Youndoo

1

Youndoo

offline
  • coa93  Male
  • Zaslužni građanin
  • Pridružio: 31 Okt 2014
  • Poruke: 614

Ne paznjom sam izgleda bio pokubio youndoo dok sam instalirao daemon tools,chrome ikonica mi je sada kao prazan papir kada otvorim







Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-01-2017 01
Ran by Korisnik (administrator) on DESKTOP-N2TGECK (25-01-2017 19:55:21)
Running from C:\Users\Korisnik\Downloads
Loaded Profiles: Korisnik (Available Profiles: defaultuser0 & Korisnik)
Platform: Windows 10 Enterprise Version 1607 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
() C:\Users\Korisnik\Desktop\OpenHardwareMonitor\OpenHardwareMonitor.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(BitTorrent Inc.) C:\Users\Korisnik\AppData\Roaming\BitTorrent\BitTorrent.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amddvr.exe
(BitTorrent Inc.) C:\Users\Korisnik\AppData\Roaming\BitTorrent\updates\7.9.9_42974\bittorrentie.exe
(BitTorrent Inc.) C:\Users\Korisnik\AppData\Roaming\BitTorrent\updates\7.9.9_42974\bittorrentie.exe
(Valve Corporation) D:\Program Files (x86)\Steam\Steam.exe
(GIGABYTE Technology Co.,Ltd.) C:\Program Files (x86)\GIGABYTE\XTREME GAMING ENGINE\Xtreme.exe
(Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.1\Lightshot.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.251.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-07] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8899592 2016-08-19] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-05-26] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [225944 2016-07-11] ()
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKU\S-1-5-21-2767601896-2581735010-1609928006-1001\...\Run: [BitTorrent] => C:\Users\Korisnik\AppData\Roaming\BitTorrent\BitTorrent.exe [2149064 2016-11-26] (BitTorrent Inc.)
HKU\S-1-5-21-2767601896-2581735010-1609928006-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3044848 2017-01-22] (Electronic Arts)
HKU\S-1-5-21-2767601896-2581735010-1609928006-1001\...\Run: [AMDDVR] => C:\Program Files\AMD\CNext\CNext\amddvr.exe [1337224 2016-12-04] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-2767601896-2581735010-1609928006-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2767601896-2581735010-1609928006-1001\...\Run: [Steam] => d:\Program Files (x86)\Steam\steam.exe [2881824 2017-01-19] (Valve Corporation)
HKU\S-1-5-21-2767601896-2581735010-1609928006-1001\...\RunOnce: [Uninstall C:\Users\Korisnik\AppData\Local\Microsoft\OneDrive\17.3.6381.0405\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Korisnik\AppData\Local\Microsoft\OneDrive\17.3.6381.0405\amd64"
HKU\S-1-5-21-2767601896-2581735010-1609928006-1001\...\RunOnce: [Uninstall C:\Users\Korisnik\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Korisnik\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2016-12-09]
ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (No File)
Startup: C:\Users\Korisnik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE XTREME GAMING ENGINE.lnk [2017-01-06]
ShortcutTarget: GIGABYTE XTREME GAMING ENGINE.lnk -> C:\Program Files (x86)\GIGABYTE\XTREME GAMING ENGINE\autorun.exe ()
GroupPolicy: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{e7ed3c36-b29e-4616-a499-1154cfd275b0}: [DhcpNameServer] 192.168.1.1 0.0.0.0

Internet Explorer:
==================
HKU\S-1-5-21-2767601896-2581735010-1609928006-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)

FireFox:
========
FF DefaultProfile: 0zy8rli0.default
FF ProfilePath: C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default [2017-01-24]
FF Extension: (Домашняя страница Mail.Ru) - C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\Extensions\homepage@mail.ru [2017-01-24]
FF Extension: (Поиск@Mail.Ru) - C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\Extensions\search@mail.ru [2017-01-24]
FF Extension: (iMacros for Firefox) - C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\Extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}.xpi [2017-01-04]
FF Extension: (Визуальные закладки @Mail.Ru) - C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\Extensions\{a38384b3-2d1d-4f36-bc22-0f7ae402bcd7} [2017-01-24]
FF Extension: (Block site) - C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\Extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc} [2017-01-04]
FF Extension: (Greasemonkey) - C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2017-01-04]
FF SearchPlugin: C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\searchplugins\gkag881u.xml [2017-01-24]
FF SearchPlugin: C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\searchplugins\mailru.xml [2017-01-23]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll [2013-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-01-25] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-01-25] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)

