provjera da nema virusa

provjera da nema virusa

offline
  • Pridružio: 22 Jan 2012
  • Poruke: 22
  • Gde živiš: Montenergo

Pozdrav forumasi
Windows 7 32-bit je,zelim samo da provjerim da nemam slucajno virusa.
Unaprijed Hvala
Izvjestaj

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:2-08-2014
Ran by Male (administrator) on MALE-PC on 03-08-2014 21:26:42
Running from C:\Users\Male\Desktop
Platform: Microsoft Windows 7 Professional (X86) OS Language: English (United States)
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastUI.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files\Internet Bilo gdje\AssistantServices.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Users\Male\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Male\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Male\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Male\AppData\Local\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKU\S-1-5-21-1676064344-2559965749-2854349989-1000\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files\DAEMON Tools Pro\DTAgent.exe [3108480 2012-10-23] (DT Soft Ltd)
HKU\S-1-5-21-1676064344-2559965749-2854349989-1000\...\Run: [Google Update] => C:\Users\Male\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-06-10] (Google Inc.)
HKU\S-1-5-21-1676064344-2559965749-2854349989-1000\...\MountPoints2: I - I:\Windows\Autorun.exe
HKU\S-1-5-21-1676064344-2559965749-2854349989-1000\...\MountPoints2: {b97e8d78-4d20-11e4-8ca8-6c626db28822} - I:\Windows\Autorun.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Tcpip\..\Interfaces\{1284A1F2-8083-4DD9-991B-DD6B09DB646F}: [NameServer]79.143.101.229 10.11.12.14

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Male\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Male\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)

Chrome:
=======
CHR HomePage: hxxp://www.google.me/
CHR StartupUrls: "hxxp://www.google.me/"
CHR Plugin: (Shockwave Flash) - C:\Users\Male\AppData\Local\Google\Chrome\Application\36.0.1985.125\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Male\AppData\Local\Google\Chrome\Application\36.0.1985.125\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Male\AppData\Local\Google\Chrome\Application\36.0.1985.125\pdf.dll ()
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Extension: (Google Drive) - C:\Users\Male\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-06]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Male\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-06-11]
CHR Extension: (YouTube) - C:\Users\Male\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-06]
CHR Extension: (Google Search) - C:\Users\Male\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-06]
CHR Extension: (Google Wallet) - C:\Users\Male\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-10]
CHR Extension: (Gmail) - C:\Users\Male\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-06]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [40384 2010-06-28] (AVAST Software)
R3 avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [40384 2010-06-28] (AVAST Software)
R3 avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [40384 2010-06-28] (AVAST Software)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15904544 2014-02-05] (NVIDIA Corporation)
R2 UI Assistant Service; C:\Program Files\Internet Bilo gdje\AssistantServices.exe [253264 2011-01-24] ()

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswFsBlk; C:\Windows\system32\Drivers\aswFsBlk.sys [17744 2010-06-28] (ALWIL Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [50256 2010-06-28] (ALWIL Software)
R1 aswRdr; C:\Windows\system32\Drivers\aswRdr.sys [23376 2010-06-28] (ALWIL Software)
R1 aswSP; C:\Windows\system32\Drivers\aswSP.sys [165456 2010-06-28] (ALWIL Software)
R1 aswTdi; C:\Windows\system32\Drivers\aswTdi.sys [46672 2010-06-28] (ALWIL Software)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2014-10-10] (DT Soft Ltd)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [22688 2014-06-13] (REALiX(tm))
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [34080 2013-12-27] (NVIDIA Corporation)

