Hello, I need someones help who understands Farbar quite well!
My father's computer is in serious trouble and I'm not sure what to do... the error specifically is:
'Startup repair has tried several times but still cannot determine the cause of the problem'.
I think he tried to reboot the system when he had some errors, which has now resulted in it restarting in a continuous loop. I've read on this forum that other users have had similar issues and they've been resolved:
https://forums.techguy.org/threads/solved-start-up-repair-cannot-find-problem.1128010/
I've downloaded Farbar Recovery Scan Tool and ran my first scan with the result below. I don't quite understand what this all means, and apparently I need someone to write a 'fixlist.txt' for me. Again awny help would be much appreciated.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11-09-2017
Ran by SYSTEM on MININT-30L27EM (11-09-2017 20:50:42)
Running from f:\
Platform: Windows 7 Professional Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11
Boot Mode: Recovery
Default: ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ProfilerU] => C:\Program Files\Saitek\SD6\Software\ProfilerU.exe [347648 2007-07-12] (Saitek)
HKLM\...\Run: [SaiMfd] => C:\Program Files\Saitek\SD6\Software\SaiMfd.exe [194560 2007-07-12] (Saitek)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239592 2017-08-24] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [289248 2017-09-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239592 2017-08-24] (AVG Technologies CZ, s.r.o.)
HKLM\...26dfa299cadb\InprocServer32: [Authentication UI Logon UI] authuitu.dll <==== ATTENTION
BootExecute: autocheck autochk /p \??\C:autocheck autochk /r \??\G:autocheck autochk *
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
S3 ALG; C:\Windows\System32\alg.exe [79360 2009-07-13] (Microsoft Corporation)
S2 ASGT; C:\Windows\SysWOW64\ASGT.exe [48640 2015-05-29] ()
S2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [276328 2017-09-06] (AVG Technologies CZ, s.r.o.)
S3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [7502936 2017-09-06] (AVG Technologies CZ, s.r.o.)
S2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1428656 2017-08-24] (AVG Technologies CZ, s.r.o.)
S3 EFS; C:\Windows\System32\lsass.exe [30720 2016-09-12] (Microsoft Corporation)
S2 EPSON_PM_RPCV4_01; C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE [102400 2006-04-17] (SEIKO EPSON CORPORATION)
S3 Fax; C:\Windows\system32\fxssvc.exe [689152 2010-11-20] (Microsoft Corporation)
S3 IEEtwCollectorService; C:\Windows\system32\IEEtwCollector.exe [114688 2016-09-29] (Microsoft Corporation)
S3 KeyIso; C:\Windows\system32\lsass.exe [30720 2016-09-12] (Microsoft Corporation)
S3 MSDTC; C:\Windows\System32\msdtc.exe [141824 2009-07-13] (Microsoft Corporation)
S3 msiserver; C:\Windows\System32\msiexec.exe [128000 2015-06-15] (Microsoft Corporation)
S3 msiserver; C:\Windows\SysWOW64\msiexec.exe [73216 2015-06-15] (Microsoft Corporation)
S3 Netlogon; C:\Windows\system32\lsass.exe [30720 2016-09-12] (Microsoft Corporation)
S2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-20] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-20] (NVIDIA Corporation)
S2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-06-27] (NVIDIA Corporation)
S2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-06-20] (NVIDIA Corporation)
S3 PNRPAutoReg; C:\Windows\system32\pnrpauto.dll [25088 2009-07-13] ()
S3 ProtectedStorage; C:\Windows\system32\lsass.exe [30720 2016-09-12] (Microsoft Corporation)
S3 RpcLocator; C:\Windows\system32\locator.exe [10240 2009-07-13] (Microsoft Corporation)
S2 SamSs; C:\Windows\system32\lsass.exe [30720 2016-09-12] (Microsoft Corporation)
S3 SNMPTRAP; C:\Windows\System32\snmptrap.exe [14336 2009-07-13] (Microsoft Corporation)
S2 Spooler; C:\Windows\System32\spoolsv.exe [559104 2012-02-10] (Microsoft Corporation)
S2 sppsvc; C:\Windows\system32\sppsvc.exe [3524608 2010-11-20] (Microsoft Corporation)
S3 sppuinotify; C:\Windows\system32\sppuinotify.dll [65536 2009-07-13] ()
S2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [5906704 2017-07-26] (AVG Technologies CZ, s.r.o.)
