Wątek zamknięty

BSOD: prośba o pomoc w wyeliminowaniu problemu (logi OTL)

 
topik53
Nowy
Liczba postów: 1
Post: #1

BSOD: prośba o pomoc w wyeliminowaniu problemu (logi OTL)


Witam, po przeinstalowaniu systemu wywala mi BSOD.

Kod:
A problem has been detected and Windows has been shut down to prevent damage
to your computer.

The problem seems to be caused by the following file:  ntoskrnl.exe

KERNEL_DATA_INPAGE_ERROR

If this is the first time you've seen this stop error screen,
restart your computer. If this screen appears again, follow
these steps:

Check to make sure any new hardware or software is properly installed.
If this is a new installation, ask your hardware or software manufacturer
for any Windows updates you might need.

If problems continue, disable or remove any newly installed hardware
or software. Disable BIOS memory options such as caching or shadowing.
If you need to use safe mode to remove or disable components, restart
your computer, press F8 to select Advanced Startup Options, and then
select Safe Mode.

Technical Information:

*** STOP:  0x0000007a (0x0000000000000020, 0xffffffffc000009d, 0xfffffa80052a77c8,
0x0000000000000000)

*** ntoskrnl.exe - Address 0xfffff800030dbd00 base at 0xfffff8000305c000 DateStamp
0x4d9fdd5b
Prosze o instrukcje co mam dalej robic Uśmiechnięty
Edit:
ok dodaje logi OTL i poprawilem temat Uśmiechnięty
Kod:
OTL logfile created on:  2014-04-09 15: 04: 48 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C: \Users\Holek\Downloads
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale:  00000415 | Country:  Polska | Language:  PLK | Date Format:  yyyy-MM-dd

4,00 Gb Total Physical Memory | 2,53 Gb Available Physical Memory | 63,41% Memory free
7,99 Gb Paging File | 6,30 Gb Available in Paging File | 78,83% Paging File free
Paging file location(s):  ?: \pagefile.sys [binary data]

%SystemDrive% = C:  | %SystemRoot% = C: \Windows | %ProgramFiles% = C: \Program Files (x86)
Drive C:  | 99,90 Gb Total Space | 67,64 Gb Free Space | 67,70% Space Free | Partition Type:  NTFS
Drive G:  | 7,47 Gb Total Space | 2,73 Gb Free Space | 36,53% Space Free | Partition Type:  NTFS

