallRules: [{E2D40EE2-980F-40C3-9A72-0C423C1EA748}] => (Allow) D:\SteamLibrary\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe FirewallRules: [TCP Query User{C8205113-646C-40BE-B04A-9737DE3D65A9}D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe FirewallRules: [UDP Query User{C869487F-15FB-47B4-A5E6-EFC90C935835}D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe FirewallRules: [{ACF2D27B-3389-4299-8332-3C95A0840B47}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{1DB0B31E-D885-49A8-8116-59839190B5CF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{4A6C302F-DC5D-4EC9-A3A8-7EBE0898B5FB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{7E8CD031-0619-4BF4-99C2-6EBEBF4F0EA1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{4F47D42D-E5BC-4589-B814-554FFBC0605A}C:\users\gamepc\appdata\roaming\acestream\engine\ace_engine.exe] => (Allow) C:\users\gamepc\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [UDP Query User{C07DD726-677E-4397-BFE6-5AA734523796}C:\users\gamepc\appdata\roaming\acestream\engine\ace_engine.exe] => (Allow) C:\users\gamepc\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [{FF76D716-DBA6-437A-A34F-847AF6AB88AD}] => (Allow) D:\SteamLibrary\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe FirewallRules: [{13A0D233-1007-4376-A4B4-1DA27C101ECB}] => (Allow) D:\SteamLibrary\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe FirewallRules: [{2A5A589D-F047-4DBC-AD59-C99098A30A85}] => (Allow) C:\Program Files (x86)\Opera\54.0.2952.64\opera.exe FirewallRules: [TCP Query User{86D55748-40A6-4288-AEF7-2C0B25BDF778}C:\program files\java\jre1.8.0_171\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_171\bin\javaw.exe FirewallRules: [UDP Query User{D8AE6DDF-C0F2-475C-AB9C-B84C11DDC8AB}C:\program files\java\jre1.8.0_171\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_171\bin\javaw.exe FirewallRules: [TCP Query User{695C8135-FF2C-4E94-9566-E526643684CA}C:\program files (x86)\common files\oracle\java\javapath_target_116381722\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_116381722\java.exe FirewallRules: [UDP Query User{3091889E-265D-4648-88DF-CEE54431325D}C:\program files (x86)\common files\oracle\java\javapath_target_116381722\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_116381722\java.exe FirewallRules: [{E370D323-1FD8-4B79-9CB6-FDF84B6DBAF4}] => (Allow) D:\SteamLibrary\steamapps\common\Deceit\bin\win_x64\Deceit.exe FirewallRules: [{F6725860-B268-4D63-9C1A-31CFE62CB1E1}] => (Allow) D:\SteamLibrary\steamapps\common\Deceit\bin\win_x64\Deceit.exe FirewallRules: [{19A95D83-1997-4E1D-B782-E9518C66DFBB}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{A1F359C7-4712-4555-B250-972DC5238157}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{9310E9DD-E024-4761-B062-698FB0E3AB13}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{F2B11A3B-CC53-4DFF-B8AC-3ADDA6F5D794}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{93C3F977-9460-4CA1-822E-97863829BC15}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{DB2F74E8-C7EB-44B3-81D7-12B84175E2EA}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe FirewallRules: [{E44676E1-030C-4238-B65F-434792B61DE5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe FirewallRules: [{42D8E88E-3D4D-4E4D-B97E-C0F5923D12E4}] => (Allow) C:\Program Files (x86)\Opera\55.0.2994.44\opera.exe FirewallRules: [{08673158-7D6C-4134-8F49-9BFD9F3D8235}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{3425B575-2ECF-49E3-A66B-4E8F2AC11D72}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{6E5214AA-681E-46A6-B41D-0831848FC23F}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{CEDE7961-E482-448F-9878-E882114A4D71}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [TCP Query User{7A0BC9E9-DE73-44F2-A9C4-D1CFCB7E7F10}D:\hl2\half-life 2 episode two\hl2.exe] => (Allow) D:\hl2\half-life 2 episode two\hl2.exe FirewallRules: [UDP Query User{BE13FAFC-58E8-41A9-BF26-8F33F6F4C271}D:\hl2\half-life 2 episode two\hl2.exe] => (Allow) D:\hl2\half-life 2 episode two\hl2.exe ==================== Restore Points ========================= 18-08-2018 15:07:15 Планирана контролна точка 24-08-2018 00:25:28 Installed DirectX 31-08-2018 07:26:57 Планирана контролна точка ==================== Faulty Device Manager Devices ============= Name: Qualcomm Atheros AR8161/8165 PCI-E Gigabit Ethernet Controller (NDIS 6.20) Description: Qualcomm Atheros AR8161/8165 PCI-E Gigabit Ethernet Controller (NDIS 6.20) Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Qualcomm Atheros Service: L1C Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (09/01/2018 05:32:03 PM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Could not get performance counter registry info for WSearchIdxPi for instance due to the following error: Операцията завърши успешно. 0x0. Error: (09/01/2018 05:32:00 PM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Performance monitoring cannot be initialized for the gatherer object, because the counters are not loaded or the shared memory object cannot be opened. This only affects availability of the perfmon counters. Restart the computer. Context: Application, SystemIndex Catalog Error: (09/01/2018 05:32:00 PM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: Performance monitoring cannot be initialized for the gatherer service, because the counters are not loaded or the shared memory object cannot be opened. This only affects availability of the perfmon counters. Restart the computer. Error: (09/01/2018 05:31:48 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Service cannot be started. System.NullReferenceException: Object reference not set to an instance of an object. at SetupAfterRebootService.SetupARService.OnStart(String[] args) at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (09/01/2018 03:13:54 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Program Files\ATI\CIM\Bin64\Setup.exe". Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (09/01/2018 03:13:54 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Program Files\ATI\CIM\Bin64\InstallManagerApp.exe". Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (08/31/2018 03:18:22 PM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Could not get performance counter registry info for WSearchIdxPi for instance due to the following error: Операцията завърши успешно. 0x0. Error: (08/31/2018 03:18:18 PM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Performance monitoring cannot be initialized for the gatherer object, because the counters are not loaded or the shared memory object cannot be opened. This only affects availability of the perfmon counters. Restart the computer. Context: Application, SystemIndex Catalog System errors: ============= Error: (09/01/2018 05:31:59 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Неуспешно зареждане на следния драйвер, който се активира с включване на компютъра или стартиране на системата: cdrom Error: (08/31/2018 03:18:17 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Неуспешно зареждане на следния драйвер, който се активира с включване на компютъра или стартиране на системата: cdrom Error: (08/31/2018 03:17:25 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Изтекъл период на изчакване (30000 милисекунди) при изчакване на услуга Hi-Rez Studios Authenticate and Update Service да се свърже. Error: (08/31/2018 03:16:53 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 15:13:47 ч. on ‎31.‎8.‎2018 ‎г. was unexpected. Error: (08/30/2018 02:45:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Услуга Steam Client Service не може да бъде стартирана поради следната грешка: Услугата не отговори навреме на искане за стартиране или управление. Error: (08/30/2018 02:45:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Изтекъл период на изчакване (30000 милисекунди) при изчакване на услуга Steam Client Service да се свърже. Error: (08/29/2018 02:54:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Услуга Steam Client Service не може да бъде стартирана поради следната грешка: Услугата не отговори навреме на искане за стартиране или управление. Error: (08/29/2018 02:54:23 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Изтекъл период на изчакване (30000 милисекунди) при изчакване на услуга Steam Client Service да се свърже. ==================== Memory info =========================== Processor: AMD FX-8320E Eight-Core Processor Percentage of memory in use: 37% Total physical RAM: 8189.54 MB Available physical RAM: 5089.89 MB Total Virtual: 16377.26 MB Available Virtual: 12218.5 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:150 GB) (Free:69.91 GB) NTFS Drive d: () (Fixed) (Total:781.41 GB) (Free:509.92 GB) NTFS \\?\Volume{2f050b3f-9477-11e7-8c98-806e6f6e6963}\ (Резервирана за системата) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 0C59AE75) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=150 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=781.4 GB) - (Type=05) ==================== End of Addition.txt ============================
  3. porata

