molim vas za pomoc

1

molim vas za pomoc

offline
  • Pridružio: 02 Apr 2011
  • Poruke: 14

Nekad kad pisem na fejsu mnogo mi kasne slova a i kamera mi se nekad sama ukljucuje. Da li mi mozete pomoci ili da okacim temu na drugo mesto?
Pouzdano znam da me neko spijunira kako da se zastitim?


OTL logfile created on: 27.10.2011 15:10:22 - Run 1
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\dragana\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy

4,00 Gb Total Physical Memory | 2,58 Gb Available Physical Memory | 64,68% Memory free
7,99 Gb Paging File | 5,50 Gb Available in Paging File | 68,88% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 451,07 Gb Total Space | 391,25 Gb Free Space | 86,74% Space Free | Partition Type: NTFS
Drive E: | 29,73 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive Y: | 14,65 Gb Total Space | 6,89 Gb Free Space | 47,01% Space Free | Partition Type: NTFS

Computer Name: DRAGANA-PC | User Name: dragana | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011.10.27 15:09:36 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\dragana\Downloads\OTL.exe
PRC - [2011.09.27 20:59:40 | 000,180,332 | ---- | M] () -- C:\dell\Log.exe
PRC - [2011.09.27 20:58:58 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011.07.01 21:04:31 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2011.06.01 22:44:15 | 001,546,640 | ---- | M] (Bandoo Media, inc) -- C:\Program Files (x86)\Windows iLivid Toolbar\Datamngr\datamngrUI.exe
PRC - [2011.05.25 16:55:00 | 001,221,520 | ---- | M] (Bandoo Media Inc.) -- C:\PROGRA~2\Bandoo\BndCore.exe
PRC - [2011.05.25 16:54:58 | 001,617,296 | ---- | M] (Bandoo Media Inc.) -- C:\PROGRA~2\Bandoo\Bandoo.exe
PRC - [2011.04.30 13:42:53 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2011.04.23 22:17:26 | 001,994,936 | ---- | M] (Sensible Vision ) -- C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayAlert.exe
PRC - [2011.04.23 22:17:26 | 000,098,488 | ---- | M] (Sensible Vision ) -- C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayMon.exe
PRC - [2011.04.23 22:17:08 | 002,412,728 | ---- | M] (Sensible Vision ) -- C:\Program Files (x86)\Sensible Vision\Fast Access\FAService.exe
PRC - [2011.02.25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
PRC - [2011.01.25 15:14:08 | 001,802,472 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe
PRC - [2011.01.25 15:14:08 | 001,534,184 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\stage_secondary.exe
PRC - [2011.01.17 17:37:42 | 011,322,880 | ---- | M] (OpenOffice.org) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
PRC - [2011.01.17 17:37:42 | 011,314,688 | ---- | M] (OpenOffice.org) -- C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
PRC - [2011.01.13 21:54:26 | 000,464,856 | ---- | M] (SoftThinks - Dell) -- C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe
PRC - [2011.01.13 21:42:12 | 003,811,648 | ---- | M] (SoftThinks - Dell) -- C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe
PRC - [2011.01.13 21:39:32 | 000,783,680 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE
PRC - [2011.01.13 21:37:02 | 000,705,856 | ---- | M] (SoftThinks SAS) -- C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
PRC - [2011.01.10 15:22:55 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010.09.14 05:45:56 | 000,219,496 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2010.09.14 05:45:44 | 000,508,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2010.02.09 20:34:00 | 001,807,680 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
PRC - [2009.12.04 12:36:33 | 008,078,704 | ---- | M] (mquadr.at software engineering and consulting GmbH, web: mquadr.at, mail: office@mquadr.at) -- C:\Program Files (x86)\A1 Dashboard\Dashboard.exe
PRC - [2009.10.15 10:10:28 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
PRC - [2009.07.17 18:08:00 | 000,237,568 | ---- | M] (Alcor Micro Corp.) -- C:\Program Files (x86)\Multimedia Card Reader(6366)\ShwiconXP6366.exe
PRC - [2009.05.21 15:59:08 | 000,206,064 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe
PRC - [2009.05.21 15:59:08 | 000,206,064 | ---- | M] (SupportSoft, Inc.) -- C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe


========== Modules (No Company Name) ==========

MOD - [2011.10.14 02:16:25 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\1049a76b3de293df726d380932215c91\System.Management.ni.dll
MOD - [2011.10.14 02:16:22 | 002,297,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\dd56ffc9d534de278c79420dcce058a4\System.Core.ni.dll
MOD - [2011.10.14 01:46:20 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\07cdef1a740151932dcf161f3306bd9c\PresentationFramework.Aero.ni.dll
MOD - [2011.10.14 01:46:13 | 001,840,640 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\a512243ee9900e621fb8cd990a9c679d\System.Web.Services.ni.dll
MOD - [2011.10.14 01:45:55 | 014,339,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\70e2ca33ffa52c743285dc5b4910a229\PresentationFramework.ni.dll
MOD - [2011.10.14 01:45:42 | 012,433,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6e592e424a204aafeadbe22b6b31b9db\System.Windows.Forms.ni.dll
MOD - [2011.10.14 01:45:36 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\3b2cfd85528a27eb71dc41d8067359a1\System.Drawing.ni.dll
MOD - [2011.10.14 01:45:34 | 012,234,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\7c94a121334aeca7553c7f01290740f0\PresentationCore.ni.dll
MOD - [2011.10.14 01:45:25 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d7a64c28cf0c90e6c48af4f7d6f9ed41\WindowsBase.ni.dll
MOD - [2011.10.14 01:45:20 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\130ad4d9719e566ca933ac7158a04203\System.Xml.ni.dll
MOD - [2011.10.14 01:45:17 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\2d5bcbeb9475ef62189f605bcca1cec6\System.Configuration.ni.dll
MOD - [2011.10.14 01:45:16 | 007,963,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\abab08afa60a6f06bdde0fcc9649c379\System.ni.dll
MOD - [2011.10.14 01:45:11 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\a1a82db68b3badc7c27ea1f6579d22c5\mscorlib.ni.dll
MOD - [2011.09.27 20:59:40 | 000,180,332 | ---- | M] () -- C:\dell\Log.exe
MOD - [2011.09.27 20:58:58 | 001,015,256 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\js3250.dll
MOD - [2011.05.25 16:55:28 | 001,524,112 | ---- | M] () -- C:\Windows\SysWOW64\bandoolmx.dll
MOD - [2011.05.25 16:49:18 | 002,127,872 | ---- | M] () -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\ffox@bandoo.com\components\FFPlugin.dll
MOD - [2011.04.23 22:18:10 | 000,100,208 | ---- | M] () -- C:\Windows\SysWOW64\FAIEExtension.dll
MOD - [2011.04.23 22:17:32 | 000,062,136 | ---- | M] () -- C:\Windows\SysWOW64\FAib.dll
MOD - [2011.04.23 22:16:44 | 000,250,552 | ---- | M] () -- C:\Windows\SysWOW64\FACrashRpt.dll
MOD - [2011.03.02 19:49:57 | 006,053,536 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2011.02.19 20:35:06 | 000,985,088 | ---- | M] () -- C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
MOD - [2011.01.25 15:14:08 | 001,802,472 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe
MOD - [2011.01.25 15:14:08 | 001,534,184 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\stage_secondary.exe
MOD - [2011.01.25 15:10:24 | 002,225,664 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\QtCore4.dll
MOD - [2011.01.25 15:10:22 | 016,124,416 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\libumajin.dll
MOD - [2011.01.25 15:10:22 | 007,938,048 | ---- | M] () -- C:\Program Files (x86)\Dell Stage\Dell Stage\QtGui4.dll
MOD - [2011.01.13 21:42:02 | 000,025,920 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\SftBRCCPiped.dll
MOD - [2011.01.13 21:39:32 | 000,783,680 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE
MOD - [2011.01.13 21:37:50 | 000,079,168 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\zlib1.dll
MOD - [2011.01.13 21:37:26 | 000,075,072 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STRegistry.dll
MOD - [2011.01.13 21:37:24 | 000,111,936 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STPE.dll
MOD - [2011.01.13 21:37:20 | 000,121,152 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STNLS.dll
MOD - [2011.01.13 21:37:18 | 000,128,320 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STLog.dll
MOD - [2011.01.13 21:37:14 | 000,234,816 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STFiles.dll
MOD - [2011.01.13 21:37:04 | 000,025,920 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\STBRCCServCLR.dll
MOD - [2011.01.13 21:36:50 | 001,123,648 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Local Backup\LibXml2.dll
MOD - [2010.11.13 02:08:41 | 000,315,392 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll
MOD - [2010.11.05 03:58:50 | 000,212,992 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.resources\2.0.0.0_de_b77a5c561934e089\System.resources.dll
MOD - [2010.02.09 20:34:00 | 001,807,680 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
MOD - [2010.02.09 20:34:00 | 000,365,888 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\de\DataSafeOnline.resources.dll
MOD - [2010.02.09 20:34:00 | 000,275,776 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\SdbShared.dll
MOD - [2010.02.09 20:34:00 | 000,152,896 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\SdbShared.XmlSerializers.dll
MOD - [2010.02.09 20:34:00 | 000,095,552 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\SdbUI.dll
MOD - [2010.02.09 20:34:00 | 000,062,784 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\de\SdbShared.resources.dll
MOD - [2010.02.09 20:34:00 | 000,058,688 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\BalloonWindow.dll
MOD - [2010.02.09 20:34:00 | 000,046,400 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\de\SdbUI.resources.dll
MOD - [2010.02.09 20:34:00 | 000,017,728 | ---- | M] () -- C:\Program Files (x86)\Dell DataSafe Online\cpputils.dll
MOD - [2009.10.15 10:10:28 | 000,498,160 | ---- | M] () -- C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
MOD - [2009.07.30 09:54:55 | 000,540,672 | ---- | M] () -- C:\Program Files (x86)\A1 Dashboard\resetregistry.dll
MOD - [2009.07.14 19:58:23 | 000,249,856 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.resources\3.0.0.0_de_31bf3856ad364e35\PresentationFramework.resources.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2010.09.22 19:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:64bit: - [2010.07.06 04:22:30 | 000,007,168 | ---- | M] (Microsoft) [Auto | Running] -- C:\Program Files\Dell\OSD\DellOSDservice.exe -- (DellOSDservice)
SRV:64bit: - [2010.06.20 13:35:44 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010.02.02 21:13:10 | 000,048,128 | ---- | M] (Dell Inc.) [Auto | Running] -- C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE -- (wltrysvc)
SRV - [2011.07.01 21:04:31 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011.05.25 16:54:58 | 001,617,296 | ---- | M] (Bandoo Media Inc.) [Auto | Running] -- C:\PROGRA~2\Bandoo\Bandoo.exe -- (Bandoo Coordinator)
SRV - [2011.04.30 13:42:53 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2011.04.23 22:17:08 | 002,412,728 | ---- | M] (Sensible Vision ) [Auto | Running] -- C:\Program Files (x86)\Sensible Vision\Fast Access\FAService.exe -- (FAService)
SRV - [2011.02.28 19:44:14 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011.02.25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2011.01.13 21:37:02 | 000,705,856 | ---- | M] (SoftThinks SAS) [Auto | Running] -- C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE -- (SftService)
SRV - [2010.09.14 05:45:56 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2010.09.14 05:45:44 | 000,508,264 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2010.08.24 21:27:20 | 000,867,080 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010.08.24 21:15:00 | 000,016,680 | ---- | M] (Citrix Online, a division of Citrix Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Citrix\GoToAssist\514\g2aservice.exe -- (GoToAssist)
SRV - [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.09.18 11:54:20 | 000,169,312 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor8.0)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009.05.21 15:59:08 | 000,206,064 | ---- | M] (SupportSoft, Inc.) [Auto | Running] -- C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe -- (sprtsvc_DellSupportCenter) SupportSoft Sprocket Service (DellSupportCenter)
SRV - [2007.05.31 17:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007.05.31 17:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011.07.01 21:04:32 | 000,123,784 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2011.07.01 21:04:32 | 000,088,288 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.09.23 01:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2010.09.14 05:45:52 | 000,022,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2010.09.14 05:45:50 | 000,025,960 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2010.09.14 05:45:48 | 000,268,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2010.09.14 05:45:44 | 000,760,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2010.07.15 01:17:58 | 000,033,792 | ---- | M] (Nuvoton Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nuviocir_win7_x64.sys -- (nuviocir)
DRV:64bit: - [2010.06.24 00:10:56 | 000,344,680 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2010.06.20 17:20:54 | 006,858,240 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2010.06.20 13:02:04 | 000,264,192 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010.04.07 15:57:08 | 000,073,784 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010.04.07 15:57:08 | 000,028,728 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.03.24 08:13:00 | 000,371,072 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVerPola.sys -- (AVerPola)
DRV:64bit: - [2010.03.10 09:33:52 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie) AMD PCI Express (3GIO)
DRV:64bit: - [2010.02.02 21:13:08 | 000,022,520 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcm42rly.sys -- (BCM42RLY)
DRV:64bit: - [2010.02.02 21:13:08 | 000,020,984 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcmvwl64.sys -- (BcmVWL)
DRV:64bit: - [2010.02.02 21:13:06 | 003,058,168 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2009.07.24 15:52:14 | 000,114,560 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbdev.sys -- (hwusbdev)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 02:09:50 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2009.07.09 10:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2008.09.25 02:36:14 | 000,238,848 | ---- | M] (Sensible Vision ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\facap.sys -- (FACAP)
DRV:64bit: - [2008.03.17 12:06:14 | 000,115,328 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ewusbmdm.sys -- (hwdatacard)
DRV:64bit: - [2008.01.22 16:11:40 | 000,119,296 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ewusbnet.sys -- (ewusbnet)
DRV:64bit: - [2006.11.01 19:51:00 | 000,151,656 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\URLSearchHook: {26647ca4-a2a7-4eac-8a72-761aa9141de7} - C:\Program Files (x86)\www.Freeware-download.com\tbwww..dll (Conduit Ltd.)

