offline
- Pridružio: 16 Okt 2010
- Poruke: 3468
- Gde živiš: KRAGUJEVAC
|
Napisano: 11 Nov 2017 15:49
Od skoro mnogo dugo vremena treba da podigne sistem, malo duže vrti stranice kada otvara.Namestio sam da se samo antivirus diže sa sistemom. Ništa nisam sam podešavao , čačkao, pa bih zamolio za proveru jednu.
Koristiim Windows 10 Pro, 32-bit, ADSL internet - MTS/10mb/s download.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-11-2017 02
Ran by dejan (administrator) on DEJAN-PC (11-11-2017 15:44:07)
Running from C:\Users\dejan\Desktop
Loaded Profiles: dejan (Available Profiles: dejan)
Platform: Microsoft Windows 10 Pro Version 1703 15063.674 (X86) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\afwServ.exe
(@ByELDI) C:\Program Files\KMSpico\Service_KMS.exe
(Adobe Systems, Incorporated) C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Framework\Common\avgsvcx.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(WIBU-SYSTEMS AG) C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x86__kzf8qxf38zg5c\SkypeHost.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(stupid user) C:\Users\dejan\Downloads\wumt\wumt_x86.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [485280 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [15111680 2017-02-10] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation)
HKLM\...\Run: [AvgUi] => C:\Program Files\AVG\Framework\Common\avguirnx.exe [220288 2017-10-31] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [302744 2017-11-11] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-2725342497-1767379937-2485888434-1001\...\Run: [uTorrent] => C:\Users\dejan\AppData\Roaming\uTorrent\uTorrent.exe [1982144 2017-10-04] (BitTorrent Inc.)
HKU\S-1-5-21-2725342497-1767379937-2485888434-1001\...\Run: [Viber] => C:\Users\dejan\AppData\Local\Viber\Viber.exe [38871120 2017-10-24] (Viber Media S.Ã r.l.)
HKU\S-1-5-21-2725342497-1767379937-2485888434-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [7685808 2017-09-20] (Piriform Ltd)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2017-10-09]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\Users\dejan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-10-18]
ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\dejan\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook)
GroupPolicy\User: Restriction ? <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{d1fd8e9e-eae7-446f-9f74-fab6c2e9e11f}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-2725342497-1767379937-2485888434-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll [2017-11-01] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-01] (Oracle Corporation)
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - No File
FireFox:
========
FF DefaultProfile: 77jtc6kf.default
FF ProfilePath: C:\Users\dejan\AppData\Roaming\Mozilla\Firefox\Profiles\77jtc6kf.default [2017-11-11]
FF user.js: detected! => C:\Users\dejan\AppData\Roaming\Mozilla\Firefox\Profiles\77jtc6kf.default\user.js [2017-07-12]
FF Homepage: Mozilla\Firefox\Profiles\77jtc6kf.default -> hxxps://www.google.com/
FF NetworkProxy: Mozilla\Firefox\Profiles\77jtc6kf.default -> no_proxies_on", "localhost, 127.0.0.1, local.scannerjs.com"
FF Extension: (Google Search by Image) - C:\Users\dejan\AppData\Roaming\Mozilla\Firefox\Profiles\77jtc6kf.default\Extensions\google@hitachi.com.xpi [2017-10-11]
FF Extension: (To Google Translate) - C:\Users\dejan\AppData\Roaming\Mozilla\Firefox\Profiles\77jtc6kf.default\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2017-10-11]
FF Extension: (Safe Browsing Version 4 (temporary add-on)) - C:\Users\dejan\AppData\Roaming\Mozilla\Firefox\Profiles\77jtc6kf.default\Extensions\sbv4-gradual-rollout@mozilla.com.xpi [2017-10-11]
FF Extension: (Fixing the geo timeline) - C:\Users\dejan\AppData\Roaming\Mozilla\Firefox\Profiles\77jtc6kf.default\features\{74f7f0f7-4fe5-4533-bffb-d692ff4bab79}\timecop@mozilla.com.xpi [2017-11-11]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-25] ()
FF Plugin: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-11-01] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-11-01] (Oracle Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [No File]
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-11-01] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-11-01] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [No File]
Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.youndoo.com/?z=61bcc231723f316e9912186g2z5b6teo2w2zazczaq&from=amz&uid=WDCXWD3200AVJS-63B6A0_WD-WCAT1A29657496574&type=hp","hxxp://www.search.ask.com/?o=APN10640A&gct=hp&d=473-102&v=a12627-333&t=4","hxxp://www.initialsite123.com/?z=53e8deaf6335b4feab6622eg8z8t0g5mbw7q9b8w6o&from=icb&uid=HitachiXHDS721050CLA362_JPF521HA3EJ06V3EJ06VX&type=hp","hxxps://www.google.com/"
CHR Profile: C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default [2017-11-11]
