REKLAMA

FRST3.txt

Jak usunąć z FireFoxa reklamy adf.ly? Logi z OTL i FRST.

Witam. Mam taki problem - gdy włączam komputer, odpala mi się automatycznie FF ze stroną adf.ly. Próbowałem to usunąć, ale nie mam pojęcia jak. Może mi ktoś pomóc? Załączam raport z OTL i FRST.


Pobierz plik - link do postu

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-12-2014
Ran by Sławomir (administrator) on SK on 18-12-2014 11:27:38
Running from C:\Users\Sławomir\AppData\Local\Microsoft\Windows\INetCache\IE\11ZVH9J3
Loaded Profile: Sławomir (Available profiles: Sławomir)
Platform: Windows 8.1 Pro (X64) OS Language: Polski (Polska)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(TomTom) C:\Program Files (x86)\MyDrive Connect\MyDriveConnect.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(OldTimer Tools) C:\Users\Sławomir\AppData\Local\Microsoft\Windows\INetCache\IE\C7OOBAIY\OTL.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
() C:\Users\Sławomir\AppData\Local\Microsoft\Windows\INetCache\IE\LF2MMS94\AdwCleaner.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] = & gt; C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2531472 2014-12-13] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] = & gt; C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] = & gt; C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7575768 2014-05-14] (Realtek Semiconductor)
HKU\S-1-5-21-3335703174-483519265-3921883341-1001\...\Run: [MyDriveConnect.exe] = & gt; C:\Program Files (x86)\MyDrive Connect\MyDriveConnect.exe [1792376 2014-10-03] (TomTom)
HKU\S-1-5-21-3335703174-483519265-3921883341-1001\...\Run: [Desura] = & gt; D:\!Games\Desura\desura.exe -autostart
HKU\S-1-5-21-3335703174-483519265-3921883341-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\more.url - & gt; hxxp://adf.ly/pRzv6
ShellIconOverlayIdentifiers: [00avast] - & gt; {472083B0-C522-11CF-8763-00608CC02F24} = & gt; No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction & lt; ======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.yac.mx/?utm_source=b & utm_medium=iSafe & from=iSafe & uid=plextorxpx-128m5s_p02239104761
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://search.yac.mx/?utm_source=b & utm_medium=iSafe & from=iSafe & uid=plextorxpx-128m5s_p02239104761
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.yac.mx/?utm_source=b & utm_medium=iSafe & from=iSafe & uid=plextorxpx-128m5s_p02239104761
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.yac.mx/?utm_source=b & utm_medium=iSafe & from=iSafe & uid=plextorxpx-128m5s_p02239104761
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.yac.mx/?utm_source=b & utm_medium=iSafe & from=iSafe & uid=plextorxpx-128m5s_p02239104761
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.yac.mx/?utm_source=b & utm_medium=iSafe & from=iSafe & uid=plextorxpx-128m5s_p02239104761
HKU\S-1-5-21-3335703174-483519265-3921883341-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.yac.mx/?utm_source=b & utm_medium=iSafe & from=iSafe & uid=plextorxpx-128m5s_p02239104761
SearchScopes: HKLM - & gt; DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKLM - & gt; {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKLM - & gt; {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKLM-x32 - & gt; DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKLM-x32 - & gt; {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 - & gt; {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKU\.DEFAULT - & gt; DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKU\.DEFAULT - & gt; {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\.DEFAULT - & gt; {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKU\S-1-5-19 - & gt; DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKU\S-1-5-19 - & gt; {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-19 - & gt; {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKU\S-1-5-20 - & gt; DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKU\S-1-5-20 - & gt; {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-20 - & gt; {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418837339
SearchScopes: HKU\S-1-5-21-3335703174-483519265-3921883341-1001 - & gt; DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418836234
SearchScopes: HKU\S-1-5-21-3335703174-483519265-3921883341-1001 - & gt; {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3335703174-483519265-3921883341-1001 - & gt; {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms} & type=ds & from=yac & uid=plextorxpx-128m5s_p02239104761 & ts=1418836234
Tcpip\Parameters: [DhcpNameServer] 62.179.1.63 62.179.1.62

FireFox:
========
FF ProfilePath: C:\Users\Sławomir\AppData\Roaming\Mozilla\Firefox\Profiles\24ez06d8.default-1418836298152
FF Plugin-x32: @nvidia.com/3DVision - & gt; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - & gt; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)

