Problemi i provera sistema

1

Problemi i provera sistema

offline
  • Pridružio: 24 Jan 2009
  • Poruke: 87

Napisano: 13 Feb 2016 16:50

Pozdrav dobri ljudi,

Pre par dana mi je uzastopno pri ulasku u windows iskakao BSOD sa raznoraznim porukama a najcesce ona "PAGE_FAULT_IN_NONPAGED_AREA"

Problem sam resio sto sam iz safe moda iskljucio sve servise koji su bili ukljuceni i onda se problem resio,usao je u windows bez iskakanja plavog ekrana.

Medjutim od tog trenutka iako sam kasnije redom ukljucivao stvari AV koji koristim (u pitanju je Eset) nece da mi radi. Pri svakom pokretanju tog programa iskace mi

"Error communicating with kernel"

Da napomenem da sam preko malwara skenirao racunar i nasao mi jedan problem potencijalni koji sam obrisao. Apropo Eseta pokusavao sam sve isao sam na opciju da preko searcha i opcije services pokrenem eset ali tamo mi je disable bez mogucnosti da ga pokrenem,isao sam na repair,isao sam na raznorazne jos opcije,ali nista i dalje iskace onaj gore error.

Posle sam preko guglanja nabasao na mogucnost da ipak postoji opcija da mi je racunar necim zarazen...Pa da probam ovde da vidim da li ima problema. Takodje je cini mi se racunar malo usporen a to se ogleda u tome da npr u trenutku kad pustim neki film preko plejera do trenutka kad on krene da ide potraje 10tak sekundi,pre je bilo istog trenutka.

Pa da probam...


Citat:Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:07-02-2016
Ran by Milos (administrator) on MILOS-PC (13-02-2016 16:45:59)
Running from C:\Users\Milos\Downloads
Loaded Profiles: Milos (Available Profiles: Milos)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Ellora Assets Corp.) C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Microsoft Corporation) C:\Windows\System32\UI0Detect.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\mmc.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2787264 2016-01-12] (NVIDIA Corporation)
HKU\S-1-5-21-1894628914-1952835297-1947460801-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{9E7FA7EA-BAFC-4CD4-A413-47674F38D09D}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = google.com
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-04] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-04] (Oracle Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-27] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_296.dll [2015-01-28] ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2012-12-12] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.40.2 -> C:\Windows\system32\npDeployJava1.dll [2013-09-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-04] (Oracle Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-01-23] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-01-23] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2013-02-15] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npwachk.dll [2012-06-28] (Nullsoft, Inc.)
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013-03-26] [not signed]

Chrome:
=======
CHR HomePage: Profile 4 -> hxxp://www.google.com/
CHR StartupUrls: Profile 4 -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google презентације) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-13]
CHR Extension: (Google документи) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-13]
CHR Extension: (Google диск) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-26]
CHR Extension: (YouTube) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Google Search) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-26]
CHR Extension: (Google табеле) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-13]
CHR Extension: (Google документи офлајн) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-26]
CHR Extension: (Плаћања у Chrome веб-продавници) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-13]
CHR Extension: (Gmail) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-13]
CHR Profile: C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2
CHR Extension: (YouTube) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-04]
CHR Extension: (Плаћања у Chrome веб-продавници) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-25]
CHR Extension: (Blue Space Sunset Chrome Theme) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nndfdjfoclbidmgpmbelcieibgjjfdog [2015-04-18]
CHR Extension: (Gmail) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR Profile: C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 3
CHR Profile: C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4
CHR Extension: (Google презентације) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-11]
CHR Extension: (Google документи) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-11]
CHR Extension: (Google диск) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (Glow) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\bekmjjakgojplnhahcilegeiklenjbgb [2015-09-11]
CHR Extension: (YouTube) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Nanny for Google Chrome (TM)) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\cljcgchbnolheggdgaeclffeagnnmhno [2015-09-11]
CHR Extension: (Google Search) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Google табеле) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-11]
CHR Extension: (Google документи офлајн) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-18]
CHR Extension: (Плаћања у Chrome веб-продавници) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-11]
CHR Extension: (Gmail) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-11]
StartMenuInternet: Google Chrome.K23EPY2MCEISWZNDRQFKH2PR5M - C:\Users\Milos\Downloads\GoogleChromePortable\App\Chrome-bin\chrome.exe

