Премини към съдържанието
Форумът в приложение

По-лесно сърфиране. Научи повече.

Kaldata.com - Форуми

Приложение на форума на цял екран с push известия, значки и други.

За да инсталирате това приложение на iOS и iPadOS
  1. Докоснете Иконата за споделяне в Safari
  2. Превъртете менюто и докоснете Добавяне към началния екран.
  3. Докоснете Добавяне в горния десен ъгъл.
За да инсталирате това приложение на Android
  1. Докоснете менюто с 3 точки (⋮) в горния десен ъгъл на браузъра.
  2. Докоснете Добавяне към началния екран или Инсталиране на приложение.
  3. Потвърдете, като докоснете Инсталиране.

Добре дошли!

Добре дошли в нашите форуми, пълни с полезна информация. Имате проблем с компютъра или телефона си? Публикувайте нова тема и ще намерите решение на всичките си проблеми. Общувайте свободно и открийте безброй нови приятели.

Моля, регистрирайте се за да публикувате тема и да получите пълен достъп до всички функции.

 

Съмнение за вирус

Featured Replies

Добър вечер имам съмнение за вирус който по някакъв начин е свързан с интернет-а ми 
През определен период от време от порядъка на час и половина  нета ми буквално забива. Имам 2 лан карти тествах ги и не е от тях за това реших да се допитам до вас 


 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01.09.2018 03
Ran by GAMEPC (administrator) on GAMEPC-PC (01-09-2018 20:09:16)
Running from C:\Users\GAMEPC\Downloads
Loaded Profiles: GAMEPC (Available Profiles: GAMEPC)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: Български (България)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(TeamSpeak Systems GmbH) C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AutoKMS] => C:\Windows\AutoKMS.exe [615936 2017-09-08] ()
HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3207968 2018-08-30] (Valve Corporation)
HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32973712 2018-07-26] (Epic Games, Inc.)
HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Run: [Viber] => C:\Users\GAMEPC\AppData\Local\Viber\Viber.exe [33453640 2018-08-21] (Viber Media S.à r.l.)
HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {2d2c5be0-94b8-11e7-8704-048d38748987} - E:\stp-fifa18.exe
HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {609d2171-c4d2-11e7-a1c0-048d38748987} - F:\Lenovo_Suite.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 87.121.24.12
Tcpip\..\Interfaces\{BFE47783-CFC6-4DEE-8858-A9889FC23A55}: [DhcpNameServer] 87.121.24.12
Tcpip\..\Interfaces\{F8E6BFBF-08DD-4CEC-8468-25670AF9DFE4}: [DhcpNameServer] 87.121.24.12

Internet Explorer:
==================
HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_171\bin\ssv.dll [2018-04-20] (Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-04-20] (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll [2018-04-20] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-04-20] (Oracle Corporation)

FireFox:
========
FF DefaultProfile: mrpwyf7s.default
FF ProfilePath: C:\Users\GAMEPC\AppData\Roaming\Mozilla\Firefox\Profiles\mrpwyf7s.default [2018-08-28]
FF Homepage: Mozilla\Firefox\Profiles\mrpwyf7s.default -> google.bg
FF Extension: (uBlock Origin) - C:\Users\GAMEPC\AppData\Roaming\Mozilla\Firefox\Profiles\mrpwyf7s.default\Extensions\[email protected] [2018-07-25]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_30_0_0_154.dll [2018-08-15] ()
FF Plugin: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-04-20] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-04-20] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_154.dll [2018-08-15] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1229199.dll [2017-03-31] (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-04-20] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-04-20] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-08-21] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-08-21] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://google.bg/"
CHR Profile: C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default [2018-09-01]
CHR Extension: (Презентации) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Документи) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Диск) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-08]
CHR Extension: (YouTube) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-08]
CHR Extension: (Таблици) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Google Документи офлайн) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-16]
CHR Extension: (Hoxx VPN Proxy) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbcojefnccbanplpoffopkoepjmhgdgh [2018-08-27]
CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-09-08]
CHR Extension: (Chrome Media Router) - C:\Users\GAMEPC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-08-10]

