Problem sa DLL datotekama

Problem sa DLL datotekama

offline
  • Pridružio: 17 Okt 2011
  • Poruke: 311

Napisano: 16 Dec 2015 6:03

Prilikom pokretanja računara od pre dva dana mi se stalno pojavljuje i nikako ne mogu da uklonim sledeće:


Napominjem da sam sam sa DLL Suite skenirao računar i po njemu su sve DLL datoteke u redu.



Dopuna: 16 Dec 2015 6:12

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:14-12-2015
Ran by Deki (administrator) on DEKI (16-12-2015 05:36:49)
Running from D:\Preuzimanja
Loaded Profiles: Deki (Available Profiles: Deki)
Platform: Windows 10 Pro Version 1511 (X64) Language: engleski (SAD)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgfws.exe
(@ByELDI) C:\Program Files\KMSpico\Service_KMS.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
() C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.11012.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8529152 2015-10-10] (Realtek Semiconductor)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1136552 2015-11-12] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3855272 2015-11-20] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [RealDownloader] => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [719632 2015-11-04] ()
HKU\S-1-5-21-940499128-127072106-2692247140-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX32.dll [2014-05-01] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RealTimes.lnk [2015-12-14]
ShortcutTarget: RealTimes.lnk -> C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe (RealNetworks, Inc.)
Startup: C:\Users\Deki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Feed Notifier.lnk [2015-12-14]
ShortcutTarget: Feed Notifier.lnk -> C:\Program Files (x86)\Feed Notifier\notifier.exe (No File)
Startup: C:\Users\Deki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Пошаљи у OneNote.lnk [2015-11-08]
ShortcutTarget: Пошаљи у OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{06947896-5889-4b3c-80e6-856e28c22f6c}: [DhcpNameServer] 192.168.1.1 192.168.1.1

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3SdmcX1ha1rWEBLSWdIOe17SDa3nkZrJFSx6AgPxDwQRsaRrNfssAWsPj0OZzsKYSINEZEpWdaBtFzHn
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
SearchScopes: HKU\S-1-5-21-940499128-127072106-2692247140-1001 -> DefaultScope {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
SearchScopes: HKU\S-1-5-21-940499128-127072106-2692247140-1001 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll [2015-11-04] (RealDownloader)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-11-18] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-11-10] (Microsoft Corporation)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2015-11-04] (RealDownloader)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-11-18] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll [2015-11-27] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-11-10] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-11-27] (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default
FF DefaultSearchEngine:
FF SelectedSearchEngine:
FF Homepage: hxxps://www.malwarebytes.org/restorebrowser//?type=hp&ts=1450026058&z=c20678b8baacdf056dc0269g6z5w0e1eeo7qbeacbm&from=cmi&uid=TOSHIBAXDT01ACA050_55AUEXZASXX55AUEXZASX
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll [2015-12-08] ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll [2015-12-08] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-11-27] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-11-27] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-18] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=18.1.2.175 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2015-12-09] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=18.1.2.175 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2015-12-09] (RealPlayer)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-11-18] (Microsoft Corporation)
FF Extension: No Name - C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default\extensions\deskCutv2@gmail.com [not found]
FF Extension: No Name - C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default\extensions\yahooprotected@gmail.com [not found]
StartMenuInternet: FIREFOX.EXE - firefox.exe
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\!B5F0F9906435156B6FA5E9750EFC9A42B5F0.js [2015-12-13] <==== ATTENTION
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\B5F0F9906435156B6FA5E9750EFC9A42B5F0 [2015-12-13] <==== ATTENTION

Chrome:
=======
CHR HomePage: Default -> hxxp://google.rs/
CHR StartupUrls: Default -> "hxxp://google.rs/"
CHR Profile: C:\Users\Deki\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google диск) - C:\Users\Deki\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Deki\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-10]
CHR Extension: (Google Search) - C:\Users\Deki\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Google документи офлајн) - C:\Users\Deki\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-17]
CHR Extension: (Плаћања у Chrome веб-продавници) - C:\Users\Deki\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-10]
CHR Extension: (Gmail) - C:\Users\Deki\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-10]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12]
StartMenuInternet: Google Chrome - Chrome.exe