Chrome:
=======

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-13] (NVIDIA Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-13] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-13] (NVIDIA Corporation)
R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1025920 2014-12-17] (Enigma Software Group USA, LLC.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [15920 2014-12-17] (Enigma Software Group USA, LLC.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2014-12-17] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [129752 2014-12-18] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
R3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] ()
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2014-12-13] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
S3 EagleX64; \??\C:\WINDOWS\system32\drivers\EagleX64.sys [X]
S3 xhunter1; \??\C:\WINDOWS\xhunter1.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-18 11:26 - 2014-12-18 11:27 - 00000000 ____D () C:\FRST
2014-12-18 11:15 - 2014-12-18 11:15 - 05601641 _____ (Swearware) C:\Users\Sławomir\Downloads\ComboFix.exe
2014-12-18 10:57 - 2014-12-18 10:57 - 00125580 _____ () C:\Users\Sławomir\Desktop\OTL.Txt
2014-12-17 18:28 - 2014-12-18 10:49 - 00613694 _____ () C:\WINDOWS\PFRO.log
2014-12-17 18:28 - 2014-12-17 18:28 - 00021517 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-17 18:22 - 2014-12-17 18:22 - 00000000 ____D () C:\Users\Sławomir\Doctor Web
2014-12-17 18:18 - 2014-12-18 10:49 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-12-17 18:17 - 2014-12-17 18:17 - 00001114 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-17 18:17 - 2014-12-17 18:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-12-17 18:17 - 2014-12-17 18:17 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-12-17 18:17 - 2014-12-17 18:17 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-17 18:17 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-12-17 18:17 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-12-17 18:17 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-12-17 18:04 - 2014-12-17 18:04 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-17 17:27 - 2014-12-17 17:27 - 00000197 _____ () C:\WINDOWS\system32\2014-12-17-16-27-33.015-AvastVBoxSVC.exe-2940.log
2014-12-17 17:02 - 2014-12-17 18:28 - 00000000 ____D () C:\avast! sandbox
2014-12-17 16:41 - 2014-12-17 16:41 - 00000197 _____ () C:\WINDOWS\system32\2014-12-17-15-41-25.027-AvastVBoxSVC.exe-2956.log
2014-12-17 16:22 - 2014-12-17 16:22 - 00000197 _____ () C:\WINDOWS\system32\2014-12-17-15-22-11.011-AvastVBoxSVC.exe-4140.log
2014-12-17 16:20 - 2014-12-17 16:20 - 00000247 _____ () C:\WINDOWS\system32\2014-12-17-15-20-20.035-aswFe.exe-5176.log
2014-12-17 16:17 - 2014-12-17 16:20 - 00000247 _____ () C:\WINDOWS\system32\2014-12-17-15-17-45.056-aswFe.exe-2284.log
2014-12-17 16:17 - 2014-12-17 16:17 - 00000208 _____ () C:\WINDOWS\system32\2014-12-17-15-17-44.021-AvastVBoxSVC.exe-1300.log
2014-12-17 15:43 - 2014-12-17 15:43 - 00000247 _____ () C:\WINDOWS\system32\2014-12-17-14-43-57.089-aswFe.exe-6184.log
2014-12-17 15:41 - 2014-12-17 15:43 - 00000247 _____ () C:\WINDOWS\system32\2014-12-17-14-41-03.056-aswFe.exe-1844.log
2014-12-17 15:41 - 2014-12-17 15:41 - 00000197 _____ () C:\WINDOWS\system32\2014-12-17-14-41-00.092-AvastVBoxSVC.exe-5932.log
2014-12-17 15:34 - 2014-12-17 15:34 - 00003332 _____ () C:\WINDOWS\System32\Tasks\avastBCLRestartS-1-5-21-3335703174-483519265-3921883341-1001
2014-12-17 15:27 - 2014-12-17 15:28 - 00000000 ____D () C:\WINDOWS\SysWOW64\vbox
2014-12-17 15:27 - 2014-12-17 15:28 - 00000000 ____D () C:\WINDOWS\system32\vbox
2014-12-17 15:25 - 2014-12-17 18:28 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-12-17 13:41 - 2014-12-17 15:14 - 00000000 ____D () C:\Users\Sławomir\AppData\Roaming\Enigma Software Group
2014-12-17 13:41 - 2014-12-17 15:13 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-12-17 13:41 - 2014-12-17 13:41 - 00022704 _____ () C:\WINDOWS\system32\Drivers\EsgScanner.sys
2014-12-17 13:41 - 2014-12-17 13:41 - 00003326 _____ () C:\WINDOWS\System32\Tasks\SpyHunter4Startup
2014-12-17 13:41 - 2014-12-17 13:41 - 00000000 ____D () C:\sh4ldr
2014-12-17 13:41 - 2014-12-17 13:41 - 00000000 _____ () C:\autoexec.bat
2014-12-17 13:07 - 2014-12-18 11:20 - 00000000 ____D () C:\AdwCleaner
2014-12-17 12:13 - 2014-12-18 10:24 - 00000000 ____D () C:\WINDOWS\system32\log
2014-12-17 01:11 - 2014-12-17 18:04 - 00001171 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-17 01:11 - 2014-12-17 18:04 - 00001159 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-12-17 01:11 - 2014-12-17 18:04 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-16 16:56 - 2014-12-17 15:14 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2014-12-16 16:56 - 2014-11-22 11:46 - 00038032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2014-12-16 16:56 - 2014-11-22 11:46 - 00032400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2014-12-13 19:06 - 2014-12-13 19:06 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-12-13 17:52 - 2014-12-13 17:52 - 00000000 ____D () C:\Users\Sławomir\AppData\Local\SKIDROW
2014-12-11 13:21 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2014-12-11 13:21 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2014-12-11 01:20 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-11 01:20 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll
2014-12-11 01:20 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2014-12-11 01:20 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2014-12-11 01:10 - 2014-11-07 05:16 - 01762840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-11 01:10 - 2014-11-07 04:26 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2014-12-11 01:10 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-12-11 01:10 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-12-11 01:09 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-12-11 01:09 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-12-11 01:09 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-12-11 01:09 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2014-12-11 01:09 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-12-11 01:09 - 2014-11-22 03:35 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2014-12-11 01:09 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-12-11 01:09 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-12-11 01:09 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-12-11 01:09 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-12-11 01:09 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2014-12-11 01:09 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2014-12-11 01:09 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-12-11 01:09 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-12-11 01:09 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-12-11 01:09 - 