CHR Extension: (Google преводилац) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2017-11-02]
CHR Extension: (Nice Day (weather)) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmijnhpfgblhkbdlnbldpmjgaiognoo [2017-11-08]
CHR Extension: (Adblock Plus) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-11-08]
CHR Extension: (Galaxy-View) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcbeddldohkakodfncjnkkjfojggbahp [2017-11-02]
CHR Extension: (Notifier for Gmail™) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcjichoefijpinlfnjghokpkojhlhkgl [2017-11-02]
CHR Extension: (Toolkit For Facebook) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcachklhcihfinmagjnlomehfdhndhep [2017-09-12]
CHR Extension: (Табеле) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Tampermonkey BETA) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcalenpjmijncebpfijmoaglllgpjagf [2017-11-08]
CHR Extension: (Google документи офлајн) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-08-31]
CHR Extension: (Image Search Options) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\kljmejbpilkadikecejccebmccagifhl [2017-09-02]
CHR Extension: (AVG SafePrice) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2017-11-11]
CHR Extension: (Плаћања у Chrome веб-продавници) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-31]
CHR Extension: (Chrome NPAPI Replacement) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\okoafaojkokbmieeefnflkiklhanpeoc [2017-09-02]
CHR Extension: (Gmail) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-08-31]
CHR Extension: (Chrome Media Router) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-01]
CHR Profile: C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1 [2017-11-11]
CHR Extension: (Google Slides) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-09-02]
CHR Extension: (Google Docs) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2017-09-02]
CHR Extension: (Google Drive) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-02]
CHR Extension: (YouTube) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-02]
CHR Extension: (Google Sheets) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-09-02]
CHR Extension: (Google Docs Offline) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-09-02]
CHR Extension: (Chrome Web Store Payments) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-09-02]
CHR Extension: (Gmail) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-09-02]
CHR Extension: (Chrome Media Router) - C:\Users\dejan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-09-02]
CHR Profile: C:\Users\dejan\AppData\Local\Google\Chrome\User Data\System Profile [2017-11-11]
CHR HKLM\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AGSService; C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems, Incorporated)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [282536 2017-11-11] (AVG Technologies CZ, s.r.o.)
R2 AVG Firewall; C:\Program Files\AVG\Antivirus\afwServ.exe [333488 2017-11-11] (AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [5954792 2017-11-11] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files\AVG\Framework\Common\avgsvcx.exe [1189720 2017-10-31] (AVG Technologies CZ, s.r.o.)
R2 CodeMeter.exe; C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [5026296 2017-09-21] (WIBU-SYSTEMS AG)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4563920 2017-11-01] (Malwarebytes)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2545848 2017-03-18] (Microsoft Corporation)
R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [737984 2015-08-30] (@ByELDI) [File not signed]
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [10803440 2017-08-29] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [265352 2017-03-18] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [82488 2017-06-20] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AndnetBus; C:\WINDOWS\System32\drivers\lgandnetbus.sys [32512 2016-09-01] (LG Electronics Inc.)
S3 AndNetDiag; C:\WINDOWS\System32\drivers\lgandnetdiag.sys [32768 2016-09-01] (LG Electronics Inc.)
S3 ANDNetModem; C:\WINDOWS\system32\DRIVERS\lgandnetmodem.sys [37376 2016-09-01] (LG Electronics Inc.)
R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [149592 2017-11-11] (AVG Technologies CZ, s.r.o.)
R1 avgbdisk; C:\WINDOWS\System32\drivers\avgbdiskx.sys [135872 2017-11-11] (AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriverx.sys [249232 2017-11-11] (AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidshx.sys [151024 2017-11-11] (AVG Technologies CZ, s.r.o.)
R0 avgblog; C:\WINDOWS\System32\drivers\avgblogx.sys [270344 2017-11-11] (AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbunivx.sys [43992 2017-11-11] (AVG Technologies CZ, s.r.o.)
S3 avgHwid; C:\WINDOWS\System32\drivers\avgHwid.sys [35264 2017-11-11] (AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [117368 2017-11-11] (AVG Technologies CZ, s.r.o.)