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-21] (Advanced Micro Devices, Inc.) [File not signed]
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [615584 2015-11-20] (AVG Technologies CZ, s.r.o.)
R2 avgfws; C:\Program Files (x86)\AVG\Av\avgfws.exe [1587128 2015-11-20] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3857272 2015-11-20] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1046952 2015-11-12] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [579776 2015-11-20] (AVG Technologies CZ, s.r.o.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation)
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [236832 2015-11-06] (EasyAntiCheat Ltd)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 RealPlayerUpdateSvc; C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [33088 2015-11-04] ()
R2 RealTimes Desktop Service; C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe [1095976 2015-12-09] (RealNetworks, Inc.)
R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [966336 2014-12-04] (@ByELDI) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-10-10] (Advanced Micro Devices)
S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [23152 2015-09-09] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [184240 2015-11-06] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\system32\DRIVERS\avgfwd6a.sys [97208 2015-08-29] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313776 2015-11-06] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [298416 2015-08-20] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [256432 2015-11-06] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-08-10] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [306608 2015-10-08] (AVG Technologies CZ, s.r.o.)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [31136 2015-10-10] (REALiX(tm))
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [895256 2015-10-10] (Realtek )
R3 USBET; C:\Windows\system32\DRIVERS\ETdrv.sys [6423936 2013-02-04] (Etron)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-16 05:36 - 2015-12-16 05:36 - 00000000 ____D C:\FRST
2015-12-15 16:26 - 2015-12-15 16:28 - 00000000 ____D C:\Users\Deki\Desktop\deki
2015-12-15 11:40 - 2015-12-15 11:40 - 00000000 ____D C:\WINDOWS\system32\log
2015-12-14 20:28 - 2015-12-14 20:28 - 04207104 _____ (Qualcomm Atheros Communications, Inc.) C:\WINDOWS\system32\Drivers\athwnx.sys
2015-12-14 20:28 - 2015-12-14 20:28 - 03445248 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0804.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 03360256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NL7Data0804.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 02964480 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Models0804.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00736256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70804.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70804.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWebproxy.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Lexicons0804.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys
2015-12-14 20:28 - 2015-12-14 20:28 - 00344192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvmf6264.sys
2015-12-14 20:28 - 2015-12-14 20:28 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00243040 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmipnpinstall.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeComposite.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeWiFi.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationCrowdsource.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeCell.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsAnytimeUpgrade.exe
2015-12-14 20:28 - 2015-12-14 20:28 - 00191840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmipnpinstall.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeIP.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationCellAdapter.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\NdisImPlatformNetCfg.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWiFiAdapter.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2015-12-14 20:28 - 2015-12-14 20:28 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationSystemIntegration.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeGnss.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Suplcsps.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Suplcsps.dll
2015-12-14 20:28 - 2015-12-14 20:28 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fcvsc.sys
2015-12-14 20:28 - 2015-12-14 20:28 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HyperVideo.sys
2015-12-14 20:28 - 2015-12-14 20:28 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapihost.exe
2015-12-14 20:28 - 2015-12-14 20:28 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrolluxdll.dll
2015-12-14 20:25 - 2015-12-14 20:25 - 00001526 _____ C:\Users\Deki\Desktop\DLLSuite – prečica.lnk
2015-12-14 20:21 - 2015-12-14 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DLL Suite 9.0
2015-12-14 20:20 - 2015-12-14 20:47 - 00000000 ____D C:\Program Files (x86)\DLL Suite
2015-12-14 19:22 - 2015-12-14 19:22 - 00000000 ____D C:\Users\Deki\AppData\Local\VS Revo Group
2015-12-14 19:22 - 2015-12-14 19:22 - 00000000 ____D C:\ProgramData\VS Revo Group
2015-12-14 18:35 - 2015-12-14 18:38 - 00000000 ____D C:\Users\Deki\AppData\Roaming\Solvusoft
2015-12-14 18:33 - 2015-12-14 18:34 - 03901768 _____ (solvusoft Corporation ) C:\Users\Deki\Downloads\WinThruster_Setup_2016.exe
2015-12-14 18:09 - 2015-12-13 17:48 - 00000895 _____ C:\WINDOWS\system32\Drivers\etc\hosts.orig
2015-12-14 18:05 - 2015-12-16 05:13 - 00004146 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{54C71132-0CF8-4C2A-9D13-91E91A6DB3EC}
2015-12-14 17:52 - 2015-12-14 17:52 - 00000000 ____D C:\ProgramData\Avg_Update_1215avi
2015-12-14 12:30 - 2015-12-14 23:13 - 00000000 ____D C:\Users\Deki\Desktop\Rust Experimental v1336 Cliente x86 RUSTEO.COM
2015-12-14 10:56 - 2015-12-14 10:56 - 00000000 ____D C:\Users\Deki\AppData\Local\Star_Vault
2015-12-14 04:41 - 2015-12-14 04:41 - 00000000 ____D C:\Users\Deki\Mozilla
2015-12-14 02:41 - 2015-12-14 02:41 - 00000000 ____D C:\Users\Deki\Documents\FreeReign
2015-12-14 02:41 - 2015-12-14 02:41 - 00000000 ____D C:\Users\Deki\AppData\Local\FreeReign
2015-12-14 01:36 - 2015-12-14 01:36 - 00000202 _____ C:\Users\Deki\Desktop\Aftermath.url
2015-12-13 22:34 - 2015-12-13 22:34 - 00000000 ____D C:\Users\Deki\AppData\LocalLow\Unity
2015-12-13 22:33 - 2015-12-13 22:33 - 00000000 ____D C:\Users\Deki\AppData\LocalLow\Noble Empire
2015-12-13 22:24 - 2015-12-13 22:24 - 00000202 _____ C:\Users\Deki\Desktop\World of Guns Gun Disassembly.url
2015-12-13 20:54 - 2015-12-14 12:17 - 00000000 ____D C:\Users\Deki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-12-13 19:26 - 2015-12-13 19:26 - 00000000 ____D C:\Users\Deki\AppData\Local\Steam
2015-12-13 19:26 - 2015-12-13 19:26 - 00000000 ____D C:\Users\Deki\AppData\Local\CEF
2015-12-13 19:23 - 2015-12-14 19:16 - 00000549 _____ C:\Users\Public\Desktop\Steam.lnk
2015-12-13 19:23 - 2015-12-13 19:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-12-13 18:50 - 2015-12-13 19:11 - 00000000 ____D C:\Program Files\Common Files\xmbvapzp
2015-12-13 18:27 - 2015-12-13 18:27 - 00000000 ____D C:\WINDOWS\SysWOW64\directx
2015-12-13 18:22 - 2015-12-14 18:20 - 00000000 ____D C:\Users\Deki\AppData\Roaming\systweak
2015-12-13 18:22 - 2015-11-25 13:01 - 00021624 _____ (solvusoft) C:\WINDOWS\system32\roboot64.exe
2015-12-13 18:12 - 2015-12-13 18:12 - 00000017 _____ C:\WINDOWS\SysWOW64\history.dat
2015-12-13 17:50 - 2015-12-13 17:50 - 00000187 _____ C:\Users\Deki\AppData\Local\Kinnix.exe.config
2015-12-13 17:50 - 2015-12-13 17:48 - 00000895 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2015-12-13 12:00 - 2015-12-13 12:00 - 00000000 ___RD C:\Users\Deki\3D Objects
2015-12-11 20:12 - 2015-12-11 20:12 - 00000000 ____D C:\Users\Deki\AppData\Roaming\MPC-HC
2015-12-11 20:08 - 2015-12-11 20:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2015-12-11 20:08 - 2015-12-11 20:08 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2015-12-11 20:08 - 2015-02-18 19:00 - 00112640 _____ C:\WINDOWS\SysWOW64\ff_vfw.dll
2015-12-11 20:08 - 2014-12-21 14:58 - 03570688 _____ (x264vfw project) C:\WINDOWS\system32\x264vfw64.dll
2015-12-11 20:08 - 2014-12-21 14:57 - 03588608 _____ (x264vfw project) C:\WINDOWS\SysWOW64\x264vfw.dll
2015-12-11 20:08 - 2014-12-04 23:56 - 00729088 _____ C:\WINDOWS\system32\xvidcore.dll
2015-12-11 20:08 - 2014-12-04 23:55 - 00655872 _____ C:\WINDOWS\SysWOW64\xvidcore.dll
2015-12-11 20:08 - 2014-11-14 15:12 - 00254976 _____ C:\WINDOWS\system32\xvidvfw.dll
2015-12-11 20:08 - 2014-11-14 15:11 - 00240128 _____ C:\WINDOWS\SysWOW64\xvidvfw.dll
2015-12-11 20:08 - 2012-07-21 12:55 - 00180736 _____ (fccHandler) C:\WINDOWS\system32\ac3acm.acm
2015-12-11 20:08 - 2012-07-21 12:54 - 00122880 _____ (fccHandler) C:\WINDOWS\SysWOW64\ac3acm.acm
2015-12-11 20:08 - 2011-12-07 19:37 - 00148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll
2015-12-11 20:08 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\WINDOWS\SysWOW64\lagarith.dll
2015-12-11 15:56 - 2015-12-11 15:56 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-12-10 23:59 - 2015-12-10 23:59 - 00003584 _____ C:\WINDOWS\SECOH-QAD.dll
2015-12-10 22:28 - 2015-12-14 18:40 - 00000000 ___DC C:\WINDOWS\Panther
2015-12-10 22:26 - 2015-12-10 22:26 - 00000000 ____D C:\Windows.old
