offline
- Slaven980
- Novi MyCity građanin
- Pridružio: 04 Sep 2008
- Poruke: 27
|
Pozdrav i hvala unapred
na koji način se ispoljava problem oko koga tražite pomoć;
Prekjuce sam dao podatke firmi pod nazivom PlanetVPN i danas sam morao da blokiram karticu jer su popoceli da skidaju sa nje ko blesavi.
kada se taj problem počeo ispoljavati;
Danas
ukoliko zaštitni softver koji koristite nešto detektuje, a ne može da ukloni, napišite/iskopirajte nazive detektovanih datoteka u poruku;
BitDefender ne vidi nista
na koji način ste pokušali rešiti problem;
blokirao karticu, sad gledam da sklonim sve sto je vezano za PlanetVPN
kakvom internet konekcijom raspolažete (tip i brzina konekcije);
A1 kucni net. 40GB/s
bilo kakve dodatne informacije koje bi mogle pobliže opisati stanje na vašem računaru.
Uglavnom je sve radilo kako treba pre ovog dogadjaja
Hvala puno na svom vasem trudu!!!
Slaven
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-09-2023
Ran by slave (administrator) on DESKTOP-NRI8V3K (29-09-2023 23:07:09)
Running from C:\Users\slave\OneDrive\Desktop\FRST64.exe
Loaded Profiles: slave
Platform: Microsoft Windows 10 Pro Version 22H2 19045.3448 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HDBox\Setup.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud Helper.exe
(C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe ->) (GOG Sp. z o.o. -> GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe <2>
(C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe ->) (GOG Sp. z o.o. -> GOG.com) C:\Program Files (x86)\GOG Galaxy\GOG Galaxy Notifications Renderer.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <6>
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Adobe Crash Processor.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Creative Cloud UI Helper.exe <3>
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\27.0.1.259\DiscoverySrv.exe
(C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bduserhost.exe <4>
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe
(C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(cmd.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(cmd.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdwtxcr.exe
(Discord Inc. -> Discord Inc.) C:\Users\slave\AppData\Local\Discord\app-1.0.9018\Discord.exe <6>
(DriverStore\FileRepository\u0394441.inf_amd64_57e767cb37419fb0\B394106\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0394441.inf_amd64_57e767cb37419fb0\B394106\atieclxx.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <8>
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnapp.exe
(explorer.exe ->) (GOG Sp. z o.o. -> GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <29>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(explorer.exe ->) (Viber Media S.à r.l. -> Viber Media S.Ã r.l.) C:\Users\slave\AppData\Local\Viber\Viber.exe
(GOG Sp. z o.o. -> GOG.com) C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler64.exe
(Kilonova LLC -> Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.5.0.7\Lightshot.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0394441.inf_amd64_57e767cb37419fb0\B394106\atiesrxx.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\safepay\bdservicehost.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3>
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Nitro Software, Inc. -> Nitro Software, Inc.) C:\Program Files\Nitro\Reader 5\NitroPDFReaderDriverService5x64.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(svchost.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
(svchost.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3385_none_7e1c800a7c81ffd9\TiWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3571168 2023-08-22] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe [1062424 2023-09-26] (Bitdefender SRL -> Bitdefender)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [BdVpnApp] => C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe [492072 2023-06-12] (Bitdefender SRL -> Bitdefender)
HKLM\...\Run: [BdagentApp] => C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe [1062424 2023-09-26] (Bitdefender SRL -> Bitdefender)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11559648 2023-09-21] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226728 2019-07-22] (Kilonova LLC -> )
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [748624 2023-06-14] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1131488 2023-09-20] (Adobe Inc. -> Adobe Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2586640 2023-09-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [Viber] => C:\Users\slave\AppData\Local\Viber\Viber.exe [84505808 2023-09-19] (Viber Media S.à r.l. -> Viber Media S.Ã r.l.)
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4374888 2023-09-11] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [EpicGamesLauncher] => E:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37137360 2023-06-05] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [Upwork] => C:\Users\slave\AppData\Local\Programs\upwork\Upwork.exe [146953264 2022-10-27] (Upwork Global Inc. -> Upwork, Inc.)
