offline
- Pridružio: 11 Avg 2008
- Poruke: 65
- Gde živiš: Vancouver
|
Ne mogu da pokrenem Windows, prilikom restarta sistem ostane zakočen tako da ne mogu doci ni do login prozora a kamoli do moje radne površine kompjutera.
Jedino u Safe Mode mogu da pokrenem Win.
Otvarajuci Event Viewer primetio sam sledeće error koji nisu bili tu recimo pre par dana.
Source: WMI, Event ID 10
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Sadržaj FRST.txt
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.02.2019
Ran by Owner (administrator) on OWNER-PC (18-02-2019 02:40:11)
Running from C:\Users\Owner\Desktop\MyCity.rs
Loaded Profiles: Owner (Available Profiles: Owner & Guest)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Safe Mode (with Networking)
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2908888 2013-08-15] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
HKLM\...\Run: [DigidesignMMERefresh] => C:\Program Files\Avid\Pro Tools First\MMERefresh.exe [117760 2018-07-25] (Avid Technology, Inc.) [File not signed]
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [134616 2013-11-13] (Intel Corporation - Software and Firmware Products -> Intel Corporation)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284480 2012-05-30] (Intel Corporation -> Intel Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [290688 2012-10-24] (Intel Corporation -> Intel Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-10-06] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [4810224 2019-01-31] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKU\S-1-5-21-3458830371-3080079856-3168983202-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8590760 2015-12-08] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-3458830371-3080079856-3168983202-1000\...\Run: [NordVPN] => C:\Program Files (x86)\NordVPN\NordVPN.exe [3036112 2018-11-06] (TEFINCOM S.A. -> NordVPN)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\72.0.3626.109\Installer\chrmstp.exe [2019-02-15] (Google LLC -> Google Inc.)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avid Application Manager.lnk [2018-12-25]
ShortcutTarget: Avid Application Manager.lnk -> C:\Program Files\Avid\Application Manager\AvidApplicationManager.exe (Avid Technology, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{93514F19-BDE3-4595-A98B-60A1705962C5}: [DhcpNameServer] 192.168.220.6 216.40.102.172
Tcpip\..\Interfaces\{D19E708A-FF9D-4091-96AD-438CF5411EDF}: [NameServer] 1.1.1.1,1.0.0.1
Tcpip\..\Interfaces\{D19E708A-FF9D-4091-96AD-438CF5411EDF}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-3458830371-3080079856-3168983202-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.ca/?gws_rd=ssl
HKU\S-1-5-21-3458830371-3080079856-3168983202-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_191\bin\ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2018-06-29] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\IEExt\ie_plugin.dll [2015-12-07] (Kaspersky Lab -> AO Kaspersky Lab)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-23] (Oracle America, Inc. -> Oracle Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2018-06-29] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: ExplorerWatcher Class -> {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} -> C:\Program Files (x86)\Clover\TabHelper64.dll [2014-01-23] (EJIE Technology)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2018-06-29] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\IEExt\ie_plugin.dll [2015-12-07] (Kaspersky Lab -> AO Kaspersky Lab)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2018-06-29] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\IEExt\ie_plugin.dll [2015-12-07] (Kaspersky Lab -> AO Kaspersky Lab)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2018-06-29] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\IEExt\ie_plugin.dll [2015-12-07] (Kaspersky Lab -> AO Kaspersky Lab)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2018-06-29] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
FireFox:
========
FF ProfilePath: C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\97bs9aww.default-1530776971885 [2019-02-18]
FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\97bs9aww.default-1530776971885\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2019-01-31]
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2018-09-19]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_D772DC8D6FAF43A29B25C4EBAA5AD1DE@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\FFExt\light_plugin_firefox
FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\FFExt\light_plugin_firefox [2016-05-09] [Legacy]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_142.dll [2019-02-13] ()