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1341664 2013-03-04] (ESET)
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2015-06-17] (Freemake) [File not signed]
R2 FreemakeVideoCapture; C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe [9216 2015-06-17] (Ellora Assets Corp.) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [929728 2016-01-12] (NVIDIA Corporation)
S4 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2724128 2015-01-16] (IObit)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-01-12] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [5178816 2016-01-12] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [3996608 2016-01-12] (NVIDIA Corporation)
S4 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2015-04-04] ()
S4 RalinkRegistryWriter; C:\Program Files\Tenda\Common\RaRegistry.exe [193888 2010-06-28] (Ralink Technology, Corp.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [281760 2014-11-19] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2013-03-24] (DT Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [171680 2013-02-20] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [122240 2013-01-10] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [150080 2013-01-10] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [46056 2013-01-10] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [47568 2013-02-20] (ESET)
R3 FETNDIS; C:\Windows\System32\DRIVERS\fetnd6.sys [44032 2009-07-13] (VIA Technologies, Inc. )
R2 giveio; C:\Windows\system32\giveio.sys [5248 1996-04-03] () [File not signed]
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2015-03-16] (REALiX(tm))
R3 KMWDFILTERx86; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [25088 2009-04-29] (Windows (R) Codename Longhorn DDK provider)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [25888 2014-11-19] ()
R3 netr28u; C:\Windows\System32\DRIVERS\netr28u.sys [1165152 2010-11-09] (Ralink Technology Corp.)
R2 npf; C:\Windows\System32\drivers\npf.sys [35088 2011-02-11] (CACE Technologies, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [25536 2016-01-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [42128 2015-12-18] (NVIDIA Corporation)
R3 pfc; C:\Windows\System32\drivers\pfc.sys [9856 2013-03-14] (Padus, Inc.) [File not signed]
R2 speedfan; C:\Windows\system32\speedfan.sys [24184 2012-12-29] (Almico Software)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [37064 2013-02-22] (Anchorfree Inc.)
S3 MSICDSetup; \??\G:\CDriver.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2008-05-02] () [File not signed]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-02-13 16:45 - 2016-02-13 16:46 - 00016593 _____ C:\Users\Milos\Downloads\FRST.txt
2016-02-13 16:45 - 2016-02-13 16:45 - 01721344 _____ (Farbar) C:\Users\Milos\Downloads\FRST.exe
2016-02-13 16:45 - 2016-02-13 16:45 - 00000000 ____D C:\FRST
2016-02-13 16:38 - 2016-02-13 16:38 - 00021406 _____ C:\Users\Milos\Downloads\Creed (2015) [1080p] [YTS.AG].torrent
2016-02-12 20:35 - 2016-02-12 20:37 - 00000000 ____D C:\Users\Milos\AppData\LocalLow\uTorrent
2016-02-10 09:49 - 2015-11-26 22:42 - 00000422 _____ C:\Program Files\update-FM2016.bat
2016-02-10 09:49 - 2013-10-12 19:47 - 00000732 _____ C:\Program Files\visit-www.nosteam.ro.html
2016-02-10 09:23 - 2016-02-10 09:23 - 00000000 ____D C:\Users\Milos\AppData\Roaming\Steam
2016-02-09 23:01 - 2016-02-10 08:29 - 00000000 ____D C:\Users\Milos\Documents\Sports Interactive
2016-02-08 15:31 - 2016-02-12 20:10 - 00000000 ____D C:\Users\Milos\AppData\Local\CrashDumps
2016-02-07 08:25 - 2016-01-23 01:47 - 00110016 _____ (NVIDIA Corporation) C:\Windows\system32\nvStreaming.exe
2016-02-07 08:21 - 2016-01-23 04:45 - 37616696 _____ C:\Windows\system32\nvcompiler.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 24912952 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 17626352 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 17218984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 10532920 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-02-07 08:21 - 2016-01-23 04:45 - 02721216 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 01066944 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3236175.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00925752 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3236175.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00745408 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00691256 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00388744 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshim.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00153208 _____ (NVIDIA Corporation) C:\Windows\system32\nvinit.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00128696 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim32.dll
2016-02-03 22:52 - 2016-02-03 22:52 - 00001053 _____ C:\Users\Milos\Desktop\PTE Patch.lnk
2016-02-02 03:44 - 2016-02-13 15:49 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d15d639b9f33fa.job
2016-02-02 03:44 - 2016-02-13 12:22 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d15d639b10ad84.job
2016-01-25 12:21 - 2016-01-23 02:00 - 00436160 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-01-25 12:21 - 2016-01-23 02:00 - 00083512 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-01-25 12:18 - 2015-12-16 18:04 - 01060144 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3236143.dll
2016-01-25 12:18 - 2015-12-16 18:04 - 00917112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3236143.dll
2016-01-25 11:33 - 2016-01-12 05:41 - 00091568 _____ C:\Windows\system32\NvRtmpStreamer32.dll
2016-01-25 11:31 - 2015-12-18 07:11 - 00042128 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad32v.sys
2016-01-25 11:31 - 2015-12-18 07:10 - 00090768 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap32v.dll
2016-01-25 11:22 - 2016-02-12 23:00 - 00067894 _____ C:\Users\Milos\Downloads\bluescreenview.zip