    Съмнение за вирус

    съжалявам просто нямах достъп до пц-то след 2-3 дни след рестарт на пц-то всичко отново изглежда наред.Благодаря че обърнахте внимание на темата и извинявайте още веднъж !
  4. porata

    Съмнение за вирус

    Ами аз не съм много запознат на настолен комп дали имам батерия на дъното ;д но ако имам значи е на доста години поне на 4 може би не съм сигурен тъй като сменях доста неща по пц-то но специално дъното не си спомням да съм сменял
  5. Добър ден и честит празник на сайта След рестартиране на пц-то 2 пати часовникът се връщаше със стара дата нещо от рода на 11,1,2011г След което някой от програмите който ми се стартират със лин-а просто бяха скрити като икони .. както и че пц-то започна буквално да работи по бавно Не съм със лаптоп ) Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14.03.2018 Ran by GAMEPC (administrator) on GAMEPC-PC (05-04-2018 15:41:11) Running from C:\Users\GAMEPC\Downloads Loaded Profiles: GAMEPC (Available Profiles: GAMEPC) Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Български (България) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AutoKMS] => C:\Windows\AutoKMS.exe [615936 2017-09-08] () HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832264 2017-10-10] (Skype Technologies S.A.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3199776 2018-04-03] (Valve Corporation) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4836032 2017-08-17] (Disc Soft Ltd) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Viber] => C:\Users\GAMEPC\AppData\Local\Viber\Viber.exe [36126280 2018-03-12] (Viber Media S.Ã r.l.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Discord] => C:\Users\GAMEPC\AppData\Local\Discord\app-0.0.300\Discord.exe [57821176 2018-01-08] (Discord Inc.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe [475232 2018-01-16] (Razer Inc.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {609d2171-c4d2-11e7-a1c0-048d38748987} - F:\Lenovo_Suite.exe Startup: C:\Users\GAMEPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Need for Speed™ Undercover Registration.lnk [2018-02-24] ShortcutTarget: Need for Speed™ Undercover Registration.lnk -> D:\uncer\Support\EAregister.exe (No File) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 87.121.24.12 Tcpip\..\Interfaces\{F8E6BFBF-08DD-4CEC-8468-25670AF9DFE4}: [DhcpNameServer] 87.121.24.12 Internet Explorer: ================== HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_161\bin\ssv.dll [2018-01-20] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-01-20] (Oracle Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-01-20] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-01-20] (Oracle Corporation) FireFox: ======== FF DefaultProfile: mrpwyf7s.default FF ProfilePath: C:\Users\GAMEPC\AppData\Roaming\Mozilla\Firefox\Profiles\mrpwyf7s.default [2018-04-01] FF Homepage: Mozilla\Firefox\Profiles\mrpwyf7s.default -> google.bg FF Extension: (uBlock Origin) - C:\Users\GAMEPC\AppData\Roaming\Mozilla\Firefox\Profiles\mrpwyf7s.default\Extensions\uBlock0@raymondhill.net.xpi [2018-03-31] FF Extension: (TLS 1.3 gradual roll-out) - C:\Users\GAMEPC\AppData\Roaming\Mozilla\Firefox\Profiles\mrpwyf7s.default\features\{6dfa8bc3-c562-48f9-84e2-1e447d2cef2f}\tls13-rollout-bug1442042@mozilla.org.xpi [2018-03-31] [Legacy] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_29_0_0_113.dll [2018-03-14] () FF Plugin: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-01-20] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-01-20] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [No File] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_29_0_0_113.dll [2018-03-14] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1229199.dll [2017-03-31] (Adobe Systems, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-01-20] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-01-20] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-03-24] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-03-24] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) Chrome: ======= CHR StartupUrls: Default -> "hxxp://google.bg/" CHR Profile: C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default [2018-04-05] CHR Extension: (Презентации) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13] CHR Extension: (Документи) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13] CHR Extension: (Google Диск) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-08] CHR Extension: (YouTube) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-08] CHR Extension: (Таблици) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13] CHR Extension: (Google Документи офлайн) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-09-08] CHR Extension: (MetaMask) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2018-04-05] CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03] CHR Extension: (Gmail) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-09-08] CHR Extension: (Chrome Media Router) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-03-23] Opera: ======= OPR Extension: (uBlock Origin) - C:\Users\GAMEPC\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2017-12-16] ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6076936 2018-03-27] () R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2291392 2017-08-17] (Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [774272 2018-03-09] (EasyAntiCheat Ltd) S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2017-09-19] (Hi-Rez Studios) [File not signed] R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-14] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-14] (NVIDIA Corporation) R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [253776 2017-12-01] (Razer Inc) R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [532352 2017-11-07] (Razer Inc.) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [502144 2018-01-16] (Razer Inc.) S2 SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [24576 2017-09-08] (Realtek Semiconductor.) [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2017-06-20] (Microsoft Corporation) R2 wuauserv; C:\Windows\system32\wuaueng2.dll [2651136 2017-09-08] (Microsoft Corporation) [File not signed] R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [11944 2017-09-08] (Advanced Micro Devices Inc.) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-09-11] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2017-09-11] (Disc Soft Ltd) R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-09-08] (REALiX(tm)) S3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [129224 2017-09-08] (Qualcomm Atheros Co., Ltd.) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31168 2018-03-14] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [59240 2017-12-15] (NVIDIA Corporation) R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-11-16] (NVIDIA Corporation) R3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [61656 2017-09-08] (Realtek Semiconductor Corporation ) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [137720 2017-09-21] (Razer, Inc.) S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-04-05 15:41 - 2018-04-05 15:41 - 000015301 _____ C:\Users\GAMEPC\Downloads\FRST.txt 2018-04-05 15:41 - 2018-04-05 15:41 - 000000000 ____D C:\FRST 2018-04-05 15:40 - 2018-04-05 15:40 - 002403328 _____ (Farbar) C:\Users\GAMEPC\Downloads\FRST64.exe 2018-04-05 07:09 - 2018-04-05 07:09 - 000027855 _____ C:\Users\GAMEPC\Downloads\Friends.Season.05.BDRip.Xvid.DualAudio.torrent 2018-04-03 16:26 - 2018-04-03 16:26 - 000000000 ____D C:\Users\GAMEPC\Documents\My Games 2018-04-03 15:53 - 2018-04-03 15:53 - 000000222 _____ C:\Users\GAMEPC\Desktop\F1 2015.url 2018-04-03 14:08 - 2018-04-03 14:08 - 000015112 _____ C:\Users\GAMEPC\Downloads\The.Commuter.2018.DVDRip.XviD.AC3-EVO (1).torrent 2018-04-03 14:07 - 2018-04-03 14:07 - 000208429 _____ C:\Users\GAMEPC\Downloads\SUBS_The.Commuter.2018.(subs.sab.bz).zip 2018-04-03 14:07 - 2018-04-03 14:07 - 000015112 _____ C:\Users\GAMEPC\Downloads\The.Commuter.2018.DVDRip.XviD.AC3-EVO.torrent 2018-04-01 21:53 - 2018-04-01 21:53 - 000015670 _____ C:\Users\GAMEPC\Downloads\The.Prestige.2006.480p.BRRip.XviD.BGAUDiO-KiNGS.torrent 2018-04-01 21:52 - 2018-04-01 21:52 - 000013158 _____ C:\Users\GAMEPC\Downloads\The.Illusionist.2006.720p.BRRiP.BG-AUDiO.AC3.XviD-HS0.torrent 2018-03-31 02:05 - 2018-03-31 02:05 - 000027855 _____ C:\Users\GAMEPC\Downloads\Friends.Season.04.BDRip.Xvid.DualAudio.torrent 2018-03-30 19:29 - 2018-03-30 19:29 - 000067856 _____ C:\Users\GAMEPC\Downloads\mollys.game.2017.bdrip.x264-drones_1(subsunacs.net).rar 2018-03-30 19:29 - 2018-03-30 19:29 - 000033868 _____ C:\Users\GAMEPC\Downloads\Mollys.Game.2017.720p.BluRay.x264-DRONES.mkv.torrent 2018-03-29 17:52 - 2018-03-29 17:52 - 000000000 __SHD C:\82ace7d6-0197-474d-bf4b-a2043e72329b 2018-03-28 00:26 - 2018-03-28 00:26 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2018-03-28 00:26 - 2018-03-24 02:05 - 000138120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2018-03-28 00:26 - 2017-12-09 01:25 - 000798520 _____ C:\Windows\SysWOW64\vulkan-1.dll 2018-03-28 00:26 - 2017-12-09 01:25 - 000490808 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2018-03-28 00:26 - 2017-12-09 01:24 - 000928568 _____ C:\Windows\system32\vulkan-1.dll 2018-03-28 00:26 - 2017-12-09 01:24 - 000591672 _____ C:\Windows\system32\vulkaninfo.exe 2018-03-28 00:22 - 2018-03-25 19:26 - 035624808 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2018-03-28 00:22 - 2018-03-25 19:26 - 028204984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2018-03-28 00:22 - 2018-03-25 19:26 - 017371168 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2018-03-28 00:22 - 2018-03-25 19:25 - 000997792 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2018-03-28 00:22 - 2018-03-25 19:25 - 000950120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2018-03-28 00:22 - 2018-03-25 19:25 - 000625592 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2018-03-28 00:22 - 2018-03-25 19:25 - 000515672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2018-03-28 00:22 - 2018-03-25 19:24 - 040278616 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2018-03-28 00:22 - 2018-03-25 19:24 - 035188992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2018-03-28 00:22 - 2018-03-25 19:24 - 003914784 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2018-03-28 00:22 - 2018-03-25 19:24 - 003444152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2018-03-28 00:22 - 2018-03-25 19:24 - 001985112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439135.dll 2018-03-28 00:22 - 2018-03-25 19:24 - 001683712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439135.dll 2018-03-28 00:22 - 2018-03-25 19:24 - 001137056 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2018-03-28 00:22 - 2018-03-25 19:24 - 001066584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2018-03-28 00:22 - 2018-03-25 19:13 - 000419672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 019854816 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 018910896 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 016496768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 015558928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 013571520 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 011132384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 001153752 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 000902096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 000541856 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 000460024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 000182784 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 000165136 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 000159704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2018-03-28 00:22 - 2018-03-25 19:12 - 000142816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2018-03-28 00:22 - 2018-03-25 19:11 - 012967056 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2018-03-28 00:22 - 2018-03-25 19:11 - 011001504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2018-03-28 00:22 - 2018-03-25 19:11 - 003919352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2018-03-27 02:18 - 2018-03-27 02:18 - 000029106 _____ C:\Users\GAMEPC\Downloads\Friends.Season.03.BDRip.Xvid.DualAudio.torrent 2018-03-26 21:48 - 2018-03-26 21:48 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\Hinterland 2018-03-26 21:47 - 2018-03-26 21:47 - 000000000 ____D C:\Users\GAMEPC\AppData\LocalLow\Hinterland 2018-03-26 21:34 - 2018-03-26 21:34 - 000000222 _____ C:\Users\GAMEPC\Desktop\The Long Dark.url 2018-03-23 20:52 - 2018-03-23 20:52 - 000047011 _____ C:\Users\GAMEPC\Downloads\The_X_Files_11_01.(subs.sab.bz).zip 2018-03-23 20:52 - 2018-03-23 20:52 - 000007111 _____ C:\Users\GAMEPC\Downloads\The.X-Files.S11E01.XviD-AFG.torrent 2018-03-23 16:37 - 2018-03-23 16:37 - 000015104 _____ C:\Users\GAMEPC\Downloads\[CzechCasting] Irena (02.03.2018) rq.mp4.torrent 2018-03-23 16:36 - 2018-03-23 16:36 - 000014653 _____ C:\Users\GAMEPC\Downloads\CRUISING IN SAINT TROPEZ.torrent 2018-03-23 00:04 - 2018-03-23 00:04 - 000000000 ____D C:\Users\GAMEPC\Documents\League of Legends 2018-03-22 16:58 - 2018-03-22 16:58 - 000067879 _____ C:\Users\GAMEPC\Downloads\mollys.game.2017.dvdscr.xvid.ac3.hq.hive-cm8(subsunacs.net).rar 2018-03-20 19:19 - 2018-03-16 21:01 - 001985280 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439124.dll 2018-03-20 19:19 - 2018-03-16 21:01 - 001684000 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439124.dll 2018-03-20 19:12 - 2018-03-20 19:12 - 000003922 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-03-18 16:44 - 2018-03-18 16:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent 2018-03-18 16:44 - 2018-03-18 16:44 - 000000000 ____D C:\Program Files\qBittorrent 2018-03-16 18:09 - 2018-03-16 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gran Turismo 4 Prologue 2018-03-15 11:49 - 2018-03-21 14:30 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\Viber 2018-03-14 17:27 - 2018-03-14 17:27 - 000000000 ____D C:\Program