Computer Name:  HOLEK-KOMPUTER | User Name:  Holek | Logged in as Administrator.
Boot Mode:  Normal | Scan Mode:  Current user | Include 64bit Scans
Company Name Whitelist:  Off | Skip Microsoft Files:  Off | No Company Name Whitelist:  On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2014-04-09 15: 04: 37 | 000,602,112 | ---- | M] (OldTimer Tools) -- C: \Users\Holek\Downloads\OTL.exe
PRC - [2014-04-09 14: 56: 16 | 000,553,984 | ---- | M] (Cherished Technololgy LIMITED) -- C: \ProgramData\WPM\wprotectmanager.exe
PRC - [2014-04-08 22: 04: 06 | 006,118,400 | ---- | M] (Spotify Ltd) -- C: \Users\Holek\AppData\Roaming\Spotify\spotify.exe
PRC - [2014-04-08 22: 04: 05 | 000,603,648 | ---- | M] () -- C: \Users\Holek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
PRC - [2014-04-08 21: 14: 55 | 001,864,368 | ---- | M] (Adobe Systems, Inc.) -- C: \Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_182.exe
PRC - [2014-03-31 05: 23: 12 | 000,688,240 | ---- | M] (Cherished Technololgy LIMITED) -- C: \ProgramData\IePluginService\PluginService.exe
PRC - [2014-03-15 10: 40: 20 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C: \Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2014-03-04 13: 32: 56 | 000,411,936 | ---- | M] (NVIDIA Corporation) -- C: \Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2014-02-05 11: 32: 47 | 002,234,144 | ---- | M] (NVIDIA Corporation) -- C: \Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
PRC - [2014-02-05 11: 32: 34 | 001,593,632 | ---- | M] (NVIDIA Corporation) -- C: \Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
PRC - [2013-12-11 19: 40: 14 | 003,126,272 | ---- | M] () -- C: \Program Files (x86)\WhatPulse2\whatpulse.exe
PRC - [2013-10-25 12: 56: 14 | 004,618,504 | ---- | M] (BinarySense, Inc.) -- C: \Program Files (x86)\BinarySense\HDDlife 4\HDDlifePro.exe
PRC - [2013-10-25 12: 55: 34 | 002,070,792 | ---- | M] (BinarySense, Inc.) -- C: \Program Files (x86)\Common Files\BinarySense\hldasvc.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2014-04-09 14: 57: 14 | 004,110,728 | ---- | M] () -- c: \progra~2\optimi~1\optpro~2.dll
MOD - [2014-04-08 22: 04: 06 | 036,967,424 | ---- | M] () -- C: \Users\Holek\AppData\Roaming\Spotify\Data\libcef.dll
MOD - [2014-04-08 22: 04: 05 | 000,887,808 | ---- | M] () -- C: \Users\Holek\AppData\Roaming\Spotify\Data\libglesv2.dll
MOD - [2014-04-08 22: 04: 05 | 000,603,648 | ---- | M] () -- C: \Users\Holek\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
MOD - [2014-04-08 22: 04: 05 | 000,109,568 | ---- | M] () -- C: \Users\Holek\AppData\Roaming\Spotify\Data\libegl.dll
MOD - [2014-04-08 21: 14: 54 | 016,351,920 | ---- | M] () -- C: \Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll
MOD - [2014-03-15 10: 40: 38 | 003,642,480 | ---- | M] () -- C: \Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013-12-11 19: 40: 14 | 003,126,272 | ---- | M] () -- C: \Program Files (x86)\WhatPulse2\whatpulse.exe
MOD - [2013-04-08 09: 34: 54 | 000,137,728 | ---- | M] () -- C: \Program Files (x86)\WhatPulse2\CrashRpt1402.dll
MOD - [2011-08-17 16: 04: 34 | 000,040,960 | ---- | M] () -- C: \Program Files (x86)\BinarySense\HDDlife 4\laRTLu.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV: [b]64bit: [/b] - [2014-02-05 11: 32: 24 | 016,941,856 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C: \Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)
SRV: [b]64bit: [/b] - [2009-07-14 03: 41: 27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C: \Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV: [b]64bit: [/b] - [2009-07-14 03: 40: 01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C: \Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV: [b]64bit: [/b] - [2009-07-14 03: 39: 31 | 000,045,568 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C: \Windows\SysNative\rundll32.exe -- (70e6ca8c)
SRV - [2014-04-09 14: 57: 22 | 000,150,504 | ---- | M] (PriceMeter) [On_Demand | Stopped] -- C: \Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe -- (pricemeterliveUpdatem)
SRV - [2014-04-09 14: 57: 22 | 000,150,504 | ---- | M] (PriceMeter) [Auto | Stopped] -- C: \Program Files (x86)\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe -- (pricemeterliveUpdate)
SRV - [2014-04-09 14: 56: 16 | 000,553,984 | ---- | M] (Cherished Technololgy LIMITED) [Auto | Running] -- C: \ProgramData\WPM\wprotectmanager.exe -- (Wpm)
SRV - [2014-04-08 23: 07: 25 | 000,257,712 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C: \Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014-03-31 05: 23: 12 | 000,688,240 | ---- | M] (Cherished Technololgy LIMITED) [Auto | Running] -- C: \ProgramData\IePluginService\PluginService.exe -- (IePluginService)
SRV - [2014-03-15 10: 40: 31 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C: \Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014-03-04 13: 32: 56 | 000,411,936 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C: \Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2014-02-25 23: 57: 46 | 000,568,512 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C: \Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2014-02-05 11: 32: 34 | 001,593,632 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C: \Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService)
SRV - [2013-10-25 12: 55: 34 | 002,070,792 | ---- | M] (BinarySense, Inc.) [Auto | Running] -- C: \Program Files (x86)\Common Files\BinarySense\hldasvc.exe -- (HDDlife HDD Access service)
SRV - [2013-03-01 03: 48: 58 | 000,118,520 | ---- | M] (Riverbed Technology, Inc.) [On_Demand | Stopped] -- C: \Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd)
SRV - [2010-03-18 13: 16: 28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C: \Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009-06-10 23: 23: 09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C: \Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV: [b]64bit: [/b] - [2013-12-27 20: 42: 26 | 000,039,200 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C: \Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
DRV: [b]64bit: [/b] - [2013-11-28 15: 38: 18 | 000,197,408 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C: \Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV: [b]64bit: [/b] - [2013-03-01 03: 49: 12 | 000,036,600 | ---- | M] (Riverbed Technology, Inc.) [Kernel | Auto | Running] -- C: \Windows\SysNative\drivers\npf.sys -- (NPF)
DRV: [b]64bit: [/b] - [2011-09-29 11: 30: 34 | 000,646,248 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C: \Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV: [b]64bit: [/b] - [2011-09-16 09: 12: 58 | 000,032,360 | ---- | M] (Realtek Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\RtVlan620.sys -- (RTVLANPT)
DRV: [b]64bit: [/b] - [2011-06-15 15: 11: 20 | 000,058,472 | ---- | M] (Realtek Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\RtTeam60.sys -- (TEAM)
DRV: [b]64bit: [/b] - [2011-06-15 15: 11: 20 | 000,058,472 | ---- | M] (Realtek Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\RtTeam60.sys -- (RTTEAMPT)
DRV: [b]64bit: [/b] - [2011-06-15 15: 11: 20 | 000,027,136 | ---- | M] (Realtek                                            ) [Kernel | Auto | Running] -- C: \Windows\SysNative\drivers\RtNdPt60.sys -- (RtNdPt60)
DRV: [b]64bit: [/b] - [2010-11-21 05: 24: 33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV: [b]64bit: [/b] - [2010-11-21 05: 23: 48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV: [b]64bit: [/b] - [2010-11-21 05: 23: 47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV: [b]64bit: [/b] - [2010-11-21 05: 23: 47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV: [b]64bit: [/b] - [2009-07-14 03: 52: 20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV: [b]64bit: [/b] - [2009-07-14 03: 48: 04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV: [b]64bit: [/b] - [2009-07-14 03: 47: 48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C: \Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV: [b]64bit: [/b] - [2009-07-14 03: 45: 55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV: [b]64bit: [/b] - [2009-06-10 22: 34: 33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV: [b]64bit: [/b] - [2009-06-10 22: 34: 28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV: [b]64bit: [/b] - [2009-06-10 22: 34: 23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV: [b]64bit: [/b] - [2009-06-10 22: 31: 59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C: \Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV: [b]64bit: [/b] - [2009-05-04 18: 30: 28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C: \Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie)
DRV: [b]64bit: [/b] - [2009-04-28 03: 03: 42 | 000,067,128 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C: \Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV: [b]64bit: [/b] - [2009-04-28 03: 03: 42 | 000,028,216 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C: \Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV: [b]64bit: [/b] - [2009-04-03 06: 39: 58 | 000,034,872 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C: \Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV - [2009-07-14 03: 19: 10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C: \Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE: [b]64bit: [/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE: [b]64bit: [/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE: [b]64bit: [/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE: [b]64bit: [/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE: [b]64bit: [/b] - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE: [b]64bit: [/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}:  "URL" = http: //www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE: [b]64bit: [/b] - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}:  "URL" = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C: \Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}:  "URL" = http: //www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}:  "URL" = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE - HKCU\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}:  "URL" = http: //www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}:  "URL" = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings:  "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename:  "qone8"
FF - prefs.js..browser.search.selectedEngine:  "qone8"
FF - prefs.js..browser.startup.homepage:  "http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569"
FF - prefs.js..extensions.enabledAddons:  quick_start%40gmail.com: 3.1.9
FF - prefs.js..extensions.enabledAddons:  %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D: 28.0
FF - user.js - File not found

FF: [b]64bit: [/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer:  C: \Windows\system32\Macromed\Flash\NPSWF64_13_0_0_182.dll File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer:  C: \Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2:  C: \Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2:  C: \Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision:  C: \Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming:  C: \Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin:  C: \Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.updatepm.com/PriceMeterLiveUpdate Update;version=3:  C: \Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll (PriceMeter)
FF - HKLM\Software\MozillaPlugins\@tools.updatepm.com/PriceMeterLiveUpdate Update;version=9:  C: \Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll (PriceMeter)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin:  C: \Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\quick_start@gmail.com:  C: \Users\Holek\AppData\Roaming\Mozilla\Firefox\Profiles\dt5swjww.default\extensions\quick_start@gmail.​com [2014-04-09 14: 55: 50 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Components:  C: \Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Plugins:  C: \Program Files (x86)\Mozilla Firefox\plugins

[2014-04-08 20: 38: 59 | 000,000,000 | ---D | M] (No name found) -- C: \Users\Holek\AppData\Roaming\mozilla\Extensions
[2014-04-09 14: 55: 50 | 000,000,000 | ---D | M] (No name found) -- C: \Users\Holek\AppData\Roaming\mozilla\Firefox\Profiles\dt5swjww.default\extensions
[2014-04-09 14: 55: 50 | 000,000,000 | ---D | M] ("Quick Start") -- C: \Users\Holek\AppData\Roaming\mozilla\Firefox\Profiles\dt5swjww.default\extensions\quick_start@gmail.​com
[2014-04-08 21: 23: 03 | 000,957,290 | ---- | M] () (No name found) -- C: \Users\Holek\AppData\Roaming\mozilla\firefox\profiles\dt5swjww.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2014-04-08 20: 38: 46 | 000,000,000 | ---D | M] (No name found) -- C: \Program Files (x86)\mozilla firefox\browser\extensions
[2014-04-08 20: 38: 46 | 000,000,000 | ---D | M] (Default) -- C: \Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