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-02-13 16:39 - 2015-06-23 12:29 - 00000918 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1894628914-1952835297-1947460801-1000UA.job
2016-02-13 16:37 - 2015-09-11 21:25 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-02-13 15:55 - 2013-03-14 18:55 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-02-13 15:49 - 2015-09-15 09:32 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0ef90ffa7ff09.job
2016-02-13 13:39 - 2015-06-23 12:29 - 00000866 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1894628914-1952835297-1947460801-1000Core.job
2016-02-13 12:30 - 2009-07-14 05:34 - 00020480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-02-13 12:30 - 2009-07-14 05:34 - 00020480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-02-13 12:26 - 2015-03-11 08:58 - 00098520 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-02-13 12:22 - 2015-12-02 06:38 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d12cc3be08876e.job
2016-02-13 12:22 - 2015-09-15 09:32 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0ef90feebf253.job
2016-02-13 12:22 - 2015-09-11 21:25 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-02-13 12:21 - 2013-03-14 18:43 - 00000000 ____D C:\ProgramData\NVIDIA
2016-02-13 12:21 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-02-13 01:14 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2016-02-13 00:21 - 2015-03-19 14:40 - 00000000 ____D C:\Users\Milos\AppData\Roaming\AIMP3
2016-02-12 22:58 - 2013-12-25 23:14 - 00000000 ____D C:\Users\Milos\Downloads\knjige my document
2016-02-12 20:49 - 2015-03-11 20:15 - 00000000 ____D C:\Users\Milos\AppData\Roaming\MPC-HC
2016-02-12 20:48 - 2015-02-22 20:33 - 00000000 ____D C:\Users\Milos\AppData\Roaming\uTorrent
2016-02-12 20:34 - 2013-03-14 18:34 - 00000000 ____D C:\Users\Milos
2016-02-12 20:15 - 2015-02-19 19:06 - 00000000 ____D C:\Users\Milos\AppData\Roaming\Hard Disk Sentinel
2016-02-12 20:15 - 2015-02-19 18:57 - 00000000 ____D C:\Program Files\Hard Disk Sentinel
2016-02-12 20:15 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\registration
2016-02-12 10:16 - 2014-10-17 16:05 - 00075776 ___SH C:\Users\Milos\Thumbs.db
2016-02-10 09:26 - 2015-09-11 21:27 - 00002120 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-10 09:00 - 2013-12-22 13:35 - 00000000 ____D C:\Windows\pss
2016-02-10 08:29 - 2013-05-24 15:22 - 00000000 ____D C:\Users\Public\Documents\Sports Interactive
2016-02-10 08:29 - 2013-05-24 15:22 - 00000000 ____D C:\Users\Milos\AppData\Local\Sports Interactive
2016-02-07 17:25 - 2013-09-16 22:10 - 00000000 ____D C:\Users\Milos\AppData\Roaming\Dropbox
2016-02-07 08:25 - 2013-03-14 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-02-07 08:25 - 2013-03-14 18:41 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-02-07 08:23 - 2013-03-14 18:41 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-02-04 22:45 - 2013-03-14 18:43 - 00785794 _____ C:\Windows\system32\PerfStringBackup.INI
2016-02-04 00:44 - 2015-06-14 18:49 - 00000292 _____ C:\Users\Milos\Desktop\New Text Document.txt
2016-02-04 00:06 - 2015-11-06 17:59 - 00000000 ____D C:\Program Files\Pro Evolution Soccer 2016
2016-02-03 22:29 - 2013-03-14 22:34 - 00000000 ____D C:\Users\Milos\Documents\KONAMI
2016-01-25 11:33 - 2013-09-23 12:49 - 00000000 ____D C:\Users\Milos\AppData\Local\NVIDIA
2016-01-25 11:32 - 2014-11-16 17:29 - 00000000 ____D C:\ProgramData\Package Cache
2016-01-24 01:00 - 2013-03-31 10:21 - 00000000 ____D C:\Users\Milos\AppData\Local\ElevatedDiagnostics
2016-01-23 04:45 - 2015-03-21 20:54 - 14016768 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll
2016-01-23 04:45 - 2014-04-19 20:45 - 00029843 _____ C:\Windows\system32\nvinfo.pb
2016-01-23 04:45 - 2013-03-14 18:41 - 03258664 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll
2016-01-23 04:45 - 2013-02-26 00:22 - 16328088 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 03946432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 02591288 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 02563128 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 00941504 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2016-01-23 02:00 - 2013-03-14 18:42 - 00381888 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 00068544 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-01-21 19:18 - 2013-03-14 18:42 - 06125650 _____ C:\Windows\system32\nvcoproc.bin