Chrome:
=======
CHR DefaultProfile: ChromeDefaultData
CHR HomePage: ChromeDefaultData -> hxxps://www.google.rs/
CHR Profile: C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-01-25] <==== ATTENTION
CHR Extension: (Google презентације) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-11-05]
CHR Extension: (Google документи) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aohghmighlieiainnegkcijnfilokake [2016-11-05]
CHR Extension: (Google диск) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-11-05]
CHR Extension: (YouTube) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-05]
CHR Extension: (Tampermonkey) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2017-01-24]
CHR Extension: (Google табеле) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-11-05]
CHR Extension: (Google документи офлајн) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-11-05]
CHR Extension: (Плаћања у Chrome веб-продавници) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-19]
CHR Extension: (Gmail) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-05]
CHR Extension: (Chrome Media Router) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-17]
CHR Profile: C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\Guest Profile [2017-01-24]
CHR Profile: C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\Profile 1 [2016-12-17]
CHR Extension: (Tampermonkey) - C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2017-01-23]
CHR Profile: C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\System Profile [2017-01-24]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-01-28] (Futuremark)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2119176 2017-01-22] (Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2181648 2017-01-22] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2016-12-09] ()
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-09-15] (Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH)
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [108776 2016-09-06] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc.)
R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\c0309270.inf_amd64_47c09dd18e1ee4c5\atikmdag.sys [28729240 2016-12-07] (Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\c0309270.inf_amd64_47c09dd18e1ee4c5\atikmpag.sys [530328 2016-12-07] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [101376 2016-12-08] (Advanced Micro Devices)
R3 atillk64; C:\Program Files (x86)\GIGABYTE\XTREME GAMING ENGINE\AtiTool\atillk64.sys [14608 2006-07-19] (ATI Technologies Inc.)
S3 cpuz136; C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [25832 2017-01-14] (CPUID)
S3 DIRECTIO; C:\Program Files\PerformanceTest\DirectIo64.sys [31376 2015-03-10] ()
S3 GPUZ; C:\Windows\TEMP\GPUZ.sys [27008 2017-01-14] ()
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [27552 2016-11-08] (REALiX(tm))
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
S3 RtlWlanu_OldIC; C:\Windows\System32\drivers\rtwlanu_oldIC.sys [3814400 2016-07-16] (Realtek Semiconductor Corporation )
R3 SensorsSimulatorDriver; C:\Windows\System32\drivers\WUDFRd.sys [216064 2016-07-16] (Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
R3 WinRing0_1_2_0; C:\Users\Korisnik\Desktop\OpenHardwareMonitor\OpenHardwareMonitor.sys [14544 2017-01-25] (OpenLibSys.org)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-01-25 19:55 - 2017-01-25 19:55 - 00015463 _____ C:\Users\Korisnik\Downloads\FRST.txt
2017-01-25 19:54 - 2017-01-25 19:55 - 00000000 ____D C:\FRST
2017-01-25 19:54 - 2017-01-25 19:54 - 02420736 _____ (Farbar) C:\Users\Korisnik\Downloads\FRST64.exe
2017-01-25 14:51 - 2017-01-25 14:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Miniclip Games
2017-01-25 14:19 - 2017-01-25 14:19 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pengapop
2017-01-25 13:36 - 2017-01-25 13:36 - 00002348 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-01-25 13:36 - 2017-01-25 13:36 - 00002336 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-01-25 13:35 - 2017-01-25 13:40 - 00003416 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2017-01-25 13:35 - 2017-01-25 13:40 - 00003292 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2017-01-25 13:35 - 2017-01-25 13:35 - 01065376 _____ (Google Inc.) C:\Users\Korisnik\Downloads\ChromeSetup.exe
2017-01-25 13:33 - 2017-01-25 13:33 - 00000000 ____D C:\Windows\System32\Tasks\Apple
2017-01-25 13:33 - 2017-01-25 13:33 - 00000000 ____D C:\Windows\system32\appmgmt
2017-01-25 13:33 - 2017-01-25 13:33 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2017-01-24 20:35 - 2017-01-24 20:57 - 00000773 _____ C:\Users\Korisnik\Desktop\sastav.txt
2017-01-24 12:52 - 2017-01-24 12:52 - 00128299 _____ C:\Users\Korisnik\Downloads\Theflashpcgamedownload.pdf
2017-01-24 12:06 - 2017-01-24 12:06 - 00000000 ____D C:\SEGA
2017-01-24 12:02 - 2017-01-24 14:13 - 00000000 ____D C:\Program Files (x86)\DOSBox-0.74
2017-01-24 12:02 - 2017-01-24 12:02 - 00000000 ____D C:\Users\Korisnik\AppData\Local\DOSBox
2017-01-24 11:57 - 2017-01-24 11:57 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\PowerISO
2017-01-24 11:56 - 2017-01-24 14:13 - 00000000 ____D C:\Program Files\PowerISO
2017-01-24 11:55 - 2017-01-24 11:55 - 00000000 ____D C:\Users\Public\Documents\Daemon Tools Images
2017-01-24 11:53 - 2017-01-24 11:59 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Vaterentphoser
2017-01-24 11:52 - 2017-01-24 11:53 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Gepecultfawidom
2017-01-24 11:49 - 2017-01-24 11:55 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\DAEMON Tools Lite
2017-01-24 11:48 - 2017-01-24 11:48 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2017-01-23 22:42 - 2017-01-24 14:13 - 00000000 ____D C:\Users\Korisnik\Downloads\256_Igre
2017-01-23 22:42 - 2017-01-24 14:13 - 00000000 ____D C:\Program Files\7-Zip
2017-01-23 22:37 - 2017-01-23 22:37 - 00000000 ____D C:\ProgramData\DAEMON Tools Ultra
2017-01-23 22:20 - 2017-01-23 22:20 - 02332586 _____ C:\Users\Korisnik\Downloads\6666_Games_Download.zip
2017-01-23 22:19 - 2017-01-23 22:31 - 456375670 _____ C:\Users\Korisnik\Downloads\256_Igre.7z
2017-01-23 21:59 - 2017-01-24 11:44 - 00000000 ____D C:\Program Files (x86)\Mail.Ru
2017-01-23 21:59 - 2017-01-23 21:59 - 34139776 _____ C:\Users\Korisnik\Downloads\Непотврђено 742540.crdownload
2017-01-23 21:58 - 2017-01-24 14:13 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Mail.Ru
2017-01-23 21:58 - 2017-01-24 11:44 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Amigo
2017-01-23 21:58 - 2017-01-23 21:58 - 00000000 ____D C:\ProgramData\Mail.Ru
2017-01-23 21:56 - 2017-01-23 21:56 - 00000000 ____D C:\Users\Korisnik\Downloads\6666_games_rom
2017-01-23 21:54 - 2017-01-23 21:59 - 16678577 _____ C:\Users\Korisnik\Downloads\Непотврђено 799112.crdownload