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = g.uk.msn.com/USCON/8
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = search.conduit.com?SearchSource=10&ctid=CT2325506
IE - HKCU\..\URLSearchHook: {26647ca4-a2a7-4eac-8a72-761aa9141de7} - C:\Program Files (x86)\www.Freeware-download.com\tbwww..dll (Conduit Ltd.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========


FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=4.0: C:\Program Files (x86)\Virtual Earth 3D\ [2010.08.24 21:02:02 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/VirtualEarth3D,version=4.0: C:\Program Files (x86)\Virtual Earth 3D\ [2010.08.24 21:02:02 | 000,000,000 | ---D | M]
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fassoxpcom@sensiblevision.com: C:\Program Files (x86)\Sensible Vision\Fast Access\xpcom_fasso\ [2011.06.26 08:49:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.23\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.09.27 20:58:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.23\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011.09.27 20:58:59 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\ffox@bandoo.com: C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles/bbb66dxe.default\extensions\ffox@bandoo.com [2011.06.26 13:32:12 | 000,000,000 | ---D | M]

[2011.06.26 13:30:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dragana\AppData\Roaming\Mozilla\Extensions
[2011.02.03 23:32:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dragana\AppData\Roaming\Mozilla\Extensions\{SbX-136198-9783706830751-stu10}
[2011.10.26 16:19:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions
[2011.09.24 21:55:47 | 000,000,000 | ---D | M] (www.Freeware-download.com Community Toolbar) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\{26647ca4-a2a7-4eac-8a72-761aa9141de7}
[2011.03.03 14:00:12 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2011.06.26 13:30:19 | 000,000,000 | ---D | M] (Searchqu Toolbar) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\{99079a25-328f-4bd4-be04-00955acaa0a7}
[2011.09.24 21:55:46 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\engine@conduit.com
[2011.06.26 13:32:12 | 000,000,000 | ---D | M] (Bandoo for Firefox) -- C:\Users\dragana\AppData\Roaming\Mozilla\Firefox\Profiles\bbb66dxe.default\extensions\ffox@bandoo.com
[2011.06.26 13:30:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2011.03.03 13:59:36 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011.02.02 22:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010.12.03 20:14:08 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2010.12.03 20:14:08 | 000,002,344 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2010.12.03 20:14:08 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2011.06.26 13:30:15 | 000,002,501 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\SearchResults.xml
[2010.12.03 20:14:08 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2010.12.03 20:14:08 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml

O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2:64bit: - BHO: (UrlHelper Class) - {A40DC6C5-79D0-4ca8-A185-8FF989AF1115} - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll (Bandoo Media, inc)
O2:64bit: - BHO: (Face recognition web login for FastAccess) - {DA5BCE70-D057-4D63-943D-5F3927EC59F1} - C:\Program Files (x86)\Sensible Vision\Fast Access\x64\FAIESSO.dll (Sensible Vision )
O2 - BHO: (www.Freeware-download.com Toolbar) - {26647ca4-a2a7-4eac-8a72-761aa9141de7} - C:\Program Files (x86)\www.Freeware-download.com\tbwww..dll (Conduit Ltd.)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll ()
O2 - BHO: (UrlHelper Class) - {A40DC6C5-79D0-4ca8-A185-8FF989AF1115} - C:\PROGRA~2\WI3C8A~1\Datamngr\IEBHO.dll (Bandoo Media, inc)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Face recognition web login for FastAccess) - {DA5BCE70-D057-4D63-943D-5F3927EC59F1} - C:\Program Files (x86)\Sensible Vision\Fast Access\FAIESSO.dll (Sensible Vision )
O2 - BHO: (BandooIEPlugin Class) - {EB5CEE80-030A-4ED8-8E20-454E9C68380F} - C:\Program Files (x86)\Bandoo\Plugins\IE\ieplugin.dll (Bandoo Media Inc.)
O3:64bit: - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (www.Freeware-download.com Toolbar) - {26647ca4-a2a7-4eac-8a72-761aa9141de7} - C:\Program Files (x86)\www.Freeware-download.com\tbwww..dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\WI3C8A~1\Datamngr\ToolBar\searchqudtx.dll ()
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O4:64bit: - HKLM..\Run: [Broadcom Wireless Manager UI] C:\Programme\Dell\DW WLAN Card\WLTRAY.EXE (Dell Inc.)
O4:64bit: - HKLM..\Run: [DellStage] C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe ()
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [DATAMNGR] C:\PROGRA~2\WI3C8A~1\Datamngr\DATAMN~1.EXE (Bandoo Media, inc)
O4 - HKLM..\Run: [Dell DataSafe Online] C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe ()
O4 - HKLM..\Run: [DellSupportCenter] C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe (SupportSoft, Inc.)
O4 - HKLM..\Run: [Desktop Disc Tool] c:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe ()
O4 - HKLM..\Run: [FAStartup] File not found
O4 - HKLM..\Run: [FATrayAlert] C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayMon.exe (Sensible Vision )
O4 - HKLM..\Run: [ShwiconXP6366] c:\Program Files (x86)\Multimedia Card Reader(6366)\ShwiconXP6366.exe (Alcor Micro Corp.)
O4 - HKLM..\Run: [StartCCC] c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [UCam_Menu] C:\Program Files (x86)\Dell\Dell TouchCam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [EPSON SX410 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFCE.EXE /FU "C:\Windows\TEMP\E_S116F.tmp" /EF "HKCU" File not found
O4 - HKLM..\RunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe (Dell)
O4 - HKLM..\RunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe (Softthinks)
O4 - Startup: C:\Users\dragana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk = C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0A3B2AF6-91FF-4EE9-87FB-1CEFFADDC95F}: NameServer = 194.48.139.254 194.48.124.200
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WI3C8A~1\Datamngr\x64\datamngr.dll) - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\datamngr.dll (Bandoo Media, inc)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll) - C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll (Bandoo Media, inc)
O20 - AppInit_DLLs: (c:\progra~2\wi3c8a~1\datamngr\datamngr.dll) -c:\progra~2\wi3c8a~1\datamngr\datamngr.dll (Bandoo Media, inc)
O20 - AppInit_DLLs: (c:\progra~2\wi3c8a~1\datamngr\iebho.dll) -c:\progra~2\wi3c8a~1\datamngr\iebho.dll (Bandoo Media, inc)
O20 - AppInit_DLLs: (c:\progra~2\bandoo\bndhook.dll) -c:\progra~2\bandoo\bndhook.dll (Discordia Limited)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) -C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\GoToAssist: DllName - (C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll) - File not found
O20 - Winlogon\Notify\FastAccess: DllName - (C:\Program Files (x86)\Sensible Vision\Fast Access\FALogNot.dll) - C:\Program Files (x86)\Sensible Vision\Fast Access\FALogNot.dll ()
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.) - E:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2009.12.04 06:15:00 | 000,000,047 | R--- | M] () - E:\AUTORUN.INF -- [ CDFS ]
O32 - Unable to obtain root file information for disk Y:\
O33 - MountPoints2\{7dd4214f-50e2-11e0-a1a2-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{7dd4214f-50e2-11e0-a1a2-806e6f6e6963}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{a55f7d07-4db6-11e0-86ff-00a0c6000000}\Shell - "" = AutoRun
O33 - MountPoints2\{a55f7d07-4db6-11e0-86ff-00a0c6000000}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{d25a6277-4dab-11e0-8ce3-001e101f8924}\Shell - "" = AutoRun
O33 - MountPoints2\{d25a6277-4dab-11e0-8ce3-001e101f8924}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{d25a62a0-4dab-11e0-8ce3-001e101f8924}\Shell - "" = AutoRun
O33 - MountPoints2\{d25a62a0-4dab-11e0-8ce3-001e101f8924}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{d25a62ab-4dab-11e0-8ce3-001e101f8924}\Shell - "" = AutoRun
O33 - MountPoints2\{d25a62ab-4dab-11e0-8ce3-001e101f8924}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{fa1af997-2ed8-11e0-be3d-5cac4c27d523}\Shell - "" = AutoRun
O33 - MountPoints2\{fa1af997-2ed8-11e0-be3d-5cac4c27d523}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{fa1af9ab-2ed8-11e0-be3d-5cac4c27d523}\Shell - "" = AutoRun
O33 - MountPoints2\{fa1af9ab-2ed8-11e0-be3d-5cac4c27d523}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\E\Shell - "" = AutoRun
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2009.12.04 06:15:00 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011.10.27 11:06:27 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{24E9C9F2-77AA-4B5B-B5A6-FDC0CE351124}
[2011.10.27 06:58:30 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F8E6171C-BB43-42F6-9F0F-162B44DF3C71}
[2011.10.27 06:57:27 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{835FC27F-C770-4162-BDD7-C3D4B65F12A6}
[2011.10.26 21:13:44 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B1BA7867-8004-4A85-BB76-180E5B52CF64}
[2011.10.26 21:12:41 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{0D4F74B0-60BA-4FC1-AB1B-2A994CE02159}
[2011.10.26 11:00:43 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{61A45E6F-EA37-4FE4-B664-BB1A02D49493}
[2011.10.26 10:57:10 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{065DBB33-ED72-484F-BD54-35512C43500C}
[2011.10.26 10:19:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{79AB206B-9F41-4582-B033-2007236EEFF0}
[2011.10.25 21:45:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{89549C18-F677-4044-B4A4-0E3E557A70AC}
[2011.10.25 21:45:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{DC354935-7F75-4C17-A71D-59CD1A087B80}
[2011.10.25 20:11:27 | 001,150,584 | ---- | C] (Web Deals Interactive LLC) -- C:\Users\dragana\Desktop\dropdowndealssetup-silentinstaller.exe
[2011.10.25 20:10:46 | 000,414,368 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011.10.25 20:10:44 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2011.10.25 20:10:09 | 000,000,000 | -H-D | C] -- C:\Windows\AxInstSV
[2011.10.24 20:11:11 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9F358AA1-7475-4A5F-A6DB-B6E06CE4393F}
[2011.10.24 20:10:38 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{89A4C1F6-45A1-408B-A669-2C3D36D12F6F}