==================== Files in the root of some directories =======

2016-02-10 09:49 - 2015-11-26 22:42 - 0000422 _____ () C:\Program Files\update-FM2016.bat
2016-02-10 09:49 - 2013-10-12 19:47 - 0000732 _____ () C:\Program Files\visit-www.nosteam.ro.html
2015-03-13 21:39 - 2015-03-13 21:39 - 0003584 _____ () C:\Users\Milos\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-03-06 01:45 - 2015-03-06 01:45 - 0007605 _____ () C:\Users\Milos\AppData\Local\Resmon.ResmonCfg
2015-03-16 13:33 - 2015-03-16 13:33 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-02-08 01:37

==================== End of FRST.txt ============================





mycity.rs/must-login.png

Dopuna: 13 Feb 2016 17:03

Ne mogu da editujem poruku gore.

Evo novih logova posto sam na par tema nabasao da treba da FRST bude na desktopu pri skeniranju.


Citat:Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:07-02-2016
Ran by Milos (administrator) on MILOS-PC (13-02-2016 16:59:41)
Running from C:\Users\Milos\Desktop
Loaded Profiles: Milos (Available Profiles: Milos)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
(Ellora Assets Corp.) C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Microsoft Corporation) C:\Windows\System32\UI0Detect.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2787264 2016-01-12] (NVIDIA Corporation)
HKU\S-1-5-21-1894628914-1952835297-1947460801-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Milos\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{9E7FA7EA-BAFC-4CD4-A413-47674F38D09D}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = google.com
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-04] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-04] (Oracle Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2006-10-27] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_296.dll [2015-01-28] ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2012-12-12] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.40.2 -> C:\Windows\system32\npDeployJava1.dll [2013-09-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-04] (Oracle Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-01-23] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-01-23] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2013-02-15] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npwachk.dll [2012-06-28] (Nullsoft, Inc.)
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013-03-26] [not signed]

Chrome:
=======
CHR HomePage: Profile 4 -> hxxp://www.google.com/
CHR StartupUrls: Profile 4 -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google презентације) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-13]
CHR Extension: (Google документи) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-13]
CHR Extension: (Google диск) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-26]
CHR Extension: (YouTube) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Google Search) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-26]
CHR Extension: (Google табеле) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-13]
CHR Extension: (Google документи офлајн) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-26]
CHR Extension: (Плаћања у Chrome веб-продавници) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-13]
CHR Extension: (Gmail) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-13]
CHR Profile: C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2
CHR Extension: (YouTube) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-04]
CHR Extension: (Плаћања у Chrome веб-продавници) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-25]
CHR Extension: (Blue Space Sunset Chrome Theme) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nndfdjfoclbidmgpmbelcieibgjjfdog [2015-04-18]
CHR Extension: (Gmail) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR Profile: C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 3
CHR Profile: C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4
CHR Extension: (Google презентације) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-11]
CHR Extension: (Google документи) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-11]
CHR Extension: (Google диск) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (Glow) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\bekmjjakgojplnhahcilegeiklenjbgb [2015-09-11]
CHR Extension: (YouTube) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Nanny for Google Chrome (TM)) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\cljcgchbnolheggdgaeclffeagnnmhno [2015-09-11]
CHR Extension: (Google Search) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Google табеле) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-11]
CHR Extension: (Google документи офлајн) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-18]
CHR Extension: (Плаћања у Chrome веб-продавници) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-11]
CHR Extension: (Gmail) - C:\Users\Milos\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-11]
StartMenuInternet: Google Chrome.K23EPY2MCEISWZNDRQFKH2PR5M - C:\Users\Milos\Downloads\GoogleChromePortable\App\Chrome-bin\chrome.exe