Files (x86)\Flex Anticheat 2018-03-14 01:27 - 2018-03-14 01:27 - 000004466 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier 2018-03-12 18:50 - 2018-03-12 18:50 - 000000218 _____ C:\Users\GAMEPC\Desktop\Counter-Strike.url 2018-03-10 16:20 - 2018-03-10 16:20 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\SCE ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-04-05 15:26 - 2017-09-23 18:42 - 000000000 ____D C:\Program Files (x86)\Steam 2018-04-05 15:15 - 2009-07-14 07:45 - 000028352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-04-05 15:15 - 2009-07-14 07:45 - 000028352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-04-05 15:09 - 2018-01-11 17:53 - 000638764 _____ C:\Windows\system32\perfh002.dat 2018-04-05 15:09 - 2018-01-11 17:53 - 000113484 _____ C:\Windows\system32\perfc002.dat 2018-04-05 15:09 - 2009-07-14 08:13 - 001492576 _____ C:\Windows\system32\PerfStringBackup.INI 2018-04-05 15:09 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\inf 2018-04-05 15:06 - 2017-10-13 16:36 - 000000000 ____D C:\Users\GAMEPC\Documents\ViberDownloads 2018-04-05 15:06 - 2017-09-08 14:05 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\NVIDIA 2018-04-05 12:54 - 2017-09-10 01:33 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\qBittorrent 2018-04-05 02:17 - 2017-09-19 23:12 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\TS3Client 2018-04-04 19:24 - 2017-12-08 19:36 - 000000000 ____D C:\Program Files (x86)\Hi-Rez Studios 2018-04-04 19:23 - 2017-09-08 13:34 - 000000000 ____D C:\Program Files\Mozilla Firefox 2018-04-04 19:23 - 2017-09-08 13:34 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-04-03 16:36 - 2017-09-08 13:35 - 000003864 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1504866897 2018-04-03 16:36 - 2017-09-08 13:34 - 000000000 ____D C:\Program Files (x86)\Opera 2018-04-03 16:26 - 2017-11-29 19:58 - 000000000 ____D C:\ProgramData\Codemasters 2018-04-03 16:24 - 2009-07-14 06:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared 2018-04-01 19:25 - 2017-09-08 13:51 - 000000000 ____D C:\Users\GAMEPC\AppData\LocalLow\Mozilla 2018-03-28 00:27 - 2017-09-08 14:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2018-03-28 00:27 - 2017-09-08 13:20 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-03-25 19:13 - 2017-09-08 14:02 - 019968176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2018-03-25 19:13 - 2017-09-08 14:02 - 000505232 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2018-03-25 19:13 - 2017-09-08 13:22 - 022887280 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2018-03-25 19:11 - 2017-09-08 14:02 - 004426120 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2018-03-24 04:13 - 2017-09-08 13:21 - 000045511 _____ C:\Windows\system32\nvinfo.pb 2018-03-24 02:50 - 2017-09-08 14:03 - 000001951 _____ C:\Windows\NvContainerRecovery.bat 2018-03-24 02:02 - 2017-09-08 14:03 - 005952392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2018-03-24 02:02 - 2017-09-08 14:03 - 002596320 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2018-03-24 02:02 - 2017-09-08 14:03 - 001767824 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2018-03-24 02:02 - 2017-09-08 14:03 - 000633224 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2018-03-24 02:02 - 2017-09-08 14:03 - 000451040 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2018-03-24 02:02 - 2017-09-08 14:03 - 000123840 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2018-03-24 02:02 - 2017-09-08 14:03 - 000083072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2018-03-23 00:47 - 2017-09-08 13:35 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-03-23 00:47 - 2017-09-08 13:35 - 000002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2018-03-22 14:04 - 2017-12-06 19:25 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\ViberPC 2018-03-21 14:27 - 2017-09-08 13:20 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2018-03-21 14:22 - 2017-09-08 14:03 - 008114212 _____ C:\Windows\system32\nvcoproc.bin 2018-03-20 19:13 - 2017-09-08 14:05 - 000001416 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2018-03-20 19:13 - 2017-09-08 14:04 - 000003814 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-03-20 19:13 - 2017-09-08 14:04 - 000003798 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-03-20 19:12 - 2017-09-08 14:04 - 000004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-03-20 19:12 - 2017-09-08 14:04 - 000003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-03-20 19:12 - 2017-09-08 14:04 - 000003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-03-20 19:12 - 2017-09-08 14:04 - 000003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-03-20 19:12 - 2017-09-08 14:04 - 000003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-03-20 19:12 - 2017-09-08 13:20 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-03-16 18:10 - 2017-09-23 16:30 - 000000000 ____D C:\Windows\SysWOW64\directx 2018-03-14 17:28 - 2017-09-08 15:54 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\CrashDumps 2018-03-14 16:05 - 2017-09-08 14:04 - 002480064 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2018-03-14 16:05 - 2017-09-08 14:04 - 002137024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2018-03-14 16:05 - 2017-09-08 14:04 - 001310144 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll 2018-03-14 15:44 - 2017-09-08 13:20 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat 2018-03-14 02:27 - 2017-09-18 19:14 - 000804352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2018-03-14 02:27 - 2017-09-18 19:14 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2018-03-14 02:27 - 2017-09-18 19:14 - 000004478 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2018-03-14 02:27 - 2017-09-18 19:14 - 000004324 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2018-03-14 02:27 - 2017-09-18 19:14 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2018-03-14 02:27 - 2017-09-18 19:14 - 000000000 ____D C:\Windows\system32\Macromed 2018-03-13 14:54 - 2017-09-23 20:16 - 000000219 _____ C:\Users\GAMEPC\Desktop\Counter-Strike Global Offensive.url 2018-03-09 00:29 - 2017-12-08 22:33 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\EasyAntiCheat Some files in TEMP: ==================== 2018-01-11 20:05 - 2018-01-11 20:05 - 000000180 _____ () C:\Users\GAMEPC\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll 2018-01-11 20:05 - 2018-04-04 14:02 - 000000016 _____ () C:\Users\GAMEPC\AppData\Local\Temp\9cfeec25b194d212cb1a549f559db4ab.dll 2018-01-20 23:46 - 2018-01-20 23:46 - 001864256 _____ (Oracle Corporation) C:\Users\GAMEPC\AppData\Local\Temp\jre-8u161-windows-au.exe 2018-01-08 19:01 - 2018-02-23 22:29 - 000879840 _____ (NVIDIA Corporation) C:\Users\GAMEPC\AppData\Local\Temp\nvSCPAPI64.dll 2018-01-29 20:03 - 2018-03-16 01:42 - 000373696 _____ (NVIDIA Corporation) C:\Users\GAMEPC\AppData\Local\Temp\nvStInst.exe ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2018-03-30 14:41 ==================== End of FRST.txt ============================ Addition.txt
  6. porata

