Poslao: 26 Maj 2015 11:49
|
offline
- Pridružio: 30 Jul 2009
- Poruke: 233
|
Moj problem je usporen računar i kako ukloniti xxclone.exe koga ne vidim u instaliranim programima, tj pokušavam da sve što mi ne treba obrišem tj. deinstaliram ali neke stvari ne znam kako a za neke ne znam za šta služe;
Pored win 7 imam inst i ubuntu na posebnoj particiji-
Posebno je internet usporen (ADSL) bilo koji (hrom, mozila itd) dok je internet na linuksu solidan. Win 7 u safe mod-u radi rekla bih normalno -solidno. Da li neko ima živaca i vremena da mi pomogne?
Da li bi trebalo da ga nečim skeniram?
Do sada sam ga skenirala sa dr web cureilt – našao i obrisao neku gamad
Malwarebyte – našao i obrisao nešto
Skenirala sa stinger32 nije nista nasao
Po uputstvu iz ambulante skenirala sam sa Farbar Recovery Scan Tool
Ovaj Addition.txt ne vidim.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 25-05-2015
Ran by Mi Ringeri (administrator) on MIRINGERI-PC on 26-05-2015 11:16:47
Running from C:\Users\Mi Ringeri\Desktop
Loaded Profiles: Mi Ringeri (Available Profiles: Mi Ringeri)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
(Qihu Software Co. Limited) C:\Program Files\360\Total Security\safemon\QHWatchdog.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
() C:\Program Files\360\Total Security\safemon\QHSafeTray.exe
() C:\Program Files\IO3O LLC\Who Is On My Wifi\mywifi.exe
(Thomas Ascher) C:\Program Files\ATnotes\ATnotes.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\tv_w32.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Desktop.exe
(McAfee Inc.) C:\Program Files\McAfee\Raptor\Raptor.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Farbar) C:\Users\Mi Ringeri\Desktop\FRST (1).exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [QHSafeTray] => C:\Program Files\360\Total Security\safemon\QHSafeTray.exe [1222768 2015-04-10] ()
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\...\Run: [] => [X]
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\...\MountPoints2: {288ea6cd-4b7d-11e2-8f4a-00155855573e} - F:\Startme.exe
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\...\MountPoints2: {77623c09-c82c-11e4-aa3e-00155855573e} - G:\setup.exe
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\PhotoScreensaver.scr [413696 2010-11-20] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2015-05-26] ()
Startup: C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2015-05-26] ()
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => No File
CHR HKU\S-1-5-21-228915504-2982361301-1765509949-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-228915504-2982361301-1765509949-1000 -> {04ABB6DC-533B-4048-AFD1-3CE81FBC7BE8} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-228915504-2982361301-1765509949-1000 -> {7CFE7811-F725-4278-936B-4A33F602DCAE} URL =
BHO: No Name -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> No File
BHO: No Name -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> No File
BHO: No Name -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> No File
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
ShellExecuteHooks: - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No File [ ]
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{03BF19EB-F95A-44E6-A69B-1524ABD34123}: [NameServer] 8.8.8.8,8.8.4.4
FireFox:
========
FF ProfilePath: C:\Users\Mi Ringeri\AppData\Roaming\Mozilla\Firefox\Profiles\r92vs7r7.default-1432219189258
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-05-20] ()
FF Plugin: @artistscope.com/PDFReaderWeb -> C:\Program Files\CopySafe PDF Reader\npPDFReaderWeb.dll No File
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2014-12-09] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2014-12-09] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-03-17] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-228915504-2982361301-1765509949-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Mi Ringeri\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-03-17] (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pogodakyu.xml [2015-01-09]
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\vokabular.xml [2015-01-09]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-21]
FF HKLM\...\Firefox\Extensions: [WebProtection@360safe.com] - C:\Program Files\360\Total Security\safemon\webprotection_firefox
FF Extension: 360 Internet Protection - C:\Program Files\360\Total Security\safemon\webprotection_firefox [2015-04-15]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (WOT) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2014-10-20]
CHR Extension: (Adblock Plus) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-04-21]
CHR Extension: (Avast SafePrice) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-05-23]
CHR Extension: (360 Internet Protection) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2014-08-05]
CHR Extension: (Bookmark Manager) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-23]
CHR Extension: (Youtube Downloader Google Chrome) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhlcmkkemmjgnancnndbpmmikmhideeo [2014-11-08]
CHR Extension: (Downloads) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmnmgbdbfdljpmiaieogmiolkkpeghhh [2014-11-08]
CHR HKLM\...\Chrome\Extension: [hdodimmiepifannoaimfpodiafbhadmk] - C:\Program Files\OApps\chrome-sl.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
Opera:
=======
OPR StartupUrls: "hxxp://www.google.com/"
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2015-05-21] (SUPERAntiSpyware.com)
S4 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
S4 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S4 CSHelper; C:\Program Files\Common Files\ArtistScope\CSHelper32.exe [236624 2014-09-27] (ArtistScope Pty Ltd)
R2 DiagTrack; C:\Windows\system32\diagtrack.dll [851456 2015-04-27] (Microsoft Corporation)
S3 FoxitCloudUpdateService; C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [241728 2014-03-11] (Foxit Corporation)
S4 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
S4 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) []
R2 QHActiveDefense; C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [819824 2015-04-10] ()
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5491984 2015-05-13] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S4 BGS; C:\Users\MIRING~1\AppData\Local\Temp\BGS.exe [X]
S4 BIW; C:\Users\MIRING~1\AppData\Local\Temp\BIW.exe [X]
S4 DACBPMK; C:\Users\MIRING~1\AppData\Local\Temp\DACBPMK.exe [X]
S4 DSVQAZMT; C:\Users\MIRING~1\AppData\Local\Temp\DSVQAZMT.exe [X]
S4 DWECDILQDSQ; C:\Users\MIRING~1\AppData\Local\Temp\DWECDILQDSQ.exe [X]
S4 HZFCWKV; C:\Users\MIRING~1\AppData\Local\Temp\HZFCWKV.exe [X]
S4 JGNPFOB; C:\Users\MIRING~1\AppData\Local\Temp\JGNPFOB.exe [X]
S4 QAQSVF; C:\Users\MIRING~1\AppData\Local\Temp\QAQSVF.exe [X]
S4 WEXITVQY; C:\Users\MIRING~1\AppData\Local\Temp\WEXITVQY.exe [X]
S4 ZSTKXQ; C:\Users\MIRING~1\AppData\Local\Temp\ZSTKXQ.exe [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker.sys [88136 2014-08-01] (360.cn)
R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [65608 2015-04-10] (360.cn)
R1 360Box; C:\Windows\System32\DRIVERS\360Box.sys [202312 2015-04-10] (360.cn)
R1 360Camera; C:\Windows\System32\Drivers\360Camera.sys [34888 2014-08-01] (360.cn)
R1 360SelfProtection; C:\Windows\System32\drivers\360SelfProtection.sys [174536 2014-08-29] (360安全中心)
S3 athur; C:\Windows\System32\DRIVERS\athur.sys [1570304 2013-06-28] (Atheros Communications, Inc.)
R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV.sys [169040 2015-03-09] (Qihu 360 Software Co., Ltd.)
