Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-12-2014 01 Ran by Jakub (administrator) on JAKUB-KOMPUTER on 15-12-2014 00:12:17 Running from C:\Users\Jakub\Downloads Loaded Profile: Jakub (Available profiles: Jakub) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polski (Polska) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Panda Security, S.L.) C:\ProgramData\PSUAService.exe (Panda Security, S.L.) C:\ProgramData\PSANHost.exe (Electronic Arts) D:\Program Files\Origin\Origin.exe (AppEx Networks Corporation) C:\Program Files\AMD Quick Stream\AppexAcceleratorUI.exe (FNet Co., Ltd.) C:\Program Files (x86)\XFastUSB\XFastUsb.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Panda Security, S.L.) C:\ProgramData\PSUAMain.exe (Valve Corporation) D:\Program Files\Steam\Steam.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Valve Corporation) D:\Program Files\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) D:\Program Files\Steam\bin\steamwebhelper.exe (Electronic Arts) D:\Program Files\Origin\OriginClientService.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM-x32\...\Run: [XFastUSB] => C:\Program Files (x86)\XFastUSB\XFastUsb.exe [5019360 2014-03-10] (FNet Co., Ltd.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [630912 2012-05-04] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [PSUAMain] => C:\ProgramData\PSUAMain.exe [37624 2014-10-16] (Panda Security, S.L.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => "D:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start HKLM-x32\...\Run: [AMD AVT] => C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [12288 2012-04-19] () HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated) HKU\S-1-5-21-2190025015-2828255632-3856915603-1000\...\Run: [EADM] => D:\Program Files\Origin\Origin.exe [3618648 2014-12-11] (Electronic Arts) HKU\S-1-5-21-2190025015-2828255632-3856915603-1000\...\Run: [AppEx Accelerator UI] => C:\Program Files\AMD Quick Stream\AppexAcceleratorUI.exe [973632 2012-03-08] (AppEx Networks Corporation) HKU\S-1-5-21-2190025015-2828255632-3856915603-1000\...\MountPoints2: E - E:\uruchom.exe HKU\S-1-5-21-2190025015-2828255632-3856915603-1000\...\MountPoints2: {6ef16d2c-3ddd-11e4-8d73-bc5ff4681a90} - F:\LGAutoRun.exe HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-07-21] (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKU\S-1-5-21-2190025015-2828255632-3856915603-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Tcpip\Parameters: [DhcpNameServer] 85.193.224.4 85.193.224.9 FireFox: ======== FF ProfilePath: C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\hpv7bh2d.default-1418141529230 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll () FF Plugin: @esn/npbattlelog,version=2.5.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.0\npbattlelogx64.dll No File FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll (EA Digital Illusions CE AB) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll () FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.5.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.0\npbattlelog.