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1341664 2013-03-04] (ESET)
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2015-06-17] (Freemake) [File not signed]
R2 FreemakeVideoCapture; C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe [9216 2015-06-17] (Ellora Assets Corp.) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [929728 2016-01-12] (NVIDIA Corporation)
S4 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2724128 2015-01-16] (IObit)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-01-12] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [5178816 2016-01-12] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [3996608 2016-01-12] (NVIDIA Corporation)
S4 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2015-04-04] ()
S4 RalinkRegistryWriter; C:\Program Files\Tenda\Common\RaRegistry.exe [193888 2010-06-28] (Ralink Technology, Corp.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [281760 2014-11-19] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2013-03-24] (DT Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [171680 2013-02-20] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [122240 2013-01-10] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [150080 2013-01-10] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [46056 2013-01-10] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [47568 2013-02-20] (ESET)
R3 FETNDIS; C:\Windows\System32\DRIVERS\fetnd6.sys [44032 2009-07-13] (VIA Technologies, Inc. )
R2 giveio; C:\Windows\system32\giveio.sys [5248 1996-04-03] () [File not signed]
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2015-03-16] (REALiX(tm))
R3 KMWDFILTERx86; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [25088 2009-04-29] (Windows (R) Codename Longhorn DDK provider)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [25888 2014-11-19] ()
R3 netr28u; C:\Windows\System32\DRIVERS\netr28u.sys [1165152 2010-11-09] (Ralink Technology Corp.)
R2 npf; C:\Windows\System32\drivers\npf.sys [35088 2011-02-11] (CACE Technologies, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [25536 2016-01-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [42128 2015-12-18] (NVIDIA Corporation)
R3 pfc; C:\Windows\System32\drivers\pfc.sys [9856 2013-03-14] (Padus, Inc.) [File not signed]
R2 speedfan; C:\Windows\system32\speedfan.sys [24184 2012-12-29] (Almico Software)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [37064 2013-02-22] (Anchorfree Inc.)
S3 MSICDSetup; \??\G:\CDriver.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2008-05-02] () [File not signed]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-02-13 16:59 - 2016-02-13 16:59 - 00016479 _____ C:\Users\Milos\Desktop\FRST.txt
2016-02-13 16:45 - 2016-02-13 16:59 - 00000000 ____D C:\FRST
2016-02-13 16:45 - 2016-02-13 16:45 - 01721344 _____ (Farbar) C:\Users\Milos\Desktop\FRST.exe
2016-02-13 16:38 - 2016-02-13 16:38 - 00021406 _____ C:\Users\Milos\Downloads\Creed (2015) [1080p] [YTS.AG].torrent
2016-02-12 20:35 - 2016-02-12 20:37 - 00000000 ____D C:\Users\Milos\AppData\LocalLow\uTorrent
2016-02-10 09:49 - 2015-11-26 22:42 - 00000422 _____ C:\Program Files\update-FM2016.bat
2016-02-10 09:49 - 2013-10-12 19:47 - 00000732 _____ C:\Program Files\visit-www.nosteam.ro.html
2016-02-10 09:23 - 2016-02-10 09:23 - 00000000 ____D C:\Users\Milos\AppData\Roaming\Steam
2016-02-09 23:01 - 2016-02-10 08:29 - 00000000 ____D C:\Users\Milos\Documents\Sports Interactive
2016-02-08 15:31 - 2016-02-12 20:10 - 00000000 ____D C:\Users\Milos\AppData\Local\CrashDumps
2016-02-07 08:25 - 2016-01-23 01:47 - 00110016 _____ (NVIDIA Corporation) C:\Windows\system32\nvStreaming.exe
2016-02-07 08:21 - 2016-01-23 04:45 - 37616696 _____ C:\Windows\system32\nvcompiler.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 24912952 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 17626352 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 17218984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 10532920 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-02-07 08:21 - 2016-01-23 04:45 - 02721216 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 01066944 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3236175.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00925752 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3236175.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00745408 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00691256 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00388744 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshim.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00153208 _____ (NVIDIA Corporation) C:\Windows\system32\nvinit.dll
2016-02-07 08:21 - 2016-01-23 04:45 - 00128696 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim32.dll
2016-02-03 22:52 - 2016-02-03 22:52 - 00001053 _____ C:\Users\Milos\Desktop\PTE Patch.lnk
2016-02-02 03:44 - 2016-02-13 16:49 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d15d639b9f33fa.job
2016-02-02 03:44 - 2016-02-13 12:22 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d15d639b10ad84.job
2016-01-25 12:21 - 2016-01-23 02:00 - 00436160 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-01-25 12:21 - 2016-01-23 02:00 - 00083512 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-01-25 12:18 - 2015-12-16 18:04 - 01060144 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3236143.dll
2016-01-25 12:18 - 2015-12-16 18:04 - 00917112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3236143.dll
2016-01-25 11:33 - 2016-01-12 05:41 - 00091568 _____ C:\Windows\system32\NvRtmpStreamer32.dll
2016-01-25 11:31 - 2015-12-18 07:11 - 00042128 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad32v.sys
2016-01-25 11:31 - 2015-12-18 07:10 - 00090768 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap32v.dll
2016-01-25 11:22 - 2016-02-12 23:00 - 00067894 _____ C:\Users\Milos\Downloads\bluescreenview.zip