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [2646632 2023-09-19] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [13734376 2023-03-02] (GOG Sp. z o.o. -> GOG.com)
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [Discord] => C:\Users\slave\AppData\Local\Discord\Update.exe [1525016 2023-04-26] (Discord Inc. -> GitHub)
HKU\S-1-5-21-3470360410-400680247-530503575-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [11469784 2023-09-07] (Adobe Inc. -> Adobe Systems Incorporated)
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [203936 2022-10-16] (Adobe Inc. -> Adobe Systems Inc)
HKLM\...\Print\Monitors\Nitro PDF Port Monitor: C:\Windows\system32\nitrolocalmon10.dll [31904 2016-08-02] (Nitro Software, Inc. -> Nitro Software, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\117.0.5938.132\Installer\chrmstp.exe [2023-09-28] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {C3F85264-094A-4EC4-8A55-EC4CC2463120} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-08-02] (Adobe Inc. -> Adobe Inc.)
Task: {7CF84B3A-43E8-49D5-8E43-EB22280AA25F} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3571168 2023-08-22] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {5E07C8E2-6419-47DC-86D8-EB2C0FE9C834} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3807712 2023-08-22] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {5B85693C-31AC-4514-8589-AC4D7F49725F} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030584 2023-07-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {EE810889-AEFA-4E7F-8A7E-C8AFCA46B111} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\27.0.1.259\WatchDog.exe [937000 2023-07-27] (Bitdefender SRL -> Bitdefender)
Task: {B1C59DC4-B92C-4700-B4FC-95175FC66504} - System32\Tasks\com.amazon.kpr.ncd => C:\Users\slave\AppData\Local\Amazon\Kindle Previewer 3\KPR_NCD.exe [2094080 2023-05-03] () [File not signed]
Task: {AE7F53D1-DE08-4202-A40B-A1AA2FE3C3DB} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2022-10-28] (Dropbox, Inc -> Dropbox, Inc.)
Task: {FB23E892-C08D-4066-A5DE-F827561FB154} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2022-10-28] (Dropbox, Inc -> Dropbox, Inc.)
Task: {E255AB12-4B5B-4075-8C29-0A3D5D5EDFAD} - System32\Tasks\GoogleUpdateTaskMachineCore{8680C457-97C2-4FD6-9FD5-AEFF5C3E9338} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-10-27] (Google LLC -> Google LLC)
Task: {3E687A3F-36AF-4650-99EC-F7BFB3EE2C7D} - System32\Tasks\GoogleUpdateTaskMachineUA{5D73A448-DE16-4142-B61E-58891A4550D1} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-10-27] (Google LLC -> Google LLC)
Task: {CCB6C4F4-6D31-43DF-8850-4108682E4B79} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913760 2023-09-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {B1128A25-5EED-4A1C-86C3-E85F693F7530} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913760 2023-09-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {9895CCF0-453F-4D98-87F8-1A896B689FDA} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124464 2023-09-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {7C3D647E-50A0-4C76-8DA5-F3BD7A97A047} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124464 2023-09-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {169E87D4-811C-406B-822E-B2D6CB0577D9} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030584 2023-07-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {65A80C0B-3D89-41E9-AE86-EC78E34586AB} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130824 2023-09-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {FA66E60E-CB5B-43DE-A7DA-F1FEE587DDF1} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3470360410-400680247-530503575-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130824 2023-09-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {605A13E8-4624-45FA-95E4-FC46B7356024} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60344 2023-07-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {3B32F7F4-D1FE-46DC-A5C1-950714659274} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [291768 2023-07-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {8303400D-44C0-40CF-899A-E5EE48BE64C7} - System32\Tasks\update-S-1-5-21-3470360410-400680247-530503575-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {FD4A8E96-DA2D-4581-8DA8-12D25CAB1D76} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\update-S-1-5-21-3470360410-400680247-530503575-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.8.1
Tcpip\..\Interfaces\{1e023bd7-7d16-42d7-9f93-7794a442cb29}: [DhcpNameServer] 192.168.106.27
Tcpip\..\Interfaces\{97b5cdd3-ddca-4840-8844-12edd477ed1d}: [DhcpNameServer] 10.255.255.1 10.255.255.2
Tcpip\..\Interfaces\{aacddf81-4b41-4ad0-8405-afc9da1d1d5b}: [DhcpNameServer] 192.168.8.1
Edge:
=======
Edge Profile: C:\Users\slave\AppData\Local\Microsoft\Edge\User Data\Default [2023-08-15]
Edge Extension: (Bitdefender Anti-tracker) - C:\Users\slave\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dbconhplchnbippmjabbcedokimacfjl [2023-01-11]
Edge Extension: (Edge relevant text changes) - C:\Users\slave\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-08-09]