    Съмнение за вируси

    Fix result of Farbar Recovery Scan Tool (x64) Version: 02.01.2018 Ran by GAMEPC (11-01-2018 16:53:14) Run:1 Running from C:\Users\GAMEPC\Downloads Loaded Profiles: GAMEPC (Available Profiles: GAMEPC) Boot Mode: Normal ============================================== fixlist content: ***************** start CreateRestorePoint: CloseProcesses: HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [GAMEPC] => explorer.exe hxxp://ozirizsoos.info <==== ATTENTION Task: {B57C9B13-0033-481E-90E9-258C851EE076} - System32\Tasks\GAMEPC => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v GAMEPC /t REG_SZ /d "explorer.exe hxxp://ozirizsoos.info" <==== ATTENTION File: C:\Windows\system32\wuaueng2.dll CMD: winmgmt /resyncperf CMD: lodctr /R CMD: ipconfig /flushdns EmptyTemp: end ***************** Restore point was successfully created. Processes closed successfully. "HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\Software\Microsoft\Windows\CurrentVersion\Run\\GAMEPC" => removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{B57C9B13-0033-481E-90E9-258C851EE076} => could not remove key. ErrorCode1: 0x00000002 "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B57C9B13-0033-481E-90E9-258C851EE076}" => removed successfully C:\Windows\System32\Tasks\GAMEPC => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GAMEPC" => removed successfully ========================= File: C:\Windows\system32\wuaueng2.dll ======================== C:\Windows\system32\wuaueng2.dll File not signed MD5: E071CFA6FDDEF61B39C33E3F0FA89A07 Creation and modification date: 2017-09-08 11:27 - 2017-09-08 11:27 Size: 002651136 Attributes: ----A Company Name: Microsoft Corporation Internal Name: wuaueng.dll Original Name: wuaueng.dll Product: Microsoft® Windows® Operating System Description: Windows Update Agent File Version: 7.6.7601.23806 (win7sp1_ldr.170510-0600) Product Version: 7.6.7601.23806 Copyright: © Microsoft Corporation. All rights reserved. VirusTotal: https://www.virustotal.com/file/2dd1edd2351586bd9a2008bddc9668b4bef762de251c3f9779dd04cf475dd276/analysis/1514119851/ ====== End of File: ====== ========= winmgmt /resyncperf ========= ========= End of CMD: ========= ========= lodctr /R ========= Info: Successfully rebuilt performance counter setting from system backup store ========= End of CMD: ========= ========= ipconfig /flushdns ========= Windows IP Configuration Successfully flushed the DNS Resolver Cache. ========= End of CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 97022471 B Java, Flash, Steam htmlcache => 27989814 B Windows/system/drivers => 44664637 B Edge => 0 B Chrome => 484174348 B Firefox => 387256960 B Opera => 398508211 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 0 B Public => 0 B ProgramData => 0 B systemprofile => 16802 B systemprofile32 => 66788 B LocalService => 0 B NetworkService => 0 B GAMEPC => 2392845766 B RecycleBin => 0 B EmptyTemp: => 3.6 GB temporary data Removed. ================================ The system needed a reboot. ==== End of Fixlog 16:53:58 ==== От стъпка 2 мисля че и там всичко е наред Не се отваря сега въпросният сайт Всичко е наред ако няма вируси значи всичко е наред БЛАГОДАРЯ!
  7. Добър ден. Мисля че съм се заразил от някъде с доста неприятни вируси Днес забелязах че след рестарт на машината първото нещо което стартира след като се пусне лин-а е някакъв произволен сайт в този случай сайт с няккакви реклами.. Както и самата машина някак си започна да забива и насича Ети логовете Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.01.2018 Ran by GAMEPC (administrator) on GAMEPC-PC (10-01-2018 17:49:26) Running from C:\Users\GAMEPC\Downloads Loaded Profiles: GAMEPC (Available Profiles: GAMEPC) Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Български (България) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AutoKMS] => C:\Windows\AutoKMS.exe [615936 2017-09-08] () HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832264 2017-10-10] (Skype Technologies S.A.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3111712 2017-12-15] (Valve Corporation) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4836032 2017-08-17] (Disc Soft Ltd) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Viber] => C:\Users\GAMEPC\AppData\Local\Viber\Viber.exe [34472016 2017-12-12] (Viber Media S.Ã r.l.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Discord] => C:\Users\GAMEPC\AppData\Local\Discord\app-0.0.300\Discord.exe [57821176 2018-01-08] (Discord Inc.) HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [GAMEPC] => explorer.exe hxxp://ozirizsoos.info <==== ATTENTION HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {609d2171-c4d2-11e7-a1c0-048d38748987} - E:\Lenovo_Suite.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 87.121.24.12 Tcpip\..\Interfaces\{F8E6BFBF-08DD-4CEC-8468-25670AF9DFE4}: [DhcpNameServer] 87.121.24.12 Internet Explorer: ================== HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll [2017-10-21] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-21] (Oracle Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-10-21] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-21] (Oracle Corporation) FireFox: ======== FF DefaultProfile: mrpwyf7s.default FF ProfilePath: C:\Users\GAMEPC\AppData\Roaming\Mozilla\Firefox\Profiles\mrpwyf7s.default [2018-01-10] FF Homepage: Mozilla\Firefox\Profiles\mrpwyf7s.default -> google.bg FF Extension: (uBlock Origin) - C:\Users\GAMEPC\AppData\Roaming\Mozilla\Firefox\Profiles\mrpwyf7s.default\Extensions\uBlock0@raymondhill.net.xpi [2017-12-26] FF Plugin: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-21] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-21] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [No File] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1229199.dll [2017-03-31] (Adobe Systems, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-21] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-21] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-01-04] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-01-04] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) Chrome: ======= CHR StartupUrls: Default -> "hxxp://google.bg/" CHR Profile: C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default [2018-01-10] CHR Extension: (Презентации) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13] CHR Extension: (Документи) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13] CHR Extension: (Google Диск) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-08] CHR Extension: (YouTube) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-08] CHR Extension: (Таблици) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13] CHR Extension: (Google Документи офлайн) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-09-08] CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-09-08] CHR Extension: (Gmail) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-09-08] CHR Extension: (Chrome Media Router) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-12] Opera: ======= OPR Extension: (uBlock Origin) - C:\Users\GAMEPC\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2017-12-16] ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6971400 2017-11-16] () R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2291392 2017-08-17] (Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [526888 2017-12-08] (EasyAntiCheat Ltd) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation) S2 SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [24576 2017-09-08] (Realtek Semiconductor.) [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2017-06-20] (Microsoft Corporation) R2 wuauserv; C:\Windows\system32\wuaueng2.dll [2651136 2017-09-08] (Microsoft Corporation) [File not signed] R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [11944 2017-09-08] (Advanced Micro Devices Inc.) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-09-11] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2017-09-11] (Disc Soft Ltd) R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-09-08] (REALiX(tm)) S3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [129224 2017-09-08] (Qualcomm Atheros Co., Ltd.) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-16] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50624 2017-11-16] (NVIDIA Corporation) R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [57792 2017-11-16] (NVIDIA Corporation) R3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [61656 2017-09-08] (Realtek Semiconductor Corporation ) S3 BEDaisy; \??