O1 HOSTS File:  ([2009-06-10 23: 00: 26 | 000,000,824 | ---- | M]) - C: \Windows\SysNative\drivers\etc\hosts
O2 - BHO:  (IETabPage Class) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C: \Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited)
O2 - BHO:  (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C: \Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO:  (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C: \Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4: [b]64bit: [/b] - HKLM..\Run:  [NvBackend] C: \Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
O4: [b]64bit: [/b] - HKLM..\Run:  [RtHDVCpl] C: \Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4: [b]64bit: [/b] - HKLM..\Run:  [ShadowPlay] C: \Windows\SysNative\nvspcap64.dll (NVIDIA Corporation)
O4 - HKCU..\Run:  [Device Doctor] C: \Program Files (x86)\Device Doctor\DDLauncher.exe (Device Doctor Software Inc.)
O4 - HKCU..\Run:  [Optimizer Pro] C: \Program Files (x86)\Optimizer Pro\OptProLauncher.exe (PC Utilities Software Limited)
O4 - HKCU..\Run:  [Spotify] C: \Users\Holek\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd)
O4 - HKCU..\Run:  [WhatPulse] C: \Program Files (x86)\WhatPulse2\whatpulse.exe ()
O4 - Startup:  C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HDDlife.lnk = C: \Program Files (x86)\BinarySense\HDDlife 4\HDDlifePro.exe (BinarySense, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer:  NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer:  NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System:  ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System:  ConsentPromptBehaviorUser = 3
O13[b]64bit: [/b] - gopher Prefix:  missing
O13 - gopher Prefix:  missing
O16 - DPF:  {D27CDB6E-AE6D-11CF-96B8-444553540000} http: //fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters:  DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{256A77EB-184F-46C4-ACF7-C55291461B3B}:  DhcpNameServer = 192.168.2.1
O20: [b]64bit: [/b] - AppInit_DLLs:  (C: \PROGRA~2\OPTIMI~1\OPTPRO~3.DLL) - C: \PROGRA~2\OPTIMI~1\OPTPRO~3.DLL ()
O20 - AppInit_DLLs:  (c: \progra~2\optimi~1\optpro~2.dll) - c: \progra~2\optimi~1\optpro~2.dll ()
O20: [b]64bit: [/b] - HKLM Winlogon:  Shell - (explorer.exe) - C: \Windows\explorer.exe (Microsoft Corporation)
O20: [b]64bit: [/b] - HKLM Winlogon:  UserInit - (C: \Windows\system32\userinit.exe) - C: \Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon:  Shell - (explorer.exe) - C: \Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon:  UserInit - (userinit.exe) - C: \Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21: [b]64bit: [/b] - SSODL:  WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL:  WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom:  AutoRun - 1
O32 - AutoRun File - [2009-10-27 01: 00: 00 | 000,000,043 | ---- | M] () - G: \autorun.inf -- [ NTFS ]
O34 - HKLM BootExecute:  (autocheck autochk *)
O35: [b]64bit: [/b] - HKLM\..comfile [open] -- "%1" %*
O35: [b]64bit: [/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37: [b]64bit: [/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37: [b]64bit: [/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows:  (ServerDll=winsrv: UserServerDllInitialization,3)
O38 - SubSystems\\Windows:  (ServerDll=winsrv: ConServerDllInitialization,2)
O38 - SubSystems\\Windows:  (ServerDll=sxssrv,4)