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-02-13 16:55 - 2013-03-14 18:55 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-02-13 16:49 - 2015-09-15 09:32 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0ef90ffa7ff09.job
2016-02-13 16:39 - 2015-06-23 12:29 - 00000918 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1894628914-1952835297-1947460801-1000UA.job
2016-02-13 16:37 - 2015-09-11 21:25 - 00000886 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-02-13 13:39 - 2015-06-23 12:29 - 00000866 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1894628914-1952835297-1947460801-1000Core.job
2016-02-13 12:30 - 2009-07-14 05:34 - 00020480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-02-13 12:30 - 2009-07-14 05:34 - 00020480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-02-13 12:26 - 2015-03-11 08:58 - 00098520 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-02-13 12:22 - 2015-12-02 06:38 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d12cc3be08876e.job
2016-02-13 12:22 - 2015-09-15 09:32 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0ef90feebf253.job
2016-02-13 12:22 - 2015-09-11 21:25 - 00000882 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-02-13 12:21 - 2013-03-14 18:43 - 00000000 ____D C:\ProgramData\NVIDIA
2016-02-13 12:21 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-02-13 01:14 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2016-02-13 00:21 - 2015-03-19 14:40 - 00000000 ____D C:\Users\Milos\AppData\Roaming\AIMP3
2016-02-12 22:58 - 2013-12-25 23:14 - 00000000 ____D C:\Users\Milos\Downloads\knjige my document
2016-02-12 20:49 - 2015-03-11 20:15 - 00000000 ____D C:\Users\Milos\AppData\Roaming\MPC-HC
2016-02-12 20:48 - 2015-02-22 20:33 - 00000000 ____D C:\Users\Milos\AppData\Roaming\uTorrent
2016-02-12 20:34 - 2013-03-14 18:34 - 00000000 ____D C:\Users\Milos
2016-02-12 20:15 - 2015-02-19 19:06 - 00000000 ____D C:\Users\Milos\AppData\Roaming\Hard Disk Sentinel
2016-02-12 20:15 - 2015-02-19 18:57 - 00000000 ____D C:\Program Files\Hard Disk Sentinel
2016-02-12 20:15 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\registration
2016-02-12 10:16 - 2014-10-17 16:05 - 00075776 ___SH C:\Users\Milos\Thumbs.db
2016-02-10 09:26 - 2015-09-11 21:27 - 00002120 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-10 09:00 - 2013-12-22 13:35 - 00000000 ____D C:\Windows\pss
2016-02-10 08:29 - 2013-05-24 15:22 - 00000000 ____D C:\Users\Public\Documents\Sports Interactive
2016-02-10 08:29 - 2013-05-24 15:22 - 00000000 ____D C:\Users\Milos\AppData\Local\Sports Interactive
2016-02-07 17:25 - 2013-09-16 22:10 - 00000000 ____D C:\Users\Milos\AppData\Roaming\Dropbox
2016-02-07 08:25 - 2013-03-14 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-02-07 08:25 - 2013-03-14 18:41 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-02-07 08:23 - 2013-03-14 18:41 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-02-04 22:45 - 2013-03-14 18:43 - 00785794 _____ C:\Windows\system32\PerfStringBackup.INI
2016-02-04 00:44 - 2015-06-14 18:49 - 00000292 _____ C:\Users\Milos\Desktop\New Text Document.txt
2016-02-04 00:06 - 2015-11-06 17:59 - 00000000 ____D C:\Program Files\Pro Evolution Soccer 2016
2016-02-03 22:29 - 2013-03-14 22:34 - 00000000 ____D C:\Users\Milos\Documents\KONAMI
2016-01-25 11:33 - 2013-09-23 12:49 - 00000000 ____D C:\Users\Milos\AppData\Local\NVIDIA
2016-01-25 11:32 - 2014-11-16 17:29 - 00000000 ____D C:\ProgramData\Package Cache
2016-01-24 01:00 - 2013-03-31 10:21 - 00000000 ____D C:\Users\Milos\AppData\Local\ElevatedDiagnostics
2016-01-23 04:45 - 2015-03-21 20:54 - 14016768 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll
2016-01-23 04:45 - 2014-04-19 20:45 - 00029843 _____ C:\Windows\system32\nvinfo.pb
2016-01-23 04:45 - 2013-03-14 18:41 - 03258664 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll
2016-01-23 04:45 - 2013-02-26 00:22 - 16328088 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 03946432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 02591288 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 02563128 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 00941504 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2016-01-23 02:00 - 2013-03-14 18:42 - 00381888 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-01-23 02:00 - 2013-03-14 18:42 - 00068544 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-01-21 19:18 - 2013-03-14 18:42 - 06125650 _____ C:\Windows\system32\nvcoproc.bin

