Problem sa "http://i1.loversity.info/addons/dfndr/180/tpg"

Problem sa "http://i1.loversity.info/addons/dfndr/180/tpg"

offline
  • Pridružio: 09 Okt 2014
  • Poruke: 4

Napisano: 09 Okt 2014 2:22

Evo, šta se dogodilo, tek reinstaliran sistem. Skidanjem totam commandera, skinuo se neki downloader i od tada nod 32, izbacuje, poruku, da to smeće hoće da pristupi nekom procesu u windowsu. Obrisao sam ga iz karantina, ali se ponovo pojavio i stavljen je u karantin. Jedino što sam pronašao o ovome je sa nekog španskog foruma, da je to neki trojanac ...

Molim pomoć, kako da očistim to da mi ne iskaču nodove poruke, da ne moram ponovo da prolazim kroz reinstaliranje sistema Crying or Very sad




izveštaj :

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-10-2014 01
Ran by djristic (administrator) on DJRISTIC-PC on 09-10-2014 02:10:56
Running from C:\Users\djristic\Downloads
Loaded Profile: djristic (Available profiles: djristic)
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
() C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\mspaint.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520 2013-08-19] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5581888 2014-02-24] (ESET)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
HKU\S-1-5-21-2573730739-3540487195-295418176-1000\...\MountPoints2: {03c28d74-4f85-11e4-ad29-806e6f6e6963} - F:\.\Bin\ASSETUP.exe
HKU\S-1-5-21-2573730739-3540487195-295418176-1000\...\MountPoints2: {6f7d3247-4f3e-11e4-9cd0-806e6f6e6963} - F:\DVDSetup.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x210415BC64E3CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2014-10-08]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

