Provera posle instalacije sumnjivih programcica

Provera posle instalacije sumnjivih programcica

offline
  • oprem1 
  • Novi MyCity građanin
  • Pridružio: 28 Sep 2022
  • Poruke: 23

Nemam problema, ali u zadnje vreme sam instalirao preko 20 raznih programa nelegalnih ali sam pazio i zaobilazio direktnu instalaciju njih, vadio sam potrebne fajlove na zaobilazan nacin tako da koliko sam mogao, zaobisao sam neke viruse da se ubace u racunar ali opet nista nije sigurno, pa sad bi da se malo pregleda da li ima nesto sumnjivo: Skrenirao sam malopre sa malwarebyts onaj normalni scan i nije nista pronasao..

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23-10-2022
Ran by Black (administrator) on DESKTOP-TRM8GEK (Hewlett-Packard HP EliteDesk 800 G1 SFF) (24-10-2022 22:25:09)
Running from C:\Users\Black\Desktop
Loaded Profiles: Black
Platform: Microsoft Windows 10 Pro Version 22H2 19045.2130 (X64) Language: English (United States)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCopyAccelerator.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <11>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(services.exe ->) (Intel(R) Trust Services -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_1b5e80ff87b1f5c8\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(svchost.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGABYTE Technology Co.,Ltd.) C:\Program Files (x86)\GIGABYTE\XTREME GAMING ENGINE\Xtreme.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11102816 2020-12-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe [1203856 2017-10-23] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
HKLM\...\Policies\Explorer: [NoThumbnailCache] 0
HKLM\...\Policies\Explorer: [DisableThumbnailCache] 0
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-978927233-2520614017-2750806757-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [152025856 2022-10-07] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-978927233-2520614017-2750806757-1001\...\Run: [Unified Remote V3] => D:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [3245752 2021-11-22] (Unified Intents AB -> Unified Intents AB)
HKU\S-1-5-21-978927233-2520614017-2750806757-1001\...\Policies\Explorer: [NoThumbnailCache] 0
HKU\S-1-5-21-978927233-2520614017-2750806757-1001\...\Policies\Explorer: [DisableThumbnailCache] 0
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\105.1.43.89\Installer\chrmstp.exe [2022-09-04] (Brave Software, Inc. -> Brave Software, Inc.)
Startup: C:\Users\Black\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE XTREME GAMING ENGINE.lnk [2022-10-24]
ShortcutTarget: GIGABYTE XTREME GAMING ENGINE.lnk -> C:\Program Files (x86)\GIGABYTE\XTREME GAMING ENGINE\autorun.exe () [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {023AB687-2EEA-4116-AF91-6A7F23204693} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2B199810-6C9F-4339-BED3-28D9B000D3A0} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => cmd /c start hpdiags://SmartCheckTest
Task: {2F7BE2D1-0084-45A3-B9CA-6CA6AE81AEDC} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => cmd /c start hpdiags:
Task: {3FFEF526-1DA5-4551-9561-D8296FA40779} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => cmd /c start hpdiags://BHM2
Task: {4413BA17-DDB4-4C8B-9B0F-7C59E569682C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4FA5140C-BBE7-41BC-A5DB-40BD337CA04C} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [816960 2017-09-21] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {5DC79343-CEBA-46B1-A106-158CD8F68716} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => cmd /c start hpdiags://BHM1
Task: {68272FF7-E7F7-4D7E-84BC-D625B8F4CD7A} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [5967976 2015-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {68BE5B34-0A57-45A7-B55D-5AAA6209ABFF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [315056 2022-08-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {6BA0F219-BB28-4BB1-BAB2-6C02DA256FE3} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => cmd /c start hpdiags://BatteryStatusTest
Task: {776943DE-16DE-4EB4-B09A-C9CF31703A96} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {88B586CA-D676-4E5F-ACEE-706D90B1C1A2} - System32\Tasks\Launcher GIGABYTE XTREME GAMING ENGINE => C:\Program Files (x86)\GIGABYTE\XTREME GAMING ENGINE\Xtreme.exe [78020552 2019-03-01] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGABYTE Technology Co.,Ltd.)