Edge HKLM-x32\...\Edge\Extension: [dbconhplchnbippmjabbcedokimacfjl]
Edge HKLM-x32\...\Edge\Extension: [pdhdldaneekjpoaldekpgomomeabpnek]
FireFox:
========
FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security App\bdwteff.xpi
FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security App\bdwteff.xpi [2023-07-03] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ]
FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi => not found
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-02-01]
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security App\bdtbext
FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender Security App\bdtbext [2023-07-06] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security App\bdwteff.xpi
FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security App\bdtbext
FF Plugin: @java.com/DTPlugin,version=11.381.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-06-14] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.381.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-06-14] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-09-07] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2023-09-20] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2023-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 5\npnitromozilla.dll [2016-08-02] (Nitro Software, Inc. -> Nitro PDF)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2023-09-20] (Adobe Inc. -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\slave\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-10-27]
CHR Profile: C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-09-29]
CHR Notifications: Profile 1 -> [Link mogu videti samo ulogovani korisnici] [Link mogu videti samo ulogovani korisnici]
CHR HomePage: Profile 1 -> [Link mogu videti samo ulogovani korisnici]
CHR StartupUrls: Profile 1 -> "hxxps://www.fiverr.com/users/slaven980/seller_dashboard","hxxps://www.upwork.com/nx/find-work/","hxxps://www.facebook.com/","hxxps://mail.google.com/mail/u/0/#inbox","hxxps://mail.yahoo.com/d/folders/1","hxxps://medierogledelse.roxen.com/","hxxps://trello.com/b/tCs8vhW5/prelom-knjiga"
CHR Extension: (Torrent Scanner) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2023-03-02]
CHR Extension: (Strata) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bihlahcemjcnhakkkclcohelfdleejmc [2022-10-27]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2023-08-25]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-09-26]
CHR Extension: (Free Rider HD) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\emikpifndnjfkgofoglceekhkbaicbde [2022-10-27]
CHR Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fdpohaocaechififmbbbbbknoalclacl [2023-07-15]
CHR Extension: (Causality Games) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\femoooemgmjaebeodbbikbkmhlafenpl [2022-10-27]
CHR Extension: (Readium) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fepbnnnkkadjhjahcafoaglimekefifl [2022-10-27]
CHR Extension: (Bitdefender Wallet) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gannpgaobkkhmpomoijebaigcapoeebl [2022-11-12]
CHR Extension: (Google Docs Offline) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-24]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-09-21]
CHR Extension: (Table Capture) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\iebpjdmgckacbodjpijphcplhebcmeop [2023-09-19]
CHR Extension: (Grammarly: Grammar Checker and AI Writing App) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2023-09-29]
CHR Extension: (Bitdefender Anti-tracker) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\khndhdhbebhaddchcgnalcjlaekbbeof [2023-01-07]
CHR Extension: (Hootsuite) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kneloppijbcidgidihgdjnooihjcdbij [2022-10-27]
CHR Extension: (Little Alchemy) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2022-10-27]
CHR Extension: (Google Play Books) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mmimngoggfoobjdlefbcabngfnmieonb [2022-10-27]
CHR Extension: (Chrome Web Store Payments) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-10-27]
CHR Extension: (Sound booster (volume boosting app)) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ogadflejmplcdhcldlloonbiekhnlopp [2023-06-19]
CHR Extension: (Simple EPUB Reader) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ojhbgcchcbdjdenibfmjofobklkkhofc [2022-10-27]
CHR Extension: (RSS Feed Reader) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pnjaodmkngahhkoihejjehlcdlnohgmp [2022-10-27]
CHR Extension: (Canvas Rider) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\poknhlcknimnnbfcombaooklofipaibk [2022-10-27]
CHR Profile: C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 2 [2022-10-27]
CHR HomePage: Profile 2 -> [Link mogu videti samo ulogovani korisnici]{B51A2708-7A76-4099-A694-5A7CBFA9119A}&serpv=5
CHR StartupUrls: Profile 2 -> "hxxp://start.search.us.com/v/2/?guid={B51A2708-7A76-4099-A694-5A7CBFA9119A}&serpv=5"
CHR Session Restore: Profile 2 -> is enabled.