R3 CamSuiteVAC; C:\Windows\System32\DRIVERS\CamSuiteVAC.sys [37560 2008-09-20] ()
R1 CSDriver; C:\Program Files\Common Files\ArtistScope\CSDriver32.sys [43888 2014-09-27] ()
S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [25104 2015-03-11] (Disc Soft Ltd)
R1 EfiMon; C:\Windows\System32\Drivers\Efimon.sys [23752 2014-08-01] (360安全中心)
S3 Ext2Fsd; C:\Windows\system32\Drivers\Ext2Fsd.sys [686360 2014-05-11] (www.ext2fsd.com)
R0 HookPort; C:\Windows\System32\Drivers\Hookport.sys [58440 2015-03-09] (360安全中心)
S3 ialm; C:\Windows\System32\DRIVERS\ialmnt5.sys [1049180 2005-07-19] (Intel Corporation) []
R1 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [92888 2015-04-14] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2015-05-26] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation)
R1 qutmdserv; C:\Windows\System32\DRIVERS\qutmdrv.sys [257352 2014-08-01] (360.cn)
R1 qutmipc; C:\Windows\system32\drivers\qutmipc.sys [45896 2014-08-29] (360.cn)
S3 s0016bus; C:\Windows\System32\DRIVERS\s0016bus.sys [89256 2008-05-16] (MCCI Corporation)
S3 s0016mdfl; C:\Windows\System32\DRIVERS\s0016mdfl.sys [15016 2008-05-16] (MCCI Corporation)
S3 s0016mdm; C:\Windows\System32\DRIVERS\s0016mdm.sys [120744 2008-05-16] (MCCI Corporation)
S3 s0016mgmt; C:\Windows\System32\DRIVERS\s0016mgmt.sys [114216 2008-05-16] (MCCI Corporation)
S3 s0016nd5; C:\Windows\System32\DRIVERS\s0016nd5.sys [25512 2008-05-16] (MCCI Corporation)
S3 s0016obex; C:\Windows\System32\DRIVERS\s0016obex.sys [110632 2008-05-16] (MCCI Corporation)
S3 s0016unic; C:\Windows\System32\DRIVERS\s0016unic.sys [115752 2008-05-16] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R2 secdrv; C:\Windows\system32\Drivers\secdrv.sys [11973 2015-03-12] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) []
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [329384 2015-03-11] (Duplex Secure Ltd.)
R3 teamviewervpn; C:\Windows\System32\DRIVERS\teamviewervpn.sys [25088 2013-10-17] (TeamViewer GmbH)
S3 FXDRV; \??\E:\Fxdrv.sys [X]
S3 GUCI_AVS; system32\DRIVERS\GUCI_AVS.sys [X]
S3 Maplom; No ImagePath
S3 MaplomL; No ImagePath
S3 taphss6; system32\DRIVERS\taphss6.sys [X]
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () []
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-26 11:16 - 2015-05-26 11:16 - 00016625 _____ () C:\Users\Mi Ringeri\Desktop\FRST.txt
2015-05-26 11:14 - 2015-05-26 11:17 - 00000000 ____D () C:\FRST
2015-05-26 11:08 - 2015-05-26 11:08 - 01147392 _____ (Farbar) C:\Users\Mi Ringeri\Desktop\FRST (1).exe
2015-05-26 10:01 - 2015-05-26 10:01 - 06438098 _____ () C:\Users\Mi Ringeri\Desktop\MIRINGERI-PC.arn
2015-05-26 08:03 - 2015-05-26 08:03 - 00546464 _____ () C:\Users\Mi Ringeri\Desktop\Autoruns.zip
2015-05-26 07:09 - 2015-05-26 07:09 - 00000000 ____D () C:\Program Files\McAfee
2015-05-26 06:00 - 2015-05-26 06:11 - 00017778 _____ () C:\Windows\WindowsUpdate.log
2015-05-26 05:56 - 2015-05-26 05:56 - 00000056 _____ () C:\Windows\setupact.log
2015-05-26 05:56 - 2015-05-26 05:56 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-26 05:55 - 2015-05-26 05:55 - 00070062 _____ () C:\Windows\PFRO.log
2015-05-26 00:44 - 2015-05-26 00:44 - 00022636 _____ () C:\Users\Mi Ringeri\Documents\cc_20150526_004440.reg
2015-05-26 00:20 - 2015-05-26 00:21 - 00400213 _____ () C:\Users\Mi Ringeri\Downloads\checkdisk (1).zip
2015-05-25 23:59 - 2015-05-26 07:57 - 15413190 _____ () C:\Users\Mi Ringeri\Downloads\stinger32-epo.zip
2015-05-25 23:51 - 2015-05-25 23:58 - 161929592 _____ (Emsisoft Ltd. ) C:\Users\Mi Ringeri\Downloads\EmsisoftAntiMalwareSetup.exe
2015-05-25 23:39 - 2015-05-25 23:40 - 04676168 _____ (Captel SARL ) C:\Users\Mi Ringeri\Downloads\LiberKey_5.8.1114.exe
2015-05-25 23:37 - 2015-05-26 00:57 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-25 23:37 - 2015-05-25 23:37 - 00001020 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-25 23:37 - 2015-05-25 23:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-05-25 23:36 - 2015-04-14 09:37 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-25 23:36 - 2015-04-14 09:37 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-05-25 23:36 - 2015-04-14 09:37 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-05-25 23:33 - 2015-05-25 23:33 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Mi Ringeri\Downloads\mbam-setup-2.1.6.1022.exe
2015-05-25 18:22 - 2015-05-25 18:27 - 162381888 _____ () C:\Users\Mi Ringeri\Downloads\lwhznjz2.exe
2015-05-22 23:05 - 2015-05-22 13:31 - 107314254 _____ () C:\Users\Mi Ringeri\Desktop\Image.bmp
2015-05-22 23:04 - 2015-05-22 12:58 - 67287390 _____ () C:\Users\Mi Ringeri\Desktop\SAT patrola put kolima preko Bugarske za Grčku 2015..mp4
2015-05-22 21:21 - 2015-05-22 21:21 - 00000000 ____D () C:\Users\Mi Ringeri\Tracing
2015-05-22 05:49 - 2015-05-22 05:49 - 38175056 _____ () C:\Users\Mi Ringeri\Desktop\cureit.log
2015-05-21 18:54 - 2015-05-21 18:54 - 00000000 ____D () C:\Device
2015-05-21 17:39 - 2015-05-21 17:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-05-21 17:04 - 2015-05-26 06:38 - 00000520 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 5516429f-5eb5-40f8-b77c-d74e2def46b2.job
2015-05-21 17:04 - 2015-05-23 02:00 - 00000520 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 478e893a-a4ca-40c9-ac28-31b9ece13fad.job
2015-05-21 17:03 - 2015-05-21 17:45 - 00000000 _____ () C:\Users\Mi Ringeri\Downloads\yyextel1(1).exe
2015-05-21 17:00 - 2015-05-21 17:00 - 00001921 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2015-05-21 17:00 - 2015-05-21 17:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2015-05-21 16:40 - 2015-05-21 16:40 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\Стари подаци програма Firefox
2015-05-20 15:52 - 2015-04-08 05:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-05-20 11:41 - 2015-05-20 11:41 - 00000889 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-05-17 08:07 - 2015-05-17 08:07 - 00000000 ____D () C:\ProgramData\360SD
2015-05-16 22:51 - 2015-05-17 00:03 - 00000000 ____D () C:\Program Files\LucasArts
2015-05-16 22:43 - 2015-05-16 22:43 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\Warner Bros. Interactive Entertainment
2015-05-16 22:36 - 2015-05-16 22:42 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\New folder
2015-05-16 21:40 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2015-05-16 21:40 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2015-05-16 21:40 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2015-05-16 21:40 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2015-05-16 21:40 - 2008-10-15 07:03 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2015-05-16 21:40 - 2008-10-15 07:03 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2015-05-16 21:40 - 2008-10-15 07:03 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2015-05-16 21:40 - 2008-10-15 07:03 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2015-05-16 21:40 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2015-05-16 21:40 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2015-05-16 21:40 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2015-05-16 21:40 - 2008-07-30 06:20 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2015-05-16 21:40 - 2008-07-30 06:20 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2015-05-16 21:40 - 2008-07-30 06:20 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2015-05-16 21:40 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2015-05-16 21:40 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2015-05-16 21:40 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2015-05-16 21:40 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2015-05-16 21:40 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2015-05-16 21:40 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2015-05-16 21:40 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2015-05-16 21:40 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2015-05-16 21:40 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2015-05-16 21:40 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2015-05-16 21:40 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2015-05-16 21:40 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2015-05-16 21:40 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2015-05-16 21:40 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2015-05-16 21:40 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2015-05-16 21:40 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2015-05-16 21:40 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2015-05-16 21:40 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2015-05-16 21:40 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2015-05-16 21:40 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2015-05-16 21:40 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2015-05-16 21:40 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2015-05-16 