Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Adware malware oursurfing.com - still exists after reformating pc

adware malware oursurfing reformat format

  • This topic is locked This topic is locked

#1
adriandallegrave

adriandallegrave

    Member

  • Member
  • PipPip
  • 29 posts
Hey guys! I think I really need your help.
 
I had a malware in my computer that changed my Chrome homepage to a website called oursurfing.com and opened ads everytime I clicked for the first time on any opened tabs. I deleted the unwanted extensions and changed all web addresses I didn't want from the Chrome settings page. The malware came back shortly after. Than I reformated my PC cleaning up all the drives and partitions. After that I was downloading the drivers and the ads started appearing again. I thought the malware was stored inside my pen drive so I installed Avast to check it. It came back clean as did the rest of the computer. 
 
I reformated the computer once again but this time upgrading from Windows 7 to Windows 8.1. Instead of just getting the ads and chrome's homepage changed the computer started installing many unwanted softwares by itself. While uninstalling any of them the computer would install many others. It took less than half an hour for me to have to clean everything up again. 
 
When I reformated the fourth time I did a full reset. It's a process that Windows 8.1 has and it took around 6 hours to complete. When it was done I still had the anoying ads but no software was installed without my knowledge. I downloaded Spyhunter, Malware Bytes, Stopzilla, Adwcleaner and Junkware Removal. I scanned the computer with all of them and they didn't find any virus.
 
I checked regedit but didn't find anything out of the ordinary. At least anything related to oursurfing.com. I also tried to use differents web browsers but to no results. 
 
I would really apreciate all the help you can give. Sorry for my bad English, I hope you're able to understand me. Thanks in advance.
 
Here are the log files generated by Farbar Recovery Scan Tool.
 
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:08-06-2015
Ran by Adrian (administrator) on ADRIAN-PC on 10-06-2015 19:05:25
Running from C:\Users\Adrian\Desktop
Loaded Profiles: Adrian (Available Profiles: Adrian)
Platform: Windows 8.1 Pro (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
(Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Enigma Software Group USA, LLC.) C:\Users\Adrian\AppData\Roaming\Enigma Software Group\sh_installer.exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-05-28] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [StereoLinksInstall] => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe [1064080 2015-05-28] (NVIDIA Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-06-10] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-06-10] (Avast Software s.r.o.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKU\S-1-5-21-3754158730-2153890883-1210738772-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/pt-br/?ocid=iehp
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-06-10] (Avast Software s.r.o.)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-10] (Avast Software s.r.o.)
Tcpip\Parameters: [DhcpNameServer] 80.82.64.136 8.8.8.8
 
FireFox:
========
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-05-28] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-05-28] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-06-09] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-06-09] (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-06-10]
 
