Nemogučnost dowloada

Nemogučnost dowloada

offline
  • Pridružio: 14 Sep 2015
  • Poruke: 4

Problem je vrlo nezgodan i sprečava me da radim
kada pokušam da "skinem" (download) bilo šta sa Neta (PDF, JPG i dr) proces počne da bi
se (u levom donjem uglu) pojavila poruka
Anti-virus software failed unexpectedly while scanning this file.
Tako dobijam stalno:

(v. sliku u prilogu

Problem se počeo pojavljivati pre oko dva meseca.
Problem smo pokušali rešiti primenom različitih Antivirus siftware:
adwcelaner_4.208
HitmanPro
HousecallLauncher
rkill

Sve bez rezultata

Internet je Telekom ADSL sa dinamičkom IP adresom , brzime 10/1 Mbps
OS je Win 7




Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:30-09-2015
Ran by Mirko (administrator) on ZVERKO2 (30-09-2015 20:56:19)
Running from C:\Users\Mirko\Desktop
Loaded Profiles: Mirko (Available Profiles: Mirko)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(CobianSoft, Luis Cobian) C:\Tools\Cobian 11\cbVSCService11.exe
(Nero AG) C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(Luis Cobian, CobianSoft) C:\Tools\Cobian 11\Cobian.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Dropbox, Inc.) C:\Program Files\Dropbox\Client\Dropbox.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
() C:\Users\Mirko\AppData\Local\Viber\Viber.exe
(Luis Cobian, CobianSoft) C:\Tools\Cobian 11\cbInterface.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
() C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Ritlabs, SRL) D:\MSM15 Tools\TheBat6\thebat32.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Opera Software) C:\Tools\Opera\32.0.1948.69\opera.exe
(Opera Software) C:\Tools\Opera\32.0.1948.69\opera_crashreporter.exe
(Opera Software) C:\Tools\Opera\32.0.1948.69\opera.exe
(Opera Software) C:\Tools\Opera\32.0.1948.69\opera.exe
(Opera Software) C:\Tools\Opera\32.0.1948.69\opera.exe
(Opera Software) C:\Tools\Opera\32.0.1948.69\opera.exe
(Opera Software) C:\Tools\Opera\32.0.1948.69\opera.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(F.J. Wechselberger) C:\Tools\MyPhoneExplorer\MyPhoneExplorer.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(C. Ghisler & Co.) C:\Tools\totalcmd\TOTALCMD.EXE
(GlavSoft LLC.) C:\Program Files\TightVNC\tvnviewer.exe
(Astonsoft) D:\MSM15 Tools\EssentialPIM Pro\EssentialPIM.exe
(Astonsoft) D:\MSM15 Tools\EssentialPIM Pro\EssentialPIM.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Hyperionics Technology LLC) D:\MSM15 Tools\HyperSnap 6\HprSnap6.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-07-30] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [Cobian Backup 11] => C:\Tools\Cobian 11\Cobian.exe [720896 2013-03-07] (Luis Cobian, CobianSoft)
HKLM\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [36760 2012-01-03] (Adobe Systems Incorporated)
HKLM\...\Run: [Acrobat Assistant 8.0] => C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [815512 2012-01-03] (Adobe Systems Inc.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [Dropbox] => C:\Program Files\Dropbox\Client\Dropbox.exe [39175960 2015-08-14] (Dropbox, Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKLM\...\Run: [] => [X]
HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\...\Run: [Viber] => C:\Users\Mirko\AppData\Local\Viber\Viber.exe [51512528 2015-09-21] ()
HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\...\Run: [OfficeSyncProcess] => C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [719672 2012-01-20] (Microsoft Corporation)
HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Ribbons.scr [220672 2010-11-20] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.)
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
CHR HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{44D6B84C-902D-438D-B014-B9571566A37A}: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{66C79DD1-DDAB-4A46-9019-62E3C563202D}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{BFB94FC5-A793-4315-AB13-50B824B811DA}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03] (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-08-31] (Oracle Corporation)
BHO: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03] (Adobe Systems Incorporated)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-31] (Oracle Corporation)
BHO: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03] (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2012-01-03] (Adobe Systems Incorporated)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)