Opera: 
=======
OPR Extension: (uBlock Origin) - C:\Users\GAMEPC\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2018-06-25]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7212480 2018-08-08] ()
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2291392 2017-08-17] (Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2018-07-29] (EasyAntiCheat Ltd)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-03-29] (Hi-Rez Studios) [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456 2018-07-19] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456 2018-07-19] (NVIDIA Corporation)
S2 SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [24576 2017-09-08] (Realtek Semiconductor.) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2017-06-20] (Microsoft Corporation)
R2 wuauserv; C:\Windows\system32\wuaueng2.dll [2651136 2017-09-08] (Microsoft Corporation) [File not signed]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [11944 2017-09-08] (Advanced Micro Devices Inc.)
R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-09-11] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2017-09-11] (Disc Soft Ltd)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-09-08] (REALiX(tm))
S3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [129224 2017-09-08] (Qualcomm Atheros Co., Ltd.)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30656 2018-07-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [69544 2018-06-08] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [65792 2018-04-24] (NVIDIA Corporation)
R3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [61656 2017-09-08] (Realtek Semiconductor Corporation )
S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-09-01 20:09 - 2018-09-01 20:09 - 000015452 _____ C:\Users\GAMEPC\Downloads\FRST.txt
2018-09-01 20:08 - 2018-09-01 20:09 - 002413056 _____ (Farbar) C:\Users\GAMEPC\Downloads\FRST64.exe
2018-09-01 17:36 - 2018-09-01 17:36 - 000014477 _____ C:\Users\GAMEPC\Downloads\Upgrade.2018.BRRip.AC3.X264-CMRG.torrent
2018-09-01 03:38 - 2018-09-01 03:38 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\SmartSteamEmu
2018-09-01 03:13 - 2018-09-01 03:13 - 000059462 _____ C:\Users\GAMEPC\Downloads\HALF-LIFE 2 (1).torrent
2018-09-01 03:13 - 2018-09-01 03:13 - 000012474 _____ C:\Users\GAMEPC\Downloads\Half-Life 2 Episode Two v2257546 FiNAL.torrent
2018-09-01 03:12 - 2018-09-01 03:12 - 000059462 _____ C:\Users\GAMEPC\Downloads\HALF-LIFE 2.torrent
2018-09-01 02:55 - 2018-09-01 02:55 - 000060204 _____ C:\Users\GAMEPC\Downloads\Half Life 2. Crack & Cd Key. Works.rar.torrent
2018-08-30 15:56 - 2018-08-30 15:56 - 000013166 _____ C:\Users\GAMEPC\Downloads\Captain.America.The.First.Avenger.2011.BRRip.XviD.BGAudio-SLSS.torrent
2018-08-30 15:56 - 2018-08-30 15:56 - 000013166 _____ C:\Users\GAMEPC\Downloads\Captain.America.The.First.Avenger.2011.BRRip.XviD.BGAudio-SLSS (1).torrent
2018-08-30 15:54 - 2018-08-30 15:54 - 000019853 _____ C:\Users\GAMEPC\Downloads\Captain.America.The.First.Avenger.2011.480p.BDRip.XviD.DUAL-KiNGS.torrent
2018-08-28 18:10 - 2018-08-28 18:10 - 000014341 _____ C:\Users\GAMEPC\Downloads\Scary Movie 4 (2006) DVDRip.BGAudio-CoveR.avi.torrent
2018-08-28 00:34 - 2018-08-21 13:24 - 000132408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2018-08-28 00:31 - 2018-08-22 19:12 - 032457736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2018-08-28 00:31 - 2018-08-22 19:12 - 017014632 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2018-08-28 00:31 - 2018-08-22 19:12 - 000628560 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2018-08-28 00:31 - 2018-08-22 19:12 - 000519120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 040346976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 035250176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 031248576 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 025964944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 019088480 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 017755768 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 015699512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 015169920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 013732120 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 011276424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 004085328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 003967304 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 003504968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 002015184 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439907.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 001564136 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 001467728 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439907.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 001420296 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 001217352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 001159096 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 001093456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 000906608 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 000546880 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 000464536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 000420032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 000182624 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 000164792 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 000159736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2018-08-28 00:31 - 2018-08-22 19:11 - 000142656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2018-08-27 18:10 - 2018-08-27 18:10 - 000106090 _____ C:\Users\GAMEPC\Downloads\Pirates_of_the_Caribbean_Dead_Men_Tell_No_Tales_2017.(subs.sab.bz).rar
2018-08-27 18:10 - 2018-08-27 18:10 - 000016254 _____ C:\Users\GAMEPC\Downloads\Pirates.of.the.Caribbean.Dead.Men.Tell.No.Tales.2017.BRRip.XViD.AC3-HUD.torrent
2018-08-27 02:28 - 2018-08-27 02:29 - 000493548 _____ C:\Users\GAMEPC\Downloads\The Simpsons S01 - S27 Mega Pack x265.torrent
2018-08-26 17:54 - 2018-08-26 17:54 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\Viber
2018-08-26 10:45 - 2018-08-26 10:45 - 000022858 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x19___Whiskey_Business.(subs.sab.bz).rar
2018-08-26 10:45 - 2018-08-26 10:45 - 000020450 _____ C:\Users\GAMEPC\Downloads\The_Simpsons__24x20__The_Fabulous_Faker_Boy.(subs.sab.bz).rar
2018-08-26 08:04 - 2018-08-26 08:04 - 000022840 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x17___What_Animated_Women_Want.(subs.sab.bz).rar
2018-08-26 08:04 - 2018-08-26 08:04 - 000021986 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x18___Pulpit_Friction.(subs.sab.bz).rar
2018-08-26 03:59 - 2018-08-26 03:59 - 000021949 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x16.(subs.sab.bz).rar
2018-08-26 03:59 - 2018-08-26 03:59 - 000020900 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x15___Black_Eyed__Please.(subs.sab.bz).rar
2018-08-26 03:22 - 2018-08-26 03:22 - 000022549 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x14___Gorgeous_Grampa.(subs.sab.bz).rar
2018-08-26 03:22 - 2018-08-26 03:22 - 000018792 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x13___Hardly_Kirk_ing.(subs.sab.bz).rar
2018-08-24 09:07 - 2018-08-24 09:07 - 000021584 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x12___Love_Is_a_Many_Splintered_Thing.(subs.sab.bz).rar
2018-08-24 08:28 - 2018-08-24 08:28 - 000021542 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x11___Changing_of_the_Guardian.(subs.sab.bz).rar
2018-08-24 08:28 - 2018-08-24 08:28 - 000018550 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x10___A_Test_Before_Trying.(subs.sab.bz).rar
2018-08-24 04:23 - 2018-08-24 04:23 - 000019082 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x09___Homer_Goes_to_Prep_School.(subs.sab.bz).rar
2018-08-24 03:33 - 2018-08-24 03:33 - 000022972 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x07___The_Day_The_Earth_Stood_Cool.(subs.sab.bz).rar
2018-08-24 03:33 - 2018-08-24 03:33 - 000020357 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x08___To_Cur_With_Love.(subs.sab.bz).rar
2018-08-23 09:03 - 2018-08-23 09:03 - 000018620 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x06___A_Tree_Grows_in_Springfield.(subs.sab.bz).rar
2018-08-23 08:41 - 2018-08-23 08:41 - 000020144 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x05___Penny_Wiseguys.(subs.sab.bz).rar
2018-08-23 04:21 - 2018-08-23 04:21 - 000020846 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x04___Gone_Abie_Gone..(subs.sab.bz).rar
2018-08-23 04:19 - 2018-08-23 04:19 - 000021718 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x03___Adventures_in_Baby_Getting.(subs.sab.bz).rar
2018-08-23 03:21 - 2018-08-23 03:21 - 000021140 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x01___Moonshine_River.(subs.sab.bz) (1).rar
2018-08-23 03:21 - 2018-08-23 03:21 - 000017872 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x02___Treehouse_of_Horror_XXIII.(subs.sab.bz) (1).rar
2018-08-23 03:21 - 2018-08-23 03:21 - 000014133 _____ C:\Users\GAMEPC\Downloads\The.Simpsons.Season.24.HDTV.x264-***.torrent
2018-08-23 03:21 - 2018-08-23 03:21 - 000014133 _____ C:\Users\GAMEPC\Downloads\The.Simpsons.Season.24.HDTV.x264-*** (1).torrent
2018-08-23 03:20 - 2018-08-23 03:20 - 000021140 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x01___Moonshine_River.(subs.sab.bz).rar
2018-08-23 03:20 - 2018-08-23 03:20 - 000017872 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___24x02___Treehouse_of_Horror_XXIII.(subs.sab.bz).rar
2018-08-23 03:19 - 2018-08-23 03:19 - 000012426 _____ C:\Users\GAMEPC\Downloads\The.Simpsons.Season.24.HDTV.XviD-***.torrent
2018-08-22 09:27 - 2018-08-22 09:27 - 000021840 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x21___Ned__N__Edna_s_Blend.(subs.sab.bz) (1).rar
2018-08-22 09:26 - 2018-08-22 09:26 - 000021840 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x21___Ned__N__Edna_s_Blend.(subs.sab.bz).rar
2018-08-22 09:26 - 2018-08-22 09:26 - 000019622 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x20___The_Spy_Who_Learned_Me.(subs.sab.bz).rar
2018-08-22 03:41 - 2018-08-22 03:41 - 000019260 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x19____A_Totally_Fun_Thing_Bart_Will_Never_Do_Again.(subs.sab.bz).rar
2018-08-22 03:41 - 2018-08-22 03:41 - 000018680 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x18___Beware_My_Cheating_Bart.(subs.sab.bz) (1).rar
2018-08-22 02:28 - 2018-08-22 02:28 - 000018680 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x18___Beware_My_Cheating_Bart.(subs.sab.bz).rar
2018-08-22 02:27 - 2018-08-22 02:27 - 000018962 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x17___Them__Robot.(subs.sab.bz).rar
2018-08-22 02:27 - 2018-08-22 02:27 - 000009178 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x16___How_I_Wet_Your_Mother.(subs.sab.bz) (1).rar
2018-08-21 16:59 - 2018-08-21 16:59 - 000003506 _____ C:\Windows\System32\Tasks\GAMEPC
2018-08-21 13:29 - 2018-08-21 13:29 - 000009178 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x16___How_I_Wet_Your_Mother.(subs.sab.bz).rar
2018-08-21 11:56 - 2018-08-21 11:56 - 000019710 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x15___Exit_Through_the_Kwik_E_Mart.(subs.sab.bz).rar
2018-08-21 11:14 - 2018-08-21 11:14 - 000018647 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x14___At_Long_Last_Leave.(subs.sab.bz).rar
2018-08-21 11:14 - 2018-08-21 11:14 - 000016842 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x13___The_Daughter_Also_Rises_.(subs.sab.bz).rar
2018-08-21 03:31 - 2018-08-21 03:31 - 000017623 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x12___Moe_Goes_from_Rags_to_Riches.(subs.sab.bz).rar
2018-08-21 02:23 - 2018-08-21 02:23 - 000022312 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x10___Politically_Inept__with_Homer_Simpson.(subs.sab.bz) (1).rar
2018-08-21 02:23 - 2018-08-21 02:23 - 000019117 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x11___The_D_oh_cial_Network.(subs.sab.bz).rar
2018-08-20 00:25 - 2018-08-20 00:25 - 000012347 _____ C:\Users\GAMEPC\Downloads\Euro Truck Simulator 2 [v 1.30.2.2s + 56 DLC] (2013) PC  RePack.torrent
2018-08-19 21:03 - 2018-08-19 21:08 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\.ACEStream
2018-08-19 21:03 - 2018-08-19 21:03 - 000000000 ___HD C:\_acestream_cache_
2018-08-19 20:58 - 2018-08-19 21:00 - 079522432 _____ C:\Users\GAMEPC\Downloads\Ace_Stream_Media_3.1.2.exe
2018-08-19 04:15 - 2018-08-19 04:15 - 000022312 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x10___Politically_Inept__with_Homer_Simpson.(subs.sab.bz).rar
2018-08-19 03:39 - 2018-08-19 03:39 - 000021035 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x08___The_Ten_Per_Cent_Solution.(subs.sab.bz).rar
2018-08-19 03:39 - 2018-08-19 03:39 - 000019249 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x09___Holidays_of_Future_Passed.(subs.sab.bz).rar
2018-08-19 02:42 - 2018-08-19 02:42 - 000023026 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x06___The_Book_Job.(subs.sab.bz).rar
2018-08-19 02:42 - 2018-08-19 02:42 - 000021969 _____ C:\Users\GAMEPC\Downloads\The_Simpsons___23x07___The_Man_in_the_Blue_Flannel_Pants.(subs.sab.bz).rar
2018-08-18 17:22 - 2018-08-18 17:22 - 000000000 ____D C:\Users\GAMEPC\AppData\LocalLow\SKS
2018-08-13 21:06 - 2018-08-13 21:06 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\EasyAntiCheat
2018-08-04 02:57 - 2018-08-14 23:50 - 000000000 ____D C:\Users\GAMEPC\Documents\ETS2MP
2018-08-04 02:57 - 2018-08-04 02:57 - 000000000 ____D C:\ProgramData\TruckersMP
2018-08-04 02:56 - 2018-08-04 02:56 - 000000681 _____ C:\Users\Public\Desktop\TruckersMP.lnk
2018-08-04 02:56 - 2018-08-04 02:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TruckersMP Launcher
2018-08-03 23:58 - 2018-08-31 23:52 - 000000000 ____D C:\Users\GAMEPC\Documents\Euro Truck Simulator 2
2018-08-03 23:46 - 2018-08-03 23:46 - 000000222 _____ C:\Users\GAMEPC\Desktop\Euro Truck Simulator 2.url