Chrome: 
=======
CHR Profile: C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-09]
CHR Extension: (YouTube) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-09]
CHR Extension: (Google Search) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-09]
CHR Extension: (Bubble Shooter) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcdlnbbnjknldpikkllanljjbnegnnei [2015-06-09]
CHR Extension: (Facebook Customizer (by Adblock Plus)) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm [2015-06-09]
CHR Extension: (Planetarium) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gheikhdfflhlbemfmhcfpeblehemeklp [2015-06-09]
CHR Extension: (MagicScroll eBook Reader) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgnmgfdoiplfmhgghbmlphanpfmjble [2015-06-09]
CHR Extension: (AdBlock) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-06-09]
CHR Extension: (Bookmark Manager) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-06-09]
CHR Extension: (Avast Online Security) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-06-10]
CHR Extension: (Google Maps) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2015-06-09]
CHR Extension: (Google Wallet) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-09]
CHR Extension: (Gmail) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-09]
CHR Extension: (Writer) - C:\Users\Adrian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnengefjfhgcceajaepbjhanoojifmog [2015-06-09]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-06-10]
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-06-10] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-06-10] (Avast Software)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-28] (NVIDIA Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2015-05-29] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008 2015-05-28] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23006864 2015-05-28] (NVIDIA Corporation)
R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1026432 2015-06-10] (Enigma Software Group USA, LLC.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-06-10] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-06-10] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-06-10] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-06-10] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-06-10] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-10] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-06-10] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-06-10] ()
R3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [15920 2015-06-10] (Enigma Software Group USA, LLC.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2015-06-10] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [136408 2015-06-10] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-28] (NVIDIA Corporation)
S3 NVVADARM; C:\Windows\system32\drivers\nvvadarm.sys [39056 2015-05-28] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2015-05-28] (NVIDIA Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-06-10] (Avast Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-06-10 19:05 - 2015-06-10 19:05 - 00011688 _____ C:\Users\Adrian\Desktop\FRST.txt
2015-06-10 19:04 - 2015-06-10 19:05 - 00000000 ____D C:\FRST
2015-06-10 19:02 - 2015-06-10 19:02 - 02108928 _____ (Farbar) C:\Users\Adrian\Desktop\FRST64.exe
2015-06-10 18:56 - 2015-06-10 19:03 - 00000000 ____D C:\Users\Adrian\AppData\Roaming\uTorrent
2015-06-10 18:56 - 2015-06-10 18:56 - 01994592 _____ (BitTorrent Inc.) C:\Users\Adrian\Downloads\uTorrent.exe
2015-06-10 18:45 - 2015-06-10 18:45 - 00003332 _____ C:\WINDOWS\System32\Tasks\SpyHunter4Startup
2015-06-10 18:45 - 2015-06-10 18:45 - 00001103 _____ C:\Users\Adrian\Desktop\SpyHunter.lnk
2015-06-10 18:45 - 2015-06-10 18:45 - 00000000 ____D C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter
2015-06-10 18:45 - 2015-06-10 18:45 - 00000000 ____D C:\Users\Adrian\AppData\Roaming\Enigma Software Group
2015-06-10 18:45 - 2015-06-10 18:45 - 00000000 ____D C:\sh4ldr
2015-06-10 18:44 - 2015-06-10 18:44 - 00022704 _____ C:\WINDOWS\system32\Drivers\EsgScanner.sys
2015-06-10 18:44 - 2015-06-10 18:44 - 00000000 ____D C:\Program Files\Enigma Software Group
2015-06-10 18:38 - 2015-06-10 18:38 - 00000207 _____ C:\WINDOWS\tweaking.com-regbackup-ADRIAN-PC-Windows-8.1-Pro-(64-bit).dat
2015-06-10 18:38 - 2015-06-10 18:38 - 00000000 ____D C:\RegBackup
2015-06-10 18:38 - 2015-06-10 18:38 - 00000000 ____D C:\AdwCleaner
2015-06-10 18:33 - 2015-06-10 18:33 - 02943663 _____ (Thisisu) C:\Users\Adrian\Downloads\JRT.exe
2015-06-10 18:32 - 2015-06-10 18:32 - 02231296 _____ C:\Users\Adrian\Downloads\AdwCleaner.exe
2015-06-10 18:32 - 2015-06-10 18:32 - 00136408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-06-10 18:32 - 2015-06-10 18:32 - 00000000 _____ C:\autoexec.bat
2015-06-10 18:31 - 2015-06-10 18:31 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Adrian\Downloads\mbam-setup-2.1.6.1022.exe
2015-06-10 18:31 - 2015-06-10 18:31 - 00001118 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-06-10 18:31 - 2015-06-10 18:31 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-06-10 18:31 - 2015-06-10 18:31 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-06-10 18:31 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-06-10 18:31 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-06-10 18:31 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-06-10 18:30 - 2015-06-10 18:30 - 03109248 _____ (Enigma Software Group USA, LLC.) C:\Users\Adrian\Downloads\SpyHunter-Installer.exe
2015-06-10 18:25 - 2015-06-10 18:25 - 00000118 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-06-10 17:18 - 2015-06-10 17:18 - 00000000 ____D C:\Users\Adrian\AppData\Roaming\AVAST Software
2015-06-10 12:53 - 2015-06-10 12:53 - 00003924 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-06-10 12:53 - 2015-06-10 12:53 - 00001938 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-06-10 12:53 - 2015-06-10 12:53 - 00000000 ____D C:\WINDOWS\SysWOW64\vbox
2015-06-10 12:53 - 2015-06-10 12:53 - 00000000 ____D C:\WINDOWS\system32\vbox
2015-06-10 12:53 - 2015-06-10 12:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-06-10 12:53 - 2015-06-10 12:52 - 01047320 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-06-10 12:53 - 2015-06-10 12:52 - 00442264 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-06-10 12:53 - 2015-06-10 12:52 - 00364472 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\aswBoot.exe