2015-12-10 22:25 - 2015-12-10 22:25 - 22572632 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 21125408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00969728 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00809312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00791552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00704352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-12-10 22:25 - 2015-12-10 22:25 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00536768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2015-12-10 22:25 - 2015-12-10 22:25 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00408128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00405048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2015-12-10 22:25 - 2015-12-10 22:25 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00245848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-12-10 22:25 - 2015-12-10 22:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2015-12-10 22:25 - 2015-12-10 22:25 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2015-12-10 22:25 - 2015-12-10 22:25 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2015-12-10 22:25 - 2015-12-10 22:25 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2015-12-10 22:24 - 2015-10-30 04:42 - 06918144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0c1a.dll
2015-12-10 22:24 - 2015-10-30 04:41 - 06918144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0c1a.dll
2015-12-10 22:24 - 2015-10-30 04:37 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0c1a.dll
2015-12-10 22:24 - 2015-10-30 04:35 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0c1a.dll
2015-12-10 22:23 - 2015-10-30 04:43 - 07043584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons081a.dll
2015-12-10 22:23 - 2015-10-30 04:41 - 07043584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons081a.dll
2015-12-10 22:23 - 2015-10-30 04:38 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData081a.dll
2015-12-10 22:23 - 2015-10-30 04:36 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData081a.dll
2015-12-10 22:23 - 2015-10-30 04:29 - 01909760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MLS2.dll
2015-12-10 22:23 - 2015-10-30 04:27 - 01870848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MLS2.dll
2015-12-10 22:16 - 2015-12-10 22:16 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2015-12-10 22:14 - 2015-12-10 22:14 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-12-10 22:14 - 2015-12-10 22:14 - 00000000 ____D C:\Program Files\MSBuild
2015-12-10 22:14 - 2015-12-10 22:14 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-12-10 22:14 - 2015-12-10 22:14 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-12-10 22:14 - 2015-10-24 02:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-12-10 22:14 - 2015-10-24 02:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-12-10 22:14 - 2015-10-24 02:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-12-10 22:13 - 2015-10-24 02:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-12-10 22:13 - 2015-10-24 02:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-12-10 22:13 - 2015-10-24 02:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-12-10 22:08 - 2015-12-10 22:08 - 00000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER
2015-12-10 18:30 - 2015-12-01 08:12 - 02152800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-12-10 18:30 - 2015-11-24 13:07 - 01817160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-12-10 18:30 - 2015-11-24 12:07 - 03671896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-12-10 18:30 - 2015-11-24 12:06 - 01540768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-12-10 18:30 - 2015-11-24 11:26 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-12-10 18:30 - 2015-11-24 11:03 - 02918808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-12-10 18:30 - 2015-11-24 11:01 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2015-12-10 18:30 - 2015-11-24 10:54 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2015-12-10 18:30 - 2015-11-24 10:53 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-12-10 18:30 - 2015-11-24 10:45 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2015-12-10 18:30 - 2015-11-24 10:37 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2015-12-10 18:30 - 2015-11-24 10:26 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2015-12-10 18:30 - 2015-11-24 10:19 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-12-10 18:30 - 2015-11-24 10:12 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2015-12-10 18:30 - 2015-11-24 09:58 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-12-10 18:30 - 2015-11-24 09:55 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-12-10 18:30 - 2015-11-24 09:54 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2015-12-10 18:30 - 2015-11-24 09:52 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-12-10 18:30 - 2015-11-24 09:49 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2015-12-10 18:30 - 2015-11-24 09:27 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-12-10 18:30 - 2015-11-24 09:14 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2015-12-10 18:30 - 2015-11-24 09:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-12-10 18:30 - 2015-11-24 08:59 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2015-12-10 18:30 - 2015-11-24 08:57 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2015-12-10 18:30 - 2015-11-24 08:35 - 22393856 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-12-10 18:30 - 2015-11-24 08:29 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-12-10 18:30 - 2015-11-24 08:25 - 24601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-12-10 18:30 - 2015-11-24 08:23 - 13381120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-12-10 18:30 - 2015-11-24 08:11 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-12-10 18:30 - 2015-11-24 08:09 - 19338240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-12-10 18:30 - 2015-11-24 08:08 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-12-10 18:30 - 2015-11-24 08:04 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-12-10 18:30 - 2015-11-22 11:47 - 07476576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-12-10 18:30 - 2015-11-22 11:47 - 02653816 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-10 18:30 - 2015-11-22 11:41 - 01859448 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-12-10 18:30 - 2015-11-22 11:41 - 01284960 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-12-10 18:30 - 2015-11-22 11:41 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-12-10 18:30 - 2015-11-22 11:35 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2015-12-10 18:30 - 2015-11-22 11:34 - 00975200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-12-10 18:30 - 2015-11-22 11:34 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2015-12-10 18:30 - 2015-11-22 11:33 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2015-12-10 18:30 - 2015-11-22 11:33 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2015-12-10 18:30 - 2015-11-22 11:33 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2015-12-10 18:30 - 2015-11-22 11:30 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-12-10 18:30 - 2015-11-22 11:30 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-12-10 18:30 - 2015-11-22 11:26 - 00431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2015-12-10 18:30 - 2015-11-22 11:25 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2015-12-10 18:30 - 2015-11-22 11:24 - 02772584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-12-10 18:30 - 2015-11-22 11:20 - 00795840 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-12-10 18:30 - 2015-11-22 11:19 - 00440160 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-12-10 18:30 - 2015-11-22 11:14 - 02185840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2015-12-10 18:30 - 2015-11-22 11:00 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2015-12-10 18:30 - 2015-11-22 11:00 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2015-12-10 18:30 - 2015-11-22 10:57 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-10 18:30 - 2015-11-22 10:57 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2015-12-10 18:30 - 2015-11-22 10:57 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2015-12-10 18:30 - 2015-11-22 10:57 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2015-12-10 18:30 - 2015-11-22 10:56 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-10 18:30 - 2015-11-22 10:56 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2015-12-10 18:30 - 2015-11-22 10:56 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2015-12-10 18:30 - 2015-11-22 10:56 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2015-12-10 18:30 - 2015-11-22 10:55 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-10 18:30 - 2015-11-22 10:55 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2015-12-10 18:30 - 2015-11-22 10:54 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-10 18:30 - 2015-11-22 10:54 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2015-12-10 18:30 - 2015-11-22 10:54 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-10 18:30 - 2015-11-22 10:54 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2015-12-10 18:30 - 2015-11-22 10:54 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2015-12-10 18:30 - 2015-11-22 10:54 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-12-10 18:30 - 2015-11-22 10:54 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2015-12-10 18:30 - 2015-11-22 10:54 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2015-12-10 