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-09-01 20:09 - 2018-04-05 15:41 - 000000000 ____D C:\FRST
2018-09-01 19:59 - 2017-09-19 23:12 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\TS3Client
2018-09-01 19:47 - 2017-09-23 18:42 - 000000000 ____D C:\Program Files (x86)\Steam
2018-09-01 17:40 - 2009-07-14 07:45 - 000028352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-09-01 17:40 - 2009-07-14 07:45 - 000028352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-09-01 17:37 - 2017-09-10 01:33 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\qBittorrent
2018-09-01 17:33 - 2017-12-06 19:25 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\ViberPC
2018-09-01 17:33 - 2017-09-08 14:03 - 000000000 ____D C:\ProgramData\NVIDIA
2018-09-01 17:31 - 2017-12-08 19:36 - 000000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2018-09-01 17:31 - 2009-07-14 08:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-09-01 03:37 - 2017-09-23 16:30 - 000000000 ____D C:\Windows\SysWOW64\directx
2018-08-31 14:43 - 2017-10-13 16:36 - 000000000 ____D C:\Users\GAMEPC\Documents\ViberDownloads
2018-08-31 14:42 - 2017-09-08 14:05 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\NVIDIA
2018-08-31 13:50 - 2017-09-08 13:35 - 000003864 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1504866897
2018-08-31 13:50 - 2017-09-08 13:34 - 000000000 ____D C:\Program Files (x86)\Opera
2018-08-28 14:52 - 2011-04-12 11:34 - 000000000 ___RD C:\Users\Public\Recorded TV
2018-08-28 14:40 - 2017-09-08 13:51 - 000000000 ____D C:\Users\GAMEPC\AppData\LocalLow\Mozilla
2018-08-28 14:39 - 2017-09-08 12:32 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\VirtualStore
2018-08-28 00:35 - 2017-09-08 14:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2018-08-28 00:35 - 2017-09-08 13:20 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-08-28 00:34 - 2018-05-24 22:23 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-08-28 00:34 - 2009-07-14 06:20 - 000000000 ____D C:\Windows\inf
2018-08-28 00:33 - 2018-04-26 20:20 - 000000000 ____D C:\Windows\system32\unknown
2018-08-22 19:12 - 2018-08-01 22:39 - 040189616 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2018-08-22 19:11 - 2018-06-27 16:06 - 020330616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2018-08-22 19:11 - 2017-09-08 14:02 - 004616904 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2018-08-22 19:11 - 2017-09-08 14:02 - 000505592 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2018-08-22 19:11 - 2017-09-08 13:22 - 023305232 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2018-08-21 15:08 - 2017-09-08 13:21 - 000041866 _____ C:\Windows\system32\nvinfo.pb
2018-08-21 13:15 - 2017-09-08 14:03 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2018-08-21 13:14 - 2017-09-08 14:03 - 005947600 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2018-08-21 13:14 - 2017-09-08 14:03 - 002612264 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2018-08-21 13:14 - 2017-09-08 14:03 - 001767632 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2018-08-21 13:14 - 2017-09-08 14:03 - 000634352 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2018-08-21 13:14 - 2017-09-08 14:03 - 000450768 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2018-08-21 13:14 - 2017-09-08 14:03 - 000124216 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2018-08-21 13:14 - 2017-09-08 14:03 - 000083440 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2018-08-19 21:08 - 2018-07-25 19:56 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\ACEStream
2018-08-18 17:17 - 2018-07-30 18:09 - 000000000 ____D C:\Users\GAMEPC\AppData\Roaming\.minecraft
2018-08-15 14:13 - 2017-09-18 19:14 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-08-15 14:13 - 2017-09-18 19:14 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-08-15 14:13 - 2017-09-18 19:14 - 000004478 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2018-08-15 14:13 - 2017-09-18 19:14 - 000004324 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2018-08-15 14:13 - 2017-09-18 19:14 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-08-15 14:13 - 2017-09-18 19:14 - 000000000 ____D C:\Windows\system32\Macromed
2018-08-15 10:27 - 2018-03-14 01:27 - 000004466 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2018-08-13 15:24 - 2017-09-08 15:54 - 000000000 ____D C:\Users\GAMEPC\AppData\Local\CrashDumps
2018-08-10 03:55 - 2017-09-08 13:35 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-08-10 03:55 - 2017-09-08 13:35 - 000002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-08-03 01:32 - 2017-09-08 14:03 - 008273432 _____ C:\Windows\system32\nvcoproc.bin

Some files in TEMP:
====================
2018-01-11 20:05 - 2018-08-29 00:10 - 000000000 _____ () C:\Users\GAMEPC\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll
2018-07-28 16:07 - 2018-08-29 00:10 - 000000020 _____ () C:\Users\GAMEPC\AppData\Local\Temp\663bdeddf9fcedcae13cc41b1f0d9432.dll
2018-01-11 20:05 - 2018-07-27 00:20 - 000000020 _____ () C:\Users\GAMEPC\AppData\Local\Temp\9cfeec25b194d212cb1a549f559db4ab.dll
2018-04-08 23:24 - 2017-09-19 20:57 - 000037376 _____ (Microsoft) C:\Users\GAMEPC\AppData\Local\Temp\HiPatchSelfUpdateWindow.exe
2018-04-08 23:24 - 2017-09-19 20:57 - 000020480 _____ (Microsoft) C:\Users\GAMEPC\AppData\Local\Temp\HiRezLauncherControls.dll
2018-01-20 23:46 - 2018-01-20 23:46 - 001864256 _____ (Oracle Corporation) C:\Users\GAMEPC\AppData\Local\Temp\jre-8u161-windows-au.exe
2018-04-20 23:42 - 2018-04-20 23:42 - 001884616 _____ (Oracle Corporation) C:\Users\GAMEPC\AppData\Local\Temp\jre-8u171-windows-au.exe
2018-01-08 19:01 - 2018-06-01 11:47 - 000728648 _____ (NVIDIA Corporation) C:\Users\GAMEPC\AppData\Local\Temp\nvSCPAPI64.dll
2018-01-29 20:03 - 2018-07-30 20:50 - 000395656 _____ (NVIDIA Corporation) C:\Users\GAMEPC\AppData\Local\Temp\nvStInst.exe
2018-04-12 20:38 - 2018-04-12 20:38 - 058834376 _____ (Skype Technologies S.A.) C:\Users\GAMEPC\AppData\Local\Temp\SkypeSetup.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-08-26 04:44