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2014-04-09 14: 57: 26 | 000,000,000 | ---D | C] -- C: \AMD
[2014-04-09 14: 57: 22 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\PriceMeterLiveUpdate
[2014-04-09 14: 57: 22 | 000,000,000 | ---D | C] -- C: \ProgramData\PriceMeterLiveUpdate
[2014-04-09 14: 57: 22 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\PriceMeterLiveUpdate
[2014-04-09 14: 57: 21 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\PriceMeterUpdater
[2014-04-09 14: 57: 21 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PriceMeter
[2014-04-09 14: 57: 21 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\PriceMeter
[2014-04-09 14: 57: 14 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
[2014-04-09 14: 57: 11 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Optimizer Pro
[2014-04-09 14: 56: 23 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\SupTab
[2014-04-09 14: 56: 22 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\SupTab
[2014-04-09 14: 56: 22 | 000,000,000 | ---D | C] -- C: \ProgramData\IePluginService
[2014-04-09 14: 56: 16 | 000,000,000 | ---D | C] -- C: \ProgramData\WPM
[2014-04-09 14: 55: 56 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\qone8
[2014-04-09 14: 55: 51 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\Device Doctor
[2014-04-09 14: 55: 49 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Device Doctor
[2014-04-09 14: 55: 49 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Device Doctor
[2014-04-09 09: 12: 39 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\BinarySense
[2014-04-09 09: 12: 36 | 000,000,000 | ---D | C] -- C: \ProgramData\TEMP
[2014-04-09 09: 12: 36 | 000,000,000 | ---D | C] -- C: \ProgramData\Licenses
[2014-04-09 09: 12: 34 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\HDDlife
[2014-04-09 09: 12: 34 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Common Files\BinarySense
[2014-04-09 09: 12: 34 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\BinarySense
[2014-04-09 00: 40: 43 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\.minecraft
[2014-04-09 00: 40: 24 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\WinRAR
[2014-04-09 00: 40: 14 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014-04-09 00: 40: 14 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014-04-09 00: 40: 11 | 000,000,000 | ---D | C] -- C: \Program Files\WinRAR
[2014-04-09 00: 28: 51 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft Pingwin Pack 2
[2014-04-09 00: 28: 41 | 000,000,000 | ---D | C] -- C: \Minecraft Pingwin Pack 2
[2014-04-09 00: 28: 33 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\Programs
[2014-04-09 00: 23: 40 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\NVIDIA
[2014-04-09 00: 23: 08 | 000,000,000 | ---D | C] -- C: \ProgramData\Oracle
[2014-04-09 00: 23: 05 | 000,000,000 | ---D | C] -- C: \ProgramData\Sun
[2014-04-09 00: 23: 05 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Common Files\Java
[2014-04-09 00: 22: 58 | 000,264,616 | ---- | C] (Oracle Corporation) -- C: \Windows\SysWow64\javaws.exe
[2014-04-09 00: 22: 55 | 000,175,016 | ---- | C] (Oracle Corporation) -- C: \Windows\SysWow64\javaw.exe
[2014-04-09 00: 22: 55 | 000,174,504 | ---- | C] (Oracle Corporation) -- C: \Windows\SysWow64\java.exe
[2014-04-09 00: 22: 55 | 000,096,168 | ---- | C] (Oracle Corporation) -- C: \Windows\SysWow64\WindowsAccessBridge-32.dll
[2014-04-09 00: 22: 55 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2014-04-09 00: 22: 50 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Java
[2014-04-09 00: 04: 27 | 000,000,000 | ---D | C] -- C: \Windows\Minidump
[2014-04-08 23: 16: 52 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
[2014-04-08 22: 58: 55 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\LolClient
[2014-04-08 22: 04: 07 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\Spotify
[2014-04-08 22: 03: 13 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Spotify
[2014-04-08 21: 39: 49 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysWow64\D3DX9_39.dll
[2014-04-08 21: 39: 49 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysWow64\D3DCompiler_39.dll
[2014-04-08 21: 39: 49 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysWow64\XAudio2_2.dll
[2014-04-08 21: 39: 49 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysWow64\d3dx10_39.dll
[2014-04-08 21: 39: 49 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysWow64\XAPOFX1_1.dll
[2014-04-08 21: 38: 49 | 000,000,000 | -HSD | C] -- C: \Windows\SysWow64\AI_RecycleBin
[2014-04-08 21: 38: 48 | 000,000,000 | ---D | C] -- C: \Riot Games
[2014-04-08 21: 38: 48 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
[2014-04-08 21: 37: 28 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\PMB Files
[2014-04-08 21: 37: 27 | 000,000,000 | ---D | C] -- C: \ProgramData\PMB Files
[2014-04-08 21: 37: 25 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Pando Networks
[2014-04-08 21: 32: 45 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Riot Games
[2014-04-08 21: 24: 32 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\WhatPulse
[2014-04-08 21: 24: 32 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\CrashRpt
[2014-04-08 21: 23: 56 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
[2014-04-08 21: 23: 50 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\WinPcap
[2014-04-08 21: 23: 36 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\WhatPulse
[2014-04-08 21: 23: 34 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\WhatPulse2
[2014-04-08 21: 21: 43 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Common Files\Steam
[2014-04-08 21: 21: 42 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
[2014-04-08 21: 21: 42 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Steam
[2014-04-08 21: 17: 30 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\TS3Client
[2014-04-08 21: 17: 24 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2014-04-08 21: 17: 22 | 000,000,000 | ---D | C] -- C: \Program Files\TeamSpeak 3 Client
[2014-04-08 21: 15: 01 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Macromedia
[2014-04-08 21: 15: 01 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\Macromedia
[2014-04-08 21: 15: 01 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Adobe
[2014-04-08 21: 14: 57 | 000,000,000 | ---D | C] -- C: \ProgramData\McAfee
[2014-04-08 21: 14: 55 | 000,692,400 | ---- | C] (Adobe Systems Incorporated) -- C: \Windows\SysWow64\FlashPlayerApp.exe
[2014-04-08 21: 14: 55 | 000,070,832 | ---- | C] (Adobe Systems Incorporated) -- C: \Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014-04-08 21: 14: 54 | 000,000,000 | ---D | C] -- C: \Windows\SysWow64\Macromed
[2014-04-08 21: 14: 53 | 000,000,000 | ---D | C] -- C: \Windows\SysNative\Macromed
[2014-04-08 21: 14: 26 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\Adobe
[2014-04-08 21: 02: 47 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysNative\d3dx11_43.dll
[2014-04-08 21: 02: 47 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysWow64\d3dx11_43.dll
[2014-04-08 21: 02: 46 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysNative\d3dx10_43.dll
[2014-04-08 21: 02: 46 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysWow64\d3dx10_43.dll
[2014-04-08 21: 02: 45 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysNative\D3DX9_43.dll
[2014-04-08 21: 02: 45 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C: \Windows\SysWow64\D3DX9_43.dll
[2014-04-08 21: 01: 25 | 001,179,576 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvspcap64.dll
[2014-04-08 21: 01: 24 | 001,048,152 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvspcap.dll
[2014-04-08 21: 00: 46 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\NVIDIA
[2014-04-08 20: 59: 24 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
[2014-04-08 20: 58: 23 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\AGEIA Technologies
[2014-04-08 20: 58: 01 | 000,000,000 | ---D | C] -- C: \ProgramData\NVIDIA
[2014-04-08 20: 57: 50 | 000,599,840 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvStreaming.exe
[2014-04-08 20: 56: 00 | 006,714,312 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvcpl.dll
[2014-04-08 20: 56: 00 | 003,497,816 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvsvc64.dll
[2014-04-08 20: 56: 00 | 002,558,808 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvsvcr.dll
[2014-04-08 20: 56: 00 | 000,386,336 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvmctray.dll
[2014-04-08 20: 56: 00 | 000,064,968 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvshext.dll
[2014-04-08 20: 55: 20 | 000,062,408 | ---- | C] (Khronos Group) -- C: \Windows\SysNative\OpenCL.dll
[2014-04-08 20: 55: 20 | 000,054,216 | ---- | C] (Khronos Group) -- C: \Windows\SysWow64\OpenCL.dll
[2014-04-08 20: 54: 29 | 000,000,000 | ---D | C] -- C: \ProgramData\NVIDIA Corporation
[2014-04-08 20: 54: 27 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\NVIDIA Corporation
[2014-04-08 20: 49: 33 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Microsoft.NET
[2014-04-08 20: 48: 16 | 018,302,384 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvwgf2umx.dll
[2014-04-08 20: 48: 16 | 001,515,296 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvhdagenco6420103.dll
[2014-04-08 20: 48: 16 | 000,197,408 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\drivers\nvhda64v.sys
[2014-04-08 20: 48: 16 | 000,039,200 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\drivers\nvvad64v.sys
[2014-04-08 20: 48: 16 | 000,035,104 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvaudcap64v.dll
[2014-04-08 20: 48: 16 | 000,033,056 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvaudcap32v.dll
[2014-04-08 20: 48: 16 | 000,031,520 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvhdap64.dll
[2014-04-08 20: 48: 15 | 031,474,976 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvoglv64.dll
[2014-04-08 20: 48: 15 | 025,255,256 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvcompiler.dll
[2014-04-08 20: 48: 15 | 023,716,640 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvoglv32.dll
[2014-04-08 20: 48: 15 | 017,755,424 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvd3dumx.dll
[2014-04-08 20: 48: 15 | 017,561,544 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvcompiler.dll
[2014-04-08 20: 48: 15 | 015,783,992 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvwgf2um.dll
[2014-04-08 20: 48: 15 | 014,709,720 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvd3dum.dll
[2014-04-08 20: 48: 15 | 011,636,176 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvcuda.dll
[2014-04-08 20: 48: 15 | 011,589,272 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvopencl.dll
[2014-04-08 20: 48: 15 | 009,728,064 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvcuda.dll
[2014-04-08 20: 48: 15 | 009,690,424 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvopencl.dll
[2014-04-08 20: 48: 15 | 003,143,456 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvcuvid.dll
[2014-04-08 20: 48: 15 | 003,093,280 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvapi64.dll
[2014-04-08 20: 48: 15 | 002,958,792 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvcuvid.dll
[2014-04-08 20: 48: 15 | 002,783,008 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvcuvenc.dll
[2014-04-08 20: 48: 15 | 002,715,264 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvapi.dll
[2014-04-08 20: 48: 15 | 002,411,976 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvcuvenc.dll