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2190025015-2828255632-3856915603-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Jakub\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Extension: Battlefield Heroes Updater - C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\hpv7bh2d.default-1418141529230\Extensions\battlefieldheroespatcher@ea.com [2014-12-11] Chrome: ======= ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-05-04] (Advanced Micro Devices, Inc.) [File not signed] R2 NanoServiceMain; C:\ProgramData\PSANHost.exe [142072 2014-10-13] (Panda Security, S.L.) R3 Origin Client Service; D:\Program Files\Origin\OriginClientService.exe [1900400 2014-12-11] (Electronic Arts) R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [66808 2014-10-09] (Panda Security, S.L.) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2014-08-26] () R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-12-05] () R2 PSUAService; C:\ProgramData\PSUAService.exe [38136 2014-10-16] (Panda Security, S.L.) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 APXACC; C:\Windows\System32\DRIVERS\appexDrv.sys [189760 2012-02-05] (AppEx Networks Corporation) S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [32320 2014-11-16] (FNet Co., Ltd.) R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2014-03-10] (FNet Co., Ltd.) R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [96800 2014-06-04] (Panda Security, S.L.) R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [162336 2014-06-18] (Panda Security, S.L.) R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [112160 2014-06-04] (Panda Security, S.L.) R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [115232 2014-06-04] (Panda Security, S.L.) R1 NNSNAHSL; C:\Windows\System32\DRIVERS\NNSNAHSL.sys [46336 2014-01-16] (Panda Security, S.L.) R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [95776 2014-06-04] (Panda Security, S.L.) R1 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [70176 2014-06-04] (Panda Security, S.L.) R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [125984 2014-06-04] (Panda Security, S.L.) R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [306720 2014-06-04] (Panda Security, S.L.) R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [169504 2014-06-04] (Panda Security, S.L.) R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [115744 2014-06-04] (Panda Security, S.L.) R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [261152 2014-06-04] (Panda Security, S.L.) R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [109088 2014-06-04] (Panda Security, S.L.) R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [163088 2014-10-13] (Panda Security, S.L.) R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [121616 2014-10-13] (Panda Security, S.L.) R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [195616 2014-07-24] (Panda Security, S.L.) R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [122400 2014-07-24] (Panda Security, S.L.) R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [132128 2014-07-24] (Panda Security, S.L.) R2 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [107792 2014-10-13] (Panda Security, S.L.) R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [60400 2014-03-25] (Panda Security, S.L.) R1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) S3 AxtuDrv; \??\C:\Windows\SysWOW64\Drivers\AxtuDrv.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 X6va027; \??