\C:\Program Files (x86)\Common Files\BattlEye\BEDaisy.sys [X] S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-01-10 17:49 - 2018-01-10 17:49 - 000013425 _____ C:\Users\GAMEPC\Downloads\FRST.txt 2018-01-10 17:48 - 2018-01-10 17:49 - 000000000 ____D C:\FRST 2018-01-10 17:47 - 2018-01-10 17:47 - 002393088 _____ (Farbar) C:\Users\GAMEPC\Downloads\FRST64.exe 2018-01-10 16:50 - 2018-01-10 16:50 - 000047308 _____ C:\Users\GAMEPC\Downloads\Malcolm.S05.BGAUDIO.torrent 2018-01-10 15:52 - 2018-01-09 21:50 - 000000230 ___SH C:\Users\Public\Libraries.ini 2018-01-08 22:48 - 2018-01-08 22:48 - 000025438 _____ C:\Users\GAMEPC\Downloads\Malcolm in the Middle Season 4 TVRip BGAudio [***].torrent 2018-01-08 18:01 - 2018-01-08 18:01 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2018-01-08 18:01 - 2018-01-04 02:01 - 000137528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2018-01-08 18:01 - 2017-11-02 22:15 - 000928568 _____ C:\Windows\system32\vulkan-1.dll 2018-01-08 18:01 - 2017-11-02 22:15 - 000798520 _____ C:\Windows\SysWOW64\vulkan-1.dll 2018-01-08 18:01 - 2017-11-02 22:15 - 000490808 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2018-01-08 18:01 - 2017-11-02 22:14 - 000591672 _____ C:\Windows\system32\vulkaninfo.exe 2018-01-08 18:00 - 2018-01-08 18:00 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation 2018-01-08 17:58 - 2018-01-04 03:39 - 040269624 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 035278136 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 035179080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 027856456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 019796008 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 018730328 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 017303112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2018-01-08 17:58 - 2018-01-04 03:39 - 016450056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 015408072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 013430632 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 012842984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 011015584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 010900248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 003902448 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 003874728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 003432944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 001975184 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439065.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 001674544 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439065.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 001134952 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 001125688 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 001054512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000988144 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000939504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000885680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000616240 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000528312 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000506672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000447424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000407064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000226760 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2018-01-08 17:58 - 2018-01-04 03:39 - 000171896 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000154208 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000149736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000132072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000045600 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2018-01-08 17:58 - 2018-01-04 03:39 - 000000669 _____ C:\Windows\SysWOW64\nv-vk32.json 2018-01-08 17:58 - 2018-01-04 03:39 - 000000669 _____ C:\Windows\system32\nv-vk64.json 2018-01-06 18:55 - 2018-01-06 18:55 - 000019998 _____ C:\Users\GAMEPC\Downloads\Malcolm in the Middle Season 3 TVRip BGAudio [***].torrent 2018-01-05 18:31 - 2018-01-05 18:31 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\Electronic Arts 2018-01-05 18:13 - 2018-01-05 18:13 - 000000000 ____D C:\Users\GAMEPC\Documents\PCSX2 2018-01-05 18:12 - 2018-01-05 18:12 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\PCSX2 2018-01-05 18:02 - 2018-01-05 18:02 - 000039666 _____ C:\Users\GAMEPC\Downloads\Harry.Potter.and.the.Deathly.Hallows.Part.2-SKIDROW.torrent 2018-01-05 18:02 - 2018-01-05 18:02 - 000039666 _____ C:\Users\GAMEPC\Downloads\Harry.Potter.and.the.Deathly.Hallows.Part.2-SKIDROW (1).torrent 2018-01-05 18:02 - 2018-01-05 18:02 - 000006830 _____ C:\Users\GAMEPC\Downloads\Harry.Potter.and.The.Deathly.Hallows.Part.2.Proper.CRACK.ONLY-RELOADED.torrent 2018-01-05 17:59 - 2018-01-05 17:59 - 000060214 _____ C:\Users\GAMEPC\Downloads\Crash_titans_pc_rus.iso (1).torrent 2018-01-05 17:58 - 2018-01-05 17:58 - 000060214 _____ C:\Users\GAMEPC\Downloads\Crash_titans_pc_rus.iso.torrent 2018-01-04 22:15 - 2018-01-04 22:15 - 000024355 _____ C:\Users\GAMEPC\Downloads\Malcolm.In.Тhe.Middle.S02.TVRiP.BGAUDiO-GOMBO.torrent 2018-01-03 21:18 - 2018-01-03 21:18 - 000016750 _____ C:\Users\GAMEPC\Downloads\Malcolm.In.Тhe.Middle.S01.TVRiP.BGAUDiO-GOMBO.torrent 2018-01-02 14:13 - 2018-01-02 14:13 - 000014967 _____ C:\Users\GAMEPC\Downloads\The.X.Files.I.Want.to.Believe.2008.DVDRip.XviD.BGAUDiO-SiSO.torrent 2018-01-02 14:12 - 2018-01-02 14:12 - 000034573 _____ C:\Users\GAMEPC\Downloads\The.X.Files.I.Want.to.Believe.2008.DC.480p.BDRip.XviD.AC3-AsA.torrent 2018-01-02 14:12 - 2018-01-02 14:12 - 000025883 _____ C:\Users\GAMEPC\Downloads\The.X.Files.I.Want.to.Believe.2008.DirCut.720p.BluRay.DTS.x264_ESiR.(subs.sab.bz).rar 2018-01-02 13:49 - 2018-01-02 13:49 - 000014977 _____ C:\Users\GAMEPC\Downloads\The.X.Files.1998.BDRip.XviD.Dual.Audio[Bul-Eng]-TBO (1).torrent 2018-01-02 13:47 - 2018-01-02 13:47 - 000014977 _____ C:\Users\GAMEPC\Downloads\The.X.Files.1998.BDRip.XviD.Dual.Audio[Bul-Eng]-TBO.torrent 2018-01-02 09:53 - 2018-01-02 09:53 - 000114625 _____ C:\Users\GAMEPC\Downloads\Bright.2017.HDRip.XviD.AC3-EVO.torrent 2018-01-02 09:53 - 2018-01-02 09:53 - 000039426 _____ C:\Users\GAMEPC\Downloads\bright.2017.1080p.nf.web-dl.dd5.1.h.264-ika(subsunacs.net).rar 2017-12-28 21:02 - 2017-12-28 21:02 - 000035829 _____ C:\Users\GAMEPC\Downloads\The X Files S01 ep10-12.torrent 2017-12-28 21:02 - 2017-12-28 21:02 - 000034149 _____ C:\Users\GAMEPC\Downloads\The X Files S01 ep07-09.torrent 2017-12-28 18:17 - 2017-12-28 18:17 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\TslGame 2017-12-28 17:03 - 2017-12-28 17:03 - 000000222 _____ C:\Users\GAMEPC\Desktop\PLAYERUNKNOWN'S BATTLEGROUNDS.url 2017-12-28 17:03 - 2017-12-28 17:03 - 000000222 _____ C:\Users\GAMEPC\Desktop\PLAYERUNKNOWN'S BATTLEGROUNDS (Test Server).url 2017-12-27 21:05 - 2017-12-27 21:05 - 000034969 _____ C:\Users\GAMEPC\Downloads\The X Files S01 ep04-06.torrent 2017-12-27 21:04 - 2017-12-27 21:04 - 000070165 _____ C:\Users\GAMEPC\Downloads\The X Files S01 ep01-03 (1).torrent 2017-12-27 19:01 - 2017-12-27 19:01 - 000070165 _____ C:\Users\GAMEPC\Downloads\The X Files S01 ep01-03.torrent 2017-12-27 17:54 - 2017-12-27 17:54 - 000068903 _____ C:\Users\GAMEPC\Downloads\The.X-Files.S10.1080p.BluRay.AVC.x264.MULTi.AC3-STM.torrent 2017-12-26 18:47 - 2017-12-26 18:47 - 001204720 _____ (Adobe Systems Incorporated) C:\Users\GAMEPC\Downloads\flashplayer28_ka_install.exe 2017-12-25 18:43 - 2017-12-25 18:43 - 000014387 _____ C:\Users\GAMEPC\Downloads\Scooby.Doo.And.The.Loch.Ness.Monster.2004.DVDRip.XviD.BGAUDIO-RRGroup.torrent 2017-12-25 18:42 - 2017-12-25 18:42 - 000014469 _____ C:\Users\GAMEPC\Downloads\Scooby.Doo.Pirates.Ahoy.2006.DVDRip.XviD.BGAUDIO-RRGroup.torrent 2017-12-25 18:41 - 2017-12-25 18:41 - 000016605 _____ C:\Users\GAMEPC\Downloads\Scooby-Doo.and.the.Alien.Invaders(2000)[BGAudio]TVRip.XviD-CoveR.avi.torrent 2017-12-25 18:40 - 2017-12-25 18:40 - 000015973 _____ C:\Users\GAMEPC\Downloads\Scooby-Doo! and the Monster of Mexico (2003) [BG Audio] TVRip.XviD-CoveR.avi.torrent 2017-12-25 18:40 - 2017-12-25 18:40 - 000015973 _____ C:\Users\GAMEPC\Downloads\Scooby-Doo! and the Monster of Mexico (2003) [BG Audio] TVRip.XviD-CoveR.avi (1).torrent 2017-12-24 20:09 - 2017-12-24 20:09 - 000014490 _____ C:\Users\GAMEPC\Downloads\The.Nut.Job.2014.BDRip.XviD.BGaudio-REFLUX.torrent 2017-12-24 14:27 - 2017-12-24 14:27 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\Adobe 2017-12-23 21:42 - 2017-12-23 21:42 - 001556480 _____ C:\Users\GAMEPC\Downloads\Непотвърдено 653969.crdownload 2017-12-21 16:16 - 2017-12-16 02:21 - 001990128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6438871.dll 2017-12-21 16:16 - 2017-12-16 02:21 - 001674736 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6438871.dll 2017-12-17 17:07 - 2017-12-17 17:47 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\Might & Magic Heroes VI 2017-12-17 17:07 - 2017-12-17 17:17 - 000000000 ____D C:\Users\GAMEPC\Documents\Might & Magic Heroes VI 2017-12-17 17:07 - 2017-12-17 17:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Repack by Fenixx 2017-12-17 16:27 - 2017-12-17 16:27 - 000038163 _____ C:\Users\GAMEPC\Downloads\Might & Magic.Heroes 6.Gold Edition.v 2.1.1.0 + 4 DLC.