REKLAMA

FRST.txt

Jak usunąć wirusa otwierającego gameharbour.org w Google Chrome?

Witam Po uruchomieniu systemu odpala mi google chrome i ładuje stronę gameharbour nie mogę się tego pozbyć. Logi w załączniku. dzieki za pomoc.


Pobierz plik - link do postu

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-12-2014 01
Ran by Marcin (administrator) on AMAYARINNE on 17-12-2014 14:43:12
Running from C:\Users\Marcin\Desktop\New folder (2)
Loaded Profile: Marcin (Available profiles: Marcin)
Platform: Windows 8.1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Cherished Technololgy LIMITED) C:\ProgramData\IePluginServices\PluginService.exe
(Fuyu LIMITED) C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(McAfee, Inc.) C:\Program Files\mcafee\MSC\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
(CyberGhost S.R.L) C:\Program Files\CyberGhost 5\Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Pokki) C:\Users\Marcin\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
(Pokki) C:\Users\Marcin\AppData\Local\Pokki\Engine\HostAppService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe
() C:\Program Files (x86)\Acer\abFiles\abFilesTrayIcon.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Pokki) C:\Users\Marcin\AppData\Local\Pokki\Engine\HostAppService.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe
(Pokki) C:\Users\Marcin\AppData\Local\Pokki\Engine\StartMenuIndexer.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(TODO: & lt; Company name & gt; ) C:\Program Files\Acer\User Experience Improvement Program\Plugin\AppMonitor\AppMonitorPlugIn.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] = & gt; C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2531472 2014-12-13] (NVIDIA Corporation)
HKLM\...\Run: [BTMTrayAgent] = & gt; rundll32.exe " C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll " ,TrayApp
HKLM\...\Run: [Apoint] = & gt; C:\Program Files\Apoint2K\Apoint.exe [688984 2013-09-30] (Alps Electric Co., Ltd.)
HKLM\...\Run: [RtHDVCpl] = & gt; C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] = & gt; C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] = & gt; C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [ISCT Tray] = & gt; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [5860656 2014-06-18] (Intel Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] = & gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-10-14] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] = & gt; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BacKGround Agent] = & gt; C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [62208 2014-11-17] (Acer Incorporated)
HKLM-x32\...\Run: [mcpltui_exe] = & gt; C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [642040 2014-08-05] (McAfee, Inc.)
HKLM-x32\...\Run: [Aeria Ignite] = & gt; C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1925656 2013-06-06] (Aeria Games & Entertainment)
HKLM-x32\...\Run: [abDocsDllLoader] = & gt; C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [90368 2014-11-20] ()
HKLM-x32\...\Run: [Adobe Creative Cloud] = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694320 2014-10-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] = & gt; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3838800 2014-12-13] (LogMeIn Inc.)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\Run: [Pokki] = & gt; " %LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe " /LOGON
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\Run: [DAEMON Tools Lite] = & gt; C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\Run: [screenSHU] = & gt; C:\Program Files (x86)\screenSHU\screenSHU.exe [2112000 2013-09-04] ()
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\Run: [CMD] = & gt; cmd.exe /c start http://adverttraff.org & & exit & lt; ===== ATTENTION
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\Run: [Akamai NetSession Interface] = & gt; C:\Users\Marcin\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\Run: [CCleaner Monitoring] = & gt; C:\Program Files\CCleaner\CCleaner64.exe [6482200 2014-09-26] (Piriform Ltd)
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\Run: [uTorrent] = & gt; C:\Users\Marcin\AppData\Roaming\uTorrent\uTorrent.exe [1682512 2014-12-05] (BitTorrent Inc.)
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\Run: [AcerPortal] = & gt; C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2452736 2014-11-19] (Acer)
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\Run: [RemoteFilesTrayIcon] = & gt; C:\Program Files (x86)\Acer\abFiles\abFilesTrayIcon.exe [2121472 2014-09-30] ()
HKU\S-1-5-21-50445122-3254032694-698484117-1001\...\RunOnce: [Application Restart #3] = & gt; C:\Users\Marcin\AppData\Local\Pokki\Engine\HostAppService.exe [7805256 2014-11-20] (Pokki)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LOLRecorder.lnk
ShortcutTarget: LOLRecorder.lnk - & gt; C:\Program Files (x86)\LOLReplay\LOLRecorder.exe (LOL Replay)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk
ShortcutTarget: SteelSeries Engine 3.lnk - & gt; C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe ()
ShellIconOverlayIdentifiers: [ AccExtIco1] - & gt; {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: [ AccExtIco2] - & gt; {853B7E05-C47D-4985-909A-D0DC5C6D7303} = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: [ AccExtIco3] - & gt; {42D38F2E-98E9-4382-B546-E24E4D6D04BB} = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: [ACloudSyncedRF] - & gt; {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} = & gt; C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncedSF] - & gt; {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} = & gt; C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudSyncing] - & gt; {C1E1456F-C2D8-4C96-870D-35F1E13941EE} = & gt; C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [ACloudToBeSynced] - & gt; {307523FA-DDC0-4068-983F-2A6B34627744} = & gt; C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll (Acer Incorporated)
ShellIconOverlayIdentifiers: [MOBK] - & gt; {3c3f3c1a-9153-7c05-f938-622e7003894d} = & gt; C:\Program Files (x86)\McAfee Online Backup\MOBKshell.dll (McAfee, Inc.)