\C:\Windows\SysWOW64\Drivers\X6va027 [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-12-15 00:06 - 2014-12-15 00:06 - 00019887 _____ () C:\Users\Jakub\Downloads\Addition.txt 2014-12-15 00:05 - 2014-12-15 00:12 - 00011761 _____ () C:\Users\Jakub\Downloads\FRST.txt 2014-12-15 00:05 - 2014-12-15 00:05 - 00000000 ____D () C:\Users\Jakub\Downloads\FRST-OlderVersion 2014-12-14 22:51 - 2014-12-14 22:51 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-12-14 13:53 - 2014-12-14 13:53 - 00068805 _____ () C:\Users\Jakub\AppData\Local\recently-used.xbel 2014-12-14 13:46 - 2014-12-14 13:50 - 00000000 ____D () C:\Users\Jakub\Documents\coop 2014-12-14 13:43 - 2014-12-14 13:46 - 00000000 ____D () C:\Users\Jakub\Documents\coop_trailer_scene 2014-12-14 13:31 - 2014-12-14 13:32 - 00265312 _____ () C:\Users\Jakub\Downloads\Battlefield Heroes - Lunar Landing Trailer.mp4.sfk 2014-12-14 13:02 - 2014-12-14 13:09 - 49758612 _____ () C:\Users\Jakub\Downloads\Battlefield Heroes - Lunar Landing Trailer.mp4 2014-12-14 10:22 - 2014-12-14 23:18 - 00000112 _____ () C:\Windows\setupact.log 2014-12-14 10:22 - 2014-12-14 10:22 - 00000000 _____ () C:\Windows\setuperr.log 2014-12-12 08:09 - 2014-03-25 14:15 - 00060400 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys 2014-12-11 23:00 - 2014-12-13 20:26 - 00000235 _____ () C:\Users\Jakub\Desktop\gAming list map.txt 2014-12-11 22:58 - 2014-12-11 22:58 - 00000000 ____D () C:\Users\Jakub\Desktop\ServerJarStorage 2014-12-11 22:54 - 2014-12-11 22:56 - 11514483 _____ () C:\Users\Jakub\Downloads\MCEdit-0.1.7.1.win-amd64.zip 2014-12-11 22:35 - 2014-12-11 22:35 - 00000082 _____ () C:\Users\Jakub\Documents\cc_20141211_223548.reg 2014-12-11 21:14 - 2014-12-11 21:14 - 00000000 ____D () C:\Users\Jakub\AppData\Local\Origin 2014-12-11 21:01 - 2014-12-11 21:01 - 00000662 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-12-11 20:57 - 2014-12-11 20:57 - 03559424 _____ () C:\Users\Jakub\Downloads\VeniceUnleashed.msi 2014-12-09 17:12 - 2014-12-09 17:12 - 00000000 ____D () C:\Users\Jakub\Desktop\Stare dane programu Firefox-1 2014-12-09 16:54 - 2014-12-10 22:47 - 00579572 _____ () C:\Users\Jakub\Desktop\pkm-tf.blend 2014-12-09 16:54 - 2014-12-10 22:43 - 00577148 _____ () C:\Users\Jakub\Desktop\pkm-tf.blend1 2014-12-09 14:59 - 2014-12-08 17:31 - 00324419 _____ (http://magiclauncher.com) C:\Users\Jakub\Desktop\MagicLauncher_1.0.0.exe 2014-12-08 21:41 - 2014-12-08 21:49 - 00000000 ____D () C:\AdwCleaner 2014-12-08 21:41 - 2014-12-08 21:47 - 00000110 _____ () C:\AdwCleanerDebug.txt 2014-12-08 19:44 - 2014-12-08 19:47 - 07829201 _____ () C:\Users\Jakub\Downloads\The dropper by BIGRE.zip 2014-12-08 18:32 - 2014-12-08 18:32 - 02360903 _____ () C:\Users\Jakub\Downloads\minecraft_server.jar 2014-12-08 18:32 - 2014-12-08 18:32 - 00001432 _____ () C:\Users\Jakub\Downloads\server.log 2014-12-08 18:32 - 2014-12-08 18:32 - 00000513 _____ () C:\Users\Jakub\Downloads\server.properties 2014-12-08 18:32 - 2014-12-08 18:32 - 00000000 _____ () C:\Users\Jakub\Downloads\ops.txt 2014-12-08 18:27 - 2014-12-08 18:27 - 00000859 _____ () C:\Users\Jakub\Desktop\LibreOffice.lnk 2014-12-08 18:22 - 2014-12-08 21:23 - 00000000 ____D () C:\Users\Jakub\Desktop\BlackNygaServer 2014-12-08 18:04 - 2009-03-18 17:35 - 00033856 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys 2014-12-08 18:03 - 2014-12-08 21:52 - 00000000 ____D () C:\Users\Jakub\AppData\Local\LogMeIn Hamachi 2014-12-08 