2017-01-23 20:29 - 2017-01-23 20:29 - 00000000 ____D C:\Users\Korisnik\AppData\LocalLow\AMD
2017-01-23 20:11 - 2017-01-23 20:11 - 00000060 _____ C:\ProgramData\SoftwareUpdateTemp.xml
2017-01-23 19:53 - 2017-01-24 14:13 - 00000000 ____D C:\Users\Korisnik\Downloads\NiceHashMiner_v1.7.4.2
2017-01-23 19:53 - 2017-01-23 19:53 - 01917954 _____ C:\Users\Korisnik\Downloads\NiceHashMiner_v1.7.4.2 (1).zip
2017-01-23 19:52 - 2017-01-23 19:53 - 01917954 _____ C:\Users\Korisnik\Downloads\NiceHashMiner_v1.7.4.2.zip
2017-01-23 19:45 - 2017-01-23 19:47 - 72340750 _____ C:\Users\Korisnik\Downloads\microsoft-windows-netfx3-ondemand-package.cab
2017-01-23 19:40 - 2017-01-23 19:42 - 72340750 _____ C:\microsoft-windows-netfx3-ondemand-package.cab
2017-01-23 19:35 - 2017-01-23 19:35 - 00170230 _____ C:\Users\Korisnik\Downloads\NiceHashMiner_v1.7.4.2_patch_v1.zip
2017-01-23 13:08 - 2017-01-23 13:43 - 00000000 ____D C:\ProgramData\TrackmaniaTurbo
2017-01-23 13:08 - 2017-01-23 13:10 - 00000000 ____D C:\Users\Korisnik\Documents\TrackmaniaTurbo
2017-01-23 13:04 - 2017-01-23 13:04 - 00000000 ____D C:\Users\Korisnik\Downloads\TrackmaniaTurbo.U1
2017-01-23 12:46 - 2017-01-23 12:53 - 32118469 _____ C:\Users\Korisnik\Downloads\wwe2k16_mod_rey_mysterio.rar
2017-01-23 12:46 - 2017-01-23 12:48 - 77961408 _____ C:\Users\Korisnik\Downloads\TrackmaniaTurbo.U1.7z
2017-01-23 12:45 - 2017-01-23 12:45 - 00000754 _____ C:\Users\Korisnik\Desktop\Trackmania Turbo.lnk
2017-01-23 12:45 - 2017-01-23 12:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trackmania Turbo
2017-01-23 09:15 - 2017-01-24 14:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WWE 2K16
2017-01-23 09:15 - 2017-01-23 09:15 - 00000475 _____ C:\Users\Public\Desktop\WWE 2K16.lnk
2017-01-23 07:01 - 2017-01-25 19:41 - 00000000 ____D C:\Users\Korisnik\AppData\LocalLow\BitTorrent
2017-01-22 23:30 - 2017-01-22 23:30 - 00062619 _____ C:\Users\Korisnik\Downloads\Battlefield.Hardline-CPY.torrent
2017-01-22 23:20 - 2017-01-22 23:20 - 00124489 _____ C:\Users\Korisnik\Downloads\Battlefield.Hardline-CPY-[rarbg.com].torrent
2017-01-22 23:16 - 2017-01-22 23:16 - 00070197 _____ C:\Users\Korisnik\Downloads\Trackmania.Turbo-CODEX.torrent
2017-01-22 17:56 - 2017-01-22 17:56 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\poclbm
2017-01-22 17:52 - 2017-01-22 17:53 - 07731626 _____ (Igor Pavlov) C:\Users\Korisnik\Downloads\guiminer-20121203.exe
2017-01-22 17:51 - 2017-01-23 19:39 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Bitcoin
2017-01-22 17:49 - 2017-01-22 17:50 - 13144152 _____ (Bitcoin Core project) C:\Users\Korisnik\Downloads\bitcoin-0.13.2-win64-setup.exe
2017-01-22 16:49 - 2017-01-22 16:49 - 00000219 _____ C:\Users\Korisnik\Desktop\Counter-Strike Global Offensive.url
2017-01-22 16:27 - 2017-01-22 16:27 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Steam
2017-01-22 16:22 - 2017-01-22 16:22 - 00000731 _____ C:\Users\Public\Desktop\Steam.lnk
2017-01-22 16:22 - 2017-01-22 16:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2017-01-22 16:17 - 2017-01-22 16:17 - 01446792 _____ C:\Users\Korisnik\Downloads\SteamSetup.exe
2017-01-21 23:43 - 2017-01-21 23:43 - 00066365 _____ C:\Users\Korisnik\Downloads\WWE.2K16.Incl.All.DLCs.MULTi6-Repack.torrent
2017-01-21 21:26 - 2017-01-22 17:57 - 00000000 ____D C:\Program Files (x86)\EWB512
2017-01-21 21:25 - 2017-01-21 21:25 - 07238447 _____ C:\Users\Korisnik\Downloads\TESLA-Institute_Electronic_Workbench_Ewb_full_5_12_Setup.zip
2017-01-21 17:43 - 2017-01-21 17:43 - 00001171 _____ C:\Users\Public\Desktop\SoundWire Server.lnk
2017-01-21 17:43 - 2017-01-21 17:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoundWire Server
2017-01-21 17:43 - 2017-01-21 17:43 - 00000000 ____D C:\Program Files (x86)\SoundWire Server
2017-01-21 17:42 - 2017-01-21 17:42 - 01690921 _____ C:\Users\Korisnik\Downloads\SoundWire_Server_setup7.zip
2017-01-20 22:51 - 2017-01-20 22:28 - 00001350 _____ C:\Users\Korisnik\Desktop\WatchDogs2 - Shortcut.lnk
2017-01-20 22:01 - 2017-01-20 22:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Watch_Dogs 2
2017-01-19 22:20 - 2017-01-19 22:20 - 00033080 _____ C:\Users\Korisnik\Downloads\dlc.ultra.textures.torrent
2017-01-19 19:21 - 2017-01-24 14:13 - 00000000 ____D C:\Users\Korisnik\Documents\WWE2K16
2017-01-19 19:18 - 2017-01-19 19:18 - 00035651 _____ C:\Users\Korisnik\Downloads\WWE.2K16.Update.v1.01-CODEX (2).torrent
2017-01-19 19:18 - 2017-01-19 19:18 - 00035651 _____ C:\Users\Korisnik\Downloads\WWE.2K16.Update.v1.01-CODEX (1).torrent
2017-01-18 23:07 - 2017-01-24 14:13 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Unity
2017-01-18 23:07 - 2017-01-23 21:59 - 00000000 ____D C:\Users\Korisnik\AppData\LocalLow\Unity
2017-01-18 23:07 - 2017-01-18 23:07 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Unity
2017-01-18 23:07 - 2017-01-18 23:07 - 00000000 ____D C:\ProgramData\Unity
2017-01-18 22:27 - 2017-01-18 22:27 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2015 Tools for Unity
2017-01-18 22:27 - 2017-01-18 22:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio Tools for Unity
2017-01-18 22:26 - 2017-01-18 22:26 - 00000000 ____D C:\Users\Public\Documents\Unity Projects
2017-01-18 22:08 - 2017-01-18 22:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity 5.5.0f3 (64-bit)
2017-01-18 22:08 - 2017-01-18 22:08 - 00000000 ____D C:\Program Files (x86)\GtkSharp
2017-01-18 22:07 - 2017-01-18 22:08 - 00000000 ____D C:\Program Files\Unity
2017-01-18 21:21 - 2017-01-18 21:21 - 00000000 ____D C:\Users\Korisnik\AppData\Local\BANDAI NAMCO Entertainment
2017-01-18 21:13 - 2017-01-18 21:13 - 00732928 _____ C:\Users\Korisnik\Downloads\UnityDownloadAssistant-5.5.0f3.exe
2017-01-18 21:09 - 2017-01-18 21:09 - 00000000 ____D C:\Users\Korisnik\Downloads\Automobilista.Update.v1.2.0.incl.DLC-CODEX
2017-01-18 18:38 - 2017-01-18 18:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DRAGON BALL XENOVERSE 2
2017-01-18 18:14 - 2017-01-18 18:14 - 00000000 ____D C:\Users\Korisnik\.oracle_jre_usage
2017-01-18 18:13 - 2017-01-18 20:06 - 431851122 _____ C:\Users\Korisnik\Downloads\Automobilista.Update.v1.2.0.incl.DLC-CODEX.rar
2017-01-18 18:13 - 2017-01-18 18:13 - 00000000 ____D C:\Users\Korisnik\Documents\Automobilista
2017-01-18 18:03 - 2017-01-18 18:03 - 00063315 _____ C:\Users\Korisnik\Downloads\Watch.Dogs.2-CPY.torrent
2017-01-17 22:03 - 2017-01-17 22:03 - 00057892 _____ C:\Users\Korisnik\Downloads\Dragon.Ball.Xenoverse.2-CODEX-[rarbg.com].torrent
2017-01-17 21:52 - 2017-01-17 21:52 - 00035651 _____ C:\Users\Korisnik\Downloads\WWE.2K16.Update.v1.01-CODEX.torrent
2017-01-17 21:51 - 2017-01-17 21:51 - 00052825 _____ C:\Users\Korisnik\Downloads\WWE 2K16-CODEX-[rarbg.com].torrent
2017-01-17 21:48 - 2017-01-17 21:48 - 00074062 _____ C:\Users\Korisnik\Downloads\Automobilista.PROPER-CODEX.torrent
2017-01-17 21:45 - 2017-01-17 21:45 - 00031089 _____ C:\Users\Korisnik\Downloads\Automobilista-RELOADED.torrent