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-10 08:31 - 2014-10-10 08:32 - 00000000 ____D () C:\Program Files\Internet Bilo gdje
2014-10-10 08:31 - 2014-10-10 08:31 - 00001953 _____ () C:\Users\Public\Desktop\Internet Bilo gdje.lnk
2014-10-10 08:31 - 2014-10-10 08:31 - 00000000 ____D () C:\Windows\system32\SupportAppCB
2014-10-10 08:31 - 2014-10-10 08:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Bilo gdje
2014-10-10 08:31 - 2009-10-29 19:28 - 00105088 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\ZTEusbser6k.sys
2014-10-10 08:31 - 2009-10-29 19:28 - 00105088 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\ZTEusbnmea.sys
2014-10-10 08:31 - 2009-10-29 19:28 - 00105088 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\ZTEusbmdm6k.sys
2014-10-10 08:31 - 2009-10-29 19:28 - 00009216 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\massfilter.sys
2014-10-10 08:27 - 2014-10-10 08:27 - 00001047 _____ () C:\Users\Male\Desktop\Cheat Engine.lnk
2014-10-10 08:27 - 2014-10-10 08:27 - 00000000 ____D () C:\Users\Male\Documents\My Cheat Tables
2014-10-10 08:27 - 2014-10-10 08:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.1
2014-10-10 08:27 - 2014-10-10 08:27 - 00000000 ____D () C:\Program Files\Cheat Engine 6.1
2014-10-10 08:24 - 2014-10-10 08:26 - 00000000 ____D () C:\Program Files\DAEMON Tools Pro
2014-10-10 08:24 - 2014-10-10 08:24 - 00242240 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-10-10 08:24 - 2014-10-10 08:24 - 00001882 _____ () C:\Users\Public\Desktop\DAEMON Tools Pro.lnk
2014-10-10 08:24 - 2014-10-10 08:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro
2014-10-10 08:24 - 2014-06-14 03:59 - 00000000 ____D () C:\Users\Male\AppData\Roaming\DAEMON Tools Pro
2014-10-10 08:24 - 2014-06-14 03:59 - 00000000 ____D () C:\ProgramData\DAEMON Tools Pro
2014-10-06 08:22 - 2014-10-06 08:22 - 00002009 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-10-06 08:22 - 2014-10-06 08:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
2014-10-06 08:22 - 2010-06-28 22:37 - 00165456 _____ (ALWIL Software) C:\Windows\system32\Drivers\aswSP.sys
2014-10-06 08:22 - 2010-06-28 22:37 - 00046672 _____ (ALWIL Software) C:\Windows\system32\Drivers\aswTdi.sys
2014-10-06 08:22 - 2010-06-28 22:33 - 00023376 _____ (ALWIL Software) C:\Windows\system32\Drivers\aswRdr.sys
2014-10-06 08:22 - 2010-06-28 22:32 - 00050256 _____ (ALWIL Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-10-06 08:22 - 2010-06-28 22:32 - 00017744 _____ (ALWIL Software) C:\Windows\system32\Drivers\aswFsBlk.sys
2014-10-06 08:21 - 2014-10-06 08:21 - 00000000 ____D () C:\ProgramData\Alwil Software
2014-10-06 08:21 - 2014-10-06 08:21 - 00000000 ____D () C:\Program Files\Alwil Software
2014-10-06 08:21 - 2010-06-28 22:57 - 00165032 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-10-06 08:21 - 2010-06-28 22:57 - 00038848 _____ (ALWIL Software) C:\Windows\avastSS.scr
2014-10-06 08:20 - 2014-10-06 08:20 - 00000000 ____D () C:\Users\Male\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-10-06 08:20 - 2014-06-10 19:14 - 00000000 ____D () C:\Users\Male\AppData\Local\Google
2014-10-06 08:18 - 2014-10-06 08:18 - 00399466 __RSH () C:\ZXVMP
2014-10-06 08:18 - 2014-10-06 08:18 - 00000000 __RSH () C:\qvnm.ld
2014-10-06 08:16 - 2014-10-06 08:16 - 00000000 ____D () C:\Users\Male\AppData\Roaming\WinRAR
2014-10-06 08:16 - 2014-10-06 08:16 - 00000000 ____D () C:\Users\Male\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-10-06 08:16 - 2014-10-06 08:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-10-06 08:16 - 2014-10-06 08:16 - 00000000 ____D () C:\Program Files\WinRAR
2014-10-06 08:07 - 2014-10-06 08:07 - 00000000 ____D () C:\Users\Male\AppData\Local\NVIDIA Corporation
2014-10-06 08:06 - 2014-10-06 08:06 - 00000000 ____D () C:\Users\Male\AppData\Local\NVIDIA
2014-10-06 08:06 - 2014-02-05 11:31 - 01048152 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap.dll
2014-10-06 08:06 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-10-06 08:06 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-10-06 08:06 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-10-06 08:05 - 2014-10-06 08:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-10-06 08:05 - 2014-10-06 08:05 - 00000000 ____D () C:\Program Files\AGEIA Technologies
2014-10-06 08:05 - 2014-08-03 18:55 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-06 08:04 - 2014-10-06 08:09 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-06 08:04 - 2014-08-03 21:18 - 00001162 _____ () C:\Users\Male\Desktop\My Documents.lnk
2014-10-06 08:04 - 2014-03-04 16:29 - 00053024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-10-06 08:04 - 2014-03-04 14:34 - 04348704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-10-06 08:04 - 2014-03-04 14:34 - 03044696 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll
2014-10-06 08:04 - 2014-03-04 14:34 - 00663896 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-10-06 08:04 - 2014-03-04 14:34 - 00375128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-10-06 08:04 - 2014-03-04 14:34 - 00062752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-10-06 08:04 - 2014-03-04 13:32 - 00599840 _____ (NVIDIA Corporation) C:\Windows\system32\nvStreaming.exe
2014-10-06 08:04 - 2014-03-04 07:35 - 03649185 _____ () C:\Windows\system32\nvcoproc.bin
2014-10-06 08:03 - 2014-10-06 08:06 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-06 08:03 - 2014-03-04 16:29 - 23716640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 17559384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 15783992 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 14709720 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 10523480 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-10-06 08:03 - 2014-03-04 16:29 - 09728064 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 09690424 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 02956632 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 02715264 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 02411976 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 01049888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco3233523.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 00894296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco3233523.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 00865224 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 00847136 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 00832936 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshim.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 00305600 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim32.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 00148016 _____ (NVIDIA Corporation) C:\Windows\system32\nvinit.dll
2014-10-06 08:03 - 2014-03-04 16:29 - 00019204 _____ () C:\Windows\system32\nvinfo.pb
2014-10-06 08:03 - 2013-12-27 20:42 - 00034080 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad32v.sys
2014-10-06 08:03 - 2013-12-27 20:42 - 00033056 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap32v.dll
2014-10-06 08:03 - 2013-11-28 15:38 - 00162592 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda32v.sys
2014-10-06 08:03 - 2013-11-28 15:38 - 00028448 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap32.dll
2014-10-06 08:03 - 2013-11-22 10:36 - 00895264 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco3220103.dll
2014-10-06 08:00 - 2014-06-10 08:58 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-10-06 08:00 - 2009-11-25 11:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-06 08:00 - 2009-11-25 11:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2014-10-06 08:00 - 2009-11-25 11:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2014-10-06 08:00 - 2009-11-25 11:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2014-10-06 08:00 - 2009-11-25 11:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2014-08-03 21:26 - 2014-08-03 21:27 - 00008240 _____ () C:\Users\Male\Desktop\FRST.txt
2014-08-03 21:26 - 2014-08-03 21:26 - 01084928 _____ (Farbar) C:\Users\Male\Desktop\FRST.exe
2014-08-03 21:26 - 2014-08-03 21:26 - 00000000 ____D () C:\FRST
2014-08-03 21:25 - 2014-08-03 21:25 - 00001783 _____ () C:\Users\Male\Desktop\Play CS-GO.lnk
2014-08-03 18:55 - 2014-08-03 18:55 - 00504040 _____ () C:\Windows\Minidump\080314-26504-01.dmp
2014-08-03 09:12 - 2014-08-03 09:12 - 00415192 _____ () C:\Windows\Minidump\080314-15787-01.dmp
2014-08-02 12:42 - 2014-08-02 12:42 - 00312768 _____ () C:\Windows\Minidump\080214-17409-02.dmp
2014-08-02 12:32 - 2014-08-02 12:32 - 00498096 _____ () C:\Windows\Minidump\080214-15896-01.dmp
2014-08-01 21:35 - 2014-08-01 21:35 - 00000000 ____D () C:\Users\Male\AppData\Local\Game Updater
2014-08-01 21:35 - 2014-08-01 21:35 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-08-01 21:33 - 2014-08-03 21:12 - 00000000 ____D () C:\Users\Male\Documents\FIFA 14
2014-08-01 21:33 - 2014-08-01 21:33 - 00001760 _____ () C:\Users\Public\Desktop\FIFA 14.lnk
2014-08-01 21:33 - 2014-08-01 21:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 14
2014-08-01 20:53 - 2014-08-03 21:25 - 00000000 ____D () C:\Games
2014-08-01 20:52 - 2014-08-01 20:52 - 00000000 ____D () C:\Users\Male\AppData\Local\Setup Integrity Check
2014-07-23 16:43 - 2014-07-23 16:43 - 00581184 _____ () C:\Windows\Minidump\072314-15303-01.dmp
2014-07-11 16:30 - 2014-07-11 16:30 - 00578096 _____ () C:\Windows\Minidump\071114-14991-01.dmp
2014-07-04 21:53 - 2014-07-04 21:53 - 00419848 _____ () C:\Windows\Minidump\070414-15241-01.dmp