17:31 - 2014-12-08 17:31 - 00246411 _____ () C:\Users\Jakub\Downloads\ShadersMod-mc1.5.2-ofud3-1.46.zip 2014-12-08 17:30 - 2014-12-08 17:31 - 00376262 _____ () C:\Users\Jakub\Downloads\OptiFine_1.5.2_HD_U_D3.zip 2014-12-08 17:24 - 2014-12-08 17:25 - 02852370 _____ () C:\Users\Jakub\Downloads\shaderpacks.zip 2014-12-07 23:31 - 2014-12-07 23:31 - 00090780 _____ () C:\Users\Jakub\Documents\cc_20141207_233131.reg 2014-12-07 23:20 - 2014-12-07 23:20 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-12-07 23:20 - 2014-12-07 23:20 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-12-07 23:20 - 2014-12-07 23:20 - 00000000 ____D () C:\Program Files\CCleaner 2014-12-07 23:13 - 2014-12-07 23:13 - 00001869 _____ () C:\Users\Public\Desktop\Alternative Loader.lnk 2014-12-07 23:12 - 2014-12-11 23:23 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\.minecraft 2014-12-07 22:45 - 2014-12-15 00:12 - 00000000 ____D () C:\FRST 2014-12-07 22:45 - 2014-12-15 00:05 - 02119168 _____ (Farbar) C:\Users\Jakub\Downloads\FRST64.exe 2014-12-07 22:41 - 2014-12-07 22:50 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-12-07 22:41 - 2014-12-07 22:41 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\Malwarebytes 2014-12-07 22:41 - 2014-12-07 22:41 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-12-07 22:41 - 2012-09-29 19:54 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-12-07 22:23 - 2014-12-07 22:23 - 00000000 ____D () C:\Users\Jakub\Desktop\Stare dane programu Firefox 2014-12-07 21:16 - 2014-12-07 21:29 - 00000000 ____D () C:\Program Files (x86)\Panda Security 2014-12-07 21:16 - 2014-12-07 21:16 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\Panda Security 2014-12-07 21:15 - 2014-12-14 11:02 - 00000000 ____D () C:\ProgramData\Cache 2014-12-07 21:15 - 2014-12-07 21:15 - 00000000 ____D () C:\ProgramData\x64 2014-12-07 21:15 - 2014-12-07 21:15 - 00000000 ____D () C:\ProgramData\Tools 2014-12-07 21:15 - 2014-12-07 21:15 - 00000000 ____D () C:\ProgramData\PskTmp 2014-12-07 21:15 - 2014-12-07 21:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Free Antivirus 2014-12-07 21:15 - 2014-12-07 21:15 - 00000000 ____D () C:\ProgramData\Lang 2014-12-07 21:15 - 2014-12-07 21:15 - 00000000 ____D () C:\ProgramData\Kosz 2014-12-07 21:15 - 2014-12-07 21:15 - 00000000 ____D () C:\ProgramData\DG 2014-12-07 20:49 - 2014-12-07 21:16 - 00000000 ____D () C:\ProgramData\Panda Security 2014-12-07 20:34 - 2014-12-07 20:34 - 00000000 _____ () C:\autoexec.bat 2014-12-07 20:28 - 2014-12-07 20:28 - 00000000 ____D () C:\Users\Jakub\Documents\ArtRage Paintings 2014-12-07 19:40 - 2014-12-07 19:40 - 00791895 _____ () C:\Users\Jakub\Downloads\OptiFine_1.7.10_HD_A4.jar 2014-12-07 19:40 - 2014-12-07 19:40 - 00398392 _____ () C:\Users\Jakub\Downloads\ShadersMod-v2.3.19mc1.7.10-installer.jar 2014-12-07 13:45 - 2014-12-07 13:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArtRage 4 Demo 2014-12-07 13:45 - 2014-12-07 13:45 - 00000000 ____D () C:\ProgramData\Caphyon 2014-12-07 13:44 - 2014-12-07 20:28 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\Ambient Design 2014-12-07 13:02 - 2014-12-07 13:03 - 00000000 ____D () C:\Users\Jakub\Downloads\Lol champions 2014-12-04 17:58 - 2014-12-14 13:54 - 00000000 ____D () C:\Users\Jakub\Documents\Battlefield Heroes 2014-12-04 17:17 - 2014-12-04 