[2011.10.24 07:30:12 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B6E316E5-DACC-4330-BCDB-37571D2C3329}
[2011.10.23 19:15:04 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{00BB8C20-A5D0-45D1-BB75-C66AAA4909A5}
[2011.10.23 19:15:01 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{61C766BA-3052-4DB7-89EA-3DDB112ABB0E}
[2011.10.23 14:05:05 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{DD93E9DB-3598-468C-9C33-806D36C7FDA3}
[2011.10.22 11:21:49 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{2FA5ADC9-2982-4A27-899E-381145BCDB67}
[2011.10.21 23:21:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8E18FF33-46A8-46F5-A78E-6B4FF43769BC}
[2011.10.21 12:10:03 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{DAA6E841-C59F-4C82-95E5-3A5AA3D6A36C}
[2011.10.21 12:09:29 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{E45E5155-5232-41EC-9AA3-F817A56C7483}
[2011.10.21 08:36:55 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{32E40919-D10F-4BF0-8BB9-93D170D12811}
[2011.10.21 08:36:22 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A057C665-DC46-4429-9523-B83A9575F520}
[2011.10.21 07:29:26 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{372D5A7A-C5BE-4E2E-A7FB-EC343D824CE1}
[2011.10.21 07:28:53 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9DB9E503-E2B8-46A0-83A5-8F4051BADBB3}
[2011.10.19 21:39:45 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{0AECDB14-4945-40E8-82EB-140AD5E0E741}
[2011.10.19 14:59:23 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F2015696-A724-473E-86D2-A6D4219A2FE2}
[2011.10.19 11:07:17 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{AC819B3D-3196-4ABE-870E-59AAC5E03A22}
[2011.10.18 23:07:16 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{3F603846-E8DA-4B8C-8FB6-56A74A64D6E3}
[2011.10.18 18:26:03 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{1DC025F4-4F05-4D44-BA19-F2913E3245D7}
[2011.10.18 18:24:30 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EADD96FF-4AFD-4F32-B190-677DD99205AD}
[2011.10.18 08:36:52 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{023574C3-84A8-4A4B-A764-083E61D0163F}
[2011.10.17 20:36:52 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{42ECB8B5-6DC4-4E77-AC8A-79A872B9F532}
[2011.10.16 18:32:11 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8D9D0151-20E0-482D-8F94-DA5FE987D629}
[2011.10.16 18:31:38 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{32C469B0-0B1B-41EE-904B-77D960CC7A65}
[2011.10.15 20:24:36 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{74836DB2-D886-4F8B-9BD5-D07994D7AD3A}
[2011.10.15 20:24:03 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8B1E0013-D524-4877-8EE7-D9F01A3D30AF}
[2011.10.15 20:10:25 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{10BDD3E9-5490-4EAA-A311-BBDA82C4C1BD}
[2011.10.15 20:09:22 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{BCB99BED-C4E4-4AB7-959C-ADF32CA71CCB}
[2011.10.14 21:44:31 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F4884368-B3C4-456E-9506-9E7CFB70612C}
[2011.10.14 21:43:58 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{86966DC3-575D-4D25-BFE5-FDAC4FBD0534}
[2011.10.14 01:42:36 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F2C879AF-8B85-4B42-9D2C-56995470CA54}
[2011.10.14 01:41:34 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{10AE7D7D-8A58-49EE-9D32-5638AFFD242D}
[2011.10.13 21:16:49 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{214DDDC0-EC08-4ACB-B02F-16CB4289D4EE}
[2011.10.13 11:40:49 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011.10.13 11:40:49 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2011.10.13 11:40:48 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2011.10.13 11:40:48 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011.10.13 11:40:47 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2011.10.13 11:40:47 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2011.10.13 11:40:47 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011.10.13 11:40:35 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisdecd.dll
[2011.10.13 11:40:35 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
[2011.10.13 11:40:35 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2011.10.13 11:40:34 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2011.10.13 11:40:20 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleacc.dll
[2011.10.13 11:40:19 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2011.10.13 09:16:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{583DFB26-54D5-40CF-978B-9F445D089D7B}
[2011.10.13 09:13:32 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F72A357A-253B-41D6-BFE7-19DEAF74DD68}
[2011.10.13 07:37:59 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{6109C7F7-BEA2-4600-AB53-189EC17872BE}
[2011.10.13 07:36:56 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CAA4C01D-4A86-4F23-9D86-695EC7086A7A}
[2011.10.11 11:46:08 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{06C9E7BB-DC94-4EC5-884E-E687E5207A54}
[2011.10.11 11:45:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{787DFD8E-30CF-4624-B9CC-B3F116E80C31}
[2011.10.11 07:36:17 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{D8788CBA-7069-45D9-95EA-83BB53A0DDDE}
[2011.10.11 07:35:44 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F34F9D62-4739-44F2-AA47-1C249BDAB7B8}
[2011.10.10 15:14:58 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EF0FE76C-A81D-4B9A-9016-96092AE517EA}
[2011.10.10 15:14:26 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{98B7209E-4636-4033-9980-C4D5DA023EB6}
[2011.10.10 14:07:02 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8E28CB4B-5183-43F7-96FF-996B0E2739A3}
[2011.10.10 14:00:02 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{0820AA9B-63C4-4E93-961B-8D9C6CD9CD69}
[2011.10.10 13:44:01 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{90F97AC9-585A-4B3B-9197-DD6A6F4A601D}
[2011.10.09 22:43:12 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{D073A68F-1DF7-4539-AAFC-153DCA0FCCF7}
[2011.10.09 22:42:09 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{C4820ECE-AC28-4292-BE94-60B0E688C76C}
[2011.10.09 21:24:16 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{C9ECD729-EDAE-40B8-8602-2F56E2AAB9E4}
[2011.10.09 21:23:12 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9898FEBE-AF61-4B66-B368-16B1D6AF16ED}
[2011.10.09 17:22:28 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{D8D9205C-216D-47C4-AA6D-9320A3D145E4}
[2011.10.09 17:16:06 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{E0B0B62F-1607-4415-9301-90CD884997E8}
[2011.10.09 17:15:33 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9DA51CA7-AF44-46E1-8E06-9EAC64FCA3F7}
[2011.10.09 12:26:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A54FCE83-FBC9-412C-AE74-49D8AF4FBCA6}
[2011.10.09 12:14:08 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{86F62CE0-13F3-49D8-9F9B-BD1E6F7CABE0}
[2011.10.09 12:11:34 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{03C9CB1B-CA88-4820-8D10-68482A089388}
[2011.10.09 11:59:04 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{286A9194-A301-4A41-B553-4200BD49E38A}
[2011.10.09 11:58:02 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{233F4BCB-35F3-4A71-90D5-6D0350E22DBC}
[2011.10.09 11:49:33 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EB0FC773-CD1B-4D5F-9C3D-71C49C1BE83C}
[2011.10.09 11:48:00 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8C986CEB-3098-4E4D-87F1-75E09C13DC6D}