21:40 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2015-05-16 21:39 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2015-05-16 21:39 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2015-05-16 21:39 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2015-05-16 21:39 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2015-05-16 21:39 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2015-05-16 21:39 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2015-05-16 21:39 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2015-05-16 21:39 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2015-05-16 21:39 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2015-05-16 21:39 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2015-05-16 21:39 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2015-05-16 21:39 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2015-05-16 21:39 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2015-05-16 21:39 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2015-05-16 21:39 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2015-05-16 21:39 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2015-05-16 21:39 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2015-05-16 21:39 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2015-05-16 21:39 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2015-05-16 21:39 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2015-05-16 21:39 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2015-05-16 21:39 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2015-05-16 21:39 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2015-05-16 21:39 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2015-05-16 21:39 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2015-05-16 21:39 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2015-05-16 21:39 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2015-05-16 21:39 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2015-05-16 21:39 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2015-05-14 06:30 - 2015-05-01 15:16 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 00:13 - 2015-01-29 05:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-05-13 00:12 - 2015-05-13 00:13 - 02209792 _____ () C:\Users\Mi Ringeri\Downloads\adwcleaner_4.204.exe
2015-05-13 00:11 - 2015-04-27 21:11 - 03989440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-05-13 00:11 - 2015-04-27 21:11 - 03934144 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-05-13 00:11 - 2015-04-27 21:11 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-05-13 00:11 - 2015-04-27 21:11 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-05-13 00:11 - 2015-04-27 21:08 - 01307648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00851456 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-05-13 00:11 - 2015-04-27 21:03 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-05-13 00:11 - 2015-04-27 21:03 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-05-13 00:11 - 2015-04-27 21:01 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-05-13 00:11 - 2015-04-27 21:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-05-13 00:11 - 2015-04-27 20:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-05-13 00:11 - 2015-04-27 20:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-05-13 00:11 - 2015-04-27 20:00 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-05-13 00:09 - 2015-05-05 03:12 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-05-13 00:09 - 2015-04-20 04:56 - 01250816 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-13 00:09 - 2015-04-20 04:56 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-13 00:09 - 2015-04-20 04:03 - 02382336 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-13 00:09 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-13 00:08 - 2015-04-22 03:48 - 00342736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-13 00:08 - 2015-04-21 18:10 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-05-13 00:08 - 2015-04-21 18:03 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-05-13 00:08 - 2015-04-21 18:02 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-05-13 00:08 - 2015-04-21 17:58 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-05-13 00:08 - 2015-04-21 17:58 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-05-13 00:08 - 2015-04-21 17:57 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-05-13 00:08 - 2015-04-21 17:51 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-05-13 00:08 - 2015-04-21 17:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-05-13 00:08 - 2015-04-21 17:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-05-13 00:08 - 2015-04-21 17:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-13 00:08 - 2015-04-21 17:26 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-13 00:08 - 2015-04-21 16:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-13 00:08 - 2015-04-21 16:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-13 00:08 - 2015-04-13 05:19 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-13 00:07 - 2015-04-21 18:25 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-05-13 00:07 - 2015-04-21 18:25 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-05-13 00:07 - 2015-04-21 18:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-13 00:07 - 2015-04-21 18:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-13 00:07 - 2015-04-21 18:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-05-13 00:07 - 2015-04-21 18:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-13 00:07 - 2015-04-21 18:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-05-13 00:07 - 2015-04-21 18:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-13 00:07 - 2015-04-21 18:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-13 00:07 - 2015-04-21 17:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-13 00:07 - 2015-04-21 17:39 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-05-13 00:07 - 2015-04-21 17:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-13 00:07 - 2015-04-21 17:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-13 00:07 - 2015-04-21 17:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-13 00:07 - 2015-04-21 17:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-13 00:07 - 2015-04-21 17:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-05-13 00:07 - 2015-04-21 17:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-13 00:07 - 2015-04-21 17:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-13 00:06 - 2015-03-04 06:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-05-13 00:06 - 2015-03-04 06:10 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-05-13 00:06 - 2015-03-04 06:10 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-05-13 00:06 - 2015-03-04 06:10 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-05-13 00:06 - 2015-02-18 09:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-05-12 23:53 - 2015-05-12 23:58 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\2015-05-11
2015-05-12 23:53 - 2015-05-12 23:53 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\2015-05-11 MILICA
2015-05-11 20:15 - 2015-05-11 20:50 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\Slike sa milicinog telefona
2015-05-07 19:04 - 2015-05-07 19:05 - 00562272 _____ (Oracle Corporation) C:\Users\Mi Ringeri\Downloads\chromeinstall-8u45.exe
2015-05-05 21:07 - 2015-05-05 21:07 - 00007552 _____ () C:\Users\Mi Ringeri\Documents\cc_20150505_210734.reg
2015-05-05 19:29 - 2015-05-21 19:33 - 00000000 ____D () C:\Program Files\FileCleaner
2015-05-05 19:29 - 2015-05-20 14:44 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileCleaner
2015-04-29 22:02 - 2015-04-29 22:02 - 00002585 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote Sticky Notes.lnk
2015-04-29 22:01 - 2015-04-29 22:02 - 00000000 ____D () C:\Program Files\Evernote Sticky Notes
2015-04-29 21:58 - 2015-04-29 21:58 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Local\Downloaded Installations
2015-04-29 21:54 - 2015-04-29 21:54 - 03159748 _____ (Evernote Sticky Notes) C:\Users\Mi Ringeri\Desktop\StickyNotes_1-5-9.exe
2015-04-29 21:22 - 2015-04-29 21:22 - 00000000 ____D () C:\Program Files\ATnotes
2015-04-29 19:58 - 2015-04-29 19:59 - 00000000 ____D () C:\Users\Mi Ringeri\Documents\OneNote Notebooks
2015-04-28 22:58 - 2015-05-21 21:37 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\FileCleaner
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-26 11:18 - 2015-03-23 23:19 - 00000000 ____D () C:\wifidata
2015-05-26 11:12 - 2009-07-14 06:34 - 00022864 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-26 11:12 - 2009-07-14 06:34 - 00022864 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-26 07:57 - 2013-04-03 21:40 - 00000000 ____D () C:\Program Files\stinger