ShellIconOverlayIdentifiers: [MOBK2] - & gt; {e6ea1d7d-144e-b977-98c4-84c53c1a69d0} = & gt; C:\Program Files (x86)\McAfee Online Backup\MOBKshell.dll (McAfee, Inc.)
ShellIconOverlayIdentifiers: [MOBK3] - & gt; {b4caf489-1eec-c617-49ad-8d7088598c06} = & gt; C:\Program Files (x86)\McAfee Online Backup\MOBKshell.dll (McAfee, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyServer: [S-1-5-21-50445122-3254032694-698484117-1001] = & gt; 38.109.218.156:7808
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds & ts=1411112072 & from=cor & uid=ST1000LM014-1EJ164_W381VARWXXXXW381VARW & q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds & ts=1411112072 & from=cor & uid=ST1000LM014-1EJ164_W381VARWXXXXW381VARW & q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds & ts=1411112072 & from=cor & uid=ST1000LM014-1EJ164_W381VARWXXXXW381VARW & q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds & ts=1411112072 & from=cor & uid=ST1000LM014-1EJ164_W381VARWXXXXW381VARW & q={searchTerms}
HKU\S-1-5-21-50445122-3254032694-698484117-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.sweet-page.com/?type=sc & ts=1411112072 & from=cor & uid=ST1000LM014-1EJ164_W381VARWXXXXW381VARW
SearchScopes: HKLM - & gt; DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - & gt; {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - & gt; DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - & gt; {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-50445122-3254032694-698484117-1001 - & gt; {szukaj.gazeta.pl} URL = http://szukaj.gazeta.pl/internet/0,0.html?slowo={searchTerms}
BHO: Lync Browser Helper - & gt; {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - & gt; C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - & gt; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - & gt; C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll (Oracle Corporation)
BHO: McAfee SiteAdvisor BHO - & gt; {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - & gt; c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO: Microsoft SkyDrive Pro Browser Helper - & gt; {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - & gt; C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - & gt; {DBC80044-A445-435b-BC74-9C25C1C588A9} - & gt; C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - & gt; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - & gt; C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: McAfee SiteAdvisor BHO - & gt; {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - & gt; c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - & gt; {DBC80044-A445-435b-BC74-9C25C1C588A9} - & gt; C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\MSC\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - & gt; C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @java.com/DTPlugin,version=11.20.2 - & gt; C:\Program Files\Java\jre1.8.0_20\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.20.2 - & gt; C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 - & gt; c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - & gt; c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect_x86_64 - & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - & gt; C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - & gt; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - & gt; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 - & gt; C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 - & gt; C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 - & gt; c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - & gt; c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - & gt; C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 - & gt; C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - & gt; C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - & gt; C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - & gt; C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - & gt; C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - & gt; C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect - & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-10-12]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-10-12]

Chrome:
=======
CHR HomePage: Default - & gt; hxxp://www.google.com/
CHR StartupUrls: Default - & gt; " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI " , " https://www.youtube.com/watch?v=cco1Hx5jEDI "
CHR DefaultSuggestURL: Default - & gt; {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient} & gs_ri={google:suggestRid} & xssi=t & q={searchTerms} & {google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-06]
CHR Extension: (Google Docs) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-06]
CHR Extension: (Google Drive) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-06]
CHR Extension: (TV) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\beobeededemalmllhkmnkinmfembdimh [2014-09-06]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-06]
CHR Extension: (YouTube) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-06]
CHR Extension: (Adblock Plus) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-09-06]
CHR Extension: (Google Search) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-06]
CHR Extension: (Google News) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\dllkocilcinkggkchnjgegijklcililc [2014-09-06]
CHR Extension: (Google Calendar) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-09-06]
CHR Extension: (Google Sheets) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-06]
CHR Extension: (SiteAdvisor) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2014-10-12]
CHR Extension: (Word Online) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2014-10-09]
CHR Extension: (Full Screen Weather) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2014-09-06]
CHR Extension: (AdBlock) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-09-06]
CHR Extension: (Google Keep - notes and lists) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2014-09-06]
CHR Extension: (VNC® Viewer for Google Chrome™) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\iabmpiboiopbgfabjmgeedhcmjenhbla [2014-09-06]
CHR Extension: (ButtonBass Dubstep Balls) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmjadonkmcblbkocpaaefjbceiijfdg [2014-09-06]
CHR Extension: (Google Play Music) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2014-09-06]
CHR Extension: (Dropbox) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2014-09-06]
CHR Extension: (Google Play) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2014-09-06]
CHR Extension: (Turn Off the Lights) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\labjanboighjienkhiabgpefblkbmemd [2014-09-06]
CHR Extension: (Google Maps) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2014-09-06]
CHR Extension: (Need for Speed World) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnnelgnkomjdakpkjpkfehdipjifjmbk [2014-10-09]
CHR Extension: (WeatherBug) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\njkkjobcechefaoknodniidfjapgfoco [2014-09-06]
CHR Extension: (Google Wallet) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-06]
CHR Extension: (My Chrome Theme) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\oehpjpccmlcalbenfhnacjeocbjdonic [2014-09-06]
CHR Extension: (Gmail) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-06]
CHR Extension: (Abstract-Blue) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\plnacehkknmafkjgkikclamogikoiaaa [2014-10-02]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2014-12-13]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - No Path

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2014-11-30] (Adobe Systems) [File not signed]
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2709760 2014-11-17] (Acer Incorporated)
R2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [64624 2014-06-12] (CyberGhost S.R.L)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2443960 2014-10-30] (Microsoft Corporation)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573544 2014-03-21] (Acer Incorporated)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [255040 2014-08-25] (WildTangent)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-13] (NVIDIA Corporation)
R2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-08-22] (Hi-Rez Studios) [File not signed]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-07-30] (McAfee, Inc.)
