Iskakanje i blicanje menu bar-a u prozorima.

1

Iskakanje i blicanje menu bar-a u prozorima.

offline
  • Pridružio: 02 Avg 2012
  • Poruke: 31

Imam problem, ocigledno. Smile Pocelo je od Firefoxa, nesto pisem i odjednom iskace menu bar u gornjem dijelu firefoxa gdje bi i trebao biti, nebrojeno puta i tako mi blokira rad sa racunarom. Blica i tako u nedogled. Nekad se smiri i bude ok. Kad se to desava onda racunar ne slusa moje naredbe tastaturom. Sad ne znam, pomislila sam da je dugme neko pokvareno na tastaturi pa da ono izvlaci taj prozor na nacin da se nekako zalijepilo ili tako nesto, nisam sigurna da je to jer nemam problema sa dugmicima na tastaturi, bar ne vidljivih. Da napomenem da sam u opcijama iskljucila pojavljivanje menu bara, ali opet isto i to mi se pojavljuje na svim stranicama racunara a ne samo u internet pretrazivacima. Hvala vam unapred. Bebee Dol



offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Pozdrav,


Isprati uputstvo i dostavi izvestaje --> [Link mogu videti samo ulogovani korisnici]



offline
  • Pridružio: 02 Avg 2012
  • Poruke: 31

Ja se izvinjavam sto sam jos jedna u nizu koja nije ispratila pravila. Zaboravila sam kako se to ovdje radi.Znam da ste se iznervirali. Embarassed Evo ga.




Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-04-2014
Ran by Danka (administrator) on DANKA-PC on 27-04-2014 15:48:40
Running from C:\Users\Danka\Downloads
Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: [Link mogu videti samo ulogovani korisnici]
Download link for 64-Bit Version: [Link mogu videti samo ulogovani korisnici]
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: [Link mogu videti samo ulogovani korisnici]

==================== Processes (Whitelisted) =================

(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_13_0_0_182.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_13_0_0_182.exe
(Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
HKU\S-1-5-21-427376844-3463937765-1032404297-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [20917408 2014-02-10] (Skype Technologies S.A.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = [Link mogu videti samo ulogovani korisnici]
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xB88C2BD3FD5FCF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Danka\AppData\Roaming\Mozilla\Firefox\Profiles\qxfjv2pg.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_182.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)

Chrome:
=======
CHR Extension: (Google Docs) - C:\Users\Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-25]
CHR Extension: (Google disk) - C:\Users\Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-25]
CHR Extension: (YouTube) - C:\Users\Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-25]
CHR Extension: (Google pretraživanje) - C:\Users\Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-25]
CHR Extension: (Google Novčanik) - C:\Users\Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-25]
CHR Extension: (Gmail) - C:\Users\Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-25]

========================== Services (Whitelisted) =================

R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [399432 2012-09-07] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [676936 2012-09-07] (Malwarebytes Corporation)