2015-05-26 06:47 - 2014-04-17 19:05 - 00000000 ____D () C:\Program Files\TeamViewer
2015-05-26 06:38 - 2014-05-10 22:34 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2015-05-26 05:56 - 2012-11-12 15:16 - 00000000 ____D () C:\Users\Mi Ringeri
2015-05-26 05:56 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-26 00:31 - 2015-03-10 20:06 - 00000965 _____ () C:\Users\Public\Desktop\xxclone.exe.lnk
2015-05-26 00:25 - 2014-09-05 22:36 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-05-22 21:41 - 2012-11-12 19:23 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\Skype
2015-05-22 21:39 - 2012-11-12 15:21 - 00778834 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-22 21:29 - 2012-11-17 21:33 - 00000000 ____D () C:\ProgramData\Skype
2015-05-22 20:59 - 2014-08-04 01:38 - 00000000 __SHD () C:\ProgramData\360Quarant
2015-05-22 18:16 - 2013-03-24 23:08 - 00000000 ____D () C:\ProgramData\Sony Ericsson
2015-05-22 18:16 - 2013-03-24 23:06 - 00000000 ____D () C:\Program Files\Sony Ericsson
2015-05-22 18:02 - 2014-09-27 23:35 - 00000000 ____D () C:\Program Files\CopySafe PDF Reader
2015-05-22 16:38 - 2014-02-17 01:50 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-05-22 05:56 - 2015-04-14 05:16 - 00000000 ___SD () C:\Windows\system32\GWX
2015-05-21 21:58 - 2013-12-26 21:25 - 00000000 ____D () C:\Users\Mi Ringeri\Downloads\Skinuto sa 26 decembrom
2015-05-21 16:54 - 2013-11-12 19:19 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\TeamViewer
2015-05-21 15:59 - 2014-08-04 02:50 - 00000000 _RSHD () C:\360SANDBOX
2015-05-21 15:59 - 2014-08-04 02:06 - 00000000 ____D () C:\Windows\Tasks\360Disabled
2015-05-20 15:50 - 2012-11-12 20:48 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-05-20 15:50 - 2012-11-12 20:48 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-05-20 11:46 - 2015-04-16 23:07 - 00000496 _____ () C:\Windows\system32\TeamViewer10_Hooks.log
2015-05-20 08:42 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-05-20 07:57 - 2015-04-24 17:28 - 00136280 _____ () C:\Windows\wininit.ini
2015-05-20 05:44 - 2015-03-16 22:38 - 00000000 ____D () C:\AdwCleaner
2015-05-19 23:55 - 2014-08-04 01:38 - 00000000 __SHD () C:\$360Section
2015-05-17 02:39 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-05-16 22:44 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-05-16 22:05 - 2015-04-14 05:12 - 00000000 ____D () C:\ProgramData\360TotalSecurity
2015-05-16 21:04 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2015-05-14 06:30 - 2012-11-12 21:12 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-05-14 06:15 - 2012-11-13 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-05-14 06:14 - 2012-11-13 20:43 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-05-11 22:36 - 2013-05-27 22:26 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Local\Deployment
2015-05-11 22:35 - 2013-05-27 22:26 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Local\Apps\2.0
2015-05-09 07:50 - 2009-07-14 06:53 - 00032638 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-07 03:00 - 2014-07-16 17:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-05-05 20:41 - 2014-11-09 19:15 - 00002258 _____ () C:\Users\Mi Ringeri\AppData\Local\(zabranjeno)lock.settings
2015-04-30 10:07 - 2012-11-12 18:00 - 137310008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-29 19:08 - 2014-08-03 22:38 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\360safe
2015-04-28 23:17 - 2012-11-13 20:46 - 00000000 ____D () C:\Program Files\Windows Live
2015-04-28 22:59 - 2013-01-27 19:42 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\uTorrent
==================== Files in the root of some directories =======
2013-12-19 00:23 - 2013-12-19 00:23 - 4216840 _____ (Microsoft Corporation) C:\Program Files\Common Files\vcredist.exe
2013-01-13 21:44 - 2013-01-13 21:44 - 0033134 _____ () C:\Users\Mi Ringeri\AppData\Roaming\UserTile.png
2014-11-09 19:15 - 2015-05-05 20:41 - 0002258 _____ () C:\Users\Mi Ringeri\AppData\Local\(zabranjeno)lock.settings
2013-01-27 13:58 - 2014-07-26 23:43 - 0012800 _____ () C:\Users\Mi Ringeri\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-11-27 16:30 - 2015-02-18 19:37 - 0007605 _____ () C:\Users\Mi Ringeri\AppData\Local\resmon.resmoncfg
2015-03-04 23:15 - 2015-03-11 22:23 - 0000044 ___SH () C:\ProgramData\.zreglib
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-22 18:42
==================== End of log ============================
|
|
|
|
Poslao: 26 Maj 2015 12:45
|
offline
- helen1
- Anti Malware Fighter
Rank 2
- Pridružio: 27 Avg 2005
- Poruke: 8620
- Gde živiš: Novi Beograd
|
Zdravo,
1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:
CreateRestorePoint:
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\...\Run: [] => [X]
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\...\MountPoints2: {288ea6cd-4b7d-11e2-8f4a-00155855573e} - F:\Startme.exe
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\...\MountPoints2: {77623c09-c82c-11e4-aa3e-00155855573e} - G:\setup.exe
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => No File
CHR HKU\S-1-5-21-228915504-2982361301-1765509949-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> No File
BHO: No Name -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> No File
BHO: No Name -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> No File
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
ShellExecuteHooks: - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No File [ ]
CHR HKLM\...\Chrome\Extension: [hdodimmiepifannoaimfpodiafbhadmk] - C:\Program Files\OApps\chrome-sl.crx [Not Found]
S4 BGS; C:\Users\MIRING~1\AppData\Local\Temp\BGS.exe [X]
S4 BIW; C:\Users\MIRING~1\AppData\Local\Temp\BIW.exe [X]
S4 DACBPMK; C:\Users\MIRING~1\AppData\Local\Temp\DACBPMK.exe [X]
S4 DSVQAZMT; C:\Users\MIRING~1\AppData\Local\Temp\DSVQAZMT.exe [X]
S4 DWECDILQDSQ; C:\Users\MIRING~1\AppData\Local\Temp\DWECDILQDSQ.exe [X]
S4 HZFCWKV; C:\Users\MIRING~1\AppData\Local\Temp\HZFCWKV.exe [X]
S4 JGNPFOB; C:\Users\MIRING~1\AppData\Local\Temp\JGNPFOB.exe [X]
S4 QAQSVF; C:\Users\MIRING~1\AppData\Local\Temp\QAQSVF.exe [X]
S4 WEXITVQY; C:\Users\MIRING~1\AppData\Local\Temp\WEXITVQY.exe [X]
S4 ZSTKXQ; C:\Users\MIRING~1\AppData\Local\Temp\ZSTKXQ.exe [X]
S3 FXDRV; \??\E:\Fxdrv.sys [X]
S3 Maplom; No ImagePath
S3 MaplomL; No ImagePath
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () []
EmptyTemp:
2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.
3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.
Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.
|
|
|
|
Poslao: 26 Maj 2015 15:34
|
offline
- Pridružio: 30 Jul 2009
- Poruke: 233
|
Evo stigoh ja da iskopiram
Fix result of Farbar Recovery Scan Tool (x86) Version: 25-05-2015
Ran by Mi Ringeri at 2015-05-26 13:27:46 Run:1
Running from C:\Users\Mi Ringeri\Desktop
Loaded Profiles: Mi Ringeri (Available Profiles: Mi Ringeri)
Boot Mode: Normal
==============================================
fixlist content:
*****************
CreateRestorePoint:
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\...\Run: [] => [X]
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\...\MountPoints2: {288ea6cd-4b7d-11e2-8f4a-00155855573e} - F:\Startme.exe
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\...\MountPoints2: {77623c09-c82c-11e4-aa3e-00155855573e} - G:\setup.exe
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => No File
ShellIconOverlayIdentifiers: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => No File
CHR HKU\S-1-5-21-228915504-2982361301-1765509949-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: No Name -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> No File
BHO: No Name -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> No File
BHO: No Name -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> No File
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
ShellExecuteHooks: - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No File [ ]
CHR HKLM\...\Chrome\Extension: [hdodimmiepifannoaimfpodiafbhadmk] - C:\Program Files\OApps\chrome-sl.crx [Not Found]
S4 BGS; C:\Users\MIRING~1\AppData\Local\Temp\BGS.exe [X]
S4 BIW; C:\Users\MIRING~1\AppData\Local\Temp\BIW.exe [X]
S4 DACBPMK; C:\Users\MIRING~1\AppData\Local\Temp\DACBPMK.exe [X]
S4 DSVQAZMT; C:\Users\MIRING~1\AppData\Local\Temp\DSVQAZMT.exe [X]
S4 DWECDILQDSQ; C:\Users\MIRING~1\AppData\Local\Temp\DWECDILQDSQ.exe [X]
S4 HZFCWKV; C:\Users\MIRING~1\AppData\Local\Temp\HZFCWKV.exe [X]
S4 JGNPFOB; C:\Users\MIRING~1\AppData\Local\Temp\JGNPFOB.exe [X]
S4 QAQSVF; C:\Users\MIRING~1\AppData\Local\Temp\QAQSVF.exe [X]
S4 WEXITVQY; C:\Users\MIRING~1\AppData\Local\Temp\WEXITVQY.exe [X]
S4 ZSTKXQ; C:\Users\MIRING~1\AppData\Local\Temp\ZSTKXQ.exe [X]
S3 FXDRV; \??\E:\Fxdrv.sys [X]
S3 Maplom; No ImagePath
S3 MaplomL; No ImagePath
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () []
EmptyTemp:
*****************
Restore point was successfully created.