2015-06-10 12:53 - 2015-06-10 12:52 - 00272248 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-06-10 12:53 - 2015-06-10 12:52 - 00137288 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-06-10 12:53 - 2015-06-10 12:52 - 00093528 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-06-10 12:53 - 2015-06-10 12:52 - 00089944 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-06-10 12:53 - 2015-06-10 12:52 - 00065736 _____ C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-06-10 12:53 - 2015-06-10 12:52 - 00029168 _____ C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-06-10 12:52 - 2015-06-10 12:52 - 00043112 _____ (Avast Software s.r.o.) C:\WINDOWS\avastSS.scr
2015-06-10 12:49 - 2015-06-10 12:49 - 00000000 ____D C:\Program Files\AVAST Software
2015-06-10 12:48 - 2015-06-10 12:48 - 06306016 _____ (AVAST Software s. r. o.) C:\Users\Adrian\Downloads\avast_free_antivirus_setup_online.exe
2015-06-10 12:48 - 2015-06-10 12:48 - 00353664 _____ (AVAST Software s. r. o.) C:\WINDOWS\AswCheck.exe
2015-06-10 12:48 - 2015-06-10 12:48 - 00000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2015-06-10 12:48 - 2015-06-10 12:48 - 00000000 ____D C:\ProgramData\AVAST Software
2015-06-10 12:26 - 2015-06-10 12:26 - 00019652 _____ C:\WINDOWS\system32\results.xml
2015-06-10 12:26 - 2015-06-10 12:26 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-06-10 12:09 - 2015-06-10 18:44 - 00003758 _____ C:\WINDOWS\System32\Tasks\AutoKMS
2015-06-10 12:09 - 2015-06-10 12:25 - 00000000 ____D C:\WINDOWS\AutoKMS
2015-06-10 12:08 - 2015-06-10 12:08 - 00000000 ____D C:\ProgramData\Microsoft Toolkit
2015-06-09 14:17 - 2015-06-09 14:17 - 00000000 __SHD C:\Recovery
2015-06-09 13:17 - 2015-06-10 18:43 - 00001892 _____ C:\WINDOWS\PFRO.log
2015-06-09 13:17 - 2015-06-09 09:43 - 00000000 ____D C:\WINDOWS\Panther
2015-06-09 12:17 - 2015-06-09 12:17 - 00000000 ____D C:\ProgramData\IntelDLM
2015-06-09 12:11 - 2015-06-09 12:11 - 00001182 _____ C:\Users\Public\Desktop\Intel® Driver Update Utility 2.0.lnk
2015-06-09 12:11 - 2015-06-09 12:11 - 00000000 ____D C:\Users\Adrian\AppData\Local\Intel
2015-06-09 12:11 - 2015-06-09 12:11 - 00000000 ____D C:\ProgramData\Package Cache
2015-06-09 12:11 - 2015-06-09 12:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility
2015-06-09 12:11 - 2015-06-09 12:11 - 00000000 ____D C:\Program Files (x86)\Intel Driver Update Utility
2015-06-09 12:10 - 2015-06-10 12:24 - 00000728 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® HD Graphics Control Panel.lnk
2015-06-09 12:10 - 2015-06-10 12:24 - 00000716 _____ C:\Users\Public\Desktop\Intel® HD Graphics Control Panel.lnk
2015-06-09 12:10 - 2015-06-09 12:11 - 00000000 ____D C:\Program Files\Intel
2015-06-09 12:10 - 2015-06-09 12:10 - 00000000 ____D C:\WINDOWS\LastGood
2015-06-09 12:10 - 2015-06-09 12:10 - 00000000 ____D C:\Program Files (x86)\Intel
2015-06-09 12:09 - 2015-06-10 12:26 - 00000000 ____D C:\Intel
2015-06-09 11:32 - 2015-06-10 18:43 - 00000000 ____D C:\ProgramData\NVIDIA
2015-06-09 11:32 - 2015-06-09 11:32 - 00000000 ____D C:\Users\Adrian\AppData\Local\NVIDIA Corporation
2015-06-09 11:32 - 2015-06-09 11:32 - 00000000 ____D C:\Users\Adrian\AppData\Local\NVIDIA
2015-06-09 11:32 - 2015-06-09 11:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-06-09 11:32 - 2015-05-28 04:04 - 01756424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2015-06-09 11:32 - 2015-05-28 04:04 - 01571696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2015-06-09 11:32 - 2015-05-28 04:04 - 01320304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2015-06-09 11:32 - 2015-05-28 04:04 - 01316000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2015-06-09 11:32 - 2015-05-28 01:15 - 06872904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-06-09 11:32 - 2015-05-28 01:15 - 03491984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-06-09 11:32 - 2015-05-28 01:15 - 02558608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-06-09 11:32 - 2015-05-28 01:15 - 00937288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-06-09 11:32 - 2015-05-28 01:15 - 00385168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-06-09 11:32 - 2015-05-28 01:15 - 00062608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-06-09 11:32 - 2015-05-28 00:52 - 00571024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2015-06-09 11:32 - 2015-05-27 07:48 - 04408727 _____ C:\WINDOWS\system32\nvcoproc.bin
2015-06-09 11:32 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2015-06-09 11:32 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2015-06-09 11:32 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2015-06-09 11:32 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2015-06-09 11:32 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2015-06-09 11:32 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2015-06-09 11:31 - 2015-06-09 11:32 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-06-09 11:31 - 2015-06-09 11:32 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-06-09 11:31 - 2015-06-09 11:31 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2015-06-09 11:31 - 2015-06-09 11:31 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-06-09 11:31 - 2015-05-29 15:49 - 00086528 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2015-06-09 11:31 - 2015-05-29 15:49 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 42719888 _____ C:\WINDOWS\system32\nvcompiler.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 37741712 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 30480528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 22946960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 17486856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 16185352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 15864064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 14987528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 14495448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 13304280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 12852152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 11830512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 10995528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-06-09 11:31 - 2015-05-28 04:04 - 03379680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 02986392 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 02932368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 02599056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 01898312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435306.