FireFox:
========
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-08-31] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-08-31] (Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> D:\MSM 15 Multimedia\VLC Player\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2012-01-03] (Adobe Systems Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2015-05-07]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR DefaultSearchURL: Default -> hxxps://en.wikipedia.org/wiki/Main_Page
CHR Profile: C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-11]
CHR Extension: (Google Docs) - C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-11]
CHR Extension: (Google Drive) - C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-11]
CHR Extension: (YouTube) - C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-11]
CHR Extension: (Google Search) - C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-11]
CHR Extension: (Google Sheets) - C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-11]
CHR Extension: (Skype Click to Call) - C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-09-05]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-09]
CHR Extension: (Gmail) - C:\Users\Mirko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-11]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]

Opera:
=======
OPR Extension: (lgllffgicojgllpmdbemgglaponefajn) - C:\Users\Mirko\AppData\Roaming\Opera Software\Opera Stable\Extensions\lgllffgicojgllpmdbemgglaponefajn [2015-07-17]
OPR Extension: (Coupon Time) - C:\Users\Mirko\AppData\Roaming\Opera Software\Opera Stable\Extensions\oiomoefbfgehpcojkblmjhcbgbcjgeah [2015-07-11]
StartMenuInternet: (HKLM) OperaStable - C:\Tools\Opera\Launcher.exe

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 cbVSCService11; C:\Tools\Cobian 11\cbVSCService11.exe [67584 2013-03-07] (CobianSoft, Luis Cobian) [File not signed]
S2 dbupdate; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-12] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-12] (Dropbox, Inc.)
R2 HTCMonitorService; C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-06-27] (Nero AG)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
S2 gupdate; "C:\Program Files\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files\Google\Update\GoogleUpdate.exe" /medsvc [X]
S2 WinDefend; %ProgramFiles%\Windows Defender\mpsvc.dll [X]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2015-04-14] (Disc Soft Ltd)
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [35992 2015-08-16] ()
S3 catchme; \??\C:\Users\Mirko\AppData\Local\Temp\catchme.sys [X]
S3 cpuz134; \??\C:\Users\Mirko\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

NETSVC: jcsqjowxk -> no filepath.
NETSVC: kdqhs -> no filepath.