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-10 08:32 - 2014-10-10 08:31 - 00000000 ____D () C:\Program Files\Internet Bilo gdje
2014-10-10 08:31 - 2014-10-10 08:31 - 00001953 _____ () C:\Users\Public\Desktop\Internet Bilo gdje.lnk
2014-10-10 08:31 - 2014-10-10 08:31 - 00000000 ____D () C:\Windows\system32\SupportAppCB
2014-10-10 08:31 - 2014-10-10 08:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Bilo gdje
2014-10-10 08:31 - 2010-09-02 07:52 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-10-10 08:27 - 2014-10-10 08:27 - 00001047 _____ () C:\Users\Male\Desktop\Cheat Engine.lnk
2014-10-10 08:27 - 2014-10-10 08:27 - 00000000 ____D () C:\Users\Male\Documents\My Cheat Tables
2014-10-10 08:27 - 2014-10-10 08:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.1
2014-10-10 08:27 - 2014-10-10 08:27 - 00000000 ____D () C:\Program Files\Cheat Engine 6.1
2014-10-10 08:26 - 2014-10-10 08:24 - 00000000 ____D () C:\Program Files\DAEMON Tools Pro
2014-10-10 08:24 - 2014-10-10 08:24 - 00242240 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-10-10 08:24 - 2014-10-10 08:24 - 00001882 _____ () C:\Users\Public\Desktop\DAEMON Tools Pro.lnk
2014-10-10 08:24 - 2014-10-10 08:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro
2014-10-06 08:22 - 2014-10-06 08:22 - 00002009 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-10-06 08:22 - 2014-10-06 08:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
2014-10-06 08:22 - 2009-07-14 04:04 - 00002577 _____ () C:\Windows\system32\config.nt
2014-10-06 08:21 - 2014-10-06 08:21 - 00000000 ____D () C:\ProgramData\Alwil Software
2014-10-06 08:21 - 2014-10-06 08:21 - 00000000 ____D () C:\Program Files\Alwil Software
2014-10-06 08:20 - 2014-10-06 08:20 - 00000000 ____D () C:\Users\Male\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-10-06 08:18 - 2014-10-06 08:18 - 00399466 __RSH () C:\ZXVMP
2014-10-06 08:18 - 2014-10-06 08:18 - 00000000 __RSH () C:\qvnm.ld
2014-10-06 08:16 - 2014-10-06 08:16 - 00000000 ____D () C:\Users\Male\AppData\Roaming\WinRAR
2014-10-06 08:16 - 2014-10-06 08:16 - 00000000 ____D () C:\Users\Male\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-10-06 08:16 - 2014-10-06 08:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-10-06 08:16 - 2014-10-06 08:16 - 00000000 ____D () C:\Program Files\WinRAR
2014-10-06 08:10 - 2014-10-06 08:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-10-06 08:09 - 2014-10-06 08:04 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-10-06 08:07 - 2014-10-06 08:07 - 00000000 ____D () C:\Users\Male\AppData\Local\NVIDIA Corporation
2014-10-06 08:06 - 2014-10-06 08:06 - 00000000 ____D () C:\Users\Male\AppData\Local\NVIDIA
2014-10-06 08:06 - 2014-10-06 08:03 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-10-06 08:05 - 2014-10-06 08:05 - 00000000 ____D () C:\Program Files\AGEIA Technologies
2014-10-06 08:04 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Help
2014-08-03 21:27 - 2014-08-03 21:26 - 00008240 _____ () C:\Users\Male\Desktop\FRST.txt