S3 UI0Detect; C:\Windows\system32\UI0Detect.exe [40960 2009-07-13] (Microsoft Corporation)
S2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [56080 2017-07-26] (AVG Technologies CZ, s.r.o.)
S2 UxTuneUp; C:\Windows\SysWOW64\uxtuneup.dll [48912 2017-07-26] (AVG Technologies CZ, s.r.o.)
S3 VaultSvc; C:\Windows\system32\lsass.exe [30720 2016-09-12] (Microsoft Corporation)
S3 vds; C:\Windows\System32\vds.exe [533504 2010-11-20] (Microsoft Corporation)
S3 VSS; C:\Windows\system32\vssvc.exe [1600512 2010-11-20] (Microsoft Corporation)
S3 WcsPlugInService; C:\Windows\System32\WcsPlugInService.dll [40960 2009-07-13] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)
S3 WPCSvc; C:\Windows\System32\wpcsvc.dll [0 2009-07-13] () <==== ATTENTION (zero byte File/Folder)
S2 WSearch; C:\Windows\system32\SearchIndexer.exe [591872 2011-05-03] (Microsoft Corporation)
S2 WSearch; C:\Windows\SysWOW64\SearchIndexer.exe [427520 2011-05-03] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [88480 2013-07-24] ()
S1 avgbdisk; C:\Windows\system32\drivers\avgbdiska.sys [166624 2017-09-06] (AVG Technologies CZ, s.r.o.)
S1 avgbidsdriver; C:\Windows\system32\drivers\avgbidsdrivera.sys [314128 2017-09-06] (AVG Technologies CZ, s.r.o.)
S0 avgbidsh; C:\Windows\system32\drivers\avgbidsha.sys [192584 2017-09-06] (AVG Technologies CZ, s.r.o.)
S0 avgblog; C:\Windows\system32\drivers\avgbloga.sys [336896 2017-09-06] (AVG Technologies CZ, s.r.o.)
S0 avgbuniv; C:\Windows\system32\drivers\avgbuniva.sys [51336 2017-09-06] (AVG Technologies CZ, s.r.o.)
S3 avgHwid; C:\Windows\system32\drivers\avgHwid.sys [39424 2017-09-06] (AVG Technologies CZ, s.r.o.)
S2 avgMonFlt; C:\Windows\system32\drivers\avgMonFlt.sys [140192 2017-09-06] (AVG Technologies CZ, s.r.o.)
S1 avgRdr; C:\Windows\system32\drivers\avgRdr2.sys [102792 2017-09-06] (AVG Technologies CZ, s.r.o.)
S0 avgRvrt; C:\Windows\system32\drivers\avgRvrt.sys [76832 2017-09-06] (AVG Technologies CZ, s.r.o.)
S1 avgSnx; C:\Windows\system32\drivers\avgSnx.sys [1008800 2017-09-06] (AVG Technologies CZ, s.r.o.)
S1 avgSP; C:\Windows\system32\drivers\avgSP.sys [583288 2017-09-06] (AVG Technologies CZ, s.r.o.)
S2 avgStm; C:\Windows\system32\drivers\avgStm.sys [191720 2017-09-06] (AVG Technologies CZ, s.r.o.)
S0 avgVmm; C:\Windows\system32\drivers\avgVmm.sys [353744 2017-09-06] (AVG Technologies CZ, s.r.o.)