Task: {88DEA8F4-3ED3-4E2B-9B2B-CD4858A5358C} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{B8FED0A1-2F0C-415C-AFB9-7AA9508E6A73} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {9780C866-106C-4045-8891-495DE7F5AC83} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => cmd /c start hpdiags://SmartCheckError
Task: {AB7526EB-EAC7-4569-82BA-624296D449D0} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => cmd /c start hpdiags://BCF
Task: {B3A6CEAB-C59F-4853-AA3E-C780D59C14EC} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => cmd /c start hpdiags://LaunchUI
Task: {B4B22768-50FD-4393-8C48-CCEC35B70DE8} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => cmd /c start hpdiags://ABO
Task: {C182446D-60D2-4100-9EAE-53DBC61F65B0} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => cmd /c start hpdiags://BatteryStatusError
Task: {C869C5DB-D091-4D90-BFDB-2A672B526109} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [315056 2022-08-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {CEAB5334-9530-455B-8FF9-16C34C78F4C2} - System32\Tasks\Remove AdwCleaner Application => CMD.EXE /C DEL /F /Q "C:\Users\Black\Desktop\adwcleaner.exe"
Task: {D037139F-83B7-4191-A7CE-7B44F92D47BA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FA6F20C6-A584-4F2F-A7A2-ED194C0646C8} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [5967976 2015-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {FB0E6FB3-1F99-43B6-A2D5-DDE757B10535} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{A49348FB-B85B-4A22-A393-318BFB69449C} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{6c53e5f0-4556-44ef-85ec-9ae2bbe284ad}: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{837b88d8-0869-4ee6-b9e1-d50325bb03b7}: [NameServer] 1.1.1.1,1.0.0.1
Tcpip\..\Interfaces\{837b88d8-0869-4ee6-b9e1-d50325bb03b7}: [DhcpNameServer] 192.168.100.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default [2022-10-24]
Edge HomePage: Default -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
Edge StartupUrls: Default -> "hxxps://www.google.rs/"
Edge Extension: (Universal Bypass) - C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ckiidekccfgninkobmmofopbbdgdclgg [2022-06-22]
Edge Extension: (Download with Ant Download Manager) - C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dalgiebmfcjackkbjfbfmlnflbdfbekj [2022-07-30]
Edge Extension: (Bulk Media Downloader) - C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ehfdcgbfcboceiclmjaofdannmjdeaoi [2022-06-22]
Edge Extension: (Speed-Up Browsing) - C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hkhnldpdljhiooeallkmlajnogjghdfb [2022-06-22]
Edge Extension: (Youtube TV On PC) - C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jldjbkccldgbegjpggphaeikombjmnkh [2022-06-22]
Edge Extension: (Free VPN for Chrome - VPN Proxy VeePN) - C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2022-09-29]
Edge Extension: (SponsorBlock for YouTube - Skip Sponsorships) - C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mnjggcdmjocbbbhaepdhchncahnbgone [2022-10-17]
Edge Extension: (Twitter Video Downloader | Fast and Free) - C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nbkknbagklenkcienihfapbfpjemnfoi [2022-06-22]
Edge Extension: (uBlock Origin) - C:\Users\Black\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2022-09-19]

FireFox:
========
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-08-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-08-25] (Microsoft Corporation -> Microsoft Corporation)

Brave:
=======
BRA Profile: C:\Users\Black\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-10-24]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Black\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-10-08]
BRA Extension: (Brave NTP background images) - C:\Users\Black\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-08-31]
BRA Extension: (Wallet Data Files Updater) - C:\Users\Black\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-09-26]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Black\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-10-08]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Black\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2022-09-04]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\Black\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-08-31]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Black\AppData\Local\BraveSoftware\Brave-Browser\User Data\nkegnmcaaingjdpfadapphceooopdkpj [2022-10-15]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Black\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-10-08]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)
S4 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-08-31] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2776664 2015-08-16] (Microsoft Corporation -> Microsoft Corporation)
S4 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10078976 2022-10-07] (Logitech Inc -> Logitech, Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224192 2022-09-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2209.7-0\NisSrv.exe [3170576 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2209.7-0\MsMpEng.exe [133584 2022-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_1b5e80ff87b1f5c8\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_1b5e80ff87b1f5c8\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 cbfs20; C:\WINDOWS\System32\drivers\cbfs20.sys [447560 2022-01-04] (Microsoft Windows Hardware Compatibility Publisher -> Callback Technologies, Inc. - callback.com)
S3 KrispAudioS; C:\WINDOWS\System32\drivers\KrispAudio.sys [61440 2022-07-28] (Krisp Technologies, Inc -> Krisp Technologies, Inc)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2022-10-07] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-10-07] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2022-10-07] (Logitech Inc -> Logitech)
R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-10-07] (Nvidia Corporation -> NVIDIA Corporation)
S3 pmserenum; C:\WINDOWS\system32\DRIVERS\pmserenum.sys [54400 2016-03-23] (Salt International Corp. -> PenMount Touch Solutions)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [37336 2021-03-09] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-11-08] (MiniTool Solution Ltd -> )
S3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [27744 2021-03-09] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 uvhid; C:\WINDOWS\System32\drivers\uvhid.sys [29720 2021-11-20] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 vmkbd3; C:\WINDOWS\system32\DRIVERS\vmkbd.sys [60344 2022-07-10] (VMware, Inc. -> VMware, Inc.)
R2 VMnetBridge; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [67072 2022-07-10] (VMware, Inc. -> VMware, Inc.)