2014-08-03 21:26 - 2014-08-03 21:26 - 01084928 _____ (Farbar) C:\Users\Male\Desktop\FRST.exe
2014-08-03 21:26 - 2014-08-03 21:26 - 00000000 ____D () C:\FRST
2014-08-03 21:25 - 2014-08-03 21:25 - 00001783 _____ () C:\Users\Male\Desktop\Play CS-GO.lnk
2014-08-03 21:25 - 2014-08-01 20:53 - 00000000 ____D () C:\Games
2014-08-03 21:22 - 2010-09-02 07:50 - 01501684 _____ () C:\Windows\WindowsUpdate.log
2014-08-03 21:18 - 2014-10-06 08:04 - 00001162 _____ () C:\Users\Male\Desktop\My Documents.lnk
2014-08-03 21:15 - 2010-09-02 07:53 - 00781298 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-08-03 21:12 - 2014-08-01 21:33 - 00000000 ____D () C:\Users\Male\Documents\FIFA 14
2014-08-03 21:09 - 2014-06-13 04:22 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-03 20:31 - 2014-06-10 19:14 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676064344-2559965749-2854349989-1000UA.job
2014-08-03 19:01 - 2009-07-14 06:34 - 00012848 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-03 19:01 - 2009-07-14 06:34 - 00012848 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-03 18:55 - 2014-10-06 08:05 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-08-03 18:55 - 2014-08-03 18:55 - 00504040 _____ () C:\Windows\Minidump\080314-26504-01.dmp
2014-08-03 18:55 - 2014-06-11 00:02 - 177971426 _____ () C:\Windows\MEMORY.DMP
2014-08-03 18:55 - 2014-06-11 00:02 - 00000000 ____D () C:\Windows\Minidump
2014-08-03 18:55 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-08-03 18:55 - 2009-07-14 06:39 - 00042378 _____ () C:\Windows\setupact.log
2014-08-03 13:31 - 2014-06-10 19:14 - 00000852 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1676064344-2559965749-2854349989-1000Core.job
2014-08-03 09:12 - 2014-08-03 09:12 - 00415192 _____ () C:\Windows\Minidump\080314-15787-01.dmp
2014-08-03 09:12 - 2009-07-14 06:53 - 00032618 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-08-02 12:42 - 2014-08-02 12:42 - 00312768 _____ () C:\Windows\Minidump\080214-17409-02.dmp
2014-08-02 12:32 - 2014-08-02 12:32 - 00498096 _____ () C:\Windows\Minidump\080214-15896-01.dmp
2014-08-01 21:35 - 2014-08-01 21:35 - 00000000 ____D () C:\Users\Male\AppData\Local\Game Updater
2014-08-01 21:35 - 2014-08-01 21:35 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-08-01 21:34 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-08-01 21:33 - 2014-08-01 21:33 - 00001760 _____ () C:\Users\Public\Desktop\FIFA 14.lnk
2014-08-01 21:33 - 2014-08-01 21:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 14
2014-08-01 20:52 - 2014-08-01 20:52 - 00000000 ____D () C:\Users\Male\AppData\Local\Setup Integrity Check
2014-07-23 16:43 - 2014-07-23 16:43 - 00581184 _____ () C:\Windows\Minidump\072314-15303-01.dmp
2014-07-11 16:30 - 2014-07-11 16:30 - 00578096 _____ () C:\Windows\Minidump\071114-14991-01.dmp
2014-07-09 08:15 - 2014-06-13 04:22 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-07-09 08:15 - 2014-06-13 04:22 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-07-04 21:53 - 2014-07-04 21:53 - 00419848 _____ () C:\Windows\Minidump\070414-15241-01.dmp