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-30 20:56 - 2015-09-30 20:56 - 00015491 _____ C:\Users\Mirko\Desktop\FRST.txt
2015-09-30 20:56 - 2015-09-30 20:56 - 00000000 ____D C:\Users\Mirko\Desktop\FRST-OlderVersion
2015-09-30 20:55 - 2015-09-30 20:56 - 00000000 ____D C:\FRST
2015-09-21 23:29 - 2015-09-21 23:29 - 00232952 _____ C:\Windows\Minidump\092115-23602-01.dmp
2015-09-21 21:26 - 2015-09-21 21:26 - 00000000 ____D C:\Users\Mirko\AppData\Local\Viber
2015-09-21 21:26 - 2015-09-21 21:26 - 00000000 ____D C:\Users\Mirko\.ViberPC
2015-09-21 21:26 - 2015-09-21 21:26 - 00000000 ____D C:\Users\Mirko\.QtWebEngineProcess
2015-09-15 17:03 - 2015-09-30 20:56 - 01696256 _____ (Farbar) C:\Users\Mirko\Desktop\FRST.exe
2015-09-14 22:17 - 2015-09-14 22:17 - 00001123 _____ C:\Users\Mirko\Desktop\apdfpr - Shortcut.lnk
2015-09-14 20:41 - 2015-09-14 20:41 - 00000000 ____D C:\Windows\system32\MRT
2015-09-14 20:41 - 2015-08-26 18:36 - 132039072 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-09-14 20:29 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-09-14 20:27 - 2015-09-14 20:28 - 00292900 _____ C:\Windows\msxml4-KB954430-enu.LOG
2015-09-14 20:27 - 2015-09-14 20:27 - 00294770 _____ C:\Windows\msxml4-KB973688-enu.LOG
2015-09-14 20:27 - 2015-09-14 20:27 - 00000000 ____D C:\Program Files\MSXML 4.0
2015-09-14 20:10 - 2015-07-15 05:00 - 03989952 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-09-14 20:10 - 2015-07-15 05:00 - 03934656 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-09-14 20:10 - 2015-07-15 05:00 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-09-14 20:10 - 2015-07-15 05:00 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-09-14 20:10 - 2015-07-15 04:57 - 01308160 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-09-14 20:10 - 2015-07-15 04:55 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-09-14 20:10 - 2015-07-15 04:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-09-14 20:10 - 2015-07-15 04:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-09-14 20:10 - 2015-07-15 04:55 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-09-14 20:10 - 2015-07-15 04:54 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-09-14 20:10 - 2015-07-15 04:51 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-09-14 20:10 - 2015-07-15 04:50 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-09-14 20:10 - 2015-07-15 04:47 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-09-14 20:10 - 2015-07-15 04:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-09-14 20:10 - 2015-07-15 03:46 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-09-14 20:10 - 2015-07-15 03:46 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-09-14 20:10 - 2015-07-15 03:46 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-09-14 20:10 - 2015-06-25 11:48 - 00105408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-09-14 20:10 - 2015-06-25 11:44 - 01805824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-09-14 20:10 - 2015-06-25 11:44 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-09-14 20:09 - 2015-08-26 19:56 - 02953728 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-09-14 20:09 - 2015-08-26 19:56 - 02061824 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-09-14 20:09 - 2015-08-26 19:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-09-14 20:09 - 2015-08-26 19:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-09-14 20:09 - 2015-08-26 19:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-09-14 20:09 - 2015-08-26 19:56 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-09-14 20:09 - 2015-08-26 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-09-14 20:09 - 2015-08-26 19:55 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-09-14 20:09 - 2015-08-26 19:55 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-09-14 20:09 - 2015-08-26 19:55 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-09-14 20:09 - 2015-08-26 19:55 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-09-14 20:09 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-09-14 20:09 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-09-14 20:09 - 2015-07-15 04:54 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-09-14 20:09 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-09-14 20:09 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-09-14 20:09 - 2014-07-09 03:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-09-14 20:09 - 2014-07-09 03:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-09-14 20:09 - 2014-07-09 03:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-09-14 20:09 - 2014-07-09 03:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-09-14 20:09 - 2014-07-09 03:29 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-09-14 20:09 - 2014-07-09 00:30 - 00419992 _____ C:\Windows\system32\locale.nls
2015-09-14 20:09 - 2013-12-25 01:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-09-14 20:09 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-09-14 20:08 - 2015-07-10 19:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-09-14 20:08 - 2015-05-09 05:14 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-09-14 20:08 - 2015-05-09 05:13 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-09-14 20:08 - 2015-05-09 05:13 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-09-14 20:08 - 2015-05-09 05:12 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-09-14 20:08 - 2015-05-09 05:08 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 03:59 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 03:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 03:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-09-14 20:08 - 2015-05-09 03:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-09-14 20:08 - 2015-04-29 20:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-09-14 20:08 - 2015-04-29 20:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-09-14 20:08 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-09-14 20:08 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-09-14 20:08 - 2015-04-29 20:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-09-14 20:08 - 2015-02-25 05:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-09-14 20:08 - 2015-02-18 09:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-09-14 20:05 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-09-14 20:05 - 2015-02-04 04:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-09-14 19:58 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-09-14 19:08 - 2015-09-14 19:08 - 00000336 _____ C:\Users\Mirko\Desktop\Adobe Acrobat X Serials.txt
2015-09-07 22:15 - 2015-09-07 22:15 - 00001625 _____ C:\Users\Mirko\Desktop\Mobtel T630.lnk
2015-09-07 18:19 - 2015-09-07 18:20 - 01509792 _____ C:\Users\Mirko\Documents\Jazz piano BR.mp3.sfk
2015-09-05 20:09 - 2015-09-05 20:09 - 00232448 _____ C:\Windows\Minidump\090515-19453-01.dmp
2015-09-04 13:00 - 2015-09-04 13:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-09-04 13:00 - 2015-09-04 13:00 - 00000000 ____D C:\Program Files\Common Files\Skype
2015-09-02 02:42 - 2015-09-02 02:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-08-31 18:45 - 2015-08-31 18:45 - 00000000 ____D C:\Users\Mirko\AppData\Roaming\Sun
2015-08-31 18:45 - 2015-08-31 18:45 - 00000000 ____D C:\Users\Mirko\.oracle_jre_usage
2015-08-31 18:45 - 2015-08-31 18:45 - 00000000 ____D C:\Program Files\Common Files\Java
2015-08-31 18:35 - 2015-08-31 18:35 - 00232464 _____ C:\Windows\Minidump\083115-17253-01.dmp
2015-08-31 13:58 - 2015-08-31 13:58 - 00232400 _____ C:\Windows\Minidump\083115-23368-01.dmp