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-10-27]
CHR Extension: (Google Docs Offline) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-10-27]
CHR Extension: (Chrome Web Store Payments) - C:\Users\slave\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-10-27]
CHR Profile: C:\Users\slave\AppData\Local\Google\Chrome\User Data\System Profile [2022-10-27]
CHR HKU\S-1-5-21-3470360410-400680247-530503575-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl]
CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-08-02] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [944096 2023-09-20] (Adobe Inc. -> Adobe Inc.)
S3 AfVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\hydra.sdk.windows.service.exe [439848 2023-06-07] (Bitdefender SRL -> AnchorFree Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3966432 2023-08-22] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 BDAppSrv; C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe [842264 2023-09-26] (Bitdefender SRL -> Bitdefender)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [842264 2023-09-26] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [842264 2023-09-26] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2946088 2023-08-30] (Bitdefender SRL -> Bitdefender)
R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2560552 2023-07-20] (Bitdefender SRL -> Bitdefender)
R2 BDSafepaySrv; C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe [842264 2023-09-26] (Bitdefender SRL -> Bitdefender)
R2 BdVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe [450088 2023-06-12] (Bitdefender SRL -> Bitdefender)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [15044872 2023-03-10] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11817040 2023-09-17] (Microsoft Corporation -> Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2022-10-28] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2022-10-28] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [46824 2023-09-21] (Dropbox, Inc -> Dropbox, Inc.)
R3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11030632 2023-09-19] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [813032 2022-12-20] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [943528 2023-05-17] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2022-10-21] (Epic Games Inc. -> Epic Games, Inc.)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.189.0910.0001\FileSyncHelper.exe [3511720 2023-09-27] (Microsoft Corporation -> Microsoft Corporation)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [2317800 2023-03-02] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7178728 2023-03-02] (GOG Sp. z o.o. -> GOG.com)
R2 NitroReaderDriverReadSpool5; C:\Program Files\Nitro\Reader 5\NitroPDFReaderDriverService5x64.exe [327328 2016-08-02] (Nitro Software, Inc. -> Nitro Software, Inc.)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.189.0910.0001\OneDriveUpdaterService.exe [3849128 2023-09-27] (Microsoft Corporation -> Microsoft Corporation)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [659496 2023-07-27] (Bitdefender SRL -> Bitdefender)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [402264 2023-09-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [288792 2023-09-26] (Bitdefender SRL -> Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [842264 2023-09-26] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [25584 2023-06-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 AMDSAFD; C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_54807f69fe156f14\amdsafd.sys [113088 2023-04-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0394441.inf_amd64_57e767cb37419fb0\B394106\amdkmdag.sys [99737448 2023-08-01] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [61888 2023-05-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R1 atc; C:\Windows\System32\DRIVERS\atc.sys [6205488 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci; C:\Windows\system32\DRIVERS\bddci.sys [798128 2022-11-09] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [22976 2020-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