18:30 - 2015-11-22 10:54 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2015-12-10 18:30 - 2015-11-22 10:52 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-10 18:30 - 2015-11-22 10:52 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2015-12-10 18:30 - 2015-11-22 10:52 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2015-12-10 18:30 - 2015-11-22 10:52 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2015-12-10 18:30 - 2015-11-22 10:52 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2015-12-10 18:30 - 2015-11-22 10:51 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2015-12-10 18:30 - 2015-11-22 10:51 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-10 18:30 - 2015-11-22 10:51 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2015-12-10 18:30 - 2015-11-22 10:51 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2015-12-10 18:30 - 2015-11-22 10:51 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2015-12-10 18:30 - 2015-11-22 10:50 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2015-12-10 18:30 - 2015-11-22 10:49 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2015-12-10 18:30 - 2015-11-22 10:49 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2015-12-10 18:30 - 2015-11-22 10:49 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2015-12-10 18:30 - 2015-11-22 10:49 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2015-12-10 18:30 - 2015-11-22 10:48 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2015-12-10 18:30 - 2015-11-22 10:47 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2015-12-10 18:30 - 2015-11-22 10:46 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-10 18:30 - 2015-11-22 10:46 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-12-10 18:30 - 2015-11-22 10:45 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-12-10 18:30 - 2015-11-22 10:45 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-12-10 18:30 - 2015-11-22 10:45 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2015-12-10 18:30 - 2015-11-22 10:45 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-12-10 18:30 - 2015-11-22 10:45 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2015-12-10 18:30 - 2015-11-22 10:45 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2015-12-10 18:30 - 2015-11-22 10:45 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2015-12-10 18:30 - 2015-11-22 10:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2015-12-10 18:30 - 2015-11-22 10:45 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2015-12-10 18:30 - 2015-11-22 10:44 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2015-12-10 18:30 - 2015-11-22 10:44 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-12-10 18:30 - 2015-11-22 10:44 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2015-12-10 18:30 - 2015-11-22 10:43 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2015-12-10 18:30 - 2015-11-22 10:43 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-12-10 18:30 - 2015-11-22 10:43 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-12-10 18:30 - 2015-11-22 10:43 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-12-10 18:30 - 2015-11-22 10:43 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2015-12-10 18:30 - 2015-11-22 10:42 - 13017600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-12-10 18:30 - 2015-11-22 10:42 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-12-10 18:30 - 2015-11-22 10:42 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-12-10 18:30 - 2015-11-22 10:42 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2015-12-10 18:30 - 2015-11-22 10:42 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2015-12-10 18:30 - 2015-11-22 10:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2015-12-10 18:30 - 2015-11-22 10:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2015-12-10 18:30 - 2015-11-22 10:41 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2015-12-10 18:30 - 2015-11-22 10:41 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2015-12-10 18:30 - 2015-11-22 10:41 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-12-10 18:30 - 2015-11-22 10:40 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2015-12-10 18:30 - 2015-11-22 10:40 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-12-10 18:30 - 2015-11-22 10:40 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-12-10 18:30 - 2015-11-22 10:40 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2015-12-10 18:30 - 2015-11-22 10:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 02126848 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-12-10 18:30 - 2015-11-22 10:39 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2015-12-10 18:30 - 2015-11-22 10:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2015-12-10 18:30 - 2015-11-22 10:38 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-12-10 18:30 - 2015-11-22 10:38 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-12-10 18:30 - 2015-11-22 10:38 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-12-10 18:30 - 2015-11-22 10:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2015-12-10 18:30 - 2015-11-22 10:38 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll
2015-12-10 18:30 - 2015-11-22 10:37 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2015-12-10 18:30 - 2015-11-22 10:37 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-10 18:30 - 2015-11-22 10:37 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-12-10 18:30 - 2015-11-22 10:36 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-10 18:30 - 2015-11-22 10:34 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2015-12-10 18:30 - 2015-11-22 10:34 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2015-12-10 18:30 - 2015-11-22 10:34 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-10 18:30 - 2015-11-22 10:34 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2015-12-10 18:30 - 2015-11-22 10:34 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-10 18:30 - 2015-11-22 10:34 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-10 18:30 - 2015-11-22 10:33 - 02587136 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-10 18:30 - 2015-11-22 10:33 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll
2015-12-10 18:30 - 2015-11-22 10:32 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2015-12-10 18:30 - 2015-11-22 10:32 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2015-12-10 18:30 - 2015-11-22 10:32 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-12-10 18:30 - 2015-11-22 10:31 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-12-10 18:30 - 2015-11-22 10:31 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-12-10 18:30 - 2015-11-22 10:31 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2015-12-10 18:30 - 2015-11-22 10:30 - 02598400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-10 18:30 - 2015-11-22 10:29 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2015-12-10 18:30 - 2015-11-22 10:28 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-12-10 18:30 - 2015-11-22 10:28 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2015-12-10 18:30 - 2015-11-22 10:28 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-12-10 18:30 - 2015-11-22 10:28 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-12-10 18:30 - 2015-11-22 10:28 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-12-10 18:30 - 2015-11-22 10:28 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-12-10 18:30 - 2015-11-22 10:28 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2015-12-10 18:30 - 2015-11-22 10:28 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-12-10 18:30 - 2015-11-22 10:28 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2015-12-10 18:30 - 2015-11-22 10:27 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-10 18:30 - 2015-11-22 10:27 - 02049024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-12-10 18:30 - 2015-11-22 10:27 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2015-12-10 18:30 - 2015-11-22 10:27 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2015-12-10 18:30 - 2015-11-22 10:27 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2015-12-10 18:30 - 2015-11-22 10:27 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2015-12-10 18:30 - 2015-11-22 10:26 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-12-10 18:30 - 2015-11-22 10:26 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-12-10 18:30 - 2015-11-22 10:26 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2015-12-10 18:30 - 2015-11-22 10:26 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2015-12-10 18:30 - 2015-11-22 10:25 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2015-12-10 18:30 - 2015-11-22 10:25 - 02280448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-12-10 18:30 - 2015-11-22 10:25 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2015-12-10 18:30 - 2015-11-22 10:24 - 02647552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-12-10 18:30 - 2015-11-22 10:24 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-10 18:30 - 2015-11-22 10:24 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2015-12-10 18:30 - 2015-11-22 10:24 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2015-12-10 18:30 - 2015-11-22 10:24 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2015-12-10 18:30 - 2015-11-22 10:23 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2015-12-10 18:30 - 2015-11-22 10:20 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2015-12-10 18:30 - 2015-11-22 10:19 - 02064384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-12-10 18:30 - 2015-11-22 10:18 - 01505280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-12-10 18:30 - 2015-11-22 10:18 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-12-10 18:30 - 2015-11-22 10:18 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2015-12-10 18:30 - 2015-11-22 10:17 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-12-10 18:30 - 2015-11-22 10:17 - 02121216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-12-10 18:30 - 2015-11-22 10:16 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2015-12-10 18:30 - 2015-11-22 10:11 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2015-12-10 14:04 - 2015-12-10 14:04 - 00000000 ____D C:\Users\Deki\AppData\Local\ActiveSync