[2011.10.09 07:51:37 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{19974557-4E92-42D4-8D45-839F459A08B7}
[2011.10.08 15:27:04 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{E8201336-54F5-47D7-8A3E-347A634373FE}
[2011.10.08 11:27:26 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{4EF65B9E-F85A-40FE-877F-078547561351}
[2011.10.08 11:26:53 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EE2C0552-CE51-4207-A0E0-0E70FDC00858}
[2011.10.08 09:25:18 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9044FFB5-8322-4D13-A797-8ED585FB6D26}
[2011.10.08 09:24:15 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{7FC799E5-E246-441D-889F-9BDD5BDF57FA}
[2011.10.07 22:42:19 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CC2DD0D6-E27C-4888-A96B-3513013AB450}
[2011.10.07 22:39:46 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{10313056-366F-4917-BEF6-AE15880F16A0}
[2011.10.07 20:23:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{1C935433-B03C-4DED-B0FF-8713663C9AAB}
[2011.10.07 20:23:44 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CE49A977-A795-427D-B997-03A12CA5E701}
[2011.10.06 20:32:23 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{F6CF81BE-9EC4-4A9D-8C1F-A79A5DFC7A7F}
[2011.10.06 20:31:20 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9DA0F995-4964-47DF-B4CB-59885D660AD2}
[2011.10.06 16:01:13 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{5EA01D84-4942-417D-831E-7E629756AD69}
[2011.10.06 16:00:40 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CA2E81D2-E525-44EE-89E8-8A442C5B1DC5}
[2011.10.06 15:47:00 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B4EAA12F-5C4B-413A-8A02-01C260D4A194}
[2011.10.06 15:46:27 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{05AFE881-F5DE-49E6-B79B-832EDE2231F2}
[2011.10.06 15:30:55 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A4F78E8D-83C5-42A4-8447-7C21CB292B6C}
[2011.10.06 15:29:52 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{DF5B9F1E-A416-40C5-A63F-660DBD95B2BD}
[2011.10.05 23:51:53 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{042342AF-3C7A-4C17-B0F8-6206E3813E38}
[2011.10.05 23:51:20 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{AB26F731-1348-4A96-A5F5-88B4752E61F9}
[2011.10.05 22:02:16 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{566CFFD8-F025-4A34-A3B3-21D6EB2E0284}
[2011.10.05 22:01:43 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{5A02B95C-DF02-4A6C-9F0D-2E4C0E54567E}
[2011.10.05 12:53:32 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{7357DB94-416B-42F8-8ED8-52DA086BD144}
[2011.10.05 12:52:10 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A5CC72CF-53F1-47E9-8925-5460F856387D}
[2011.10.03 22:00:32 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{FEE70F59-CEBC-45C2-BE4B-31A49E56463E}
[2011.10.03 21:59:30 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{06997C52-58C7-4490-8D1F-BBC998298AFF}
[2011.10.03 21:47:53 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B0D90983-E2F5-430A-A7F9-2AA0C3C07F3E}
[2011.10.03 21:47:19 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{11345BEB-FDF7-4600-951C-CE221D1F9D8B}
[2011.10.03 21:39:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{6B1BCB57-DDEF-45C5-AB8E-2E34911477EA}
[2011.10.03 21:38:32 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{51EC0B7B-78ED-483E-951C-D84BE8123EE7}
[2011.10.03 21:30:01 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8BECAA41-919E-4A70-98AB-F7B3F22E1B6A}
[2011.10.03 21:29:27 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{BEA7B5D4-E823-4063-B27B-12777C0F44B6}
[2011.10.03 21:05:42 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{039393CB-0B8F-4F65-BA97-70BDEBE3C42F}
[2011.10.03 21:05:10 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A69F0403-B1B6-4233-B9CB-984B41F7D3AE}
[2011.10.03 20:56:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B034B4AA-0E41-4884-B8CD-1F8EB77C1345}
[2011.10.03 20:55:40 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{478CAF6F-D5E4-49BB-8DBA-00305DE6FA38}
[2011.10.03 16:21:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A81CBF2A-8E26-44D7-806D-613E3B89368D}
[2011.10.03 16:20:41 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{75032EA1-1F00-4B31-8FF2-85C0214650DE}
[2011.10.03 15:54:47 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{11E6D46D-B337-48DF-9DFE-8AA984CDD25A}
[2011.10.03 15:53:45 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9CF45D6D-E622-45A2-8C3D-0B0F69E57B19}
[2011.10.02 23:47:19 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{37824565-5A06-4769-878B-A38C4B19716A}
[2011.10.02 23:46:46 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8CB19F7E-C184-4A86-8C67-F07608DC29CF}
[2011.10.02 21:06:54 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9F0D2CEB-790E-4E0F-8D9C-6E1537EE4A2A}
[2011.10.02 21:06:21 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{49166C2B-E856-4EE6-9692-D24D92E971EB}
[2011.10.02 00:38:20 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{C5082E35-EFA2-4B6E-B20D-2EB495B815CE}
[2011.10.02 00:37:45 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{42FD6AE0-79E9-4915-BDDC-B501213A9A65}
[2011.10.01 20:23:46 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{459C80DF-44E3-4F6B-A52C-EA359FEF1C43}
[2011.10.01 20:23:13 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{47FA02AF-A636-4136-94F6-0D745519FDCA}
[2011.10.01 09:35:17 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{20CD51DC-AC9D-48C3-91E7-A0FCE674B355}
[2011.10.01 09:34:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{9B00DEF9-B48E-4213-86E5-FA7D6060D3A8}
[2011.09.30 23:10:18 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{827A096F-9F14-4AB6-A119-E0FA0541DF99}
[2011.09.30 22:56:35 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{5411578A-2D2D-4C34-806A-ABCE006625DE}
[2011.09.30 22:56:02 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{EC35CE39-309C-4303-831B-3251718DBEB4}
[2011.09.30 12:30:58 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{FB79F8EA-605E-4CD7-8970-A75BCCAE922D}
[2011.09.30 12:30:25 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{7548B4AF-B445-40E0-ACC0-BD79F2491252}
[2011.09.30 12:28:33 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{3724181A-4F84-45FD-82DD-788FA2C1503E}
[2011.09.29 09:20:26 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{A04F5F28-104D-4EDE-9995-0A433DBEA554}
[2011.09.29 07:23:05 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{2905DA8A-4E90-4C90-81E8-6A2AC6252FC1}
[2011.09.29 07:21:04 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{C1609748-CC0F-4642-967E-006C505EDBEC}
[2011.09.28 10:43:06 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8CC2F2D8-23EE-4493-9E7A-AC01D8AA95E0}
[2011.09.28 07:37:01 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{08393D37-0FEA-42B3-BCF6-FA21ED39C590}
[2011.09.28 07:35:58 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{8688328D-702C-408A-A5BF-974B8D7C2F3A}
[2011.09.27 21:50:17 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{94283720-DAD0-4260-A68F-784CB057B7BA}
[2011.09.27 21:47:14 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{B06755F9-CA88-4D8B-8474-446E78FB9780}
[2011.09.27 21:41:16 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{D01DF9E7-64AA-470B-B3AA-05382C93F75F}
[2011.09.27 20:58:45 | 000,000,000 | ---D | C] -- C:\Users\dragana\AppData\Local\{CB0CFFA9-F435-4F9A-87A9-151729A83851}