17:36 - 00025473 _____ () C:\Users\Jakub\Downloads\pielęgniarstwo.odt 2014-12-03 20:06 - 2014-12-03 20:09 - 23187112 _____ () C:\Users\Jakub\Downloads\wszystkie prace ze studiów.rar 2014-12-03 20:03 - 2014-12-03 20:03 - 00185793 _____ () C:\Users\Jakub\Downloads\Prezentacja1(1).pptx 2014-12-03 20:00 - 2014-12-03 20:00 - 00185793 _____ () C:\Users\Jakub\Downloads\Prezentacja1.pptx 2014-12-03 17:47 - 2014-12-03 17:47 - 00000034 _____ () C:\Users\Jakub\Documents\Untitled.avi.sfl 2014-12-03 17:46 - 2014-12-03 17:47 - 336243712 _____ () C:\Users\Jakub\Documents\Untitled.avi 2014-12-03 17:29 - 2014-12-03 17:32 - 00002896 _____ () C:\Users\Jakub\Downloads\Cricket Sound.mp3.sfk 2014-11-30 19:37 - 2014-11-30 20:08 - 00000112 _____ () C:\Users\Jakub\Desktop\Nowy dokument tekstowy (2).txt 2014-11-30 16:39 - 2014-11-30 16:39 - 00128994 _____ () C:\Users\Jakub\Desktop\Inteligencja expamle.odp 2014-11-30 13:17 - 2014-11-30 13:18 - 05113856 _____ () C:\Users\Jakub\Downloads\Prezentacja FRANCJA.ppt 2014-11-26 20:07 - 2014-11-26 20:07 - 00624596 _____ () C:\Users\Jakub\Desktop\EPICKOŚĆ.blend 2014-11-26 15:49 - 2014-11-26 15:49 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MW Graphics 2014-11-26 15:49 - 2009-03-10 23:25 - 00191488 ____N (MW Graphics) C:\Windows\SysWOW64\mwgfx.dll 2014-11-26 15:49 - 2008-10-20 13:44 - 00237056 ____N (MW Publishing) C:\Windows\SysWOW64\mwgfx24.dll 2014-11-26 15:49 - 2008-09-05 08:32 - 00104960 ____N (MW Graphics) C:\Windows\SysWOW64\mwdds.dll 2014-11-26 15:49 - 2007-08-19 09:37 - 00028672 ____N (MW Graphics) C:\Windows\SysWOW64\mwgfxcopy.exe 2014-11-26 15:49 - 2004-05-14 11:13 - 00056832 ____N (MW Graphics) C:\Windows\SysWOW64\mwace.dll 2014-11-26 12:38 - 2014-11-26 12:38 - 00109304 _____ (Panda Security, S.L.) C:\ProgramData\PKNComms.dll 2014-11-25 18:02 - 2014-11-25 18:02 - 00094456 _____ (Panda Security, S.L.) C:\ProgramData\PSNComms.dll 2014-11-25 11:43 - 2014-11-25 11:43 - 00000274 _____ () C:\ProgramData\VERSION.INI 2014-11-25 11:15 - 2014-11-25 11:15 - 03689720 _____ (Panda Security, S.L.) C:\ProgramData\PSUNConsole.dll 2014-11-24 13:30 - 2014-11-24 13:30 - 00386296 _____ (Panda Security, S.L.) C:\ProgramData\PSANModRol.dll 2014-11-20 15:39 - 2014-12-14 13:53 - 00282296 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-11-20 15:39 - 2014-12-05 23:17 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-11-20 15:39 - 2011-12-01 11:15 - 02580552 _____ () C:\Windows\SysWOW64\pbsvc.exe 2014-11-20 15:30 - 2014-11-20 15:30 - 00711649 _____ () C:\Users\Jakub\Downloads\pbsetup.zip 2014-11-18 20:16 - 2014-11-18 20:16 - 00373952 _____ () C:\Users\Jakub\Downloads\Inteligencja a zdolności twórcze.pptx 2014-11-18 20:15 - 2014-11-20 19:38 - 00030339 _____ () C:\Users\Jakub\Desktop\Inteligencja.odt 2014-11-17 15:21 - 2014-11-16 22:55 - 00033626 _____ () C:\Users\Jakub\Documents\untitled_0.odt 2014-11-16 21:25 - 2014-11-16 21:25 - 00643584 _____ () C:\Users\Jakub\Downloads\iq.xls 2014-11-16 16:05 - 2014-11-16 16:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Settlers III - Złota Edycja 2014-11-15 10:40 - 2014-11-15 10:40 - 00000000 ____D () C:\Users\Jakub\AppData\Local\Ubisoft ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-12-14 23:43 - 2014-03-10 22:44 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-12-14 23:25 - 2009-07-14 05:45 - 