==================== Drivers (Whitelisted) ====================

R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2012-09-07] (Malwarebytes Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-04-27 15:48 - 2014-04-27 15:49 - 00006571 _____ () C:\Users\Danka\Downloads\FRST.txt
2014-04-27 15:48 - 2014-04-27 15:48 - 00000000 ____D () C:\FRST
2014-04-27 15:46 - 2014-04-27 15:46 - 01049600 _____ (Farbar) C:\Users\Danka\Downloads\FRST.exe
2014-04-26 19:05 - 2014-04-26 19:05 - 00000000 _____ () C:\Users\Danka\Desktop\New Text Document.txt
2014-04-26 18:57 - 2014-04-26 18:57 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-04-26 18:57 - 2014-04-26 18:57 - 00001105 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-04-26 18:57 - 2014-04-26 18:57 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-04-26 18:54 - 2014-04-26 18:54 - 00265752 _____ (Secure By Design Inc.) C:\Users\Danka\Downloads\Ninite Firefox Installer.exe
2014-04-25 16:51 - 2014-04-25 16:51 - 00002197 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-04-25 16:51 - 2014-04-25 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-04-25 16:49 - 2014-04-27 15:34 - 00000934 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-25 16:49 - 2014-04-27 09:58 - 00000930 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-25 16:49 - 2014-04-25 16:51 - 00000000 ____D () C:\Users\Danka\AppData\Local\Google
2014-04-25 16:49 - 2014-04-25 16:51 - 00000000 ____D () C:\Program Files\Google
2014-04-25 16:47 - 2014-04-25 16:48 - 00884680 _____ (Google Inc.) C:\Users\Danka\Downloads\ChromeSetup.exe
2014-04-24 22:48 - 2014-04-24 22:48 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Mozilla
2014-04-16 00:53 - 2014-04-26 18:43 - 00000000 ____D () C:\Users\Danka\Desktop\Originals
2014-04-16 00:46 - 2014-04-16 00:46 - 00012288 ____H () C:\Users\Danka\Desktop\photothumb.db
2014-04-16 00:45 - 2014-04-16 01:15 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\PhotoScape
2014-04-16 00:44 - 2014-04-16 00:44 - 00000989 _____ () C:\Users\Danka\Desktop\PhotoScape.lnk
2014-04-16 00:44 - 2014-04-16 00:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape
2014-04-16 00:43 - 2014-04-16 00:45 - 00000000 ____D () C:\Program Files\PhotoScape
2014-04-16 00:33 - 2014-04-16 00:35 - 21331096 _____ (Mooii) C:\Users\Danka\Downloads\PhotoScape_V3.6.5.exe
2014-04-16 00:24 - 2014-04-16 00:24 - 00061544 _____ () C:\Users\Danka\AppData\Local\GDIPFONTCACHEV1.DAT
2014-04-11 01:27 - 2014-04-10 15:47 - 00000000 ____D () C:\Windows\Panther
2014-04-11 00:33 - 2014-04-11 00:33 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-04-11 00:33 - 2014-04-11 00:33 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-04-11 00:31 - 2014-04-27 15:35 - 00097699 _____ () C:\Windows\WindowsUpdate.log
2014-04-11 00:30 - 2014-04-11 00:30 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-04-11 00:29 - 2014-04-11 00:32 - 00001355 _____ () C:\Windows\TSSysprep.log
2014-04-10 16:34 - 2014-04-10 16:34 - 00000376 _____ () C:\Windows\ODBC.INI
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Windows\PCHEALTH
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Microsoft ActiveSync
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-04-10 16:33 - 2014-04-27 15:34 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-10 16:33 - 2014-04-10 16:33 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-04-10 16:33 - 2014-04-10 16:33 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-04-10 16:33 - 2014-04-10 16:33 - 00000000 ____D () C:\Windows\system32\Macromed
2014-04-10 16:33 - 2014-04-10 16:33 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Macromedia
2014-04-10 16:33 - 2014-04-10 16:33 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Adobe
2014-04-10 16:33 - 2014-04-10 16:33 - 00000000 ____D () C:\Users\Danka\AppData\Local\Macromedia
2014-04-10 16:30 - 2014-04-10 16:31 - 00000000 ____D () C:\Users\Danka\Downloads\MS Office 2003 Super Compressed- 32MB- Tiny Edition- No key needed
2014-04-10 16:29 - 2014-04-10 16:33 - 00000000 ____D () C:\Users\Danka\AppData\Local\Adobe
2014-04-10 16:27 - 2014-04-10 16:27 - 00001067 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-10 16:27 - 2014-04-10 16:27 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Malwarebytes
2014-04-10 16:27 - 2014-04-10 16:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
2014-04-10 16:27 - 2014-04-10 16:27 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-10 16:27 - 2014-04-10 16:27 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware
2014-04-10 16:27 - 2012-09-07 17:04 - 00022856 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-04-10 16:26 - 2014-04-10 16:26 - 00000000 ____D () C:\Users\Danka\Downloads\Malwarebytes Anti-Malware PRO 1.65.0.1400 - Final - FULL with Key [h33t][iahq76]
2014-04-10 16:24 - 2014-04-10 16:24 - 00000833 _____ () C:\Users\Danka\Desktop\BitTorrent.lnk
2014-04-10 16:24 - 2014-04-10 16:24 - 00000813 _____ () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-04-10 16:23 - 2014-04-10 16:50 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\BitTorrent
2014-04-10 16:22 - 2014-04-27 15:35 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Skype
2014-04-10 16:22 - 2014-04-10 16:22 - 00013898 _____ () C:\Windows\system32\results.xml
2014-04-10 16:22 - 2014-04-10 16:22 - 00000000 ____D () C:\Users\Danka\AppData\Local\Skype
2014-04-10 16:15 - 2014-04-10 16:16 - 89903516 _____ () C:\Users\Danka\Downloads\Audio_Realtek_6.0.1.6141_W7x86_A.zip
2014-04-10 16:14 - 2014-04-10 16:14 - 00000000 ____D () C:\Windows\system32\Lang
2014-04-10 16:14 - 2014-04-10 16:14 - 00000000 ____D () C:\Users\Danka\Desktop\VGA_Intel_8.14.10.2117_Win7x86
2014-04-10 16:14 - 2014-04-10 16:14 - 00000000 ____D () C:\Intel
2014-04-10 16:14 - 2010-06-16 22:33 - 00672792 _____ (Intel Corporation) C:\Windows\system32\igfxcfg.exe
2014-04-10 16:14 - 2010-06-16 22:33 - 00252952 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2014-04-10 16:14 - 2010-06-16 22:33 - 00173592 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2014-04-10 16:14 - 2010-06-16 22:33 - 00173080 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2014-04-10 16:14 - 2010-06-16 22:33 - 00150552 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2014-04-10 16:14 - 2010-06-16 22:33 - 00141848 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2014-04-10 16:14 - 2010-06-16 22:32 - 01006104 _____ (Intel Corporation) C:\Windows\system32\igxpun.exe
2014-04-10 16:14 - 2010-04-19 09:43 - 00039352 _____ () C:\Windows\system32\iglhxs32.vp
2014-04-10 16:14 - 2010-04-19 09:23 - 00155648 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2117.dll
2014-04-10 16:14 - 2010-04-19 09:12 - 04806144 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd32.sys
2014-04-10 16:14 - 2010-04-19 09:12 - 03829760 _____ (Intel Corporation) C:\Windows\system32\igdumd32.dll
2014-04-10 16:14 - 2010-04-19 09:09 - 00536576 _____ (Intel Corporation) C:\Windows\system32\igdumdx32.dll
2014-04-10 16:14 - 2010-04-19 09:01 - 04104192 _____ (Intel Corporation) C:\Windows\system32\ig4icd32.dll
2014-04-10 16:14 - 2010-04-19 09:01 - 02686976 _____ (Intel Corporation) C:\Windows\system32\ig4dev32.dll
2014-04-10 16:14 - 2010-04-19 08:55 - 00310784 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00304640 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00303616 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00303616 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00303104 _____ (Intel Corporation) C:\Windows\system32\igfxresp.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00299520 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00294912 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00291328 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00289280 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00288256 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00287744 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00282624 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00281088 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00280576 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00280064 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00277504 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00262656 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00252416 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00249856 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00206848 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00205312 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00179712 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2014-04-10 16:14 - 2010-04-19 08:55 - 00178176 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2014-04-10 16:14 - 2010-04-19 08:52 - 05702656 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2014-04-10 16:14 - 2010-04-19 08:52 - 00275968 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2014-04-10 16:14 - 2010-04-19 08:52 - 00257536 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2014-04-10 16:14 - 2010-04-19 08:52 - 00218112 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2014-04-10 16:14 - 2010-04-19 08:52 - 00199680 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2014-04-10 16:14 - 2010-04-19 08:52 - 00130048 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2014-04-10 16:14 - 2010-04-19 08:52 - 00119296 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2014-04-10 16:14 - 2010-04-19 08:52 - 00094208 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2014-04-10 16:14 - 2010-04-19 08:52 - 00059392 _____ (Intel Corporation) C:\Windows\system32\oemdspif.dll
2014-04-10 16:14 - 2010-04-19 08:52 - 00051712 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2014-04-10 16:14 - 2010-04-19 08:52 - 00023552 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2014-04-10 16:14 - 2010-04-19 08:45 - 01921265 _____ () C:\Windows\system32\iglhxa32.cpa
2014-04-10 16:14 - 2010-04-19 08:45 - 00060254 _____ () C:\Windows\system32\iglhxg32.vp
2014-04-10 16:14 - 2010-04-19 08:45 - 00060226 _____ () C:\Windows\system32\iglhxc32.vp
2014-04-10 16:14 - 2010-04-19 08:45 - 00060015 _____ () C:\Windows\system32\iglhxo32.vp
2014-04-10 16:14 - 2010-04-19 08:45 - 00001090 _____ () C:\Windows\system32\iglhxa32.vp
2014-04-10 16:13 - 2014-04-10 16:13 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\WinRAR
2014-04-10 16:12 - 2014-04-10 16:12 - 01642072 _____ (BitTorrent Inc.) C:\Users\Danka\Downloads\BitTorrent.exe
2014-04-10 16:11 - 2014-04-10 16:11 - 00000000 ____D () C:\Users\Danka\AppData\Local\Mozilla
2014-04-10 16:07 - 2014-03-31 09:35 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-04-10 16:06 - 2014-04-10 16:06 - 00001753 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-04-10 16:06 - 2014-04-10 16:06 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Apple Computer
2014-04-10 16:06 - 2014-04-10 16:06 - 00000000 ____D () C:\Users\Danka\AppData\Local\Apple Computer
2014-04-10 16:06 - 2014-04-10 16:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-04-10 16:06 - 2012-08-21 13:01 - 00026840 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2014-04-10 16:05 - 2014-04-10 16:06 - 00000000 ____D () C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2014-04-10 16:05 - 2014-04-10 16:06 - 00000000 ____D () C:\Program Files\iTunes
2014-04-10 16:05 - 2014-04-10 16:05 - 00002519 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\Users\Danka\AppData\Local\Apple
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\Program Files\iPod
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\Program Files\Bonjour
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\Program Files\Apple Software Update
2014-04-10 16:04 - 2014-04-10 16:05 - 00000000 ____D () C:\ProgramData\Apple
2014-04-10 16:04 - 2014-04-10 16:05 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-04-10 16:04 - 2014-04-10 16:04 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Foxit Software
2014-04-10 16:03 - 2014-04-10 16:03 - 00002685 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-04-10 16:03 - 2014-04-10 16:03 - 00002008 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ___RD () C:\Program Files\Skype
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ____D () C:\Program Files\Foxit Software
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-04-10 16:02 - 2014-04-10 16:03 - 00000000 ____D () C:\ProgramData\Skype
2014-04-10 16:02 - 2014-04-10 16:02 - 00001179 _____ () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2014-04-10 16:02 - 2014-04-10 16:02 - 00001155 _____ () C:\Users\Public\Desktop\GOM Player.lnk
2014-04-10 16:02 - 2014-04-10 16:02 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\GRETECH
2014-04-10 16:02 - 2014-04-10 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
2014-04-10 16:02 - 2014-04-10 16:02 - 00000000 ____D () C:\Program Files\GRETECH
2014-04-10 16:01 - 2014-04-10 16:02 - 00001132 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-04-10 16:01 - 2014-04-10 16:02 - 00001120 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-04-10 16:01 - 2014-04-10 16:01 - 00000993 _____ () C:\Users\Public\Desktop\WinRAR.lnk
2014-04-10 16:01 - 2014-04-10 16:01 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-04-10 16:01 - 2014-04-10 16:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-04-10 16:01 - 2014-04-10 16:01 - 00000000 ____D () C:\Program Files\WinRAR
2014-04-10 16:01 - 2014-04-10 16:01 - 00000000 ____D () C:\Program Files\TeamViewer
2014-04-10 16:00 - 2014-04-10 16:00 - 00000000 ____D () C:\Windows\system32\Adobe
2014-04-10 16:00 - 2014-04-10 16:00 - 00000000 ____D () C:\ProgramData\Sun
2014-04-10 16:00 - 2014-04-10 16:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-10 16:00 - 2014-04-10 16:00 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-04-10 16:00 - 2014-04-10 15:59 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-04-10 16:00 - 2014-04-10 15:59 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-04-10 16:00 - 2014-04-10 15:59 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-04-10 16:00 - 2014-04-10 15:59 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-04-10 15:59 - 2014-04-10 15:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-04-10 15:59 - 2014-04-10 15:59 - 00000000 ____D () C:\Program Files\Java
2014-04-10 15:58 - 2014-04-10 15:58 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-10 15:57 - 2014-04-26 18:57 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-04-10 15:57 - 2014-04-10 15:57 - 00000000 ____D () C:\ProgramData\Mozilla
2014-04-10 15:49 - 2014-04-10 15:49 - 00001413 _____ () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-10 15:49 - 2014-04-10 15:49 - 00000000 ____D () C:\Users\Danka\AppData\Local\VirtualStore
2014-04-10 15:48 - 2014-04-10 15:49 - 00000000 ____D () C:\Users\Danka
2014-04-10 15:48 - 2014-04-10 15:48 - 00000020 ___SH () C:\Users\Danka\ntuser.ini
2014-04-10 15:48 - 2009-07-14 06:42 - 00000000 ___RD () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-04-10 15:48 - 2009-07-14 06:37 - 00000000 ___RD () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-04-10 15:46 - 2014-04-10 15:46 - 00000000 __SHD () C:\Recovery