Some content of TEMP:
====================
C:\Users\Male\AppData\Local\Temp\PidGenX.dll
C:\Users\Male\AppData\Local\Temp\Uninstall.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-28 21:22

==================== End Of Log ============================


mycity.rs/must-login.png

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Arrow Da li imaš nekih konkretnih problema, ili samo proveravaš?




Arrow Preuzmi Malwarebytes Anti-Rootkit (MBAR) sa sledeceg linka i sacuvaj ga na Desktop.

Dvoklikom pokreni MBAR () na ikonicu programa:
- Klikni OK na sledecem prozoru da bi dozvolio raspakivanje u zaseban mbar folder na desktop-u;
- mbar.exe ce biti startovan. Na nekim sistemima to moze da potraje nekoliko dodatnih sekundi, te pricekati pokretanje.;
- U uvodnom prozoru klikni dugme Next ukoliko si saglasan;



• Na 'Update Database' prozoru klik na dugme Update da bi preuzeo sveze definicije. Kada se ispise poruka 'Success: Database was successfully updated' klik na dugme Next;
• Pod sekcijom 'Scan Targets' proveri da su sve opcije stiklirane, te klikni na dugme Scan;

Obavestenje: sa nekim infekcijama moze se desiti da se prikaze neka od sledecih poruka:
- 'Could not load protection driver' => u tom slucaju klikni OK.
- 'Could not load DDA driver' => klikni Yes na to obavestenje da bi dozvolio ucitavanje nakon restarta. Dozvoli restart i nastavi sa ostatkom instrukcija posle restarta.





>> Ukoliko malware nije detektovan, klik na Exit dugme da zatvoris program. U sledecu poruku postavi mbar-log-year-month-day (sat-minuti-sekundi).txt i system-log.txt izveštaje.

>> Ukoliko su infekcija/e pronadjene, proveriti da li je obelezena opcija 'Create Restore Point' i klikni na dugme Cleanup! da bi uklonili pretnje.
- Procedura uklanjanje malware-a (scheduled) ce biti zakazana po restartu, bice prikazano obavestenje u pop-up prozoru. Klikni dugme Yes i sistem bi trebao da se restartuje i da zavrsi proceduru ciscenja.



Obavestenje! samo ukoliko je RootKit detektovan: - postaraj se da pokrenes fixdamage.exe alat koji se nalazi u mbar folderu, \Plugins\fixdamage.exe:
- Dvoklikom pokreni fixdamage, u crnom prozoru koji se otvori (command prompt) ukucaj Y (Y stoji za Yes) da bi nastavio izvrsenje, pricekati da alat odradi sve popravke ...
- Kada vidis poruku 'press any key to exit' popravka je kompletirana. Pritisnuti bilo koju tipku na tastaturi da bi se prozor zatvorio. Restartovati sistem.





Sledeci izvestaji ce biti formirani u mbar folderu.
1. mbar-log-year-month-day (hour-minute-second).txt
2. system-log.txt

Iskopiraj sadrzaj mbar log-a u poruku a system log okaci uz poruku koristeci opciju Prikači fajl.

offline
  • Pridružio: 22 Jan 2012
  • Poruke: 22
  • Gde živiš: Montenergo

Malwarebytes Anti-Rootkit BETA 1.07.0.1012
malwarebytes.org

Database version: v2014.08.04.06

Windows 7 x86 NTFS
Internet Explorer 8.0.7600.16385
Male :: MALE-PC [administrator]

8/4/2014 10:26:05 PM
mbar-log-2014-08-04 (22-26-05).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 255260
Time elapsed: 4 minute(s), 7 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)


mycity.rs/must-login.png

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Kompjuter je čist, nemaš razloga za brigu. A ako imaš nekih problema u radu otvori slobodno temu u Windows potforumu, tu ćeš dobiti ostala uputstva.



Ivance95 (AMF Tim)

offline
  • Pridružio: 22 Jan 2012
  • Poruke: 22
  • Gde živiš: Montenergo

Hvala @ivance95

Ko je trenutno na forumu
 

Ukupno su 846 korisnika na forumu :: 14 registrovanih, 0 sakrivenih i 832 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: avijacija, babaroga, bestguarder, cikadeda, darkangel, dragoljub11987, Dragomir1970, Fog of War, havoc995, MilosKop, mkukoleca, pein, pristinski korpus, Skywhaler