R3 bdprivmon; C:\Windows\System32\DRIVERS\bdprivmon.sys [49200 2023-08-21] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender SRL)
S3 bduefiscan; C:\Windows\system32\DRIVERS\bduefiscan.sys [39840 2023-03-11] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R1 bdvpn_netfilter; C:\Windows\System32\drivers\bdvpn_netfilter.sys [94600 2021-09-16] (Pango Inc. -> Pango Inc)
S3 BEDaisy; C:\Program Files (x86)\Common Files\BattlEye\BEDaisy.sys [3348752 2023-05-20] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 Gemma; C:\Windows\System32\DRIVERS\gemma.sys [1347496 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA)
R2 Ignisv2; C:\Windows\system32\DRIVERS\ignisv2.sys [165312 2023-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2023-08-10] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R2 trufos; C:\Windows\System32\DRIVERS\trufos.sys [633248 2023-03-11] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R0 vlflt; C:\Windows\System32\DRIVERS\vlflt.sys [522136 2023-07-03] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-09-29 23:06 - 2023-09-29 23:08 - 000000000 ____D C:\FRST
2023-09-29 22:10 - 2023-09-29 22:21 - 043753462 _____ C:\Users\slave\Downloads\IMG_20230929_213343.psd
2023-09-27 21:18 - 2023-09-27 21:18 - 000000000 ____D C:\Users\slave\AppData\Local\PlanetVPN
2023-09-27 21:16 - 2023-09-27 21:16 - 038187480 _____ (PlanetVPN ) C:\Users\slave\Downloads\planetvpn.exe
2023-09-27 21:07 - 2023-09-27 21:07 - 000054045 _____ C:\Users\slave\Downloads\1_22_2021_ADB153867356.pdf
2023-09-27 19:04 - 2023-09-27 19:04 - 000054188 _____ C:\Users\slave\Downloads\9_22_2023_ADB153867356.pdf
2023-09-27 14:22 - 2023-09-27 14:22 - 000405385 _____ C:\Users\slave\Downloads\Westport annonsering Havnemagasinet september 23.pdf
2023-09-27 12:06 - 2023-09-27 12:06 - 000720358 _____ C:\Users\slave\Downloads\Word Art (1).psd
2023-09-26 18:24 - 2023-09-26 18:24 - 001638941 _____ C:\Users\slave\Downloads\The_Manazir_Maxims__Learn_How_t_-_MIke_Manazir_sw_proofing_092323.pdf
2023-09-26 09:47 - 2023-09-26 09:47 - 000028400 _____ C:\Users\slave\Downloads\1st_letter_to_Master_-_Eris_Nyx_-_20.8.2023.odt
2023-09-26 09:32 - 2023-09-26 09:32 - 006119881 _____ C:\Users\slave\Downloads\PIVOT_EN_July_2023_AODA_V2.pdf
2023-09-25 09:45 - 2023-09-25 09:45 - 000070086 _____ C:\Users\slave\Downloads\bell-gothic-std.zip
2023-09-25 09:44 - 2023-09-25 09:44 - 000013710 _____ C:\Users\slave\Downloads\market_deco.zip
2023-09-25 09:35 - 2023-09-25 09:35 - 012965459 _____ C:\Users\slave\Downloads\Full knjiga susan.pdf
2023-09-25 09:33 - 2023-09-25 09:33 - 000624911 _____ C:\Users\slave\Downloads\9781732006676-Perfect.pdf
2023-09-25 09:12 - 2023-09-25 09:12 - 001269128 _____ C:\Users\slave\Downloads\Preservation - S L Stoner w 3 author comments.pdf
2023-09-24 13:38 - 2023-09-24 13:38 - 053869362 _____ C:\Users\slave\Downloads\Hiram_Morgan_Hill_v3_s_Comments_1.pdf
2023-09-23 07:28 - 2023-09-23 07:28 - 000001078 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop (Beta).lnk
2023-09-23 07:19 - 2023-09-23 07:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2023-09-22 23:00 - 2023-09-22 23:00 - 001104026 _____ C:\Users\slave\Downloads\Mirror 05-23.pdf
2023-09-21 14:51 - 2023-09-21 14:51 - 000046824 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2023-09-20 09:55 - 2023-09-20 09:55 - 000001058 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge 2024.lnk