FF Plugin: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-23] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-23] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_142.dll [2019-02-13] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1224194.dll [No File]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-11-13] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-11-13] (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2019-01-31] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems)
Chrome:
=======
CHR HomePage: Default -> hxxp://google.com/
CHR StartupUrls: Default -> "hxxps://www.google.ca/","about:blank"
CHR Profile: C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default [2019-02-18]
CHR Extension: (Slides) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-23]
CHR Extension: (PhotoMania) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajjfnbkfaofifbiflcicanlgaiafcamj [2018-09-14]
CHR Extension: (Docs) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-23]
CHR Extension: (Google Drive) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-17]
CHR Extension: (JSON Formatter) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcjindcccaagfpapjjmafapmmgkkhgoa [2018-11-15]
CHR Extension: (DuckDuckGo) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2018-12-25]
CHR Extension: (Lighthouse) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\blipmdconlkpinefehnmjammfjpmpbjk [2019-01-16]
CHR Extension: (YouTube) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-18]
CHR Extension: (uBlock Origin) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-02-18]
CHR Extension: (Google Search) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Adobe Acrobat) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-05]
CHR Extension: (Fontface Ninja) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\eljapbgkmlngdpckoiiibecpemleclhh [2019-01-17]
CHR Extension: (Full Page Screen Capture) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2019-01-31]
CHR Extension: (Sheets) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-02-23]
CHR Extension: (Chrome Remote Desktop) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2018-10-07]
CHR Extension: (JSON Viewer) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbmdgpbipfallnflgajpaliibnhdgobh [2018-11-13]
CHR Extension: (Google Docs Offline) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-03]
CHR Extension: (AdBlock) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-02-18]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2019-02-04]
CHR Extension: (PDF Viewer) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccchjobcggajhnmckffhcahkkbioifn [2015-10-18]
CHR Extension: (Page Ruler) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpkojjdgbllmedoapgfodplfhcbnbpn [2018-07-03]
CHR Extension: (Google Maps) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2018-09-14]
CHR Extension: (Facebook Screen Sharing) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncfpggehkhmjpdjpefomjchjafhmbnai [2019-02-08]
CHR Extension: (Vue.js devtools) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nhdogjmejiglipccpnnnanhbledajbpd [2018-09-26]
CHR Extension: (Broken Link Checker) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nibppfobembgfmejpjaaeocbogeonhch [2018-11-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-07]
CHR Extension: (ColorPick Eyedropper) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohcpnigalekghcmgcdcenkpelffpdolg [2018-12-18]
CHR Extension: (Gmail) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-18]
CHR Extension: (Chrome Media Router) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-23]
CHR HKU\S-1-5-21-3458830371-3080079856-3168983202-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2917864 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2709480 2018-12-13] (Adobe Systems Incorporated -> Adobe Systems, Incorporated)
S2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [257032 2015-08-21] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
S2 Apache2.4.38; c:\wamp\bin\apache\apache2.4.38\bin\httpd.exe [29696 2019-01-20] (Apache Software Foundation) [File not signed]
S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-04-03] (Apple Inc. -> Apple Inc.)
S2 AvidHubService; C:\Program Files\Avid\Cloud Client Services\Hub.exe [2299208 2017-11-09] (Avid Technology, Inc. -> Avid Technology, Inc.)
S2 AvidTransportClient; C:\Program Files\Avid\Cloud Client Services\TransportClient.exe [7067464 2017-11-09] (Avid Technology, Inc. -> Avid Technology, Inc.)
S2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\avp.exe [194000 2015-12-07] (Kaspersky Lab -> Kaspersky Lab ZAO)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-04] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-04] (Dropbox, Inc -> Dropbox, Inc.)
S2 DbxSvc; C:\Windows\system32\DbxSvc.exe [51024 2019-02-05] (Dropbox, Inc -> Dropbox, Inc.)