========== Files - Modified Within 30 Days ==========

[2011.10.27 15:13:43 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.10.27 15:13:43 | 000,014,240 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.10.27 14:28:53 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.10.27 10:54:31 | 3218,042,880 | -HS- | M] () -- C:\hiberfil.sys
[2011.10.25 20:11:45 | 001,150,584 | ---- | M] (Web Deals Interactive LLC) -- C:\Users\dragana\Desktop\dropdowndealssetup-silentinstaller.exe
[2011.10.25 20:11:40 | 005,155,328 | ---- | M] () -- C:\Users\dragana\Desktop\windowsdefender_1.1.1593.msi
[2011.10.25 20:10:46 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2011.10.14 01:39:48 | 000,298,216 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011.10.14 01:33:48 | 001,521,074 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.10.14 01:33:48 | 000,654,536 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2011.10.14 01:33:48 | 000,616,418 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.10.14 01:33:48 | 000,130,150 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2011.10.14 01:33:48 | 000,106,540 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat

========== Files Created - No Company Name ==========

[2011.10.25 20:11:27 | 005,155,328 | ---- | C] () -- C:\Users\dragana\Desktop\windowsdefender_1.1.1593.msi
[2011.06.26 13:32:10 | 001,524,112 | ---- | C] () -- C:\Windows\SysWow64\bandoolmx.dll
[2011.04.23 22:18:10 | 000,100,208 | ---- | C] () -- C:\Windows\SysWow64\FAIEExtension.dll
[2011.04.23 22:17:32 | 000,062,136 | ---- | C] () -- C:\Windows\SysWow64\FAib.dll
[2011.04.23 22:16:44 | 000,250,552 | ---- | C] () -- C:\Windows\SysWow64\FACrashRpt.dll
[2011.02.08 14:37:32 | 000,111,932 | ---- | C] () -- C:\Windows\SysWow64\EPPICPrinterDB.dat
[2011.02.08 14:37:32 | 000,031,053 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern131.dat
[2011.02.08 14:37:32 | 000,027,417 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern121.dat
[2011.02.08 14:37:32 | 000,026,154 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern1.dat
[2011.02.08 14:37:32 | 000,024,903 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern3.dat
[2011.02.08 14:37:32 | 000,021,390 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern5.dat
[2011.02.08 14:37:32 | 000,020,148 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern2.dat
[2011.02.08 14:37:32 | 000,011,811 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern4.dat
[2011.02.08 14:37:32 | 000,004,943 | ---- | C] () -- C:\Windows\SysWow64\EPPICPattern6.dat
[2011.02.08 14:37:32 | 000,001,146 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_DU.dat
[2011.02.08 14:37:32 | 000,001,139 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_PT.dat
[2011.02.08 14:37:32 | 000,001,139 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_BP.dat
[2011.02.08 14:37:32 | 000,001,136 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_ES.dat
[2011.02.08 14:37:32 | 000,001,129 | ---- | C] () -- C:\Windows\SysWow64\EPPICPresetData_FR.dat
[20

offline
  • Pridružio: 02 Feb 2008
  • Poruke: 14018
  • Gde živiš: Nish

Pozdrav dragana81!










Arrow


Kao sto vidis izvestaj nije ceo (postoji ogranicenje broja karaktera koji mogu da idu u poruci). Moraces da izvestaj prikacis uz poruku a ne da ga kopiras u istoj.








goran9888 (AMF Tim)

offline
  • Pridružio: 02 Apr 2011
  • Poruke: 14

Napisano: 27 Okt 2011 15:37

uh, evo odmah nisam primetila Sad

Dopuna: 27 Okt 2011 15:44

nadam se da je uspelo ovaj put
i jos nesto sumnjam da imam keylogger, kako da ga otkrijem, dodje mi da bacim kompijuter...



mycity.rs/must-login.png

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Dragana, meni ovo ovde sve deluje poprilicno cisto.

Btw, ti imas program koji sluzi za prepoznavanje lica(verovatno za logovanje na racunar,), kao i program za konferencijske razgovore. Mozda oni dovode do tog paljenja kamerice.

Kazi mi zasto sumnjas da imas keylogger?