R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [105912 2021-08-16] (VMware, Inc. -> VMware, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49616 2022-10-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [455968 2022-10-15] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-10-15] (Microsoft Windows -> Microsoft Corporation)
S1 amsdk; \??\C:\WINDOWS\system32\drivers\amsdk.sys [X]
S4 KrispVUSB; \SystemRoot\system32\DRIVERS\KrispVUSB.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-10-24 22:25 - 2022-10-24 22:25 - 000018628 _____ C:\Users\Black\Desktop\FRST.txt
2022-10-24 22:24 - 2022-10-24 22:25 - 000000000 ____D C:\FRST
2022-10-24 22:24 - 2022-10-24 22:24 - 002373632 _____ (Farbar) C:\Users\Black\Desktop\FRST64.exe
2022-10-24 18:58 - 2022-10-24 18:58 - 019404954 _____ C:\Users\Black\Desktop\Ikac - Strava i Zasu 3_mastered.wav
2022-10-24 16:59 - 2022-10-24 17:42 - 000096181 _____ C:\WINDOWS\ZAM.krnl.trace
2022-10-24 16:59 - 2022-10-24 17:42 - 000000000 ____D C:\Users\Black\AppData\Local\AMSDK
2022-10-24 15:44 - 2022-10-24 15:44 - 000000000 ____D C:\Users\Black\AppData\Local\GIGABYTE
2022-10-24 15:38 - 2022-10-24 21:58 - 000000000 ____D C:\Users\Black\Documents\temp
2022-10-24 15:37 - 2022-10-24 21:58 - 000003480 _____ C:\WINDOWS\system32\Tasks\Launcher GIGABYTE XTREME GAMING ENGINE
2022-10-24 15:37 - 2022-10-24 15:37 - 000001307 _____ C:\Users\Public\Desktop\XTREME GAMING ENGINE.lnk
2022-10-24 15:37 - 2022-10-24 15:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE
2022-10-24 15:37 - 2022-10-24 15:37 - 000000000 ____D C:\Program Files (x86)\GIGABYTE
2022-10-24 15:34 - 2022-10-24 15:34 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2022-10-24 14:22 - 2022-10-24 15:42 - 000000000 ____D C:\Users\Black\Desktop\New folder
2022-10-24 14:20 - 2022-10-24 22:20 - 000000000 ____D C:\Users\Black\Desktop\(zabranjeno)
2022-10-24 11:48 - 2022-10-24 11:48 - 000000000 ____D C:\Users\Black\Documents\My Games
2022-10-24 11:42 - 2022-10-24 11:42 - 000000000 ____D C:\Users\Black\Documents\Allavsoft
2022-10-24 02:59 - 2022-10-24 12:32 - 000000000 ____D C:\Users\Black\AppData\Roaming\AVCLabs Video Enhancer AI
2022-10-24 02:58 - 2022-10-24 02:58 - 000001438 _____ C:\Users\Black\Desktop\AVCLabs Video Enhancer AI.lnk
2022-10-24 02:55 - 2022-10-24 02:45 - 000060928 _____ C:\Users\Black\Desktop\register_wrapper.dll
2022-10-24 02:42 - 2022-10-24 03:04 - 000000000 ____D C:\AIEnhancer
2022-10-24 02:40 - 2022-10-24 02:40 - 000000231 _____ C:\Users\Black\Desktop\extra.json
2022-10-24 02:40 - 2022-10-24 02:40 - 000000036 _____ C:\Users\Black\MJKJDeviceGUID
2022-10-24 02:39 - 2022-10-24 02:39 - 000000000 ____D C:\Users\Black\AppData\Local\avclabs video enhancer ai-updater
2022-10-24 02:24 - 2022-10-24 21:57 - 000001134 _____ C:\WINDOWS\system32\config\VSMIDK
2022-10-24 02:23 - 2022-10-24 02:23 - 000374072 _____ C:\WINDOWS\system32\vp9fs.dll
2022-10-24 02:23 - 2022-10-24 02:23 - 000165200 _____ C:\WINDOWS\system32\cmdiag.exe
2022-10-24 02:23 - 2022-10-24 02:23 - 000151352 _____ C:\WINDOWS\system32\nmscrub.exe
2022-10-24 02:23 - 2022-10-24 02:23 - 000103936 _____ C:\WINDOWS\system32\cmimageworker.exe
2022-10-24 02:23 - 2022-10-24 02:23 - 000006658 _____ C:\WINDOWS\system32\VmChipset Third-Party Notices.txt
2022-10-24 02:23 - 2022-10-24 02:23 - 000000000 ___SD C:\WINDOWS\system32\containers
2022-10-24 02:20 - 2022-10-24 11:48 - 000000000 ____D C:\Users\Black\Documents\AVCLabs Video Enhancer AI
2022-10-24 02:20 - 2022-10-24 02:49 - 000000000 ____D C:\Users\Black\AppData\Roaming\AIEnhancer
2022-10-24 02:20 - 2022-10-24 02:20 - 000000000 ____H C:\Users\Black\MJKJRegInfo_ER2BF232W6LEV5F45GHF2VP7PYSGLLJQ
2022-10-24 02:17 - 2022-10-24 02:58 - 000000000 ____D C:\Users\Black\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVCLabs
2022-10-24 02:16 - 2022-10-24 02:58 - 000000000 ____D C:\Program Files (x86)\AVCLabs
2022-10-24 01:42 - 2022-10-24 02:18 - 000000000 ____D C:\Users\Black\AppData\Roaming\HandBrake
2022-10-24 01:42 - 2022-10-24 01:42 - 000000000 ____D C:\Users\Black\AppData\Local\ToastNotificationManagerCompat
2022-10-24 01:41 - 2022-10-24 01:41 - 000000790 _____ C:\Users\Public\Desktop\HandBrake.lnk
2022-10-24 01:41 - 2022-10-24 01:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HandBrake
2022-10-24 01:41 - 2022-10-24 01:41 - 000000000 ____D C:\Program Files\dotnet
2022-10-24 00:33 - 2022-10-24 00:35 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2022-10-24 00:32 - 2022-10-24 00:32 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2022-10-24 00:31 - 2022-10-24 00:31 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2022-10-24 00:26 - 2022-10-24 00:26 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-10-24 00:26 - 2022-10-24 00:26 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2022-10-24 00:26 - 2022-10-24 00:26 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-10-24 00:26 - 2022-10-24 00:26 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-10-24 00:26 - 2022-10-24 00:26 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2022-10-24 00:26 - 2022-10-24 00:26 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2022-10-24 00:26 - 2022-10-24 00:26 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-10-24 00:22 - 2019-12-07 02:35 - 000374784 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DXCpl.exe