2017-01-17 19:15 - 2017-01-21 16:42 - 00000892 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2017-01-17 19:15 - 2017-01-21 16:42 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2017-01-17 19:15 - 2017-01-17 19:15 - 00003978 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-01-17 19:15 - 2017-01-17 19:15 - 00003806 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-01-17 19:14 - 2017-01-17 19:15 - 01200744 _____ (Adobe Systems Incorporated) C:\Users\Korisnik\Downloads\flashplayer24pp_xa_install.exe
2017-01-14 22:15 - 2017-01-14 22:15 - 01345152 _____ ( ) C:\Users\Korisnik\Downloads\hwmonitor-pro_1.27.exe
2017-01-14 22:14 - 2017-01-14 22:14 - 00000000 ____D C:\Windows\System32\Tasks\Open Hardware Monitor
2017-01-14 19:51 - 2017-01-14 19:58 - 00000022 _____ C:\Windows\GPU-Z.INI
2017-01-14 19:51 - 2017-01-14 19:51 - 00000000 ____D C:\Users\Default\Documents\My Games
2017-01-14 19:51 - 2017-01-14 19:51 - 00000000 ____D C:\Users\Default\AppData\Local\AMD
2017-01-14 19:51 - 2017-01-14 19:51 - 00000000 ____D C:\Users\Default User\Documents\My Games
2017-01-14 19:51 - 2017-01-14 19:51 - 00000000 ____D C:\Users\Default User\AppData\Local\AMD
2017-01-14 19:51 - 2017-01-14 19:51 - 00000000 ____D C:\ProgramData\Futuremark
2017-01-14 19:48 - 2017-01-14 19:50 - 47542402 _____ C:\Users\Korisnik\Downloads\Full Version .rar
2017-01-14 19:40 - 2017-01-14 19:40 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-01-14 19:40 - 2017-01-14 19:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Futuremark
2017-01-14 19:40 - 2017-01-14 19:40 - 00000000 ____D C:\Program Files (x86)\Futuremark
2017-01-14 19:11 - 2017-01-14 19:20 - 372882136 _____ (Futuremark) C:\Users\Korisnik\Downloads\3DMark_Vantage_v113_installer.exe
2017-01-14 13:55 - 2017-01-14 13:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Protector
2017-01-14 13:55 - 2017-01-14 13:55 - 00000000 ____D C:\Program Files (x86)\Game Protector
2017-01-14 13:54 - 2017-01-14 13:54 - 00863947 _____ (GameProtector.com ) C:\Users\Korisnik\Downloads\gameprotector_setup.exe
2017-01-13 20:49 - 2017-01-13 20:49 - 56596265 _____ C:\Users\Korisnik\Downloads\GTA V.rar
2017-01-13 20:43 - 2017-01-13 20:43 - 00170812 _____ C:\Users\Korisnik\Downloads\Game Error Fixer(2).rar
2017-01-13 11:54 - 2016-12-04 11:29 - 00111616 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2017-01-12 17:06 - 2017-01-12 17:06 - 00000000 ____D C:\ProgramData\TopLang
2017-01-12 09:54 - 2017-01-12 09:54 - 01440971 _____ C:\Users\Korisnik\Downloads\BeginnerTutorialProject (1).zip
2017-01-11 19:51 - 2017-01-11 19:51 - 01440971 _____ C:\Users\Korisnik\Downloads\BeginnerTutorialProject.zip
2017-01-11 19:31 - 2017-01-11 19:31 - 01412960 _____ C:\Users\Korisnik\Downloads\BeginnerTutorial2Images.zip
2017-01-11 19:30 - 2017-01-11 19:30 - 00000000 ____D C:\Users\Korisnik\GDevelop projects
2017-01-11 19:27 - 2017-01-13 20:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GDevelop
2017-01-11 19:26 - 2017-01-13 20:39 - 00000000 ____D C:\Users\Korisnik\.GDevelop
2017-01-09 20:46 - 2017-01-09 20:46 - 00933577 _____ C:\Users\Korisnik\Documents\Top 10 richest people in the world.pptx
2017-01-09 20:07 - 2017-01-09 20:25 - 00000000 ____D C:\Users\Korisnik\Downloads\najbogatiji ljudi
2017-01-09 18:47 - 2017-01-09 18:48 - 29300216 _____ C:\Users\Korisnik\Downloads\all my club legends.cpk
2017-01-09 18:32 - 2017-01-13 20:39 - 00000000 ____D C:\Users\Korisnik\Downloads\_DpFileList Generator by Baris + DLC 2
2017-01-08 23:10 - 2017-01-08 23:10 - 00015986 _____ C:\Users\Korisnik\Downloads\Far.Cry.Primal.HD.Texture.Pack-PLAZA.torrent
2017-01-08 13:18 - 2017-01-08 13:18 - 00000000 ____D C:\Windows\ERUNT
2017-01-08 13:17 - 2017-01-08 13:19 - 00000560 _____ C:\DelFix.txt
2017-01-08 13:17 - 2017-01-08 13:17 - 00781312 _____ C:\Users\Korisnik\Downloads\delfix_1.010.exe
2017-01-08 11:19 - 2017-01-08 11:19 - 00085945 _____ C:\Users\Korisnik\Downloads\Far.Cry.Primal-CPY.torrent
2017-01-07 18:26 - 2017-01-07 18:26 - 00047345 _____ C:\Users\Korisnik\Downloads\440472_1501364373_Addition.txt
2017-01-07 17:46 - 2017-01-07 17:46 - 00000000 ____D C:\ProgramData\Codemasters
2017-01-07 17:45 - 2017-01-07 17:45 - 00000000 ___HD C:\Windows\PIF
2017-01-07 14:12 - 2017-01-07 14:18 - 152286719 _____ C:\Users\Korisnik\Downloads\The Lost Box Installation.rar
2017-01-07 14:11 - 2017-01-07 14:12 - 04198791 _____ C:\Users\Korisnik\Downloads\96967_115949723_Saints-Row-Undercover-Design-Doc.PDF
2017-01-07 13:09 - 2017-01-07 13:09 - 00051897 _____ C:\Users\Korisnik\Downloads\DpFileListGeneratorbyBarisDLC2.rar
2017-01-06 23:42 - 2017-01-06 23:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pro Evolution Soccer 2017
2017-01-06 23:24 - 2016-11-03 23:35 - 00000000 ____D C:\Users\Korisnik\Downloads\Stadium Repack 41_PES17_PC
2017-01-06 23:19 - 2017-01-06 23:19 - 00000000 ____D C:\Users\Korisnik\AppData\Local\ElevatedDiagnostics
2017-01-06 23:09 - 2017-01-06 23:09 - 00000000 ____D C:\Users\Korisnik\Documents\KONAMI
2017-01-06 23:03 - 2017-01-06 23:14 - 00000000 ____D C:\Users\Korisnik\Downloads\pes
2017-01-06 22:54 - 2017-01-06 22:54 - 524288000 _____ C:\Users\Korisnik\Downloads\[PES17] PTE Patch 2017 3.0.part2.rar
2017-01-06 22:44 - 2017-01-06 22:44 - 524288000 _____ C:\Users\Korisnik\Downloads\[PES17] PTE Patch 2017 3.0.part1.rar
2017-01-06 22:37 - 2017-01-06 22:37 - 331377526 _____ C:\Users\Korisnik\Downloads\[PES17] PTE Patch 2017 3.0.part3.rar
2017-01-06 22:33 - 2017-01-06 22:55 - 199743236 _____ C:\Users\Korisnik\Downloads\PES2017 DataPack 2[www.downlodcity.ir].rar
2017-01-06 22:33 - 2017-01-06 22:50 - 50719923 _____ C:\Users\Korisnik\Downloads\03. (zabranjeno) 1.03 Fix.rar
2017-01-06 22:31 - 2017-01-06 23:21 - 693108736 _____ C:\Users\Korisnik\Downloads\Stadium_Repack_41_PES17_PC.part1.rar
2017-01-06 22:27 - 2017-01-06 23:21 - 689558581 _____ C:\Users\Korisnik\Downloads\Stadium_Repack_41_PES17_PC.part2.rar
2017-01-06 22:22 - 2017-01-06 22:51 - 101632741 _____ C:\Users\Korisnik\Downloads\[PES17] PTE Patch 2017 3.1 UPDATE.rar
2017-01-06 18:07 - 2017-01-06 18:07 - 00000000 ____D C:\ProgramData\KONAMI
2017-01-06 17:58 - 2017-01-09 09:32 - 00000000 ____D C:\Users\Korisnik\Desktop\kp
2017-01-06 17:52 - 2017-01-06 17:52 - 00077276 _____ C:\Users\Korisnik\Downloads\F1 2015-CPY-[rarbg.com].torrent
2017-01-06 12:20 - 2017-01-06 12:21 - 00414180 _____ C:\Windows\Minidump\010617-21468-01.dmp
2017-01-06 09:38 - 2017-01-06 09:39 - 14786912 _____ (GIGABYTE Technology Co.,Inc. ) C:\Users\Korisnik\Downloads\vga_xtreme_engine_setup_1.20.exe
2017-01-06 09:38 - 2017-01-06 09:38 - 01730675 _____ C:\Users\Korisnik\Downloads\manual_amd_105_e.pdf
2017-01-06 09:28 - 2017-01-06 09:28 - 00015028 _____ C:\Users\Korisnik\Downloads\Pro.Evolution.Soccer.2017.(zabranjeno)FIX-CPY.rar
2017-01-06 09:27 - 2017-01-06 09:27 - 00055961 _____ C:\Users\Korisnik\Downloads\Pro Evolution Soccer 2017-CPY-[rarbg.com].torrent