2023-09-20 09:51 - 2023-09-20 09:51 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator 2023.lnk
2023-09-15 13:31 - 2023-09-15 13:31 - 000000000 ___HD C:\$WinREAgent
2023-09-14 17:30 - 2023-09-14 17:30 - 000014583 _____ C:\Users\slave\Downloads\Invoice 22-2023.pdf
2023-09-14 10:22 - 2023-09-27 13:58 - 000000000 ____D C:\Users\slave\AppData\Roaming\paradox-launcher-v2
2023-09-14 10:22 - 2023-09-14 10:22 - 000000000 ____D C:\Users\slave\OneDrive\Documents\Paradox Interactive
2023-09-14 10:22 - 2023-09-14 10:22 - 000000000 ____D C:\Users\slave\AppData\Roaming\Paradox Interactive
2023-09-14 10:21 - 2023-09-14 10:21 - 000000000 ____D C:\Users\slave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Paradox Interactive
2023-09-14 10:21 - 2023-09-14 10:21 - 000000000 ____D C:\Users\slave\AppData\Local\Paradox Interactive
2023-09-13 14:34 - 2023-09-13 14:34 - 000118909 _____ C:\Users\slave\Downloads\avenir-next.zip
2023-09-11 21:36 - 2023-09-11 21:36 - 000032426 _____ C:\Users\slave\Downloads\en-upgrade-2018-SubRip-utf-8.zip
2023-09-11 21:36 - 2023-09-11 21:36 - 000032382 _____ C:\Users\slave\Downloads\en-upgrade-2018-SubRip-utf-8 (1).zip
2023-09-10 18:36 - 2023-09-10 18:36 - 000000000 ____D C:\EADesktopDev
2023-09-10 15:06 - 2023-09-10 15:06 - 002771536 _____ C:\Users\slave\Downloads\hotel.psd
2023-09-10 15:03 - 2023-09-10 15:04 - 000140388 _____ C:\Users\slave\Downloads\Bowery20.webp
2023-09-10 14:33 - 2023-09-10 14:33 - 000026737 _____ C:\Users\slave\Downloads\cup.jpeg
2023-09-10 14:20 - 2023-09-10 14:20 - 000022124 _____ C:\Users\slave\Downloads\cristoforo.rar
2023-09-06 12:30 - 2023-09-06 12:30 - 004847296 _____ (Husdawg, LLC) C:\Users\slave\Downloads\Detection (2).exe
2023-09-06 12:27 - 2023-09-06 12:27 - 004847296 _____ (Husdawg, LLC) C:\Users\slave\Downloads\Detection (1).exe
2023-09-06 12:23 - 2023-09-06 12:23 - 004847296 _____ (Husdawg, LLC) C:\Users\slave\Downloads\Detection.exe
2023-09-05 13:27 - 2023-09-05 13:28 - 584028187 _____ C:\Users\slave\Downloads\Uspomene.mp4
2023-09-05 11:20 - 2023-09-05 11:20 - 012369920 _____ C:\Users\slave\Downloads\Bulletin2023-2_Front_01.indd
2023-09-04 09:12 - 2023-09-04 09:12 - 000028400 _____ C:\Users\slave\Downloads\Letter_to_Master_-_Eris_Nox_-_20.8.2023.odt
2023-09-02 17:41 - 2023-09-02 17:41 - 000058732 _____ C:\Users\slave\Downloads\Invoice 21-2023.pdf
2023-09-02 10:40 - 2023-09-02 10:40 - 002199010 _____ C:\Users\slave\Downloads\KATRINE.psd
2023-09-01 14:28 - 2023-09-01 14:28 - 035922082 _____ C:\Users\slave\Downloads\coverfrontandback2 (3).png 27 aug copy.pdf
2023-09-01 12:35 - 2023-09-01 12:35 - 032679736 _____ C:\Users\slave\Downloads\TWS_Magazine_Iss03_64pp_LR05.pdf
2023-08-30 10:26 - 2023-08-30 10:26 - 048213951 _____ C:\Users\slave\Downloads\P124751_Renholdsnytt 4 - 2023_Proof_new.pdf
2023-08-30 09:28 - 2023-08-30 09:28 - 048215264 _____ C:\Users\slave\Downloads\P124751_Renholdsnytt 4 - 2023_Proof.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-09-29 23:06 - 2022-10-27 17:52 - 000000000 ____D C:\Program Files (x86)\Google
2023-09-29 23:06 - 2022-09-08 05:12 - 000000000 ____D C:\Windows\SystemTemp
2023-09-29 23:05 - 2023-06-12 20:09 - 000000000 ____D C:\Users\slave\AppData\Local\Discord
2023-09-29 23:05 - 2022-10-28 09:59 - 000000000 ____D C:\Users\slave\AppData\Roaming\Dropbox
2023-09-29 23:05 - 2022-10-28 09:58 - 000000000 ____D C:\Users\slave\AppData\Local\Dropbox
2023-09-29 23:05 - 2022-10-27 19:06 - 000000000 ____D C:\Program Files (x86)\Steam
2023-09-29 23:05 - 2022-10-27 18:13 - 000000000 ___RD C:\Users\slave\Creative Cloud Files
2023-09-29 23:04 - 2023-06-12 20:09 - 000000000 ____D C:\Users\slave\AppData\Roaming\discord