==================== One Month Modified Files and Folders =======

2014-04-27 15:49 - 2014-04-27 15:48 - 00006571 _____ () C:\Users\Danka\Downloads\FRST.txt
2014-04-27 15:48 - 2014-04-27 15:48 - 00000000 ____D () C:\FRST
2014-04-27 15:46 - 2014-04-27 15:46 - 01049600 _____ (Farbar) C:\Users\Danka\Downloads\FRST.exe
2014-04-27 15:35 - 2014-04-11 00:31 - 00097699 _____ () C:\Windows\WindowsUpdate.log
2014-04-27 15:35 - 2014-04-10 16:22 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Skype
2014-04-27 15:34 - 2014-04-25 16:49 - 00000934 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-27 15:34 - 2014-04-10 16:33 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-27 10:02 - 2010-11-20 23:01 - 00713888 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-27 09:58 - 2014-04-25 16:49 - 00000930 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-27 09:57 - 2010-11-20 23:48 - 00006662 _____ () C:\Windows\PFRO.log
2014-04-27 09:57 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-27 09:57 - 2009-07-14 06:39 - 00023711 _____ () C:\Windows\setupact.log
2014-04-26 19:05 - 2014-04-26 19:05 - 00000000 _____ () C:\Users\Danka\Desktop\New Text Document.txt
2014-04-26 18:57 - 2014-04-26 18:57 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-04-26 18:57 - 2014-04-26 18:57 - 00001105 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-04-26 18:57 - 2014-04-26 18:57 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-04-26 18:57 - 2014-04-10 15:57 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-04-26 18:54 - 2014-04-26 18:54 - 00265752 _____ (Secure By Design Inc.) C:\Users\Danka\Downloads\Ninite Firefox Installer.exe
2014-04-26 18:43 - 2014-04-16 00:53 - 00000000 ____D () C:\Users\Danka\Desktop\Originals
2014-04-25 16:51 - 2014-04-25 16:51 - 00002197 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-04-25 16:51 - 2014-04-25 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-04-25 16:51 - 2014-04-25 16:49 - 00000000 ____D () C:\Users\Danka\AppData\Local\Google
2014-04-25 16:51 - 2014-04-25 16:49 - 00000000 ____D () C:\Program Files\Google
2014-04-25 16:48 - 2014-04-25 16:47 - 00884680 _____ (Google Inc.) C:\Users\Danka\Downloads\ChromeSetup.exe
2014-04-24 22:48 - 2014-04-24 22:48 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Mozilla
2014-04-16 01:15 - 2014-04-16 00:45 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\PhotoScape
2014-04-16 00:46 - 2014-04-16 00:46 - 00012288 ____H () C:\Users\Danka\Desktop\photothumb.db
2014-04-16 00:45 - 2014-04-16 00:43 - 00000000 ____D () C:\Program Files\PhotoScape
2014-04-16 00:44 - 2014-04-16 00:44 - 00000989 _____ () C:\Users\Danka\Desktop\PhotoScape.lnk
2014-04-16 00:44 - 2014-04-16 00:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape
2014-04-16 00:35 - 2014-04-16 00:33 - 21331096 _____ (Mooii) C:\Users\Danka\Downloads\PhotoScape_V3.6.5.exe
2014-04-16 00:24 - 2014-04-16 00:24 - 00061544 _____ () C:\Users\Danka\AppData\Local\GDIPFONTCACHEV1.DAT
2014-04-11 01:27 - 2009-07-14 06:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-04-11 01:27 - 2009-07-14 06:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-04-11 00:45 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-04-11 00:39 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-04-11 00:33 - 2014-04-11 00:33 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-04-11 00:33 - 2014-04-11 00:33 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-04-11 00:33 - 2009-07-14 04:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-04-11 00:32 - 2014-04-11 00:29 - 00001355 _____ () C:\Windows\TSSysprep.log
2014-04-11 00:30 - 2014-04-11 00:30 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-04-11 00:29 - 2010-11-21 02:47 - 00000000 ____D () C:\Windows\CSC
2014-04-11 00:29 - 2009-07-14 06:34 - 00002790 _____ () C:\Windows\DtcInstall.log
2014-04-10 20:29 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Public\Libraries
2014-04-10 20:26 - 2009-07-14 06:33 - 00281016 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-04-10 16:50 - 2014-04-10 16:23 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\BitTorrent
2014-04-10 16:34 - 2014-04-10 16:34 - 00000376 _____ () C:\Windows\ODBC.INI
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Windows\PCHEALTH
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Microsoft ActiveSync
2014-04-10 16:34 - 2014-04-10 16:34 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-04-10 16:34 - 2010-11-21 02:47 - 00000000 ____D () C:\Windows\ShellNew
2014-04-10 16:34 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-04-10 16:33 - 2014-04-10 16:33 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-04-10 16:33 - 2014-04-10 16:33 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-04-10 16:33 - 2014-04-10 16:33 - 00000000 ____D () C:\Windows\system32\Macromed
2014-04-10 16:33 - 2014-04-10 16:33 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Macromedia
2014-04-10 16:33 - 2014-04-10 16:33 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Adobe
2014-04-10 16:33 - 2014-04-10 16:33 - 00000000 ____D () C:\Users\Danka\AppData\Local\Macromedia
2014-04-10 16:33 - 2014-04-10 16:29 - 00000000 ____D () C:\Users\Danka\AppData\Local\Adobe
2014-04-10 16:31 - 2014-04-10 16:30 - 00000000 ____D () C:\Users\Danka\Downloads\MS Office 2003 Super Compressed- 32MB- Tiny Edition- No key needed
2014-04-10 16:27 - 2014-04-10 16:27 - 00001067 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-10 16:27 - 2014-04-10 16:27 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Malwarebytes
2014-04-10 16:27 - 2014-04-10 16:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
2014-04-10 16:27 - 2014-04-10 16:27 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-10 16:27 - 2014-04-10 16:27 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware
2014-04-10 16:26 - 2014-04-10 16:26 - 00000000 ____D () C:\Users\Danka\Downloads\Malwarebytes Anti-Malware PRO 1.65.0.1400 - Final - FULL with Key [h33t][iahq76]
2014-04-10 16:24 - 2014-04-10 16:24 - 00000833 _____ () C:\Users\Danka\Desktop\BitTorrent.lnk
2014-04-10 16:24 - 2014-04-10 16:24 - 00000813 _____ () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-04-10 16:22 - 2014-04-10 16:22 - 00013898 _____ () C:\Windows\system32\results.xml
2014-04-10 16:22 - 2014-04-10 16:22 - 00000000 ____D () C:\Users\Danka\AppData\Local\Skype
2014-04-10 16:16 - 2014-04-10 16:15 - 89903516 _____ () C:\Users\Danka\Downloads\Audio_Realtek_6.0.1.6141_W7x86_A.zip
2014-04-10 16:14 - 2014-04-10 16:14 - 00000000 ____D () C:\Windows\system32\Lang
2014-04-10 16:14 - 2014-04-10 16:14 - 00000000 ____D () C:\Users\Danka\Desktop\VGA_Intel_8.14.10.2117_Win7x86
2014-04-10 16:14 - 2014-04-10 16:14 - 00000000 ____D () C:\Intel
2014-04-10 16:13 - 2014-04-10 16:13 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\WinRAR
2014-04-10 16:12 - 2014-04-10 16:12 - 01642072 _____ (BitTorrent Inc.) C:\Users\Danka\Downloads\BitTorrent.exe
2014-04-10 16:11 - 2014-04-10 16:11 - 00000000 ____D () C:\Users\Danka\AppData\Local\Mozilla
2014-04-10 16:11 - 2009-07-14 06:34 - 00021088 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-10 16:11 - 2009-07-14 06:34 - 00021088 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-10 16:06 - 2014-04-10 16:06 - 00001753 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-04-10 16:06 - 2014-04-10 16:06 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Apple Computer
2014-04-10 16:06 - 2014-04-10 16:06 - 00000000 ____D () C:\Users\Danka\AppData\Local\Apple Computer
2014-04-10 16:06 - 2014-04-10 16:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-04-10 16:06 - 2014-04-10 16:05 - 00000000 ____D () C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2014-04-10 16:06 - 2014-04-10 16:05 - 00000000 ____D () C:\Program Files\iTunes
2014-04-10 16:05 - 2014-04-10 16:05 - 00002519 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\Users\Danka\AppData\Local\Apple
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\Program Files\iPod
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\Program Files\Bonjour
2014-04-10 16:05 - 2014-04-10 16:05 - 00000000 ____D () C:\Program Files\Apple Software Update
2014-04-10 16:05 - 2014-04-10 16:04 - 00000000 ____D () C:\ProgramData\Apple
2014-04-10 16:05 - 2014-04-10 16:04 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-04-10 16:04 - 2014-04-10 16:04 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Foxit Software
2014-04-10 16:03 - 2014-04-10 16:03 - 00002685 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-04-10 16:03 - 2014-04-10 16:03 - 00002008 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ___RD () C:\Program Files\Skype
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ____D () C:\Program Files\Foxit Software
2014-04-10 16:03 - 2014-04-10 16:03 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-04-10 16:03 - 2014-04-10 16:02 - 00000000 ____D () C:\ProgramData\Skype
2014-04-10 16:02 - 2014-04-10 16:02 - 00001179 _____ () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2014-04-10 16:02 - 2014-04-10 16:02 - 00001155 _____ () C:\Users\Public\Desktop\GOM Player.lnk
2014-04-10 16:02 - 2014-04-10 16:02 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\GRETECH
2014-04-10 16:02 - 2014-04-10 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
2014-04-10 16:02 - 2014-04-10 16:02 - 00000000 ____D () C:\Program Files\GRETECH
2014-04-10 16:02 - 2014-04-10 16:01 - 00001132 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-04-10 16:02 - 2014-04-10 16:01 - 00001120 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-04-10 16:01 - 2014-04-10 16:01 - 00000993 _____ () C:\Users\Public\Desktop\WinRAR.lnk
2014-04-10 16:01 - 2014-04-10 16:01 - 00000000 ____D () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-04-10 16:01 - 2014-04-10 16:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-04-10 16:01 - 2014-04-10 16:01 - 00000000 ____D () C:\Program Files\WinRAR
2014-04-10 16:01 - 2014-04-10 16:01 - 00000000 ____D () C:\Program Files\TeamViewer
2014-04-10 16:00 - 2014-04-10 16:00 - 00000000 ____D () C:\Windows\system32\Adobe
2014-04-10 16:00 - 2014-04-10 16:00 - 00000000 ____D () C:\ProgramData\Sun
2014-04-10 16:00 - 2014-04-10 16:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-10 16:00 - 2014-04-10 16:00 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-04-10 15:59 - 2014-04-10 16:00 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-04-10 15:59 - 2014-04-10 16:00 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-04-10 15:59 - 2014-04-10 16:00 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-04-10 15:59 - 2014-04-10 16:00 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-04-10 15:59 - 2014-04-10 15:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-04-10 15:59 - 2014-04-10 15:59 - 00000000 ____D () C:\Program Files\Java
2014-04-10 15:58 - 2014-04-10 15:58 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-10 15:57 - 2014-04-10 15:57 - 00000000 ____D () C:\ProgramData\Mozilla
2014-04-10 15:49 - 2014-04-10 15:49 - 00001413 _____ () C:\Users\Danka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-10 15:49 - 2014-04-10 15:49 - 00000000 ____D () C:\Users\Danka\AppData\Local\VirtualStore
2014-04-10 15:49 - 2014-04-10 15:48 - 00000000 ____D () C:\Users\Danka
2014-04-10 15:48 - 2014-04-10 15:48 - 00000020 ___SH () C:\Users\Danka\ntuser.ini
2014-04-10 15:47 - 2014-04-11 01:27 - 00000000 ____D () C:\Windows\Panther
2014-04-10 15:47 - 2010-11-20 23:29 - 00811520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2014-04-10 15:47 - 2010-11-20 23:29 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2014-04-10 15:47 - 2010-11-20 23:29 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2014-04-10 15:46 - 2014-04-10 15:46 - 00000000 __SHD () C:\Recovery
2014-04-10 15:46 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\restore
2014-04-10 15:46 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\Recovery
2014-04-10 15:46 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2014-03-31 09:35 - 2014-04-10 16:07 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe

Some content of TEMP:
====================
C:\Users\Danka\AppData\Local\Temp\ExPromo.exe
C:\Users\Danka\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\Danka\AppData\Local\Temp\NSISPromotionEx.dll


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-04-22 12:16

==================== End Of Log ============================





[Link mogu videti samo ulogovani korisnici]

[Link mogu videti samo ulogovani korisnici]

Pokusala sam rijesiti problem tako sto sam deinstalirala firefox i ponovo instalirala, instalirala i Chrome, ali isto je na svakom pretrazivacu kao i na obicnim folderskim prozorima u kompu. Ponavljam, blica mi menu bar u gornjem dijelu gdje treba da se i nalazi, to jest pojavljuje se i nestaje, pomjerajuce prozor gore-dole za taj prostor koji menu bar zauzima. Samim tim svaki put kad se to desava, ja kad vama na primjer sad pisem, pritisnem neko slovo ili delate, ili bilo koje dugme na tastaturi, ona ne reaguje sve dok se to ne smiri i proizvodi zvuk greske i nemogucnosti trenutnog rada . (tn, tn, tn ) Bebee Dol GUZ - Glavom U Zid .

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Izgleda cisto, no da izvrsimo jos jednu proveru:



Arrow Preuzmi Malwarebytes Anti-Rootkit (MBAR) sa sledeceg linka i sacuvaj ga na Desktop.

Dvoklikom pokreni MBAR () na ikonicu programa:
- Klikni OK na sledecem prozoru da bi dozvolio raspakivanje u zaseban mbar folder na desktop-u;
- mbar.exe ce biti startovan. Na nekim sistemima to moze da potraje nekoliko dodatnih sekundi, te pricekati pokretanje.;
- U uvodnom prozoru klikni dugme Next ukoliko si saglasan;



• Na 'Update Database' prozoru klik na dugme Update da bi preuzeo sveze definicije. Kada se ispise poruka 'Success: Database was successfully updated' klik na dugme Next;
• Pod sekcijom 'Scan Targets' proveri da su sve opcije stiklirane, te klikni na dugme Scan;

Obavestenje: sa nekim infekcijama moze se desiti da se prikaze neka od sledecih poruka:
- 'Could not load protection driver' => u tom slucaju klikni OK.
- 'Could not load DDA driver' => klikni Yes na to obavestenje da bi dozvolio ucitavanje nakon restarta. Dozvoli restart i nastavi sa ostatkom instrukcija posle restarta.





>> Ukoliko malware nije detektovan, klik na Exit dugme da zatvoris program. U sledecu poruku postavi mbar-log-year-month-day (sat-minuti-sekundi).txt i system-log.txt izveštaje.

>> Ukoliko su infekcija/e pronadjene, proveriti da li je obelezena opcija 'Create Restore Point' i klikni na dugme Cleanup! da bi uklonili pretnje.
- Procedura uklanjanje malware-a (scheduled) ce biti zakazana po restartu, bice prikazano obavestenje u pop-up prozoru. Klikni dugme Yes i sistem bi trebao da se restartuje i da zavrsi proceduru ciscenja.



Obavestenje! samo ukoliko je RootKit detektovan: - postaraj se da pokrenes fixdamage.exe alat koji se nalazi u mbar folderu, \Plugins\fixdamage.exe:
- Dvoklikom pokreni fixdamage, u crnom prozoru koji se otvori (command prompt) ukucaj Y (Y stoji za Yes) da bi nastavio izvrsenje, pricekati da alat odradi sve popravke ...
- Kada vidis poruku 'press any key to exit' popravka je kompletirana. Pritisnuti bilo koju tipku na tastaturi da bi se prozor zatvorio. Restartovati sistem.