R1 avgNetSec; C:\WINDOWS\System32\drivers\avgNetSec.sys [412440 2017-11-11] (AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [91976 2017-11-11] (AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [63280 2017-11-11] (AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [775552 2017-11-11] (AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [381184 2017-11-11] (AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [143264 2017-11-11] (AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [290776 2017-11-11] (AVG Technologies CZ, s.r.o.)
S3 dg_ksudbus; C:\WINDOWS\System32\drivers\ksudbus.sys [75776 2011-03-25] (Microsoft Corporation) [File not signed]
R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [221112 2017-11-10] (Malwarebytes)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [17160 2015-03-05] ()
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [13064 2016-11-24] ()
S3 qcfilter; C:\WINDOWS\System32\drivers\qcusbfilter.sys [39456 2015-09-25] (QUALCOMM Incorporated)
S3 qcusbser; C:\WINDOWS\System32\drivers\qcusbser.sys [214560 2015-09-25] (QUALCOMM Incorporated)
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [795648 2017-02-20] (Realtek )
S3 usbbus; C:\WINDOWS\System32\drivers\lgusbbus.sys [13184 2016-02-18] (LG Electronics Inc.)
S3 UsbDiag; C:\WINDOWS\System32\drivers\lgusbdiag.sys [20864 2016-02-18] (LG Electronics Inc.)
S3 USBModem; C:\WINDOWS\system32\DRIVERS\lgusbmodem.sys [25216 2016-02-18] (LG Electronics Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37464 2017-03-18] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [243104 2017-03-18] (Microsoft Corporation)
S3 wdf_usb; C:\WINDOWS\system32\drivers\usb2ser.sys [128704 2016-08-16] (MBB)
S3 wdm_usb; C:\WINDOWS\System32\drivers\usb2ser.sys [128704 2016-08-16] (MBB)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [96672 2017-03-18] (Microsoft Corporation)
S3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [160256 2017-03-18] (Microsoft Corporation)
S3 Andbus; \SystemRoot\System32\drivers\lgandbus.sys [X]
S3 AndDiag; \SystemRoot\System32\drivers\lganddiag.sys [X]
S3 AndGps; \SystemRoot\System32\drivers\lgandgps.sys [X]
S3 AndNetDiag2; \SystemRoot\System32\drivers\lgandnetdiag2.sys [X]
S3 AndNetGps; \SystemRoot\System32\drivers\lgandnetgps.sys [X]
S3 BstkDrv; \??\C:\Program Files\BlueStacks\BstkDrv.sys [X]
S3 UsbGps; \SystemRoot\System32\drivers\lgusbgps.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-11-11 15:44 - 2017-11-11 15:45 - 000018476 _____ C:\Users\dejan\Desktop\FRST.txt
2017-11-11 15:43 - 2017-11-11 15:43 - 001799680 _____ (Farbar) C:\Users\dejan\Desktop\FRST.exe
2017-11-11 15:36 - 2017-11-11 15:36 - 000000000 ____D C:\Users\dejan\Downloads\wumt
2017-11-11 15:35 - 2017-11-11 15:36 - 002439408 _____ C:\Users\dejan\Downloads\wumt (1).zip
2017-11-11 15:35 - 2017-11-11 15:35 - 002439408 _____ C:\Users\dejan\Downloads\wumt.zip
2017-11-11 14:37 - 2017-11-11 14:37 - 000000004 ____H C:\ProgramData\cm-lock
2017-11-11 14:25 - 2017-11-11 14:25 - 000001999 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Internet Security.lnk
2017-11-11 14:25 - 2017-11-11 14:25 - 000001987 _____ C:\Users\Public\Desktop\AVG Internet Security.lnk
2017-11-11 14:25 - 2017-11-11 14:24 - 000412440 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgNetSec.sys
2017-11-11 14:24 - 2017-11-11 14:15 - 000306448 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe
2017-11-11 14:21 - 2017-11-11 14:23 - 000000000 ___HD C:\$WINDOWS.~BT
2017-11-11 14:18 - 2017-11-11 14:18 - 000000000 ____D C:\Users\dejan\AppData\Roaming\AVG
2017-11-11 14:16 - 2017-11-11 14:15 - 000381184 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSP.sys