00014832 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-12-14 23:25 - 2009-07-14 05:45 - 00014832 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-12-14 23:24 - 2009-07-14 18:55 - 00740156 _____ () C:\Windows\system32\perfh015.dat 2014-12-14 23:24 - 2009-07-14 18:55 - 00155730 _____ () C:\Windows\system32\perfc015.dat 2014-12-14 23:24 - 2009-07-14 06:13 - 01669434 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-12-14 23:21 - 2014-03-02 21:56 - 01976915 _____ () C:\Windows\WindowsUpdate.log 2014-12-14 23:20 - 2014-03-10 22:26 - 00000000 ____D () C:\Users\Jakub\AppData\Local\Mozilla 2014-12-14 23:20 - 2014-03-10 22:25 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-12-14 23:18 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-12-14 22:22 - 2014-10-22 21:25 - 00000000 ____D () C:\Users\Jakub\Desktop\Pack 2014-12-14 16:33 - 2014-03-16 11:37 - 00000000 ____D () C:\Users\Jakub\.gimp-2.8 2014-12-14 13:53 - 2014-08-07 11:55 - 00000000 ____D () C:\Users\Jakub\AppData\Local\gtk-2.0 2014-12-14 13:53 - 2014-03-11 00:00 - 00282296 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-12-14 13:53 - 2014-03-10 23:53 - 00270240 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-12-12 13:44 - 2014-03-10 23:32 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\Origin 2014-12-10 22:37 - 2014-04-04 20:20 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\Skype 2014-12-10 21:28 - 2014-03-10 23:14 - 00000000 ____D () C:\Program Files (x86)\Origin 2014-12-10 20:50 - 2014-08-08 21:58 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\Audacity 2014-12-08 21:57 - 2014-03-17 20:57 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\uTorrent 2014-12-08 21:43 - 2014-03-10 22:06 - 00000997 _____ () C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-12-07 23:26 - 2014-10-22 21:44 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\inkscape 2014-12-07 23:25 - 2014-08-05 01:31 - 00000000 ____D () C:\Windows\Minidump 2014-12-07 23:25 - 2014-03-02 21:52 - 00000000 ____D () C:\Windows\Panther 2014-12-07 22:35 - 2009-07-14 05:45 - 00356552 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-12-07 21:16 - 2014-03-10 22:14 - 00067912 _____ () C:\Users\Jakub\AppData\Local\GDIPFONTCACHEV1.DAT 2014-12-07 20:34 - 2014-03-10 22:05 - 00000000 ____D () C:\Users\Jakub 2014-12-07 19:53 - 2014-03-10 23:14 - 00000000 ____D () C:\ProgramData\Origin 2014-12-07 19:50 - 2014-03-10 22:25 - 00001379 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-12-07 14:08 - 2014-03-11 21:04 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-12-05 21:44 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-12-03 21:33 - 2014-07-29 10:01 - 00000000 ____D () C:\Program Files (x86)\EA Games 2014-11-20 11:05 - 2009-07-14 06:08 - 00032608 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-11-18 21:34 - 2014-03-30 09:20 - 00000000 ____D () C:\Users\Jakub\Documents\Video Projects 2014-11-18 19:22 - 2014-03-15 14:37 - 00000000 ____D () C:\Users\Jakub\Documents\Project 2014-11-17 21:43 - 2014-06-08 12:23 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\Synthesia 2014-11-17 15:21 - 2014-03-16 10:51 - 00000000 ____D () C:\Users\Jakub\AppData\Roaming\CodeBlocks 2014-11-16 16:38 - 2014-08-02 18:35 - 00032320 _____ (FNet Co., Ltd.) C:\Windows\system32\Drivers\FNETTBOH_305.SYS 2014-11-16 