S3 bowser; C:\Windows\System32\DRIVERS\bowser.sys [0 2011-02-22] () <==== ATTENTION (zero byte File/Folder)
S0 Disk; C:\Windows\System32\DRIVERS\disk.sys [0 2009-07-13] () <==== ATTENTION (zero byte File/Folder)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-06-28] ()
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [46960 2016-06-28] ()
S3 irsir; C:\Windows\System32\DRIVERS\irsir.sys [27648 2008-01-18] (Microsoft Corporation)
S2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [46400 2013-07-24] ()
S3 npusbio; C:\Windows\System32\Drivers\npusbio_x64.sys [38400 2015-12-14] ()
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-06-20] (NVIDIA Corporation)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [48248 2017-06-20] (NVIDIA Corporation)
S3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [76840 2017-03-31] (NVIDIA Corporation)
S0 pci; C:\Windows\System32\drivers\pci.sys [0 2010-11-20] () <==== ATTENTION (zero byte File/Folder)
S0 rdyboost; C:\Windows\System32\drivers\rdyboost.sys [0 2010-11-20] () <==== ATTENTION (zero byte File/Folder)
S3 SaiH0763; C:\Windows\System32\DRIVERS\SaiH0763.sys [178304 2008-02-15] (Saitek)
S3 SaiH0C2D; C:\Windows\System32\DRIVERS\SaiH0C2D.sys [176128 2007-07-02] (Saitek)
S3 SaiK0BD4; C:\Windows\System32\DRIVERS\SaiK0BD4.sys [176136 2011-07-20] (Saitek)
S3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [16000 2007-07-12] (Saitek)
S3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [53248 2006-06-08] (Saitek)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [25608 2016-06-30] (SlimWare Utilities, Inc.)
S3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [32304 2017-02-21] (AVG Netherlands B.V.)
S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-11] (Microsoft Corporation)
S3 vhidmini; C:\Windows\System32\DRIVERS\vjoy.sys [15104 2012-10-15] (Headsoft)
S4 IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error(1) reading file: "C:\Windows\System32\Tasks\RealPlayer (32-bit) "
2017-09-11 20:50 - 2017-09-11 20:50 - 000000000 ____D C:\FRST
2017-09-11 17:20 - 2017-09-11 17:20 - 000000000 __SHD C:\found.000
2017-09-11 08:03 - 2017-09-11 08:03 - 000000002 _____ C:\Users\igiveup1do\AppData\Roaming\acc.txt
2017-09-11 05:23 - 2017-09-11 05:24 - 048063823 _____ C:\Users\igiveup1do\Downloads\F-102 ANG.zip
2017-09-11 05:21 - 2017-09-11 05:21 - 008475619 _____ C:\Users\igiveup1do\Downloads\Grumman G 21 Goose.rar
2017-09-11 05:18 - 2017-09-11 05:18 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{57608DA9-B665-4788-85A2-7C6F456FEC87}
2017-09-10 04:23 - 2017-09-10 04:23 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{EA114104-F640-475E-A90A-18CC8E3ACB9B}
2017-09-09 02:53 - 2017-09-09 02:53 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{3DDE9442-DB74-469A-9664-96706339FBFE}
2017-09-08 01:32 - 2017-09-08 01:32 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{6403E17D-0BE3-43E8-B098-F60A60A7BCD7}
2017-09-07 10:52 - 2017-09-07 10:52 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{118156A4-327A-4BFC-8FFF-759B9FEF6918}
2017-09-06 05:48 - 2017-09-06 05:51 - 000000000 ____D C:\Program Files (x86)\PCFixKit
2017-09-06 05:48 - 2017-09-06 05:48 - 000000000 ____D C:\Users\igiveup1do\AppData\Roaming\PCFixKit
2017-09-06 05:38 - 2017-09-06 05:38 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{5C249E9A-F41A-454C-A15F-35F0EA8B2BE4}
2017-09-06 05:13 - 2017-09-06 05:13 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{024C1943-51D8-48ED-8DFB-7D6191DA3B4A}
2017-09-06 05:04 - 2017-09-06 05:04 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{5547C1C7-A1C3-40D5-9322-9A741B0FC952}
2017-09-06 04:48 - 2017-09-06 04:47 - 000402608 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\avgBoot.exe
2017-09-05 03:14 - 2017-09-05 03:14 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{FDE29C7B-2F59-48BB-8327-4FF71FF14BC2}
2017-09-04 12:09 - 2017-09-04 12:09 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{F11ED639-5A57-40F8-9516-C9D174AC4B59}
2017-09-04 11:31 - 2017-09-04 11:31 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{3B5FCDDA-A21C-4F9A-B90F-90B687CC8A59}