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [715656 2014-09-19] (Cherished Technololgy LIMITED)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282096 2014-03-18] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-09-19] (Intel Corporation)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [209712 2014-06-18] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2014-12-02] (LogMeIn, Inc.)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [459496 2014-01-18] (Acer Incorporate)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [154320 2014-12-03] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [562200 2014-09-04] (McAfee, Inc.)
S2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [601864 2014-08-01] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-07-24] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-07-18] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-07-18] (McAfee, Inc.)
R2 MOBKbackup; C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [184168 2014-05-20] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-07-30] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2013-10-11] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-13] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-13] (NVIDIA Corporation)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [457960 2014-03-05] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-03-05] (Acer Incorporate)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [222952 2014-01-25] (acer)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [528896 2014-09-19] (Fuyu LIMITED) [File not signed]
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3671792 2013-10-11] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-23] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2013-09-05] (Motorola Solutions, Inc.)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72128 2014-07-18] (McAfee, Inc.)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-09-07] (Disc Soft Ltd)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45112 2014-12-13] (LogMeIn Inc.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
S3 hxsyol; C:\Windows\system32\hxsy64.sys [86352 2014-11-21] ()
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [118728 2013-09-19] (Intel Corporation)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [22216 2014-05-27] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [22728 2014-05-27] ()
R3 INETMON; C:\Windows\System32\Drivers\INETMON.sys [25800 2014-05-27] ()
R3 ISCT; C:\Windows\System32\drivers\ISCTD.sys [44744 2014-05-27] ()
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
S3 ManyCam; C:\Windows\system32\DRIVERS\mcvidrv.sys [49776 2014-07-25] (Visicom Media Inc.)
S3 mcaudrv_simple; C:\Windows\system32\drivers\mcaudrv_x64.sys [35440 2014-05-13] (Visicom Media Inc.)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-19] (Intel Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181704 2014-07-18] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313800 2014-07-18] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70600 2014-07-18] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [526352 2014-07-18] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786296 2014-07-18] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [444720 2014-07-24] (McAfee, Inc.)
S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96592 2014-07-24] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348552 2014-07-18] (McAfee, Inc.)
R1 MOBKFilter; C:\Windows\System32\DRIVERS\MOBK.sys [67808 2014-05-20] (Mozy, Inc.)
S3 MotioninJoyXFilter; C:\Windows\System32\drivers\MijXfilt.sys [121416 2012-05-12] (MotioninJoy) [File not signed]
R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3607520 2013-10-14] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2014-12-13] (NVIDIA Corporation)
S3 QRDCIO; C:\Windows\System32\drivers\QRDCIO.sys [9728 2009-10-20] (QUANTA)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [427736 2013-08-09] (Realsil Semiconductor Corporation)
S3 sshid; C:\Windows\System32\drivers\sshid.sys [38912 2014-10-30] (SteelSeries ApS)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-10-31] (OpenLibSys.org)
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-17 14:42 - 2014-12-17 14:42 - 00098151 _____ () C:\Users\Marcin\Downloads\FRST.txt
2014-12-17 14:42 - 2014-12-17 14:42 - 00046719 _____ () C:\Users\Marcin\Downloads\Addition.txt
2014-12-17 14:31 - 2014-12-17 14:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2014-12-17 14:27 - 2014-12-17 14:43 - 00000000 ____D () C:\Users\Marcin\Desktop\New folder (2)
2014-12-17 14:15 - 2014-12-17 14:43 - 00000000 ____D () C:\FRST
2014-12-16 19:16 - 2014-12-16 19:16 - 00000000 ____D () C:\Users\Marcin\Documents\7 Days To Die
2014-12-16 19:09 - 2014-12-16 19:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-12-16 19:09 - 2014-12-16 19:09 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-12-16 19:08 - 2014-12-16 19:08 - 00000000 ____D () C:\Windows\LastGood.Tmp
2014-12-16 19:08 - 2014-11-22 10:46 - 00038032 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2014-12-16 19:08 - 2014-11-22 10:46 - 00032400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-12-16 12:22 - 2014-12-16 12:23 - 00002001 _____ () C:\Users\Public\Desktop\abMedia.lnk