2017-11-11 14:16 - 2017-11-11 14:15 - 000290776 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgVmm.sys
2017-11-11 14:16 - 2017-11-11 14:15 - 000149592 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArPot.sys
2017-11-11 14:16 - 2017-11-11 14:15 - 000143264 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys
2017-11-11 14:16 - 2017-11-11 14:15 - 000117368 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys
2017-11-11 14:16 - 2017-11-11 14:15 - 000091976 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRdr2.sys
2017-11-11 14:16 - 2017-11-11 14:15 - 000063280 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRvrt.sys
2017-11-11 14:16 - 2017-11-11 14:15 - 000035264 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgHwid.sys
2017-11-11 14:16 - 2017-11-11 14:14 - 000775552 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSnx.sys
2017-11-11 14:16 - 2017-11-11 14:14 - 000270344 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgblogx.sys
2017-11-11 14:16 - 2017-11-11 14:14 - 000249232 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsdriverx.sys
2017-11-11 14:16 - 2017-11-11 14:14 - 000151024 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidshx.sys
2017-11-11 14:16 - 2017-11-11 14:14 - 000135872 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbdiskx.sys
2017-11-11 14:16 - 2017-11-11 14:14 - 000043992 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbunivx.sys
2017-11-11 14:11 - 2017-11-11 14:11 - 000000925 _____ C:\Users\Public\Desktop\AVG.lnk
2017-11-11 14:11 - 2017-11-11 14:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2017-11-10 19:18 - 2017-11-11 13:05 - 000004096 _____ C:\WINDOWS\SECOH-QAD.exe
2017-11-10 14:45 - 2017-11-10 14:45 - 000221112 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2017-11-10 14:45 - 2017-11-10 14:45 - 000002097 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-11-10 14:45 - 2017-11-10 14:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-11-10 14:45 - 2017-11-01 08:54 - 000059896 _____ C:\WINDOWS\system32\Drivers\mbae.sys
2017-11-10 14:43 - 2017-11-10 14:43 - 000000000 ____D C:\ProgramData\MB3CoreBackup
2017-11-10 14:30 - 2017-11-10 14:31 - 000000000 ____D C:\Users\dejan\AppData\Local\Viber
2017-11-10 14:26 - 2017-11-10 15:13 - 000000000 ____D C:\Users\dejan\Documents\ViberDownloads
2017-11-09 23:11 - 2017-11-09 23:11 - 000000030 _____ C:\Users\dejan\index.php
2017-11-08 20:18 - 2017-03-17 21:43 - 006917632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0c1a.dll
2017-11-08 20:18 - 2017-03-17 21:40 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0c1a.dll
2017-11-07 00:56 - 2017-11-07 00:56 - 000000000 ___HD C:\OneDriveTemp
2017-11-06 15:14 - 2017-11-06 15:14 - 000000033 _____ C:\Users\dejan\AppData\Local\rssbuilder.config
2017-11-05 20:54 - 2017-11-05 20:55 - 000000000 ____D C:\Users\dejan\AppData\Local\messengerfordesktop
2017-11-04 14:51 - 2017-11-04 14:51 - 000018791 _____ C:\Users\dejan\widgets.php
2017-11-04 12:23 - 2017-11-11 15:20 - 000000068 __RSH C:\WINDOWS\system32\Drivers\wmiacpi.winsecurity
2017-11-04 12:23 - 2017-11-11 14:45 - 000000068 __RSH C:\WINDOWS\system32\Drivers\xinputhid.winsecurity
2017-11-04 12:23 - 2017-11-04 12:23 - 000000000 ____D C:\Program Files\CodeMeter
2017-11-04 12:23 - 2017-09-21 13:47 - 000794584 _____ (WIBU-SYSTEMS AG) C:\WINDOWS\system32\WibuCm32.dll
2017-11-04 12:22 - 2017-11-06 13:06 - 000000000 ____D C:\ProgramData\CodeMeter
2017-11-04 00:03 - 2017-11-04 00:03 - 000000010 ____H C:\Users\dejan\.sa1s.fat
2017-11-01 23:01 - 2017-11-01 23:01 - 000000418 __RSH C:\Users\dejan\ntuser.pol
2017-11-01 22:56 - 2017-11-09 23:15 - 000000000 ____D C:\Users\dejan\.java