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 01558848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 01557832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcvadgenco64.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 01557832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435306.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 01099808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 01059984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 01050440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00982856 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00974480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00939080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00878816 _____ C:\WINDOWS\system32\nvmcumd.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00503408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00408208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00407112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00364176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00195912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2015-06-09 11:31 - 2015-05-28 04:04 - 00175880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00154256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00150648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00128512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00117576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcaparm.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00052880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00048784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00039056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvadarm.sys
2015-06-09 11:31 - 2015-05-28 04:04 - 00038032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2015-06-09 11:31 - 2015-05-28 04:04 - 00031552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2015-06-09 11:31 - 2015-05-28 04:04 - 00030966 _____ C:\WINDOWS\system32\nvinfo.pb
2015-06-09 11:30 - 2015-06-09 11:32 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-06-09 11:30 - 2015-06-09 11:30 - 00000000 ____D C:\NVIDIA
2015-06-09 09:34 - 2015-06-10 18:51 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3754158730-2153890883-1210738772-1001
2015-06-09 09:34 - 2015-06-10 18:43 - 00001084 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-06-09 09:34 - 2015-06-10 18:39 - 00001088 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-09 09:34 - 2015-06-09 09:34 - 00004060 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-06-09 09:34 - 2015-06-09 09:34 - 00003824 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-06-09 09:34 - 2015-06-09 09:34 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-06-09 09:34 - 2015-06-09 09:34 - 00000000 ____D C:\Users\Adrian\AppData\Local\Google
2015-06-09 09:34 - 2015-06-09 09:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-06-09 09:34 - 2015-06-09 09:34 - 00000000 ____D C:\Program Files (x86)\Google
2015-06-09 09:33 - 2015-06-09 09:33 - 00000000 ____D C:\Users\Adrian\AppData\Roaming\Macromedia
2015-06-09 09:29 - 2015-06-10 18:43 - 00000000 ___RD C:\Users\Adrian\SkyDrive
2015-06-09 09:28 - 2015-06-09 09:28 - 00001446 _____ C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-06-09 09:28 - 2015-06-09 09:28 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD
2015-06-09 09:28 - 2015-06-09 09:28 - 00000000 ____D C:\Users\Adrian\AppData\Roaming\Adobe
2015-06-09 09:28 - 2015-06-09 09:28 - 00000000 ____D C:\Users\Adrian\AppData\Local\VirtualStore
2015-06-09 09:28 - 2015-06-09 09:28 - 00000000 ____D C:\Users\Adrian\AppData\Local\Packages
2015-06-09 09:27 - 2015-06-10 12:26 - 00000000 ____D C:\Users\Adrian
2015-06-09 09:27 - 2015-06-09 09:27 - 00000020 ___SH C:\Users\Adrian\ntuser.ini
2015-06-09 09:27 - 2013-08-22 12:36 - 00000000 ___RD C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-06-09 09:27 - 2013-08-22 12:36 - 00000000 ___RD C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-06-09 09:27 - 2013-08-22 12:36 - 00000000 ___RD C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-06-09 09:27 - 2013-08-22 12:36 - 00000000 ____D C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-06-09 09:26 - 2015-06-10 18:47 - 00818732 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-06-09 09:22 - 2015-06-10 19:01 - 00286490 _____ C:\WINDOWS\WindowsUpdate.log
2015-06-09 09:22 - 2015-06-09 09:22 - 00000000 ____D C:\WINDOWS\CSC
2015-06-09 09:22 - 2013-08-22 02:17 - 02407936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 24846712 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 24048456 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 17804608 _____ C:\WINDOWS\system32\igd11dxva64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 17329224 _____ C:\WINDOWS\SysWOW64\igd11dxva32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 15981056 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 10851840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 09528320 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 09422928 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 08631888 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 07500800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 06725162 _____ C:\WINDOWS\system32\igdclbif.bin
2015-05-29 15:49 - 2015-05-29 15:49 - 06160424 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 04892088 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2015-05-29 15:49 - 2015-05-29 15:49 - 04851848 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 03584512 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 03318272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 02944648 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 02813952 _____ C:\WINDOWS\system32\iglhxa64.cpa