[2014-04-08 20: 48: 15 | 001,885,472 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvdispco6433523.dll
[2014-04-08 20: 48: 15 | 001,516,488 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvdispgenco6433523.dll
[2014-04-08 20: 48: 15 | 000,947,808 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvumdshimx.dll
[2014-04-08 20: 48: 15 | 000,892,704 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\NvIFR64.dll
[2014-04-08 20: 48: 15 | 000,877,856 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\NvFBC64.dll
[2014-04-08 20: 48: 15 | 000,863,064 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\NvIFR.dll
[2014-04-08 20: 48: 15 | 000,846,168 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\NvFBC.dll
[2014-04-08 20: 48: 15 | 000,832,936 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvumdshim.dll
[2014-04-08 20: 48: 15 | 000,353,504 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvoglshim64.dll
[2014-04-08 20: 48: 15 | 000,305,600 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvoglshim32.dll
[2014-04-08 20: 48: 15 | 000,174,296 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysNative\nvinitx.dll
[2014-04-08 20: 48: 15 | 000,148,016 | ---- | C] (NVIDIA Corporation) -- C: \Windows\SysWow64\nvinit.dll
[2014-04-08 20: 46: 34 | 000,000,000 | ---D | C] -- C: \Program Files\NVIDIA Corporation
[2014-04-08 20: 46: 09 | 000,000,000 | ---D | C] -- C: \NVIDIA
[2014-04-08 20: 38: 55 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Mozilla
[2014-04-08 20: 38: 55 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\Mozilla
[2014-04-08 20: 38: 46 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Mozilla Maintenance Service
[2014-04-08 20: 38: 46 | 000,000,000 | ---D | C] -- C: \ProgramData\Mozilla
[2014-04-08 20: 38: 45 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Mozilla Firefox
[2014-04-08 20: 35: 09 | 000,000,000 | ---D | C] -- C: \Windows\Panther
[2014-04-08 20: 31: 37 | 000,000,000 | ---D | C] -- C: \Program Files\DIFX
[2014-04-08 20: 31: 33 | 000,034,872 | ---- | C] (Advanced Micro Devices) -- C: \Windows\SysNative\drivers\usbfilter.sys
[2014-04-08 20: 31: 33 | 000,000,000 | ---D | C] -- C: \Windows\SysNative\DRVSTORE
[2014-04-08 20: 31: 33 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\AMD
[2014-04-08 20: 30: 54 | 000,000,000 | -HSD | C] -- C: \Windows\Installer
[2014-04-08 20: 30: 50 | 000,000,000 | ---D | C] -- C: \Program Files\ATI Technologies
[2014-04-08 20: 30: 48 | 000,000,000 | ---D | C] -- C: \Program Files\ATI
[2014-04-08 20: 29: 22 | 000,067,128 | ---- | C] (Advanced Micro Devices) -- C: \Windows\SysNative\drivers\amdsata.sys
[2014-04-08 20: 29: 22 | 000,028,216 | ---- | C] (Advanced Micro Devices) -- C: \Windows\SysNative\drivers\amdxata.sys
[2014-04-08 20: 29: 22 | 000,016,440 | ---- | C] (Advanced Micro Devices Inc.) -- C: \Windows\SysNative\drivers\AtiPcie.sys
[2014-04-08 20: 28: 58 | 000,000,000 | ---D | C] -- C: \Windows\SysWow64\RTCOM
[2014-04-08 20: 28: 58 | 000,000,000 | ---D | C] -- C: \Program Files\Realtek
[2014-04-08 20: 28: 51 | 002,674,320 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\SysNative\RtPgEx64.dll
[2014-04-08 20: 28: 51 | 002,605,400 | ---- | C] (Waves Audio Ltd.) -- C: \Windows\SysNative\WavesGUILib.dll
[2014-04-08 20: 28: 51 | 001,560,168 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\SysNative\RTSnMg64.cpl
[2014-04-08 20: 28: 51 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C: \Windows\SysNative\SRSTSX64.dll
[2014-04-08 20: 28: 51 | 000,331,880 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\SysNative\RtlCPAPI64.dll
[2014-04-08 20: 28: 51 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C: \Windows\SysNative\SRSTSH64.dll
[2014-04-08 20: 28: 51 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C: \Windows\SysNative\SRSHP64.dll
[2014-04-08 20: 28: 51 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C: \Windows\SysNative\SRSWOW64.dll
[2014-04-08 20: 28: 50 | 003,615,888 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\SysNative\RtkAPO64.dll
[2014-04-08 20: 28: 50 | 002,131,288 | ---- | C] (Waves Audio Ltd.) -- C: \Windows\SysNative\MaxxAudioEQ.dll
[2014-04-08 20: 28: 50 | 001,262,696 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\SysNative\RTCOM64.dll
[2014-04-08 20: 28: 50 | 001,015,640 | ---- | C] (Waves Audio Ltd.) -- C: \Windows\SysNative\MaxxAudioAPOShell64.dll
[2014-04-08 20: 28: 50 | 000,897,152 | ---- | C] (Creative Technology Ltd.) -- C: \Windows\SysNative\MBAPO64.dll
[2014-04-08 20: 28: 50 | 000,869,520 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\SysNative\RtkApi64.dll
[2014-04-08 20: 28: 50 | 000,753,280 | ---- | C] (Creative Technology Ltd.) -- C: \Windows\SysWow64\MBAPO32.dll
[2014-04-08 20: 28: 50 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C: \Windows\SysNative\RTEEP64A.dll
[2014-04-08 20: 28: 50 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C: \Windows\SysNative\MaxxAudioAPO20.dll
[2014-04-08 20: 28: 50 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C: \Windows\SysNative\RP3DHT64.dll
[2014-04-08 20: 28: 50 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C: \Windows\SysNative\RP3DAA64.dll
[2014-04-08 20: 28: 50 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C: \Windows\SysNative\RTEED64A.dll
[2014-04-08 20: 28: 50 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\SysNative\RtkCfg64.dll
[2014-04-08 20: 28: 50 | 000,105,616 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\SysNative\RCoInstII64.dll
[2014-04-08 20: 28: 50 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C: \Windows\SysNative\RTEEL64A.dll
[2014-04-08 20: 28: 50 | 000,083,072 | ---- | C] (Creative Technology Ltd.) -- C: \Windows\SysNative\MBWrp64.dll
[2014-04-08 20: 28: 50 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C: \Windows\SysNative\RTEEG64A.dll
[2014-04-08 20: 28: 50 | 000,065,112 | ---- | C] (Creative Technology Ltd.) -- C: \Windows\SysNative\MBppld64.dll
[2014-04-08 20: 28: 50 | 000,060,504 | ---- | C] (Creative Technology Ltd.) -- C: \Windows\SysNative\MBPPCn64.dll
[2014-04-08 20: 28: 50 | 000,014,952 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\SysNative\RtkCoLDR64.dll
[2014-04-08 20: 28: 49 | 002,533,952 | ---- | C] (Fortemedia Corporation) -- C: \Windows\SysNative\FMAPO64.dll
[2014-04-08 20: 28: 49 | 000,202,336 | ---- | C] (Andrea Electronics Corporation) -- C: \Windows\SysNative\AERTAC64.dll
[2014-04-08 20: 28: 49 | 000,108,640 | ---- | C] (Andrea Electronics Corporation) -- C: \Windows\SysNative\AERTAR64.dll
[2014-04-08 20: 28: 46 | 001,706,640 | ---- | C] (Realtek Semiconductor Corp.) -- C: \Windows\RtlExUpd.dll
[2014-04-08 20: 28: 46 | 000,000,000 | -H-D | C] -- C: \Program Files (x86)\Temp
[2014-04-08 20: 28: 44 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Common Files\InstallShield
[2014-04-08 20: 27: 26 | 000,646,248 | ---- | C] (Realtek                                            ) -- C: \Windows\SysNative\drivers\Rt64win7.sys
[2014-04-08 20: 27: 26 | 000,107,552 | ---- | C] (Realtek Semiconductor Corporation) -- C: \Windows\SysNative\RTNUninst64.dll
[2014-04-08 20: 25: 57 | 000,058,472 | ---- | C] (Realtek Corporation) -- C: \Windows\SysNative\drivers\RtTeam60.sys
[2014-04-08 20: 25: 57 | 000,032,360 | ---- | C] (Realtek Corporation) -- C: \Windows\SysNative\drivers\RtVlan620.sys
[2014-04-08 20: 25: 57 | 000,027,136 | ---- | C] (Realtek                                            ) -- C: \Windows\SysNative\drivers\RtNdPt60.sys
[2014-04-08 20: 25: 57 | 000,000,000 | -H-D | C] -- C: \Program Files (x86)\InstallShield Installation Information
[2014-04-08 20: 25: 57 | 000,000,000 | ---D | C] -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
[2014-04-08 20: 25: 57 | 000,000,000 | ---D | C] -- C: \Program Files (x86)\Realtek
[2014-04-08 20: 25: 17 | 000,000,000 | ---D | C] -- C: \Users\Holek\Desktop\holek stery
[2014-04-08 19: 44: 29 | 000,000,000 | R--D | C] -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2014-04-08 19: 44: 29 | 000,000,000 | R--D | C] -- C: \Users\Holek\Searches
[2014-04-08 19: 44: 29 | 000,000,000 | R--D | C] -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2014-04-08 19: 44: 22 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Identities
[2014-04-08 19: 44: 20 | 000,000,000 | R--D | C] -- C: \Users\Holek\Contacts
[2014-04-08 19: 44: 19 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\VirtualStore
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Ustawienia lokalne
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\AppData\Local\Temporary Internet Files
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Szablony
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\SendTo
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Recent
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\PrintHood
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\NetHood
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Documents\Moje wideo
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Documents\Moje obrazy
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Moje dokumenty
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Documents\Moja muzyka
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Menu Start
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\AppData\Local\Historia
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Dane aplikacji
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\AppData\Local\Dane aplikacji
[2014-04-08 19: 44: 12 | 000,000,000 | -HSD | C] -- C: \Users\Holek\Cookies
[2014-04-08 19: 44: 11 | 000,000,000 | --SD | C] -- C: \Users\Holek\AppData\Roaming\Microsoft
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\Videos
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\Saved Games
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\Pictures
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\Music
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\Links
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\Favorites
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\Downloads
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\Documents
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\Desktop
[2014-04-08 19: 44: 11 | 000,000,000 | R--D | C] -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2014-04-08 19: 44: 11 | 000,000,000 | -H-D | C] -- C: \Users\Holek\AppData
[2014-04-08 19: 44: 11 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\Temp
[2014-04-08 19: 44: 11 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Local\Microsoft
[2014-04-08 19: 44: 11 | 000,000,000 | ---D | C] -- C: \Users\Holek\AppData\Roaming\Media Center Programs
[2014-04-08 19: 44: 08 | 000,000,000 | -HSD | C] -- C: \Recovery
[2014-04-08 19: 44: 08 | 000,000,000 | -HSD | C] -- C: \Users\Public\Documents\Moje wideo
[2014-04-08 19: 44: 07 | 000,000,000 | -HSD | C] -- C: \ProgramData\Ulubione
[2014-04-08 19: 44: 07 | 000,000,000 | -HSD | C] -- C: \ProgramData\Szablony
[2014-04-08 19: 44: 07 | 000,000,000 | -HSD | C] -- C: \ProgramData\Pulpit
[2014-04-08 19: 44: 07 | 000,000,000 | -HSD | C] -- C: \Users\Public\Documents\Moje obrazy
[2014-04-08 19: 44: 07 | 000,000,000 | -HSD | C] -- C: \Users\Public\Documents\Moja muzyka
[2014-04-08 19: 44: 07 | 000,000,000 | -HSD | C] -- C: \ProgramData\Menu Start
[2014-04-08 19: 44: 07 | 000,000,000 | -HSD | C] -- C: \ProgramData\Dokumenty
[2014-04-08 19: 44: 07 | 000,000,000 | -HSD | C] -- C: \ProgramData\Dane aplikacji
[2014-04-08 19: 38: 58 | 000,000,000 | ---D | C] -- C: \Windows\SoftwareDistribution
[2014-04-08 19: 36: 43 | 000,000,000 | ---D | C] -- C: \Windows\Prefetch
[2014-04-08 19: 36: 16 | 000,000,000 | -HSD | C] -- C: \System Volume Information