Usput uploaduj ovaj fajl : C:\dell\Log.exe na ovaj sajt http://www.virustotal.com/

i okaci u sledecoj poruci link do rezultata.

offline
  • Pridružio: 02 Apr 2011
  • Poruke: 14

Napisano: 28 Okt 2011 0:38

link od rezultata
virustotal.com/file-scan/reanalysis.htm.....1319754173


recimo da sam sigurna 99% da je keylogger u pitanju
ne razumem se previse u racunare, ali koliko sam na netu nasla to je to.
A razlog je to sto bez obzira sto sa brisala poruke koje sam na fejsu pisala moj muz mi je procitao od reci do reci, a izdiktirao mu je moje sestre sin, koji zivi 120km od mene, uz to mu je i reko koja mi je lozinka na fejsu. Ne znam da li sam vec spomenula, ali nekad se desava kad kucam da mi kasne slova po par sekundi.
Osecam se jako nesigurnom, sve sto pisem sve saznaju, dodje mi lepo da odem u policiju da ih prijavim ili da se resim kompijutera, ne znam sta mi drugo preostaje.

Dopuna: 28 Okt 2011 9:02

Jos nesto da dodam, sad sam nasla u istoriji antivirusa da je 27 septembra u 8 uvece prijavio 7 puta da je pronasao Malware. Ja tad nisam bila kod kuce, bili su muz i sestric i naravno imali pristup kompijuteru.

Dopuna: 28 Okt 2011 9:09

Juce pre nego sto sam postavila temu sam ukljucila Aviru i ona je pronasla ovo JAVA/Small.AF

Dopuna: 28 Okt 2011 9:15

27.sep. je pronasla TR/dropper.gen

Dopuna: 28 Okt 2011 13:53

Uh ja samo nesto dodajem, nadam se da moze da pomogne.
Cackajuci po netu nasla sam program COMODO instalirala i sa njim pretrazila i on je nasao svasta nesto
evo na primer ovo:

suspicious@(#2d8ydtpp41alf, 2qp28yfa57kq1)
C:\Users\dragana\AppData\Local\Temp\BandooV6.exe
C:Esers\dragana\Desktop\Dropdawndealssetup-silentinstaler.exe

Malware@14wz35vabad5d
C:\ProgramFiles(x86)\VAG908\VAG908.exe

Heur.Corrupt.PE@4294967295
C:\Users\dragana\Downloads\XviSetup.exe

za prva dva pise da je veliki riziko za poslednji da je nizi.
Jos je nasao neke "infekcije" koje je prebacio u karantin, ako treba i njih cu ovde staviti.


Molim vas za pomoc

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Napisano: 28 Okt 2011 13:54

Dragana, obrisi rucno


C:\dell\Log.exe


Restartuj racunar.

Zasto ne zakljucas kompjuter. Ako vec nemas poverenja? Ovako ti mogu postavljati keylogger-e svakog dana. A nije ih bas tako lako identifikovati.

Promeni sifru na FB, mail-u, i svim forumima. KOristi Incognito opciju u browserima. Koristi master password opciju ako koristis Firefox ili Operu. Ili pak Lastpass program ako koristis Chrome.

Dopuna: 28 Okt 2011 13:56

Comodo ima veoma osetljiv skener. Taj bandoo nije malware, vec je program za prikazivanje smajlija, toolbarova i sl. Ovo drugo je legitimno. A ovo trece je nesto sto si sama skinula. Neki program, ne znam sta je.

offline
  • Pridružio: 02 Apr 2011
  • Poruke: 14

Napisano: 28 Okt 2011 14:19

Uh on je stvarno instaliran to vece kad nisam bila kod kuce 27.09.2011

Kako da ga obrisem, kad odem na C i nadjem imam opciju da ga posaljem u "korpu za papir" bojim se da to nije dovoljno, zar ne?
i sta mi vredi ako moze opet da mi se zakace budale?
uh nemam reci da neko tako nesto moze da uradi.
jel se moze to i sa drugog kompijutera ili samo sa mog?

i kakvi su ovo drugi virusi jel imaju veze sa tim? i jel dovoljno sto su u karantinu ili moram da ih brisem nekako?

Dopuna: 28 Okt 2011 14:48

Evo ovako pokusavajuci da izbirem sto ste mi rekli naisla sam na jos neki program koji sam htela da obrisem, medjutim pise da ja to ne mogu da to moze samo sistemadministator, izmedju ostalog pise da pomocu njega moze da se kotrolise sta je pisano na tastaturi i jos ne znam ni ja sta sve
uglavnom ne mogu da ga izbrisem.
sta da radim?

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Uf, polako polako. Resili smo se glavnog problema, sad samo da smislimo kako da te zastitim ubuduce. Posto je ovo cudo prilicno elegantno odradjeno.

1. Koji Antivirus trenutno koristis?
2. Zasto ne zakljucavas svoj laptop?
3. Kako se zove taj drugi program koji si htela obrisati?
4. Garantujem ti da je ovde BIO problematican samo ovaj fajl sto sam ti rekao da ga obrises. I da, dovoljno je poslati ga u korpu i isprazniti istu.
5. Ovi ostali nisu virusi, vec ti rekoh. Comodo je napravio lazne uzbune. Nije pouzdana njegova Antivirus komponenta.

offline
  • Pridružio: 02 Apr 2011
  • Poruke: 14

Napisano: 28 Okt 2011 15:05

1. avira
2.nije lap top nego "normalni" komp.
3. iLivid Kod tog programa mi pise da pokusava sto se kuca na tastaturu da prebaci na drugi komp, ako razumes nemacki rado cu ti kopirati pa da pogledas sam. ne mogu da ga obrisem nikako Sad

Dopuna: 28 Okt 2011 15:07

pa ne mogu da ga prebacim u korpu jer pise da je trenutno u upotrebi Sad

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Znas kako se deinstaliraju programi? Ako znas idi i deinstaliraj sve sto ima naziv koji je oznacen crnim pravougaonikom na ovoj slici


Ko je trenutno na forumu
 

Ukupno su 990 korisnika na forumu :: 28 registrovanih, 3 sakrivenih i 959 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: anta, aramis s, babaroga, bojan_t, bojank, Boris90, cavatina, debeli, Denaya, dzoni19, flash12, FOX, kuntalo, Lieutenant, mgolub, milenko crazy north, Millennium, milutin134, Neutral-M, oldtimer, rovac, sevenino, Stanlio, stegonosa, Tvrtko I, ZetaMan, Zoca, šumar bk2