2015-05-29 15:49 - 2015-05-29 15:49 - 02776408 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 02039296 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 01540904 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 01513304 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 01402336 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 01399240 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 01371136 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 01196336 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 01131008 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 01063936 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 01036392 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 01032808 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 01014368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00698880 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00671328 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00641530 _____ C:\WINDOWS\system32\FilmModeDetection.wmv
2015-05-29 15:49 - 2015-05-29 15:49 - 00623616 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00616280 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00472168 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00460048 _____ (Intel® Corporation) C:\WINDOWS\system32\Drivers\IntcDAud.sys
2015-05-29 15:49 - 2015-05-29 15:49 - 00448104 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00424960 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00403671 _____ C:\WINDOWS\system32\ImageStabilization.wmv
2015-05-29 15:49 - 2015-05-29 15:49 - 00392296 _____ C:\WINDOWS\system32\igfxTray.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00385024 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00375173 _____ C:\WINDOWS\system32\ColorImageEnhancement.wmv
2015-05-29 15:49 - 2015-05-29 15:49 - 00373760 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00355328 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00354136 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00344168 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00338536 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00338024 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00313448 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00290816 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00286208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00282696 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00279144 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00274776 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00263120 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00256000 _____ C:\WINDOWS\system32\igfxCPL.cpl
2015-05-29 15:49 - 2015-05-29 15:49 - 00248424 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00229888 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00220432 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00218728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00213504 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00213192 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00196704 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00192000 _____ C:\WINDOWS\system32\igdde64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00184352 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00183296 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4222.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00179200 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00178672 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00169984 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00156264 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2015-05-29 15:49 - 2015-05-29 15:49 - 00153088 _____ C:\WINDOWS\SysWOW64\igdde32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00152064 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00135000 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00127320 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00094208 _____ C:\WINDOWS\system32\IccLibDll_x64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00086528 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00086528 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00073728 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00060416 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00044025 _____ C:\WINDOWS\system32\iglhxo64.vp
2015-05-29 15:49 - 2015-05-29 15:49 - 00043816 _____ C:\WINDOWS\system32\iglhxc64_dev.vp
2015-05-29 15:49 - 2015-05-29 15:49 - 00043494 _____ C:\WINDOWS\system32\iglhxc64.vp
2015-05-29 15:49 - 2015-05-29 15:49 - 00043298 _____ C:\WINDOWS\system32\iglhxg64_dev.vp
2015-05-29 15:49 - 2015-05-29 15:49 - 00043256 _____ C:\WINDOWS\system32\iglhxg64.vp
2015-05-29 15:49 - 2015-05-29 15:49 - 00042079 _____ C:\WINDOWS\system32\iglhxo64_dev.vp
2015-05-29 15:49 - 2015-05-29 15:49 - 00036616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00035328 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00010752 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00010752 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00010240 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00005120 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2015-05-29 15:49 - 2015-05-29 15:49 - 00004008 _____ C:\WINDOWS\system32\iglhxs64.vp
2015-05-29 15:49 - 2015-05-29 15:49 - 00001125 _____ C:\WINDOWS\system32\iglhxa64.vp
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-06-10 19:00 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-06-10 18:43 - 2013-08-22 11:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-06-10 17:36 - 2013-08-22 10:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-06-10 12:54 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-06-10 12:24 - 2013-08-22 11:46 - 00016429 _____ C:\WINDOWS\setupact.log
2015-06-09 14:17 - 2013-08-22 12:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template
2015-06-09 14:17 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-06-09 13:17 - 2013-08-22 12:37 - 00001720 _____ C:\WINDOWS\DtcInstall.log
2015-06-09 11:34 - 2013-08-22 11:44 - 00336632 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-06-09 11:32 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\system32\restore
2015-06-09 11:32 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\Help
2015-06-09 09:28 - 2013-08-22 12:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-06-09 09:28 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\WinStore
2015-06-09 09:28 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\FileManager
2015-06-09 09:28 - 2013-08-22 12:36 - 00000000 ____D C:\WINDOWS\Camera
 