2017-09-04 09:33 - 2017-07-26 00:11 - 000056080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\uxtuneup.dll
2017-09-04 09:33 - 2017-07-26 00:11 - 000048912 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\uxtuneup.dll
2017-09-04 09:33 - 2017-07-26 00:11 - 000044304 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\authuitu.dll
2017-09-04 09:33 - 2017-07-26 00:11 - 000042256 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\authuitu.dll
2017-09-04 09:32 - 2017-09-04 09:32 - 000000000 ____D C:\Users\Default\AppData\Local\AVG
2017-09-04 09:32 - 2017-09-04 09:32 - 000000000 ____D C:\Users\Default User\AppData\Local\AVG
2017-09-03 12:27 - 2017-09-03 12:27 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{DB9417A4-D872-4A61-8002-89C1D7FE9EB4}
2017-09-02 12:47 - 2017-09-02 12:47 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{476A3B4C-4F5E-45DF-BDC9-88FF16716F23}
2017-09-01 04:56 - 2017-09-01 04:56 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{09CDE6E7-B3BA-47ED-95D6-57FCFD818C6E}
2017-08-31 09:11 - 2017-08-31 09:11 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{9EBA579C-05F6-4E58-A3D8-1D0BE2ECA741}
2017-08-30 10:22 - 2017-08-30 10:22 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{E2C59685-49E6-4E26-8D28-C24CDB3D90FB}
2017-08-29 08:11 - 2017-08-29 08:11 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{C73EF6A6-ED6E-4D18-B759-4AD1383C7518}
2017-08-28 00:37 - 2017-08-28 00:37 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{ED45D32A-7316-4268-B2B5-087B6F1C720F}
2017-08-27 06:03 - 2017-08-27 06:03 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{6548F1D0-1BF2-4845-826A-C212405B0B9D}
2017-08-26 09:17 - 2017-08-26 09:17 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{3F115C32-9286-4EDD-918B-592D75315BEB}
2017-08-25 08:49 - 2017-08-25 08:49 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{F467B455-1A32-4DBF-8CC0-AF908084416F}
2017-08-24 09:42 - 2017-08-24 09:42 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{B84722BE-F716-4422-AF1F-FACEB63B85BB}
2017-08-23 07:15 - 2017-08-23 07:15 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{59FB4DC6-7826-4D3A-A0C5-892DC1B39F21}
2017-08-22 10:26 - 2017-08-22 10:26 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{181F7E36-A504-4EB7-81D8-069C64954370}
2017-08-22 07:00 - 2017-08-22 07:00 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{41764442-4DF0-445C-B0F9-CA557C66F27F}
2017-08-21 09:35 - 2017-08-21 09:35 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{F6C2E777-79C4-44FB-B65A-522537351DBA}
2017-08-20 08:44 - 2017-08-20 08:44 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{5A0136D8-3930-4182-A084-AAF135118841}
2017-08-20 02:10 - 2017-08-20 02:10 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{C5312D58-3429-4315-8772-B10120DE177C}
2017-08-19 03:25 - 2017-08-19 03:25 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{AC4AAF02-9E16-45BF-9637-0B221B1969BD}
2017-08-19 00:01 - 2017-08-19 00:01 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{CB1F151B-5CC5-475B-9C72-F30734603AD2}
2017-08-18 04:10 - 2017-08-18 04:10 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{899916DF-8D19-420A-8B1D-0B270CD7E8C2}
2017-08-17 09:16 - 2017-08-17 09:16 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{63689F76-0190-483B-AB98-D9FFAA86797A}
2017-08-14 03:27 - 2017-08-14 03:27 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{047FD753-E7CA-4EE8-BA2E-A0796186054E}
2017-08-13 14:56 - 2017-08-13 14:56 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{7F319D02-FD2F-410C-A025-15556586452B}
2017-08-13 07:54 - 2017-08-13 07:54 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{60E35AAF-C59B-48EA-855B-CF42177C060E}
2017-08-12 09:33 - 2017-08-12 09:33 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{FC208590-9390-460C-BEB1-FED3E9239E24}
2017-08-12 04:11 - 2017-08-12 04:11 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\{60D9AFCD-22EA-4818-8EA2-6CA1CF048E57}
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-09-11 17:40 - 2009-07-13 15:11 - 000020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfhost.exe