Chrome:
=======
CHR HomePage: Default -> D2A1C16BED536F7D786F163712DA2CD4D33B6A4ECB6D0A3ADEE5EEB1DF9B2349
CHR DefaultSearchKeyword: Default -> A7E8DACB88F0C58EF2AA9798222D386A97C112C7669266D0C1882E8AA7F7F048
CHR DefaultSearchProvider: Default -> A5A71BE1A8A6601EDE365798985180260C3013958810EA83463F5073F88FC5D7
CHR DefaultSearchURL: Default -> 7763F7D9F11AEC39895BE632FF19D8613BFE76336B3D50783E94211BDDF212A2
CHR Profile: C:\Users\djristic\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\djristic\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-10-08]
CHR Extension: (GoSavee) - C:\Users\djristic\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngliikkbmogeikabnalafpeobnkadkd [2014-10-09]
CHR Extension: (Google Wallet) - C:\Users\djristic\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-08]
CHR Extension: (GoSavee) - C:\Users\djristic\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngliikkbmogeikabnalafpeobnkadkd\2.0 [2014-10-09]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-05-07] ()
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1343408 2014-02-24] (ESET)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1617696 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21007192 2014-04-30] (NVIDIA Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [495376 2013-05-30] (Intel Corporation)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [239320 2013-09-17] (ESET)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [239296 2013-09-17] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [168256 2013-09-17] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [157432 2013-09-17] (ESET)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2013-08-07] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-03] (Intel Corporation)
S3 MSICDSetup; F:\CDriver64.sys [28984 2009-08-10] (Your Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18776 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19152 2013-09-30] ()
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] ()
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-09 10:21 - 2014-10-09 00:28 - 00000000 ____D () C:\Windows\Panther
2014-10-09 09:25 - 2014-10-09 09:25 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-10-09 09:25 - 2014-10-09 09:25 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-10-09 09:24 - 2014-10-09 09:24 - 00001355 _____ () C:\Windows\TSSysprep.log
2014-10-09 09:24 - 2014-10-09 09:24 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-10-09 04:01 - 2014-10-09 04:01 - 01695680 _____ (ESET) C:\Users\djristic\Downloads\eset_nod32_antivirus_live_installer_.exe
2014-10-09 04:00 - 2014-10-09 04:00 - 00000000 __SHD () C:\Users\djristic\AppData\Local\EmieUserList
2014-10-09 04:00 - 2014-10-09 04:00 - 00000000 __SHD () C:\Users\djristic\AppData\Local\EmieSiteList
2014-10-09 02:10 - 2014-10-09 02:11 - 00011544 _____ () C:\Users\djristic\Downloads\FRST.txt
2014-10-09 02:10 - 2014-10-09 02:10 - 02109952 _____ (Farbar) C:\Users\djristic\Downloads\FRST64.exe
2014-10-09 02:10 - 2014-10-09 02:10 - 00000000 ____D () C:\FRST
2014-10-09 01:12 - 2014-10-09 01:13 - 00000000 ____D () C:\totalcmd
2014-10-09 01:12 - 2014-10-09 01:12 - 00000641 _____ () C:\Users\djristic\Desktop\Total Commander.lnk
2014-10-09 01:12 - 2014-10-09 01:12 - 00000000 ____D () C:\Users\djristic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-10-09 01:12 - 2014-10-09 01:12 - 00000000 ____D () C:\Users\djristic\AppData\Roaming\GHISLER
2014-10-09 01:12 - 2010-06-17 07:55 - 00000545 _____ () C:\Windows\UC.PIF
2014-10-09 01:12 - 2010-06-17 07:55 - 00000545 _____ () C:\Windows\RAR.PIF
2014-10-09 01:12 - 2010-06-17 07:55 - 00000545 _____ () C:\Windows\PKZIP.PIF
2014-10-09 01:12 - 2010-06-17 07:55 - 00000545 _____ () C:\Windows\PKUNZIP.PIF
2014-10-09 01:12 - 2010-06-17 07:55 - 00000545 _____ () C:\Windows\NOCLOSE.PIF
2014-10-09 01:12 - 2010-06-17 07:55 - 00000545 _____ () C:\Windows\LHA.PIF
2014-10-09 01:12 - 2010-06-17 07:55 - 00000545 _____ () C:\Windows\ARJ.PIF
2014-10-09 01:08 - 2014-10-09 04:04 - 00000000 ____D () C:\Users\djristic\AppData\Local\NVIDIA
2014-10-09 01:08 - 2014-10-09 01:09 - 00000000 ____D () C:\Users\djristic\AppData\Local\NVIDIA Corporation
2014-10-09 01:08 - 2014-10-09 01:08 - 00001347 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2014-10-09 01:08 - 2014-04-30 20:27 - 01081112 ____R (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-10-09 01:08 - 2014-04-30 20:26 - 01225920 ____R (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2014-10-09 01:08 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-10-09 01:08 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-10-09 01:08 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-10-09 01:08 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-10-09 01:08 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-10-09 01:08 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-10-09 01:07 - 2014-10-09 01:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-10-09 01:07 - 2014-10-09 01:09 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-09 01:07 - 2014-10-09 01:08 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-09 01:07 - 2014-10-09 01:07 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-10-09 01:07 - 2014-05-20 04:44 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2014-10-09 01:07 - 2014-05-20 04:44 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2014-10-09 01:07 - 2014-05-20 04:44 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-10-09 01:07 - 2014-05-20 04:44 - 00052056 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-10-09 01:07 - 2014-05-20 04:44 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2014-10-09 01:07 - 2014-05-20 03:25 - 06769096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-10-09 01:07 - 2014-05-20 03:25 - 03514144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-10-09 01:07 - 2014-05-20 03:25 - 02560968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-10-09 01:07 - 2014-05-20 03:25 - 00927520 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-10-09 01:07 - 2014-05-20 03:25 - 00387528 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-10-09 01:07 - 2014-05-20 03:25 - 00062808 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-10-09 01:07 - 2014-05-20 01:10 - 00601432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-10-09 01:07 - 2014-05-15 01:49 - 03774821 _____ () C:\Windows\system32\nvcoproc.bin
2014-10-09 01:07 - 2014-03-31 18:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2014-10-09 01:07 - 2014-03-31 18:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2014-10-09 01:07 - 2014-03-31 18:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-10-09 01:06 - 2014-10-09 01:08 - 00000000 ____D () C:\ProgramData\GoSavea