2017-01-05 22:17 - 2017-01-05 22:17 - 00924336 _____ C:\Users\Korisnik\Downloads\generator-bitcoin.zip
2017-01-05 15:57 - 2017-01-24 14:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2017-01-05 15:57 - 2017-01-05 15:57 - 00003288 _____ C:\Windows\System32\Tasks\StartCN
2017-01-05 15:54 - 2017-01-05 15:54 - 00000000 ____D C:\Users\Korisnik\Downloads\x64
2017-01-05 15:54 - 2017-01-05 15:54 - 00000000 ____D C:\Users\Korisnik\Downloads\DDU Logs
2017-01-05 15:53 - 2017-01-05 15:53 - 01135822 _____ (Igor Pavlov) C:\Users\Korisnik\Downloads\DDU v17.0.4.3.exe
2017-01-05 15:53 - 2017-01-05 15:53 - 00000000 ____D C:\Users\Korisnik\AppData\Local\WindowsApplication1
2017-01-05 15:51 - 2017-01-05 15:51 - 01094066 _____ C:\Users\Korisnik\Downloads\DDUv96-[Guru3D.com].exe
2017-01-05 15:51 - 2017-01-03 17:46 - 00000000 ____D C:\Users\Korisnik\Downloads\settings
2017-01-05 15:51 - 2017-01-03 17:35 - 01441792 _____ C:\Users\Korisnik\Downloads\Display Driver Uninstaller.exe
2017-01-05 15:51 - 2017-01-03 17:35 - 00556544 _____ C:\Users\Korisnik\Downloads\Display Driver Uninstaller.pdb
2017-01-05 15:51 - 2015-09-06 12:26 - 00000224 _____ C:\Users\Korisnik\Downloads\Display Driver Uninstaller.exe.config
2017-01-05 15:40 - 2017-01-05 15:52 - 523287512 _____ (AMD Inc.) C:\Users\Korisnik\Downloads\[Guru3D.com]-Win10-64Bit-Radeon-Software-Crimson-ReLive-16.12.1-Dec7.exe
2017-01-05 11:59 - 2017-01-05 12:00 - 00001403 _____ C:\Users\Korisnik\Downloads\YT-Unsub.js
2017-01-04 22:44 - 2017-01-04 22:44 - 00000474 _____ C:\Users\Korisnik\Downloads\Add Me Fast YouTube.iim
2017-01-04 22:40 - 2017-01-04 22:40 - 00001399 _____ C:\Users\Korisnik\Downloads\AIO AddMeFast.zip
2017-01-04 22:24 - 2017-01-04 22:24 - 00003020 _____ C:\Users\Korisnik\Downloads\Bot AddmeFast.rar
2017-01-04 22:21 - 2017-01-04 22:22 - 24256776 _____ C:\Users\Korisnik\Downloads\Bot Addmefast 2016.zip
2017-01-04 21:20 - 2017-01-04 21:20 - 00001167 _____ C:\Users\Korisnik\Downloads\disable-antibot.user.rar
2017-01-04 21:05 - 2017-01-04 21:05 - 00003086 _____ C:\Users\Korisnik\Downloads\Like4Like YT Like (1).iim
2017-01-04 18:16 - 2017-01-04 18:16 - 00003086 _____ C:\Users\Korisnik\Downloads\Like4Like YT Like.iim
2017-01-04 17:53 - 2017-01-04 17:53 - 00000000 ____D C:\Users\Korisnik\Downloads\L4LFBB
2017-01-04 17:42 - 2017-01-04 17:42 - 00000000 ____D C:\Users\Korisnik\Documents\iMacros
2017-01-04 17:38 - 2017-01-04 17:38 - 00436289 _____ C:\Users\Korisnik\Downloads\imacros_for_firefox-9.0.3-fx.xpi
2017-01-04 17:38 - 2017-01-04 17:38 - 00328479 _____ C:\Users\Korisnik\Downloads\greasemonkey-3.9-fx.xpi
2017-01-04 17:38 - 2017-01-04 17:38 - 00243584 _____ C:\Users\Korisnik\Downloads\Firefox Setup Stub 50.1.0 (1).exe
2017-01-04 17:38 - 2017-01-04 17:38 - 00001031 _____ C:\Users\Korisnik\Downloads\L4LFBB.zip
2017-01-04 17:37 - 2017-01-16 22:18 - 00000000 ____D C:\Users\Korisnik\AppData\LocalLow\Mozilla
2017-01-04 17:36 - 2017-01-04 17:44 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Mozilla
2017-01-04 17:36 - 2017-01-04 17:37 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Mozilla
2017-01-04 17:36 - 2017-01-04 17:36 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-01-04 17:36 - 2017-01-04 17:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-01-04 17:34 - 2017-01-04 17:34 - 00243584 _____ C:\Users\Korisnik\Downloads\Firefox Setup Stub 50.1.0.exe
2017-01-04 16:37 - 2016-03-17 17:41 - 72036916 _____ C:\Users\Korisnik\Downloads\AMS Explosion HD.mov
2017-01-04 16:37 - 2016-03-16 21:29 - 00000424 _____ C:\Users\Korisnik\Downloads\ReadMe.txt
2017-01-04 16:33 - 2017-01-04 16:35 - 68120466 _____ C:\Users\Korisnik\Downloads\AMS Explosion HD.rar
2017-01-04 16:00 - 2017-01-04 16:00 - 00005216 _____ C:\Users\Korisnik\Downloads\soundscrate-explosionboom4.mp3.sfk
2017-01-04 15:47 - 2017-01-04 15:47 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Apple Computer
2017-01-04 15:41 - 2017-01-25 13:33 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2017-01-04 15:41 - 2017-01-04 15:41 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Apple
2017-01-04 15:41 - 2017-01-04 15:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2017-01-04 15:41 - 2017-01-04 15:41 - 00000000 ____D C:\ProgramData\Apple Computer
2017-01-04 15:41 - 2017-01-04 15:41 - 00000000 ____D C:\ProgramData\Apple
2017-01-04 15:41 - 2017-01-04 15:41 - 00000000 ____D C:\Program Files (x86)\QuickTime
2017-01-04 15:40 - 2017-01-04 15:40 - 00000000 ____D C:\Users\Korisnik\AppData\LocalLow\Apple Computer
2017-01-04 15:33 - 2017-01-04 15:34 - 41896256 _____ (Apple Inc.) C:\Users\Korisnik\Downloads\QuickTimeInstaller.exe
2017-01-04 15:32 - 2017-01-04 15:39 - 28492389 _____ C:\Users\Korisnik\Downloads\footagecrate-simpleexplosion23.mov
2017-01-04 12:03 - 2017-01-04 12:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot
2017-01-04 12:02 - 2017-01-04 12:02 - 02551888 _____ (Skillbrains ) C:\Users\Korisnik\Downloads\setup-lightshot.exe
2017-01-03 22:01 - 2017-01-03 22:01 - 00000000 ____D C:\Users\Korisnik\AppData\LocalLow\Adobe
2017-01-03 21:50 - 2017-01-03 21:50 - 00003646 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-N2TGECK-Korisnik
2017-01-03 21:50 - 2017-01-03 21:50 - 00001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2015.lnk
2017-01-03 21:50 - 2017-01-03 21:50 - 00000000 ____D C:\Users\Korisnik\Documents\Adobe
2017-01-03 21:48 - 2017-01-03 21:48 - 00001619 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2017-01-03 21:48 - 2017-01-03 21:48 - 00000000 ____D C:\Program Files\Adobe
2017-01-03 21:47 - 2017-01-03 21:50 - 00000000 ____D C:\Program Files\Common Files\Adobe
2017-01-03 19:52 - 2017-01-03 21:50 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2017-01-03 19:46 - 2017-01-25 13:31 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Adobe
2017-01-03 19:46 - 2017-01-04 08:08 - 00000000 ____D C:\ProgramData\Adobe
2017-01-03 19:46 - 2017-01-03 19:46 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Macromedia
2017-01-02 17:45 - 2017-01-04 10:52 - 457176835 _____ C:\Users\Korisnik\Documents\Untitled.mp4
2017-01-02 17:30 - 2017-01-02 17:43 - 756224915 _____ C:\Users\Korisnik\Documents\Untitled cpu.mp4
2017-01-02 16:26 - 2017-01-02 16:26 - 00002520 _____ C:\Users\Korisnik\Documents\Register Vegas Pro.htm
2017-01-02 16:26 - 2017-01-02 16:26 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Publish Providers
2017-01-02 16:16 - 2017-01-02 16:24 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Sony
2017-01-02 16:16 - 2017-01-02 16:16 - 00000000 ____D C:\ProgramData\Sony
2017-01-02 16:16 - 2017-01-02 16:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2017-01-02 16:16 - 2017-01-02 16:16 - 00000000 ____D C:\Program Files\Sony
2017-01-02 16:16 - 2017-01-02 16:16 - 00000000 ____D C:\Program Files (x86)\Sony
2017-01-02 16:15 - 2017-01-02 17:20 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Sony