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Windows\CurrentVersion\Run\\ => value Removed successfully.
"HKU\S-1-5-21-228915504-2982361301-1765509949-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{288ea6cd-4b7d-11e2-8f4a-00155855573e}" => key Removed successfully.
HKCR\CLSID\{288ea6cd-4b7d-11e2-8f4a-00155855573e} => key not found.
"HKU\S-1-5-21-228915504-2982361301-1765509949-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{77623c09-c82c-11e4-aa3e-00155855573e}" => key Removed successfully.
HKCR\CLSID\{77623c09-c82c-11e4-aa3e-00155855573e} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GDriveSharedOverlay" => key Removed successfully.
HKCR\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 1 (GFS Unread Stub)" => key Removed successfully.
HKCR\CLSID\{99FD978C-D287-4F50-827F-B2C658EDA8E7} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 2 (GFS Stub)" => key Removed successfully.
HKCR\CLSID\{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)" => key Removed successfully.
HKCR\CLSID\{920E6DB1-9907-4370-B3A0-BAFC03D81399} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 3 (GFS Folder)" => key Removed successfully.
HKCR\CLSID\{16F3DD56-1AF5-4347-846D-7C10C4192619} => key not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Groove Explorer Icon Overlay 4 (GFS Unread Mark)" => key Removed successfully.
HKCR\CLSID\{2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => key not found.
"HKU\S-1-5-21-228915504-2982361301-1765509949-1000\SOFTWARE\Policies\Google" => key Removed successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key Removed successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}" => key Removed successfully.
HKCR\CLSID\{72853161-30C5-4D22-B7F9-0BBC1D38A37E} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}" => key Removed successfully.
HKCR\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}" => key Removed successfully.
HKCR\CLSID\{9FDDE16B-836F-4806-AB1F-1455CBEFF289} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}" => key Removed successfully.
HKCR\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{B5A7F190-DDA6-4420-B3BA-52453494E6CD} => value Removed successfully.
HKCR\CLSID\{B5A7F190-DDA6-4420-B3BA-52453494E6CD} => key not found.
"HKLM\SOFTWARE\Google\Chrome\Extensions\hdodimmiepifannoaimfpodiafbhadmk" => key Removed successfully.
BGS => Service Removed successfully.
BIW => Service Removed successfully.
DACBPMK => Service Removed successfully.
DSVQAZMT => Service Removed successfully.
DWECDILQDSQ => Service Removed successfully.
HZFCWKV => Service Removed successfully.
JGNPFOB => Service Removed successfully.
QAQSVF => Service Removed successfully.
WEXITVQY => Service Removed successfully.
ZSTKXQ => Service Removed successfully.
FXDRV => Service Removed successfully.
Maplom => Service Removed successfully.
MaplomL => Service Removed successfully.
UnlockerDriver5 => Service Removed successfully.
EmptyTemp: => Removed 28.5 MB temporary data.
The system needed a reboot.
==== End of Fixlog 13:34:53 ====
|
|
|
|
Poslao: 26 Maj 2015 15:44
|
offline
- helen1
- Anti Malware Fighter
Rank 2
- Pridružio: 27 Avg 2005
- Poruke: 8620
- Gde živiš: Novi Beograd
|
Sada skeniraj ponovo programom FRST ali moras i Addition log da mi dostavis, mora da se nalazi na istoj lokaciji gde i obican log. Potreban mi je.
|
|
|
|
Poslao: 26 Maj 2015 16:09
|
offline
- Pridružio: 30 Jul 2009
- Poruke: 233
|
Evo:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 25-05-2015
Ran by Mi Ringeri (administrator) on MIRINGERI-PC on 26-05-2015 15:59:38
Running from C:\Users\Mi Ringeri\Desktop
Loaded Profiles: Mi Ringeri (Available Profiles: Mi Ringeri)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Qihu Software Co. Limited) C:\Program Files\360\Total Security\safemon\QHWatchdog.exe
() C:\Program Files\360\Total Security\safemon\QHSafeTray.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Qihu 360 Software Co., Ltd.) C:\Program Files\360\Total Security\safemon\chrome\360webshield.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Mi Ringeri\Desktop\FRST (1).exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [QHSafeTray] => C:\Program Files\360\Total Security\safemon\QHSafeTray.exe [1222768 2015-04-10] ()
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\PhotoScreensaver.scr [413696 2010-11-20] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2015-05-26] ()
Startup: C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2015-05-26] ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com
HKU\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
SearchScopes: HKU\S-1-5-21-228915504-2982361301-1765509949-1000 -> {04ABB6DC-533B-4048-AFD1-3CE81FBC7BE8} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-228915504-2982361301-1765509949-1000 -> {7CFE7811-F725-4278-936B-4A33F602DCAE} URL =
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{03BF19EB-F95A-44E6-A69B-1524ABD34123}: [NameServer] 8.8.8.8,8.8.4.4
FireFox:
========
FF ProfilePath: C:\Users\Mi Ringeri\AppData\Roaming\Mozilla\Firefox\Profiles\r92vs7r7.default-1432219189258
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-05-20] ()
FF Plugin: @artistscope.com/PDFReaderWeb -> C:\Program Files\CopySafe PDF Reader\npPDFReaderWeb.dll No File
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2014-12-09] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2014-12-09] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-03-17] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-228915504-2982361301-1765509949-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Mi Ringeri\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-03-17] (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pogodakyu.xml [2015-01-09]
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\vokabular.xml [2015-01-09]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-21]
FF HKLM\...\Firefox\Extensions: [WebProtection@360safe.com] - C:\Program Files\360\Total Security\safemon\webprotection_firefox
FF Extension: 360 Internet Protection - C:\Program Files\360\Total Security\safemon\webprotection_firefox [2015-04-15]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (WOT) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2014-10-20]
CHR Extension: (Adblock Plus) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-04-21]
CHR Extension: (Avast SafePrice) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-05-23]
CHR Extension: (360 Internet Protection) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2014-08-05]
CHR Extension: (Bookmark Manager) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-23]
CHR Extension: (Youtube Downloader Google Chrome) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhlcmkkemmjgnancnndbpmmikmhideeo [2014-11-08]
CHR Extension: (Downloads) - C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmnmgbdbfdljpmiaieogmiolkkpeghhh [2014-11-08]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
Opera:
=======
OPR StartupUrls: "hxxp://www.google.com/"
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2015-05-21] (SUPERAntiSpyware.com)
S4 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
S4 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S4 CSHelper; C:\Program Files\Common Files\ArtistScope\CSHelper32.exe [236624 2014-09-27] (ArtistScope Pty Ltd)
R2 DiagTrack; C:\Windows\system32\diagtrack.dll [851456 2015-04-27] (Microsoft Corporation)
S3 FoxitCloudUpdateService; C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [241728 2014-03-11] (Foxit Corporation)
S4 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
S4 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 MDM; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) []
R2 QHActiveDefense; C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [819824 2015-04-10] ()
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5491984 2015-05-13] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker.sys [88136 2014-08-01] (360.cn)
R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [65608 2015-04-10] (360.cn)
R1 360Box; C:\Windows\System32\DRIVERS\360Box.sys [202312 2015-04-10] (360.cn)
R1 360Camera; C:\Windows\System32\Drivers\360Camera.sys [34888 2014-08-01] (360.cn)
R1 360SelfProtection; C:\Windows\System32\drivers\360SelfProtection.sys [174536 2014-08-29] (360安全中心)
S3 athur; C:\Windows\System32\DRIVERS\athur.sys [1570304 2013-06-28] (Atheros Communications, Inc.)