2014-10-09 01:06 - 2014-10-09 01:08 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-10-09 01:06 - 2014-10-09 01:07 - 00000000 ____D () C:\ProgramData\141f87d0b6e4e08f
2014-10-09 01:06 - 2014-10-09 01:07 - 00000000 ____D () C:\Program Files (x86)\GoSavea
2014-10-09 01:06 - 2014-10-09 01:06 - 00000394 __RSH () C:\ProgramData\ntuser.pol
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Guest\AppData\Local\Torch
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Guest\AppData\Local\Chromatic Browser
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Guest
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\djristic\AppData\Local\Torch
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\djristic\AppData\Local\Comodo
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\djristic\AppData\Local\Chromatic Browser
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Chromatic Browser
2014-10-09 01:06 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\Administrator
2014-10-09 01:06 - 2014-05-20 04:44 - 31387936 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 24025376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 18531568 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 17480432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 16003912 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 14434704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 12688328 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-10-09 01:06 - 2014-05-20 04:44 - 11644928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 11599072 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 09735256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 09697640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 03141976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 02953672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 02785568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 02412376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 01889112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433788.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 01541576 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433788.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00952952 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00895776 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00867784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00861128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00837056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00492376 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00416712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00382240 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00354016 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00335704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00166568 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00146480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-10-09 01:06 - 2014-05-20 04:44 - 00026069 _____ () C:\Windows\system32\nvinfo.pb
2014-10-09 01:05 - 2014-10-09 01:05 - 00818688 _____ () C:\Users\djristic\Downloads\Total Commander 8.50 Final - 32bit & 64bit.rar.exe
2014-10-09 01:05 - 2014-05-20 04:44 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-10-09 01:05 - 2014-05-20 04:44 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-10-09 01:05 - 2014-05-20 04:44 - 03109248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-10-09 01:05 - 2014-05-20 04:44 - 02730208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-10-09 01:04 - 2014-10-09 01:08 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-09 01:00 - 2014-10-09 01:00 - 07009940 _____ () C:\Users\djristic\Downloads\004510.rar
2014-10-09 00:59 - 2014-10-09 00:59 - 00000000 ____D () C:\Users\djristic\AppData\Roaming\Intel Corporation
2014-10-09 00:54 - 2014-10-09 00:54 - 00771914 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-10-09 00:54 - 2014-10-09 00:54 - 00058016 _____ () C:\Users\djristic\AppData\Local\GDIPFONTCACHEV1.DAT
2014-10-09 00:54 - 2014-10-09 00:54 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2014-10-09 00:53 - 2014-10-09 00:53 - 00000000 ____D () C:\Users\djristic\Intel
2014-10-09 00:50 - 2014-10-09 00:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2014-10-09 00:50 - 2013-04-26 04:24 - 00786416 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3xhc.sys
2014-10-09 00:50 - 2013-04-26 04:24 - 00368112 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hub.sys
2014-10-09 00:50 - 2013-04-26 04:24 - 00020464 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hcs.sys
2014-10-09 00:47 - 2014-10-09 00:54 - 00000000 ____D () C:\ProgramData\Intel
2014-10-09 00:47 - 2013-09-03 16:52 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2014-10-09 00:46 - 2014-10-09 00:46 - 00001240 _____ () C:\Users\djristic\Desktop\AIDA64 Extreme Edition.lnk
2014-10-09 00:46 - 2014-10-09 00:46 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-10-09 00:46 - 2014-10-09 00:46 - 00000000 ____D () C:\Users\djristic\AppData\Roaming\InstallShield
2014-10-09 00:46 - 2014-10-09 00:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire
2014-10-09 00:46 - 2014-10-09 00:46 - 00000000 ____D () C:\Program Files (x86)\FinalWire
2014-10-09 00:46 - 2013-09-03 16:52 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2014-10-09 00:46 - 2013-09-03 16:52 - 00099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2014-10-09 00:45 - 2014-10-09 00:54 - 00000000 ____D () C:\Program Files\Intel
2014-10-09 00:45 - 2013-07-04 11:05 - 00552760 ____R (Intel Corporation) C:\Windows\system32\PROUnstl.exe
2014-10-09 00:45 - 2006-01-13 00:52 - 00001904 ____N () C:\Windows\system32\SetupBD.din
2014-10-09 00:44 - 2013-05-30 17:54 - 00495376 _____ (Intel Corporation) C:\Windows\system32\Drivers\e1d62x64.sys
2014-10-09 00:44 - 2013-05-11 12:48 - 00073480 _____ (Intel Corporation) C:\Windows\system32\e1dmsg.dll
2014-10-09 00:44 - 2013-03-02 13:42 - 00101152 _____ (Intel Corporation) C:\Windows\system32\NicInstD.dll
2014-10-09 00:44 - 2012-01-06 23:03 - 00003114 _____ () C:\Windows\system32\e1d62x64.din
2014-10-09 00:44 - 2009-05-26 19:05 - 00036472 _____ (Intel Corporation) C:\Windows\system32\NicCo36.dll
2014-10-09 00:42 - 2014-10-09 00:43 - 00001333 _____ () C:\Users\djristic\Desktop\WinRAR.lnk
2014-10-09 00:42 - 2014-10-09 00:42 - 00000000 ____D () C:\Users\djristic\AppData\Roaming\WinRAR