2017-01-01 20:48 - 2017-01-01 20:48 - 03778320 _____ (Martin Malík - REALiX ) C:\Users\Korisnik\Downloads\hw64_542.exe
2017-01-01 14:10 - 2017-01-15 09:55 - 00000000 ____D C:\Users\Korisnik\AppData\Local\QuantumBreak
2017-01-01 14:09 - 2017-01-01 14:09 - 00000000 ____D C:\Users\Korisnik\Documents\SkidRow
2016-12-30 12:06 - 2016-12-30 12:06 - 00033507 _____ C:\Users\Korisnik\Downloads\Quantum.Break.Update.1-SKIDROW.torrent
2016-12-30 12:03 - 2016-12-30 12:03 - 00220189 _____ C:\Users\Korisnik\Downloads\Quantum Break-SKIDROW.torrent
2016-12-28 21:40 - 2016-12-28 21:44 - 00000000 ____D C:\Users\Korisnik\Documents\Project CARS
2016-12-28 21:40 - 2016-12-28 21:40 - 00000000 ____D C:\Users\Korisnik\Documents\wmd_symbol_cache
2016-12-27 22:57 - 2016-12-27 22:57 - 00000000 ____D C:\Users\Korisnik\Documents\Snimci zvuka
2016-12-27 22:53 - 2017-01-20 22:30 - 00000000 ____D C:\Users\Korisnik\Documents\My Games
2016-12-27 22:53 - 2016-12-27 22:53 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\NuGet
2016-12-26 14:42 - 2016-12-26 14:42 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-01-25 19:54 - 2016-11-05 11:52 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\BitTorrent
2017-01-25 19:42 - 2016-11-06 16:10 - 00003492 _____ C:\Windows\System32\Tasks\Launcher GIGABYTE XTREME GAMING ENGINE
2017-01-25 19:41 - 2016-11-06 16:10 - 00000000 ____D C:\Users\Korisnik\Documents\temp
2017-01-25 19:41 - 2010-01-31 23:00 - 00000000 ____D C:\Users\Korisnik\Desktop\OpenHardwareMonitor
2017-01-25 19:40 - 2016-11-04 20:11 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-01-25 19:40 - 2016-11-04 13:28 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2017-01-25 19:40 - 2016-11-04 13:17 - 00000000 ____D C:\Users\Korisnik
2017-01-25 19:40 - 2016-07-16 07:04 - 00262144 _____ C:\Windows\system32\config\BBI
2017-01-25 18:56 - 2016-11-04 20:11 - 00000000 ____D C:\Windows\system32\SleepStudy
2017-01-25 13:36 - 2016-11-05 11:44 - 00000000 ____D C:\Program Files (x86)\Google
2017-01-25 13:18 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\LiveKernelReports
2017-01-24 19:26 - 2016-07-16 12:43 - 00471040 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2017-01-24 19:26 - 2016-07-16 12:43 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2017-01-24 19:26 - 2016-07-16 12:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe
2017-01-24 19:26 - 2016-07-16 12:43 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2017-01-24 19:26 - 2016-07-16 12:43 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2017-01-24 19:26 - 2016-07-16 12:36 - 00000000 ____D C:\Windows\CbsTemp
2017-01-24 19:23 - 2016-11-04 13:17 - 00000000 ____D C:\Users\Korisnik\AppData\Local\VirtualStore
2017-01-24 14:13 - 2016-11-04 20:14 - 00000000 ____D C:\Users\defaultuser0
2017-01-24 14:13 - 2016-11-04 13:28 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2017-01-24 14:13 - 2016-11-04 13:28 - 00000000 ____D C:\Program Files\AMD
2017-01-24 14:13 - 2016-07-16 12:47 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2017-01-24 14:13 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy
2017-01-24 14:13 - 2016-07-16 12:45 - 00000000 ____D C:\Windows\INF
2017-01-24 14:13 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\SysWOW64\downlevel
2017-01-24 14:13 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\SysWOW64\Dism
2017-01-24 14:13 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\system32\Sysprep
2017-01-24 14:13 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\system32\downlevel
2017-01-24 14:13 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\system32\Dism
2017-01-24 14:13 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\servicing
2017-01-24 14:12 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-01-24 14:09 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\MUI
2017-01-24 14:09 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\MUI
2017-01-24 14:09 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\registration
2017-01-24 14:08 - 2016-12-04 16:33 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-01-24 14:08 - 2016-11-04 13:21 - 00000000 ____D C:\AMD
2017-01-22 22:38 - 2016-11-06 11:45 - 00000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2017-01-22 17:57 - 2016-07-16 12:47 - 00000182 _____ C:\Windows\win.ini
2017-01-22 17:41 - 2016-11-12 22:29 - 00000000 ____D C:\ProgramData\Origin
2017-01-22 17:37 - 2016-11-12 22:37 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Origin
2017-01-22 16:56 - 2016-11-12 22:36 - 00000000 ____D C:\Program Files (x86)\Origin
2017-01-21 16:27 - 2016-12-19 21:54 - 00000000 ____D C:\Users\Korisnik\Desktop\programi
2017-01-21 11:29 - 2016-12-19 21:54 - 00000000 ____D C:\Users\Korisnik\Desktop\igrice
2017-01-17 19:15 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-01-17 19:15 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\Macromed
2017-01-15 09:53 - 2016-11-18 18:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2017-01-15 09:53 - 2016-11-18 18:31 - 00000000 ____D C:\Program Files\CPUID
2017-01-15 09:53 - 2016-07-16 12:42 - 00006656 _____ C:\Windows\system32\lpcio.dll
2017-01-13 20:40 - 2016-12-04 15:07 - 00000000 ____D C:\Windows\System32\Tasks\NCH Software
2017-01-06 12:20 - 2016-12-24 11:07 - 685531671 _____ C:\Windows\MEMORY.DMP
2017-01-06 12:20 - 2016-12-24 11:07 - 00000000 ____D C:\Windows\Minidump
2017-01-05 15:54 - 2016-12-04 17:19 - 00000000 ____D C:\Users\Korisnik\Documents\Visual Studio 2015
2017-01-04 12:04 - 2016-11-05 11:48 - 00000426 _____ C:\Windows\Tasks\update-S-1-5-21-2767601896-2581735010-1609928006-1001.job
2017-01-04 12:04 - 2016-11-04 20:11 - 04973608 _____ C:\Windows\system32\FNTCACHE.DAT
2017-01-04 12:03 - 2016-11-05 11:48 - 00003422 _____ C:\Windows\System32\Tasks\update-S-1-5-21-2767601896-2581735010-1609928006-1001
2017-01-04 12:03 - 2016-11-05 11:48 - 00000424 _____ C:\Users\Korisnik\AppData\Local\UserProducts.xml
2017-01-04 00:08 - 2016-12-08 19:09 - 00000000 ____D C:\Users\Korisnik\AppData\Local\Ubisoft Game Launcher
2017-01-03 21:50 - 2016-11-04 13:17 - 00000000 ____D C:\Users\Korisnik\AppData\Roaming\Adobe
2017-01-03 21:49 - 2016-11-04 13:21 - 00000000 ____D C:\ProgramData\Package Cache
2017-01-03 20:15 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\NDF
2017-01-01 20:48 - 2016-11-08 18:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO64
2017-01-01 19:53 - 2016-11-06 15:48 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-12-30 17:54 - 2016-12-19 12:56 - 00000000 ____D C:\Users\Korisnik\Documents\ProfileCache
2016-12-28 18:32 - 2016-12-09 20:35 - 00281392 _____ C:\Windows\SysWOW64\PnkBstrB.xtr
2016-12-28 18:32 - 2016-12-09 20:33 - 00281392 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2016-12-26 14:42 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\Drivers\UMDF