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2014-04-09 15: 06: 16 | 001,686,144 | ---- | M] () -- C: \Windows\SysNative\PerfStringBackup.INI
[2014-04-09 15: 06: 16 | 000,749,472 | ---- | M] () -- C: \Windows\SysNative\perfh015.dat
[2014-04-09 15: 06: 16 | 000,655,534 | ---- | M] () -- C: \Windows\SysNative\perfh009.dat
[2014-04-09 15: 06: 16 | 000,157,964 | ---- | M] () -- C: \Windows\SysNative\perfc015.dat
[2014-04-09 15: 06: 16 | 000,124,274 | ---- | M] () -- C: \Windows\SysNative\perfc009.dat
[2014-04-09 15: 05: 00 | 000,000,930 | ---- | M] () -- C: \Windows\tasks\Adobe Flash Player Updater.job
[2014-04-09 15: 02: 52 | 000,000,964 | ---- | M] () -- C: \Windows\tasks\PriceMeterLiveUpdateUpdateTaskMachineUA.job
[2014-04-09 15: 02: 00 | 000,000,960 | ---- | M] () -- C: \Windows\tasks\PriceMeterLiveUpdateUpdateTaskMachineCore.job
[2014-04-09 15: 01: 02 | 000,001,212 | ---- | M] () -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HDDlife.lnk
[2014-04-09 15: 00: 41 | 000,000,292 | ---- | M] () -- C: \Windows\tasks\PriceMeterUpdater.job
[2014-04-09 15: 00: 34 | 000,067,584 | --S- | M] () -- C: \Windows\bootstat.dat
[2014-04-09 15: 00: 33 | 3218,202,624 | -HS- | M] () -- C: \hiberfil.sys
[2014-04-09 15: 00: 29 | 337,517,968 | ---- | M] () -- C: \Windows\MEMORY.DMP
[2014-04-09 14: 57: 14 | 000,001,062 | ---- | M] () -- C: \Users\Holek\Desktop\Optimizer Pro.lnk
[2014-04-09 14: 55: 51 | 000,002,019 | ---- | M] () -- C: \Users\Holek\Desktop\Speed Up This PC.lnk
[2014-04-09 14: 55: 51 | 000,001,062 | ---- | M] () -- C: \Users\Holek\Desktop\Device Doctor.lnk
[2014-04-09 14: 55: 49 | 000,001,349 | ---- | M] () -- C: \Users\Public\Desktop\Mozilla Firefox.lnk
[2014-04-09 14: 42: 26 | 000,000,220 | ---- | M] () -- C: \Users\Holek\Desktop\Killing Floor.url
[2014-04-09 14: 15: 45 | 000,016,656 | -H-- | M] () -- C: \Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014-04-09 14: 15: 45 | 000,016,656 | -H-- | M] () -- C: \Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014-04-09 00: 28: 51 | 000,000,798 | ---- | M] () -- C: \Users\Public\Desktop\Minecraft Pingwin Pack 2.lnk
[2014-04-09 00: 22: 51 | 000,264,616 | ---- | M] (Oracle Corporation) -- C: \Windows\SysWow64\javaws.exe
[2014-04-09 00: 22: 51 | 000,175,016 | ---- | M] (Oracle Corporation) -- C: \Windows\SysWow64\javaw.exe
[2014-04-09 00: 22: 51 | 000,174,504 | ---- | M] (Oracle Corporation) -- C: \Windows\SysWow64\java.exe
[2014-04-09 00: 22: 51 | 000,096,168 | ---- | M] (Oracle Corporation) -- C: \Windows\SysWow64\WindowsAccessBridge-32.dll
[2014-04-08 23: 07: 25 | 000,692,400 | ---- | M] (Adobe Systems Incorporated) -- C: \Windows\SysWow64\FlashPlayerApp.exe
[2014-04-08 23: 07: 25 | 000,070,832 | ---- | M] (Adobe Systems Incorporated) -- C: \Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014-04-08 22: 04: 06 | 000,001,767 | ---- | M] () -- C: \Users\Holek\Desktop\Spotify.lnk
[2014-04-08 21: 38: 48 | 000,001,613 | ---- | M] () -- C: \Users\Public\Desktop\Play League of Legends.lnk
[2014-04-08 21: 21: 42 | 000,000,963 | ---- | M] () -- C: \Users\Public\Desktop\Steam.lnk
[2014-04-08 21: 17: 24 | 000,000,967 | ---- | M] () -- C: \Users\Public\Desktop\TeamSpeak 3 Client.lnk
[2014-04-08 21: 03: 00 | 000,001,347 | ---- | M] () -- C: \Users\Public\Desktop\GeForce Experience.lnk
[2014-04-08 20: 53: 20 | 001,661,522 | ---- | M] () -- C: \Windows\SysWow64\PerfStringBackup.INI
[2014-04-08 19: 39: 34 | 000,067,912 | ---- | M] () -- C: \Windows\SysWow64\license.rtf
[2014-04-08 19: 39: 34 | 000,067,912 | ---- | M] () -- C: \Windows\SysNative\license.rtf
[2014-04-08 19: 37: 52 | 000,000,000 | -H-- | M] () -- C: \Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014-04-08 19: 36: 32 | 000,274,840 | ---- | M] () -- C: \Windows\SysNative\FNTCACHE.DAT