2017-11-01 22:56 - 2017-11-06 13:19 - 000000000 ____D C:\Users\dejan\AppData\Roaming\ScanApp2
2017-11-01 19:57 - 2017-11-01 19:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-11-01 19:57 - 2017-11-01 19:57 - 000000000 ____D C:\Program Files\Common Files\Java
2017-11-01 19:57 - 2017-11-01 19:56 - 000095808 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2017-11-01 19:52 - 2017-11-01 19:52 - 000000000 ____D C:\Users\dejan\.jmc
2017-11-01 19:42 - 2017-11-07 01:19 - 000002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-11-01 19:42 - 2017-11-07 01:19 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-11-01 17:00 - 2017-11-01 17:00 - 000000000 ____D C:\Users\dejan\AppData\Roaming\WMM
2017-11-01 16:59 - 2010-06-02 04:55 - 000527192 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll
2017-11-01 16:59 - 2010-06-02 04:55 - 000074072 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll
2017-11-01 16:59 - 2010-05-26 11:41 - 002106216 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll
2017-11-01 16:59 - 2010-05-26 11:41 - 000248672 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2017-11-01 16:58 - 2017-11-01 16:58 - 000001393 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2017-11-01 16:49 - 2017-11-01 16:49 - 000000000 ____D C:\Users\dejan\AppData\Local\Downloaded Installations
2017-11-01 16:31 - 2017-11-01 17:57 - 000000000 ____D C:\Users\dejan\AppData\Roaming\ActivePresenter
2017-10-29 17:45 - 2017-11-11 12:50 - 000000000 ___RD C:\Users\dejan\OneDrive
2017-10-28 14:04 - 2017-10-28 14:04 - 000046696 _____ C:\Users\dejan\custom-header.php
2017-10-25 20:59 - 2017-10-25 20:59 - 000000000 ____D C:\Program Files\BlueStacks
2017-10-25 20:55 - 2017-10-25 20:58 - 000000000 ____D C:\ProgramData\BlueStacks
2017-10-25 20:54 - 2017-10-25 20:57 - 000000000 ____D C:\Users\dejan\AppData\Local\Bluestacks
2017-10-25 20:54 - 2017-10-25 20:55 - 000000000 ____D C:\ProgramData\BlueStacksSetup
2017-10-25 20:37 - 2017-11-01 19:57 - 000000000 ____D C:\Users\dejan\AppData\Local\Unity
2017-10-25 15:05 - 2017-10-25 15:05 - 000004631 _____ C:\Users\dejan\readme.txt
2017-10-25 15:03 - 2017-10-30 22:01 - 000016356 _____ C:\Users\dejan\functions.php
2017-10-25 15:00 - 2017-10-25 15:00 - 000000109 _____ C:\Users\dejan\.htaccess
2017-10-25 14:12 - 2017-11-11 14:40 - 000000000 ____D C:\Users\dejan\AppData\Local\CrashDumps
2017-10-24 21:30 - 2017-10-24 21:30 - 000000600 _____ C:\Users\dejan\AppData\Local\PUTTY.RND
2017-10-24 15:22 - 2017-11-11 14:43 - 000000000 ____D C:\Users\dejan\AppData\Roaming\FileZilla
2017-10-24 15:22 - 2017-11-11 10:31 - 000000000 ____D C:\Users\dejan\AppData\Local\FileZilla
2017-10-24 15:15 - 2017-11-11 10:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2017-10-24 15:15 - 2017-11-11 10:31 - 000000000 ____D C:\Program Files\FileZilla FTP Client
2017-10-16 15:11 - 2017-10-16 15:11 - 000000000 ___RD C:\Users\dejan\3D Objects
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-11-11 15:44 - 2017-08-21 20:37 - 000000000 ____D C:\FRST
2017-11-11 15:37 - 2017-09-01 01:29 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-11-11 15:27 - 2017-08-31 15:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-11-11 14:40 - 2017-09-01 01:26 - 000000000 ____D C:\WINDOWS\INF
2017-11-11 14:34 - 2017-08-31 15:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-11-11 14:34 - 2017-08-31 15:51 - 000000000 ____D C:\Users\dejan
2017-11-11 14:33 - 2017-09-01 01:15 - 001310720 _____ C:\WINDOWS\system32\config\BBI
2017-11-11 14:25 - 2017-09-01 01:15 - 000000000 ____D C:\WINDOWS\Panther
2017-11-11 14:17 - 2017-09-02 21:23 - 000000000 ____D C:\Users\dejan\AppData\Local\Avg
2017-11-11 14:15 - 2017-09-02 21:23 - 000000000 ____D C:\ProgramData\Avg