2017-09-11 17:36 - 2014-06-11 04:12 - 001903552 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2017-09-11 17:33 - 2015-11-10 14:48 - 000950720 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2017-09-11 17:33 - 2009-07-13 16:09 - 000044544 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\netbios.sys
2017-09-11 17:33 - 2009-07-13 15:23 - 000060496 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mup.sys
2017-09-11 17:32 - 2016-10-21 12:58 - 000095464 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys
2017-09-11 17:31 - 2011-12-31 06:04 - 000289664 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fltMgr.sys
2017-09-11 17:30 - 2009-07-13 15:59 - 000025600 _____ (Microsoft Corporation) C:\Windows\System32\oleres.dll
2017-09-11 08:13 - 2011-12-30 10:15 - 000000000 ____D C:\Program Files (x86)\Steam
2017-09-11 05:32 - 2009-07-13 20:45 - 000025552 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-09-11 05:32 - 2009-07-13 20:45 - 000025552 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-09-11 05:27 - 2011-12-30 16:29 - 000000000 ____D C:\ProgramData\NVIDIA
2017-09-11 04:27 - 2014-03-30 09:09 - 000000402 _____ C:\Windows\Tasks\FinalTorrent Update Checker.job
2017-09-11 04:24 - 2016-09-21 05:12 - 000003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
2017-09-11 04:23 - 2009-07-13 21:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2017-09-10 11:40 - 2016-02-07 15:57 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\CrashDumps
2017-09-10 09:00 - 2012-05-30 05:21 - 000000476 _____ C:\Windows\Tasks\ParetoLogic Registration.job
2017-09-06 06:08 - 2012-08-10 10:38 - 000000000 ____D C:\Users\igiveup1do\AppData\Local\CRE
2017-09-06 04:49 - 2017-05-17 11:02 - 000003920 _____ C:\Windows\System32\Tasks\Antivirus Emergency Update
2017-09-06 04:47 - 2017-05-17 11:02 - 000583288 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgSP.sys
2017-09-06 04:47 - 2017-05-17 11:02 - 000353744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgVmm.sys
2017-09-06 04:47 - 2017-05-17 11:02 - 000191720 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgStm.sys
2017-09-06 04:47 - 2017-05-17 11:02 - 000140192 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgMonFlt.sys
2017-09-06 04:47 - 2017-05-17 11:02 - 000076832 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgRvrt.sys
2017-09-06 04:47 - 2017-05-17 11:02 - 000039424 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgHwid.sys
2017-09-06 04:47 - 2017-05-17 11:01 - 001008800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgSnx.sys
2017-09-06 04:47 - 2017-05-17 11:01 - 000102792 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgRdr2.sys
2017-09-06 04:46 - 2017-05-17 11:01 - 000336896 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbloga.sys
2017-09-06 04:46 - 2017-05-17 11:01 - 000314128 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbidsdrivera.sys
2017-09-06 04:46 - 2017-05-17 11:01 - 000192584 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbidsha.sys
2017-09-06 04:46 - 2017-05-17 11:01 - 000166624 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbdiska.sys
2017-09-06 04:46 - 2017-05-17 11:01 - 000051336 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgbuniva.sys
2017-08-18 10:45 - 2014-06-28 00:09 - 000000000 ____D C:\Users\igiveup1do\Documents\My Downloads
Files to move or delete:
====================
C:\Users\Public\AlexaNSISPlugin.3116.dll
==================== Known DLLs (Whitelisted) =========================
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll
[2016-09-20 13:42] - [2016-08-16 09:36] - 001009152 _____ (Microsoft Corporation) 8F4B991E7837E8E0F90C856659456652
C:\Windows\SysWOW64\User32.dll
[2016-09-20 13:42] - [2016-08-15 18:48] - 000833024 _____ (Microsoft Corporation) 0FBC0E335B65EE5A0175631237817510
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\dnsapi.dll => MD5 is legit
C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== Association (Whitelisted) =============
==================== Restore Points =========================
==================== Memory info ===========================
Percentage of memory in use: 10%
Total physical RAM: 8191.18 MB
Available physical RAM: 7363.81 MB
Total Virtual: 8189.33 MB