2022-10-24 00:22 - 2019-12-07 02:34 - 000417792 _____ C:\WINDOWS\system32\d3dconfig.exe
2022-10-24 00:22 - 2019-12-07 02:27 - 000347136 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DXCpl.exe
2022-10-24 00:22 - 2019-12-07 02:26 - 000365056 _____ C:\WINDOWS\SysWOW64\d3dconfig.exe
2022-10-24 00:18 - 2022-10-24 00:35 - 000000000 ____D C:\Program Files (x86)\MSBuild
2022-10-24 00:18 - 2022-10-24 00:18 - 000000000 ____D C:\Program Files\Reference Assemblies
2022-10-24 00:18 - 2022-10-24 00:18 - 000000000 ____D C:\Program Files\MSBuild
2022-10-24 00:18 - 2022-10-24 00:18 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2022-10-23 18:26 - 2022-10-23 18:27 - 060335860 _____ C:\Users\Black\Desktop\VCDS 21.3.0 + Loader.rar
2022-10-23 17:26 - 2022-10-23 17:26 - 000000000 ____D C:\Users\Black\AppData\Local\NVIDIA Corporation
2022-10-23 17:07 - 2022-10-23 17:07 - 000000000 ____D C:\WINDOWS\Panther
2022-10-23 15:49 - 2022-10-23 15:49 - 000000000 ___HD C:\$Windows.~WS
2022-10-23 15:47 - 2021-03-09 19:41 - 000037336 _____ C:\WINDOWS\system32\pwdrvio.sys
2022-10-23 15:47 - 2019-11-08 11:15 - 003600896 _____ C:\WINDOWS\system32\pwNative.exe
2022-10-23 15:47 - 2019-11-08 11:15 - 000012504 _____ C:\WINDOWS\system32\pwdspio.sys
2022-10-23 15:17 - 2022-10-23 16:20 - 000000000 ____D C:\ESD
2022-10-23 15:13 - 2022-10-23 15:13 - 000000000 ____D C:\$WINDOWS.~BT
2022-10-23 14:43 - 2022-10-24 22:02 - 000844750 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-10-23 14:43 - 2022-10-23 14:43 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-10-23 14:41 - 2022-10-24 21:57 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-10-23 14:41 - 2022-10-23 14:41 - 000003554 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA{A49348FB-B85B-4A22-A393-318BFB69449C}
2022-10-23 14:41 - 2022-10-23 14:41 - 000003464 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-10-23 14:41 - 2022-10-23 14:41 - 000003330 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore{B8FED0A1-2F0C-415C-AFB9-7AA9508E6A73}
2022-10-23 14:41 - 2022-10-23 14:41 - 000003240 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-10-23 14:41 - 2022-10-23 14:41 - 000003118 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2022-10-23 14:41 - 2022-10-23 14:41 - 000002572 _____ C:\WINDOWS\system32\Tasks\Remove AdwCleaner Application
2022-10-23 14:41 - 2022-10-23 14:41 - 000002024 __RSH C:\ProgramData\ntuser.pol
2022-10-23 14:41 - 2022-10-23 14:41 - 000000020 ___SH C:\Users\Black\ntuser.ini
2022-10-23 14:41 - 2022-10-23 14:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\MEGA
2022-10-23 14:41 - 2022-10-23 14:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard
2022-10-23 14:41 - 2022-10-23 14:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2022-10-23 14:41 - 2022-10-23 14:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Abelssoft
2022-10-23 14:40 - 2022-10-23 14:41 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2022-10-23 14:40 - 2022-10-23 14:41 - 000007623 _____ C:\WINDOWS\diagerr.xml
2022-10-23 14:37 - 2022-10-24 02:40 - 000000000 ____D C:\Users\Black
2022-10-23 14:37 - 2019-12-07 11:10 - 000001105 _____ C:\Users\Black\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-10-23 14:36 - 2022-10-23 14:36 - 000000000 ____D C:\WINDOWS\system32\lxss
2022-10-23 14:35 - 2022-10-24 21:58 - 000438624 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-10-23 14:35 - 2022-10-24 20:25 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-10-23 14:09 - 2022-10-23 14:09 - 000000218 _____ C:\Users\Black\AppData\Local\recently-used.xbel
2022-10-23 13:00 - 2022-10-23 13:02 - 000000036 _____ C:\WINDOWS\progress.ini
2022-10-22 22:30 - 2022-10-22 22:30 - 000000000 ____D C:\Users\Black\AppData\Roaming\NVIDIA
2022-10-22 20:58 - 2022-10-24 21:58 - 000000000 ____D C:\ProgramData\NVIDIA
2022-10-22 20:58 - 2022-10-23 18:34 - 000000000 ____D C:\Users\Black\AppData\Local\NVIDIA
2022-10-22 20:58 - 2022-10-23 14:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2022-10-22 20:54 - 2022-10-11 04:00 - 001967880 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2022-10-22 20:54 - 2022-10-11 04:00 - 001967880 _____ C:\WINDOWS\system32\vulkaninfo.exe
2022-10-22 20:54 - 2022-10-11 04:00 - 001524512 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-10-22 20:54 - 2022-10-11 04:00 - 001524512 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2022-10-22 20:54 - 2022-10-11 04:00 - 001472024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2022-10-22 20:54 - 2022-10-11 04:00 - 001432352 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2022-10-22 20:54 - 2022-10-11 04:00 - 001432352 _____ C:\WINDOWS\system32\vulkan-1.dll
2022-10-22 20:54 - 2022-10-11 04:00 - 001213968 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2022-10-22 20:54 - 2022-10-11 04:00 - 001145608 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2022-10-22 20:54 - 2022-10-11 04:00 - 001145608 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2022-10-22 20:54 - 2022-10-11 03:56 - 001523216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2022-10-22 20:54 - 2022-10-11 03:56 - 001185272 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2022-10-22 20:54 - 2022-10-11 03:56 - 000870960 _____ C:\WINDOWS\system32\nvofapi64.dll