Sledeci izvestaji ce biti formirani u mbar folderu.
1. mbar-log-year-month-day (hour-minute-second).txt
2. system-log.txt

Iskopiraj sadrzaj mbar log-a u poruku a system log okaci uz poruku koristeci opciju Prikači fajl.

offline
  • Pridružio: 02 Avg 2012
  • Poruke: 31

Ja se izvinjavam zbog ovolike pauze. Zahvatile su nas poplave pa mi nije ni bilo do ovog glupog laptopa,a kao sto vidite na zivotu je. Evo izvjestaja..
[Link mogu videti samo ulogovani korisnici]

[Link mogu videti samo ulogovani korisnici]

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Kakvo je sada stanje?

offline
  • Pridružio: 02 Avg 2012
  • Poruke: 31

Stanje je isto. Sad Hocete da vam posaljem snimak tog? Mozda bude lakse. I da li postoji mogucnost da je do nekog dugmeta? Ja ne primjetim da se nesto zaglavilo. Hvala

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Preuzmi smeenk-ov zoek.zip ili zoek.rar () sa ovog ili ovog linka i sačuvaj ga na Desktop.

Raspakuj arhivu u neki folder (uputstvo), a zatim:

zatvori browser i ostale pokrenute programe;
privremeno deaktiviraj zaštitni softver ( ukoliko je to potrebno ) Uputstvo ;
dvoklikom pokreni zoek na ikonicu programa ;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sledeći tekst:


filesrcm;
startupall;
skipfix-iedefaults;
firefoxlook;
chromelook;


Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.

offline
  • Pridružio: 02 Avg 2012
  • Poruke: 31

Zoek.exe v5.0.0.0 Updated 16-June-2014
Tool run by Danka on Thu 06/19/2014 at 9:30:47.74.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Danka\Downloads\zoek\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

6/19/2014 9:32:10 AM Zoek.exe System Restore Point Created Succesfully.