2014-10-09 00:42 - 2014-10-09 00:42 - 00000000 ____D () C:\Users\djristic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-10-09 00:42 - 2014-10-09 00:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-10-09 00:41 - 2014-10-09 00:42 - 00000000 ____D () C:\Program Files\WinRAR
2014-10-09 00:40 - 2014-10-09 00:40 - 00001800 _____ () C:\Users\djristic\Downloads\[kickass.to]winrar.4.00.32bit.and.64bit.full.version.blaze69.torrent
2014-10-09 00:40 - 2014-10-09 00:40 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-10-09 00:40 - 2014-10-09 00:40 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-10-09 00:40 - 2014-10-09 00:40 - 00000000 ____D () C:\Program Files\Realtek
2014-10-09 00:40 - 2013-08-21 06:50 - 03591000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-10-09 00:40 - 2013-08-20 14:17 - 02809048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-10-09 00:40 - 2013-08-20 14:17 - 02585304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-10-09 00:40 - 2013-08-20 12:48 - 00633381 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-10-09 00:40 - 2013-08-20 12:31 - 00148184 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-10-09 00:40 - 2013-08-20 07:51 - 31488000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2014-10-09 00:40 - 2013-08-20 04:02 - 04848920 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMlfx.dll
2014-10-09 00:40 - 2013-08-16 09:46 - 00818008 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMSettingsIPC.dll
2014-10-09 00:40 - 2013-08-14 10:36 - 01325312 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2014-10-09 00:40 - 2013-08-14 10:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-10-09 00:40 - 2013-08-14 10:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2014-10-09 00:40 - 2013-08-14 10:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2014-10-09 00:40 - 2013-08-14 10:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2014-10-09 00:40 - 2013-08-12 23:21 - 01019136 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2014-10-09 00:40 - 2013-08-12 23:21 - 00899328 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2014-10-09 00:40 - 2013-08-12 23:21 - 00720128 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2014-10-09 00:40 - 2013-08-12 23:21 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2014-10-09 00:40 - 2013-08-07 11:34 - 00765184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2014-10-09 00:40 - 2013-08-06 03:47 - 00947248 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2014-10-09 00:40 - 2013-08-02 14:16 - 01005784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-10-09 00:40 - 2013-08-01 04:59 - 05694760 _____ () C:\Windows\system32\Drivers\rtvienna.dat
2014-10-09 00:40 - 2013-07-28 04:48 - 27518208 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll
2014-10-09 00:40 - 2013-07-26 08:05 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2014-10-09 00:40 - 2013-07-24 04:07 - 02032896 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2014-10-09 00:40 - 2013-07-23 09:40 - 03610880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll
2014-10-09 00:40 - 2013-07-23 09:40 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2014-10-09 00:40 - 2013-07-23 09:39 - 14048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2014-10-09 00:40 - 2013-07-23 09:39 - 01916672 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll
2014-10-09 00:40 - 2013-07-23 09:39 - 00922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-10-09 00:40 - 2013-07-11 08:15 - 00557880 _____ () C:\Windows\system32\audioLibVc.dll
2014-10-09 00:40 - 2013-06-25 06:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2014-10-09 00:40 - 2013-06-25 06:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2014-10-09 00:40 - 2013-06-25 06:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2014-10-09 00:40 - 2013-04-24 11:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-10-09 00:40 - 2013-04-03 08:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2014-10-09 00:40 - 2013-02-20 12:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-10-09 00:40 - 2012-08-31 13:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2014-10-09 00:40 - 2012-08-31 13:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2014-10-09 00:40 - 2012-08-31 13:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2014-10-09 00:40 - 2012-08-31 13:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2014-10-09 00:40 - 2012-08-31 13:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2014-10-09 00:40 - 2012-01-30 05:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2014-10-09 00:40 - 2012-01-10 04:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2014-10-09 00:40 - 2011-12-20 09:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-10-09 00:40 - 2011-11-22 10:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2014-10-09 00:40 - 2011-09-02 08:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2014-10-09 00:40 - 2011-09-02 08:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2014-10-09 00:40 - 2011-09-02 08:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2014-10-09 00:40 - 2011-08-11 10:55 - 00001332 ____R () C:\Windows\system32\Drivers\DTSU2P.DAT
2014-10-09 00:40 - 2011-03-17 06:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2014-10-09 00:40 - 2011-03-07 11:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2014-10-09 00:40 - 2010-11-08 01:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-10-09 00:40 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-10-09 00:40 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-10-09 00:40 - 2010-11-08 01:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-10-09 00:40 - 2010-11-08 01:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-10-09 00:40 - 2010-11-08 01:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-10-09 00:40 - 2010-11-03 12:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-10-09 00:40 - 2010-09-27 03:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-10-09 00:40 - 2010-07-22 10:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2014-10-09 00:40 - 2009-11-24 03:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2014-10-09 00:40 - 2009-11-24 03:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2014-10-09 00:40 - 2009-11-24 03:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2014-10-09 00:40 - 2009-11-24 03:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2014-10-09 00:39 - 2014-10-09 00:46 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-10-09 00:39 - 2014-10-09 00:40 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-10-09 00:39 - 2014-10-09 00:39 - 00001317 _____ () C:\Users\djristic\Downloads\[kickass.to]winrar.x64.64.bit.v5.01.final.keyreg.chattchitto.rg.torrent