S2 DigiRefresh; C:\Program Files\Avid\Pro Tools First\MMERefresh.exe [117760 2018-07-25] (Avid Technology, Inc.) [File not signed]
S3 digiSPTIService64; C:\Program Files\Avid\Pro Tools First\digisptiservice64.exe [197632 2018-07-25] (Avid Technology, Inc.) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
S2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Trusted Connect Service -> Intel(R) Corporation)
S2 Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [505856 2017-02-10] (Intel Corporation) [File not signed]
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-11-13] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
S2 Leawo_service; C:\Program Files (x86)\Common Files\Appkeys\yytool64.exe [1114608 2015-11-04] (Shenzhen Moyea Software -> )
S2 MongoDB; C:\Program Files\MongoDB\Server\4.0\bin\mongod.exe [32358912 2018-08-27] (MongoDB, Inc) [File not signed]
S2 nebula; C:\Program Files\Logitech\Collaboration\Services\Video\ServiceLayer.exe [4477576 2018-06-18] (Logitech Inc -> Logitech)
S2 nordvpn-service; C:\Program Files (x86)\NordVPN\nordvpn-service.exe [437200 2018-11-06] (TEFINCOM S.A. -> )
S2 softOSD; C:\Program Files (x86)\softOSD\softOSD.exe [291384 2010-12-18] (EnTech Taiwan -> EnTech Taiwan)
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\vssbridge64.exe [144640 2015-07-08] (Kaspersky Lab -> AO Kaspersky Lab)
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [108776 2016-09-06] (Microsoft Corporation -> Microsoft Corporation)
S2 wampapache; c:\wamp\bin\apache\apache2.4.38\bin\httpd.exe [29696 2019-01-20] (Apache Software Foundation) [File not signed]
S3 wampmysqld; c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe [10959360 2014-05-01] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Windows -> Microsoft Corporation)
S2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" -u activation.paceap.com/InitiateActivation [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [21635072 2015-08-21] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
S3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [673816 2015-08-21] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-05] (Kaspersky Lab -> Kaspersky Lab ZAO)
S3 FocusriteUSB; C:\Windows\System32\DRIVERS\FocusriteUSB.sys [87056 2018-01-09] (Focusrite Audio Engineering Ltd. -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSBAudio; C:\Windows\System32\drivers\FocusriteUSBAudio.sys [45072 2018-01-09] (Focusrite Audio Engineering Ltd. -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSBSwRoot; C:\Windows\System32\DRIVERS\FocusriteUSBSwRoot.sys [88592 2018-01-09] (Focusrite Audio Engineering Ltd. -> Focusrite Audio Engineering Ltd.)
S3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [5363520 2014-03-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 IntcAzAudAddService; C:\Windows\System32\drivers\RTDVHD64.sys [2191832 2013-08-15] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
S3 IntcDAud; C:\Windows\System32\DRIVERS\IntcDAud.sys [342528 2014-03-26] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab -> Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab -> Kaspersky Lab ZAO)
S1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70000 2015-06-27] (Kaspersky Lab -> Kaspersky Lab ZAO)
S2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab -> Kaspersky Lab ZAO)
R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [181640 2015-12-07] (Kaspersky Lab -> AO Kaspersky Lab)
S1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [227000 2015-12-07] (Kaspersky Lab -> AO Kaspersky Lab)
S1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [940928 2015-12-07] (Kaspersky Lab -> AO Kaspersky Lab)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [39096 2015-06-11] (Kaspersky Lab -> Kaspersky Lab ZAO)
S3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [41144 2015-06-06] (Kaspersky Lab -> Kaspersky Lab ZAO)
S3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [41648 2015-06-07] (Kaspersky Lab -> Kaspersky Lab ZAO)
S1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-12-07] (Kaspersky Lab -> AO Kaspersky Lab)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [65208 2015-06-11] (Kaspersky Lab -> Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [103096 2015-06-16] (Kaspersky Lab -> Kaspersky Lab ZAO)
S1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab -> Kaspersky Lab ZAO)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-11-13] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
S3 nusb3hub; C:\Windows\system32\drivers\nusb3hub.sys [80384 2010-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Renesas Electronics Corporation)
S3 nusb3xhc; C:\Windows\system32\drivers\nusb3xhc.sys [180736 2010-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Renesas Electronics Corporation)
S1 se64a; C:\Windows\System32\Drivers\se64a.sys [14032 2007-05-03] (EnTech Taiwan -> EnTech Taiwan)
S1 se64a; C:\Windows\SysWOW64\Drivers\se64a.sys [14032 2007-05-03] (EnTech Taiwan -> EnTech Taiwan)
S3 SNXPCAMD; C:\Windows\System32\DRIVERS\snxpcamd.sys [55352 2013-08-01] (SUNIX CO., LTD. -> SUNIX Co., Ltd.)
S3 SNXPPAMD; C:\Windows\System32\DRIVERS\snxppamd.sys [105528 2013-08-01] (SUNIX CO., LTD. -> SUNIX Co., Ltd.)