2015-12-10 14:02 - 2015-12-10 14:02 - 00000020 ___SH C:\Users\Deki\ntuser.ini
2015-12-10 14:02 - 2015-12-10 14:02 - 00000000 _SHDL C:\Users\Default\My Documents
2015-12-10 14:02 - 2015-12-10 14:02 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2015-12-10 14:02 - 2015-12-10 14:02 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2015-12-10 14:02 - 2015-12-10 14:02 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2015-12-10 14:02 - 2015-12-10 14:02 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos
2015-12-10 14:02 - 2015-12-10 14:02 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures
2015-12-10 14:02 - 2015-12-10 14:02 - 00000000 _SHDL C:\Users\Default User\Documents\My Music
2015-12-10 13:57 - 2015-12-15 11:56 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-12-10 13:57 - 2015-12-10 13:57 - 00022744 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-12-10 13:46 - 2015-12-14 19:16 - 00001540 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-12-10 13:46 - 2015-12-10 13:46 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
2015-12-10 13:46 - 2015-12-10 13:46 - 00000000 ____D C:\Users\Default\AppData\Roaming\ATI
2015-12-10 13:46 - 2015-12-10 13:46 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-12-10 13:46 - 2015-12-10 13:46 - 00000000 ____D C:\Users\Default\AppData\Local\ATI
2015-12-10 13:46 - 2015-12-10 13:46 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
2015-12-10 13:46 - 2015-12-10 13:46 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ATI
2015-12-10 13:46 - 2015-12-10 13:46 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-12-10 13:46 - 2015-12-10 13:46 - 00000000 ____D C:\Users\Default User\AppData\Local\ATI
2015-12-10 13:42 - 2015-12-10 13:48 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2015-12-10 13:39 - 2015-12-14 04:41 - 00000000 ____D C:\Users\Deki
2015-12-10 13:39 - 2015-12-10 13:39 - 00000000 _SHDL C:\Users\Deki\My Documents
2015-12-10 13:39 - 2015-12-10 13:39 - 00000000 _SHDL C:\Users\Deki\Documents\My Videos
2015-12-10 13:39 - 2015-12-10 13:39 - 00000000 _SHDL C:\Users\Deki\Documents\My Pictures
2015-12-10 13:39 - 2015-12-10 13:39 - 00000000 _SHDL C:\Users\Deki\Documents\My Music
2015-12-10 13:36 - 2015-12-13 21:44 - 00000000 ____D C:\ProgramData\Package Cache
2015-12-10 13:36 - 2015-12-10 13:36 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-12-10 13:36 - 2015-12-10 13:36 - 00000000 ____D C:\WINDOWS\system32\DAX2
2015-12-10 13:36 - 2015-12-10 13:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-12-10 13:36 - 2015-12-10 13:36 - 00000000 ____D C:\ProgramData\AMD
2015-12-10 13:36 - 2015-12-10 13:36 - 00000000 ____D C:\Program Files\ATI Technologies
2015-12-10 13:36 - 2015-12-10 13:36 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-12-10 13:35 - 2015-12-10 13:48 - 00000000 ____D C:\Program Files\AMD
2015-12-10 13:35 - 2015-12-10 13:35 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2015-12-10 13:35 - 2015-12-10 13:35 - 00000000 ____D C:\Program Files\Realtek
2015-12-10 13:35 - 2015-12-10 13:35 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-12-10 13:35 - 2015-12-10 13:35 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2015-12-10 13:33 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-12-10 13:30 - 2015-12-14 20:31 - 00338504 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-12-10 12:59 - 2015-12-10 14:01 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2015-12-10 12:59 - 2015-12-10 14:01 - 00009528 _____ C:\WINDOWS\diagerr.xml
2015-12-09 12:03 - 2015-12-10 13:57 - 00002668 _____ C:\WINDOWS\System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-940499128-127072106-2692247140-1001
2015-12-09 09:40 - 2015-12-14 19:16 - 00001239 _____ C:\Users\Public\Desktop\RealPlayer (RealTimes).lnk
2015-12-09 09:40 - 2015-12-10 13:57 - 00002650 _____ C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-940499128-127072106-2692247140-1001
2015-12-09 09:40 - 2015-12-10 13:57 - 00002516 _____ C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-940499128-127072106-2692247140-1001
2015-12-09 09:40 - 2015-12-10 13:57 - 00002492 _____ C:\WINDOWS\System32\Tasks\RealDownloader Update Check
2015-12-09 09:40 - 2015-12-09 09:40 - 00000000 ____D C:\Users\Deki\AppData\Roaming\RealNetworks
2015-12-09 09:40 - 2015-12-09 09:40 - 00000000 ____D C:\Users\Deki\AppData\Local\Real
2015-12-09 09:40 - 2015-12-09 09:40 - 00000000 ____D C:\Users\Deki\AppData\Local\CrashRpt
2015-12-09 09:40 - 2015-12-09 09:40 - 00000000 ____D C:\ProgramData\RealNetworks
2015-12-09 09:40 - 2015-12-09 09:40 - 00000000 ____D C:\Program Files (x86)\RealNetworks
2015-12-09 09:39 - 2015-12-10 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks
2015-12-09 09:39 - 2015-12-09 09:40 - 00000000 ____D C:\Users\Deki\AppData\Roaming\Real
2015-12-09 09:39 - 2015-12-09 09:40 - 00000000 ____D C:\Program Files (x86)\Real
2015-12-09 09:39 - 2015-12-09 09:39 - 00505616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll
2015-12-09 09:39 - 2015-12-09 09:39 - 00354064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll
2015-12-09 09:39 - 2015-12-09 09:39 - 00278800 _____ (Progressive Networks) C:\WINDOWS\SysWOW64\pncrt.dll
2015-12-09 09:39 - 2015-12-09 09:39 - 00200976 _____ (RealNetworks, Inc.) C:\WINDOWS\SysWOW64\rmoc3260.dll
2015-12-09 09:33 - 2015-12-09 09:41 - 00000000 ____D C:\ProgramData\Real
2015-12-08 06:23 - 2015-04-27 15:59 - 00950272 _____ (3DMGAME) C:\Users\Deki\Desktop\Grand Theft Auto V v1.0.323.1-v1.0.335.2 Plus 19 Trainer.exe
2015-12-08 06:22 - 2015-12-08 06:22 - 00000000 ____D C:\Users\Deki\Documents\FLiNGTrainer
2015-12-07 22:06 - 2015-12-07 22:06 - 00000000 ____D C:\Users\Deki\Documents\Rockstar Games
2015-12-07 22:06 - 2015-12-07 22:06 - 00000000 ____D C:\Users\Deki\AppData\Local\Rockstar Games
2015-12-07 22:06 - 2015-12-07 22:06 - 00000000 ____D C:\ProgramData\Socialclub
2015-12-07 22:03 - 2015-12-07 22:03 - 00000000 ____D C:\Program Files\Rockstar Games
2015-12-07 22:03 - 2015-12-07 22:03 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
2015-12-07 21:47 - 2015-12-14 19:16 - 00000499 _____ C:\Users\Public\Desktop\Grand Theft Auto V.lnk
2015-12-06 23:34 - 2015-12-14 19:16 - 00000593 _____ C:\Users\Public\Desktop\Fraps.lnk
2015-12-06 23:34 - 2015-12-10 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2015-12-06 23:34 - 2015-12-06 23:34 - 00000000 ____D C:\Fraps
2015-12-06 19:27 - 2015-12-06 19:27 - 00000000 ____D C:\Users\Deki\Documents\7 Days To Die
2015-12-04 03:48 - 2015-12-04 03:48 - 00000000 ____D C:\Users\Deki\AppData\Roaming\SmartSteamEmu
2015-12-04 01:19 - 2015-12-04 03:00 - 00000000 ____D C:\Users\Deki\Documents\MEGAsync Downloads
2015-12-04 01:18 - 2015-12-04 01:18 - 00000000 ___RD C:\Users\Deki\Documents\MEGA
2015-12-04 01:14 - 2015-12-14 19:16 - 00000763 _____ C:\Users\Public\Desktop\MEGAsync.lnk
2015-12-04 01:14 - 2015-12-10 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync
2015-12-04 01:14 - 2015-12-04 01:14 - 00000000 ____D C:\Users\Deki\AppData\Local\Mega Limited
2015-12-04 01:14 - 2015-12-04 01:14 - 00000000 ____D C:\ProgramData\MEGAsync
2015-12-03 04:34 - 2015-12-03 04:34 - 00000000 ____D C:\Users\Deki\Documents\capcom
2015-12-03 04:33 - 2015-12-03 04:33 - 00000000 ____D C:\Users\Deki\Documents\Games for Windows - LIVE Demos
2015-12-03 04:32 - 2015-12-10 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
2015-12-03 04:32 - 2015-12-03 04:32 - 00000000 ____D C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2015-11-29 11:32 - 2015-12-14 19:16 - 00001023 _____ C:\Users\Deki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opcionalne funkcije.lnk
2015-11-28 20:06 - 2015-12-14 19:16 - 00001165 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-11-28 20:06 - 2015-12-14 18:50 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-11-28 20:06 - 2015-12-10 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-11-28 20:06 - 2015-11-28 20:06 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-11-28 20:06 - 2015-11-28 20:06 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-11-28 20:06 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-11-28 20:06 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-11-28 20:06 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2015-11-27 15:10 - 2015-11-27 15:10 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-11-27 09:35 - 2015-11-27 09:35 - 00000000 ____D C:\Users\Deki\Documents\Outlook датотеке
2015-11-21 18:07 - 2015-12-10 13:48 - 00000000 ____D C:\Users\Deki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rusted.cz
2015-11-21 18:05 - 2015-11-21 18:05 - 00000000 ____D C:\Rusted.cz
2015-11-20 15:56 - 2015-11-20 15:56 - 00267000 _____ C:\WINDOWS\system32\Drivers\EasyAntiCheat.sys
2015-11-20 15:56 - 2015-11-06 00:28 - 00236832 _____ (EasyAntiCheat Ltd) C:\WINDOWS\SysWOW64\EasyAntiCheat.exe
