Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-01-2015 Ran by SYLWIA (administrator) on IDEA-PC on 02-01-2015 15:00:47 Running from C:\Users\SYLWIA\Downloads Loaded Profiles: UpdatusUser & SYLWIA (Available profiles: UpdatusUser & SYLWIA) Platform: Windows 8 (X64) OS Language: Polski (Polska) Internet Explorer Version 10 (Default browser: Launcher) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe (Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe (Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE (CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe (CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [887968 2012-06-14] (Conexant Systems, Inc.) HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17079376 2013-06-19] (Lenovo (Beijing) Limited) HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191568 2013-06-19] (Lenovo(beijing) Limited) HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [548864 2012-05-02] (Vimicro) HKLM-x32\...\Run: [YouCam Mirage] => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488 2012-07-27] (CyberLink) HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [167024 2012-07-27] (CyberLink Corp.) HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-18] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [mcui_exe] => "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation) HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [295512 2013-12-04] (RealNetworks, Inc.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2015-01-02] (AVAST Software) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [131712 2013-01-24] ( (Atheros Communications)) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-2996028574-285204127-4089189736-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [1823656 2013-12-11] (Valve Corporation) HKU\S-1-5-21-2996028574-285204127-4089189736-1002\...\Run: [RGSC] => C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent HKU\S-1-5-21-2996028574-285204127-4089189736-1002\...\Run: [JoxdaNyano] => regsvr32.exe "C:\ProgramData\JoxdaNyano\JoxdaNyano.dat" AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [247144 2012-11-06] (NVIDIA Corporation) AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [203112 2012-11-06] (NVIDIA Corporation) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2996028574-285204127-4089189736-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com HKU\S-1-5-21-2996028574-285204127-4089189736-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com HKU\S-1-5-21-2996028574-285204127-4089189736-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com URLSearchHook: [S-1-5-21-2996028574-285204127-4089189736-1001] ATTENTION ==> Default URLSearchHook is missing. SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2996028574-285204127-4089189736-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2996028574-285204127-4089189736-1002 -> {3BB40DEB-981D-4ADD-9EEC-3D6255CC4B4A} URL = BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Toolbar: HKU\S-1-5-21-2996028574-285204127-4089189736-1002 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 FireFox: ======== FF ProfilePath: C:\Users\SYLWIA\AppData\Roaming\Mozilla\Firefox\Profiles\lip0sz8e.default FF NewTab: FF DefaultSearchEngine: Yahoo! Search FF SelectedSearchEngine: Yahoo! Search FF Homepage: google.pl FF Keyword.URL: FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @real.com/nppl3260;version=16.0.3.51 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=16.0.3.51 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Extension: OnetToolbar - C:\Users\SYLWIA\AppData\Roaming\Mozilla\Firefox\Profiles\lip0sz8e.default\Extensions\toolbar.addon@onet.pl.xpi [2013-12-04] FF HKLM-x32\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-12-04] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-26] FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext Chrome: ======= CHR Profile: C:\Users\SYLWIA\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\SYLWIA\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-26] CHR Extension: (Google Drive) - C:\Users\SYLWIA\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-26] CHR Extension: (YouTube) - C:\Users\SYLWIA\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-26] CHR Extension: (Google Search) - C:\Users\SYLWIA\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-26] CHR Extension: (avast! Online Security) - C:\Users\SYLWIA\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-12-26] CHR Extension: (RealDownloader) - C:\Users\SYLWIA\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2013-12-26] CHR Extension: (Google Wallet) - C:\Users\SYLWIA\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-26] CHR