2017-11-11 14:12 - 2017-09-02 21:33 - 000000000 ____D C:\Program Files\AVG
2017-11-11 14:11 - 2017-09-02 21:23 - 000000000 ____D C:\Users\dejan\AppData\Local\AvgSetupLog
2017-11-11 13:11 - 2017-08-31 16:00 - 001299774 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-11-11 12:50 - 2017-08-31 17:28 - 000000000 ____D C:\Users\dejan\AppData\Roaming\Messenger for Desktop
2017-11-11 02:00 - 2017-08-31 16:45 - 000000000 ____D C:\Users\dejan\AppData\Local\Adobe
2017-11-10 22:54 - 2017-09-07 17:17 - 000000000 ____D C:\Users\dejan\AppData\Roaming\ViberPC
2017-11-08 20:18 - 2017-09-01 01:20 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-11-07 00:55 - 2017-08-31 16:05 - 000002367 _____ C:\Users\dejan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-11-05 20:55 - 2017-08-31 17:28 - 000000000 ____D C:\Users\dejan\AppData\Local\SquirrelTemp
2017-11-05 18:14 - 2017-08-31 17:26 - 000001273 _____ C:\Users\dejan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Messenger.lnk
2017-11-05 18:14 - 2017-08-31 17:26 - 000000000 ____D C:\Users\dejan\AppData\Local\Messenger
2017-11-01 22:56 - 2016-03-09 16:03 - 000000000 ____D C:\Users\dejan\.oracle_jre_usage
2017-11-01 19:58 - 2017-08-31 16:15 - 000000000 ____D C:\ProgramData\Oracle
2017-11-01 19:57 - 2017-08-31 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2017-11-01 19:56 - 2017-08-31 16:15 - 000000000 ____D C:\Program Files\Java
2017-11-01 19:42 - 2017-08-31 16:51 - 000000000 ____D C:\Program Files\Google
2017-11-01 16:58 - 2017-09-01 01:29 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2017-10-31 14:52 - 2017-08-31 17:12 - 000000000 ____D C:\Users\dejan\AppData\Roaming\uTorrent
2017-10-31 14:52 - 2017-08-31 17:03 - 000000000 ____D C:\Users\dejan\AppData\Roaming\TeamViewer
2017-10-31 14:51 - 2017-09-05 20:51 - 000000000 ____D C:\WINDOWS\Minidump
2017-10-31 14:51 - 2017-09-01 01:29 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-10-29 19:26 - 2017-09-28 19:36 - 000000000 ____D C:\Users\dejan\AppData\Local\ElevatedDiagnostics
2017-10-28 21:30 - 2017-08-31 16:11 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service
2017-10-28 21:30 - 2017-08-31 16:11 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-10-25 14:13 - 2017-09-01 01:29 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-10-18 22:15 - 2017-09-02 22:37 - 000001227 _____ C:\Users\dejan\Desktop\Facebook Gameroom.lnk
2017-10-18 22:15 - 2017-09-02 22:37 - 000000000 ____D C:\Users\dejan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
2017-10-18 22:14 - 2017-09-01 23:21 - 000000000 ____D C:\Users\dejan\AppData\Local\Facebook
2017-10-14 22:03 - 2017-09-01 01:29 - 000000000 ____D C:\WINDOWS\rescache
2017-10-13 01:21 - 2017-09-02 02:11 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2017-10-13 01:21 - 2017-09-02 02:11 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
==================== Files in the root of some directories =======
2017-10-02 18:19 - 2017-10-02 18:19 - 000140800 _____ () C:\Users\dejan\AppData\Local\installer.dat
2017-10-24 21:30 - 2017-10-24 21:30 - 000000600 _____ () C:\Users\dejan\AppData\Local\PUTTY.RND
2017-11-06 15:14 - 2017-11-06 15:14 - 000000033 _____ () C:\Users\dejan\AppData\Local\rssbuilder.config
2017-11-11 14:37 - 2017-11-11 14:37 - 000000004 ____H () C:\ProgramData\cm-lock
2017-08-31 15:46 - 2017-08-31 15:46 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-11-04 16:20
==================== End of FRST.txt ============================
https://www.mycity.rs/must-login.png
Dopuna: 12 Nov 2017 13:07
Sada mi se javio ovaj problem nakon updejta, iz ove teme https://www.mycity.rs/Windows/Nakon-updejta-ne-vid.....tures.html
|