2015-11-19 18:57 - 2015-12-14 19:16 - 00001046 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2015-11-19 18:57 - 2015-12-14 18:41 - 00000000 ____D C:\Users\Deki\AppData\Roaming\TS3Client
2015-11-19 18:57 - 2015-12-10 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-11-19 18:57 - 2015-11-19 18:57 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-12-16 05:36 - 2015-10-30 07:28 - 00000000 ____D C:\Windows
2015-12-16 05:16 - 2015-10-10 02:08 - 00000000 ____D C:\ProgramData\MFAData
2015-12-16 05:11 - 2015-10-13 18:52 - 00000912 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-16 05:10 - 2015-10-25 16:17 - 00001024 _____ C:\WINDOWS\Tasks\R2zVSWwHxnClcLGYfaAnOqh.job
2015-12-16 05:10 - 2015-10-25 16:17 - 00001018 _____ C:\WINDOWS\Tasks\HTdBsWLu2lMcQET8Z4aX.job
2015-12-16 04:18 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps
2015-12-16 04:18 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-12-16 00:02 - 2015-10-13 18:52 - 00000916 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-15 23:57 - 2015-10-10 05:48 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-12-15 11:55 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2015-12-15 11:51 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF
2015-12-15 11:48 - 2015-10-30 10:42 - 00000000 ___HD C:\$WINDOWS.~BT
2015-12-14 20:30 - 2015-10-10 03:29 - 00000000 ____D C:\Users\Deki\AppData\Roaming\Azureus
2015-12-14 20:28 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-12-14 19:16 - 2015-10-17 19:37 - 00002210 _____ C:\Users\Public\Desktop\Webcam Videocap.lnk
2015-12-14 19:16 - 2015-10-10 22:55 - 00001957 _____ C:\Users\Public\Desktop\Black Flag.lnk
2015-12-14 19:16 - 2015-10-10 13:33 - 00001449 _____ C:\Users\Public\Desktop\League of Legends.lnk
2015-12-14 19:16 - 2015-10-10 03:30 - 00001851 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vuze.lnk
2015-12-14 19:16 - 2015-10-10 03:30 - 00001845 _____ C:\Users\Public\Desktop\Vuze.lnk
2015-12-14 19:16 - 2015-10-10 01:14 - 00001023 _____ C:\Users\Deki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optional Features.lnk
2015-12-14 19:16 - 2015-10-10 01:02 - 00002339 _____ C:\Users\Deki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-14 19:15 - 2015-10-10 09:09 - 00000897 _____ C:\Users\Deki\Desktop\HWiNFO64 Program.lnk
2015-12-14 19:15 - 2015-10-10 01:14 - 00000420 _____ C:\Users\Deki\Desktop\This PC - Shortcut.lnk
2015-12-14 19:14 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-12-13 19:18 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-12-13 17:59 - 2015-10-13 16:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-12-13 14:47 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache
2015-12-13 01:33 - 2015-10-10 05:48 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-12-12 17:39 - 2015-10-10 00:56 - 00879220 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-12-11 11:28 - 2015-10-30 07:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-12-11 03:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\appcompat
2015-12-10 22:28 - 2015-10-30 08:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2015-12-10 22:25 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-12-10 22:25 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Provisioning
2015-12-10 22:25 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2015-12-10 22:25 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2015-12-10 22:24 - 2015-10-30 10:03 - 00000000 ____D C:\WINDOWS\OCR
2015-12-10 22:22 - 2015-10-30 10:07 - 00000000 ____D C:\Program Files\Windows Journal
2015-12-10 22:22 - 2015-10-30 10:02 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2015-12-10 22:22 - 2015-10-30 10:02 - 00000000 ____D C:\WINDOWS\system32\WCN
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\migwiz
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\IME
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Help
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Defender
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2015-12-10 22:22 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-12-10 22:22 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\servicing
2015-12-10 18:42 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-12-10 18:33 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-12-10 14:16 - 2015-10-10 00:59 - 00000000 ____D C:\Users\Deki\AppData\Local\Packages
2015-12-10 14:12 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2015-12-10 14:03 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-12-10 14:03 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-12-10 14:02 - 2015-10-10 00:59 - 00000000 __RHD C:\Users\Public\AccountPictures
2015-12-10 13:59 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-12-10 13:59 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Registration
2015-12-10 13:57 - 2015-10-25 16:17 - 00003634 _____ C:\WINDOWS\System32\Tasks\R2zVSWwHxnClcLGYfaAnOqh
2015-12-10 13:57 - 2015-10-25 16:17 - 00003626 _____ C:\WINDOWS\System32\Tasks\HTdBsWLu2lMcQET8Z4aX
2015-12-10 13:57 - 2015-10-13 18:52 - 00003428 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-10 13:57 - 2015-10-13 18:52 - 00003204 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-12-10 13:57 - 2015-10-12 10:01 - 00002278 _____ C:\WINDOWS\System32\Tasks\{D24CEA20-1FC4-4D77-9E8B-E6EAFA90AF5A}
2015-12-10 13:57 - 2015-10-12 09:57 - 00002278 _____ C:\WINDOWS\System32\Tasks\{00915EC3-2DDD-4DF5-A404-4C07B64B25FD}
2015-12-10 13:57 - 2015-10-10 06:02 - 00002524 _____ C:\WINDOWS\System32\Tasks\AutoPico Daily Restart
2015-12-10 13:57 - 2015-10-10 05:48 - 00003346 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-12-10 13:57 - 2015-10-10 05:48 - 00003044 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-12-10 13:54 - 2015-10-30 08:24 - 00000000 __RHD C:\Users\Public\Libraries
2015-12-10 13:48 - 2015-10-30 10:07 - 00000000 ____D C:\WINDOWS\ShellNew
2015-12-10 13:48 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2015-12-10 13:48 - 2015-10-17 19:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webcam Videocap
2015-12-10 13:48 - 2015-10-10 22:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Flag
2015-12-10 13:48 - 2015-10-10 09:11 - 00000000 ____D C:\Users\Deki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft Wireless Network Watcher
2015-12-10 13:48 - 2015-10-10 07:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO64
2015-12-10 13:48 - 2015-10-10 06:06 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-12-10 13:48 - 2015-10-10 06:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2015-12-10 13:48 - 2015-10-10 06:00 - 00000000 ____D C:\Users\Deki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-12-10 13:48 - 2015-10-10 06:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-12-10 13:48 - 2015-10-10 04:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-12-10 13:48 - 2015-10-10 02:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-12-10 13:46 - 2015-07-10 10:05 - 00000000 ____D C:\Users\Default.migrated
2015-12-10 13:44 - 2015-11-10 10:43 - 00000000 ____D C:\WINDOWS\SysWOW64\xlive
2015-12-10 13:44 - 2015-10-30 10:02 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2015-12-10 13:43 - 2015-10-30 10:02 - 00000000 ____D C:\WINDOWS\system32\slmgr
2015-12-10 13:43 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-12-10 13:43 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\spool
2015-12-10 13:43 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-12-10 13:43 - 2015-10-25 14:59 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2015-12-10 13:42 - 2015-10-30 08:24 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-12-10 13:42 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\USOPrivate
2015-12-10 13:42 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Common Files\System
2015-12-10 13:42 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-12-10 13:42 - 2015-10-12 10:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-10 13:42 - 2015-10-10 13:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarGame
2015-12-10 13:38 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-12-10 13:35 - 2015-10-10 01:11 - 00000000 ____D C:\AMD
2015-12-10 13:30 - 2015-10-30 10:14 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2015-12-10 13:05 - 2015-10-10 10:47 - 00008192 __RSH C:\BOOTSECT.BAK
2015-12-10 00:56 - 2015-10-10 02:52 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-12-10 00:55 - 2015-07-10 12:04 - 00000191 _____ C:\WINDOWS\win.ini
2015-12-10 00:50 - 2015-10-10 04:35 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-12-10 00:44 - 2015-10-10 04:35 - 140158008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-12-07 19:20 - 2015-10-15 15:18 - 00000000 ____D C:\Users\Deki\Documents\My Games
2015-12-06 13:02 - 2015-10-12 10:20 - 00000000 ____D C:\Users\Deki\AppData\Roaming\Skype
2015-12-03 04:18 - 2015-10-17 19:37 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-12-01 01:33 - 2015-10-30 08:26 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-12-01 01:33 - 2015-10-30 08:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-11-30 16:50 - 2015-10-10 01:02 - 00000000 ___RD C:\Users\Deki\OneDrive
2015-11-27 09:21 - 2015-10-10 04:23 - 00000000 ____D C:\ProgramData\Oracle
2015-11-27 09:21 - 2015-10-10 04:23 - 00000000 ____D C:\Program Files (x86)\Java
2015-11-27 09:20 - 2015-10-10 04:23 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2015-11-27 09:20 - 2015-10-10 04:23 - 00000000 ____D C:\Users\Deki\.oracle_jre_usage
2015-11-24 08:35 - 2015-10-12 09:55 - 00000000 ____D C:\ProgramData\Skype