==================== Files in the root of some directories =======

2016-02-10 09:49 - 2015-11-26 22:42 - 0000422 _____ () C:\Program Files\update-FM2016.bat
2016-02-10 09:49 - 2013-10-12 19:47 - 0000732 _____ () C:\Program Files\visit-www.nosteam.ro.html
2015-03-13 21:39 - 2015-03-13 21:39 - 0003584 _____ () C:\Users\Milos\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-03-06 01:45 - 2015-03-06 01:45 - 0007605 _____ () C:\Users\Milos\AppData\Local\Resmon.ResmonCfg
2015-03-16 13:33 - 2015-03-16 13:33 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-02-08 01:37

==================== End of FRST.txt ============================



mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Problem koji imaš je vrlo vjerovatno uzrokovan hardverskim kvarom, neispravnim RAM modulom najvjerovatnije.

Otvori temu u Hardware dijelu foruma i tmao ćeš dobiti uputstvo kako da testiraš RAM.
http://www.mycity.rs/Hardware

offline
  • Pridružio: 24 Jan 2009
  • Poruke: 87

A da te pitam,po ovim logovima znaci da sam cist?

I kakve veze ima antivirus sa ram modulom? pitam,jer se ne razumem,ali mi cudno nesto.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

drama ::A da te pitam,po ovim logovima znaci da sam cist?

I kakve veze ima antivirus sa ram modulom? pitam,jer se ne razumem,ali mi cudno nesto.



Ako ti izbacuje BSOD-ove sa porukom "PAGE_FAULT_IN_NONPAGED_AREA" u random trenucima onda je tu vjerovatno RAM problem. Reinstaliraj ESET pa vidi kakvo je onda stanje za početak.

offline
  • Pridružio: 24 Jan 2009
  • Poruke: 87

Sass Drake ::drama ::A da te pitam,po ovim logovima znaci da sam cist?

I kakve veze ima antivirus sa ram modulom? pitam,jer se ne razumem,ali mi cudno nesto.



Ako ti izbacuje BSOD-ove sa porukom "PAGE_FAULT_IN_NONPAGED_AREA" u random trenucima onda je tu vjerovatno RAM problem. Reinstaliraj ESET pa vidi kakvo je onda stanje za početak.


Pokusao sam da reinstaliram ESET medjutim ne dopusta mi,izbacuje neku gresku i onda sve jovo nanovo.

Za Ram memoriju znam,ono sto sam uradio,zamenio sam im mesta u kucistu i ponovo postavio sad ne znam,nema vise BSOD...