2014-10-09 00:39 - 2014-10-09 00:39 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-10-09 00:39 - 2013-08-08 13:57 - 02080472 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-10-09 00:39 - 2013-08-07 11:41 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2014-10-09 00:39 - 2013-08-05 22:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2014-10-09 00:39 - 2013-08-05 22:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2014-10-09 00:39 - 2013-08-05 22:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2014-10-09 00:39 - 2013-08-05 22:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2014-10-09 00:39 - 2013-08-05 12:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-10-09 00:39 - 2013-06-21 05:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll
2014-10-09 00:39 - 2013-06-05 15:42 - 00208072 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-10-09 00:39 - 2012-10-02 08:41 - 00501192 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2014-10-09 00:39 - 2012-10-02 08:41 - 00487368 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2014-10-09 00:39 - 2012-10-02 08:41 - 00415688 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2014-10-09 00:39 - 2012-03-08 05:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-10-09 00:39 - 2011-08-23 11:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2014-10-09 00:39 - 2011-05-31 03:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2014-10-09 00:35 - 2014-10-09 00:35 - 00000000 ____D () C:\6670cbd6987e37e93782a0faab1e26
2014-10-09 00:33 - 2014-10-09 00:37 - 18057685 _____ () C:\Users\djristic\Downloads\WinRAR_5.01_Final_(32-64bit)__2B_Key_100___Clean.rar
2014-10-09 00:33 - 2014-10-09 00:33 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll
2014-10-09 00:33 - 2013-08-05 05:50 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-10-09 00:32 - 2014-10-09 00:50 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-10-09 00:32 - 2014-10-09 00:32 - 00000000 ____D () C:\Intel
2014-10-09 00:31 - 2014-10-09 00:59 - 00044527 _____ () C:\Windows\Ascd_tmp.ini
2014-10-09 00:31 - 2014-10-09 00:59 - 00000576 _____ () C:\Windows\As_Utilities.log
2014-10-09 00:31 - 2014-10-09 00:31 - 00001769 _____ () C:\Windows\Language_trs.ini
2014-10-09 00:31 - 2014-10-09 00:31 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf
2014-10-09 00:31 - 2014-10-09 00:31 - 00000000 ____D () C:\Program Files\ASUS
2014-10-09 00:31 - 2014-10-09 00:31 - 00000000 ____D () C:\Program Files (x86)\ASUS
2014-10-09 00:31 - 2012-08-22 11:54 - 00015232 _____ () C:\Windows\SysWOW64\Drivers\AsIO.sys
2014-10-09 00:31 - 2012-08-17 04:57 - 02356592 _____ (Microsoft Corporation) C:\Windows\system32\WudfUpdate_01011.dll
2014-10-09 00:31 - 2010-06-29 09:41 - 00028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll
2014-10-09 00:30 - 2014-10-09 00:30 - 00000355 _____ () C:\Users\djristic\Desktop\Computer.lnk
2014-10-09 00:29 - 2014-10-09 00:53 - 00000000 ____D () C:\Users\djristic
2014-10-09 00:29 - 2014-10-09 00:29 - 00001413 _____ () C:\Users\djristic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-10-09 00:29 - 2014-10-09 00:29 - 00000020 ___SH () C:\Users\djristic\ntuser.ini
2014-10-09 00:29 - 2014-10-09 00:29 - 00000000 ____D () C:\Users\djristic\AppData\Roaming\Adobe
2014-10-09 00:29 - 2014-10-09 00:29 - 00000000 ____D () C:\Users\djristic\AppData\Local\VirtualStore
2014-10-09 00:29 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\djristic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-10-09 00:29 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\djristic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-10-09 00:28 - 2014-10-09 00:28 - 00000029 _____ () C:\Users\djristic\Documents\AIDA 64.txt
2014-10-09 00:27 - 2014-10-09 01:16 - 00246889 _____ () C:\Windows\WindowsUpdate.log
2014-10-09 00:27 - 2014-10-09 00:27 - 00019549 _____ () C:\Users\djristic\Downloads\[kickass.to]aida.64.extreme.edition.3.00.2500.patch.snd.degun.tpb.2013.torrent
2014-10-09 00:27 - 2014-10-09 00:27 - 00000000 __SHD () C:\Recovery
2014-10-09 00:27 - 2014-10-09 00:27 - 00000000 ____D () C:\Users\djristic\Downloads\Aida.64.Extreme.Edition.3.00.2500.patch-SND-DeGun TPB
2014-10-09 00:27 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-10-09 00:27 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-10-09 00:25 - 2014-10-09 00:25 - 00000825 _____ () C:\Users\djristic\Desktop\µTorrent.lnk
2014-10-09 00:25 - 2014-10-09 00:25 - 00000805 _____ () C:\Users\djristic\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-10-09 00:24 - 2014-10-09 01:07 - 00000000 ____D () C:\Users\djristic\AppData\Roaming\uTorrent
2014-10-09 00:24 - 2014-10-09 00:24 - 01918032 _____ (BitTorrent Inc.) C:\Users\djristic\Downloads\uTorrent.exe
2014-10-08 23:48 - 2014-10-08 23:56 - 00002048 _____ () C:\Windows\PWCMDLST.BAK
2014-10-08 23:45 - 2014-10-08 23:45 - 00000000 ____D () C:\Users\djristic\Downloads\MiniTool Partition Wizard Professional Edition 8.1.1 with Keygen (by kurnitgyi)
2014-10-08 22:59 - 2014-10-08 23:00 - 14700888 _____ () C:\Users\djristic\Downloads\MiniTool Partition Wizard Professional Edition 8.1.1 with Keygen (by kurnitgyi).zip
2014-10-08 22:24 - 2013-09-30 16:26 - 03050808 _____ () C:\Windows\system32\pwNative.exe
2014-10-08 22:24 - 2013-09-30 16:26 - 00019152 ____N () C:\Windows\system32\pwdrvio.sys
2014-10-08 22:24 - 2013-09-30 16:26 - 00012504 ____N () C:\Windows\system32\pwdspio.sys
2014-10-08 22:23 - 2014-10-08 22:24 - 20772800 _____ (MiniTool Solution Ltd. ) C:\Users\djristic\Downloads\pwhe8 (1).exe
2014-10-08 22:17 - 2014-10-08 22:17 - 00002255 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-10-08 22:17 - 2014-10-08 22:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-10-08 22:16 - 2014-10-09 01:21 - 00000902 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-08 22:16 - 2014-10-09 01:08 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-08 22:16 - 2014-10-09 01:06 - 00000000 ____D () C:\Program Files (x86)\Google
2014-10-08 22:16 - 2014-10-08 22:16 - 00003898 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-10-08 22:16 - 2014-10-08 22:16 - 00003646 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-10-08 22:15 - 2014-10-09 01:06 - 00000000 ____D () C:\Users\djristic\AppData\Local\Google
2014-10-08 22:15 - 2014-10-08 22:15 - 00000000 ____D () C:\Users\djristic\AppData\Local\Deployment
2014-10-08 22:15 - 2014-10-08 22:15 - 00000000 ____D () C:\Users\djristic\AppData\Local\Apps\2.0
2014-10-08 22:13 - 2014-10-08 22:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2014-10-08 22:13 - 2014-10-08 22:13 - 00000000 ____D () C:\ProgramData\ESET
2014-10-08 22:13 - 2014-10-08 22:13 - 00000000 ____D () C:\Program Files\ESET