R3 tapnordvpn; C:\Windows\System32\DRIVERS\tapnordvpn.sys [35592 2018-07-24] (TEFINCOM S.A. -> The OpenVPN Project)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
R1 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [131144 2017-04-28] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [205952 2017-04-28] (Oracle Corporation -> Oracle Corporation)
S3 dbx; system32\DRIVERS\dbx.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-02-18 02:38 - 2019-02-18 02:40 - 000000000 ____D C:\FRST
2019-02-18 02:37 - 2019-02-18 02:40 - 000000000 ____D C:\Users\Owner\Desktop\MyCity.rs
2019-02-18 02:24 - 2019-02-18 02:25 - 000000000 ____D C:\Users\Owner\Desktop\Adobe-Recent
2019-02-18 01:19 - 2019-02-18 01:33 - 000332952 _____ C:\Windows\ntbtlog.txt
2019-02-18 00:10 - 2019-02-18 00:10 - 000003490 _____ C:\Windows\System32\Tasks\AutoKMS
2019-02-17 23:20 - 2019-02-17 23:20 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign2f8630444ef37795
2019-02-17 23:08 - 2019-02-17 23:08 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignc8b8c0c10720a1f1
2019-02-17 23:08 - 2019-02-17 23:08 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign15f429ab4b81235d
2019-02-16 23:12 - 2019-02-16 23:12 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignb8c2f7126321b3fc
2019-02-16 23:12 - 2019-02-16 23:12 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign6ab9c9124af09c55
2019-02-16 23:12 - 2019-02-16 23:12 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign0b27ae4306499b19
2019-02-16 22:37 - 2019-02-16 22:37 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign11449094348c5b28
2019-02-16 13:40 - 2019-02-16 13:40 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignb4ea6606c9d2ea76
2019-02-16 13:40 - 2019-02-16 13:40 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign268428e0614638bc
2019-02-16 13:40 - 2019-02-16 13:40 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign18182f969a33c831
2019-02-15 20:57 - 2019-02-15 20:57 - 000001557 _____ C:\Users\Owner\Downloads\objects.zip
2019-02-14 14:08 - 2019-02-14 14:08 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignb84078874acdb33e
2019-02-14 14:08 - 2019-02-14 14:08 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsigna105e9af05369350
2019-02-14 14:08 - 2019-02-14 14:08 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign6fea24fbba03aead
2019-02-14 11:47 - 2019-02-14 11:48 - 048359077 _____ C:\Users\Owner\Downloads\20_Broken_Glass_PS_Brushes_abr_vol_10.zip
2019-02-14 11:19 - 2019-02-14 11:19 - 020464591 _____ C:\Users\Owner\Downloads\20_Shattered_Glass_PS_Brushes_abr_vol_7.zip
2019-02-14 11:01 - 2019-02-14 11:01 - 027953524 _____ C:\Users\Owner\Downloads\20 Painter PS Brushes abr.rar
2019-02-14 10:41 - 2019-02-14 10:41 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign201271d4efcbb078
2019-02-14 10:39 - 2019-02-14 10:39 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignb7b7a61f10ed570f
2019-02-14 10:39 - 2019-02-14 10:39 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign31d65601cf488d92
2019-02-13 10:33 - 2019-02-13 10:47 - 000066625 _____ C:\Users\Owner\Desktop\style.scss
2019-02-11 18:02 - 2019-02-11 18:02 - 001645202 _____ C:\Users\Owner\Downloads\Opstina-Tivat-sajt-Mock-Up (1).pdf
2019-02-11 14:45 - 2019-02-11 14:45 - 002824168 _____ (DLL-Files.com Client ) C:\Users\Owner\Downloads\clientsetup_d-0.exe
2019-02-11 14:45 - 2019-02-11 14:45 - 000556651 _____ C:\Users\Owner\Downloads\libeay32.zip
2019-02-11 14:27 - 2019-02-11 14:28 - 000179712 _____ (Derick Rethans) C:\Users\Owner\Downloads\php_xdebug-2.7.0RC1-7.1-vc14-nts.dll
2019-02-11 11:32 - 2019-02-11 11:32 - 000205859 _____ C:\Users\Owner\Downloads\Tivat 2019 Design Stradegy.pdf
2019-02-09 23:20 - 2019-02-09 23:20 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsigned52acb9c259fc84