2014-11-22 02:59 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2014-12-11 01:09 - 2014-11-22 02:55 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2014-12-11 01:09 - 2014-11-22 02:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2014-12-11 01:09 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-12-11 01:09 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-12-11 01:09 - 2014-11-22 02:49 - 00373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-12-11 01:09 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-12-11 01:09 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-12-11 01:09 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-12-11 01:09 - 2014-11-22 02:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2014-12-11 01:09 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-12-11 01:09 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-12-11 01:09 - 2014-11-22 02:29 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2014-12-11 01:09 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-12-11 01:09 - 2014-11-22 02:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2014-12-11 01:09 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-12-11 01:09 - 2014-11-22 02:23 - 00326656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-12-11 01:09 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-12-11 01:09 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-12-11 01:09 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-12-11 01:09 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-12-11 01:09 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-12-11 01:09 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-12-11 01:09 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-12-11 01:09 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2014-12-11 01:09 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2014-12-11 01:09 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2014-12-11 01:09 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2014-12-09 18:00 - 2014-12-17 15:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAM Broadcaster
2014-12-09 18:00 - 2014-12-17 15:14 - 00000000 ____D () C:\Program Files (x86)\SpacialAudio
2014-12-09 18:00 - 2014-12-17 15:01 - 00000000 ____D () C:\Program Files (x86)\Firebird
2014-12-09 18:00 - 2005-09-23 00:05 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr80.dll
2014-12-09 18:00 - 2005-09-23 00:05 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp80.dll
2014-12-09 16:49 - 2014-12-17 15:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual DJ
2014-12-09 16:49 - 2014-12-17 15:13 - 00000000 ____D () C:\Users\Sławomir\Documents\VirtualDJ
2014-12-07 22:49 - 2014-12-07 22:49 - 00000299 _____ () C:\Users\Sławomir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grupa domowa.lnk
2014-12-05 22:10 - 2014-12-05 22:10 - 00000000 ____D () C:\Users\Sławomir\AppData\Roaming\Steam
2014-12-05 22:09 - 2014-12-05 22:41 - 00000000 ____D () C:\Program Files (x86)\Construction Simulator 2015
2014-12-03 17:10 - 2014-12-03 17:11 - 00000000 ____D () C:\ProgramData\Oracle
2014-12-03 17:10 - 2014-12-03 17:10 - 00000000 ____D () C:\ProgramData\Sun
2014-12-03 15:26 - 2014-12-03 15:26 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-12-03 15:26 - 2014-12-03 15:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-12-01 00:52 - 2014-12-17 15:13 - 00000000 ____D () C:\Users\Sławomir\AppData\Local\Facebook
2014-11-28 21:07 - 2014-11-28 21:07 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2014-11-28 21:07 - 2014-11-25 22:46 - 03894632 ____R () C:\WINDOWS\SysWOW64\pbsvc.exe
2014-11-28 21:06 - 2014-11-28 21:06 - 00000000 ____D () C:\ProgramData\Origin
2014-11-25 00:02 - 2014-11-25 00:02 - 00000000 ____D () C:\Users\Sławomir\Documents\Rockstar Games
2014-11-24 23:59 - 2014-11-24 23:59 - 00000000 ____D () C:\Users\Sławomir\AppData\Local\Rockstar Games
2014-11-24 23:39 - 2014-11-24 23:49 - 00000000 ____D () C:\WINDOWS\SysWOW64\directx
2014-11-24 17:49 - 2014-11-24 17:49 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2014-11-23 20:38 - 2014-12-17 16:14 - 00000000 ____D () C:\Users\Sławomir\AppData\Roaming\NVIDIA
2014-11-19 13:43 - 2014-11-19 13:43 - 00002149 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk
2014-11-19 13:43 - 2014-11-12 21:46 - 00615624 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2014-11-19 13:42 - 2014-11-13 01:20 - 31893136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 24557712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 20922512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 19966344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 17259664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 14032984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 13944952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 13213512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2014-11-19 13:42 - 2014-11-13 01:20 - 11397744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 11336432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 04292416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 04011208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 02874456 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 01876296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6434475.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 01540424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6434475.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00964928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00935240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00923792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00900928 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00871648 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00834880 _____ () C:\WINDOWS\system32\nvmcumd.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00500880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00418112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00393024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00352016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00348304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00303600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00174856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2014-11-19 13:42 - 2014-11-13 01:20 - 00156840 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2014-11-19 12:30 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2014-11-19 12:30 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2014-11-19 12:30 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2014-11-19 12:30 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2014-11-18 22:16 - 2014-11-18 22:16 - 00000000 ____D () C:\Users\Sławomir\Documents\Bus Simulator 2012
2014-11-18 22:16 - 2014-11-18 22:16 - 00000000 ____D () C:\Users\Sławomir\AppData\Local\Bus Simulator 2012

