Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-02-2015 Ran by SYSTEM on MININT-H1VOJVP on 23-02-2015 20:32:55 Running from f:\ Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Polski (Polska) Internet Explorer Version 8 Boot Mode: Recovery The current controlset is ControlSet001 [b]ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.[/b] Tutorial for Farbar Recovery Scan Tool: ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [8292120 2013-11-14] (Logitech Inc.) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595336 2014-10-01] (ESET) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [RoccatKoneXTD] => C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE [552960 2013-10-25] (ROCCAT GmbH) HKU\Ryba\...\Run: [DAEMON Tools Ultra Agent] => C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [3125976 2013-09-23] (Disc Soft Ltd) BootExecute: autocheck autochk * sdnclean64.exe ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 Disc Soft Bus Service; C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe [654552 2013-09-23] (Disc Soft Ltd) S2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1349576 2014-10-01] (ESET) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) S2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1639208 2013-11-21] (O&O Software GmbH) S3 Origin Client Service; G:\Origin\OriginClientService.exe [1903472 2015-01-21] (Electronic Arts) S2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2014-11-14] () S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-02-25] () S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [758224 2013-11-06] ( GmbH) S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 DroidCam; C:\Windows\System32\DRIVERS\droidcam.sys [33080 2014-05-27] (Dev47Apps) S3 DroidCamVideo; C:\Windows\System32\DRIVERS\droidcamvideo.sys [227512 2014-05-27] (Dev47Apps) S3 dtscsibus; C:\Windows\System32\DRIVERS\dtscsibus.sys [29696 2014-02-14] (Disc Soft Ltd) S1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-10-10] (ESET) S5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241368 2014-10-10] (ESET) S1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169280 2014-10-10] (ESET) S2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [158968 2014-10-10] (ESET) S3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.) S3 LGSUsbFilt; C:\Windows\System32\DRIVERS\LGSUsbFilt.Sys [41752 2013-05-30] (Logitech Inc.) S3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) S0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2013-12-22] (Duplex Secure Ltd.) S3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] ( ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-23 20:31 - 2015-02-23 20:32 - 00000000 ____D () C:\FRST 2015-02-19 15:56 - 2015-02-19 17:52 - 00000347 _____ () C:\Users\Ryba\Desktop\loki.txt 2015-02-19 15:56 - 2015-02-19 15:56 - 00000000 _____ () C:\Users\Ryba\Desktop\asda.txt 2015-02-19 14:21 - 2015-02-19 14:21 - 00000000 ____D () C:\Users\Ryba\AppData\Local\Steam 2015-02-17 18:28 - 2015-01-09 04:14 - 00950272 _____ (Microsoft Corporation) C:\Windows\System32\perftrack.dll 2015-02-17 18:28 - 2015-01-09 04:14 - 00091136 _____ (Microsoft Corporation) C:\Windows\System32\wdi.dll 2015-02-17 18:28 - 2015-01-09 04:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\System32\powertracker.dll 2015-02-17 18:28 - 2015-01-09 03:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll 2015-02-16 02:39 - 2015-02-16 02:39 - 00000641 _____ () C:\ProgramData\0022FE4E_S__1 2015-02-16 02:03 - 2015-02-16 02:39 - 00000641 _____ () C:\ProgramData\0022FE4E_S__0 2015-02-15 16:13 - 2015-02-15 16:13 - 05554112 _____ (Microsoft Corporation) C:\Windows\System32\ntoskrnl.bak 2015-02-15 16:13 - 2015-02-15 16:13 - 00605552 _____ (Microsoft Corporation) C:\Windows\System32\winload.bak 2015-02-14 19:29 - 2015-02-14 19:29 - 00000000 ____D () C:\Users\Ryba\AppData\Local\Sony Online Entertainment 2015-02-14 04:19 - 2015-02-14 04:19 - 00001080 _____ () C:\Windows\System32\settingsbkup.sfm 2015-02-14 04:19 - 2015-02-14 04:19 - 00001080 _____ () C:\Windows\System32\settings.sfm 2015-02-11 13:21 - 2015-02-15 16:13 - 05554112 _____ (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe 2015-02-11 13:21 - 2015-02-04 04:16 - 00894976 _____ (Microsoft Corporation) C:\Windows\System32\appraiser.dll 2015-02-11 13:21 - 2015-02-04 04:16 - 00762368 _____ (Microsoft Corporation) C:\Windows\System32\invagent.dll 2015-02-11 13:21 - 2015-02-04 04:16 - 00609280 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll 2015-02-11 13:21 - 2015-02-04 04:16 - 00414720 _____ (Microsoft Corporation) C:\Windows\System32\devinv.dll 2015-02-11 13:21 - 2015-02-04 04:16 - 00227328 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll 2015-02-11 13:21 - 2015-02-04 04:16 - 00192000 _____ (Microsoft Corporation) C:\Windows\System32\aepic.dll 2015-02-11 13:21 - 2015-02-04 04:13 - 01098752 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll 2015-02-11 