R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV.sys [169040 2015-03-09] (Qihu 360 Software Co., Ltd.)
R3 CamSuiteVAC; C:\Windows\System32\DRIVERS\CamSuiteVAC.sys [37560 2008-09-20] ()
R1 CSDriver; C:\Program Files\Common Files\ArtistScope\CSDriver32.sys [43888 2014-09-27] ()
S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [25104 2015-03-11] (Disc Soft Ltd)
R1 EfiMon; C:\Windows\System32\Drivers\Efimon.sys [23752 2014-08-01] (360安全中心)
S3 Ext2Fsd; C:\Windows\system32\Drivers\Ext2Fsd.sys [686360 2014-05-11] (www.ext2fsd.com)
R0 HookPort; C:\Windows\System32\Drivers\Hookport.sys [58440 2015-03-09] (360安全中心)
S3 ialm; C:\Windows\System32\DRIVERS\ialmnt5.sys [1049180 2005-07-19] (Intel Corporation) []
R1 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [92888 2015-04-14] (Malwarebytes Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2015-05-26] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation)
R1 qutmdserv; C:\Windows\System32\DRIVERS\qutmdrv.sys [257352 2014-08-01] (360.cn)
R1 qutmipc; C:\Windows\system32\drivers\qutmipc.sys [45896 2014-08-29] (360.cn)
S3 s0016bus; C:\Windows\System32\DRIVERS\s0016bus.sys [89256 2008-05-16] (MCCI Corporation)
S3 s0016mdfl; C:\Windows\System32\DRIVERS\s0016mdfl.sys [15016 2008-05-16] (MCCI Corporation)
S3 s0016mdm; C:\Windows\System32\DRIVERS\s0016mdm.sys [120744 2008-05-16] (MCCI Corporation)
S3 s0016mgmt; C:\Windows\System32\DRIVERS\s0016mgmt.sys [114216 2008-05-16] (MCCI Corporation)
S3 s0016nd5; C:\Windows\System32\DRIVERS\s0016nd5.sys [25512 2008-05-16] (MCCI Corporation)
S3 s0016obex; C:\Windows\System32\DRIVERS\s0016obex.sys [110632 2008-05-16] (MCCI Corporation)
S3 s0016unic; C:\Windows\System32\DRIVERS\s0016unic.sys [115752 2008-05-16] (MCCI Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R2 secdrv; C:\Windows\system32\Drivers\secdrv.sys [11973 2015-03-12] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) []
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [329384 2015-03-11] (Duplex Secure Ltd.)
R3 teamviewervpn; C:\Windows\System32\DRIVERS\teamviewervpn.sys [25088 2013-10-17] (TeamViewer GmbH)
S3 GUCI_AVS; system32\DRIVERS\GUCI_AVS.sys [X]
S3 taphss6; system32\DRIVERS\taphss6.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-26 15:59 - 2015-05-26 15:59 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\New folder (2)
2015-05-26 14:13 - 2015-05-26 14:13 - 00414216 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-26 11:16 - 2015-05-26 16:00 - 00014264 _____ () C:\Users\Mi Ringeri\Desktop\FRST.txt
2015-05-26 11:14 - 2015-05-26 15:59 - 00000000 ____D () C:\FRST
2015-05-26 11:08 - 2015-05-26 11:08 - 01147392 _____ (Farbar) C:\Users\Mi Ringeri\Desktop\FRST (1).exe
2015-05-26 10:01 - 2015-05-26 10:01 - 06438098 _____ () C:\Users\Mi Ringeri\Desktop\MIRINGERI-PC.arn
2015-05-26 08:03 - 2015-05-26 08:03 - 00546464 _____ () C:\Users\Mi Ringeri\Desktop\Autoruns.zip
2015-05-26 07:09 - 2015-05-26 07:09 - 00000000 ____D () C:\Program Files\McAfee
2015-05-26 06:00 - 2015-05-26 15:24 - 00064850 _____ () C:\Windows\WindowsUpdate.log
2015-05-26 05:56 - 2015-05-26 15:20 - 00000168 _____ () C:\Windows\setupact.log
2015-05-26 05:56 - 2015-05-26 05:56 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-26 05:55 - 2015-05-26 14:13 - 00070618 _____ () C:\Windows\PFRO.log
2015-05-26 00:44 - 2015-05-26 00:44 - 00022636 _____ () C:\Users\Mi Ringeri\Documents\cc_20150526_004440.reg
2015-05-26 00:20 - 2015-05-26 00:21 - 00400213 _____ () C:\Users\Mi Ringeri\Downloads\checkdisk (1).zip
2015-05-25 23:59 - 2015-05-26 07:57 - 15413190 _____ () C:\Users\Mi Ringeri\Downloads\stinger32-epo.zip
2015-05-25 23:51 - 2015-05-25 23:58 - 161929592 _____ (Emsisoft Ltd. ) C:\Users\Mi Ringeri\Downloads\EmsisoftAntiMalwareSetup.exe
2015-05-25 23:39 - 2015-05-25 23:40 - 04676168 _____ (Captel SARL ) C:\Users\Mi Ringeri\Downloads\LiberKey_5.8.1114.exe
2015-05-25 23:37 - 2015-05-26 00:57 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-25 23:37 - 2015-05-25 23:37 - 00001020 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-25 23:37 - 2015-05-25 23:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-05-25 23:36 - 2015-04-14 09:37 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-25 23:36 - 2015-04-14 09:37 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-05-25 23:36 - 2015-04-14 09:37 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-05-25 23:33 - 2015-05-25 23:33 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Mi Ringeri\Downloads\mbam-setup-2.1.6.1022.exe
2015-05-25 18:22 - 2015-05-25 18:27 - 162381888 _____ () C:\Users\Mi Ringeri\Downloads\lwhznjz2.exe
2015-05-22 23:05 - 2015-05-22 13:31 - 107314254 _____ () C:\Users\Mi Ringeri\Desktop\Image.bmp
2015-05-22 23:04 - 2015-05-22 12:58 - 67287390 _____ () C:\Users\Mi Ringeri\Desktop\SAT patrola put kolima preko Bugarske za Grčku 2015..mp4
2015-05-22 21:21 - 2015-05-22 21:21 - 00000000 ____D () C:\Users\Mi Ringeri\Tracing
2015-05-22 05:49 - 2015-05-22 05:49 - 38175056 _____ () C:\Users\Mi Ringeri\Desktop\cureit.log
2015-05-21 18:54 - 2015-05-21 18:54 - 00000000 ____D () C:\Device
2015-05-21 17:39 - 2015-05-21 17:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-05-21 17:04 - 2015-05-26 14:38 - 00000520 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 5516429f-5eb5-40f8-b77c-d74e2def46b2.job
2015-05-21 17:04 - 2015-05-23 02:00 - 00000520 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 478e893a-a4ca-40c9-ac28-31b9ece13fad.job
2015-05-21 17:03 - 2015-05-21 17:45 - 00000000 _____ () C:\Users\Mi Ringeri\Downloads\yyextel1(1).exe
2015-05-21 17:00 - 2015-05-21 17:00 - 00001921 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2015-05-21 17:00 - 2015-05-21 17:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2015-05-21 16:40 - 2015-05-21 16:40 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\Стари подаци програма Firefox
2015-05-20 15:52 - 2015-04-08 05:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-05-20 11:41 - 2015-05-20 11:41 - 00000889 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-05-17 08:07 - 2015-05-17 08:07 - 00000000 ____D () C:\ProgramData\360SD
2015-05-16 22:51 - 2015-05-17 00:03 - 00000000 ____D () C:\Program Files\LucasArts
2015-05-16 22:43 - 2015-05-16 22:43 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\Warner Bros. Interactive Entertainment
2015-05-16 22:36 - 2015-05-16 22:42 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\New folder
2015-05-16 21:40 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2015-05-16 21:40 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2015-05-16 21:40 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2015-05-16 21:40 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2015-05-16 21:40 - 2008-10-15 07:03 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2015-05-16 21:40 - 2008-10-15 07:03 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2015-05-16 21:40 - 2008-10-15 07:03 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2015-05-16 21:40 - 2008-10-15 07:03 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2015-05-16 21:40 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2015-05-16 21:40 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2015-05-16 21:40 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2015-05-16 21:40 - 2008-07-30 06:20 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2015-05-16 21:40 - 2008-07-30 06:20 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2015-05-16 21:40 - 2008-07-30 06:20 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2015-05-16 21:40 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2015-05-16 21:40 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2015-05-16 21:40 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2015-05-16 21:40 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2015-05-16 21:40 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2015-05-16 21:40 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2015-05-16 21:40 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2015-05-16 21:40 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2015-05-16 21:40 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2015-05-16 21:40 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2015-05-16 21:40 