11:21 - 2014-11-11 22:04 - 00000000 ____D () C:\Users\Jakub\AppData\Local\wf-launcher 2014-11-16 09:53 - 2014-11-11 22:04 - 00000000 ____D () C:\ProgramData\GFACE Files to move or delete: ==================== C:\ProgramData\05001000.dat C:\ProgramData\asapsdk.dll C:\ProgramData\atl100.dll C:\ProgramData\atl80.dll C:\ProgramData\borlndmm.dll C:\ProgramData\bspatch.exe C:\ProgramData\cc3290mt.dll C:\ProgramData\FWConsole.dat C:\ProgramData\hash.dat C:\ProgramData\JobLauncher.exe C:\ProgramData\MiniCrypto.dll C:\ProgramData\msvcm80.dll C:\ProgramData\msvcp100.dll C:\ProgramData\msvcp80.dll C:\ProgramData\msvcr100.dll C:\ProgramData\msvcr80.dll C:\ProgramData\NConv.dll C:\ProgramData\NdkApi.Analysis.dll C:\ProgramData\NdkApi.Common.dll C:\ProgramData\NdkApi.Communication.dll C:\ProgramData\NdkApi.Configuration.dll C:\ProgramData\NdkApi.dll C:\ProgramData\NdkApi.License.dll C:\ProgramData\NdkApi.Network.dll C:\ProgramData\NdkApi.Notification.dll C:\ProgramData\NdkApi.Prl.dll C:\ProgramData\NdkApi.Quarantine.dll C:\ProgramData\NdkApi.Reports.dll C:\ProgramData\NdkApi.Service.Control.dll C:\ProgramData\NdkApi.Service.Info.dll C:\ProgramData\NdkApi.TuneUp.dll C:\ProgramData\NdkApi.Update.dll C:\ProgramData\NdkApi.UsbVaccine.dll C:\ProgramData\NNSManager.dll C:\ProgramData\NNSStGen.dll C:\ProgramData\PAV2WSC.exe C:\ProgramData\Pavsddl.dll C:\ProgramData\pknaccess.dll C:\ProgramData\pknact.dll C:\ProgramData\pknboot.dll C:\ProgramData\pknbufae.dll C:\ProgramData\pkncmp.dll C:\ProgramData\pknComCtrl.dll C:\ProgramData\pkncomiexm.dll C:\ProgramData\PKNComms.dll C:\ProgramData\pkndisk.dll C:\ProgramData\pknDTGW.dll C:\ProgramData\pkndtl.dll C:\ProgramData\pkndtr.dll C:\ProgramData\pknfile.dll C:\ProgramData\pknheu.dll C:\ProgramData\pknMDT.dll C:\ProgramData\pknpal.dll C:\ProgramData\pknplg.dll C:\ProgramData\pknproc.dll C:\ProgramData\pknQrt.dll C:\ProgramData\pknrbt.dll C:\ProgramData\pknreg.dll C:\ProgramData\pknspam.dll C:\ProgramData\pknsysmw.dll C:\ProgramData\pknurl.dll C:\ProgramData\PrlTranslator.dll C:\ProgramData\PSAEng.dll C:\ProgramData\PSANCU.exe C:\ProgramData\PSANHost.exe C:\ProgramData\PSANLang.dll C:\ProgramData\PSANLicense.dll C:\ProgramData\PSANLiveDownloader.dll C:\ProgramData\PSANLiveMan.dll C:\ProgramData\PSANMinReqUpg.dll C:\ProgramData\PSANModAdiag.dll C:\ProgramData\PSANModADM.dll C:\ProgramData\PSANModAV.dll C:\ProgramData\PSANModBLA.dll C:\ProgramData\PSANModCfg.dll C:\ProgramData\PSANModCtrlCfg.dll C:\ProgramData\PSANModFirewall.dll C:\ProgramData\PSANModLive.dll C:\ProgramData\PSANModNotification.dll C:\ProgramData\PSANModProactive.dll C:\ProgramData\PSANModProcMon.dll C:\ProgramData\PSANModRep.dll C:\ProgramData\PSANModRol.dll C:\ProgramData\PSANModScheduler.dll C:\ProgramData\PSANModShield.dll C:\ProgramData\PSANModStats.dll C:\ProgramData\PSANModTuneUp.dll C:\ProgramData\PSANModURL.dll C:\ProgramData\PSANModUSBVac.dll C:\ProgramData\PSANMSrvc.dll C:\ProgramData\PSANPackageRegistry.dll C:\ProgramData\PSANPlugAvCatalogAnalysis.dll C:\ProgramData\PSANSoapActivation.dll C:\ProgramData\PSANStatsFormat.dll C:\ProgramData\PSANStatsReader.dll C:\ProgramData\PSANUpgMgr.dll C:\ProgramData\PSANUpgSI.dll C:\ProgramData\PSANURLCounters.dll C:\ProgramData\PSAUI.dll C:\ProgramData\PSBoot.dll C:\ProgramData\PSCCGUIUtils.dll C:\ProgramData\psenagent.dll C:\ProgramData\psendecs.dll