==================== End of FRST.txt ============================






 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01.09.2018 03
Ran by GAMEPC (01-09-2018 20:10:01)
Running from C:\Users\GAMEPC\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2017-09-08 09:32:01)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2297230751-1021565052-1431566534-500 - Administrator - Disabled)
GAMEPC (S-1-5-21-2297230751-1021565052-1431566534-1000 - Administrator - Enabled) => C:\Users\GAMEPC
Guest (S-1-5-21-2297230751-1021565052-1431566534-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 26.0.0.127 - Adobe Systems Incorporated)
Adobe Flash Player 30 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 30.0.0.154 - Adobe Systems Incorporated)
Adobe Flash Player 30 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 30.0.0.154 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.9.199 - Adobe Systems, Inc.)
ATI Catalyst Install Manager (HKLM\...\{DC9C8BC1-72CE-B5FE-EA4F-6D9127E51746}) (Version: 3.0.736.0 - ATI Technologies, Inc.)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6623 - CDBurnerXP)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.6.0.0283 - Disc Soft Ltd)
Discord (HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\Discord) (Version: 0.0.301 - Discord Inc.)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 399.07 - NVIDIA Corporation) Hidden
Epic Games Launcher (HKLM-x32\...\{8F89B0CF-8144-43EE-AB9F-B7F8F23D85FB}) (Version: 1.1.135.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
FIFA18 version 1.0 (HKLM\...\FIFA18_is1) (Version: 1.0 - STEAMPUNKS) <==== ATTENTION
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.3.14.5270 - Gretech Corporation)
Google Chrome (HKLM\...\{DA081EB6-F64C-358C-9BB0-AF1EA8001F34}) (Version: 68.0.3440.106 - Google, Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 6.0.2.4 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Java 8 Update 171 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180171F0}) (Version: 8.0.1710.11 - Oracle Corporation)
Java 8 Update 171 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180171F0}) (Version: 8.0.1710.11 - Oracle Corporation)
Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-CA) (HKLM-x32\...\{9C5505DA-F9C1-46CB-9F8F-AC38F8EA518A}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-GB) (HKLM-x32\...\{A0186231-0A8B-455A-8A25-B64AABCC11A6}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft .NET Framework 4.7 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02053 - Microsoft Corporation)
Microsoft Office Language Pack 2010 - Bulgarian/български (HKLM-x32\...\Office14.OMUI.bg-bg) (Version: 14.0.4763.1021 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4734.1000 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Mozilla Firefox 61.0.1 (x64 bg) (HKLM\...\Mozilla Firefox 61.0.1 (x64 bg)) (Version: 61.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.3 - Mozilla)
NVIDIA 3D Vision Controller Driver 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 399.07 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 399.07 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.14.1.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.14.1.48 - NVIDIA Corporation)
NVIDIA Graphics Driver 399.07 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 399.07 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.37.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.4 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera Stable 55.0.2994.44 (HKLM-x32\...\Opera 55.0.2994.44) (Version: 55.0.2994.44 - Opera Software)
PotPlayer-64 bit (HKLM\...\PotPlayer64) (Version: 1.7.13622 - Kakao Corp.)
PotPlayer-64 bit (HKLM-x32\...\PotPlayer64) (Version: 1.7.8556 - Kakao Corp.)
qBittorrent 4.1.1 (HKLM-x32\...\qBittorrent) (Version: 4.1.1 - The qBittorrent project)
Skype™ 7.41 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.41.101 - Skype Technologies S.A.)
StarCraft II (HKLM-x32\...\StarCraft II) (Version:  - Blizzard Entertainment)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\TeamSpeak 3 Client) (Version: 3.1.8 - TeamSpeak Systems GmbH)
TruckersMP Launcher 1.0.0.4 (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 1.0.0.4 - TruckersMP Team)
Viber (HKLM-x32\...\{0235CB19-2284-4C34-9CF9-04078CF94C32}) (Version: 7.7.0.1126 - Viber Media Inc.) Hidden
Viber (HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\{f37aa91a-8669-4ac1-bb40-8cc05c3beca1}) (Version: 7.7.0.1126 - Viber Media Inc.)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
WinRAR 5.40 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
WinRAR 5.50 (64-битова версия) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
World of Warcraft Classic (HKLM-x32\...\World of Warcraft Classic) (Version: 1.12.1.5875 - Blizzard Entertainment)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-08-21] (NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {17541074-21CD-4A00-B834-A5C51C9117DE} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-07-19] (NVIDIA Corporation)
Task: {29CD2B59-F360-4EA0-8046-E993FB989355} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_pepper.exe [2018-08-15] (Adobe Systems Incorporated)
Task: {2BEF52B4-7020-4DE8-A8E3-1EF9C11AE72E} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-07-19] (NVIDIA Corporation)
Task: {4AD8F034-A7E9-402D-91CD-4DC03140A409} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-07-19] (NVIDIA Corporation)
Task: {541488F0-996C-41A7-9FD0-B384D368B53E} - System32\Tasks\Opera scheduled Autoupdate 1504866897 => C:\Program Files (x86)\Opera\launcher.exe [2018-08-23] (Opera Software)
Task: {5EB42901-F6E5-4B7E-ACED-5B56332750D0} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-07-19] (NVIDIA Corporation)
Task: {64503CA0-D96B-485A-A2ED-32E1ADEC5130} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-08] (Google Inc.)
Task: {73FC8EF7-E132-4317-92E8-E7FC4CA2F6EA} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation)
Task: {8528CA4D-0B26-4E28-85F3-3F183D807591} - System32\Tasks\Driver Booster SkipUAC (GAMEPC) => C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe
Task: {853107D5-99D9-4ED4-9D50-87311C1ED5BC} - System32\Tasks\GAMEPC => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v GAMEPC /t REG_SZ /d "explorer.exe hxxp://exinariuminix.info" <==== ATTENTION
Task: {A19D33FF-7FBC-4D6F-B122-FFBC2947D956} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-08-15] (Adobe Systems Incorporated)
Task: {A1D60D55-A6B8-401B-BC05-2938E02DF2F2} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => d:\program files\windows defender\MpCmdRun.exe
Task: {C4E8B14A-4159-4C58-BDAD-281DBBFC97E8} - System32\Tasks\Microsoft\Windows Defender\MpIdleTask => d:\program files\windows defender\MpCmdRun.exe
Task: {CE666270-E9FC-4C1B-B1E2-7F3D281B959B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-07-19] (NVIDIA Corporation)
Task: {EB620B18-B5AA-4EB6-9CE3-AA5A941F2E00} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation)
Task: {ED30AF38-938D-4526-94E7-55D411155D8F} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-07-19] (NVIDIA Corporation)
Task: {EFA9CC79-0313-4D33-94BC-FED17F4BF7AA} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-07-19] (NVIDIA Corporation)
Task: {F381ABC2-2626-4AC3-AE8D-FB12F3685D5D} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation)
Task: {F67C982E-B27B-4B4D-B6F1-B5474BEA2341} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_Plugin.exe [2018-08-15] (Adobe Systems Incorporated)
Task: {FB761E82-2ABF-4B7D-A0A8-3F00F3533DD3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-08] (Google Inc.)
Task: {FFA6E2EE-E424-45AF-A108-E61D708B7695} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Браузър Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) <==== Cyrillic
Shortcut: C:\Users\Public\Desktop\Браузър Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) <==== Cyrillic