(Бука).(2012).Repack.torrent 2017-12-17 15:54 - 2017-12-17 15:54 - 000003429 _____ C:\Users\GAMEPC\Downloads\DiRT Rally Hotfix v1.0.109.3940 - BAT.torrent 2017-12-17 15:53 - 2017-12-17 15:53 - 000105021 _____ C:\Users\GAMEPC\Downloads\DiRT.Rally-RELOADED.torrent 2017-12-16 22:49 - 2017-12-16 22:50 - 004228256 _____ (Husdawg, LLC) C:\Users\GAMEPC\Downloads\Detection.exe 2017-12-16 16:33 - 2017-12-16 16:33 - 000000000 ____D C:\Users\GAMEPC\Documents\Diablo III 2017-12-16 13:58 - 2017-12-16 13:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II 2017-12-16 13:53 - 2017-12-16 15:13 - 000000000 ____D C:\Users\GAMEPC\Documents\StarCraft II 2017-12-16 13:52 - 2017-12-16 14:34 - 000000000 ____D C:\ProgramData\Blizzard Entertainment 2017-12-16 13:48 - 2017-12-16 14:38 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\Blizzard Entertainment 2017-12-16 13:47 - 2017-12-16 13:47 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\Blizzard 2017-12-16 13:46 - 2017-12-16 13:47 - 000000000 ____D C:\ProgramData\Battle.net 2017-12-16 13:46 - 2017-12-16 13:46 - 004215792 _____ (Blizzard Entertainment) C:\Users\GAMEPC\Downloads\StarCraft-II-Setup.exe 2017-12-14 14:20 - 2017-12-14 14:21 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\Viber 2017-12-11 21:56 - 2018-01-10 16:01 - 000002131 _____ C:\Users\GAMEPC\Desktop\Discord.lnk 2017-12-11 21:55 - 2018-01-10 16:01 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\Discord 2017-12-11 21:55 - 2017-12-11 21:55 - 054332920 _____ (Discord Inc.) C:\Users\GAMEPC\Downloads\DiscordSetup (1).exe ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2018-01-10 17:45 - 2009-07-14 07:13 - 000781298 _____ C:\Windows\system32\PerfStringBackup.INI 2018-01-10 17:45 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2018-01-10 17:41 - 2017-12-06 18:25 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\ViberPC 2018-01-10 17:41 - 2017-09-23 17:42 - 000000000 ____D C:\Program Files (x86)\Steam 2018-01-10 17:41 - 2017-09-08 13:25 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\Skype 2018-01-10 17:40 - 2017-09-08 13:03 - 000000000 ____D C:\ProgramData\NVIDIA 2018-01-10 17:39 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-01-10 17:32 - 2009-07-14 06:45 - 000028352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-01-10 17:32 - 2009-07-14 06:45 - 000028352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-01-10 17:30 - 2017-09-08 12:34 - 000000000 ____D C:\Program Files (x86)\Opera 2018-01-10 17:16 - 2017-09-10 00:33 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\qBittorrent 2018-01-10 16:34 - 2017-09-08 12:51 - 000000000 ____D C:\Users\GAMEPC\AppData\LocalLow\Mozilla 2018-01-10 16:01 - 2017-10-13 15:36 - 000000000 ____D C:\Users\GAMEPC\Documents\ViberDownloads 2018-01-10 16:01 - 2017-09-09 21:09 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2018-01-10 16:01 - 2017-09-09 21:09 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\discord 2018-01-10 16:01 - 2017-09-08 13:05 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\NVIDIA 2018-01-10 15:58 - 2017-09-08 12:34 - 000000000 ____D C:\Program Files\Mozilla Firefox 2018-01-10 15:58 - 2017-09-08 12:34 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-01-09 21:27 - 2017-09-18 18:14 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2018-01-09 21:27 - 2017-09-18 18:14 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2018-01-09 21:27 - 2017-09-18 18:14 - 000004478 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2018-01-09 21:27 - 2017-09-18 18:14 - 000004324 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2018-01-09 21:27 - 2017-09-18 18:14 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2018-01-09 21:27 - 2017-09-18 18:14 - 000000000 ____D C:\Windows\system32\Macromed 2018-01-09 17:15 - 2017-09-08 12:35 - 000002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-01-09 17:15 - 2017-09-08 12:35 - 000002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2018-01-08 18:02 - 2017-09-08 13:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2018-01-08 18:02 - 2017-09-08 12:20 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-01-08 18:02 - 2017-09-08 12:20 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-01-05 18:41 - 2017-09-08 14:54 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\CrashDumps 2018-01-05 18:28 - 2009-07-14 07:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2018-01-04 16:47 - 2017-09-27 00:35 - 000000000 ____D C:\Users\GAMEPC\Documents\Euro Truck Simulator 2 2018-01-04 03:39 - 2017-09-08 13:02 - 019677112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2018-01-04 03:39 - 2017-09-08 13:02 - 004375648 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2018-01-04 03:39 - 2017-09-08 13:02 - 000492048 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2018-01-04 03:39 - 2017-09-08 12:22 - 022573984 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2018-01-04 03:39 - 2017-09-08 12:21 - 000045386 _____ C:\Windows\system32\nvinfo.pb 2018-01-04 03:39 - 2017-09-08 12:19 - 001682288 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2018-01-04 02:33 - 2017-09-08 13:03 - 000001951 _____ C:\Windows\NvContainerRecovery.bat 2018-01-04 01:50 - 2017-09-08 13:03 - 005951336 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2018-01-04 01:50 - 2017-09-08 13:03 - 002588232 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2018-01-04 01:50 - 2017-09-08 13:03 - 001768480 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2018-01-04 01:50 - 2017-09-08 13:03 - 000631880 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2018-01-04 01:50 - 2017-09-08 13:03 - 000450352 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2018-01-04 01:50 - 2017-09-08 13:03 - 000123704 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2018-01-04 01:50 - 2017-09-08 13:03 - 000081992 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2017-12-28 18:18 - 2017-09-08 13:05 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\NVIDIA Corporation 2017-12-28 18:17 - 2017-09-08 12:20 - 000000000 ____D C:\ProgramData\Package Cache 2017-12-25 18:46 - 2017-09-10 00:39 - 000000973 _____ C:\Users\GAMEPC\Desktop\PotPlayer 64 bit.lnk 2017-12-24 21:07 - 2017-09-08 13:03 - 007928821 _____ C:\Windows\system32\nvcoproc.bin 2017-12-21 16:10 - 2017-09-08 12:35 - 000003864 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1504866897 2017-12-17 17:48 - 2017-11-29 18:58 - 000000000 ____D C:\ProgramData\Codemasters 2017-12-17 17:48 - 2017-09-28 19:51 - 000000000 ____D C:\Users\GAMEPC\Documents\My Games 2017-12-17 17:07 - 2017-11-28 17:35 - 000000000 ____D C:\ProgramData\Orbit 2017-12-16 21:51 - 2017-09-08 12:51 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\Mozilla 2017-12-15 15:29 - 2017-09-08 12:20 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2017-12-11 21:56 - 2017-09-09 21:09 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\SquirrelTemp Some files in TEMP: ==================== 2017-12-28 18:19 - 2017-12-28 18:19 - 000000180 _____ () C:\Users\GAMEPC\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll 2017-12-28 18:19 - 2018-01-09 18:20 - 000000016 _____ () C:\Users\GAMEPC\AppData\Local\Temp\9cfeec25b194d212cb1a549f559db4ab.dll 2011-04-29 03:10 - 2011-04-29 03:10 - 002027328 _____ (Electronic Arts, Inc.) C:\Users\GAMEPC\AppData\Local\Temp\installerdll1824963827.dll 2011-04-29 03:10 - 2011-04-29 03:10 - 002027328 _____ (Electronic Arts, Inc.) C:\Users\GAMEPC\AppData\Local\Temp\installerdll1824966448.dll 2017-10-21 13:00 - 2017-10-21 13:00 - 001856576 _____ (Oracle Corporation) C:\Users\GAMEPC\AppData\Local\Temp\jre-8u151-windows-au.exe 2017-11-15 00:12 - 2017-10-27 18:06 - 000760032 _____ (NVIDIA Corporation) C:\Users\GAMEPC\AppData\Local\Temp\nvSCPAPI.dll 2017-09-08 13:03 - 2017-12-16 00:47 - 000874880 _____ (NVIDIA Corporation) C:\Users\GAMEPC\AppData\Local\Temp\nvSCPAPI64.dll 2017-11-15 00:09 - 2017-12-16 00:47 - 000371000 _____ (NVIDIA Corporation) C:\Users\GAMEPC\AppData\Local\Temp\nvStInst.exe 2011-04-29 03:31 - 2011-04-29 03:31 - 034523568 _____ (Electronic Arts, Inc.) C:\Users\GAMEPC\AppData\Local\Temp\Setup.exe ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2018-01-10 17:08 ==================== End of FRST.txt ============================ Addition_10-01-2018 17.50.21.txt
  8. porata