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2014-04-09 14: 57: 26 | 000,000,964 | ---- | C] () -- C: \Windows\tasks\PriceMeterLiveUpdateUpdateTaskMachineUA.job
[2014-04-09 14: 57: 25 | 000,000,960 | ---- | C] () -- C: \Windows\tasks\PriceMeterLiveUpdateUpdateTaskMachineCore.job
[2014-04-09 14: 57: 22 | 000,000,292 | ---- | C] () -- C: \Windows\tasks\PriceMeterUpdater.job
[2014-04-09 14: 57: 14 | 000,001,062 | ---- | C] () -- C: \Users\Holek\Desktop\Optimizer Pro.lnk
[2014-04-09 14: 55: 51 | 000,002,019 | ---- | C] () -- C: \Users\Holek\Desktop\Speed Up This PC.lnk
[2014-04-09 14: 55: 51 | 000,001,062 | ---- | C] () -- C: \Users\Holek\Desktop\Device Doctor.lnk
[2014-04-09 09: 12: 39 | 000,001,212 | ---- | C] () -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HDDlife.lnk
[2014-04-09 00: 28: 51 | 000,000,798 | ---- | C] () -- C: \Users\Public\Desktop\Minecraft Pingwin Pack 2.lnk
[2014-04-09 00: 04: 19 | 337,517,968 | ---- | C] () -- C: \Windows\MEMORY.DMP
[2014-04-08 23: 16: 52 | 000,000,220 | ---- | C] () -- C: \Users\Holek\Desktop\Killing Floor.url
[2014-04-08 22: 04: 06 | 000,001,767 | ---- | C] () -- C: \Users\Holek\Desktop\Spotify.lnk
[2014-04-08 22: 04: 06 | 000,001,753 | ---- | C] () -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
[2014-04-08 21: 38: 48 | 000,001,613 | ---- | C] () -- C: \Users\Public\Desktop\Play League of Legends.lnk
[2014-04-08 21: 21: 42 | 000,000,963 | ---- | C] () -- C: \Users\Public\Desktop\Steam.lnk
[2014-04-08 21: 17: 24 | 000,000,967 | ---- | C] () -- C: \Users\Public\Desktop\TeamSpeak 3 Client.lnk
[2014-04-08 21: 14: 56 | 000,000,930 | ---- | C] () -- C: \Windows\tasks\Adobe Flash Player Updater.job
[2014-04-08 21: 03: 00 | 000,001,347 | ---- | C] () -- C: \Users\Public\Desktop\GeForce Experience.lnk
[2014-04-08 20: 56: 00 | 003,649,185 | ---- | C] () -- C: \Windows\SysNative\nvcoproc.bin
[2014-04-08 20: 52: 04 | 001,661,522 | ---- | C] () -- C: \Windows\SysWow64\PerfStringBackup.INI
[2014-04-08 20: 48: 15 | 000,024,544 | ---- | C] () -- C: \Windows\SysNative\nvinfo.pb
[2014-04-08 20: 38: 48 | 000,001,361 | ---- | C] () -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014-04-08 20: 38: 48 | 000,001,349 | ---- | C] () -- C: \Users\Public\Desktop\Mozilla Firefox.lnk
[2014-04-08 20: 28: 50 | 000,293,889 | ---- | C] () -- C: \Windows\SysNative\drivers\RTAIODAT.DAT
[2014-04-08 20: 27: 26 | 000,074,272 | ---- | C] () -- C: \Windows\SysNative\RtNicProp64.dll
[2014-04-08 19: 44: 36 | 000,001,631 | ---- | C] () -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
[2014-04-08 19: 44: 32 | 000,001,653 | ---- | C] () -- C: \Users\Holek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2014-04-08 19: 39: 24 | 000,001,345 | ---- | C] () -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2014-04-08 19: 39: 16 | 000,001,326 | ---- | C] () -- C: \ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2014-04-08 19: 37: 52 | 000,000,000 | -H-- | C] () -- C: \Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014-04-08 19: 36: 16 | 3218,202,624 | -HS- | C] () -- C: \hiberfil.sys
[2013-03-01 03: 47: 36 | 000,053,299 | ---- | C] () -- C: \Windows\SysWow64\pthreadVC.dll