13:21 - 2015-01-28 00:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\System32\aitstatic.exe 2015-02-11 13:21 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys 2015-02-11 13:21 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys 2015-02-11 13:21 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\System32\lsasrv.dll 2015-02-11 13:21 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\System32\sspicli.dll 2015-02-11 13:21 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\lsass.exe 2015-02-11 13:21 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\System32\sspisrv.dll 2015-02-11 13:21 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\System32\secur32.dll 2015-02-11 13:21 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\System32\auditpol.exe 2015-02-11 13:21 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\System32\msaudite.dll 2015-02-11 13:21 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\System32\msobjs.dll 2015-02-11 13:21 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\System32\adtschema.dll 2015-02-11 13:21 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-02-11 13:21 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-02-11 13:21 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-02-11 13:21 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-02-11 13:21 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-02-11 13:21 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-02-11 13:21 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\cng.sys 2015-02-11 13:21 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\System32\srcore.dll 2015-02-11 13:21 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\srclient.dll 2015-02-11 13:21 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\System32\rstrui.exe 2015-02-11 13:21 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-02-11 13:21 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-02-11 13:21 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-02-11 13:21 - 2015-01-13 04:10 - 01190912 _____ (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2015-02-11 13:21 - 2015-01-13 03:49 - 01011200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-02-11 13:21 - 2015-01-12 04:11 - 01188864 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 12293120 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 09056768 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 02467328 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 01541632 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 00735232 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 00610304 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 00495616 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 00314880 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 00247808 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 00134144 _____ (Microsoft Corporation) C:\Windows\System32\url.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 00097280 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 00082944 _____ (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll 2015-02-11 13:21 - 2015-01-12 04:10 - 00064512 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2015-02-11 13:21 - 2015-01-12 04:09 - 01538048 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2015-02-11 13:21 - 2015-01-12 04:09 - 00174592 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2015-02-11 13:21 - 2015-01-12 04:09 - 00047616 _____ (Microsoft Corporation) C:\Windows\System32\mshta.exe 2015-02-11 13:21 - 2015-01-12 04:09 - 00016384 _____ (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe 2015-02-11 13:21 - 2015-01-12 03:45 - 01267712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-02-11 13:21 - 2015-01-12 03:45 - 00981504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-02-11 13:21 - 2015-01-12 03:45 - 00428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-02-11 13:21 - 2015-01-12 03:45 - 00132096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 11020800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 06027264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 02086912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 01466368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-02-11 13:21 - 2015-01-12 03:44 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 00345600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-02-11 13:21 - 2015-01-12 03:44 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2015-02-11 13:21 - 2015-01-12 03:44 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-02-11 13:21 - 2015-01-12 03:44 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2015-02-11 13:21 - 2015-01-12 03:33 - 00482816 _____ (Microsoft Corporation) C:\Windows\System32\html.iec 2015-02-11 13:21 - 2015-01-12 03:14 - 00386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-02-11 13:21 - 2015-01-12 03:10 - 01638912 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2015-02-11 