Extension: (Gmail) - C:\Users\SYLWIA\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-26] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-02] CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227456 2013-01-24] (Qualcomm Atheros Commnucations) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-02] (AVAST Software) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272776 2014-10-16] () R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] () S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation) R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-01-24] (Atheros) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-02] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2015-01-02] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-02] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-02] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-02] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-02] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-02] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-02] () R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-24] (Qualcomm Atheros) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-27] (Synaptics Incorporated) R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [975104 2012-08-24] (Vimicro Corporation) S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-02 15:00 - 2015-01-02 15:01 - 00015916 _____ () C:\Users\SYLWIA\Downloads\FRST.txt 2015-01-02 14:59 - 2015-01-02 15:00 - 00000000 ____D () C:\FRST 2015-01-02 14:48 - 2015-01-02 14:48 - 00602112 _____ (OldTimer Tools) C:\Users\SYLWIA\Downloads\OTL.exe 2015-01-02 14:40 - 2015-01-02 14:40 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf 2015-01-02 14:38 - 2015-01-02 14:39 - 02123264 _____ (Farbar) C:\Users\SYLWIA\Downloads\FRST64.exe 2015-01-02 14:24 - 2015-01-02 14:24 - 00002002 _____ () C:\Users\Public\Desktop\Lenovo Solution Center.lnk 2015-01-02 14:21 - 2015-01-02 14:32 - 00003230 _____ () C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2996028574-285204127-4089189736-1002 2015-01-02 14:20 - 2015-01-02 14:32 - 00003362 _____ () C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2996028574-285204127-4089189736-1002 2015-01-02 14:18 - 2015-01-02 14:18 - 00001975 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2015-01-02 14:17 - 2015-01-02 14:17 - 00364512 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2015-01-02 14:17 - 2015-01-02 14:17 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2015-01-02 14:09 - 2015-01-02 14:09 - 00000000 ____D () C:\WINDOWS\system32\AutoUpdateLicense 2015-01-02 14:03 - 2015-01-02 14:09 - 00000000 ____D () C:\AdwCleaner 2015-01-02 13:59 - 2015-01-02 13:59 - 02173952 _____ () C:\Users\SYLWIA\Downloads\AdwCleaner.exe 2015-01-02 13:55 - 2015-01-02 13:56 - 04509160 _____ (Systweak Inc ) C:\Users\SYLWIA\Downloads\sysrc_trial.exe 2014-12-26 19:39 - 2014-12-26 19:39 - 00000000 ____D () C:\Users\SYLWIA\Documents\Nero Burning Rom 2014-12-26 19:14 - 2014-12-26 19:14 - 00000000 ____D () C:\Program Files (x86)\EpieGame 2014-12-26 10:58 - 2014-12-09 08:12 - 00590816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AutoUpdate.exe 2014-12-26 10:58 - 2014-12-09 08:12 - 00467408 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationUI.exe 2014-12-26 10:58 - 2014-10-22 04:34 - 00010777 _____ () C:\WINDOWS\system32\AutoconfigV2.cab 2014-12-26 10:58 - 2014-10-22 02:08 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2014-12-26 10:58 - 2014-10-22 02:08 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-12-26 10:58 - 2014-10-22 02:01 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-12-26 10:58 - 2014-10-22 02:01 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2014-12-26 10:58 - 2014-10-22 02:01 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-12-26 10:58 - 2014-10-22 02:00 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll 2014-12-26 10:56 - 2014-10-30 08:20 - 01890816 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2014-12-26 10:56 - 2014-10-30 06:22 - 01569792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2014-12-25 21:30 - 2014-12-25 21:57 - 00000000 ____D () C:\Users\SYLWIA\AppData\Roaming\Nero 2014-12-25 21:30 - 2014-12-25 21:30 - 00000000 ____D () C:\Users\SYLWIA\AppData\Roaming\WebTest 2014-12-25 21:18 - 2015-01-01 13:33 - 00000000 ____D () C:\ProgramData\Nero 2014-12-25 21:08 - 2014-12-25 21:08 - 00000000 ___HD () C:\Users\SYLWIA\AppData\Roaming\GoldenGate 2014-12-25 21:07 - 2014-12-25 21:07 - 00000172 _____ () C:\Users\SYLWIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Play Games Online.url 2014-12-25 21:03 - 2014-12-25 21:03 - 00373048 _____ () C:\Users\SYLWIA\Downloads\SoftonicDownloader_dla_nero.exe 2014-12-20 19:40 - 2014-12-20 19:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AidemMedia 2014-12-20 19:40 - 2014-12-20 19:40 - 00000000 ____D () C:\Program Files (x86)\AidemMedia 2014-12-14 10:59 - 2014-12-14 12:34 - 00000000 ____D () C:\Users\SYLWIA\Desktop\Nowy folder 2014-12-13 16:22 - 2014-11-26 22:11 - 00714184 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-12-13 16:22 - 2014-11-26 22:11 - 00106440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-12-13 10:50 - 2014-10-09 05:00 - 01519104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll 2014-12-13 10:50 - 2014-10-09 05:00 - 01484288 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-12-13 10:50 - 2014-10-09 05:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll 2014-12-13 10:50 - 2014-10-09 04:59 - 01195520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll 2014-12-13 10:50 - 2014-10-09 04:59 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll 2014-12-09 21:34 - 2014-10-18 09:44 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2014-12-09 21:34 - 2014-10-18 08:05 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2014-12-09 21:34 - 2014-10-11 08:44 - 19764736 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-12-09 21:34 - 2014-10-11 06:57 - 17562112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-12-09 21:34 - 2014-10-09 04:59 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-12-09 21:34 - 2014-10-09 04:58 - 00458240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-12-09 21:34 - 2014-10-02 00:05 - 04068864 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-12-09 21:34 - 2014-09-22 06:38 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-12-09 21:34 - 2014-09-22 04:56 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2014-12-09 21:33 - 2014-10-09 04:59 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-12-09 21:32 - 2014-10-03 02:21 - 00522728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-12-09 21:32 - 2014-10-02 23:29 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-12-09 21:32 - 2014-10-02 23:29 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll 2014-12-09 21:32 - 2014-10-02 23:29 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-12-09 21:31 - 2014-09-13 07:24 - 02233152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-12-09 21:31 - 2014-09-06 01:46 - 00389176 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-12-09 21:31 - 2014-09-03 03:48 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll 2014-12-09 21:31 - 2014-09-03 03:22 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-12-09 21:31 - 2014-08-29 05:17 - 02043392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2014-12-09 21:31 - 2014-08-29 05:17 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll 2014-12-09 21:31 - 2014-08-29 05:04 - 02837504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-12-09 21:31 - 2014-08-29 05:04 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2014-12-09 21:31 - 2014-08-28 07:04 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll 2014-12-09 21:31 - 2014-08-28 07:04 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll 2014-12-09 21:31 - 2014-08-28 06:59 - 00616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll 2014-12-09 21:31 - 2014-08-28 06:59 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll 2014-12-09 21:31 - 2014-08-28 06:59 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSTIFF.dll 2014-12-09 21:31 - 2014-08-28 06:59 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXST30.dll 2014-12-09 21:31 - 2014-07-24 14:12 - 00328512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-12-09 21:30 - 2014-11-21 09:36 - 19283456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-12-09 21:30 - 2014-11-21 09:36 - 15400960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-12-09 21:30 - 2014-11-21 08:17 - 14364672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-12-09 21:30 - 2014-11-21 08:16 - 13758976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-12-09 21:29 - 2014-11-21 09:38 - 02237952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-12-09 21:29 - 2014-11-21 09:38 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-12-09 21:29 - 2014-11-21 09:37 - 01409536 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-12-09 21:29 - 2014-11-21 09:37 - 00915968 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2014-12-09 21:29 - 2014-11-21 09:37 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 03959296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 02655232 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-12-09 21:29 - 2014-11-21 09:36 