==================== Loaded Modules (Whitelisted) ==============

2017-09-08 14:03 - 2018-08-21 13:14 - 000142888 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2010-01-09 20:17 - 2010-01-09 20:17 - 004254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2018-05-24 22:15 - 2018-07-19 23:20 - 001314856 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-08-29 02:53 - 2018-08-27 22:41 - 001054496 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\SDL2.dll
2018-08-29 02:53 - 2018-08-27 23:52 - 098006816 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libcef.dll
2018-01-22 13:34 - 2018-01-22 13:34 - 000174744 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\quazip.dll
2017-10-13 14:17 - 2017-10-13 14:17 - 000020632 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\libEGL.DLL
2017-10-13 14:17 - 2017-10-13 14:17 - 001981592 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\libGLESv2.dll
2018-01-22 13:34 - 2018-01-22 13:34 - 000125592 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win64.dll
2018-01-22 13:34 - 2018-01-22 13:34 - 000150680 _____ () C:\Users\GAMEPC\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll
2017-09-19 23:12 - 2017-09-19 23:12 - 000157696 _____ () C:\Users\GAMEPC\AppData\Roaming\TS3Client\plugins\gamepad_joystick_win64.dll
2017-09-19 23:12 - 2017-09-19 23:12 - 000012288 _____ () C:\Users\GAMEPC\AppData\Roaming\TS3Client\plugins\gamepad_joystick\api_stub.dll
2017-09-19 23:12 - 2017-09-19 23:12 - 000345880 _____ () C:\Users\GAMEPC\AppData\Roaming\TS3Client\plugins\clientquery_plugin_win64.dll
2018-08-29 02:53 - 2018-08-27 23:52 - 004443424 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libglesv2.dll
2018-08-29 02:53 - 2018-08-27 23:52 - 000100128 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libegl.dll
2018-08-10 03:55 - 2018-08-08 03:41 - 004855640 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libglesv2.dll
2018-08-10 03:55 - 2018-08-08 03:41 - 000115544 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libegl.dll
2017-09-08 14:04 - 2018-07-19 23:19 - 001032744 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-09-23 18:44 - 2018-08-27 22:41 - 000874784 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2017-09-23 18:44 - 2016-09-01 04:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2017-09-23 18:44 - 2016-09-01 04:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2017-09-23 18:44 - 2016-09-01 04:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2017-09-23 18:44 - 2018-08-30 00:17 - 002646304 _____ () C:\Program Files (x86)\Steam\video.dll
2017-12-14 11:20 - 2017-12-20 04:43 - 005137696 _____ () C:\Program Files (x86)\Steam\libavcodec-57.dll
2017-12-14 11:20 - 2017-12-20 04:43 - 000847136 _____ () C:\Program Files (x86)\Steam\libavutil-55.dll
2017-12-14 11:20 - 2017-12-20 04:43 - 000695584 _____ () C:\Program Files (x86)\Steam\libavformat-57.dll
2017-12-14 11:20 - 2017-12-20 04:43 - 000351520 _____ () C:\Program Files (x86)\Steam\libavresample-3.dll
2017-12-14 11:20 - 2017-12-20 04:43 - 000783648 _____ () C:\Program Files (x86)\Steam\libswscale-4.dll
2017-09-23 18:44 - 2018-08-30 00:17 - 001015584 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2017-09-23 18:43 - 2016-07-05 01:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\AppData:CSM [472]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [476]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 05:34 - 2009-06-11 00:00 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\GAMEPC\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 87.121.24.12
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupfolder: C:^Users^GAMEPC^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Need for Speed™ Undercover Registration.lnk => C:\Windows\pss\Need for Speed™ Undercover Registration.lnk.Startup
MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun
MSCONFIG\startupreg: Discord => C:\Users\GAMEPC\AppData\Local\Discord\app-0.0.300\Discord.exe
MSCONFIG\startupreg: RazerCortex => "C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe" -autorun
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: Viber => "C:\Users\GAMEPC\AppData\Local\Viber\Viber.exe" StartMinimized