2019-02-09 22:14 - 2019-02-09 22:14 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign150c1fc5b1090aa2
2019-02-09 22:10 - 2019-02-09 22:10 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign8ea7ed13a9fcc4d0
2019-02-09 22:00 - 2019-02-09 22:00 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign30b171d90da67415
2019-02-09 22:00 - 2019-02-09 22:00 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign0ecc909c02986586
2019-02-07 21:45 - 2019-02-07 21:45 - 000384910 _____ C:\Users\Owner\Downloads\modelpos_main (1).sql
2019-02-07 21:40 - 2019-02-07 21:52 - 000380707 _____ C:\Users\Owner\Downloads\modelpos_main.sql
2019-02-07 12:29 - 2019-02-07 12:29 - 000144960 _____ C:\Users\Owner\Downloads\mailchimp-for-woocommerce.2.1.13.zip
2019-02-07 11:15 - 2019-02-07 11:15 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignf60fe17cac7647b6
2019-02-07 11:15 - 2019-02-07 11:15 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign86167a6d3f0b6241
2019-02-07 11:15 - 2019-02-07 11:15 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign396e59bb4287f718
2019-02-06 13:49 - 2019-02-06 13:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2019-02-06 00:40 - 2019-02-06 00:40 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignf1e320369b78ae8a
2019-02-06 00:37 - 2019-02-06 00:37 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign4e83613d7d200a59
2019-02-06 00:36 - 2019-02-06 00:36 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignf9e7ec3a7f100099
2019-02-06 00:36 - 2019-02-06 00:36 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign1f21ebdeb6471bdc
2019-02-05 05:15 - 2019-02-05 05:15 - 000051024 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe
2019-02-05 05:15 - 2019-02-05 05:15 - 000047800 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys
2019-02-05 05:15 - 2019-02-05 05:15 - 000047800 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys
2019-02-05 05:15 - 2019-02-05 05:15 - 000047800 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys
2019-02-03 09:25 - 2019-02-03 12:24 - 000000547 _____ C:\Users\Owner\Desktop\Hacking-practice.txt
2019-01-31 22:23 - 2019-01-31 22:23 - 000012488 _____ C:\Users\Owner\Downloads\Schedule-Feb2019.xlsx
2019-01-31 17:21 - 2019-01-31 17:21 - 000017865 _____ C:\Users\Owner\Downloads\eml
2019-01-31 00:11 - 2019-01-31 00:11 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsigndbbfd150f0909737
2019-01-31 00:10 - 2019-01-31 00:10 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign5f8df995d47e93d7
2019-01-31 00:10 - 2019-01-31 00:10 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign035becb8bc58be8b
2019-01-29 11:22 - 2019-01-29 11:22 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsigndb53436e73e3a537
2019-01-29 11:22 - 2019-01-29 11:22 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign4343b57b239fe0db
2019-01-29 11:16 - 2019-01-29 11:29 - 000000663 _____ C:\Users\Owner\Downloads\home.html
2019-01-28 11:35 - 2019-01-28 11:35 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign6ab5bbcb0e218802
2019-01-28 11:35 - 2019-01-28 11:35 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign2bf7bd81fc50f08f
2019-01-28 11:35 - 2019-01-28 11:35 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign0144a3fd20032bc7
2019-01-23 22:29 - 2019-01-23 22:29 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign42e73d91da915b6d
2019-01-23 22:25 - 2019-01-23 22:25 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign571e22b7c2730f2a
2019-01-23 22:25 - 2019-01-23 22:25 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign35e31b4428118224
2019-01-23 10:56 - 2019-01-23 10:56 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignd262ec3ac5b8eee1