==================== Files in the root of some directories =======

2016-11-05 11:48 - 2016-11-05 11:48 - 0000003 _____ () C:\Users\Korisnik\AppData\Local\updater.log
2016-11-05 11:48 - 2017-01-04 12:03 - 0000424 _____ () C:\Users\Korisnik\AppData\Local\UserProducts.xml
2016-11-04 13:24 - 2016-11-04 13:24 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2017-01-23 20:11 - 2017-01-23 20:11 - 0000060 _____ () C:\ProgramData\SoftwareUpdateTemp.xml

Some files in TEMP:
====================
2017-01-25 13:59 - 2017-01-25 13:59 - 0045056 _____ () C:\Users\Korisnik\AppData\Local\Temp\SWFXXLRT.DLL

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-01-25 13:46

==================== End of FRST.txt ============================




https://www.mycity.rs/must-login.png

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Zdravo,

Preuzmi AdwCleaner i sačuvaj ga na Desktop
Dvoklikom pokreni program.
U EULA prozoru klikni na I agree.
U Options isključi Reset Winsock settings ako je uključen.
Klikni na dugme Scan i sačekaj da se završi skeniranje.
Klikni na dugme Cleaning i pričekaj da program završi.
Program će zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni OK kao potvrdu.
Na sljedeća dva prozora koja se otvore (Informations i Restart required ) klikni OK

Računar će se restartovati, a potom otvoriti Notepad (C:\Adwcleaner\AdwCleaner[C1].txt) sa izvještajem.
Sačuvaj taj izvještaj na Desktop i okači ga uz poruku koristeći opciju "Prikači fajl"


----------------

Ponovo pokreni FRST, proveri da li je stiklirana Addition.txt opcija i stikliraj i Shortcut.txt opciju i lupi Scan.