==== Files Recently Created / Modified ======================

====== C:\Windows ====
2014-06-16 15:23:02 C71282987142D2F93C4CF81730F9E731 718497 ----a-w- C:\Windows\unins000.exe
====== C:\Users\Danka\AppData\Local\Temp ====
2014-06-16 15:22:32 B98A168D568C48993CF37C52E4005CBE 429649 ----a-w- C:\Users\Danka\AppData\Local\Temp\UNTE1D4.exe
2014-06-16 15:22:28 B98A168D568C48993CF37C52E4005CBE 429649 ----a-w- C:\Users\Danka\AppData\Local\Temp\UNTD289.exe
====== Java Cache =====
2014-05-27 20:32:51 EFB2CE4B6E77038F5FA31E178259663E 429 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\0\4d477e00-2c391d55cad92ef111c751b5b9e9cd9d0f3c4e8bc5bd7fbd171d757eecd093a8-6.0.lap
2014-05-26 21:38:36 21373014B64E738280A6CBCE63DCF07A 429 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\1\7fb17081-717889e04f5852300726b650231b8ea1d7ab553cf54676b79bb5284cc00da547-6.0.lap
2014-05-22 20:36:25 7A38932C94862FAE2B5DBB85C7F3943F 429 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\10\7c0ac70a-e223a42f98d0f7b1262c979671500cf7f7fdd03281d9be7997e7728df20b6071-6.0.lap
2014-06-10 21:45:34 C1BBA7F1278F193AB584FFF460DB5E2A 17878 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\12\eef218c-5574fcc9
2014-06-10 21:45:25 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-105d994a
2014-06-10 21:45:25 2DDE81B11EE0A474252C91ACFD1EA791 100 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\49a00451-aa56bb018d5de3a531ee91cc4857f0f479656e5370ebf87789e721aaaf530ebc-6.0.lap
2014-06-10 21:45:23 415FC9732A3F4D89A0E01251CD66E136 646 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\19\3d7894d3-4d6ff37d
2014-06-18 18:56:33 00C98A26398ECCFD1497E193AD428565 429 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\21\2f64a415-e3bff2d57933cf54fe3ae156707e26f678a771c2cbc49a9ab60684fdc3f91902-6.0.lap
2014-06-15 16:55:51 67AD456825F3B1BA033C65DBAF1716B9 426 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\22\771d5f56-d13e0ee0e39ff527fb0982a836a0243e984cb437163e783351c8c2959655dd5d-6.0.lap
2014-05-26 21:38:37 4CF2CBFA99CD797C4C73C62CBF539CBE 17298 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\39\53092de7-1d8956b6
2014-06-06 22:31:40 E326948283B1EA5879B6F925707351DC 429 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\39\5fa541a7-b98dd39c9b7529f1aecd66774ef86f8f54eaf1ba6ec068f48ae8b0eccfd5394d-6.0.lap
2014-05-27 19:42:49 29B74AF1412502CBB65E4DC68354A493 429 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\42\266e772a-9dc47a16242dc884d7f5266a3de9a787afb28a0268e33b903ab29a55114cbafa-6.0.lap
2014-06-10 21:45:26 34FA8033B50A3F99D3AB8209C72C0ABA 6860 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\1ca2666b-7041acee
2014-05-27 19:46:56 928BE9FEA069D8EBA1A71E3E6E9817C3 430 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\44\79cc392c-9d1891cfee89314f241a7c26eebfd0d5d77abeba42ce8579d99009b065795a56-6.0.lap
2014-06-15 16:26:07 E51482E4A05F96B9399B902A105972F0 429 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\50\2a1c3f2-c606c5aacbb5ae450ca48a938e4e0e61afad3dd4d5b1897d824a892de6be2fee-6.0.lap
2014-05-27 19:46:57 4CF2CBFA99CD797C4C73C62CBF539CBE 17298 ----a-w- C:\Users\Danka\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\54\168c0336-30f86b19
====== C:\Windows\system32 =====
2014-06-16 16:43:24 8A4CEBF34370D689E198E6673C1F2C40 74072 ----a-w- C:\Windows\System32\XAPOFX1_5.dll
2014-06-16 16:43:24 83EBA442F07AAB8D6375D2EEC945C46C 1868128 ----a-w- C:\Windows\System32\d3dcsx_43.dll
2014-06-16 16:43:24 81DFDDFB401D663BA7E6AD1C80364216 527192 ----a-w- C:\Windows\System32\XAudio2_7.dll
2014-06-16 16:43:24 4FD7BCB9D8AF6A165E9BA0C2EB702E7C 239960 ----a-w- C:\Windows\System32\xactengine3_7.dll
2014-06-16 16:43:24 1C9B45E87528B8BB8CFA884EA0099A85 2106216 ----a-w- C:\Windows\System32\D3DCompiler_43.dll
2014-06-16 16:43:23 F81C4678A55FFEE585AC75825FAF5582 238936 ----a-w- C:\Windows\System32\xactengine3_6.dll
2014-06-16 16:43:23 E4CE2AF32F501A7F7DDDD908704A0EE6 74072 ----a-w- C:\Windows\System32\XAPOFX1_4.dll
2014-06-16 16:43:23 C811E70C8804CFFF719038250A43B464 22360 ----a-w- C:\Windows\System32\X3DAudio1_7.dll
2014-06-16 16:43:23 8E0BB968FF41D80E5F2C747C04DB79AE 248672 ----a-w- C:\Windows\System32\d3dx11_43.dll
2014-06-16 16:43:23 86E39E9161C3D930D93822F1563C280D 1998168 ----a-w- C:\Windows\System32\D3DX9_43.dll
2014-06-16 16:43:23 4976243BD70FAE3D1D24E49739AB2710 528216 ----a-w- C:\Windows\System32\XAudio2_6.dll
2014-06-16 16:43:23 20C835843FCEC4DEDFCD7BFFA3B91641 470880 ----a-w- C:\Windows\System32\d3dx10_43.dll
2014-06-16 16:43:21 DB3C93E87452B8DAB4F58ED1FD2B1998 238936 ----a-w- C:\Windows\System32\xactengine3_5.dll
2014-06-16 16:43:21 B33B21DB610116262D906305CE65C354 1974616 ----a-w- C:\Windows\System32\D3DCompiler_42.dll
2014-06-16 16:43:21 8B01FB723F3B30AB3DEBDDBF97CFE577 515416 ----a-w- C:\Windows\System32\XAudio2_5.dll
2014-06-16 16:43:20 D09AC80A4B5312239852836C84DF3392 235344 ----a-w- C:\Windows\System32\d3dx11_42.dll
2014-06-16 16:43:20 C6A44FC3CF2F5801561804272217B14D 1892184 ----a-w- C:\Windows\System32\D3DX9_42.dll
2014-06-16 16:43:20 B337306DFB508A1BCEF1974BFBB8D924 5501792 ----a-w- C:\Windows\System32\d3dcsx_42.dll
2014-06-16 16:43:20 501AC862517C5445742BEE8A2B88414E 453456 ----a-w- C:\Windows\System32\d3dx10_42.dll
2014-06-16 16:43:19 E684C5FA18ADF9EA14737757413BF727 517448 ----a-w- C:\Windows\System32\XAudio2_4.dll
2014-06-16 16:43:19 781E8B5B6FDB3C9B4E4A4A9FB019960D 1846632 ----a-w- C:\Windows\System32\D3DCompiler_41.dll
2014-06-16 16:43:19 3FA06CF5079B84155D18B05C08F7131B 4178264 ----a-w- C:\Windows\System32\D3DX9_41.dll
2014-06-16 16:43:19 30686ECE80545E06D78D156EB9F7D463 69464 ----a-w- C:\Windows\System32\XAPOFX1_3.dll
2014-06-16 16:43:19 1AA571774936717EE776DBED51E9EDF4 453456 ----a-w- C:\Windows\System32\d3dx10_41.dll
2014-06-16 16:43:18 EEA5E428CE63804F9B12D21C97B5968F 4379984 ----a-w- C:\Windows\System32\D3DX9_40.dll
2014-06-16 16:43:18 E763798CAD2A90B6AB61854F50CD47DD 22360 ----a-w- C:\Windows\System32\X3DAudio1_6.dll
2014-06-16 16:43:18 91B4AAD4412BB223B466F3DFB43E86DA 452440 ----a-w- C:\Windows\System32\d3dx10_40.dll
2014-06-16 16:43:18 686F8D1B4926D48227A06ACD4D41CD1E 235352 ----a-w- C:\Windows\System32\xactengine3_4.dll
2014-06-16 16:43:18 3384134EEB8F223178C2EB8323003EC0 2036576 ----a-w- C:\Windows\System32\D3DCompiler_40.dll
2014-06-16 16:43:17 D95EAABF5D277EF91D9CA70151209E56 68616 ----a-w- C:\Windows\System32\XAPOFX1_1.dll
2014-06-16 16:43:17 8BA296419AF3417D1E9806B83166E472 235856 ----a-w- C:\Windows\System32\xactengine3_3.dll
2014-06-16 16:43:17 50F4A0D5E6A0BAFEFA78F353533B8E06 509448 ----a-w- C:\Windows\System32\XAudio2_2.dll
2014-06-16 16:43:17 47ED15DC87AE334C13C4DACD1BE2CCED 514384 ----a-w- C:\Windows\System32\XAudio2_3.dll
2014-06-16 16:43:17 350FEFE18B86BD4D9AB2A96D00215A49 23376 ----a-w- C:\Windows\System32\X3DAudio1_5.dll
2014-06-16 16:43:17 295E47A75F278580F9441041EAAEA3D2 70992 ----a-w- C:\Windows\System32\XAPOFX1_2.dll
2014-06-16 16:43:16 F3C6BE26949CAADB11DBF0086082FAC9 238088 ----a-w- C:\Windows\System32\xactengine3_2.dll
2014-06-16 16:43:16 E6C2F1D8B667DDC04CB55B9F0159EF97 467984 ----a-w- C:\Windows\System32\d3dx10_39.dll
2014-06-16 16:43:16 C4F1972497FE2CEB7D900938C97FCF91 1493528 ----a-w- C:\Windows\System32\D3DCompiler_39.dll
2014-06-16 16:43:16 8CB3DEFB8887C4F0846DB1FC1304D6D2 3851784 ----a-w- C:\Windows\System32\D3DX9_39.dll
2014-06-16 16:43:15 E3832514BD21236067B7227F6165EF95 25608 ----a-w- C:\Windows\System32\X3DAudio1_4.dll
2014-06-16 16:43:15 E34FF0115B1EE3B4E03D22AE9840EE03 507400 ----a-w- C:\Windows\System32\XAudio2_1.dll
2014-06-16 16:43:15 DD165760F1B95200A3DA2D9DFDB84234 65032 ----a-w- C:\Windows\System32\XAPOFX1_0.dll
2014-06-16 16:43:15 A2650B27472C21CDD817EEEDE65648E1 467984 ----a-w- C:\Windows\System32\d3dx10_38.dll
2014-06-16 16:43:15 2E0E25252E1D41752876E9FE12ADE175 238088 ----a-w- C:\Windows\System32\xactengine3_1.dll
2014-06-16 16:43:15 103CBFC5591008AD33046E20E8E1EEBE 1491992 ----a-w- C:\Windows\System32\D3DCompiler_38.dll
2014-06-16 16:43:14 8F3EB548AC4ED90252394F60C77E3196 3850760 ----a-w- C:\Windows\System32\D3DX9_38.dll
2014-06-16 16:43:14 8A83673F0AB001870583FDE2B004FA59 238088 ----a-w- C:\Windows\System32\xactengine3_0.dll
2014-06-16 16:43:14 418CDC57E55EE79C3F86C13A19B3D5E3 479752 ----a-w- C:\Windows\System32\XAudio2_0.dll
2014-06-16 16:43:13 EA752DBCE35045D3C830DC16578CC8AB 1420824 ----a-w- C:\Windows\System32\D3DCompiler_37.dll
2014-06-16 16:43:13 C593FD0A96EE4B6390B653C4C641313F 25608 ----a-w- C:\Windows\System32\X3DAudio1_3.dll
2014-06-16 16:43:13 AC3C517FB0FBBE45FE44007BCD3625A7 3786760 ----a-w- C:\Windows\System32\D3DX9_37.dll
2014-06-16 16:43:13 73E055AF78A64F9B2779D44407CA2AB6 267272 ----a-w- C:\Windows\System32\xactengine2_10.dll
2014-06-16 16:43:13 4A43E9A2B17E4CAFA9CB5FEC0B5B686B 462864 ----a-w- C:\Windows\System32\d3dx10_37.dll
2014-06-16 16:43:12 FB4299688A0D3A37687C015AC2B9922D 1374232 ----a-w- C:\Windows\System32\D3DCompiler_36.dll
2014-06-16 16:43:12 D9158E78A368B08D9133043EB3058C12 444776 ----a-w- C:\Windows\System32\d3dx10_36.dll
2014-06-16 16:43:12 44BFEC5C9C82A2EE9871D88FD3B9A0E2 3734536 ----a-w- C:\Windows\System32\d3dx9_36.dll
2014-06-16 16:43:11 F3764552E45880DC49B82F38699AA87C 444776 ----a-w- C:\Windows\System32\d3dx10_35.dll
2014-06-16 16:43:11 5B441670A4F5F8BCCE76741902B8AF56 1358192 ----a-w- C:\Windows\System32\D3DCompiler_35.dll
2014-06-16 16:43:11 499210C45AFEAADEE8CF4DCF7D5E570B 266088 ----a-w- C:\Windows\System32\xactengine2_8.dll
2014-06-16 16:43:11 46EE68F04A75A1CCF40235EA6F1CBA05 267112 ----a-w- C:\Windows\System32\xactengine2_9.dll
2014-06-16 16:43:11 3EF18B78D17C962F2B71AC1CB7757684 3727720 ----a-w- C:\Windows\System32\d3dx9_35.dll
2014-06-16 16:43:10 F6A9FC2AD2F9111372B5AB3BBA3707EC 17928 ----a-w- C:\Windows\System32\X3DAudio1_2.dll
2014-06-16 16:43:10 77F595DEE5FFACEA72B135B1FCE1312E 81768 ----a-w- C:\Windows\System32\xinput1_3.dll
2014-06-16 16:43:10 75F206C195BBACA6EF28565B1C0CD75C 1124720 ----a-w- C:\Windows\System32\D3DCompiler_34.dll
2014-06-16 16:43:10 5AA9987F2E62B56D7661B6901901F927 443752 ----a-w- C:\Windows\System32\d3dx10_34.dll
2014-06-16 16:43:10 1CA939918ED1B930059B3A882DE6F648 3497832 ----a-w- C:\Windows\System32\d3dx9_34.dll
2014-06-16 16:43:09 FAE7E1D578C42A7C3D9D61A99D178BD5 1123696 ----a-w- C:\Windows\System32\D3DCompiler_33.dll
2014-06-16 16:43:09 CDB1CD22BAFF21F48606B3C1A18B000B 3495784 ----a-w- C:\Windows\System32\d3dx9_33.dll
2014-06-16 16:43:09 7FEBB8CE2233CBAE738B16D42ED29674 261480 ----a-w- C:\Windows\System32\xactengine2_7.dll
2014-06-16 16:43:09 39000E033D39D19CCCE21AEAFCCE2476 255848 ----a-w- C:\Windows\System32\xactengine2_6.dll
2014-06-16 16:43:09 37A8171ACCF46A9C196054066C28827F 443752 ----a-w- C:\Windows\System32\d3dx10_33.dll
2014-06-16 16:43:08 86C93789E9006F1AC47ED9DD47D4C8A1 251672 ----a-w- C:\Windows\System32\xactengine2_5.dll
2014-06-16 16:43:08 6F34F7405807DCBF0B9BF6811C94C6D9 440080 ----a-w- C:\Windows\System32\d3dx10.dll
2014-06-16 16:43:08 6550E1A0A7BE611592C31222FCB981FB 237848 ----a-w- C:\Windows\System32\xactengine2_4.dll
2014-06-16 16:43:08 26AF232140C88B42D92A88F2198EDF6A 3426072 ----a-w- C:\Windows\System32\d3dx9_32.dll
2014-06-16 16:43:08 121B131EAA369D8F58DACC5C39A77D80 15128 ----a-w- C:\Windows\System32\x3daudio1_1.dll
2014-06-16 16:43:07 F1726346E583442541FE73429F8E9C10 62672 ----a-w- C:\Windows\System32\xinput1_1.dll
2014-06-16 16:43:07 797E24743937D67D69F28F2CF5052EE8 2414360 ----a-w- C:\Windows\System32\d3dx9_31.dll
2014-06-16 16:43:07 69D841744B2BAE38FBB2D40A230A549C 236824 ----a-w- C:\Windows\System32\xactengine2_3.dll
2014-06-16 16:43:07 5C4D3843B491C047B7A619901FBD2EC1 230168 ----a-w- C:\Windows\System32\xactengine2_2.dll
2014-06-16 16:43:07 33B62BE226934E1B01F5043870C70427 62744 ----a-w- C:\Windows\System32\xinput1_2.dll
2014-06-16 16:43:06 7C9952111F4C743B9F0D8B68B6ED93C9 229584 ----a-w- C:\Windows\System32\xactengine2_1.dll
2014-06-16 16:43:05 E415862612E65F10D7D888443ECD7594 2388176 ----a-w- C:\Windows\System32\d3dx9_30.dll
2014-06-16 16:43:04 99F4FC172A5ACE36CF00AA7038D23F2C 2332368 ----a-w- C:\Windows\System32\d3dx9_29.dll
2014-06-16 16:43:04 4E961525CC7FF0E5D7DA19E170B7C14C 14032 ----a-w- C:\Windows\System32\x3daudio1_0.dll
2014-06-16 16:43:04 2112FE0C46662D429347A7D7B49E3ECE 230096 ----a-w- C:\Windows\System32\xactengine2_0.dll
2014-06-16 16:43:03 BE19B603DFBAA829EE5B7749B3BA97DB 2323664 ----a-w- C:\Windows\System32\d3dx9_28.dll
2014-06-16 16:43:03 852EDC778A7A50077694F84D8E601234 2319568 ----a-w- C:\Windows\System32\d3dx9_27.dll
2014-06-16 16:43:03 5B48FE9D6686F0D54B26A005ACE24D1D 2337488 ----a-w- C:\Windows\System32\d3dx9_25.dll
2014-06-16 16:43:03 523AB607EEF81CC4D909E7FEBD8A788E 2297552 ----a-w- C:\Windows\System32\d3dx9_26.dll
2014-06-16 16:43:02 BC831661963763AC4D504C5CABB1FDD9 2222800 ----a-w- C:\Windows\System32\d3dx9_24.dll
====== C:\Windows\system32\drivers =====
2014-06-16 20:59:22 6802E1A143C49D7BDAB0BF952E5A231C 113880 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-06-16 20:54:38 EA6FC4074EB53342249CCE7DAE9F3A85 75480 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
====== C:\Windows\Tasks ======
====== C:\Windows\Temp ======
======= C:\Program Files =====
2014-06-16 16:12:17 -------- d-----w- C:\Program Files\3dsex
2014-06-16 16:11:53 -------- d-----w- C:\Program Files\Utherverse Digital Inc
2014-06-16 14:12:51 -------- d-----w- C:\Program Files\GamesGoFree.com
======= C: =====
====== C:\Users\Danka\AppData\Roaming ======
2014-06-16 18:24:17 -------- d-----w- C:\Users\Danka\AppData\Roaming\Utherverse
2014-06-16 14:14:16 -------- d-----w- C:\Users\Danka\AppData\Roaming\playmink
2014-06-12 07:50:38 -------- d-----w- C:\Users\Danka\AppData\Locallow\{508FFC88-2F3D-9A9E-664B-5D03CBFA11AE}
2014-06-08 12:27:54 -------- d-----w- C:\Users\Danka\AppData\Locallow\{DE113C60-D64F-4A13-2E47-42E2F63C498F}
2014-06-01 16:40:54 -------- d-----w- C:\Users\Danka\AppData\Locallow\{370E802B-0CA5-69E2-2518-688D298C55FA}
2014-05-25 20:50:12 -------- d-----w- C:\Users\Danka\AppData\Locallow\{3A2F41B5-12AD-4ABC-04EA-13391F25AA50}
====== C:\Users\Danka ======
2014-06-16 21:28:59 387C0A29C7491F1128578B8516622AB8 1058200 ----a-w- C:\Users\Danka\Downloads\install_flashplayer14x32au_mssa_aaa_aih.exe
2014-06-16 20:51:57 DFF72B75746001A9060AB2B80310012E 14349744 ----a-w- C:\Users\Danka\Downloads\mbar-1.07.0.1012.exe
2014-06-16 16:08:27 E5F0C472399253B73FCB62322E851545 16796976 ----a-w- C:\Users\Danka\Downloads\3DSexSetup.exe
2014-06-16 15:21:44 A16B2A7E8CC03755DEA1BA1D4D5FAA0E 400904 ----a-w- C:\Users\Danka\Downloads\game sex pc.exe
2014-06-16 14:13:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GamesGoFree.com
2014-06-16 14:12:42 1258004A71B151B2DEC28BE594EBFAF3 76124624 ----a-w- C:\Users\Danka\Downloads\hobbyfarmsetup_full.exe
2014-06-16 14:08:25 645E0040B27C1EC9E07C7BBF6A7727AD 1721336 ----a-w- C:\Users\Danka\Downloads\hobbyfarmsetup.exe
2014-06-16 10:50:01 4DC5A0C4ABEF37F59D98F0109747A3A8 8366592 ----a-w- C:\Users\Danka\Downloads\TheQuestPpc.exe
2014-06-13 10:34:36 A61A24E28CE5E961941D61C1D342AC39 4748896 ----a-w- C:\Users\Danka\Downloads\ccsetup414.exe
2014-06-12 07:50:36 -------- d-----w- C:\ProgramData\BiteSaVeer
2014-06-08 12:27:51 -------- d-----w- C:\ProgramData\BeestSSaveForYou
2014-06-01 16:40:47 -------- d-----w- C:\ProgramData\Happy2aSaave
2014-05-25 20:50:10 -------- d-----w- C:\ProgramData\CouupExtension