    Проблем с windows 10

    Не все така продължава да забива и насича... А междо другото видях процес с името Прекъсвания на системата за първи път го виждам появи се явно сега като почна да прекъсва и насича но не мога да го спра нито да му задам приоритет ...
  9. porata

    Проблем с windows 10

    Благодаря и на вас.И благодаря за съдействието и страхотната работа която вършите тук Вие сте едно от малкото хубави неща в тази държава И между другото все си мисля че това било от падането на лосс-а загубата на пакети тъй като не мисля че при 57 градуса нов комп може да прегрява че чак да забива. Хубав и лек ден )
  10. porata

    Проблем с windows 10

    # DelFix v1.013 - Logfile created 09/06/2017 at 23:36:46 # Updated 17/04/2016 by Xplode # Username : Йордан Тинков - DESKTOP-6RTGBCD # Operating System : Windows 10 Pro (64 bits) ~ Removing disinfection tools ... Deleted : C:\FRST Deleted : C:\SecurityCheck Deleted : C:\Users\Йордан Тинков\Downloads\FRST-OlderVersion Deleted : C:\Users\Йордан Тинков\Downloads\Addition.txt Deleted : C:\Users\Йордан Тинков\Downloads\Fixlog.txt Deleted : C:\Users\Йордан Тинков\Downloads\FRST.txt Deleted : C:\Users\Йордан Тинков\Downloads\FRST64.exe Deleted : C:\Users\Йордан Тинков\Downloads\SecurityCheck.exe ########## - EOF - ##########
  11. porata

    Проблем с windows 10

    На хотфих-а кой от каталога да избера за да сваля?
  12. porata

    Проблем с windows 10

    SecurityCheck by glax24 & Severnyj v.1.4.0.50 [06.06.17] WebSite: www.safezone.cc DateLog: 08.06.2017 22:12:48 Path starting: C:\Users\Йордан Тинков\AppData\Local\Temp\SecurityCheck\SecurityCheck.exe Log directory: C:\SecurityCheck\ IsAdmin: True User: Йордан Тинков VersionXML: 4.34is-07.06.2017 ___________________________________________________________________________ Windows 10(6.3.14393) (x64) Professional Release: 1607 Lang: 0402 Installation date OS: 16.02.2017 12:44:34 LicenseStatus: Windows(R), Professional edition Volume activation will expire : 248390 minutes LicenseStatus: Office 16, Office16ProPlusVL_KMS_Client edition Volume activation will expire : 248390 minutes Boot Mode: Normal Default Browser: Microsoft Edge (C:\Windows\system32\LaunchWinApp.exe) SystemDrive: C: FS: [NTFS] Capacity: [149.6 Gb] Used: [31.2 Gb] Free: [118.4 Gb] ------------------------------- [ Windows ] ------------------------------- Internet Explorer 11.1198.14393.0 User Account Control enabled Windows Update (wuauserv) - The service has stopped Security Center (wscsvc) - The service is running Remote Registry (RemoteRegistry) - The service has stopped SSDP Discovery (SSDPSRV) - The service is running Remote Desktop Services (TermService) - The service has stopped Windows Remote Management (WS-Management) (WinRM) - The service has stopped ------------------------------- [ HotFix ] -------------------------------- HotFix KB4013429 Warning! Download Update ------------------------------ [ MS Office ] ------------------------------ Microsoft Office 2016 x64 v.16.0.4266.1001 ---------------------------- [ Antivirus_WMI ] ---------------------------- Windows Defender (enabled and up to date) --------------------------- [ FirewallWindows ] --------------------------- Защитна стена на Windows (MpsSvc) - The service is running --------------------------- [ AntiSpyware_WMI ] --------------------------- Windows Defender (enabled and up to date) -------------------------- [ SecurityUtilities ] -------------------------- Zemana AntiMalware v.2.72.0.388 --------------------------- [ OtherUtilities ] ---------------------------- WinRAR 5.40 (64-битова версия) v.5.40.0 --------------------------------- [ IM ] ---------------------------------- Skype™ 7.35 v.7.35.103 Warning! Download Update ^Optional update.^ --------------------------------- [ P2P ] --------------------------------- µTorrent v.3.5.0.43804 Warning! P2P-client. -------------------------------- [ Java ] --------------------------------- Java 8 Update 131 (64-bit) v.8.0.1310.11 Java 8 Update 131 v.8.0.1310.11 ------------------------------- [ Browser ] ------------------------------- Google Chrome v.58.0.3029.110 Warning! Download Update Mozilla Firefox 51.0.1 (x86 bg) v.51.0.1 Warning! Download Update --------------------------- [ RunningProcess ] ---------------------------- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe v.58.0.3029.110 ------------------ [ AntivirusFirewallProcessServices ] ------------------- C:\Program Files\Windows Defender\MsMpEng.exe v.4.10.14393.1198 C:\Program Files\Windows Defender\NisSrv.exe v.4.10.14393.1198 Услуга на Windows Defender (WinDefend) - The service is running Услуга за мрежова проверка на Windows Defender (WdNisSvc) - The service is running ZAM Controller Service (ZAMSvc) - The service is running C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe v.2.72.0.388 ----------------------------- [ End of Log ] ------------------------------ Добре от какво може да се е получило всичко това .. Макар че днес няма проблем по системата ... Направо съм потресен ;д Виждате ли някакви проблеми по самите драйвери или нещо в регистрите което не е инсталирано или направено като хората или нямате достъп до тази информация чрез тези текстови файлове които поствам
  13. Ето няколко снимки... Последната снимка е във рендер тест...
  14. В крайна сметка нищо не разбрах какво мога да направя в такъв случай ? Да знам че не са процесите просто не знаех как да ги нарека хахах С много ли прегрява или.. защото каквото и да правя винаги си стои такава температурата нито е повече нито е по малко?
  15. Като цяло не съм слагал кой знае какво на комп-а и да ти кажа чесно съм се научил какво да слагам или по точно какво ДА НЕ слагам Отговорът на темата ти е просто уникален )
  • Разглеждащи това в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

×

Информация

Поставихме бисквитки на устройството ви за най-добро потребителско изживяване. Можете да промените настройките си за бисквитки, или в противен случай приемаме, че сте съгласни с нашите условия за ползване.