==================== Files in the root of some directories =======

2015-04-19 13:20 - 2015-04-19 13:20 - 0005872 _____ () C:\Users\Deki\AppData\Roaming\HTdBsWLu2lMcQET8Z4aX
2015-04-14 17:28 - 2015-04-14 17:28 - 0004387 _____ () C:\Users\Deki\AppData\Roaming\R2zVSWwHxnClcLGYfaAnOqh
2015-12-13 17:50 - 2015-12-13 17:50 - 0000187 _____ () C:\Users\Deki\AppData\Local\Kinnix.exe.config
2015-11-10 01:10 - 2015-11-10 01:10 - 0000000 ___SH () C:\Users\Deki\AppData\Local\LumaEmu
2015-12-10 13:36 - 2015-12-10 13:36 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\Deki\AppData\Local\Temp\i4jdel0.exe
C:\Users\Deki\AppData\Local\Temp\i4jdel1.exe
C:\Users\Deki\AppData\Local\Temp\temp~.DLL
C:\Users\Deki\AppData\Local\Temp\temp~.EXE


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-12-10 13:29

==================== End of FRST.txt ============================

Dopuna: 16 Dec 2015 6:13

https://www.mycity.rs/must-login.png

Dopuna: 16 Dec 2015 9:35

Hvala Vam mnogo obaveštavam vas da rešio ovaj prolem tako što sam deaktivirao ovu apčikaciju na sledeći način:


Ne znam da li bi bilo dobro de je ovde i izbrišem?

Molim vas da me obavestite ako sam na bilo koji način pogrešio.

Dopuna: 16 Dec 2015 9:44

PS Takodje Vas molim da me obavestite ukoliko smatrate da bi bilo svrsishodno nastavite sa proverom mog računara.

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8620
  • Gde živiš: Novi Beograd

Zdravo,

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

CreateRestorePoint:
 Task: {1723C1BC-21EA-4EDC-8568-BF713785882C} - System32\Tasks\HTdBsWLu2lMcQET8Z4aX => C:\Users\Deki\AppData\Roaming\HTdBsWLu2lMcQET8Z4aX.exe <==== ATTENTION
Task: {1F42468D-A716-4763-9501-C2BFC56D19A7} - \Image Car2 -> No File <==== ATTENTION
Task: {6A6874DB-0E4D-453D-B4BE-BEAB02AE4ABB} - System32\Tasks\R2zVSWwHxnClcLGYfaAnOqh => C:\Users\Deki\AppData\Roaming\R2zVSWwHxnClcLGYfaAnOqh.exe <==== ATTENTION
Task: {8912EEC7-CE47-42FA-80D7-05133C90D9AB} - \Image Car -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\HTdBsWLu2lMcQET8Z4aX.job => C:\Users\Deki\AppData\Roaming\HTdBsWLu2lMcQET8Z4aX.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\R2zVSWwHxnClcLGYfaAnOqh.job => C:\Users\Deki\AppData\Roaming\R2zVSWwHxnClcLGYfaAnOqh.exe <==== ATTENTION
C:\Users\Deki\AppData\Roaming\R2zVSWwHxnClcLGYfaAnOqh.exe
C:\Users\Deki\AppData\Roaming\HTdBsWLu2lMcQET8Z4aX.exe
ShortcutTarget: Feed Notifier.lnk -> C:\Program Files (x86)\Feed Notifier\notifier.exe (No File)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3SdmcX1ha1rWEBLSWdIOe17SDa3nkZrJFSx6AgPxDwQRsaRrNfssAWsPj0OZzsKYSINEZEpWdaBtFzHn
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
SearchScopes: HKU\S-1-5-21-940499128-127072106-2692247140-1001 -> DefaultScope {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
SearchScopes: HKU\S-1-5-21-940499128-127072106-2692247140-1001 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
FF DefaultSearchEngine:
FF SelectedSearchEngine:
FF Homepage: hxxps://www.malwarebytes.org/restorebrowser//?type=hp&ts=1450026058&z=c20678b8baacdf056dc0269g6z5w0e1eeo7qbeacbm&from=cmi&uid=TOSHIBAXDT01ACA050_55AUEXZASXX55AUEXZASX
FF Extension: No Name - C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default\extensions\deskCutv2@gmail.com [not found]
FF Extension: No Name - C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default\extensions\yahooprotected@gmail.com [not found]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\!B5F0F9906435156B6FA5E9750EFC9A42B5F0.js [2015-12-13] <==== ATTENTION
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\B5F0F9906435156B6FA5E9750EFC9A42B5F0 [2015-12-13] <==== ATTENTION
File:C:\Users\Deki\AppData\Local\Temp\i4jdel0.exe
File:C:\Users\Deki\AppData\Local\Temp\temp~.DLL
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • Pridružio: 17 Okt 2011
  • Poruke: 311

Fix result of Farbar Recovery Scan Tool (x64) Version:14-12-2015
Ran by Deki (2015-12-16 10:57:15) Run:1
Running from C:\Users\Deki\Desktop
Loaded Profiles: Deki (Available Profiles: Deki)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
Task: {1723C1BC-21EA-4EDC-8568-BF713785882C} - System32\Tasks\HTdBsWLu2lMcQET8Z4aX => C:\Users\Deki\AppData\Roaming\HTdBsWLu2lMcQET8Z4aX.exe <==== ATTENTION
Task: {1F42468D-A716-4763-9501-C2BFC56D19A7} - \Image Car2 -> No File <==== ATTENTION
Task: {6A6874DB-0E4D-453D-B4BE-BEAB02AE4ABB} - System32\Tasks\R2zVSWwHxnClcLGYfaAnOqh => C:\Users\Deki\AppData\Roaming\R2zVSWwHxnClcLGYfaAnOqh.exe <==== ATTENTION
Task: {8912EEC7-CE47-42FA-80D7-05133C90D9AB} - \Image Car -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\HTdBsWLu2lMcQET8Z4aX.job => C:\Users\Deki\AppData\Roaming\HTdBsWLu2lMcQET8Z4aX.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\R2zVSWwHxnClcLGYfaAnOqh.job => C:\Users\Deki\AppData\Roaming\R2zVSWwHxnClcLGYfaAnOqh.exe <==== ATTENTION
C:\Users\Deki\AppData\Roaming\R2zVSWwHxnClcLGYfaAnOqh.exe
C:\Users\Deki\AppData\Roaming\HTdBsWLu2lMcQET8Z4aX.exe
ShortcutTarget: Feed Notifier.lnk -> C:\Program Files (x86)\Feed Notifier\notifier.exe (No File)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3SdmcX1ha1rWEBLSWdIOe17SDa3nkZrJFSx6AgPxDwQRsaRrNfssAWsPj0OZzsKYSINEZEpWdaBtFzHn
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
SearchScopes: HKU\S-1-5-21-940499128-127072106-2692247140-1001 -> DefaultScope {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
SearchScopes: HKU\S-1-5-21-940499128-127072106-2692247140-1001 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3McXDvdSN6JAXeEbpBaOW4Zsvjorb1kG9AA9bxbWSTVzmNbxuH1gQGczptRuV7-0CO-B-aVRT3Fo3Svhhbx_ApF-5y6NChL9hlHVGZZ6uwCMNB55ivtml449vwIHQR7Iw0IBa2AYiGv52ZInBulwZ3TTV59g&q={searchTerms}
FF DefaultSearchEngine:
FF SelectedSearchEngine:
FF Homepage: hxxps://www.malwarebytes.org/restorebrowser//?type=hp&ts=1450026058&z=c20678b8baacdf056dc0269g6z5w0e1eeo7qbeacbm&from=cmi&uid=TOSHIBAXDT01ACA050_55AUEXZASXX55AUEXZASX
FF Extension: No Name - C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default\extensions\deskCutv2@gmail.com [not found]
FF Extension: No Name - C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default\extensions\yahooprotected@gmail.com [not found]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\!B5F0F9906435156B6FA5E9750EFC9A42B5F0.js [2015-12-13] <==== ATTENTION
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\B5F0F9906435156B6FA5E9750EFC9A42B5F0 [2015-12-13] <==== ATTENTION
File:C:\Users\Deki\AppData\Local\Temp\i4jdel0.exe
File:C:\Users\Deki\AppData\Local\Temp\temp~.DLL
EmptyTemp:
*****************