2014-12-13 17:01 - 2014-12-13 17:01 - 00045112 ____H (LogMeIn Inc.) C:\Windows\system32\Drivers\Hamdrv.sys
2014-12-13 13:29 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys
2014-12-13 13:28 - 2014-12-13 13:28 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-12 16:08 - 2014-12-12 16:08 - 00002121 _____ () C:\Users\Public\Desktop\abFiles.lnk
2014-12-12 11:54 - 2014-10-30 22:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-12-12 11:54 - 2014-10-30 22:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-12-12 09:10 - 2014-12-12 09:10 - 00000000 _____ () C:\Users\Marcin\Desktop\3rd APRIL 2015.txt
2014-12-10 14:22 - 2014-12-03 23:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-10 14:22 - 2014-12-03 23:09 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-10 14:22 - 2014-12-02 23:09 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-10 14:22 - 2014-12-02 23:09 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-10 14:22 - 2014-12-02 23:09 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-10 14:22 - 2014-12-02 23:09 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-10 14:22 - 2014-12-02 23:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-10 14:22 - 2014-11-10 02:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2014-12-10 14:22 - 2014-11-10 01:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2014-12-10 14:22 - 2014-10-30 23:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-12-10 14:22 - 2014-10-30 23:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-12-10 14:21 - 2014-10-31 23:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-12-10 14:21 - 2014-10-31 23:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-12-10 11:49 - 2014-11-22 03:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-10 11:49 - 2014-11-22 02:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-10 11:49 - 2014-11-22 02:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-10 11:49 - 2014-11-22 02:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-12-10 11:49 - 2014-11-22 02:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-10 11:49 - 2014-11-22 02:35 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-12-10 11:49 - 2014-11-22 02:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-10 11:49 - 2014-11-22 02:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-10 11:49 - 2014-11-22 02:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-10 11:49 - 2014-11-22 02:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-10 11:49 - 2014-11-22 02:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-12-10 11:49 - 2014-11-22 02:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-12-10 11:49 - 2014-11-22 02:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-10 11:49 - 2014-11-22 02:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-10 11:49 - 2014-11-22 02:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-10 11:49 - 2014-11-22 01:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-12-10 11:49 - 2014-11-22 01:55 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-12-10 11:49 - 2014-11-22 01:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-12-10 11:49 - 2014-11-22 01:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-10 11:49 - 2014-11-22 01:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-10 11:49 - 2014-11-22 01:49 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-10 11:49 - 2014-11-22 01:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-10 11:49 - 2014-11-22 01:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-10 11:49 - 2014-11-22 01:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-10 11:49 - 2014-11-22 01:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-12-10 11:49 - 2014-11-22 01:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-10 11:49 - 2014-11-22 01:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-10 11:49 - 2014-11-22 01:29 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-12-10 11:49 - 2014-11-22 01:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-10 11:49 - 2014-11-22 01:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-12-10 11:49 - 2014-11-22 01:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-10 11:49 - 2014-11-22 01:23 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-10 11:49 - 2014-11-22 01:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-10 11:49 - 2014-11-22 01:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-10 11:49 - 2014-11-22 01:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-10 11:49 - 2014-11-22 01:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-10 11:49 - 2014-11-22 01:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-10 11:49 - 2014-11-22 00:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-10 11:49 - 2014-11-22 00:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-10 11:49 - 2014-11-07 04:16 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 11:49 - 2014-11-07 03:26 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-10 11:49 - 2014-10-13 02:43 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2014-12-10 11:49 - 2014-10-13 02:43 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2014-12-10 11:49 - 2014-10-13 02:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2014-12-10 11:49 - 2014-10-13 02:43 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2014-12-05 22:03 - 2014-12-05 22:03 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\�Adobe