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{11074DEE-7B8C-4DC2-AE4C-93DF0A309913}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{D19357FE-92D5-4C15-865D-6BA1144E3141}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{21EB0059-8DA7-4F26-8EBC-947F0C4E2AAA}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe
FirewallRules: [{F8BB1871-4D02-4C5E-A222-4D557710B3E1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe
FirewallRules: [{1E8A507C-3B06-43AB-92D1-1DF3E7592F50}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{1EE7FB5D-9E25-4DA9-ACB5-D608ECDBB452}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{84ACAD4A-CAC3-405E-BED8-CCE7B6F558B9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{ECD86BF2-018A-42DF-BDE1-D3B78B430449}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{5C9FEA0E-0037-4228-8A5E-308AD75AC1DF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{FD05E114-41E1-4EC3-B5A2-BBA593EE39E2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{831352BE-7396-43E6-9657-9ED9D8BAB30D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{AB5ACC3F-22CB-469F-9EB3-8D69417E7CD5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{F49F4A4B-5D47-4938-9A35-D5AC2266716F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{4145C754-6CAB-4BD7-B9A0-015670DBEB52}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{43ADA9C0-2E56-45D1-B73D-9C89040C463D}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06129773-C563-4DFF-8D34-BEA82843A4F0}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7AEADA08-C908-4138-A481-C7A9273E9FCB}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{2570E448-A94B-49F4-BB96-09C89387333D}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{A7A3205E-5145-4588-981D-700ACBF67C2F}D:\arc\s\fifa 17\fifa17.exe] => (Allow) D:\arc\s\fifa 17\fifa17.exe
FirewallRules: [UDP Query User{FCB7CF1E-D214-47B7-8337-D288C7BAF41D}D:\arc\s\fifa 17\fifa17.exe] => (Allow) D:\arc\s\fifa 17\fifa17.exe
FirewallRules: [TCP Query User{FE770401-859A-47E7-83C8-031A3CCB827E}D:\1.6\hl.exe] => (Allow) D:\1.6\hl.exe
FirewallRules: [UDP Query User{6ADE0CF9-8E94-4097-8470-CF141DE016AF}D:\1.6\hl.exe] => (Allow) D:\1.6\hl.exe
FirewallRules: [TCP Query User{0D1FADB8-FCE1-4E0E-B19A-D5490965A994}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{F6FECCC1-1C2E-45A5-B7AC-EAF4B88229DF}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [TCP Query User{71DEC4BA-0EE6-44EB-B6E4-3F2B7E7B033C}D:\sdad\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\sdad\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{AAFB686C-3BA7-489D-AD75-25F81C3129EA}D:\sdad\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\sdad\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{86071F7C-F2FF-404C-BDFF-DEC06251CE41}D:\sdad\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\sdad\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{8429747D-9E78-43DA-A34C-9E12DBE52ABD}D:\sdad\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\sdad\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{190C4BF7-61BF-421A-87DE-236D48F2F203}D:\frot\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\frot\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{F4C57F24-879D-4F9A-B8E8-DAFB45A1C764}D:\frot\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\frot\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [TCP Query User{662290C0-C811-4E20-AEF3-23DFAA94C7C1}D:\human\wolfenstein - the new order\wolfneworder_x64.exe] => (Allow) D:\human\wolfenstein - the new order\wolfneworder_x64.exe
FirewallRules: [UDP Query User{D80C48E0-BCA2-4D0F-B628-97E9FF7A83E7}D:\human\wolfenstein - the new order\wolfneworder_x64.exe] => (Allow) D:\human\wolfenstein - the new order\wolfneworder_x64.exe
FirewallRules: [TCP Query User{795A7748-4348-4E5A-B2D5-B4B7A1324DC7}D:\ijijj\f1 2016\f1_2016.exe] => (Allow) D:\ijijj\f1 2016\f1_2016.exe
FirewallRules: [UDP Query User{BC1990C5-EB17-4471-A2D7-034561829F99}D:\ijijj\f1 2016\f1_2016.exe] => (Allow) D:\ijijj\f1 2016\f1_2016.exe
FirewallRules: [TCP Query User{14DDF284-5460-443A-A985-ED25EFDEF97A}D:\aasd\battlefield hardline\bfh.exe] => (Allow) D:\aasd\battlefield hardline\bfh.exe
FirewallRules: [UDP Query User{41B16D1B-DA09-4913-8F3D-A29DAAF8BC6D}D:\aasd\battlefield hardline\bfh.exe] => (Allow) D:\aasd\battlefield hardline\bfh.exe
FirewallRules: [TCP Query User{7FFD35DD-B830-4881-9F21-B0DDD87C935E}D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{0422AA3B-D32B-4AE2-8E19-F4D4ED2A2BDA}D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{CD2A8849-5FA2-4B7F-9315-E011E25C0F34}D:\sc2\sc2\starcraft ii\versions\base60321\sc2_x64.exe] => (Allow) D:\sc2\sc2\starcraft ii\versions\base60321\sc2_x64.exe
FirewallRules: [UDP Query User{21623E77-268D-4B31-B4E2-E4D028DC7916}D:\sc2\sc2\starcraft ii\versions\base60321\sc2_x64.exe] => (Allow) D:\sc2\sc2\starcraft ii\versions\base60321\sc2_x64.exe
FirewallRules: [TCP Query User{E098DE48-4A6A-4CF4-AC43-CFCFEFC46C76}D:\diablo 3\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo 3\diablo iii\x64\diablo iii64.exe
FirewallRules: [UDP Query User{74DA4CD7-8E73-4107-8D65-D40C2EE60DA9}D:\diablo 3\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo 3\diablo iii\x64\diablo iii64.exe
FirewallRules: [TCP Query User{DF89E965-0B93-4801-A529-B1FDCF96DC5E}D:\heroes\might & magic.heroes 6.gold edition.v 2.1.1.0 + 4 dlc\might & magic heroes vi.exe] => (Allow) D:\heroes\might & magic.heroes 6.gold edition.v 2.1.1.0 + 4 dlc\might & magic heroes vi.exe
FirewallRules: [UDP Query User{F4B31A0B-4922-456C-9A2B-33260CE59A1F}D:\heroes\might & magic.heroes 6.gold edition.v 2.1.1.0 + 4 dlc\might & magic heroes vi.exe] => (Allow) D:\heroes\might & magic.heroes 6.gold edition.v 2.1.1.0 + 4 dlc\might & magic heroes vi.exe
FirewallRules: [TCP Query User{DEFA441A-0140-4630-9B49-0F0DB88705EC}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{2F3AD7BE-C36D-4E24-BFFA-EED5BE5D11F4}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{68773BE5-EEF8-470B-B1C8-8AEF54FF8AAC}D:\steamlibrary\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{C67CBA43-ED5A-43CD-96B6-63C91FC29243}D:\steamlibrary\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{B02A6D6E-E443-466D-A359-23CF0374577C}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{7800F34C-7767-4BDF-8A49-26D1C6C80F5F}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{B176F8F2-937B-49A8-AB1F-8E228B518267}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{94DE9988-CA46-400F-9C84-2E1FC7A47F6A}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{366AF239-7D01-4970-8487-934BFB4B7396}D:\fortniteeeeeeeee\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortniteeeeeeeee\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{8C9336D5-DCAF-4329-8BB8-4F1F6DB85DBF}D:\fortniteeeeeeeee\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortniteeeeeeeee\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [{3B7D3801-5557-4905-A940-9FFB3D9419C2}] => (Allow) D:\SteamLibrary\steamapps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [{B5A843B5-4869-438A-A418-D42BF3EC672D}] => (Allow) D:\SteamLibrary\steamapps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [TCP Query User{3E9CAAAF-B071-4C5A-BF3C-8D6CE738DDCF}D:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1\h1z1.exe
FirewallRules: [UDP Query User{5D93D003-DFB9-4F4B-9146-7E5878848F21}D:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1\h1z1.exe
FirewallRules: [TCP Query User{6974BC97-0928-445B-9F9D-0F91B4FFF12A}D:\raly\rads\projects\league_client\releases\0.0.0.132\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.132\deploy\leagueclient.exe
FirewallRules: [UDP Query User{5B5C34D8-85D1-464C-BF0D-C0BC4965E441}D:\raly\rads\projects\league_client\releases\0.0.0.132\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.132\deploy\leagueclient.exe
FirewallRules: [TCP Query User{9DFFCC02-9F9C-4A63-AEAD-98B046D6D7AF}D:\raly\rads\projects\league_client\releases\0.0.0.133\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.133\deploy\leagueclient.exe
FirewallRules: [UDP Query User{B81959A2-C448-41BA-BA68-04828BCD4CA7}D:\raly\rads\projects\league_client\releases\0.0.0.133\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.133\deploy\leagueclient.exe
FirewallRules: [TCP Query User{58724FF2-EE14-4D53-B797-DE1734F6983C}D:\raly\rads\projects\league_client\releases\0.0.0.134\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.134\deploy\leagueclient.exe
FirewallRules: [UDP Query User{6D577E05-BA57-4526-A81E-254BD8C9E7EC}D:\raly\rads\projects\league_client\releases\0.0.0.134\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.134\deploy\leagueclient.exe
FirewallRules: [TCP Query User{5B3437A8-B09D-438D-A545-CAE6B7A82962}D:\raly\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe
FirewallRules: [UDP Query User{8939EF7B-A8BE-4730-93F9-D8778A56462D}D:\raly\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe] => (Allow) D:\raly\rads\projects\league_client\releases\0.0.0.137\deploy\leagueclient.exe
FirewallRules: [{B5E37EE1-9BE1-4B57-9AD5-EEF981D7F031}] => (Allow) D:\SteamLibrary\steamapps\common\TheLongDark\tld.exe
FirewallRules: [{DC6EA5CC-0B14-4DA5-BA55-E772E5860678}] => (Allow) D:\SteamLibrary\steamapps\common\TheLongDark\tld.exe
FirewallRules: [{C118432B-871D-4268-9C07-248641F7E265}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2015\F1_2015.exe
FirewallRules: [{9A5D2120-07BE-4587-9767-DFFC0484207F}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2015\F1_2015.exe
FirewallRules: [{CC5A4281-306D-4711-91C7-E00E2ABEBC40}] => (Allow) D:\SteamLibrary\steamapps\common\Human Fall Flat\Human.exe
FirewallRules: [{8A4DCBEC-E89C-462E-8216-8A9A38C394ED}] => (Allow) D:\SteamLibrary\steamapps\common\Human Fall Flat\Human.exe
FirewallRules: [TCP Query User{9EB67BC3-E37B-4DDA-8152-C4C212BCDB94}D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe
FirewallRules: [UDP Query User{06278712-8E63-4F40-ABC3-10BC10A83F0D}D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe
FirewallRules: [{59C433B9-0583-47C6-BBD8-EF6CED25387C}] => (Allow) D:\SteamLibrary\steamapps\common\We Were Here\We Were Here.exe
FirewallRules: [{D5D9E8C7-DA4C-4CBB-AC6A-B6BA5761875C}] => (Allow) D:\SteamLibrary\steamapps\common\We Were Here\We Were Here.exe
FirewallRules: [{F504A400-375A-4791-AA80-1D9A6E9B02C0}] => (Allow) D:\SteamLibrary\steamapps\common\We Were Here\We Were Here VR.exe
FirewallRules: [{82CB8FD2-99BF-4B0A-A00B-1E3B0460446C}] => (Allow) D:\SteamLibrary\steamapps\common\We Were Here\We Were Here VR.exe
FirewallRules: [{BA413E19-022B-4719-B578-4F0E6C99F5FA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{FDAF511F-0C5C-4E27-8950-6B78D13412DB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{375984E1-0435-4BEC-A184-6481B3B25DF1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe
FirewallRules: [{4694C972-1914-47E9-96EE-62ADBA23A733}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe
FirewallRules: [TCP Query User{B1B4DF97-831E-413C-A928-4176B7B76801}D:\fifa\fifa18\fifa18.exe] => (Allow) D:\fifa\fifa18\fifa18.exe
FirewallRules: [UDP Query User{8691C936-9089-4A6A-9831-A0087C639A9C}D:\fifa\fifa18\fifa18.exe] => (Allow) D:\fifa\fifa18\fifa18.exe
FirewallRules: [{B55C2732-0E9E-43B3-B4D0-12834CB1DCC6}] => (Allow) D:\SteamLibrary\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe
FirewallRules: [{E2D40EE2-980F-40C3-9A72-0C423C1EA748}] => (Allow) D:\SteamLibrary\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe
FirewallRules: [TCP Query User{C8205113-646C-40BE-B04A-9737DE3D65A9}D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [UDP Query User{C869487F-15FB-47B4-A5E6-EFC90C935835}D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [{ACF2D27B-3389-4299-8332-3C95A0840B47}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{1DB0B31E-D885-49A8-8116-59839190B5CF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{4A6C302F-DC5D-4EC9-A3A8-7EBE0898B5FB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{7E8CD031-0619-4BF4-99C2-6EBEBF4F0EA1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{4F47D42D-E5BC-4589-B814-554FFBC0605A}C:\users\gamepc\appdata\roaming\acestream\engine\ace_engine.exe] => (Allow) C:\users\gamepc\appdata\roaming\acestream\engine\ace_engine.exe
FirewallRules: [UDP Query User{C07DD726-677E-4397-BFE6-5AA734523796}C:\users\gamepc\appdata\roaming\acestream\engine\ace_engine.exe] => (Allow) C:\users\gamepc\appdata\roaming\acestream\engine\ace_engine.exe
FirewallRules: [{FF76D716-DBA6-437A-A34F-847AF6AB88AD}] => (Allow) D:\SteamLibrary\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{13A0D233-1007-4376-A4B4-1DA27C101ECB}] => (Allow) D:\SteamLibrary\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{2A5A589D-F047-4DBC-AD59-C99098A30A85}] => (Allow) C:\Program Files (x86)\Opera\54.0.2952.64\opera.exe
FirewallRules: [TCP Query User{86D55748-40A6-4288-AEF7-2C0B25BDF778}C:\program files\java\jre1.8.0_171\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_171\bin\javaw.exe
FirewallRules: [UDP Query User{D8AE6DDF-C0F2-475C-AB9C-B84C11DDC8AB}C:\program files\java\jre1.8.0_171\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_171\bin\javaw.exe
FirewallRules: [TCP Query User{695C8135-FF2C-4E94-9566-E526643684CA}C:\program files (x86)\common files\oracle\java\javapath_target_116381722\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_116381722\java.exe
FirewallRules: [UDP Query User{3091889E-265D-4648-88DF-CEE54431325D}C:\program files (x86)\common files\oracle\java\javapath_target_116381722\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_116381722\java.exe
FirewallRules: [{E370D323-1FD8-4B79-9CB6-FDF84B6DBAF4}] => (Allow) D:\SteamLibrary\steamapps\common\Deceit\bin\win_x64\Deceit.exe
FirewallRules: [{F6725860-B268-4D63-9C1A-31CFE62CB1E1}] => (Allow) D:\SteamLibrary\steamapps\common\Deceit\bin\win_x64\Deceit.exe
FirewallRules: [{19A95D83-1997-4E1D-B782-E9518C66DFBB}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{A1F359C7-4712-4555-B250-972DC5238157}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{9310E9DD-E024-4761-B062-698FB0E3AB13}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{F2B11A3B-CC53-4DFF-B8AC-3ADDA6F5D794}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{93C3F977-9460-4CA1-822E-97863829BC15}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{DB2F74E8-C7EB-44B3-81D7-12B84175E2EA}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{E44676E1-030C-4238-B65F-434792B61DE5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{42D8E88E-3D4D-4E4D-B97E-C0F5923D12E4}] => (Allow) C:\Program Files (x86)\Opera\55.0.2994.44\opera.exe
FirewallRules: [{08673158-7D6C-4134-8F49-9BFD9F3D8235}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{3425B575-2ECF-49E3-A66B-4E8F2AC11D72}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{6E5214AA-681E-46A6-B41D-0831848FC23F}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{CEDE7961-E482-448F-9878-E882114A4D71}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [TCP Query User{7A0BC9E9-DE73-44F2-A9C4-D1CFCB7E7F10}D:\hl2\half-life 2 episode two\hl2.exe] => (Allow) D:\hl2\half-life 2 episode two\hl2.exe
FirewallRules: [UDP Query User{BE13FAFC-58E8-41A9-BF26-8F33F6F4C271}D:\hl2\half-life 2 episode two\hl2.exe] => (Allow) D:\hl2\half-life 2 episode two\hl2.exe