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2015-05-16 21:40 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2015-05-16 21:40 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2015-05-16 21:40 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2015-05-16 21:40 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2015-05-16 21:40 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2015-05-16 21:40 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2015-05-16 21:40 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2015-05-16 21:40 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2015-05-16 21:40 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2015-05-16 21:40 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2015-05-16 21:40 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2015-05-16 21:40 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2015-05-16 21:39 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2015-05-16 21:39 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2015-05-16 21:39 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2015-05-16 21:39 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2015-05-16 21:39 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2015-05-16 21:39 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2015-05-16 21:39 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2015-05-16 21:39 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2015-05-16 21:39 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2015-05-16 21:39 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2015-05-16 21:39 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2015-05-16 21:39 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2015-05-16 21:39 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2015-05-16 21:39 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2015-05-16 21:39 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2015-05-16 21:39 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2015-05-16 21:39 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2015-05-16 21:39 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2015-05-16 21:39 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2015-05-16 21:39 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2015-05-16 21:39 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2015-05-16 21:39 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2015-05-16 21:39 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2015-05-16 21:39 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2015-05-16 21:39 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2015-05-16 21:39 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2015-05-16 21:39 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2015-05-16 21:39 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2015-05-16 21:39 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2015-05-14 06:30 - 2015-05-01 15:16 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 00:13 - 2015-01-29 05:02 - 02311168 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-05-13 00:12 - 2015-05-13 00:13 - 02209792 _____ () C:\Users\Mi Ringeri\Downloads\adwcleaner_4.204.exe
2015-05-13 00:11 - 2015-04-27 21:11 - 03989440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-05-13 00:11 - 2015-04-27 21:11 - 03934144 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-05-13 00:11 - 2015-04-27 21:11 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-05-13 00:11 - 2015-04-27 21:11 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-05-13 00:11 - 2015-04-27 21:08 - 01307648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00851456 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-05-13 00:11 - 2015-04-27 21:05 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-05-13 00:11 - 2015-04-27 21:04 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-05-13 00:11 - 2015-04-27 21:04 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-05-13 00:11 - 2015-04-27 21:03 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-05-13 00:11 - 2015-04-27 21:03 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-05-13 00:11 - 2015-04-27 21:01 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-05-13 00:11 - 2015-04-27 21:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-05-13 00:11 - 2015-04-27 20:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-05-13 00:11 - 2015-04-27 20:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-05-13 00:11 - 2015-04-27 20:00 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-05-13 00:09 - 2015-05-05 03:12 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-05-13 00:09 - 2015-04-20 04:56 - 01250816 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-13 00:09 - 2015-04-20 04:56 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-13 00:09 - 2015-04-20 04:03 - 02382336 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-13 00:09 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-13 00:08 - 2015-04-22 03:48 - 00342736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-13 00:08 - 2015-04-21 18:10 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-05-13 00:08 - 2015-04-21 18:03 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-05-13 00:08 - 2015-04-21 18:02 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-05-13 00:08 - 2015-04-21 17:58 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-05-13 00:08 - 2015-04-21 17:58 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-05-13 00:08 - 2015-04-21 17:57 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-05-13 00:08 - 2015-04-21 17:51 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-05-13 00:08 - 2015-04-21 17:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-05-13 00:08 - 2015-04-21 17:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-05-13 00:08 - 2015-04-21 17:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-13 00:08 - 2015-04-21 17:26 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-13 00:08 - 2015-04-21 16:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-13 00:08 - 2015-04-21 16:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-13 00:08 - 2015-04-13 05:19 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-13 00:07 - 2015-04-21 18:25 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-05-13 00:07 - 2015-04-21 18:25 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-05-13 00:07 - 2015-04-21 18:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-13 00:07 - 2015-04-21 18:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-13 00:07 - 2015-04-21 18:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-05-13 00:07 - 2015-04-21 18:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-13 00:07 - 2015-04-21 18:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-05-13 00:07 - 2015-04-21 18:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-13 00:07 - 2015-04-21 18:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-13 00:07 - 2015-04-21 17:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-13 00:07 - 2015-04-21 17:39 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-05-13 00:07 - 2015-04-21 17:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-13 00:07 - 2015-04-21 17:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-13 00:07 - 2015-04-21 17:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-13 00:07 - 2015-04-21 17:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-13 00:07 - 2015-04-21 17:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-05-13 00:07 - 2015-04-21 17:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-13 00:07 - 2015-04-21 17:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-13 00:06 - 2015-03-04 06:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-05-13 00:06 - 2015-03-04 06:10 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-05-13 00:06 - 2015-03-04 06:10 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-05-13 00:06 - 2015-03-04 06:10 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-05-13 00:06 - 2015-02-18 09:06 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-05-12 23:53 - 2015-05-12 23:58 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\2015-05-11
2015-05-12 23:53 - 2015-05-12 23:53 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\2015-05-11 MILICA
2015-05-11 20:15 - 2015-05-11 20:50 - 00000000 ____D () C:\Users\Mi Ringeri\Desktop\Slike sa milicinog telefona
2015-05-07 19:04 - 2015-05-07 19:05 - 00562272 _____ (Oracle Corporation) C:\Users\Mi Ringeri\Downloads\chromeinstall-8u45.exe
2015-05-05 21:07 - 2015-05-05 21:07 - 00007552 _____ () C:\Users\Mi Ringeri\Documents\cc_20150505_210734.reg
2015-05-05 19:29 - 2015-05-21 19:33 - 00000000 ____D () C:\Program Files\FileCleaner
2015-05-05 19:29 - 2015-05-20 14:44 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileCleaner
2015-04-29 22:02 - 2015-04-29 22:02 - 00002585 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote Sticky Notes.lnk
2015-04-29 22:01 - 2015-04-29 22:02 - 00000000 ____D () C:\Program Files\Evernote Sticky Notes
2015-04-29 21:58 - 2015-04-29 21:58 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Local\Downloaded Installations
2015-04-29 21:54 - 2015-04-29 21:54 - 03159748 _____ (Evernote Sticky Notes) C:\Users\Mi Ringeri\Desktop\StickyNotes_1-5-9.exe
2015-04-29 21:22 - 2015-04-29 21:22 - 00000000 ____D () C:\Program Files\ATnotes
2015-04-29 19:58 - 2015-04-29 19:59 - 00000000 ____D () C:\Users\Mi Ringeri\Documents\OneNote Notebooks
2015-04-28 22:58 - 2015-05-21 21:37 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\FileCleaner
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-26 15:20 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-26 15:18 - 2009-07-14 06:34 - 00022864 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-26 15:18 - 2009-07-14 06:34 - 00022864 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-26 14:11 - 2012-11-12 15:16 - 00000000 ____D () C:\Users\Mi Ringeri
2015-05-26 14:06 - 2015-03-23 23:19 - 00000000 ____D () C:\wifidata
2015-05-26 13:05 - 2015-03-16 22:38 - 00000000 ____D () C:\AdwCleaner
2015-05-26 10:39 - 2012-11-12 19:23 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\Skype
2015-05-26 07:57 - 2013-04-03 21:40 - 00000000 ____D () C:\Program Files\stinger
2015-05-26 06:47 - 2014-04-17 19:05 - 00000000 ____D () C:\Program Files\TeamViewer
2015-05-26 06:38 - 2014-05-10 22:34 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2015-05-26 00:31 - 2015-03-10 20:06 - 00000965 _____ () C:\Users\Public\Desktop\xxclone.exe.lnk
2015-05-26 00:25 - 2014-09-05 22:36 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-05-22 21:39 - 2012-11-12 15:21 - 00778834 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-22 21:29 - 2012-11-17 21:33 - 00000000 ____D () C:\ProgramData\Skype
2015-05-22 20:59 - 2014-08-04 01:38 - 00000000 __SHD () C:\ProgramData\360Quarant
2015-05-22 18:16 - 2013-03-24 23:08 - 00000000 ____D () C:\ProgramData\Sony Ericsson
2015-05-22 18:16 - 2013-03-24 23:06 - 00000000 ____D () C:\Program Files\Sony Ericsson
2015-05-22 18:02 - 2014-09-27 23:35 - 00000000 ____D () C:\Program Files\CopySafe PDF Reader
2015-05-22 16:38 - 2014-02-17 01:50 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-05-22 05:56 - 2015-04-14 05:16 - 00000000 ___SD () C:\Windows\system32\GWX
2015-05-21 21:58 - 2013-12-26 21:25 - 00000000 ____D () C:\Users\Mi Ringeri\Downloads\Skinuto sa 26 decembrom
2015-05-21 16:54 - 2013-11-12 19:19 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\TeamViewer
2015-05-21 15:59 - 2014-08-04 02:50 - 00000000 _RSHD () C:\360SANDBOX
2015-05-21 15:59 - 2014-08-04 02:06 - 00000000 ____D () C:\Windows\Tasks\360Disabled
2015-05-20 15:50 - 2012-11-12 20:48 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-05-20 15:50 - 2012-11-12 20:48 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-05-20 11:46 - 2015-04-16 23:07 - 00000496 _____ () C:\Windows\system32\TeamViewer10_Hooks.log
2015-05-20 08:42 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-05-20 07:57 - 2015-04-24 17:28 - 00136280 _____ () C:\Windows\wininit.ini
2015-05-19 23:55 - 2014-08-04 01:38 - 00000000 __SHD () C:\$360Section
2015-05-17 02:39 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-05-16 22:44 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-05-16 22:05 - 2015-04-14 05:12 - 00000000 ____D () C:\ProgramData\360TotalSecurity
2015-05-16 21:04 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2015-05-14 06:30 - 2012-11-12 21:12 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-05-14 06:15 - 2012-11-13 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-05-14 06:14 - 2012-11-13 20:43 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-05-11 22:36 - 2013-05-27 22:26 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Local\Deployment
2015-05-11 22:35 - 2013-05-27 22:26 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Local\Apps\2.0
2015-05-09 07:50 - 2009-07-14 06:53 - 00032638 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-07 03:00 - 2014-07-16 17:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-05-05 20:41 - 2014-11-09 19:15 - 00002258 _____ () C:\Users\Mi Ringeri\AppData\Local\(zabranjeno)lock.settings
2015-04-30 10:07 - 2012-11-12 18:00 - 137310008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-29 19:08 - 2014-08-03 22:38 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\360safe
2015-04-28 23:17 - 2012-11-13 20:46 - 00000000 ____D () C:\Program Files\Windows Live
2015-04-28 22:59 - 2013-01-27 19:42 - 00000000 ____D () C:\Users\Mi Ringeri\AppData\Roaming\uTorrent
==================== Files in the root of some directories =======
2013-12-19 00:23 - 2013-12-19 00:23 - 4216840 _____ (Microsoft Corporation) C:\Program Files\Common Files\vcredist.exe
2013-01-13 21:44 - 2013-01-13 21:44 - 0033134 _____ () C:\Users\Mi Ringeri\AppData\Roaming\UserTile.png
2014-11-09 19:15 - 2015-05-05 20:41 - 0002258 _____ () C:\Users\Mi Ringeri\AppData\Local\(zabranjeno)lock.settings
2013-01-27 13:58 - 2014-07-26 23:43 - 0012800 _____ () C:\Users\Mi Ringeri\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-11-27 16:30 - 2015-02-18 19:37 - 0007605 _____ () C:\Users\Mi Ringeri\AppData\Local\resmon.resmoncfg
2015-03-04 23:15 - 2015-03-11 22:23 - 0000044 ___SH () C:\ProgramData\.zreglib
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-26 14:40
==================== End of log ============================
https://www.mycity.rs/must-login.png
|
|
|
|
Poslao: 26 Maj 2015 16:39
|
offline
- helen1
- Anti Malware Fighter
Rank 2
- Pridružio: 27 Avg 2005
- Poruke: 8620
- Gde živiš: Novi Beograd
|
E, taj log mi treba.
1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:
AlternateDataStreams: C:\ProgramData\TEMP:373E1720
Task: {BCDAD0C6-172A-4694-9261-BB1B517DC3F3} - \{379EFBF5-9D29-440B-A9F1-089590B88354} No Task File <==== ATTENTION
2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.
3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.
Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.
|
|
|
|
Poslao: 26 Maj 2015 16:54
|
offline
- Pridružio: 30 Jul 2009
- Poruke: 233
|
Napisano: 26 Maj 2015 16:52
Fix result of Farbar Recovery Scan Tool (x86) Version: 25-05-2015
Ran by Mi Ringeri at 2015-05-26 16:49:54 Run:2
Running from C:\Users\Mi Ringeri\Desktop
Loaded Profiles: Mi Ringeri (Available Profiles: Mi Ringeri)
Boot Mode: Normal
==============================================
fixlist content:
*****************
AlternateDataStreams: C:\ProgramData\TEMP:373E1720
Task: {BCDAD0C6-172A-4694-9261-BB1B517DC3F3} - \{379EFBF5-9D29-440B-A9F1-089590B88354} No Task File <==== ATTENTION
*****************
C:\ProgramData\TEMP => ":373E1720" ADS Removed successfully..
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BCDAD0C6-172A-4694-9261-BB1B517DC3F3}" => key Removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCDAD0C6-172A-4694-9261-BB1B517DC3F3}" => key Removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{379EFBF5-9D29-440B-A9F1-089590B88354}" => key Removed successfully.
==== End of Fixlog 16:50:01 ====
Dopuna: 26 Maj 2015 16:54
Vec se primecuje velika promena - sta je bio problem?
|
|
|
|
|
Poslao: 26 Maj 2015 21:06
|
offline
- Pridružio: 30 Jul 2009
- Poruke: 233
|
Iz treceg puta sam uspela da ga pokrenem i ovo bas traaajee- Da li je to u redu?
|
|
|
|
Poslao: 26 Maj 2015 21:08
|
offline
- helen1
- Anti Malware Fighter
Rank 2
- Pridružio: 27 Avg 2005
- Poruke: 8620
- Gde živiš: Novi Beograd
|
U redu je da traje, 40-50 minuta, sve zavisi. A to za pokretanje, i nije bas.
|
|
|
|