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-09 10:21 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-10-09 10:21 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-10-09 09:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-10-09 09:25 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-10-09 09:25 - 2009-07-14 06:46 - 00002790 _____ () C:\Windows\DtcInstall.log
2014-10-09 09:25 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-10-09 09:25 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-10-09 09:22 - 2011-04-12 10:28 - 00000000 ____D () C:\Windows\CSC
2014-10-09 09:22 - 2009-07-14 06:45 - 00275712 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-10-09 01:15 - 2009-07-14 07:13 - 00756980 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-10-09 01:15 - 2009-07-14 06:45 - 00021072 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-09 01:15 - 2009-07-14 06:45 - 00021072 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-09 01:11 - 2009-07-14 06:51 - 00029159 _____ () C:\Windows\setupact.log
2014-10-09 01:08 - 2010-11-21 05:47 - 00005988 _____ () C:\Windows\PFRO.log
2014-10-09 01:08 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-09 01:07 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help
2014-10-09 01:06 - 2009-07-14 05:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-10-09 01:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-10-09 00:47 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-10-09 00:28 - 2009-07-14 06:45 - 00000000 ____D () C:\Windows\Setup
2014-10-09 00:27 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore

Some content of TEMP:
====================
C:\Users\djristic\AppData\Local\Temp\70a586.exe
C:\Users\djristic\AppData\Local\Temp\877DeD67.exe
C:\Users\djristic\AppData\Local\Temp\InstHelper.exe
C:\Users\djristic\AppData\Local\Temp\_is9387.exe
C:\Users\djristic\AppData\Local\Temp\_isF362.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-10-09 09:22