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-18 11:21 - 2014-10-27 00:04 - 00000000 ____D () C:\Users\Sławomir\AppData\Roaming\Skype
2014-12-18 11:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-12-18 10:55 - 2014-03-18 10:56 - 01735328 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-18 10:55 - 2014-03-18 10:28 - 00769288 _____ () C:\WINDOWS\system32\perfh015.dat
2014-12-18 10:55 - 2014-03-18 10:28 - 00155492 _____ () C:\WINDOWS\system32\perfc015.dat
2014-12-18 10:54 - 2014-09-26 17:31 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3335703174-483519265-3921883341-1001
2014-12-18 10:49 - 2014-11-10 16:46 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-12-18 10:49 - 2014-09-28 12:33 - 00000000 __RDO () C:\Users\Sławomir\OneDrive
2014-12-18 10:49 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-12-18 10:09 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\addins
2014-12-18 10:09 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-12-17 19:52 - 2014-09-28 12:21 - 00000000 ____D () C:\Users\Sławomir
2014-12-17 18:28 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-12-17 18:27 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-12-17 18:20 - 2014-10-17 19:56 - 00000000 ____D () C:\WINDOWS\Minidump
2014-12-17 16:14 - 2013-08-22 15:44 - 00361952 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-12-17 15:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-12-17 15:33 - 2014-10-17 18:11 - 00000000 ____D () C:\Users\Sławomir\AppData\Roaming\uTorrent
2014-12-17 15:33 - 2014-09-28 13:18 - 00000000 ___DC () C:\WINDOWS\Panther
2014-12-17 15:33 - 2014-09-28 12:21 - 00000000 ___RD () C:\Users\Sławomir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-12-17 15:14 - 2014-11-15 17:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 Multiplayer
2014-12-17 15:14 - 2014-11-15 17:55 - 00000000 ____D () C:\Program Files (x86)\Euro Truck Simulator 2 Multiplayer
2014-12-17 15:14 - 2014-10-15 23:25 - 00000000 ____D () C:\Users\Sławomir\Documents\Euro Truck Simulator 2
2014-12-17 15:14 - 2014-09-28 12:19 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-12-17 15:14 - 2014-09-28 12:19 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-12-17 15:14 - 2014-09-27 09:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-12-17 15:14 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-RS
2014-12-17 15:14 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-CS
2014-12-17 15:14 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-12-17 15:14 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-12-17 15:14 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-12-17 15:14 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2014-12-17 15:14 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\servicing
2014-12-17 15:13 - 2014-09-26 17:34 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-17 15:13 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\registration
2014-12-17 15:01 - 2014-09-26 17:30 - 00000000 ____D () C:\Users\Sławomir\AppData\Local\Mozilla
2014-12-17 10:39 - 2014-10-01 10:35 - 00003972 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{2E655E6D-C899-4978-AB09-CDEFBF533BC5}
2014-12-15 16:44 - 2014-10-02 17:56 - 00000000 ____D () C:\Users\Sławomir\Documents\ETS2MP
2014-12-15 16:38 - 2014-11-15 17:55 - 00001201 _____ () C:\Users\Public\Desktop\Play Euro Truck Simulator 2 Multiplayer.lnk
2014-12-13 01:12 - 2014-09-27 09:49 - 02824504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2014-12-13 01:12 - 2014-09-27 09:49 - 02210040 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2014-12-13 01:12 - 2014-09-27 09:49 - 01715224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2014-12-13 01:12 - 2014-09-27 09:49 - 01291464 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2014-12-11 13:34 - 2014-09-26 17:35 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-12-11 13:33 - 2014-09-26 17:35 - 112710672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-12-09 18:36 - 2014-10-19 23:58 - 00000000 ____D () C:\Users\Sławomir\AppData\Local\Google
2014-12-09 18:02 - 2014-09-26 17:30 - 00000000 ____D () C:\Users\Sławomir\AppData\Roaming\Mozilla
2014-12-03 15:26 - 2014-11-13 21:12 - 00002533 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-12-03 15:26 - 2014-10-27 00:04 - 00000000 ____D () C:\ProgramData\Skype
2014-11-29 21:07 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-11-26 22:10 - 2013-08-22 16:38 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-11-26 22:10 - 2013-08-22 16:38 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-24 18:12 - 2014-10-07 14:54 - 00000000 ____D () C:\Users\Sławomir\Documents\My Games
2014-11-23 20:38 - 2014-10-06 15:50 - 00000000 ____D () C:\Users\Sławomir\AppData\Local\Battle.net
2014-11-22 11:46 - 2014-09-27 09:48 - 00035472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2014-11-21 14:09 - 2014-10-28 21:56 - 00000000 _____ () C:\Recovery.txt