13:21 - 2015-01-12 02:53 - 01638912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-02-11 13:21 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys 2015-02-11 13:21 - 2014-12-12 06:31 - 01480192 _____ (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2015-02-11 13:21 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-02-11 13:21 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\System32\scesrv.dll 2015-02-11 13:21 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-02-11 13:21 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\System32\oleaut32.dll 2015-02-11 13:21 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-02-11 13:21 - 2014-10-04 03:10 - 03722752 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll 2015-02-11 13:21 - 2014-10-04 02:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-02-11 13:21 - 2014-10-04 02:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2015-02-11 13:21 - 2014-07-07 03:07 - 00229376 _____ (Microsoft Corporation) C:\Windows\System32\wintrust.dll 2015-02-11 13:21 - 2014-07-07 03:06 - 00187904 _____ (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2015-02-11 13:21 - 2014-07-07 02:40 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-02-11 13:21 - 2014-07-07 02:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-02-09 16:27 - 2015-02-09 16:29 - 00000000 ____D () C:\Users\Ryba\Desktop\fbb 2015-02-09 16:24 - 2015-02-09 16:26 - 00000000 ____D () C:\Users\Ryba\Desktop\sjs 2015-02-04 22:04 - 2015-02-04 22:04 - 04177530 _____ () C:\Users\Ryba\Downloads\ 2015-02-03 23:46 - 2015-02-23 16:12 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0400343acf35a.job 2015-02-03 23:46 - 2015-02-23 15:51 - 00001048 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0400343c1db39.job 2015-02-03 23:46 - 2015-02-03 23:46 - 00004044 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d0400343c1db39 2015-02-03 23:46 - 2015-02-03 23:46 - 00003792 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore1d0400343acf35a 2015-02-01 19:53 - 2015-02-01 19:53 - 45109352 _____ (Skype Technologies S.A.) C:\Users\Ryba\Downloads\SkypeSetupFull.exe 2015-02-01 19:53 - 2015-02-01 19:53 - 00003160 _____ () C:\Windows\System32\Tasks\{B782BF8C-D7EA-4523-BD93-6F1118A1DEC5} 2015-01-31 13:37 - 2015-01-13 05:15 - 01540240 _____ (NVIDIA Corporation) C:\Windows\System32\nvhdagenco6420103.dll 2015-01-31 13:37 - 2015-01-13 05:15 - 00195728 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvhda64v.sys 2015-01-31 13:37 - 2015-01-13 05:15 - 00030536 _____ (NVIDIA Corporation) C:\Windows\System32\nvhdap64.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 32102544 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 25459856 _____ (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 24765584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 20465296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 17250776 _____ (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 16009120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 13295552 _____ (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 13210248 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 10774544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 10714488 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 10274448 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2015-01-31 13:37 - 2015-01-10 09:07 - 03607184 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 03298816 _____ (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 03245712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 02902456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 01895240 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispco6434725.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 01556808 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6434725.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00994712 _____ (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00969360 _____ (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00942736 _____ (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00929424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00906384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00877488 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00496456 _____ (NVIDIA Corporation) C:\Windows\System32\nvEncodeAPI64.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00399688 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00390472 _____ (NVIDIA Corporation) C:\Windows\System32\NvIFROpenGL.