2014-12-05 22:01 - 2014-12-05 22:01 - 00000000 ____D () C:\Users\Marcin\AppData\Local\Imagineer Systems Ltd
2014-12-05 22:01 - 2014-12-05 22:01 - 00000000 ____D () C:\MoTemp
2014-12-05 21:22 - 2014-12-05 21:22 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\PDAppFlex
2014-12-05 17:28 - 2014-12-05 17:28 - 00003508 _____ () C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-deadlyrespect1@gmail.com
2014-12-05 17:28 - 2014-12-05 17:28 - 00000000 ____D () C:\Users\Marcin\Documents\Adobe
2014-12-05 17:28 - 2014-12-05 17:28 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-12-04 19:16 - 2014-12-04 19:16 - 00001138 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder CC 2014.lnk
2014-12-04 19:08 - 2014-12-04 19:08 - 10345231 _____ () C:\Users\Marcin\Desktop\HARDCORE CONFIG # Aimbot + NoRecoil by MUNEZ [LegeNd Cs # The best player of World] PRIVAT Cfg 100%.rar
2014-12-04 18:56 - 2014-12-04 18:56 - 00001246 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects CC 2014.lnk
2014-12-04 18:39 - 2014-12-04 19:15 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-04 18:39 - 2014-12-04 18:39 - 00002095 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Lightroom 5.7 64-bit.lnk
2014-12-04 18:39 - 2014-12-04 18:39 - 00002075 _____ () C:\Users\Public\Desktop\Lightroom 5.7 64-bit.lnk
2014-12-04 18:38 - 2014-12-04 19:15 - 00000000 ____D () C:\Program Files\Adobe
2014-12-04 18:33 - 2014-12-04 18:33 - 00000000 ___RD () C:\Users\Marcin\Creative Cloud Files
2014-12-04 10:13 - 2014-12-04 10:13 - 00001329 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2014-12-04 10:13 - 2014-12-04 10:13 - 00001317 _____ () C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
2014-12-04 09:58 - 2014-12-04 09:58 - 00000468 _____ () C:\Users\Marcin\Desktop\New Text Document.txt
2014-12-03 22:21 - 2014-12-03 22:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2014-12-03 22:19 - 2014-12-03 22:21 - 00008420 _____ () C:\Windows\DPINST.LOG
2014-12-03 16:07 - 2014-12-03 16:07 - 00024311 _____ () C:\Users\Marcin\AppData\Local\recently-used.xbel
2014-12-03 14:59 - 2014-12-03 14:59 - 00140124 _____ () C:\Users\Marcin\Documents\Bez natzwy.xcf
2014-12-02 12:54 - 2014-12-02 12:54 - 00013984 _____ () C:\Users\Marcin\Documents\Untitled.veg
2014-12-02 08:06 - 2014-12-17 14:25 - 00001513 _____ () C:\Windows\setupact.log
2014-12-02 08:06 - 2014-12-02 08:06 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-02 08:05 - 2014-12-17 14:24 - 00011418 _____ () C:\Windows\PFRO.log
2014-11-30 17:26 - 2014-12-17 14:42 - 02048789 _____ () C:\Windows\WindowsUpdate.log
2014-11-30 12:52 - 2014-11-30 12:52 - 00000000 ____D () C:\ProgramData\Sony
2014-11-30 12:52 - 2014-11-30 12:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-11-30 12:52 - 2014-11-30 12:52 - 00000000 ____D () C:\Program Files\Sony
2014-11-30 12:52 - 2014-11-30 12:52 - 00000000 ____D () C:\Program Files (x86)\Sony
2014-11-30 11:08 - 2014-11-30 11:08 - 00001188 _____ () C:\Users\Public\Desktop\Camtasia Studio 8.lnk
2014-11-30 11:08 - 2014-11-30 11:08 - 00000000 ____D () C:\Users\Marcin\Documents\Camtasia Studio
2014-11-30 11:08 - 2014-11-30 11:08 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\TechSmith
2014-11-30 11:08 - 2014-11-30 11:08 - 00000000 ____D () C:\Users\Marcin\AppData\Local\TechSmith
2014-11-30 11:08 - 2014-11-30 11:08 - 00000000 ____D () C:\ProgramData\regid.1995-08.com.techsmith
2014-11-30 11:08 - 2014-11-30 11:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2014-11-30 11:08 - 2014-11-30 11:08 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-11-30 11:07 - 2014-11-30 11:07 - 00000000 ____D () C:\ProgramData\TechSmith
2014-11-30 11:07 - 2014-11-30 11:07 - 00000000 ____D () C:\Program Files (x86)\TechSmith
2014-11-30 10:31 - 2014-11-30 10:31 - 00000000 ____D () C:\Users\Marcin\Documents\AdobeStockPhotos
2014-11-30 10:20 - 2014-11-30 10:20 - 00000000 ____D () C:\ProgramData\Adobe Systems
2014-11-30 09:37 - 2014-11-30 09:37 - 00000000 ____D () C:\Users\Public\Documents\Adobe PDF
2014-11-30 09:35 - 2014-11-30 09:35 - 01233920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4.dll
2014-11-30 09:35 - 2014-11-30 09:35 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4r.dll
2014-11-29 17:25 - 2014-11-29 23:05 - 00000000 ____D () C:\Users\Marcin\AppData\Local\Darksiders2
2014-11-29 15:33 - 2014-11-29 15:33 - 00000222 _____ () C:\Users\Marcin\Desktop\Mortal Kombat Komplete Edition.url
2014-11-29 15:33 - 2014-11-29 15:33 - 00000221 _____ () C:\Users\Marcin\Desktop\Darksiders II.url
2014-11-29 15:33 - 2014-11-29 15:33 - 00000219 _____ () C:\Users\Marcin\Desktop\Counter-Strike Global Offensive.url
2014-11-26 20:41 - 2014-11-26 20:41 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-11-26 16:27 - 2014-11-28 20:25 - 00000000 ____D () C:\Users\Marcin\AppData\Local\SteelSeries Engine 3 Client
2014-11-26 16:27 - 2014-11-26 16:27 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SteelSeries
2014-11-26 16:27 - 2014-11-26 16:27 - 00000000 ____D () C:\Users\admin
2014-11-26 16:26 - 2014-11-26 16:26 - 00000000 ____D () C:\ProgramData\SteelSeries
2014-11-26 16:26 - 2014-11-26 16:26 - 00000000 ____D () C:\Program Files\SteelSeries
2014-11-26 08:21 - 2014-11-26 08:21 - 00000000 ____D () C:\ProgramData\Orbit