Some content of TEMP:
====================
C:\Users\Sławomir\AppData\Local\Temp\68ad5178240ef2b91062a9dcbba08da8.dll
C:\Users\Sławomir\AppData\Local\Temp\BingBarSetup-Partner.exe
C:\Users\Sławomir\AppData\Local\Temp\ICReinstall_pobierz-action_1_19_2_setup.exe
C:\Users\Sławomir\AppData\Local\Temp\nv3DVStreaming.dll
C:\Users\Sławomir\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Sławomir\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\Sławomir\AppData\Local\Temp\nvStereoApiI.dll
C:\Users\Sławomir\AppData\Local\Temp\nvStInst.exe
C:\Users\Sławomir\AppData\Local\Temp\Quarantine.exe
C:\Users\Sławomir\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe = & gt; File is digitally signed
C:\Windows\System32\wininit.exe = & gt; File is digitally signed
C:\Windows\explorer.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\explorer.exe = & gt; File is digitally signed
C:\Windows\System32\svchost.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\svchost.exe = & gt; File is digitally signed
C:\Windows\System32\services.exe = & gt; File is digitally signed
C:\Windows\System32\User32.dll = & gt; File is digitally signed
C:\Windows\SysWOW64\User32.dll = & gt; File is digitally signed
C:\Windows\System32\userinit.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\userinit.exe = & gt; File is digitally signed
C:\Windows\System32\rpcss.dll = & gt; File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys = & gt; File is digitally signed


LastRegBack: 2014-12-11 13:32

==================== End Of Log ============================