==================== End Of Log ============================


mycity.rs/must-login.png

Dopuna: 09 Okt 2014 2:24

Internet je telekom adsl 10/1 mb

Dopuna: 09 Okt 2014 3:22

jedan dodatak samo, slika od gore je iz nodovog prozora, a ovo se pojavljuje na desktopu :

Dopuna: 09 Okt 2014 3:24

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Pozdrav.




1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

Start
HKU\S-1-5-21-2573730739-3540487195-295418176-1000\...\MountPoints2: {03c28d74-4f85-11e4-ad29-806e6f6e6963} - F:\.\Bin\ASSETUP.exe
HKU\S-1-5-21-2573730739-3540487195-295418176-1000\...\MountPoints2: {6f7d3247-4f3e-11e4-9cd0-806e6f6e6963} - F:\DVDSetup.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
CHR Extension: (GoSavee) - C:\Users\djristic\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngliikkbmogeikabnalafpeobnkadkd [2014-10-09]
C:\Users\djristic\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngliikkbmogeikabnalafpeobnkadkd
CHR Extension: (GoSavee) - C:\Users\djristic\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngliikkbmogeikabnalafpeobnkadkd\2.0 [2014-10-09]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR Extension: (GoSavee) - C:\Users\djristic\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngliikkbmogeikabnalafpeobnkadkd
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
EmptyTemp:
CMD: bitsadmin /reset /allusers
End


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

Ko je trenutno na forumu
 

Ukupno su 916 korisnika na forumu :: 6 registrovanih, 0 sakrivenih i 910 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: bigfoot, djordje92sm, Hans Gajger, kybonacci, Neutral-M, zziko