2014-11-25 22:51 - 2014-11-25 22:51 - 00001965 _____ () C:\Users\Public\Desktop\Far Cry® 4.lnk
2014-11-25 22:51 - 2014-11-25 22:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Games
2014-11-25 21:36 - 2014-11-25 21:36 - 00000000 ____D () C:\Program Files\R.G. Games
2014-11-25 18:22 - 2014-12-05 17:27 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\NVIDIA
2014-11-25 17:14 - 2014-11-25 17:14 - 11353930 _____ () C:\Users\Marcin\Documents\Bez nfvvazwy.xcf
2014-11-25 11:49 - 2014-11-25 11:49 - 00000739 _____ () C:\Users\Marcin\Documents\simple glass hit tem2plate.mp4.lvix
2014-11-25 11:35 - 2014-11-25 11:48 - 00000000 ____D () C:\Users\Public\Documents\Lightworks
2014-11-25 11:35 - 2014-11-25 11:35 - 00000000 ____D () C:\Users\Marcin\.MCTranscodingSDK
2014-11-25 11:35 - 2014-11-25 11:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightworks
2014-11-25 11:35 - 2014-11-25 11:35 - 00000000 ____D () C:\ProgramData\Geevs
2014-11-25 11:34 - 2014-12-03 12:18 - 00000000 ____D () C:\Program Files\Lightworks
2014-11-24 16:00 - 2014-11-24 16:00 - 00003334 _____ () C:\Windows\System32\Tasks\AcerCloud
2014-11-24 16:00 - 2014-11-24 16:00 - 00002028 _____ () C:\Users\Public\Desktop\Acer Portal.lnk
2014-11-24 14:12 - 2014-11-24 14:12 - 00000000 ____D () C:\Users\Marcin\AppData\Local\Microsoft Help
2014-11-23 22:46 - 2014-11-23 22:46 - 00000000 ____D () C:\ProgramData\EmailNotifier
2014-11-23 22:04 - 2014-11-24 10:26 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\Audacity
2014-11-23 22:04 - 2014-11-23 22:04 - 00001031 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2014-11-23 22:04 - 2014-11-23 22:04 - 00001019 _____ () C:\Users\Public\Desktop\Audacity.lnk
2014-11-23 22:03 - 2014-11-23 22:04 - 00000000 ____D () C:\Program Files (x86)\Audacity
2014-11-23 21:35 - 2014-11-24 12:41 - 00000000 ____D () C:\Users\Marcin\Desktop\New folder
2014-11-23 21:04 - 2014-11-23 21:38 - 00000000 ____D () C:\Users\Marcin\Desktop\HLDJ
2014-11-22 11:02 - 2014-11-22 11:02 - 00001969 _____ () C:\Users\Public\Desktop\abDocs.lnk
2014-11-21 18:19 - 2014-11-21 18:19 - 00086352 _____ () C:\Windows\system32\hxsy64.sys
2014-11-21 18:19 - 2014-11-21 18:19 - 00029008 _____ () C:\Windows\system32\hxsken64.sys
2014-11-21 17:54 - 2014-11-21 17:54 - 00000000 __SHD () C:\Users\Marcin\AppData\Local\EmieBrowserModeList
2014-11-20 17:01 - 2014-12-17 14:26 - 00000000 ____D () C:\Users\Marcin\AppData\Local\LogMeIn Hamachi
2014-11-20 17:01 - 2014-11-20 17:01 - 00000000 ____D () C:\Users\Marcin\AppData\Local\LogMeIn
2014-11-20 17:01 - 2014-11-20 17:01 - 00000000 ____D () C:\ProgramData\LogMeIn
2014-11-19 12:49 - 2014-11-09 23:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 12:49 - 2014-11-09 23:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 12:49 - 2014-11-09 23:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 12:49 - 2014-11-09 23:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-18 22:03 - 2014-11-18 22:03 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-18 22:03 - 2014-11-12 21:56 - 06897352 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-11-18 22:03 - 2014-11-12 21:56 - 03534152 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-11-18 22:03 - 2014-11-12 21:56 - 02559808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-11-18 22:03 - 2014-11-12 21:56 - 01092752 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2014-11-18 22:03 - 2014-11-12 21:56 - 00934032 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-11-18 22:03 - 2014-11-12 21:56 - 00386368 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-11-18 22:03 - 2014-11-12 21:56 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2014-11-18 22:03 - 2014-11-12 21:56 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-11-18 22:03 - 2014-11-11 10:29 - 04100776 _____ () C:\Windows\system32\nvcoproc.bin
2014-11-18 22:01 - 2014-11-13 00:20 - 31893136 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 24557712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 20986592 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 20922512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 19966344 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 18514616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 17259664 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 16884632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 14032984 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 13944952 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 13213512 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-11-18 22:01 - 2014-11-13 00:20 - 11397744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 11336432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 04292416 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 04011208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 03262784 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 02874456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 01876296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434475.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 01540424 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434475.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00964928 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00935240 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00923792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00900928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00500880 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00418112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00393024 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00348304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00174856 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00156840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-11-18 22:01 - 2014-11-13 00:20 - 00027094 _____ () C:\Windows\system32\nvinfo.pb