====== C: exe-files ==
2014-06-16 21:28:59 387C0A29C7491F1128578B8516622AB8 1058200 ----a-w- C:\Users\Danka\Downloads\install_flashplayer14x32au_mssa_aaa_aih.exe
2014-06-16 20:53:29 9689A7E5F79A661E8BAA83819482A33E 54072 ----a-w- C:\Users\Danka\Desktop\mbar\mbamdor.exe
2014-06-16 20:53:29 830259CA42B59F809F1E01BAF29FA4A2 1184056 ----a-w- C:\Users\Danka\Desktop\mbar\mbar.exe
2014-06-16 20:53:29 5F9B2112F55EC84DBF4C5DAA8CA58402 821560 ----a-w- C:\Users\Danka\Desktop\mbar\Plugins\fixdamage.exe
2014-06-16 20:51:57 DFF72B75746001A9060AB2B80310012E 14349744 ----a-w- C:\Users\Danka\Downloads\mbar-1.07.0.1012.exe
2014-06-16 16:08:27 E5F0C472399253B73FCB62322E851545 16796976 ----a-w- C:\Users\Danka\Downloads\3DSexSetup.exe
2014-06-16 15:23:02 C71282987142D2F93C4CF81730F9E731 718497 ----a-w- C:\Windows\unins000.exe
2014-06-16 15:22:32 B98A168D568C48993CF37C52E4005CBE 429649 ----a-w- C:\Users\Danka\AppData\Local\Temp\UNTE1D4.exe
2014-06-16 15:22:28 B98A168D568C48993CF37C52E4005CBE 429649 ----a-w- C:\Users\Danka\AppData\Local\Temp\UNTD289.exe
2014-06-16 15:21:44 A16B2A7E8CC03755DEA1BA1D4D5FAA0E 400904 ----a-w- C:\Users\Danka\Downloads\game sex pc.exe
2014-06-16 14:12:52 C9E945CC3894DE152BB0D976E73942F3 1768576 ----a-w- C:\Program Files\GamesGoFree.com\Hobby Farm\Hobby Farm.exe
2014-06-16 14:12:52 4A309935D57E9B9F2D7EE2DBD9AB2644 707354 ----a-w- C:\Program Files\GamesGoFree.com\Hobby Farm\unins000.exe
2014-06-16 14:12:52 450F775557223C947BA76F943760CDD7 39720 ----a-w- C:\Program Files\GamesGoFree.com\Hobby Farm\pfbdownloader.exe
2014-06-16 14:12:52 2CD06B0097BEA4518BFF23CB58B6853A 1986560 ----a-w- C:\Program Files\GamesGoFree.com\Hobby Farm\engine.exe
2014-06-16 14:12:52 01B834D90DC70B0228A81B12BE15D83C 116736 ----a-w- C:\Program Files\GamesGoFree.com\Hobby Farm\game.exe
2014-06-16 14:12:42 1258004A71B151B2DEC28BE594EBFAF3 76124624 ----a-w- C:\Users\Danka\Downloads\hobbyfarmsetup_full.exe
2014-06-16 14:08:25 645E0040B27C1EC9E07C7BBF6A7727AD 1721336 ----a-w- C:\Users\Danka\Downloads\hobbyfarmsetup.exe
2014-06-16 10:50:01 4DC5A0C4ABEF37F59D98F0109747A3A8 8366592 ----a-w- C:\Users\Danka\Downloads\TheQuestPpc.exe
2014-06-13 10:34:36 A61A24E28CE5E961941D61C1D342AC39 4748896 ----a-w- C:\Users\Danka\Downloads\ccsetup414.exe
2014-06-12 07:50:44 692B15082EEAA2006C68B39D78F49DBF 643072 ----a-w- C:\ProgramData\BiteSaVeer\XQmR.exe
=== C: other files ==
2014-06-16 20:59:22 6802E1A143C49D7BDAB0BF952E5A231C 113880 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-06-16 20:54:38 EA6FC4074EB53342249CCE7DAE9F3A85 75480 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-06-16 16:12:49 05B8CB377330E5F29EDE61BAB7C4EBBE 24137 ----a-w- C:\Users\Danka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RQI4NI0B\glow[1].zip