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-12-09 21:29 - 2014-11-21 09:35 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-12-09 21:29 - 2014-11-21 08:17 - 01762816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-12-09 21:29 - 2014-11-21 08:17 - 01181696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-12-09 21:29 - 2014-11-21 08:17 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-12-09 21:29 - 2014-11-21 08:17 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2014-12-09 21:29 - 2014-11-21 08:17 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 02861568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 02054656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 01441280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-12-09 21:29 - 2014-11-21 08:16 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 00493056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 00357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-12-09 21:29 - 2014-11-21 08:16 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-12-09 21:29 - 2014-11-21 08:00 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-12-09 21:29 - 2014-11-21 07:54 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-12-09 21:29 - 2014-11-21 05:30 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2014-12-09 21:25 - 2014-11-06 07:50 - 01627648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2014-12-09 21:25 - 2014-11-06 06:03 - 01339392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2014-12-09 21:25 - 2014-10-11 08:44 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-12-09 21:25 - 2014-10-11 06:41 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-12-09 21:25 - 2014-10-11 06:41 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll 2014-12-09 21:25 - 2014-10-11 06:05 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll 2014-12-09 21:25 - 2014-10-11 06:04 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2014-12-09 21:24 - 2014-09-25 00:29 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2014-12-09 21:24 - 2014-09-25 00:29 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2014-12-09 21:24 - 2014-09-25 00:01 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2014-12-09 21:24 - 2014-09-25 00:01 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2014-12-09 21:18 - 2014-11-08 12:22 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll 2014-12-09 21:18 - 2014-11-08 12:21 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-12-09 21:18 - 2014-11-08 07:57 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll 2014-12-09 21:18 - 2014-11-08 07:56 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2014-12-09 21:18 - 2014-10-11 09:35 - 00171840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-12-09 21:18 - 2014-10-11 08:44 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2014-12-09 21:18 - 2014-10-11 08:43 - 01281536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-12-09 21:18 - 2014-10-11 06:57 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2014-12-09 21:15 - 2014-10-23 13:47 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll 2014-12-09 21:15 - 2014-10-23 12:04 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll 2014-12-09 21:15 - 2014-08-22 00:56 - 01418752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2014-12-09 21:15 - 2014-08-22 00:27 - 01845760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-02 15:00 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\system32\sru 2015-01-02 14:47 - 2013-06-19 21:55 - 01134178 _____ () C:\WINDOWS\WindowsUpdate.log 2015-01-02 14:41 - 2012-07-26 08:21 - 00032449 _____ () C:\WINDOWS\setupact.log 2015-01-02 14:37 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2015-01-02 14:36 - 2013-10-10 13:26 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2996028574-285204127-4089189736-1002 2015-01-02 14:36 - 2013-06-20 07:38 - 00794946 _____ () C:\WINDOWS\system32\perfh015.dat 2015-01-02 14:36 - 2013-06-20 07:38 - 00159530 _____ () C:\WINDOWS\system32\perfc015.dat 2015-01-02 14:36 - 2012-07-26 08:28 - 01793398 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2015-01-02 14:34 - 2013-10-09 09:28 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-01-02 14:30 - 2012-07-26 08:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2015-01-02 14:27 - 2013-10-09 02:17 - 00000000 ____D () C:\Users\SYLWIA\Documents\Bluetooth Folder 2015-01-02 14:24 - 2013-10-09 02:37 - 00000000 ____D () C:\ProgramData\Lenovo 2015-01-02 14:24 - 2013-10-09 02:26 - 00000000 ____D () C:\Users\SYLWIA\AppData\Local\LSC 2015-01-02 14:24 - 2013-10-09 02:19 - 00000000 ____D () C:\Users\SYLWIA\AppData\Roaming\LSC 2015-01-02 14:24 - 2013-06-19 22:53 