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00353040 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00345744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00305320 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00177624 _____ (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll 2015-01-31 13:37 - 2015-01-10 09:07 - 00164568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2015-01-31 13:36 - 2015-01-31 13:36 - 00000000 ____D () C:\NVIDIA 2015-01-31 12:49 - 2015-01-31 12:50 - 359471688 _____ (NVIDIA Corporation) C:\Users\Ryba\Downloads\347.25-desktop-win8-win7-winvista-64bit-international-whql.exe 2015-01-30 22:59 - 2015-01-30 22:59 - 00003160 _____ () C:\Windows\System32\Tasks\{EF30A85A-0121-4FC9-A236-C1231FE4E8B4} 2015-01-30 13:57 - 2015-01-30 13:57 - 00000000 ____D () C:\Users\Ryba\Documents\DyingLight 2015-01-30 12:25 - 2015-01-30 12:25 - 00000202 _____ () C:\Users\Ryba\Desktop\Dying Light.url 2015-01-25 17:58 - 2015-01-25 17:58 - 00003154 _____ () C:\Windows\System32\Tasks\{BF14BF94-4F9D-4B81-BDB6-E5693F3FA6A7} ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-23 16:20 - 2013-12-21 16:58 - 00000000 ____D () C:\Users\Ryba\AppData\Roaming\TS3Client 2015-02-23 16:20 - 2013-12-21 14:43 - 01089980 _____ () C:\Windows\WindowsUpdate.log 2015-02-23 16:19 - 2009-07-14 05:45 - 00025392 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-02-23 16:19 - 2009-07-14 05:45 - 00025392 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-02-23 16:18 - 2009-07-14 18:55 - 00737730 _____ () C:\Windows\System32\perfh015.dat 2015-02-23 16:18 - 2009-07-14 18:55 - 00154418 _____ () C:\Windows\System32\perfc015.dat 2015-02-23 16:18 - 2009-07-14 06:13 - 01662556 _____ () C:\Windows\System32\PerfStringBackup.INI 2015-02-23 16:12 - 2014-12-16 02:13 - 00018375 _____ () C:\Windows\setupact.log 2015-02-23 16:12 - 2013-12-21 15:45 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-02-23 16:12 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-02-23 15:51 - 2014-07-16 20:24 - 00001048 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cfa12b94c7393f.job 2015-02-23 00:16 - 2014-01-09 14:21 - 00000000 ____D () C:\Users\Ryba\AppData\Roaming\Skype 2015-02-23 00:16 - 2014-01-09 14:21 - 00000000 ____D () C:\ProgramData\Skype 2015-02-19 23:15 - 2013-12-21 16:58 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2015-02-17 23:40 - 2013-12-21 17:02 - 00000000 ____D () C:\Users\Ryba\AppData\Roaming\uTorrent 2015-02-17 20:11 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\tracing 2015-02-15 16:13 - 2013-12-23 13:19 - 00346112 _____ (Microsoft Corporation) C:\Windows\System32\bcdedit.exe 2015-02-15 16:13 - 2013-12-22 18:34 - 00605552 _____ (Microsoft Corporation) C:\Windows\System32\winload.exe 2015-02-13 20:49 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2015-02-11 18:38 - 2014-12-11 03:19 - 00000000 ____D () C:\Windows\System32\appraiser 2015-02-11 18:38 - 2014-09-12 14:30 - 00000000 ___SD () C:\Windows\System32\CompatTel 2015-02-11 18:38 - 2009-07-14 05:45 - 00341776 _____ () C:\Windows\System32\FNTCACHE.DAT 2015-02-11 18:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2015-02-11 16:25 - 2013-12-21 18:31 - 00000000 ____D () C:\ProgramData\Package Cache 2015-02-11 16:24 - 2014-01-08 18:39 - 00000000 ____D () C:\ProgramData\Microsoft Help 2015-02-11 16:23 - 2013-12-22 18:45 - 00000000 ____D () C:\Windows\System32\MRT 2015-02-11 16:21 - 2013-12-22 18:45 - 116773704 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2015-02-03 23:46 - 2014-07-16 20:24 - 00004044 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1cfa12b94c7393f 2015-02-03 23:46 - 2013-12-21 15:45 - 00003792 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-02-01 19:53 - 2014-09-14 23:54 - 00362029 _____ () C:\Users\Ryba\Downloads\sqlite3.dll 2015-01-31 13:38 - 2013-12-21 15:43 - 00000000 ____D () C:\ProgramData\NVIDIA 2015-01-30 23:14 - 2014-11-18 16:39 - 00000000 ____D () C:\Program Files (x86)\SpeedFan 2015-01-24 05:12 - 2014-11-10 15:43 - 00000182 _____ () C:\Users\Ryba\Desktop\set options.txt Some content of TEMP: ==================== C:\Users\Ryba\AppData\Local\Temp\sfamcc00001.dll ==================== Known DLLs (Whitelisted) ================ ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== Restore Points ========================= ==================== Memory info =========================== Percentage of memory in use: 12% Total physical RAM: 8175.12 MB Available physical RAM: 7169.7 MB Total Pagefile: 8173.32 MB Available Pagefile: 7261.85 MB Total Virtual: 8192 MB Available Virtual: 8191.88 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.69 GB) (Free:22.49 GB) NTFS Drive e: (GSP1RMCHPXFREO_PL_DVD) (CDROM) (Total:2.98 GB) (Free:0 GB) UDF Drive f: (KINGSTON) (Removable) (Total:3.85 GB) (Free:3.85 GB) FAT32 Drive g: (G:) (Fixed) (Total:931.51 GB) (Free:279.56 GB) NTFS Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS Drive y: (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 616C5298) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: E114D895) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.7 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 3.9 GB) (Disk ID: 04030201) Partition 1: (Active) - (Size=3.9 GB) - (Type=0B) LastRegBack: 2015-02-13 20:42 ==================== End Of Log ============================