Restore point was successfully created.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1723C1BC-21EA-4EDC-8568-BF713785882C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1723C1BC-21EA-4EDC-8568-BF713785882C}" => key removed successfully
C:\WINDOWS\System32\Tasks\HTdBsWLu2lMcQET8Z4aX => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HTdBsWLu2lMcQET8Z4aX" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1F42468D-A716-4763-9501-C2BFC56D19A7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1F42468D-A716-4763-9501-C2BFC56D19A7}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Image Car2" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6A6874DB-0E4D-453D-B4BE-BEAB02AE4ABB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6A6874DB-0E4D-453D-B4BE-BEAB02AE4ABB}" => key removed successfully
C:\WINDOWS\System32\Tasks\R2zVSWwHxnClcLGYfaAnOqh => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\R2zVSWwHxnClcLGYfaAnOqh" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8912EEC7-CE47-42FA-80D7-05133C90D9AB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8912EEC7-CE47-42FA-80D7-05133C90D9AB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Image Car" => key removed successfully
C:\WINDOWS\Tasks\HTdBsWLu2lMcQET8Z4aX.job => moved successfully
C:\WINDOWS\Tasks\R2zVSWwHxnClcLGYfaAnOqh.job => moved successfully
"C:\Users\Deki\AppData\Roaming\R2zVSWwHxnClcLGYfaAnOqh.exe" => not found.
"C:\Users\Deki\AppData\Roaming\HTdBsWLu2lMcQET8Z4aX.exe" => not found.
C:\Program Files (x86)\Feed Notifier\notifier.exe => not found.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main\\Search Bar => value removed successfully
HKU\S-1-5-21-940499128-127072106-2692247140-1001\Software\Microsoft\Internet Explorer\Main\\SearchAssistant => value removed successfully
HKU\S-1-5-21-940499128-127072106-2692247140-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-940499128-127072106-2692247140-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ielnksrch}" => key removed successfully
HKCR\CLSID\{ielnksrch} => key not found.
Firefox DefaultSearchEngine removed successfully
Firefox SelectedSearchEngine removed successfully
Firefox "homepage" removed successfully
C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default\extensions\deskCutv2@gmail.com => path removed successfully
C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default\extensions\yahooprotected@gmail.com => path removed successfully
C:\Program Files (x86)\mozilla firefox\defaults\pref\!B5F0F9906435156B6FA5E9750EFC9A42B5F0.js => moved successfully
C:\Program Files (x86)\mozilla firefox\B5F0F9906435156B6FA5E9750EFC9A42B5F0 => moved successfully

========================= File:C:\Users\Deki\AppData\Local\Temp\i4jdel0.exe ========================

File is digitally signed
MD5: DE395ADB369470A953A11B8C300697E2
Creation and modification date: 2015-12-14 20:15 - 2015-12-16 08:18
Size: 0035680
Attributes: ----A
Company Name:
Internal Name:
Original Name:
Product:
Description:
File Version:
Product Version:
Copyright:

====== End of File: ======


========================= File:C:\Users\Deki\AppData\Local\Temp\temp~.DLL ========================

File not signed
MD5:
Creation and modification date: 2015-12-14 20:25 - 2015-12-14 22:02
Size: 0000000
Attributes: ----A
Company Name:
Internal Name:
Original Name:
Product:
Description:
File Version:
Product Version:
Copyright:

====== End of File: ======

EmptyTemp: => 1.8 GB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 11:00:29 ====

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8620
  • Gde živiš: Novi Beograd

Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Scan] i pricekaj da program zavrsi.
Klikni na dugme [Clean]
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S0].txt

------

Preuzmi Junkware Removal Tool ( JRT ) i sacuvaj ga na desktop.

zatvori browser i ostale pokrenute programe;

Privremeno deaktiviraj zastitni softver (Uputstvo);

dvoklikom na ikonicu pokreni program JRT;

Kod obavestenja "press any key" pritisnuti bilo koji taster i alat ce zapoceti skeniranje.
Napomena: u zavisnosti od sistemske specifikacije vreme skeniranja u nekim slucajevima moze da potraje.

Kada zavrsi otvorice se log sa izvestajem koji ce biti sacuvan na desktopu pod nazivom JRT.txt


Arrow Kopiraj sadrzaj tog loga u temu.

offline
  • Pridružio: 17 Okt 2011
  • Poruke: 311

Napisano: 17 Dec 2015 0:53

https://www.mycity.rs/must-login.png

Dopuna: 17 Dec 2015 1:05

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.1 (11.24.2015)
Operating System: Windows 10 Pro x64
Ran by Deki (Administrator) on źet 17.12.2015. at 0.59.49,13
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 1

Successfully deleted: C:\Users\Deki\AppData\Local\crashrpt (Folder)

Deleted the following from C:\Users\Deki\AppData\Roaming\Mozilla\Firefox\Profiles\dsrpdut2.default\prefs.js
user_pref(browser.search.searchengine.alias, );
user_pref(browser.search.searchengine.desc, this is my first firefox searchEngine);
user_pref(browser.search.searchengine.iconURL, hxxp://www..com/favicon.ico);
user_pref(browser.search.searchengine.name, );
user_pref(browser.search.searchengine.ptid, cmi);
user_pref(browser.search.searchengine.uid, TOSHIBAXDT01ACA050_55AUEXZASXX55AUEXZASX);
user_pref(browser.search.searchengine.url, hxxp://www..com/web/?type=ds&ts=1450027277&z=f0204f9f1d767987879f289g7z9wee7e6obm4o4w6q&from=cmi&uid=TOSHIBAXDT01ACA050_55AUEXZAS
user_pref(extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.internaldb.__ICM_LITE__fifty_test_rules.value, %7B%22DE%22%3A%7B%22ALL%22%3A%5B%22anastasiadate.com%22%2C%2



Registry: 2

Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\Default_Search_URL (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchUrl\\Default (Registry Value)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on źet 17.12.2015. at 1.04.03,54
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8620
  • Gde živiš: Novi Beograd

Da li i dalje imas neke probleme?

offline
  • Pridružio: 17 Okt 2011
  • Poruke: 311

Nemam. Za sada komp. radi besprekorno.

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8620
  • Gde živiš: Novi Beograd

Sledeća procedura će implementirati završno čišćenje.



Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.

Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;
Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.

Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Ukoliko neki alat ili izveštaj nije uklonjen, slobodno ih obriši ručno.


Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)
- Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
- DelFix briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

offline
  • Pridružio: 17 Okt 2011
  • Poruke: 311

Hvala vam od srca svima na predusretljivosti i pomoći, a posebno Tebi helen1.

Ko je trenutno na forumu
 

Ukupno su 939 korisnika na forumu :: 8 registrovanih, 4 sakrivenih i 927 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: Bubimir, deimos25, Dorcolac, Lazarus, Mi lao shu, minmatar34957, sasa87, zoxknez