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Lenovo 2015-01-02 14:24 - 2013-06-19 22:53 - 00000000 ____D () C:\Program Files\Lenovo 2015-01-02 14:18 - 2013-12-26 10:56 - 01050432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys 2015-01-02 14:18 - 2013-03-25 22:02 - 00024536 _____ () C:\WINDOWS\PFRO.log 2015-01-02 14:17 - 2014-05-03 19:47 - 00029208 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys 2015-01-02 14:17 - 2013-12-26 10:58 - 00003924 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update 2015-01-02 14:17 - 2013-12-26 10:56 - 00436624 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys 2015-01-02 14:17 - 2013-12-26 10:56 - 00267632 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys 2015-01-02 14:17 - 2013-12-26 10:56 - 00116728 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswstm.sys 2015-01-02 14:17 - 2013-12-26 10:56 - 00093568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2015-01-02 14:17 - 2013-12-26 10:56 - 00083280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2015-01-02 14:17 - 2013-12-26 10:56 - 00065776 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys 2015-01-02 14:10 - 2012-07-26 06:26 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2015-01-02 14:09 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\WinStore 2015-01-02 14:08 - 2013-10-09 02:16 - 00000000 ____D () C:\Users\SYLWIA 2015-01-02 12:43 - 2014-11-02 09:26 - 00000000 ____D () C:\ProgramData\253696b0-e9b9-4e71-87e6-dd3f97c02b2a 2015-01-02 12:04 - 2014-11-30 16:59 - 00002960 _____ () C:\WINDOWS\System32\Tasks\ReclaimerUpdateFiles_SYLWIA 2015-01-02 12:04 - 2014-11-30 16:59 - 00000390 _____ () C:\WINDOWS\Tasks\ReclaimerUpdateFiles_SYLWIA.job 2015-01-02 11:43 - 2012-07-26 06:26 - 00000292 _____ () C:\WINDOWS\win.ini 2015-01-02 11:37 - 2014-01-12 16:36 - 00003340 _____ () C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2996028574-285204127-4089189736-1002 2015-01-02 11:37 - 2014-01-12 16:36 - 00003208 _____ () C:\WINDOWS\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2996028574-285204127-4089189736-1002 2015-01-01 13:51 - 2013-10-10 17:51 - 00000000 ____D () C:\Users\SYLWIA\AppData\Local\CrashDumps 2015-01-01 13:45 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\system32\NDF 2015-01-01 13:39 - 2013-10-10 18:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\City Interactive 2015-01-01 13:39 - 2013-10-10 18:00 - 00000000 ____D () C:\Program Files (x86)\City Interactive 2014-12-30 11:21 - 2013-12-24 19:00 - 00000000 ____D () C:\Users\SYLWIA\Documents\SCANIA Truck Driving Simulator 2014-12-28 15:57 - 2014-11-14 19:43 - 00000000 ____D () C:\Users\SYLWIA\AppData\Roaming\EF2014 2014-12-26 21:25 - 2014-11-30 16:59 - 00000386 _____ () C:\WINDOWS\Tasks\ReclaimerUpdateXML_SYLWIA.job 2014-12-26 21:20 - 2014-11-30 16:59 - 00002956 _____ () C:\WINDOWS\System32\Tasks\ReclaimerUpdateXML_SYLWIA 2014-12-26 20:12 - 2013-10-10 16:53 - 00237775 _____ () C:\WINDOWS\DirectX.log 2014-12-26 11:00 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-12-25 21:29 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\Cursors 2014-12-20 15:21 - 2014-07-14 18:55 - 00000000 ____D () C:\Maszyny Rolnicze 2014 2014-12-14 15:18 - 2013-10-26 16:11 - 00004096 _____ () C:\Users\Public\Documents\00001A83.LCS 2014-12-14 10:18 - 2014-11-29 17:49 - 00000000 ____D () C:\Users\SYLWIA\Desktop\muzyka 2014-12-14 08:34 - 2013-06-19 22:53 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-12-13 16:20 - 2014-11-02 09:36 - 00287160 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-12-13 10:55 - 2012-07-26 09:12 - 00000000 ___RD () C:\WINDOWS\ToastData Some content of TEMP: ==================== C:\Users\SYLWIA\AppData\Local\Temp\dsrsetup.exe C:\Users\SYLWIA\AppData\Local\Temp\ICReinstall_Adobe Flash Player 11.9.900.152_isdmgr.exe C:\Users\SYLWIA\AppData\Local\Temp\Install.exe C:\Users\SYLWIA\AppData\Local\Temp\lowproc.exe C:\Users\SYLWIA\AppData\Local\Temp\OnlineBackup.exe C:\Users\SYLWIA\AppData\Local\Temp\Quarantine.exe C:\Users\SYLWIA\AppData\Local\Temp\res.dll C:\Users\SYLWIA\AppData\Local\Temp\rruninst.exe C:\Users\SYLWIA\AppData\Local\Temp\SimBundD.exe C:\Users\SYLWIA\AppData\Local\Temp\SimBundD[1].exe C:\Users\SYLWIA\AppData\Local\Temp\SoftonicAssistant_v0-1-6.exe C:\Users\SYLWIA\AppData\Local\Temp\Softonic_PL_1-5-4_PL-Production_10_CleanRelease.exe C:\Users\SYLWIA\AppData\Local\Temp\sqlite3.dll C:\Users\SYLWIA\AppData\Local\Temp\stubhelper.dll C:\Users\SYLWIA\AppData\Local\Temp\uninstall26067.exe C:\Users\SYLWIA\AppData\Local\Temp\vcredist_x64.exe C:\Users\SYLWIA\AppData\Local\Temp\_is51BF.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-12-25 12:10 ==================== End Of Log ============================