2023-09-29 23:04 - 2022-10-27 17:50 - 000000000 ___RD C:\Users\slave\OneDrive
2023-09-29 23:03 - 2023-08-04 19:56 - 000003110 _____ C:\Windows\system32\Tasks\AMDLinkUpdate
2023-09-29 23:03 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-09-29 21:40 - 2022-10-27 17:50 - 000000000 ____D C:\Users\slave\AppData\Local\D3DSCache
2023-09-29 21:28 - 2022-10-27 17:40 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-09-29 20:55 - 2022-10-27 18:12 - 000000000 ____D C:\AMD
2023-09-29 20:49 - 2022-10-27 18:12 - 000000000 ____D C:\Users\slave\AppData\Local\AMD_Common
2023-09-29 17:54 - 2022-10-27 18:35 - 000000000 ____D C:\Users\slave\OneDrive\Documents\ViberDownloads
2023-09-29 14:15 - 2022-11-07 09:58 - 000000000 ____D C:\Users\slave\AppData\Roaming\Microsoft\Word
2023-09-29 12:00 - 2022-11-02 08:34 - 000000000 ____D C:\Users\slave\AppData\Roaming\Microsoft\Excel
2023-09-29 11:59 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-09-29 11:59 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2023-09-29 11:56 - 2023-04-14 10:16 - 000000000 ____D C:\Users\slave\AppData\Roaming\Nitro
2023-09-28 07:42 - 2022-10-27 18:22 - 000000000 ___HD C:\adobeTemp
2023-09-28 07:42 - 2022-10-27 18:09 - 000000000 ____D C:\Program Files\Adobe
2023-09-28 07:41 - 2022-10-27 17:52 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-09-28 07:41 - 2022-10-27 17:52 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-09-28 00:57 - 2022-10-27 17:46 - 000000000 ____D C:\Users\slave
2023-09-28 00:53 - 2022-10-27 21:04 - 000000000 ____D C:\Users\slave\AppData\Roaming\vlc
2023-09-27 21:17 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2023-09-27 18:59 - 2023-01-17 08:40 - 000002276 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-09-27 18:59 - 2022-10-27 17:40 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-09-27 13:41 - 2022-10-27 18:26 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2023-09-27 13:41 - 2022-10-27 18:10 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3470360410-400680247-530503575-1001
2023-09-27 13:41 - 2022-10-27 18:10 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2023-09-27 13:41 - 2022-10-27 18:10 - 000002132 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-09-26 23:21 - 2022-11-07 10:30 - 000000000 ____D C:\Users\slave\AppData\Roaming\calibre
2023-09-26 21:56 - 2022-11-07 10:30 - 000000000 ____D C:\Users\slave\AppData\Local\calibre-cache
2023-09-26 09:53 - 2022-10-27 17:48 - 000000000 ____D C:\Users\slave\AppData\Local\Packages
2023-09-26 09:51 - 2022-10-27 17:50 - 000795738 _____ C:\Windows\system32\PerfStringBackup.INI
2023-09-26 09:44 - 2022-10-27 17:40 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-09-26 09:44 - 2019-12-07 11:03 - 000065536 _____ C:\Windows\system32\config\ELAM
2023-09-26 09:43 - 2022-10-27 17:40 - 000008192 ___SH C:\DumpStack.log.tmp
2023-09-26 00:49 - 2023-02-04 15:01 - 000000000 ____D C:\Users\slave\AppData\Local\CrashDumps
2023-09-25 11:52 - 2022-10-27 18:35 - 000000000 ____D C:\Users\slave\AppData\Roaming\ViberPC
2023-09-23 07:19 - 2022-10-28 09:58 - 000000000 ____D C:\Program Files (x86)\Dropbox
2023-09-23 07:19 - 2022-10-27 17:48 - 000000000 ____D C:\ProgramData\Packages
2023-09-22 08:49 - 2022-10-27 18:35 - 000000000 ____D C:\Users\slave\AppData\Local\Viber
2023-09-21 09:03 - 2022-10-27 19:13 - 000000000 ____D C:\Users\slave\AppData\Local\Steam
2023-09-20 09:55 - 2022-10-27 18:09 - 000000000 ____D C:\Program Files\Common Files\Adobe
2023-09-20 09:51 - 2022-10-27 17:48 - 000000000 ____D C:\Users\slave\AppData\Roaming\Adobe
2023-09-20 09:03 - 2023-02-25 10:06 - 000001382 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2023-09-20 09:03 - 2023-02-25 10:06 - 000001352 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