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-09-30 20:52 - 2015-06-24 03:26 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-09-30 20:40 - 2015-06-12 04:29 - 00000894 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2015-09-30 19:38 - 2015-04-13 22:35 - 00005105 _____ C:\Windows\WINCMD.INI
2015-09-30 19:00 - 2009-07-14 06:34 - 00031280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-09-30 19:00 - 2009-07-14 06:34 - 00031280 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-09-30 18:59 - 2015-05-14 02:29 - 00000000 ____D C:\Users\Mirko\.rssowl2
2015-09-30 18:56 - 2015-08-22 21:45 - 00000000 ____D C:\Users\Mirko\AppData\Local\CrashDumps
2015-09-30 18:55 - 2015-04-10 23:57 - 01435113 _____ C:\Windows\WindowsUpdate.log
2015-09-30 18:54 - 2015-04-19 03:05 - 00000000 ____D C:\Users\Mirko\AppData\Roaming\ViberPC
2015-09-30 18:53 - 2015-06-21 23:50 - 00000000 ___RD C:\Users\Mirko\Dropbox
2015-09-30 18:52 - 2015-06-23 04:29 - 00000000 ____D C:\Users\Mirko\AppData\Local\HTC MediaHub
2015-09-30 18:52 - 2015-06-12 04:29 - 00000000 ____D C:\Users\Mirko\AppData\Local\Dropbox
2015-09-30 18:50 - 2015-06-12 04:29 - 00000890 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2015-09-30 18:48 - 2015-06-19 07:29 - 00065536 _____ C:\Windows\system32\Ikeext.etl
2015-09-30 18:48 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-09-30 18:48 - 2009-07-14 06:39 - 00070695 _____ C:\Windows\setupact.log
2015-09-30 02:38 - 2015-05-13 04:34 - 00000000 ____D C:\Users\Mirko\AppData\Roaming\vlc
2015-09-30 02:11 - 2010-11-20 23:01 - 00782154 _____ C:\Windows\system32\PerfStringBackup.INI
2015-09-29 23:05 - 2015-04-11 16:10 - 00000000 ____D C:\Users\Mirko\AppData\Roaming\Skype
2015-09-27 01:18 - 2015-06-24 03:26 - 00000892 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-09-23 07:31 - 2015-07-23 07:30 - 00000000 ____D C:\Data e-mail
2015-09-22 15:52 - 2015-06-24 03:26 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-09-22 15:52 - 2015-06-24 03:26 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-09-21 23:29 - 2015-07-27 13:08 - 00000000 ____D C:\Windows\Minidump
2015-09-21 23:29 - 2015-07-27 13:07 - 159563248 _____ C:\Windows\MEMORY.DMP
2015-09-21 21:26 - 2015-04-11 00:02 - 00000000 ____D C:\Users\Mirko
2015-09-14 23:19 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2015-09-14 23:00 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2015-09-14 22:20 - 2015-04-14 23:37 - 00000477 _____ C:\Windows\apdfpr.ini
2015-09-14 20:58 - 2015-04-10 18:30 - 00116064 _____ C:\Users\Mirko\AppData\Local\GDIPFONTCACHEV1.DAT
2015-09-14 20:57 - 2009-07-14 06:33 - 00428432 _____ C:\Windows\system32\FNTCACHE.DAT
2015-09-14 18:47 - 2015-05-07 20:44 - 00002465 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller X.lnk
2015-09-14 18:47 - 2015-05-07 20:44 - 00002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat X Pro.lnk
2015-09-14 18:47 - 2015-05-07 20:44 - 00002006 _____ C:\Users\Public\Desktop\Adobe Acrobat X Pro.lnk
2015-09-14 18:47 - 2015-05-07 20:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2
2015-09-12 19:58 - 2015-04-11 19:06 - 00000000 ____D C:\Users\Mirko\AppData\Roaming\AIMP3
2015-09-07 17:05 - 2015-05-18 03:33 - 00000000 ____D C:\Users\Mirko\AppData\Roaming\Audacity
2015-09-05 17:51 - 2010-11-20 23:48 - 00041838 _____ C:\Windows\PFRO.log
2015-09-04 13:01 - 2015-04-11 16:10 - 00000000 ___RD C:\Program Files\Skype
2015-09-04 13:00 - 2015-04-11 16:10 - 00000000 ____D C:\ProgramData\Skype
2015-09-02 02:43 - 2015-06-12 04:29 - 00000000 ____D C:\Program Files\Dropbox
2015-08-31 18:46 - 2015-05-13 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-08-31 18:46 - 2015-05-13 18:52 - 00000000 ____D C:\Program Files\Java
2015-08-31 18:45 - 2015-05-13 18:52 - 00097888 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll

==================== Files in the root of some directories =======

2015-05-15 01:05 - 2015-08-20 13:18 - 0000024 _____ () C:\Users\Mirko\AppData\Roaming\appdataFr25.bin
2015-04-24 03:17 - 2015-05-12 07:13 - 0000020 _____ () C:\Users\Mirko\AppData\Roaming\appdataFr3.bin
2015-04-11 17:38 - 2015-07-06 10:49 - 0002914 _____ () C:\Users\Mirko\AppData\Roaming\ex_log.txt
2015-06-06 03:13 - 2015-06-06 03:13 - 0003584 _____ () C:\Users\Mirko\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-30 10:33 - 2015-07-30 10:33 - 0000036 _____ () C:\Users\Mirko\AppData\Local\housecall.guid.cache
2015-07-20 17:42 - 2015-07-20 17:42 - 0001274 _____ () C:\Users\Mirko\AppData\Local\recently-used.xbel
2015-04-15 17:46 - 2015-04-15 17:46 - 0000017 _____ () C:\Users\Mirko\AppData\Local\resmon.resmoncfg
2015-04-17 17:09 - 2015-05-07 20:24 - 0004728 _____ () C:\Users\Mirko\AppData\Local\Temp-log.txt
2015-05-27 08:34 - 2015-05-27 08:34 - 0000000 _____ () C:\Users\Mirko\AppData\Local\Temp.dat

Some files in TEMP:
====================
C:\Users\Mirko\AppData\Local\Temp\dllnt_dump.dll
C:\Users\Mirko\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpvy7qkp.dll
C:\Users\Mirko\AppData\Local\Temp\jre-8u60-windows-au.exe
C:\Users\Mirko\AppData\Local\Temp\SkypeSetup.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-09-21 01:38

==================== End of FRST.txt ============================


mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Oprosti na čekanju.


Arrow Korak 1

Otvori Notepad i iskopiraj sljedeći tekst koji se nalazi unutar Kod polja.

GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
CHR HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
OPR Extension: (lgllffgicojgllpmdbemgglaponefajn) - C:\Users\Mirko\AppData\Roaming\Opera Software\Opera Stable\Extensions\lgllffgicojgllpmdbemgglaponefajn [2015-07-17]
OPR Extension: (Coupon Time) - C:\Users\Mirko\AppData\Roaming\Opera Software\Opera Stable\Extensions\oiomoefbfgehpcojkblmjhcbgbcjgeah [2015-07-11]
NETSVC: jcsqjowxk -> no filepath.
NETSVC: kdqhs -> no filepath.


U okviru Notepad-a klikni na File --> Save As
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se fixlog.txt, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt).