2022-10-22 20:54 - 2022-10-11 03:56 - 000823344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2022-10-22 20:54 - 2022-10-11 03:56 - 000693808 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2022-10-22 20:54 - 2022-10-11 03:55 - 012540952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2022-10-22 20:54 - 2022-10-11 03:55 - 002246704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2022-10-22 20:54 - 2022-10-11 03:55 - 001653288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2022-10-22 20:54 - 2022-10-11 03:55 - 001261104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2022-10-22 20:54 - 2022-10-11 03:55 - 000987672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2022-10-22 20:54 - 2022-10-11 03:55 - 000709680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2022-10-22 20:54 - 2022-10-11 03:55 - 000457264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2022-10-22 20:54 - 2022-10-11 03:54 - 015218672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2022-10-22 20:54 - 2022-10-11 03:54 - 005906416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2022-10-22 20:54 - 2022-10-11 03:54 - 005753352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2022-10-22 20:54 - 2022-10-11 03:54 - 005429248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2022-10-22 20:54 - 2022-10-11 03:54 - 003101208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2022-10-22 20:54 - 2022-10-11 03:53 - 000853520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2022-10-22 20:54 - 2022-10-11 03:52 - 007587776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2022-10-22 20:54 - 2022-10-11 03:52 - 006457792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2022-10-22 20:54 - 2022-10-07 05:01 - 000095170 _____ C:\WINDOWS\system32\nvinfo.pb
2022-10-22 20:47 - 2022-10-24 21:55 - 000000000 ____D C:\Users\Black\AppData\Local\D3DSCache
2022-10-22 20:44 - 2022-10-22 20:44 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2022-10-22 20:34 - 2022-10-22 20:36 - 840728584 _____ (NVIDIA Corporation) C:\Users\Black\Desktop\522.25-desktop-win10-win11-64bit-international-dch-whql.exe
2022-10-22 19:38 - 2022-10-24 01:10 - 000000000 ____D C:\Users\Black\Documents\Rockstar Games
2022-10-21 19:09 - 2022-10-21 19:09 - 000000931 _____ C:\Users\Public\Desktop\Low Specs Experience.lnk
2022-10-21 19:00 - 2022-10-21 19:03 - 000000000 ___HD C:\Users\Black\AppData\Roaming\Cache
2022-10-21 18:59 - 2022-10-21 18:59 - 000000000 ____D C:\Users\Black\AppData\Roaming\FLT
2022-10-21 18:59 - 2022-10-21 18:59 - 000000000 ____D C:\Users\Black\AppData\Local\Dakar2Game
2022-10-21 18:49 - 2022-10-21 19:10 - 000000000 ____D C:\games
2022-10-21 17:46 - 2022-10-21 17:46 - 000000000 ___HD C:\$WinREAgent
2022-10-21 16:54 - 2022-10-22 20:58 - 000000000 ____D C:\Users\Black\AppData\LocalLow\NVIDIA
2022-10-21 16:39 - 2022-10-24 01:13 - 000000000 ____D C:\ProgramData\Epic
2022-10-21 14:27 - 2007-10-07 19:49 - 000032768 _____ () C:\Users\Black\Desktop\TimerResolution.exe
2022-10-21 11:55 - 2022-10-21 11:55 - 000077724 _____ C:\Users\Black\Downloads\Jn8H.pcap
2022-10-21 11:34 - 2022-10-21 11:34 - 000000000 ____D C:\Users\Black\ansel
2022-10-21 11:34 - 2022-10-07 05:01 - 000086568 _____ C:\WINDOWS\system32\FvSDK_x64.dll
2022-10-21 11:34 - 2022-10-07 05:01 - 000075304 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll
2022-10-21 11:33 - 2022-10-24 00:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2022-10-21 11:33 - 2022-10-21 11:33 - 000000000 ____D C:\ProgramData\NVIDIA GPU Computing Toolkit
2022-10-21 11:33 - 2022-10-21 11:33 - 000000000 ____D C:\Program Files\NVIDIA GPU Computing Toolkit
2022-10-21 10:34 - 2022-10-22 20:44 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2022-10-20 20:01 - 2022-10-20 20:02 - 000000000 ____D C:\Program Files\EA Games
2022-10-20 20:01 - 2022-10-20 20:01 - 000000000 ____D C:\Users\Black\AppData\Local\Origin
2022-10-20 20:00 - 2022-10-20 20:03 - 000000000 ____D C:\Program Files\Electronic Arts
2022-10-19 23:06 - 2022-10-19 23:06 - 000004617 _____ C:\Users\Black\Desktop\Half Life.nip
2022-10-19 18:17 - 2022-10-19 19:07 - 000000000 ____D C:\ProgramData\Electronic Arts
2022-10-19 16:54 - 2022-10-19 16:54 - 000000000 ____D C:\Users\Black\.QtWebEngineProcess
2022-10-19 16:54 - 2022-10-19 16:54 - 000000000 ____D C:\Users\Black\.Origin
2022-10-15 01:09 - 2022-10-24 01:29 - 000000000 ____D C:\Users\Black\AppData\Roaming\QtProject
2022-10-15 01:08 - 2022-10-24 01:38 - 000000000 ____D C:\Users\Black\AppData\Local\MiniTool MovieMaker
2022-10-15 01:08 - 2022-10-24 01:37 - 000000000 ____D C:\Users\Black\Documents\MiniTool MovieMaker
2022-10-15 01:08 - 2022-10-24 00:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool MovieMaker
2022-10-15 01:08 - 2022-10-15 01:08 - 000001023 _____ C:\Users\Public\Desktop\MiniTool MovieMaker.lnk
2022-10-15 01:07 - 2022-10-15 01:08 - 000000000 ___HD C:\ProgramData\tool.agent.re.ch.ck.bin
2022-10-15 01:07 - 2022-08-29 06:22 - 000002843 _____ C:\WINDOWS\fonts.conf
2022-10-08 16:50 - 2022-10-24 00:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK
2022-10-08 16:50 - 2022-10-08 16:50 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2022-10-08 16:50 - 2014-08-19 07:40 - 000011743 _____ C:\WINDOWS\system32\athuwbx.cat
2022-10-08 16:50 - 2013-11-20 11:43 - 002702336 _____ (Qualcomm Atheros Communications, Inc.) C:\WINDOWS\system32\athuwbx.sys
2022-10-08 12:40 - 2022-10-08 13:43 - 000000117 _____ C:\Users\Black\Desktop\New Text Document.txt
2022-10-07 20:05 - 2022-10-07 20:05 - 000000000 ____D C:\Users\Black\AppData\Roaming\SOGame
2022-10-07 20:04 - 2022-10-07 20:04 - 000000000 ____D C:\Users\Black\AppData\Roaming\EasyAntiCheat
2022-10-07 16:05 - 2022-10-19 22:57 - 000000000 ____D C:\ProgramData\Codemasters
2022-10-07 01:13 - 2022-10-07 01:13 - 000021232 _____ (Thesycon GmbH) C:\WINDOWS\system32\Drivers\dpclat_driver.sys
2022-10-07 00:11 - 2022-10-24 00:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2022-10-07 00:11 - 2022-10-07 00:11 - 000073040 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_xlcore.sys
2022-10-07 00:11 - 2022-10-07 00:11 - 000044880 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_bus_enum.sys
2022-10-07 00:11 - 2022-10-07 00:11 - 000032080 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_vir_hid.sys
2022-10-07 00:11 - 2022-10-07 00:11 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2022-10-07 00:11 - 2022-10-07 00:11 - 000000000 ____D C:\Program Files\Logitech
2022-10-07 00:11 - 2022-10-07 00:11 - 000000000 ____D C:\Program Files\LGHUB
2022-10-06 22:32 - 2022-10-06 23:54 - 000000309 _____ C:\Users\Black\Desktop\Mhz cheater.txt
2022-10-03 21:51 - 2022-10-24 01:10 - 000000000 ____D C:\Users\Black\AppData\Local\Rockstar Games
2022-10-03 21:50 - 2022-10-24 01:10 - 000000000 ____D C:\Users\Black\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2022-10-03 21:50 - 2022-10-24 01:10 - 000000000 ____D C:\ProgramData\Rockstar Games
2022-10-03 21:49 - 2022-10-24 01:11 - 000000000 ____D C:\Program Files\Rockstar Games
2022-10-03 21:49 - 2022-10-03 21:49 - 000000000 ____D C:\Program Files (x86)\Rockstar Games
2022-10-03 01:29 - 2022-10-24 01:21 - 000000000 ____D C:\Users\Black\AppData\Local\CrashDumps
2022-10-03 00:20 - 2022-10-22 23:15 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-10-02 21:04 - 2022-10-02 17:08 - 000872123 _____ C:\Users\Black\Desktop\1.cap
2022-10-02 21:04 - 2022-10-02 16:27 - 000706398 _____ C:\Users\Black\Desktop\2.cap
2022-10-02 14:19 - 2022-10-02 14:19 - 000436556 _____ C:\Users\Black\Desktop\handshake_Violeta72_10-C1-72-EB-A1-50_2022-10-02T14-19-06.cap
2022-10-02 14:04 - 2022-10-02 14:04 - 001533657 _____ C:\Users\Black\Desktop\handshake_SDGlisic_10-C1-72-D6-CF-C4_2022-10-02T14-04-56.cap
2022-10-01 19:02 - 2022-10-01 19:14 - 000000000 ____D C:\Users\Black\AppData\Local\NVIDIA Profile Inspector
2022-10-01 12:54 - 2022-10-01 12:54 - 000000000 ____D C:\ProgramData\TP-LINK
2022-09-29 20:45 - 2022-09-29 20:45 - 000001695 _____ C:\Users\Black\Desktop\AIMPPortable.exe - Shortcut.lnk
2022-09-26 14:26 - 2022-09-26 14:26 - 000000000 ____D C:\Users\Black\AppData\Local\fe4eb75d
2022-09-26 14:15 - 2022-09-30 23:09 - 000000000 __SHD C:\Users\Black\profile
2022-09-26 14:14 - 2022-09-26 14:14 - 000000000 ____D C:\Users\Black\source
2022-09-26 14:13 - 2022-09-26 14:13 - 000000000 ____D C:\Users\Black\AppData\Local\ServiceHub
2022-09-26 14:13 - 2022-09-26 14:13 - 000000000 ____D C:\Users\Black\AppData\Local\IdentityNexusIntegration
2022-09-26 14:12 - 2022-09-26 14:13 - 000000000 ____D C:\Users\Black\AppData\Local\.IdentityService
2022-09-26 14:12 - 2022-09-26 14:12 - 000000000 ____D C:\Users\Black\AppData\Local\Microsoft SDKs
2022-09-26 14:08 - 2022-10-24 00:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2022
2022-09-26 14:07 - 2022-09-26 14:07 - 000000000 ____D C:\Program Files\Microsoft Visual Studio
2022-09-24 23:24 - 2022-09-24 23:57 - 000000012 _____ C:\Users\Black\Desktop\gpuhash ID.txt

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-10-24 22:14 - 2022-06-23 19:30 - 000000000 ____D C:\Users\Black\AppData\Roaming\ViberPC
2022-10-24 22:13 - 2022-06-23 19:35 - 000000000 ____D C:\Users\Black\Documents\ViberDownloads
2022-10-24 22:02 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-10-24 22:00 - 2022-09-02 21:00 - 000000000 ____D C:\Users\Black\AppData\Local\LGHUB
2022-10-24 22:00 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-10-24 21:58 - 2022-09-02 21:00 - 000000000 ____D C:\Users\Black\AppData\Roaming\LGHUB
2022-10-24 21:57 - 2022-06-22 22:33 - 000000000 ____D C:\Program Files (x86)\Steam
2022-10-24 21:57 - 2022-06-22 21:52 - 000008192 ___SH C:\DumpStack.log.tmp
2022-10-24 21:57 - 2019-12-07 11:03 - 000131072 _____ C:\WINDOWS\system32\config\BBI
2022-10-24 19:00 - 2022-06-23 18:37 - 000000000 ____D C:\Users\Black\AppData\Roaming\vlc
2022-10-24 13:07 - 2022-06-22 21:59 - 000000000 ____D C:\Users\Black\AppData\Local\Packages
2022-10-24 12:12 - 2022-06-25 20:03 - 000000626 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2022-10-24 11:48 - 2022-07-15 18:37 - 000000000 ____D C:\Users\Black\AppData\Roaming\Allavsoft
2022-10-24 03:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat
2022-10-24 03:30 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-10-24 02:23 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-10-24 01:41 - 2022-06-23 18:51 - 000000000 ____D C:\ProgramData\Package Cache
2022-10-24 01:04 - 2022-06-23 23:01 - 000000000 ____D C:\ProgramData\Unified Remote
2022-10-24 00:35 - 2022-08-25 19:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2022-10-24 00:35 - 2022-07-25 22:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kodi
2022-10-24 00:35 - 2022-07-06 16:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 3.10
2022-10-24 00:35 - 2022-06-24 00:24 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2022-10-24 00:35 - 2022-06-23 23:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unified Remote 3
2022-10-24 00:35 - 2022-06-22 23:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-10-24 00:35 - 2022-06-22 23:35 - 000000000 ____D C:\Program Files\Intel
2022-10-24 00:35 - 2022-06-22 22:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2022-10-24 00:35 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2022-10-24 00:35 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2022-10-24 00:35 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-10-24 00:35 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2022-10-24 00:35 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\spool
2022-10-24 00:35 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2022-10-24 00:35 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-10-24 00:35 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2022-10-24 00:35 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-10-24 00:33 - 2022-08-08 21:02 - 000000000 ____D C:\Program Files\Realtek
2022-10-24 00:33 - 2022-07-06 16:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019
2022-10-24 00:33 - 2022-06-23 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2022-10-24 00:33 - 2022-06-22 22:02 - 000000000 ____D C:\WINDOWS\system32\SRSLabs
2022-10-24 00:29 - 2019-12-07 11:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-10-24 00:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-10-24 00:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-10-24 00:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2022-10-24 00:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-10-24 00:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-10-24 00:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-10-24 00:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-10-24 00:28 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2022-10-24 00:28 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2022-10-24 00:25 - 2022-09-08 05:08 - 000014848 _____ C:\WINDOWS\system32\hnsproxy.dll
2022-10-24 00:22 - 2019-12-07 11:52 - 000000000 ____D C:\WINDOWS\OCR
2022-10-24 00:21 - 2019-12-07 11:54 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2022-10-24 00:21 - 2019-12-07 11:54 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-10-24 00:21 - 2019-12-07 11:50 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2022-10-24 00:21 - 2019-12-07 11:50 - 000000000 ____D C:\WINDOWS\system32\WCN
2022-10-24 00:21 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2022-10-24 00:21 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2022-10-24 00:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2022-10-24 00:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2022-10-24 00:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2022-10-24 00:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-10-24 00:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME
2022-10-24 00:21 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-10-24 00:21 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2022-10-24 00:21 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2022-10-24 00:20 - 2019-12-07 11:18 - 000000000 ____D C:\WINDOWS\Setup
2022-10-24 00:18 - 2019-12-07 11:10 - 000383488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2022-10-24 00:18 - 2019-12-07 11:10 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2022-10-24 00:18 - 2019-12-07 11:10 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2022-10-24 00:18 - 2019-12-07 11:10 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2022-10-24 00:18 - 2019-12-07 11:10 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2022-10-24 00:18 - 2019-12-07 11:10 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2022-10-24 00:18 - 2019-12-07 11:10 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2022-10-24 00:18 - 2019-12-07 11:10 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2022-10-24 00:18 - 2019-12-07 11:10 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2022-10-24 00:18 - 2019-12-07 11:10 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2022-10-24 00:18 - 2019-12-07 11:10 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2022-10-24 00:18 - 2019-12-07 11:09 - 000494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2022-10-24 00:18 - 2019-12-07 11:09 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2022-10-24 00:18 - 2019-12-07 11:09 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2022-10-24 00:18 - 2019-12-07 11:09 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2022-10-24 00:18 - 2019-12-07 11:09 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2022-10-24 00:18 - 2019-12-07 11:09 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2022-10-24 00:18 - 2019-12-07 11:09 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2022-10-23 21:09 - 2022-09-18 23:49 - 000000000 ____D C:\Users\Black\AppData\LocalLow\SKS