2023-09-20 09:03 - 2022-10-27 18:09 - 000000000 ____D C:\Program Files (x86)\Adobe
2023-09-19 14:01 - 2022-10-27 17:52 - 000003790 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{5D73A448-DE16-4142-B61E-58891A4550D1}
2023-09-19 14:01 - 2022-10-27 17:52 - 000003666 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{8680C457-97C2-4FD6-9FD5-AEFF5C3E9338}
2023-09-17 01:58 - 2022-11-06 00:07 - 000000000 ____D C:\Users\slave\AppData\Roaming\uTorrent
2023-09-17 01:34 - 2022-11-06 00:07 - 000000000 ____D C:\Users\slave\AppData\Local\BitTorrentHelper
2023-09-17 00:44 - 2022-10-27 18:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2023-09-16 03:18 - 2022-10-27 17:50 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2023-09-16 03:18 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2023-09-16 03:14 - 2022-10-28 09:58 - 000000938 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2023-09-16 03:14 - 2022-10-28 09:58 - 000000934 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2023-09-16 03:14 - 2022-10-27 17:40 - 001306392 _____ C:\Windows\system32\FNTCACHE.DAT
2023-09-16 03:12 - 2019-12-07 11:54 - 000000000 ___SD C:\Windows\system32\AppV
2023-09-16 03:12 - 2019-12-07 11:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2023-09-16 03:12 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2023-09-15 14:01 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2023-09-15 13:52 - 2022-10-27 17:43 - 003014144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2023-09-15 13:30 - 2022-10-28 01:01 - 000000000 ____D C:\Windows\system32\MRT
2023-09-15 13:24 - 2022-10-28 01:01 - 177941912 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2023-09-14 18:53 - 2022-11-07 17:25 - 000000000 ____D C:\Users\slave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2023-09-14 10:07 - 2022-11-24 15:04 - 000000000 ____D C:\Users\slave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2023-09-14 06:20 - 2022-10-31 10:41 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2023-09-14 06:20 - 2022-10-31 10:41 - 000002084 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller.lnk
2023-09-14 06:20 - 2022-10-31 10:41 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-09-14 06:20 - 2022-10-31 10:41 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-09-13 12:39 - 2022-10-28 09:58 - 000003998 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineUA
2023-09-13 12:39 - 2022-10-28 09:58 - 000003766 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineCore
2023-09-11 23:19 - 2023-07-28 10:49 - 000003530 _____ C:\Windows\system32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0
2023-09-11 23:19 - 2022-10-27 18:13 - 000003506 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0
2023-09-08 08:48 - 2022-10-28 09:11 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2023-09-03 02:27 - 2022-11-01 10:01 - 000000000 ____D C:\Users\slave\AppData\Roaming\Roxen Application Launcher
2023-08-30 12:41 - 2022-10-27 18:51 - 001347496 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\gemma.sys
2023-08-30 12:40 - 2022-10-27 18:51 - 006205488 _____ (Bitdefender S.R.L. Bucharest, ROMANIA) C:\Windows\system32\Drivers\atc.sys
==================== Files in the root of some directories ========
2022-10-27 18:36 - 2022-10-27 18:36 - 000000000 _____ () C:\Users\slave\AppData\Local\oobelibMkey.log
2022-11-04 19:40 - 2022-11-04 19:40 - 000000003 _____ () C:\Users\slave\AppData\Local\updater.log
2022-11-04 19:40 - 2022-11-04 19:40 - 000000424 _____ () C:\Users\slave\AppData\Local\UserProducts.xml
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
[Link mogu videti samo ulogovani korisnici]
|