Arrow Ovaj put, kada te alat obavesti da su izvestaji spremni, i prikaze ti ih u notepad-u, ovaj put idi na File > Save Us i dole u desnom uglu, pod Encoding: u padajucem meniju izaberi Unicode zapis (default je ANSI). Sacuvaj promene.

Prebaci u Unicode zapis sva tri loga, FRST.txt, Addition.txt, Shortcut.txt i u takvom formatu ih prikaci (ne kopirati) uz poruku koristeci opciju Prikači fajl.


+ Slikovit prikaz primera

offline
  • coa93  Male
  • Zaslužni građanin
  • Pridružio: 31 Okt 2014
  • Poruke: 614

Napisano: 26 Jan 2017 11:30

https://www.mycity.rs/must-login.png


https://www.mycity.rs/must-login.png

Dopuna: 26 Jan 2017 11:31

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

jel ok?

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Pre pustanja skripte, exportuj (sacuvaj bookmarkove iz Chroma), jer verovatno ce biti obrisani Exclamation

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

CreateRestorePoint:
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2016-12-09]
ShortcutTarget: $McRebootA5E6DEAA56$.lnk ->  (No File)
GroupPolicy: Restriction <======= ATTENTION
FF SearchPlugin: C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\searchplugins\gkag881u.xml [2017-01-24]
CHR Profile: C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-01-26] <==== ATTENTION
C:\Users\Korisnik\AppData\Roaming\Vaterentphoser
C:\Users\Korisnik\AppData\Local\Gepecultfawidom
ShortcutWithArgument: C:\Users\Korisnik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=ChromeDefaultData
Folder:C:\Users\Korisnik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • coa93  Male
  • Zaslužni građanin
  • Pridružio: 31 Okt 2014
  • Poruke: 614

Fix result of Farbar Recovery Scan Tool (x64) Version: 25-01-2017 01
Ran by Korisnik (26-01-2017 17:56:03) Run:1
Running from C:\Users\Korisnik\Downloads
Loaded Profiles: Korisnik (Available Profiles: defaultuser0 & Korisnik)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2016-12-09]
ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (No File)
GroupPolicy: Restriction <======= ATTENTION
FF SearchPlugin: C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\searchplugins\gkag881u.xml [2017-01-24]
CHR Profile: C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-01-26] <==== ATTENTION
C:\Users\Korisnik\AppData\Roaming\Vaterentphoser
C:\Users\Korisnik\AppData\Local\Gepecultfawidom
ShortcutWithArgument: C:\Users\Korisnik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=ChromeDefaultData
Folder:C:\Users\Korisnik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9
EmptyTemp:
*****************

Restore point was successfully created.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk => moved successfully
ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (No File) => not found.
C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
C:\Users\Korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\0zy8rli0.default\searchplugins\gkag881u.xml => moved successfully
C:\Users\Korisnik\AppData\Local\Google\Chrome\User Data\ChromeDefaultData => moved successfully
C:\Users\Korisnik\AppData\Roaming\Vaterentphoser => moved successfully
C:\Users\Korisnik\AppData\Local\Gepecultfawidom => moved successfully
C:\Users\Korisnik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\Google Chrome.lnk => Shortcut argument removed successfully.

========================= Folder:C:\Users\Korisnik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9 ========================

not found.

====== End of Folder: ======


=========== EmptyTemp: ==========

BITS transfer queue => 855067 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8625952 B
Java, Flash, Steam htmlcache => 33908540 B
Windows/system/drivers => 9755935 B
Edge => 4232028 B
Chrome => 592896 B
Firefox => 375829903 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 11835 B
LocalService => 28614594 B
NetworkService => 9877148 B
defaultuser0 => 128 B
Korisnik => 773081083 B

RecycleBin => 7852519468 B
EmptyTemp: => 8.5 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 17:57:36 ====

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Kakvo je sad stanje?

offline
  • coa93  Male
  • Zaslužni građanin
  • Pridružio: 31 Okt 2014
  • Poruke: 614

I dalje je dupla ikonica za chrome,ali nije vise bela,nego je normalna,ali i dalje je dupla

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

coa93 ::I dalje je dupla ikonica za chrome,ali nije vise bela,nego je normalna,ali i dalje je dupla

Znam, taj problem i ja imam kod sestre koja je imala slicnu infekciju.
Ne znam ni sam kako da resimo, a da ne reinstaliras. Inace mislim da je to najbolje resenje, bez obzira da li te ta ikonica nervira ili ne.
Sacuvaj bookmarkove i reinstaliraj Chrome.

offline
  • coa93  Male
  • Zaslužni građanin
  • Pridružio: 31 Okt 2014
  • Poruke: 614

pokusavao sam da reinstaliram jos pre,ali to mi nije pomoglo
nesto sam cackao i uspeo sam to da resim.Otvori chrome i kada ti se pojavi dva chroma u taskbaru,onaj koji ti nije otvoren(nadam se da razumes na koji mislim),desni kllik na njega i klikni na unpin from taskbar.Ostace ti u taskbaru samo jedna ikonica od chroma,desni klik na nju i ides na pin to taskbar.Ovako sam ja uradio i sad je sve normalno

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Zanimljivo. Probacu.

Sledeća procedura će implementirati završno čišćenje.



Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.

Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;
Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.

Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Ukoliko neki alat ili izveštaj nije uklonjen, slobodno ih obriši ručno.


Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)
- Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
- DelFix briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

Ko je trenutno na forumu
 

Ukupno su 1111 korisnika na forumu :: 38 registrovanih, 3 sakrivenih i 1070 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., Andrija357, bigfoot, Brana01, dankisha, draganca, dulleo, dushan, esx66, Fog of War, HrcAk47, Joja, Kubovac, mercedesamg, Milos82, nemkea71, nenad81, nesa1962, nuke92, Oscar, ozzy, panonski mornar, procesor, raptorsi, ruger357, S2M, Srle993, StefanopuloZ, t84dar, Trpe Grozni, vathra, Vlad000, Vlada1389, vlajkox, vukovi, Wrangler, zeo, 125