C:\ProgramData\psendsig.dll C:\ProgramData\psenfilter.dll C:\ProgramData\psenhash.dll C:\ProgramData\PSENIExAg.dll C:\ProgramData\psenkrnl.dll C:\ProgramData\psenlc.dll C:\ProgramData\psenlog.dll C:\ProgramData\PSENMgrb.dll C:\ProgramData\psenobsr.dll C:\ProgramData\psenplgb.dll C:\ProgramData\PSENPrx.dll C:\ProgramData\PSENQMem.dll C:\ProgramData\PSENRAM.dll C:\ProgramData\PSENSRF.dll C:\ProgramData\psenuser.dll C:\ProgramData\psenutil.dll C:\ProgramData\PSINanoRun.exe C:\ProgramData\PSINApAg.dll C:\ProgramData\PSINEnAg.dll C:\ProgramData\PSINEvAg.dll C:\ProgramData\PSINOAV.dll C:\ProgramData\PSINPrSg.dll C:\ProgramData\PSINUNC.dll C:\ProgramData\pskalloc.dll C:\ProgramData\pskcoord.dll C:\ProgramData\pskcrt.dll C:\ProgramData\pskcrypt.dll C:\ProgramData\pskfcmp.dll C:\ProgramData\pskglk.dll C:\ProgramData\pskisig.dll C:\ProgramData\PSKMADLL.dll C:\ProgramData\pskras.dll C:\ProgramData\PSKSQLT.dll C:\ProgramData\psksrf.dll C:\ProgramData\pskstr.dll C:\ProgramData\psksys.dll C:\ProgramData\pskutil.dll C:\ProgramData\pskxml.dll C:\ProgramData\pskxs.dll C:\ProgramData\PSNCCfgMgr.dll C:\ProgramData\PSNCCfgStore.dll C:\ProgramData\PSNCDSEX.dll C:\ProgramData\PSNCDSVF.dll C:\ProgramData\PSNCGP.dll C:\ProgramData\PSNCGP64.dll C:\ProgramData\PSNCIPC.dll C:\ProgramData\PSNCIPC64.dll C:\ProgramData\PSNCNotifMgr.dll C:\ProgramData\PSNComms.dll C:\ProgramData\PSNCrypt.dll C:\ProgramData\PSNCSA.dll C:\ProgramData\PSNCSysAction.exe C:\ProgramData\PSNCSysInfo.dll C:\ProgramData\PSNCTaskSch.dll C:\ProgramData\PSNCUpdMgr.dll C:\ProgramData\PSNEvts.dll C:\ProgramData\PSNFiles.dll C:\ProgramData\PSNLCSK.DLL C:\ProgramData\PSNMuid.dll C:\ProgramData\PSNReg.dll C:\ProgramData\PSNTypeReflection.dll C:\ProgramData\PSNWSC.dll C:\ProgramData\PSNXml.dll C:\ProgramData\PSUAAction.dll C:\ProgramData\PSUAADiag.dll C:\ProgramData\PSUAAlert.dat C:\ProgramData\PSUAAlerts.dll C:\ProgramData\PSUACConfig.dll C:\ProgramData\PSUACFirewall.dll C:\ProgramData\PSUAConfigMgr.dll C:\ProgramData\PSUAConsole.dat C:\ProgramData\PSUAError.dll C:\ProgramData\PSUAFirewall.dll C:\ProgramData\PSUAGUIAlertsManager.dll C:\ProgramData\PSUAInfo.dll C:\ProgramData\PSUALegacyExt.dll C:\ProgramData\PSUALicense.dll C:\ProgramData\PSUAMain.dat C:\ProgramData\PSUAMain.exe C:\ProgramData\PSUAProts.dll C:\ProgramData\PSUAResources.dll C:\ProgramData\PSUAResourcesEx.dll C:\ProgramData\PSUASBoot.exe C:\ProgramData\PSUAService.dat C:\ProgramData\PSUAService.exe C:\ProgramData\PSUAServiceManager.dll C:\ProgramData\PSUAShell.dll C:\ProgramData\PSUASysTray.dat C:\ProgramData\PSUASysTray.dll C:\ProgramData\PSUASystrayObject.dll C:\ProgramData\PSUATools.dll C:\ProgramData\PSUATranslator.dll C:\ProgramData\PSUAUtils.dll C:\ProgramData\PSUAWatchdog.dll C:\ProgramData\PSUNConfigStore.dll C:\ProgramData\PSUNConsole.dll C:\ProgramData\PSUNProcMon.dll C:\ProgramData\PSUNReports.dll C:\ProgramData\PSUNResources.dll C:\ProgramData\PSUNScan.dll C:\ProgramData\PSUNSuspects.dll C:\ProgramData\putczip.dll C:\ProgramData\putsig.dll C:\ProgramData\puturar.dll C:\ProgramData\putuzip.dll C:\ProgramData\Setup.dat C:\ProgramData\Setup.exe C:\ProgramData\SetupUI.dll C:\ProgramData\sqlite3.dll C:\ProgramData\USBVacineDLL.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-12-07 20:20 ==================== End Of Log ============================