==================== Restore Points =========================

18-08-2018 15:07:15 Планирана контролна точка
24-08-2018 00:25:28 Installed DirectX
31-08-2018 07:26:57 Планирана контролна точка

==================== Faulty Device Manager Devices =============

Name: Qualcomm Atheros AR8161/8165 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
Description: Qualcomm Atheros AR8161/8165 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros
Service: L1C
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/01/2018 05:32:03 PM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: Could not get performance counter registry info for WSearchIdxPi for instance   due to the following error: Операцията завърши успешно.   0x0.

Error: (09/01/2018 05:32:00 PM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Performance monitoring cannot be initialized for the gatherer object, because the counters are not loaded or the shared memory object cannot be opened. This only affects availability of the perfmon counters. Restart the computer.

Context:  Application, SystemIndex Catalog

Error: (09/01/2018 05:32:00 PM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: Performance monitoring cannot be initialized for the gatherer service, because the counters are not loaded or the shared memory object cannot be opened. This only affects availability of the perfmon counters. Restart the computer.

Error: (09/01/2018 05:31:48 PM) (Source: SetupARService) (EventID: 0) (User: )
Description: Service cannot be started. System.NullReferenceException: Object reference not set to an instance of an object.
   at SetupAfterRebootService.SetupARService.OnStart(String[] args)
   at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (09/01/2018 03:13:54 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Program Files\ATI\CIM\Bin64\Setup.exe".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (09/01/2018 03:13:54 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "C:\Program Files\ATI\CIM\Bin64\InstallManagerApp.exe".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (08/31/2018 03:18:22 PM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: Could not get performance counter registry info for WSearchIdxPi for instance   due to the following error: Операцията завърши успешно.   0x0.

Error: (08/31/2018 03:18:18 PM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Performance monitoring cannot be initialized for the gatherer object, because the counters are not loaded or the shared memory object cannot be opened. This only affects availability of the perfmon counters. Restart the computer.

Context:  Application, SystemIndex Catalog


System errors:
=============
Error: (09/01/2018 05:31:59 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Неуспешно зареждане на следния драйвер, който се активира с включване на компютъра или стартиране на системата: 
cdrom

Error: (08/31/2018 03:18:17 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Неуспешно зареждане на следния драйвер, който се активира с включване на компютъра или стартиране на системата: 
cdrom

Error: (08/31/2018 03:17:25 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Изтекъл период на изчакване (30000 милисекунди) при изчакване на услуга Hi-Rez Studios Authenticate and Update Service да се свърже.

Error: (08/31/2018 03:16:53 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 15:13:47 ч. on ‎31.‎8.‎2018 ‎г. was unexpected.

Error: (08/30/2018 02:45:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Услуга Steam Client Service не може да бъде стартирана поради следната грешка: 
Услугата не отговори навреме на искане за стартиране или управление.

Error: (08/30/2018 02:45:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Изтекъл период на изчакване (30000 милисекунди) при изчакване на услуга Steam Client Service да се свърже.

Error: (08/29/2018 02:54:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Услуга Steam Client Service не може да бъде стартирана поради следната грешка: 
Услугата не отговори навреме на искане за стартиране или управление.

Error: (08/29/2018 02:54:23 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Изтекъл период на изчакване (30000 милисекунди) при изчакване на услуга Steam Client Service да се свърже.