2014-11-17 23:25 - 2014-11-17 23:25 - 00001694 _____ () C:\Users\Marcin\Desktop\Aura Kingdom.lnk

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-17 14:41 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\AppReadiness
2014-12-17 14:36 - 2014-09-06 15:25 - 00003592 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-50445122-3254032694-698484117-1001
2014-12-17 14:32 - 2014-09-06 15:19 - 00000000 ____D () C:\Users\Marcin\AppData\Local\Pokki
2014-12-17 14:26 - 2014-11-10 14:51 - 00000000 ___RD () C:\Users\Marcin\OneDrive
2014-12-17 14:26 - 2014-09-06 15:22 - 00002160 _____ () C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk
2014-12-17 14:25 - 2014-11-08 22:39 - 00000000 ____D () C:\Users\Marcin\Desktop\ShadowPlay
2014-12-17 14:25 - 2014-09-06 23:15 - 00001074 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfca2869610806.job
2014-12-17 14:25 - 2013-08-22 14:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-17 14:24 - 2013-08-22 13:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-12-17 14:03 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\system32\sru
2014-12-17 10:54 - 2014-09-07 00:41 - 00000000 ____D () C:\Users\Marcin\AppData\Local\CrashDumps
2014-12-17 10:52 - 2014-09-08 23:41 - 00000000 ____D () C:\Users\Marcin\AppData\Local\Adobe
2014-12-17 05:58 - 2014-09-19 07:52 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-16 19:49 - 2014-11-10 19:56 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\TS3Client
2014-12-16 19:40 - 2014-09-07 09:06 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\uTorrent
2014-12-16 19:11 - 2014-08-28 13:42 - 00000000 ____D () C:\Users\Marcin\Desktop\7 Days To Die
2014-12-16 17:15 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\rescache
2014-12-16 15:49 - 2014-09-19 07:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis
2014-12-16 15:49 - 2014-09-19 07:38 - 00000000 ____D () C:\Program Files (x86)\Mirillis
2014-12-16 12:23 - 2014-05-27 03:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2014-12-16 12:23 - 2014-05-27 03:58 - 00000000 ____D () C:\Program Files (x86)\Acer
2014-12-16 12:22 - 2014-09-06 15:21 - 00000000 ____D () C:\Users\Marcin\AppData\Local\clear.fi
2014-12-15 23:04 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI
2014-12-15 23:03 - 2014-11-08 12:23 - 00007610 _____ () C:\Users\Marcin\AppData\Local\Resmon.ResmonCfg
2014-12-15 22:46 - 2014-09-06 23:08 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-12-15 19:09 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-15 18:08 - 2014-09-06 22:32 - 00000000 _____ () C:\Windows\system32\newflow.dat
2014-12-14 23:23 - 2014-09-13 05:52 - 00000000 ____D () C:\Users\Marcin\AppData\Local\screenSHU
2014-12-14 18:32 - 2013-08-22 13:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-12-14 17:11 - 2014-10-14 12:40 - 00000000 ____D () C:\Users\Marcin\AppData\Local\Akamai
2014-12-13 13:31 - 2014-10-12 19:10 - 00000000 ____D () C:\Program Files (x86)\McAfee
2014-12-13 13:30 - 2014-09-06 15:19 - 00000000 ____D () C:\Users\Marcin
2014-12-13 13:28 - 2014-09-08 23:29 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-13 13:28 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2014-12-13 13:28 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2014-12-13 13:28 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-13 13:28 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\AppCompat
2014-12-13 13:28 - 2013-08-22 15:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-12-13 00:12 - 2014-11-06 13:02 - 02824504 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2014-12-13 00:12 - 2014-11-06 13:02 - 02210040 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-12-13 00:12 - 2014-11-06 13:02 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2014-12-13 00:12 - 2014-11-06 13:02 - 01291464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2014-12-12 09:11 - 2014-09-26 07:23 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-12 09:11 - 2014-09-19 07:52 - 00003718 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-11 22:00 - 2014-09-07 01:53 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-11 21:57 - 2014-09-07 01:53 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-09 13:10 - 2014-11-10 14:51 - 00004984 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for AMAYARINNE-Marcin AmayaRinne
2014-12-05 18:07 - 2014-09-06 15:19 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\Adobe
2014-12-05 15:39 - 2014-10-17 10:22 - 00000904 _____ () C:\Users\Marcin\Desktop\µTorrent.lnk