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009-07-14 06: 55: 00 | 000,000,227 | RHS- | M] () -- C: \Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C: \Windows\SysNative\shell32.dll -- [2010-11-21 05: 23: 55 | 014,174,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2010-11-21 05: 24: 02 | 012,872,192 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C: \Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 03: 40: 51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-21 05: 24: 25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C: \Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 03: 41: 56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 128 bytes -> C: \ProgramData\TEMP: 55B41E6A

< End of report >
(Ten post był ostatnio modyfikowany: 09.04.2014 14:08 przez topik53.)

09.04.2014 08:37

Znajdź wszystkie posty użytkownika
Illidan
Ekspert

Liczba postów: 1.024
Post: #2

RE: BSOD: prośba o pomoc w wyeliminowaniu problemu (logi OTL)


Witam
Brak czasu na logi,ale jak wytrzymasz do Weekendu to wieczorem w sobotę lub niedzielę przeanalizuje wszystko.Pozdrawiam.


09.04.2014 19:53

Znajdź wszystkie posty użytkownika
Illidan
Ekspert

Liczba postów: 1.024
Post: #3

RE: BSOD: prośba o pomoc w wyeliminowaniu problemu (logi OTL)


Witam
Przepraszam że długo musiałeś czekać,ale z moim czasem bardzo krucho ostatnio,więc lecimy:
0x0000007A
KERNEL_DATA_INPAGE_ERROR - Błąd w pliku wymiany, nie można wczytać danych do pamięci. Może być to spowodowane niezgodnością dysku, sterowników kontrolera, firmware, a nawet sprzętu.

Rozwiązanie:
-Wykonaj "chkdsk /f /r" w w Wierszu Poleceń,
-Sprawdź stan powierzchni dysku oraz jego informacje S.M.A.R.T. Pobierz darmowy "CrystalDiskinfo" i pokaż screen jego okna po uruchomieniu.powiększ je wcześniej tak by wszystkie parametry dysku były widoczne.
-Uaktualnij sterowniki do chipsetu płyty głównej lub kontrolera dysków.Uaktualnij najlepiej wszystkie sterowniki w systemie,ten temat może Ci pomóc:
http://forum.komputerswiat.pl/topic/2058...imdrivers/

Co do "OTL" to wklej do niego w pole "Własne opcje skanowania/Skrypt" :
Cytat::OTL
IE: 64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE: 64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE: 64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE: 64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE: 64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE: 64bit: - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C: \Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http: //start.qone8.com/?type=hp&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569
IE - HKCU\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE - HKCU\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http: //www.qone8.com/web/?type=ds&ts=1397048148&from=air&uid=WDCXWD10EZEX-00KUWA0_WD-WCC1S471556915569&q={searchTerms}
FF - prefs.js..browser.search.defaultenginename: "qone8"
FF - prefs.js..browser.search.selectedEngine: "qone8"
FF - prefs.js..browser.startup.homepage: "http: //start.qone8.com/?
@Alternate Data Stream - 128 bytes -> C: \ProgramData\TEMP: 55B41E6A

:Commands
[emptytemp]

Wykonaj skrypt,po zrestartowaniu systemu pokaż raport z czyszczenia.popraw to co zacząłem jeszcze darmowym "ADWCleaner",instrukcja tutaj.Po restarcie także pokaż raport z usuwania.
Brakuje także drugiego logu z programu "OTL" >> "Extras.txt",go także pokaż na forum,jest on w tej samej lokalizacji co główny log.


(Ten post był ostatnio modyfikowany: 13.04.2014 02:54 przez Illidan.)

13.04.2014 02:43

Znajdź wszystkie posty użytkownika
Wątek zamknięty

Podobne wątki
Wątek: Autor Odpowiedzi: Wyświetleń: Ostatni post
Prośba o sprawdzenie logów PiotrekZabrze 5 1.912 25.12.2017 14:32
Ostatni post: Illidan
Pendrive jako skrót(logi OTL) LISTI 1 1.656 06.07.2016 23:29
Ostatni post: Illidan
Prośba o sprawdzenie logów clipper 7 2.498 04.05.2016 20:20
Ostatni post: Illidan
Problem w Windows Update (błąd 80244019) - prośba o sprawdzenie logów PiotrekZabrze 13 19.682 24.01.2016 10:20
Ostatni post: PiotrekZabrze
prośba o sprawdzenie logów OTL misiek2204 2 1.591 02.01.2016 00:28
Ostatni post: Illidan
Zamulony laptop mamuśki - Logi FRST i OTL Aconcagua 9 4.292 29.11.2015 23:13
Ostatni post: Illidan
« Starszy wątek | Nowszy wątek »

Temat został oceniony na 0 w skali 1-5 gwiazdek.
Zebrano 1 głosów.