2019-01-23 10:56 - 2019-01-23 10:56 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign9ab6d438709d6d39
2019-01-23 10:56 - 2019-01-23 10:56 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign3b87958f12b57601
2019-01-22 09:37 - 2019-01-22 09:38 - 000052175 _____ C:\Users\Owner\Downloads\style.css
2019-01-21 10:00 - 2019-01-21 10:00 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsignbbe298de44e590f3
2019-01-21 09:59 - 2019-01-21 09:59 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign5e99c99161d14476
2019-01-21 09:59 - 2019-01-21 09:59 - 000000000 ____D C:\Users\Owner\AppData\Local\Tempzxpsign2ecac49d9ceb580e
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-02-18 02:35 - 2016-11-10 17:05 - 001853952 ___SH C:\Users\Owner\Downloads\Thumbs.db
2019-02-18 02:15 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\inf
2019-02-18 01:41 - 2015-10-20 18:44 - 380152832 _____ C:\Users\Owner\AppData\Local\SageThumbs.db3
2019-02-18 01:33 - 2018-10-11 10:34 - 000065536 _____ C:\Windows\system32\Ikeext.etl
2019-02-18 01:20 - 2017-04-19 21:19 - 000672768 ___SH C:\Users\Owner\Desktop\Thumbs.db
2019-02-18 00:13 - 2009-07-13 20:45 - 000021504 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2019-02-18 00:13 - 2009-07-13 20:45 - 000021504 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2019-02-18 00:11 - 2015-11-02 00:45 - 000000000 ____D C:\Users\Owner\AppData\Roaming\MPC-HC
2019-02-18 00:11 - 2015-11-02 00:12 - 000000000 ____D C:\Users\Owner\AppData\Roaming\uTorrent
2019-02-17 23:55 - 2015-12-01 21:53 - 000000906 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2019-02-17 23:42 - 2015-03-31 11:31 - 000000000 ____D C:\Users\Owner\AppData\Local\Adobe
2019-02-17 23:40 - 2016-05-09 09:05 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2019-02-17 23:36 - 2015-12-01 21:53 - 000000902 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2019-02-17 23:35 - 2009-07-13 21:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-02-17 23:19 - 2009-07-13 19:20 - 000000000 ____D C:\Windows\tracing
2019-02-17 01:41 - 2015-12-19 23:52 - 000000000 ____D C:\Users\Owner\AppData\Local\Spotify
2019-02-17 00:53 - 2015-12-19 23:51 - 000000000 ____D C:\Users\Owner\AppData\Roaming\Spotify
2019-02-16 21:57 - 2015-10-19 23:27 - 000000034 _____ C:\Users\Owner\AppData\Roaming\AdobeWLCMCache.dat
2019-02-16 16:41 - 2015-03-31 11:56 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2019-02-16 08:58 - 2016-05-12 21:38 - 000008066 _____ C:\Users\Owner\.bash_history
2019-02-15 13:35 - 2018-09-14 21:32 - 000029192 _____ C:\Users\Owner\Desktop\lozinke sa komp-Sep.2018..txt
2019-02-15 10:02 - 2015-10-18 10:20 - 000002228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-02-13 15:48 - 2015-12-01 21:53 - 000003902 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA
2019-02-13 15:48 - 2015-12-01 21:53 - 000003650 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore
2019-02-13 11:42 - 2018-12-25 13:40 - 000000000 ____D C:\Users\Public\Pro Tools
2019-02-13 01:09 - 2016-08-04 22:01 - 000004450 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2019-02-13 01:09 - 2015-03-31 11:56 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-02-13 01:09 - 2015-03-31 11:56 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-02-13 01:09 - 2015-03-31 11:56 - 000004312 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2019-02-13 01:09 - 2015-03-31 11:56 - 000000000 ____D C:\Windows\system32\Macromed
2019-02-13 00:09 - 2018-04-10 15:09 - 000004462 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-02-12 22:20 - 2018-09-16 02:32 - 000000600 _____ C:\Users\Owner\AppData\Roaming\winscp.rnd
2019-02-12 22:16 - 2016-03-19 13:06 - 000000000 ____D C:\Users\Owner\AppData\Roaming\npm
2019-02-12 22:05 - 2016-07-14 21:12 - 000000000 ____D C:\Users\Owner\Desktop\Js-Everything!!!