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-427376844-3463937765-1032404297-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe"
"IgfxTray"="C:\Windows\system32\igfxtray.exe"
"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"
"Persistence"="C:\Windows\system32\igfxpers.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun"

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [06/17/2014 04:27 PM]
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [04/25/2014 04:49 PM]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [04/25/2014 04:49 PM]

==== Other Scheduled Tasks ======================

"C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\Math Problem Solver CPU" [C:\Users\Danka\AppData\Local\Math Problem Solver\cpu\Solve.exe]
"C:\Windows\system32\tasks\Math Problem Solver Optimize" ["C:\Users\Danka\AppData\Local\Math Problem Solver\Optimize.exe"]
"C:\Windows\system32\tasks\SomotoUpdateCheckerAutoStart" [C:\Users\Danka\AppData\Local\FilesFrog Update Checker\update_checker.exe]
"C:\Windows\system32\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files\Apple Software Update\SoftwareUpdate.exe]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Danka\AppData\Roaming\Mozilla\Firefox\Profiles\qxfjv2pg.default
- NEwSaver - %ProfilePath%\extensions\i.16n@l-aiyh.net
- RoboSAVer - %ProfilePath%\extensions\jkdtsvs@youyy.net
- CostMin - %ProfilePath%\extensions\oi.nl@slppzs-.net
- TakkeTThECoouppon - %ProfilePath%\extensions\ozn-qwm@k-fbj.co.uk
- BesetSaveForYou - %ProfilePath%\extensions\rayikvbz@cowhtxyeae.com

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Danka\AppData\Roaming\Mozilla\Firefox\Profiles\qxfjv2pg.default
A58DE0A570148AF5FF3512B2A340D09F - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll - Shockwave Flash
785105A23650755A8F7A72405EB0D923 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll - Google Update
025BBEF5A248B09BDC6684747F6EB5BC - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U55
290A0130C74ADCD4546BC6900D1665D9 - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.550.14
0E8B2D0D9E3415A91EF259CE1112C579 - C:\Windows\system32\Adobe\Director\np32dsw_1210150.dll - Shockwave for Director / Shockwave for Director
49CFBB2130C682FFDF2CEBEE9A2D556E - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll - iTunes Application Detector
01D93217A9EE48DD37072B671378CC9C - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll - Silverlight Plug-In
209F58DECE7A511BB81A7A172F4346E8 - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll - Foxit Reader Plugin for Mozilla
28986F0A2342A033345EF9E70D395E4F - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrlui.dll - Microsoft® Silverlight


==== Chrome Look ======================

CostMin - Administrator\AppData\Local\Chromatic Browser\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Administrator\AppData\Local\Torch\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Danka\AppData\Local\Chromatic Browser\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Danka\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
Uploads Only for Youtube - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajdnlgehefnmaiighnbaibekhdfhnipd
Google Docs - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
NEwSaver - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\djbjkhapelkfdeijgdgpcaabeocgojfl
TakkeTThECoouppon - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnbochbbaeaadbbhpkmnnhgdmefojkjj
RoboSAVer - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhdjhdfcilgnbmebkojobinnaimbmgfb
World Clock - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkkidmpafdcfdcbkbpnmplgedohaijkd
Google Wallet - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Danka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
CostMin - Danka\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Danka\AppData\Local\Torch\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Guest\AppData\Local\Chromatic Browser\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - Guest\AppData\Local\Torch\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - HomeGroupUser$\AppData\Local\Chromatic Browser\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - HomeGroupUser$\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - HomeGroupUser$\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo
CostMin - HomeGroupUser$\AppData\Local\Torch\User Data\Default\Extensions\aegceojbackdfedmhhnidoffpkignebo

==== IE Start and Search Settings ======================

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== C:\zoek_backup content ======================

C:\zoek_backup (files=0 folders=0 0 bytes)

==== EOF on Thu 06/19/2014 at 9:38:08.25 ======================

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Ponovo pokreni zoek ;


zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;


U beli okvir prozora iskopiraj sledeći tekst:


[Link mogu videti samo ulogovani korisnici];ff
[Link mogu videti samo ulogovani korisnici];ff
[Link mogu videti samo ulogovani korisnici];ff
aegceojbackdfedmhhnidoffpkignebo;chr
dnbochbbaeaadbbhpkmnnhgdmefojkjj;chr
jhdjhdfcilgnbmebkojobinnaimbmgfb;chr
C:\Users\Danka\AppData\Local\Math Problem Solver;fs
FFdefaults;
chrdefaults;
iedefaults;
emptyalltemp;
autoclean;
emptyclsid;
ipconfig /flushdns >> %temp%\log.txt;b
ipconfig /flushdns;b




Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.

Ko je trenutno na forumu
 

Ukupno su 1404 korisnika na forumu :: 80 registrovanih, 5 sakrivenih i 1319 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 15694 - dana 01 Feb 2026 12:23

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 015, 357magnum, A.R.Chafee.Jr., AndrejPetar, Apis Dr, Apok, ArchaBasha, avijacija, babaroga, bakovaca, bigfoot, bobor, Bombona, BrcakRS, Bubimir, cifra, cinoeye, cojapop, crnogorac, darkojovxp, dd201176, divison, Djuza, Dogma21, DonRumataEstorski, dozorni, dradex, efektiva, Fliper, foksmolder, Georgius, Giskard, goxin, heisenberg2, hyla, icemilos, Inner-Cell, Insan, ivan_8282, Ivoo, Jan, jodzula, Kajzer Soze, Kobrim, Koce, ladro, Leonov, leopard83, Levi, LostInSpaceandTime, markolopin, MB120mm, mercedesamg, Metanoja, milenko crazy north, milutin134, mux, Nemanja Opalić, Nikola.M, nikolapetkovic, pceklic, Pekman, pisac12, razumihin, RJ, ruger357, S94, SamostalniReferent, Sevatar, simazr, Sonic, sspp, Stojan Mrsavi, styg, tajvankanasta, tamno.nebo, User04, vathra, Zavulon, Zeljo980