Ono sto mene interesuje da li je po logovima moj racunar cist? jer sam nasao povezanost toga sto ESET ne radi i pojave nekih virusa guglajuci.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Čist je, ali obavićemo još jednu provjeru.


Preuzmi Malwarebytes Anti-Rootkit (MBAR) sa sledeceg linka i sacuvaj ga na Desktop.

Dvoklikom pokreni MBAR () na ikonicu programa:
- Klikni OK na sledecem prozoru da bi dozvolio raspakivanje u zaseban mbar folder na desktop-u;
- mbar.exe ce biti startovan. Na nekim sistemima to moze da potraje nekoliko dodatnih sekundi, te pricekati pokretanje.;
- U uvodnom prozoru klikni dugme Next ukoliko si saglasan;



• Na 'Update Database' prozoru klik na dugme Update da bi preuzeo sveze definicije. Kada se ispise poruka 'Success: Database was successfully updated' klik na dugme Next;
• Pod sekcijom 'Scan Targets' proveri da su sve opcije stiklirane, te klikni na dugme Scan;

Obavestenje: sa nekim infekcijama moze se desiti da se prikaze neka od sledecih poruka:
- 'Could not load protection driver' => u tom slucaju klikni OK.
- 'Could not load DDA driver' => klikni Yes na to obavestenje da bi dozvolio ucitavanje nakon restarta. Dozvoli restart i nastavi sa ostatkom instrukcija posle restarta.





>> Ukoliko malware nije detektovan, klik na Exit dugme da zatvoris program. U sledecu poruku postavi mbar-log-year-month-day (sat-minuti-sekundi).txt i system-log.txt izveštaje.

>> Ukoliko su infekcija/e pronadjene, proveriti da li je obelezena opcija 'Create Restore Point' i klikni na dugme Cleanup! da bi uklonili pretnje.
- Procedura uklanjanje malware-a (scheduled) ce biti zakazana po restartu, bice prikazano obavestenje u pop-up prozoru. Klikni dugme Yes i sistem bi trebao da se restartuje i da zavrsi proceduru ciscenja.



Obavestenje! samo ukoliko je RootKit detektovan: - postaraj se da pokrenes fixdamage.exe alat koji se nalazi u mbar folderu, \Plugins\fixdamage.exe:
- Dvoklikom pokreni fixdamage, u crnom prozoru koji se otvori (command prompt) ukucaj Y (Y stoji za Yes) da bi nastavio izvrsenje, pricekati da alat odradi sve popravke ...
- Kada vidis poruku 'press any key to exit' popravka je kompletirana. Pritisnuti bilo koju tipku na tastaturi da bi se prozor zatvorio. Restartovati sistem.





Sledeci izvestaji ce biti formirani u mbar folderu.
1. mbar-log-year-month-day (hour-minute-second).txt
2. system-log.txt

Iskopiraj sadrzaj mbar log-a u poruku a system log okaci uz poruku koristeci opciju Prikači fajl.

offline
  • Pridružio: 24 Jan 2009
  • Poruke: 87

Malwarebytes Anti-Rootkit BETA 1.9.3.1001
malwarebytes.org

Database version:
main: v2016.02.14.03
rootkit: v2016.02.08.01

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.17728
Milos :: MILOS-PC [administrator]

14.2.2016 15:25:44
mbar-log-2016-02-14 (15-25-44).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 300796
Time elapsed: 19 minute(s), 23 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)

mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Čist si.

Sledeća procedura će implementirati završno čišćenje.

Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.
Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;

Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.
Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)

Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
Alat briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

offline
  • Pridružio: 24 Jan 2009
  • Poruke: 87

Hvala ti druze...

Ostalo mi je posle brisanja samo ovaj mb,jel smem da ga koristim povremeno ili ne?

Hvala jos jednom.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Jednostavnije ti je instalirati MBAM Free pa sa njim povremeno skenirati. Što se MBAR-a tiče, njegov folder možeš slobodno obrisati sa Desktopa.

Ko je trenutno na forumu
 

Ukupno su 931 korisnika na forumu :: 18 registrovanih, 2 sakrivenih i 911 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: brundo65, cikadeda, CrazySerb_MLD, darkangel, Dragomir1970, koom0001, Kriglord, krkalon, m0nstrum_, Mad Serb, mikki jons, milenko crazy north, Nemanja.M, nenooo, novator, Prašinar, SR-3m, yrraf