Some files in TEMP:
====================
C:\Users\Adrian\AppData\Local\Temp\PidGenX.dll
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-06-09 13:17
 
==================== End of log ============================
 
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version:08-06-2015
Ran by Adrian at 2015-06-10 19:05:37
Running from C:\Users\Adrian\Desktop
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3754158730-2153890883-1210738772-500 - Administrator - Disabled)
Adrian (S-1-5-21-3754158730-2153890883-1210738772-1001 - Administrator - Enabled) => C:\Users\Adrian
Guest (S-1-5-21-3754158730-2153890883-1210738772-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3754158730-2153890883-1210738772-1003 - Limited - Enabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
 
==================== Installed Programs ======================
 
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKU\S-1-5-21-3754158730-2153890883-1210738772-1001\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.)
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
Intel® Chipset Device Software (x32 Version: 10.0.27 - Intel® Corporation) Hidden
Intel® Driver Update Utility 2.0 (x32 Version: 2.0.0.29 - Intel) Hidden
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4222 - Intel Corporation)
Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel)
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 353.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.06 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.4.5.28 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.28 - NVIDIA Corporation)
NVIDIA Graphics Driver 353.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.06 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Miracast Virtual Audio 353.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 353.06 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.4.5.28 - NVIDIA Corporation) Hidden
SpyHunter 4 (HKLM-x32\...\SpyHunter) (Version: 4.19.13.4482 - Enigma Software Group, LLC)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3754158730-2153890883-1210738772-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
 
==================== Restore Points =========================
 
09-06-2015 11:32:31 Installed DirectX
10-06-2015 12:49:43 avast! antivirus system restore point
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2013-08-22 10:25 - 2013-08-22 10:25 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {13524987-0041-4F6F-A078-81237AD8B1FB} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [2015-06-10] ()
Task: {2EF831AC-101A-4656-9D3A-7441506B57E4} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2015-06-10] (Enigma Software Group USA, LLC.)
Task: {582104AC-9B6A-49C5-9D9C-1B27187FE57B} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-10] (Avast Software s.r.o.)
Task: {A3D26285-3F69-4F2D-9A8F-16728582C4A0} - System32\Tasks\AVAST Software\Avast Integrity Check => C:\WINDOWS\AswCheck.exe [2015-06-10] (AVAST Software s. r. o.)
Task: {B2C5A1A0-F7A5-40C5-BF25-C899328BDEBE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-09] (Google Inc.)
Task: {EFD97A77-3794-4621-8FE4-AB9962A6EDC3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-09] (Google Inc.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-06-09 11:32 - 2015-05-28 01:15 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-06-10 12:52 - 2015-06-10 12:52 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-06-10 12:52 - 2015-06-10 12:52 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-06-10 17:49 - 2015-06-10 17:49 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15061001\algo.dll
2015-06-09 11:32 - 2015-05-28 04:04 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-06-10 12:52 - 2015-06-10 12:52 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-06-09 14:39 - 2015-06-05 15:22 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libglesv2.dll
2015-06-09 14:39 - 2015-06-05 15:22 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libegl.dll
2015-06-09 14:39 - 2015-06-05 15:22 - 15003464 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\PepperFlash\pepflashplayer.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\Users\Adrian\SkyDrive:ms-properties
 