2019-02-12 18:25 - 2015-04-08 22:23 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-02-12 18:24 - 2018-09-16 12:39 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2019-02-12 18:24 - 2018-09-16 12:39 - 000002041 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
2019-02-11 14:14 - 2015-12-01 21:54 - 000000000 ___RD C:\Users\Owner\Dropbox
2019-02-11 14:12 - 2018-10-17 22:42 - 000001314 _____ C:\Users\Public\Desktop\Skype.lnk
2019-02-11 14:12 - 2018-09-24 02:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2019-02-11 14:06 - 2016-09-26 22:43 - 000000000 ____D C:\Users\Owner\AppData\Roaming\KeePass
2019-02-10 09:32 - 2018-10-28 10:03 - 000000000 ____D C:\Users\Owner\AppData\LocalLow\Mozilla
2019-02-09 22:14 - 2018-10-08 14:00 - 000000000 ____D C:\Users\Owner\Desktop\MackRaicevic.com-Design
2019-02-07 21:44 - 2016-12-04 02:31 - 000000000 ____D C:\wamp
2019-02-07 21:24 - 2016-12-14 22:29 - 000021150 _____ C:\home_passwords.kdbx
2019-02-06 18:23 - 2009-07-13 21:13 - 000781790 _____ C:\Windows\system32\PerfStringBackup.INI
2019-02-06 13:49 - 2015-12-01 21:52 - 000000000 ____D C:\Program Files (x86)\Dropbox
2019-02-06 11:29 - 2015-03-31 11:27 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-02-05 07:08 - 2018-10-07 22:43 - 000000000 ____D C:\Users\Owner\Desktop\Aki-Activities
2019-02-04 18:08 - 2015-10-18 10:36 - 000023973 _____ C:\Users\Owner\Desktop\lozinke sa komp-2017..txt
2019-01-30 15:57 - 2018-10-27 22:14 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2019-01-30 15:57 - 2015-03-31 11:27 - 000000000 ____D C:\ProgramData\Mozilla
2019-01-29 11:25 - 2015-10-19 00:57 - 000001456 _____ C:\Users\Owner\AppData\Local\Adobe Save for Web 13.0 Prefs
2019-01-28 21:20 - 2018-11-18 23:52 - 000000000 ____D C:\Users\Owner\Desktop\Devices-Mockup-Showcase
==================== Files in the root of some directories =======
2014-08-13 00:49 - 2014-08-13 00:49 - 130565325 _____ () C:\Program Files (x86)\openoffice1.cab
2014-08-13 00:48 - 2014-08-13 00:48 - 002310144 _____ () C:\Program Files (x86)\openoffice411.msi
2014-08-13 00:48 - 2014-08-13 00:48 - 000478720 _____ () C:\Program Files (x86)\setup.exe
2014-08-13 00:48 - 2014-08-13 00:48 - 000000279 _____ () C:\Program Files (x86)\setup.ini
2016-10-09 20:16 - 2016-10-09 20:17 - 000005766 _____ () C:\Program Files (x86)\style.css
2016-10-09 20:16 - 2016-10-09 20:17 - 000004237 _____ () C:\Program Files (x86)\style.css.map
2015-10-19 23:27 - 2019-02-16 21:57 - 000000034 _____ () C:\Users\Owner\AppData\Roaming\AdobeWLCMCache.dat
2018-12-25 12:47 - 2018-12-25 12:47 - 000000865 _____ () C:\Users\Owner\AppData\Roaming\Avid_CCS_Service_Stop.log
2018-09-16 02:32 - 2019-02-12 22:20 - 000000600 _____ () C:\Users\Owner\AppData\Roaming\winscp.rnd
2015-10-19 00:57 - 2019-01-29 11:25 - 000001456 _____ () C:\Users\Owner\AppData\Local\Adobe Save for Web 13.0 Prefs
2018-09-28 01:36 - 2018-09-28 01:36 - 000000000 _____ () C:\Users\Owner\AppData\Local\oobelibMkey.log
2016-02-21 23:43 - 2016-02-22 00:19 - 000000600 _____ () C:\Users\Owner\AppData\Local\PUTTY.RND
2016-03-28 10:39 - 2016-03-28 10:39 - 000007605 _____ () C:\Users\Owner\AppData\Local\Resmon.ResmonCfg
2015-10-20 18:44 - 2019-02-18 01:41 - 380152832 _____ () C:\Users\Owner\AppData\Local\SageThumbs.db3
2016-08-11 22:55 - 2016-08-11 22:55 - 000000032 RSHOT () C:\Users\Owner\AppData\Local\t80.dat
Some files in TEMP:
====================
2019-02-18 00:11 - 2019-02-18 00:11 - 000152576 _____ () C:\Users\Owner\AppData\Local\Temp\ext776785060072496251.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\dllhost.exe => File is digitally signed
C:\Windows\SysWOW64\dllhost.exe => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2019-02-12 00:47
==================== End of FRST.txt ============================
|