Question

Da li si ti instalirao developer verziju Chromea?

offline
  • Pridružio: 14 Sep 2015
  • Poruke: 4

Fix result of Farbar Recovery Scan Tool (x86) Version:30-10-2015
Ran by Mirko (2015-10-04 00:23:25) Run:1
Running from C:\Users\Mirko\Desktop
Loaded Profiles: Mirko (Available Profiles: Mirko)
Boot Mode: Normal

==============================================

fixlist content:
*****************
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
CHR HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
OPR Extension: (lgllffgicojgllpmdbemgglaponefajn) - C:\Users\Mirko\AppData\Roaming\Opera Software\Opera Stable\Extensions\lgllffgicojgllpmdbemgglaponefajn [2015-07-17]
OPR Extension: (Coupon Time) - C:\Users\Mirko\AppData\Roaming\Opera Software\Opera Stable\Extensions\oiomoefbfgehpcojkblmjhcbgbcjgeah [2015-07-11]
NETSVC: jcsqjowxk -> no filepath.
NETSVC: kdqhs -> no filepath.
*****************

C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
"HKLM\SOFTWARE\Policies\Google" => key removed successfully.
"HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\SOFTWARE\Policies\Google" => key removed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
"HKU\S-1-5-21-3936691334-3423949461-2018326729-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully.
C:\Users\Mirko\AppData\Roaming\Opera Software\Opera Stable\Extensions\lgllffgicojgllpmdbemgglaponefajn => moved successfully
C:\Users\Mirko\AppData\Roaming\Opera Software\Opera Stable\Extensions\oiomoefbfgehpcojkblmjhcbgbcjgeah => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs jcsqjowxk => value removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs kdqhs => value removed successfully.


The system needed a reboot.

==== End of Fixlog 00:23:26 ====

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Nisi mi odgovorio na pitanje. Da li si ti lično instalirao developer verziju Chromea ili ne?

Ako nisi uradi sljedeće:


Idi u Start -> Control Panel -> Programs and Features i deinstaliraj Google Chrome. Obavezno označni opciju Also delete your browsing data.
Bookmarkse možeš da izvezeš i da ih kasnije opet ubaciš.

Kada ga deinstaliraš, skini ga sa Google sajta, https://www.google.com/chrome/browser/ i instaliraj opet.

offline
  • Pridružio: 14 Sep 2015
  • Poruke: 4

Hvala za sav trud.
Nije problem čekanje, a nije ni bilo dugo. Problem je što sečem vene sa ovim čudom.
Prvo, propustio sam da kažem (a nisam ni odmah ukačio) da se isti problem pojavljuje i kod Opere, pa i kod Interner explorera, ali začudo ne uvek, nego u večini slučajeva.
Postupio am po uputstvi (v. gore) deinstalirao Google Chrome, uradio "delete all browsing data".
Kada sam iz IE pokušao da skinem chrome/browser dogodilo se ponovo to čudo - ChromeSetup.exe ima virus (v. sliku u prilogu).
Onda smo sa druge mašine bez problema skinuli CromeSetup.exe, prebacili na glavnu mašinu i instalirali. Međutim taj đavo ostaje pa ostaje. Ludim.
Ja jesam neki inženjer, ali od stare garde, ne trtim se da sve znam. Međutim, moj je sin NetAdmin u jednoj solidnoj firmi, svašta zna i probao je. On me je uputio na vaš cenjeni site. Pre toga je proba sve moguće AntiVirus software.
Koliko smo čitali, to je neka caka u setovanju Win 7, u registru, ali ŠTA!
Iskreno unapred hvala, stvarno nas ovo koči.


offline
  • Pridružio: 14 Sep 2015
  • Poruke: 4

Od silnog nerviranja zaboravih da napišem. U jednom trenutku (a nisam memorisao kada) se pojavilo da
file dl.google.com ima virus. Ubih se noćima, sada ne mogu da nađem taj file.
Unapred hvala
M

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Pokušaj da se prebaciš na Google DNS ili na OpenDNS koristeći uputstvo na ovom linku:

http://www.howtogeek.com/164981/how-to-switch-to-o.....d=noscript

Ko je trenutno na forumu
 

Ukupno su 868 korisnika na forumu :: 4 registrovanih, 0 sakrivenih i 864 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: hyla, Milometer, RecA, voja64