2014-12-05 15:39 - 2014-10-17 10:22 - 00000884 _____ () C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-12-05 07:03 - 2013-08-22 14:44 - 05159688 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-12-04 19:02 - 2014-05-27 04:06 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-12-04 18:52 - 2014-06-14 02:52 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-04 18:40 - 2014-05-27 04:06 - 00000000 ____D () C:\ProgramData\Adobe
2014-12-03 22:24 - 2014-10-01 17:45 - 00000000 ____D () C:\Users\Marcin\AppData\Local\Intel_Corporation
2014-12-03 22:21 - 2014-06-14 02:13 - 00000000 ____D () C:\Program Files\Intel
2014-12-03 16:07 - 2014-09-26 11:26 - 00000000 ____D () C:\Users\Marcin\AppData\Local\gtk-2.0
2014-12-03 16:07 - 2014-09-25 00:44 - 00000000 ____D () C:\Users\Marcin\.gimp-2.8
2014-12-03 12:23 - 2014-05-27 04:05 - 00000000 ____D () C:\ProgramData\Nero
2014-12-03 12:17 - 2014-10-09 12:09 - 00000000 ____D () C:\Program Files (x86)\Electronic Arts
2014-12-03 12:17 - 2014-09-19 12:23 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-12-03 12:16 - 2014-10-13 13:59 - 00000000 ____D () C:\Program Files\MAXON
2014-12-03 12:15 - 2014-10-13 13:59 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\MAXON
2014-12-01 15:45 - 2014-09-19 09:23 - 00000000 ___HD () C:\Windows\msdownld.tmp
2014-11-30 14:23 - 2014-10-29 20:04 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\BoL
2014-11-30 12:51 - 2014-10-13 20:11 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\Sony
2014-11-30 12:06 - 2013-08-22 11:22 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2014-11-30 12:06 - 2013-08-22 11:22 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2014-11-30 12:06 - 2013-08-22 11:17 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2014-11-30 12:06 - 2013-08-22 11:17 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2014-11-30 12:06 - 2013-08-22 11:17 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2014-11-30 12:06 - 2013-08-22 04:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll
2014-11-30 12:06 - 2013-08-22 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe
2014-11-30 12:06 - 2013-08-22 03:59 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll
2014-11-30 12:06 - 2013-08-22 03:56 - 00377856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2014-11-30 12:06 - 2013-08-22 03:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2014-11-30 12:06 - 2013-08-22 03:51 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2014-11-30 12:06 - 2013-08-22 03:51 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll
2014-11-30 12:06 - 2013-08-22 03:51 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2014-11-30 12:06 - 2013-08-22 03:51 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2014-11-29 17:25 - 2014-09-19 09:23 - 00000000 ____D () C:\Windows\SysWOW64\directx
2014-11-29 17:25 - 2014-09-07 11:17 - 00000000 ____D () C:\Users\Marcin\Documents\My Games
2014-11-29 15:36 - 2014-09-07 11:30 - 00000000 ____D () C:\Games
2014-11-29 13:41 - 2014-09-07 04:37 - 00000000 ____D () C:\Users\Marcin\AppData\Local\Warframe
2014-11-26 21:10 - 2014-09-14 09:22 - 00714720 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 21:10 - 2014-09-14 09:22 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 20:43 - 2014-03-18 10:03 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-22 13:18 - 2014-09-06 15:22 - 00002331 _____ () C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2014-11-22 11:01 - 2014-05-27 04:46 - 00000000 ___HD () C:\OEM
2014-11-22 10:46 - 2014-11-06 13:01 - 00035472 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2014-11-20 16:53 - 2014-09-07 09:53 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\Tunngle
2014-11-20 16:48 - 2014-09-06 15:19 - 00000000 ____D () C:\Users\Marcin\AppData\Local\VirtualStore
2014-11-19 14:04 - 2014-10-17 11:40 - 00000000 ____D () C:\Users\Marcin\Desktop\foldery
2014-11-19 01:38 - 2014-09-06 23:04 - 00002436 _____ () C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gmail for Pokki.lnk
2014-11-18 22:03 - 2014-06-14 02:35 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-11-18 22:03 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\Help
2014-11-18 22:02 - 2014-06-14 02:36 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-11-18 19:54 - 2014-09-08 23:44 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2014-11-17 23:25 - 2014-10-14 13:34 - 00000000 ____D () C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames
2014-11-17 23:16 - 2014-10-14 12:40 - 00000000 ____D () C:\AeriaGames
2014-11-17 23:16 - 2014-09-06 23:36 - 00000000 __SHD () C:\Windows\SysWOW64\AI_RecycleBin

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe = & gt; File is digitally signed
C:\Windows\System32\wininit.exe = & gt; File is digitally signed
C:\Windows\explorer.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\explorer.exe = & gt; File is digitally signed
C:\Windows\System32\svchost.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\svchost.exe = & gt; File is digitally signed
C:\Windows\System32\services.exe = & gt; File is digitally signed
C:\Windows\System32\User32.dll = & gt; File is digitally signed
C:\Windows\SysWOW64\User32.dll = & gt; File is digitally signed
C:\Windows\System32\userinit.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\userinit.exe = & gt; File is digitally signed
C:\Windows\System32\rpcss.dll = & gt; File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys = & gt; File is digitally signed