==================== Memory info =========================== 

Processor: AMD FX-8320E Eight-Core Processor 
Percentage of memory in use: 37%
Total physical RAM: 8189.54 MB
Available physical RAM: 5089.89 MB
Total Virtual: 16377.26 MB
Available Virtual: 12218.5 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:150 GB) (Free:69.91 GB) NTFS
Drive d: () (Fixed) (Total:781.41 GB) (Free:509.92 GB) NTFS

\\?\Volume{2f050b3f-9477-11e7-8c98-806e6f6e6963}\ (Резервирана за системата) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 0C59AE75)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=150 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=781.4 GB) - (Type=05)

==================== End of Addition.txt ============================

Здравейте..! Аз не виждам нищо зловредно от предоставените дневници..!

 

Фикс с Farbar Recovery Scan Tool
 
icon13.gif Изтеглете прикачения файл
 fixlist.txt и го запазете там, където сте свалили FRST.exe
Стартирайте отново FRST.exe и натиснете бутона Fix веднъж и изчакайте.

Press%20the%20FIX%20button_zpsdd5zi3mt.p


Ще се създаде нов лог файла FixLog.txt. Прикачете съдържанието му в следващия си коментар.
 
ЗАБЕЛЕЖКА: Този скрипт е написан специално за този потребител,и за тази конкретна машина. Изпълнението на фикса, на друг компютър може да доведе до увреждане на  операционната ви система

 

pfNZP4A.png  Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • FixLog.txt
  • Автор

Fix result of Farbar Recovery Scan Tool (x64) Version: 01.09.2018 03
Ran by GAMEPC (02-09-2018 13:37:40) Run:1
Running from C:\Users\GAMEPC\Downloads
Loaded Profiles: GAMEPC (Available Profiles: GAMEPC)
Boot Mode: Normal
==============================================

fixlist content:
*****************
start
CreateRestorePoint:
EmptyTemp:
CloseProcesses:
HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {2d2c5be0-94b8-11e7-8704-048d38748987} - E:\stp-fifa18.exe
HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\...\MountPoints2: {609d2171-c4d2-11e7-a1c0-048d38748987} - F:\Lenovo_Suite.exe 
Task: {853107D5-99D9-4ED4-9D50-87311C1ED5BC} - System32\Tasks\GAMEPC => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v GAMEPC /t REG_SZ /d "explorer.exe hxxp://exinariuminix.info" <==== ATTENTION
AlternateDataStreams: C:\Users\Public\AppData:CSM [472]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [476] 
reboot:
end

*****************

Restore point was successfully created.
Processes closed successfully.
"HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2d2c5be0-94b8-11e7-8704-048d38748987}" => removed successfully
HKLM\Software\Classes\CLSID\{2d2c5be0-94b8-11e7-8704-048d38748987} => not found
"HKU\S-1-5-21-2297230751-1021565052-1431566534-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{609d2171-c4d2-11e7-a1c0-048d38748987}" => removed successfully
HKLM\Software\Classes\CLSID\{609d2171-c4d2-11e7-a1c0-048d38748987} => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{853107D5-99D9-4ED4-9D50-87311C1ED5BC}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{853107D5-99D9-4ED4-9D50-87311C1ED5BC}" => removed successfully
C:\Windows\System32\Tasks\GAMEPC => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GAMEPC" => removed successfully
C:\Users\Public\AppData => ":CSM" ADS removed successfully
C:\Users\Public\Shared Files => ":VersionCache" ADS removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 74717645 B
Java, Flash, Steam htmlcache => 36882886 B
Windows/system/drivers => 272470749 B
Edge => 0 B
Chrome => 739939091 B
Firefox => 378838671 B
Opera => 373626447 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 0 B
GAMEPC => 3381879203 B

RecycleBin => 0 B
EmptyTemp: => 4.9 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 13:38:50 ====

Чисто..!

За контрол:

GfiJrQ9.png&key=c8330b952021a3c1e5ae3771  Сканиране с Malwarebytes Anti-Malware (MBAM)

Моля изтеглете Malwarebytes Anti -Malware и я запазете на вашия десктоп.

  • Стартирайте файла mb3-setup-consumer- x.x.x.xxxx.exe и следвайте указанията за да инсталирате програмата.
  • След като инсталацията приключи програмата ще стартира автоматично.
  • Отидете до табът Settings => Protection > и под категорията Scan Options включете опцията "Scan for rootkits" като преместите плъзгача надясно.

xTvORSF.png

  • Отидете до табът Scan, и изберете Threat Scan и след това натиснете бутона Start Scan.

RUSrqgW.png

  • Ще започне проверка за зловреден софтуер.

4CJ90KI.png

  • При някои инфекции можете да видите съобщението:
  • "Could not load DDA driver"
  • Натиснете "Yes" на това съобщение за да позволите драйвера да се зареди след рестарт.
  • Разрешете на компютъра да се рестартира и след това продължете с останалите инструкции.
  • След като проверката приключи ще се появи списъка с резултатите (ако има намерени обекти). Ако програмата е минимизирана докато сканира ще се появи следното съобщение ако има открити заплахи. Натиснете бутона View Scan Results.

37b.png

  • . Натиснете бутона Quarantine Selected.

2CfXEk1.png

  • Изчакайте да се появи прозореца подканващ ви да рестартирате и след това натиснете бутона Yes.

8Jc9dl9.png

  • След рестарта, стартирайте отново Malwarebytes Anti-Malware.
  • Отидете то табът Reports и отворете лог файла с името Scan Report.

X0ha4sd.png

  • Натиснете бутона Export и след това =>  "Copy to Clipboard"

fE9qzai.png

  • Сега вече поставете съдържанието на лог файла с клавишната комбинация Ctrl + Vи го публикувайте в следващия си коментар.

 

 

BY4dvz9.png Сканиране с AdwCleaner

  • Изтеглете и стартирайте 6sv1DN9.jpgAdwCleaner 7.1.1.0 Final
  • Натиснете бутона Scan Now (или Сканиране сега, ако ви е на български)

4lqbd6J.png

  • AdwCleaner ще обнови базата с дефинициите си и ще започне да проверява компютъра. Проверката ще отнеме не повече от няколко секунди.
  • След като проверката приключи ако има намерени обекти ще се появи диалогов прозорец подканващ ви да натиснете бутона Clean & Repair (Почисти & Поправи).
  • Програмата ще затвори всички излишни процеси и след почистването ще иска да рестартира машината. Съгласете се.

FCuQiuz.png

  • Ако не бъдат открити зарази ще видите следния прозорец:

CWWivYK.png

  • Натиснете бутона Skip Basic Repair (Пропускане на основното поправяне).
  • И в двата случая ако няма открити зарази или ако програмата е почистила такива, стартирайте пак програмата и отидете до табът Log files (Журнални файлове на български.
  • Кликнете с двукратен клил на мишката върху лог файла с последната дата и част (новите файлове са най-отдолу в списъка) и публикувайте съдържанието на файла в следващия си коментар.
 

 

pfNZP4A.png  Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • Дневник от Malwarebytes Anti -Malware
  • AdwCleaner .txt

Архивирана тема

Темата е твърде стара и е архивирана. Не можете да добавяте нови отговори в нея, но винаги можете да публикувате нова тема, в която да продължи дискусията. Регистрирайте се или влезте във вашия профил за да публикувате нова тема.

Разглеждащи това в момента 0

  • Няма регистрирани потребители разглеждащи тази страница.

Дарение

  • Подкрепи съществуването на форума - направи дарение
    32%
    Дарени 315 € от нужните 1 000 €

Бюлетин

Получавайте известие, когато има важна промяна или новина свързана с форума.

Профил

Навигация

Търсене

Търсене

Конфигуриране на push известия в браузъра

Chrome (Android)
  1. Докоснете иконата на катинар до адресната лента.
  2. Докоснете Разрешения → Известия.
  3. Променете предпочитанията си.
Chrome (Desktop)
  1. Кликнете върху иконата на катинар в адресната лента.
  2. Изберете Настройки на сайта.
  3. Намерете Известия и коригирайте предпочитанията си.