2022-10-23 18:41 - 2022-08-29 10:44 - 000000000 ____D C:\Users\Black\AppData\Local\Viber
2022-10-23 16:45 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-10-23 16:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-10-23 14:57 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-10-23 14:41 - 2022-06-22 21:59 - 000002348 _____ C:\Users\Black\Desktop\Microsoft Edge.lnk
2022-10-23 14:41 - 2022-06-22 21:59 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-10-23 14:41 - 2022-06-22 21:59 - 000000000 ___RD C:\Users\Black\3D Objects
2022-10-23 14:41 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-10-23 14:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-10-23 14:41 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2022-10-23 14:41 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2022-10-23 14:38 - 2019-12-07 11:14 - 000000000 __RSD C:\WINDOWS\Media
2022-10-23 14:37 - 2022-07-15 18:38 - 000000000 ____D C:\Users\Black\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Allavsoft
2022-10-23 14:37 - 2022-06-23 19:30 - 000000000 ____D C:\Users\Black\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber
2022-10-23 14:37 - 2022-06-22 23:39 - 000000000 ____D C:\Users\Black\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-10-23 14:36 - 2022-09-21 16:09 - 000002276 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-10-23 14:36 - 2022-08-08 21:02 - 000002058 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS Audio Control.lnk
2022-10-23 14:36 - 2022-08-08 21:02 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2022-10-23 14:36 - 2022-06-22 21:52 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-10-23 14:09 - 2022-06-23 22:46 - 000000000 ____D C:\Users\Black\AppData\Roaming\deluge
2022-10-22 20:58 - 2022-06-22 22:00 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2022-10-21 19:16 - 2022-09-22 23:30 - 000000000 ____D C:\Users\Black\AppData\Roaming\.minecraft
2022-10-21 18:59 - 2022-08-19 02:17 - 000000000 ____D C:\Users\Black\AppData\Local\UnrealEngine
2022-10-21 17:38 - 2022-07-11 15:26 - 000000000 ____D C:\Users\Black\Downloads\Telegram Desktop
2022-10-21 17:21 - 2022-09-20 18:42 - 000000000 ____D C:\Users\Black\Desktop\Muzika za urediti
2022-10-21 10:34 - 2022-06-22 21:59 - 000000000 ____D C:\ProgramData\Packages
2022-10-20 20:01 - 2022-06-23 19:30 - 000000000 ____D C:\Users\Black\AppData\Local\Package Cache
2022-10-20 19:15 - 2022-07-09 16:14 - 000000000 ____D C:\Users\Black\AppData\Roaming\spek
2022-10-20 19:07 - 2022-06-24 00:16 - 000000000 ____D C:\ProgramData\HP
2022-10-20 18:23 - 2022-08-20 18:36 - 000000000 ____D C:\Users\Black\AppData\Local\ElevatedDiagnostics
2022-10-17 12:37 - 2022-06-23 12:51 - 000000000 ____D C:\adb
2022-10-15 18:50 - 2022-06-22 21:52 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-10-15 18:28 - 2022-06-22 22:04 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-10-15 18:26 - 2022-06-22 22:04 - 147398024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-10-09 23:24 - 2022-06-23 19:30 - 000001027 _____ C:\Users\Black\Desktop\Viber.lnk
2022-10-08 21:06 - 2022-06-29 13:55 - 000000000 ____D C:\Users\Black\AppData\Roaming\TeamViewer
2022-10-08 17:22 - 2022-09-17 13:21 - 000000000 ____D C:\Users\Black\AppData\Local\VMware
2022-10-08 16:48 - 2022-09-17 13:21 - 000000000 ____D C:\Users\Black\AppData\Roaming\VMware
2022-10-04 02:47 - 2022-07-25 22:16 - 000000000 ____D C:\Users\Black\AppData\Roaming\Kodi
2022-09-26 14:34 - 2022-07-06 16:49 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2022-09-26 14:33 - 2022-07-06 16:51 - 000000000 ____D C:\Program Files (x86)\Microsoft SDKs
2022-09-26 14:33 - 2022-07-06 16:50 - 000000000 ____D C:\Program Files (x86)\Windows Kits
2022-09-26 14:05 - 2022-07-06 16:50 - 000001429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Installer.lnk

==================== Files in the root of some directories ========

2022-10-23 14:09 - 2022-10-23 14:09 - 000000218 _____ () C:\Users\Black\AppData\Local\recently-used.xbel
2022-09-21 17:03 - 2022-09-21 17:03 - 000007601 _____ () C:\Users\Black\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


mycity.rs/must-login.png

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8620
  • Gde živiš: Novi Beograd

Deluje u redu. Pozdrav.

Ko je trenutno na forumu
 

Ukupno su 1076 korisnika na forumu :: 43 registrovanih, 5 sakrivenih i 1028 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 357magnum, aramis s, bladesu, bobomicek, Bobrock1, bokisha253, Boris90, BORUTUS, CikaKURE, Dimitrije Paunovic, DPera, Draganeli, Excalibur13, Georgius, Jeremiah, Kaplar2, Lieutenant, ljuba, LUDI, mean_machine, mercedesamg, Metanoja, milenko crazy north, milutin134, Nemanja.M, nemkea71, Nikolaa11, nikoladim, pein, powSrb, procesor, raketaš, raptorsi, RED4G-304, Romibrat, stagezin, stegonosa, Tvrtko I, Viktor Petrenko, vladaa012, voja64, zastavnik, ZetaMan