==================== Safe Mode (Whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3754158730-2153890883-1210738772-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 80.82.64.136 - 8.8.8.8
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run32: => "StereoLinksInstall"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{CCD1236B-A66F-433B-BC69-91DF293F0C2A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{D6CBE966-9424-45C5-88CC-0A2781A6B05A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{DDDDCDB5-FCAC-45D2-8FD0-A1E449E1A2A7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{3B3CA0A9-65FB-423F-8DE4-F65A0B27C8E0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{7E4C72FB-959C-451C-936E-85E43CE8C4BB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{06966DE9-2A1F-4F9D-BC96-A0224D2493B5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{CD3D6447-3A80-45E5-8AF4-ADE167B61D2F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{259DBD3C-CD55-4E2A-A937-3C3586E467E7}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{BAF10675-33F0-42C0-95B1-96CB9062063B}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{4092A7C9-9BC0-4212-B8A3-0DE599F00AA9}] => (Allow) C:\Users\Adrian\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{9A9EA548-FB1C-4C83-BE2B-A8AD79904FB7}] => (Allow) C:\Users\Adrian\AppData\Roaming\uTorrent\uTorrent.exe
 
==================== Faulty Device Manager Devices =============
 
Name: PCI Simple Communications Controller
Description: PCI Simple Communications Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (06/09/2015 11:33:58 AM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: The Desktop Window Manager has encountered a fatal error (0x8898008d)
 
 
System errors:
=============
Error: (06/10/2015 06:41:17 PM) (Source: bowser) (EventID: 8003) (User: )
Description: The master browser has received a server announcement from the computer RODRIGO-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{4E5CC265-0CE6-48B1-A06F-E2F8B9665826}.
The master browser is stopping or an election is being forced.
 
Error: (06/10/2015 06:38:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The SpyHunter 4 Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/10/2015 06:38:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Media Player Network Sharing Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.
 
Error: (06/10/2015 06:38:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Streamer Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/10/2015 06:38:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Network Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/10/2015 06:38:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA GeForce Experience Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/10/2015 06:38:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Print Spooler service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 5000 milliseconds: Restart the service.
 
Error: (06/10/2015 06:38:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Intel® HD Graphics Control Panel Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/10/2015 06:38:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Stereoscopic 3D Driver Service service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (06/10/2015 06:38:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Display Driver Service service terminated unexpectedly.  It has done this 1 time(s).
 
 
Microsoft Office:
=========================
Error: (06/09/2015 11:33:58 AM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: 0x8898008d
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-4790K CPU @ 4.00GHz
Percentage of memory in use: 27%
Total physical RAM: 8076.95 MB
Available physical RAM: 5834.58 MB
Total Pagefile: 9996.95 MB
Available Pagefile: 7343.84 MB
Total Virtual: 131072 MB
Available Virtual: 131071.84 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:223.48 GB) (Free:198.19 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:931.51 GB) (Free:930.12 GB) NTFS
Drive e: (IRM_CCSA_X64FRE_EN-US_DV5) (CDROM) (Total:3.63 GB) (Free:0 GB) UDF
Drive f: (SAMSUNG) (Fixed) (Total:931.51 GB) (Free:656.95 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 223.6 GB) (Disk ID: 7CCB641F)
Partition 1: (Active) - (Size=223.5 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 1C31C86A)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
 
========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: 66F970B1)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
 
==================== End of log ============================
 

  • 0

Advertisements


#2
pystryker

pystryker

    Trusted Helper

  • Malware Removal
  • 3,886 posts

Duplicate topic. Please see original post here: http://www.geekstogo...reformating-pc/
  • 0






Similar Topics


Also tagged with one or more of these keywords: adware, malware, oursurfing, reformat, format

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP