Antimalwer detektovao objekte

1

Antimalwer detektovao objekte

offline
  • Pridružio: 14 Okt 2010
  • Poruke: 60

Pozdrav svima!

Skenirao sam antimalwer programom i dobio izvestaj najpre od nekih 19 a sada od 984 objekta!?
U proteklih par dana ne mogu da pogledam nijedan klip na youtube a da ne secka, bruji, koci i ostalo. Misleci da je problem u flash plejeru deinstalirao sam ga pa potom instalirao.Isti djavo je i nakon toga s tim sto sada ne znam sta sam sve instalirao a sta ne, jer sam obrisao i adobe reader,javu i jos par programa. I da dodam da Windows update ne moze da instalira jednu ispravku.
Nista vise nisam radio i nista vise se ne pojavljuje kao problem. Radi mi racunar najnormalnije.
Imam Toshiba lap top, Satelitte C660D-14E.
Ne znam mnogo o racunarima pa molim za strpljenje. Cuvao sam racunar u smislu da sam redovno skenirajuci ga pratio da se ne inficira, pazio na koje stranice idem ali sam racunar pozajmio prijatelju na period od mesec dana i sada imam sta da vidim.
Ako mozete pomozite mi da resim problem. Hvala unapred.


mycity.rs/must-login.png

mycity.rs/must-login.png



mycity.rs/must-login.png

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16520
Run by RSFC at 16:50:34 on 2013-12-06
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.381.2074.18.1644.467 [GMT 1:00]
.
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files (x86)\MyPC Backup\BackupStack.exe
C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Windows\system32\TODDSrv.exe
C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
C:\Program Files (x86)\outobox\updateoutobox.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Users\RSFC\AppData\Local\Smartbar\Application\SnapDo.exe
C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\outobox\bin\utiloutobox.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera_crashreporter.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

DDS izvestaj ti nije kompletan, kopiraj ga opet...

offline
  • Pridružio: 14 Okt 2010
  • Poruke: 60

Izvinjavam se

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16520
Run by RSFC at 16:50:34 on 2013-12-06
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.381.2074.18.1644.467 [GMT 1:00]
.
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files (x86)\MyPC Backup\BackupStack.exe
C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Windows\system32\TODDSrv.exe
C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
C:\Program Files (x86)\outobox\updateoutobox.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Users\RSFC\AppData\Local\Smartbar\Application\SnapDo.exe
C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\outobox\bin\utiloutobox.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera_crashreporter.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://feed.snapdo.com/?publisher=DownloadXYB&dpid=DownloadXYB&co=RS&userid=9a3f6a41-aa10-6098-8391-36ee0a3f3155&searchtype=hp&installDate=04/12/2013
uSearch Bar = hxxp://feed.snapdo.com/?publisher=DownloadXYB&dpid=DownloadXYB&co=RS&userid=9a3f6a41-aa10-6098-8391-36ee0a3f3155&searchtype=ds&q={searchTerms}&installDate=04/12/2013
uSearch Page = hxxp://feed.snapdo.com/?publisher=DownloadXYB&dpid=DownloadXYB&co=RS&userid=9a3f6a41-aa10-6098-8391-36ee0a3f3155&searchtype=ds&q={searchTerms}&installDate=04/12/2013
uDefault_Page_URL = hxxp://toshiba.msn.com
uSearchAssistant = hxxp://feed.snapdo.com/?publisher=DownloadXYB&dpid=DownloadXYB&co=RS&userid=9a3f6a41-aa10-6098-8391-36ee0a3f3155&searchtype=ds&q={searchTerms}&installDate=04/12/2013
mWinlogon: Userinit = userinit.exe,
BHO: outobox: {30f06672-0e95-41a9-80cb-dee386af99ad} - C:\Program Files (x86)\outobox\outoboxBHO.dll
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
TB: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB: Snap.Do: {ae07101b-46d4-4a98-af68-0333ea26e113} -
uRun: [Browser Infrastructure Helper] C:\Users\RSFC\AppData\Local\Smartbar\Application\SnapDo.exe startup
mRun: [20131121] C:\Program Files\AVAST Software\Avast\setup\emupdate\1346027e-1c80-4819-a71b-6de7e03e1bf7.exe /check
mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
StartupFolder: C:\Users\RSFC\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\MYPCBA~1.LNK - C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Add to TOSHIBA Bulletin Board - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
TCP: NameServer = 192.168.100.252
TCP: Interfaces\{66950247-2063-475E-80BE-EF8817862D17} : DHCPNameServer = 192.168.100.252
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: avast! Online Security: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Snap.DoEngine: {31ad400d-1b06-4e33-a59a-90c2c140cba0} -
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-TB: avast! Online Security: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-TB: Snap.Do: {ae07101b-46d4-4a98-af68-0333ea26e113} -
x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
x64-mASetup: {12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\Windows\System32\ieudinit.exe
.
============= SERVICES / DRIVERS ===============
.
R0 amd_sata;amd_sata;C:\Windows\System32\drivers\amd_sata.sys [2011-2-24 75904]
R0 amd_xata;amd_xata;C:\Windows\System32\drivers\amd_xata.sys [2011-2-24 38016]
R0 aswRvrt;avast! Revert;C:\Windows\System32\drivers\aswRvrt.sys [2013-4-5 65776]
R0 aswVmm;avast! VM Monitor;C:\Windows\System32\drivers\aswVmm.sys [2013-4-5 205320]
R1 aswKbd;aswKbd;C:\Windows\System32\drivers\aswKbd.sys [2012-2-25 28184]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2013-4-5 1032416]
R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2013-4-5 409832]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver;C:\Windows\System32\drivers\HWiNFO64A.SYS [2012-12-26 29672]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2012-9-28 239616]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-9-28 361984]
R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2013-4-5 38984]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2013-4-5 84328]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-11-24 50344]
R2 BackupStack;Computer Backup (MyPC Backup);C:\Program Files (x86)\MyPC Backup\BackupStack.exe [2013-9-19 38440]
R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2013-4-22 822504]
R2 IconMan_R;IconMan_R;C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2011-2-24 1809920]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-4-4 398184]
R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2013-6-26 523944]
R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-9 3275136]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-4-4 24176]
R3 PGEffect;Pangu effect driver;C:\Windows\System32\drivers\PGEffect.sys [2011-2-24 35008]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2011-2-24 406632]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;C:\Windows\System32\drivers\rtl8192ce.sys [2011-2-24 1143400]
R3 Sftfs;Sftfs;C:\Windows\System32\drivers\Sftfslh.sys [2013-6-26 767144]
R3 Sftplay;Sftplay;C:\Windows\System32\drivers\Sftplaylh.sys [2013-6-26 273576]
R3 Sftredir;Sftredir;C:\Windows\System32\drivers\Sftredirlh.sys [2013-6-26 28840]
R3 Sftvol;Sftvol;C:\Windows\System32\drivers\Sftvollh.sys [2013-6-26 23208]
R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2013-6-26 207528]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [2013-8-21 14112]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-4-4 682344]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-9-5 171680]
S3 DrvAgent64;DrvAgent64;C:\Windows\SysWOW64\drivers\DrvAgent64.SYS [2013-11-11 21712]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-1-5 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2011-2-24 247400]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-1-5 57856]
.
=============== File Associations ===============
.
ShellExec: Opera.exe: open="C:\Program Files (x86)\Opera\Launcher.exe" "%1"
.
=============== Created Last 30 ================
.
2013-12-06 08:48:28 10285968 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9633ECB3-5896-4CAE-AC39-4BB0A1F7595D}\mpengine.dll
2013-12-04 10:17:46 40760 ----a-w- C:\Windows\System32\TURegOpt.exe
2013-12-04 10:17:40 29496 ----a-w- C:\Windows\System32\authuitu.dll
2013-12-04 10:17:40 25400 ----a-w- C:\Windows\SysWow64\authuitu.dll
2013-12-04 10:16:46 -------- d-----w- C:\Users\RSFC\AppData\Roaming\TuneUp Software
2013-12-04 10:15:47 -------- d-----w- C:\Program Files (x86)\TuneUp Utilities 2014
2013-12-04 10:14:40 -------- d-----w- C:\ProgramData\TuneUp Software
2013-12-04 10:07:04 -------- d-----w- C:\Users\RSFC\AppData\Local\Smartbar
2013-12-04 10:07:01 -------- d-sh--w- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-12-04 10:05:19 -------- d-----w- C:\Users\RSFC\AppData\Roaming\OpenCandy
2013-12-04 10:05:19 -------- d-----w- C:\Program Files (x86)\DownloadXCtrl.com
2013-12-04 09:55:08 -------- d-----w- C:\Program Files (x86)\outobox
2013-12-04 09:54:25 -------- d-----w- C:\Program Files (x86)\MyPC Backup
2013-11-26 13:48:37 108968 ----a-w- C:\Windows\System32\WindowsAccessBridge-64.dll
2013-11-26 13:36:31 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-11-26 13:36:31 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2013-11-24 20:49:49 10285968 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2013-11-24 09:09:59 -------- d-----w- C:\Users\RSFC\AppData\Roaming\AVAST Software
2013-11-24 08:59:45 0 ----a-w- C:\Windows\SysWow64\sho466A.tmp
2013-11-14 15:05:24 1474048 ----a-w- C:\Windows\System32\crypt32.dll
2013-11-14 15:05:22 1168384 ----a-w- C:\Windows\SysWow64\crypt32.dll
2013-11-14 15:04:52 497152 ----a-w- C:\Windows\System32\drivers\afd.sys
2013-11-14 15:04:44 1930752 ----a-w- C:\Windows\System32\authui.dll
2013-11-14 15:04:43 190464 ----a-w- C:\Windows\System32\SmartcardCredentialProvider.dll
2013-11-14 15:04:43 1796096 ----a-w- C:\Windows\SysWow64\authui.dll
2013-11-14 15:04:42 197120 ----a-w- C:\Windows\System32\credui.dll
2013-11-14 15:04:42 152576 ----a-w- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
2013-11-14 15:04:41 168960 ----a-w- C:\Windows\SysWow64\credui.dll
2013-11-14 15:04:02 340992 ----a-w- C:\Windows\System32\schannel.dll
2013-11-14 15:04:02 247808 ----a-w- C:\Windows\SysWow64\schannel.dll
2013-11-14 15:04:01 95680 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2013-11-14 15:04:01 154560 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2013-11-14 15:04:00 458712 ----a-w- C:\Windows\System32\drivers\cng.sys
2013-11-11 10:11:19 21712 ----a-w- C:\Windows\SysWow64\drivers\DrvAgent64.SYS
2013-11-11 10:11:19 -------- d-----w- C:\Users\RSFC\AppData\Local\eSupport.com
2013-11-11 10:11:13 -------- d--h--w- C:\ProgramData\Common Files
2013-11-11 10:10:55 -------- d-----w- C:\Program Files (x86)\eSupport.com
.
==================== Find3M ====================
.
2013-11-24 08:51:59 65776 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys
2013-11-24 08:51:59 205320 ----a-w- C:\Windows\System32\drivers\aswVmm.sys
2013-11-24 08:51:58 84328 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2013-11-24 08:51:58 1032416 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2013-11-24 08:51:54 92544 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
2013-11-24 08:51:53 43152 ----a-w- C:\Windows\avastSS.scr
2013-11-24 08:51:34 28184 ----a-w- C:\Windows\System32\drivers\aswKbd.sys
2013-11-11 04:50:16 267936 ------w- C:\Windows\System32\MpSigStub.exe
2013-10-13 14:55:42 2334720 ----a-w- C:\Windows\System32\jscript9.dll
2013-10-13 14:47:43 1392128 ----a-w- C:\Windows\System32\wininet.dll
2013-10-13 14:46:53 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2013-10-13 14:42:36 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2013-10-13 14:42:11 599040 ----a-w- C:\Windows\System32\vbscript.dll
2013-10-13 14:35:12 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2013-10-13 09:48:06 1806848 ----a-w- C:\Windows\SysWow64\jscript9.dll
2013-10-13 09:35:52 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2013-10-13 09:35:38 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2013-10-13 09:30:14 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2013-10-13 09:29:02 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll
2013-10-13 09:25:39 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2013-10-12 02:30:42 830464 ----a-w- C:\Windows\System32\nshwfp.dll
2013-10-12 02:29:21 859648 ----a-w- C:\Windows\System32\IKEEXT.DLL
2013-10-12 02:29:08 324096 ----a-w- C:\Windows\System32\FWPUCLNT.DLL
2013-10-12 02:03:08 656896 ----a-w- C:\Windows\SysWow64\nshwfp.dll
2013-10-12 02:01:25 216576 ----a-w- C:\Windows\SysWow64\FWPUCLNT.DLL
2013-10-03 02:23:48 404480 ----a-w- C:\Windows\System32\gdi32.dll
2013-10-03 02:00:44 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
2013-09-25 02:23:33 28672 ----a-w- C:\Windows\System32\sspisrv.dll
2013-09-25 02:23:33 135680 ----a-w- C:\Windows\System32\sspicli.dll
2013-09-25 02:23:01 28160 ----a-w- C:\Windows\System32\secur32.dll
2013-09-25 02:21:50 307200 ----a-w- C:\Windows\System32\ncrypt.dll
2013-09-25 02:21:07 1447936 ----a-w- C:\Windows\System32\lsasrv.dll
2013-09-25 01:58:17 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
2013-09-25 01:57:26 22016 ----a-w- C:\Windows\SysWow64\secur32.dll
2013-09-25 01:56:42 220160 ----a-w- C:\Windows\SysWow64\ncrypt.dll
2013-09-25 01:03:24 30720 ----a-w- C:\Windows\System32\lsass.exe
2013-09-08 02:30:37 1903552 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2013-09-08 02:27:14 327168 ----a-w- C:\Windows\System32\mswsock.dll
2013-09-08 02:03:58 231424 ----a-w- C:\Windows\SysWow64\mswsock.dll
.
============= FINISH: 16:52:47,80 ===============

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Arrow Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Scan] i pricekaj da program zavrsi.
Klikni na dugme [Clean]
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S0].txt




Arrow Preuzmi FRST - (Farbar Recovery Scan Tool) i sacuvaj ga na Desktop

Napomena: Potrebno je preuzeti onu verziju koja je kompatibilna sa tvojim sistemom.


Dvoklikom pokreni FRST;
Kada se alat startuje, klikni Yes na disclaimer.
Klikni na dugme Scan;
Alat ce kreirati izvestaj (FRST.txt) u isti direktorijum gde je i FRST.exe sacuvan.
Iskopiraj sadrzaj tog loga u poruku.
Alat bi takodje pri prvom pokretanju trebao da kreira i dodatni izvestaj (Addition.txt). Taj izvestaj okaci u poruku koristeci opciju "Prikaci file".





Ivance95 (AMF Tim)

offline
  • Pridružio: 14 Okt 2010
  • Poruke: 60

Izvinite sto sam spor


mycity.rs/must-login.png

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-12-2013
Ran by RSFC (administrator) on RSFC-TOSH on 06-12-2013 19:22:45
Running from C:\Users\RSFC\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: 081A
Internet Explorer Version 9
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
() C:\Program Files (x86)\Opera\18.0.1284.49\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\18.0.1284.49\opera.exe

==================== Registry (Whitelisted) ==================

HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\Setup\emupdate\1346027e-1c80-4819-a71b-6de7e03e1bf7.exe [180184 2013-11-24] (AVAST Software)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312 2013-11-24] (AVAST Software)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = toshiba.msn.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.100.252

Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "urls_to_restore_on_startup": [
CHR DefaultSearchURL: (Web) - google.com
CHR DefaultSuggestURL: (Web) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll ()
CHR Extension: (Google Docs) - C:\Users\RSFC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\RSFC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\RSFC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\RSFC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (outobox) - C:\Users\RSFC\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjpdnoojnohifgekbkmnfbiobhcbedka\1.0.0_0
CHR Extension: (avast! Online Security) - C:\Users\RSFC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2005.45_0
CHR Extension: (Google Wallet) - C:\Users\RSFC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\Users\RSFC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [fjpdnoojnohifgekbkmnfbiobhcbedka] - C:\Program Files (x86)\outobox\fjpdnoojnohifgekbkmnfbiobhcbedka.crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx

==================== Services (Whitelisted) =================

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-09-28] (Advanced Micro Devices, Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-11-24] (AVAST Software)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [1809920 2010-08-04] (Realsil Microelectronics Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [398184 2012-12-14] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [682344 2012-12-14] (Malwarebytes Corporation)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2100024 2013-08-29] (TuneUp Software)

==================== Drivers (Whitelisted) ====================

R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2013-11-24] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2013-11-24] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2013-11-24] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-11-24] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-11-24] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2013-11-24] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2013-11-24] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2013-11-24] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2013-11-24] ()
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [29672 2012-12-26] (REALiX(tm))
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [24176 2012-12-14] (Malwarebytes Corporation)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-12-06 19:22 - 2013-12-06 19:23 - 00008270 _____ C:\Users\RSFC\Desktop\FRST.txt
2013-12-06 19:22 - 2013-12-06 19:22 - 00000000 ____D C:\FRST
2013-12-06 19:21 - 2013-12-06 19:21 - 01925820 _____ (Farbar) C:\Users\RSFC\Desktop\FRST64.exe
2013-12-06 19:18 - 2013-12-06 19:18 - 00007182 _____ C:\Users\RSFC\Desktop\AdwCleaner[S0].txt
2013-12-06 19:14 - 2013-12-06 19:14 - 00000000 ____D C:\Program Files (x86)\MyPC Backup
2013-12-06 19:09 - 2013-12-06 19:14 - 00000000 ____D C:\AdwCleaner
2013-12-06 19:06 - 2013-12-06 19:07 - 01110034 _____ C:\Users\RSFC\Desktop\AdwCleaner.exe
2013-12-06 16:53 - 2013-12-06 16:53 - 00009497 _____ C:\Users\RSFC\Desktop\attach.txt
2013-12-06 16:53 - 2013-12-06 16:52 - 00017461 _____ C:\Users\RSFC\Desktop\dds.txt
2013-12-06 12:24 - 2013-12-06 12:25 - 00015156 _____ C:\Users\RSFC\Downloads\gibel_imperii.torrent
2013-12-06 10:10 - 2013-12-06 10:10 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Maximum Orgy special pin-up [2012][.avi]
2013-12-05 01:46 - 2013-12-05 01:46 - 00002770 _____ C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2013-12-04 11:35 - 2013-12-04 11:35 - 00003694 _____ C:\Windows\System32\Tasks\Adobe online update program
2013-12-04 11:17 - 2013-12-04 11:17 - 00002216 _____ C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk
2013-12-04 11:17 - 2013-12-04 11:17 - 00002190 _____ C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
2013-12-04 11:17 - 2013-08-29 12:07 - 00040760 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2013-12-04 11:17 - 2013-08-29 12:07 - 00029496 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2013-12-04 11:17 - 2013-08-29 12:07 - 00025400 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
2013-12-04 11:16 - 2013-12-04 11:16 - 00000000 ____D C:\Users\RSFC\AppData\Roaming\TuneUp Software
2013-12-04 11:15 - 2013-12-04 11:17 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2014
2013-12-04 11:14 - 2013-12-04 11:19 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-12-04 11:08 - 2013-12-06 19:14 - 00001107 _____ C:\Users\RSFC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
2013-12-04 11:08 - 2013-12-06 19:14 - 00001077 _____ C:\Users\RSFC\Desktop\Search.lnk
2013-12-04 11:07 - 2013-12-04 11:35 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-12-04 11:05 - 2013-12-04 11:05 - 00000000 ____D C:\Program Files (x86)\DownloadXCtrl.com
2013-12-04 10:52 - 2013-12-04 10:52 - 00923784 _____ (CNET Download.com) C:\Users\RSFC\Downloads\cbsidlm-cbsi145-DownloadX_ActiveX_Download_Control-ORG-10911713.exe
2013-12-04 10:31 - 2013-12-04 10:32 - 00985600 _____ C:\Users\RSFC\Downloads\MicrosoftFixit50123.msi
2013-12-03 09:37 - 2013-12-03 09:37 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel Russian Institute Holidays at my parents.XxX
2013-12-03 09:29 - 2013-12-03 09:30 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Nymphos a baiser (2012)
2013-12-02 16:52 - 2013-12-02 16:52 - 00000000 ____D C:\Users\RSFC\Downloads\The Mademoiselle's Stallions (Marc Dorcel) XXX NEW (2014)
2013-11-26 14:48 - 2013-11-26 14:48 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-11-26 14:48 - 2013-11-26 14:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-11-26 14:48 - 2013-11-26 14:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-11-26 14:48 - 2013-11-26 14:48 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2013-11-26 14:48 - 2013-11-26 14:48 - 00000000 ____D C:\Program Files\Java
2013-11-26 14:45 - 2013-11-26 14:46 - 30694824 _____ (Oracle Corporation) C:\Users\RSFC\Downloads\jre-7u45-windows-x64.exe
2013-11-26 14:36 - 2013-12-06 19:01 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-26 14:36 - 2013-11-26 14:36 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-11-26 14:36 - 2013-11-26 14:36 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-11-26 14:36 - 2013-11-26 14:36 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-11-26 14:24 - 2013-12-06 18:36 - 00000928 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-26 14:24 - 2013-12-06 02:02 - 00002192 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-11-26 14:24 - 2013-11-26 14:31 - 00003924 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-11-26 14:23 - 2013-12-06 19:18 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-26 14:23 - 2013-11-26 14:31 - 00003672 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-11-26 14:23 - 2013-11-26 14:24 - 00000000 ____D C:\Program Files (x86)\Google
2013-11-26 14:22 - 2013-11-26 14:22 - 00002026 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2013-11-26 08:53 - 2013-12-06 16:55 - 00053299 _____ C:\Windows\IE11_main.log
2013-11-24 17:50 - 2013-11-24 17:54 - 82193738 _____ C:\Users\RSFC\Downloads\83f509a3-390b-4288-ae0a-3ff7711c1ddf.mp4
2013-11-24 17:38 - 2013-11-24 17:38 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - L affaire Italienne
2013-11-24 10:14 - 2013-11-24 10:17 - 00000000 ____D C:\Users\RSFC\Downloads\[Marc Dorcel] Story of Megane [2008-xx][avi][512x288]
2013-11-24 10:09 - 2013-11-24 10:09 - 00000000 ____D C:\Users\RSFC\AppData\Roaming\AVAST Software
2013-11-24 09:59 - 2013-11-24 09:59 - 00000000 _____ C:\Windows\SysWOW64\sho466A.tmp
2013-11-24 09:52 - 2013-11-24 09:52 - 00002031 _____ C:\Users\Public\Desktop\avast! SafeZone.lnk
2013-11-21 23:35 - 2013-11-21 23:35 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Les Estheticiennes (2013)
2013-11-21 13:52 - 2013-11-21 13:52 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Glamour
2013-11-21 13:33 - 2013-11-21 13:35 - 27515758 _____ C:\Users\RSFC\Downloads\Шешељ - митинг пред одлазак у Хаг.mp4
2013-11-21 12:43 - 2013-11-21 12:43 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Histoire vraie au Cap d’Agde (2013)
2013-11-21 09:04 - 2013-11-21 09:04 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Ma serveuse de bar (2013) [FRENCH]
2013-11-21 08:50 - 2013-11-21 08:51 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Je Me Prostitue
2013-11-15 08:27 - 2013-10-13 16:58 - 17847296 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-15 08:27 - 2013-10-13 16:09 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-15 08:27 - 2013-10-13 15:55 - 02334720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-15 08:27 - 2013-10-13 15:48 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-15 08:27 - 2013-10-13 15:47 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-15 08:27 - 2013-10-13 15:46 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-15 08:27 - 2013-10-13 15:46 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-15 08:27 - 2013-10-13 15:44 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-15 08:27 - 2013-10-13 15:42 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-15 08:27 - 2013-10-13 15:42 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-15 08:27 - 2013-10-13 15:42 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-15 08:27 - 2013-10-13 15:39 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-15 08:27 - 2013-10-13 15:38 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-15 08:27 - 2013-10-13 15:36 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-15 08:27 - 2013-10-13 15:35 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-15 08:27 - 2013-10-13 15:29 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-15 08:27 - 2013-10-13 11:42 - 12344832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-15 08:27 - 2013-10-13 10:48 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-15 08:27 - 2013-10-13 10:37 - 01104896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-15 08:27 - 2013-10-13 10:35 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-15 08:27 - 2013-10-13 10:35 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-15 08:27 - 2013-10-13 10:33 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-11-15 08:27 - 2013-10-13 10:32 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-15 08:27 - 2013-10-13 10:30 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-15 08:27 - 2013-10-13 10:30 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-11-15 08:27 - 2013-10-13 10:29 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-11-15 08:27 - 2013-10-13 10:27 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-15 08:27 - 2013-10-13 10:27 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-11-15 08:27 - 2013-10-13 10:26 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-11-15 08:27 - 2013-10-13 10:25 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-15 08:27 - 2013-10-13 10:20 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-15 08:26 - 2013-10-13 11:08 - 09739264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-14 16:05 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-14 16:05 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-11-14 16:04 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2013-11-14 16:04 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2013-11-14 16:04 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-11-14 16:04 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2013-11-14 16:04 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-11-14 16:04 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2013-11-14 16:04 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-11-14 16:04 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2013-11-14 16:04 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2013-11-14 16:04 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2013-11-14 16:04 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-11-14 16:04 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2013-11-14 16:03 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2013-11-14 16:03 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-14 16:03 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-14 16:03 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2013-11-14 16:03 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2013-11-14 16:03 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-14 16:03 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2013-11-14 16:03 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2013-11-14 16:03 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2013-11-14 16:03 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2013-11-14 16:03 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2013-11-14 16:03 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2013-11-14 16:03 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2013-11-14 16:03 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2013-11-14 16:03 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2013-11-14 16:03 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2013-11-11 11:11 - 2013-11-11 11:11 - 00021712 _____ (Phoenix Technologies) C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS

==================== One Month Modified Files and Folders =======

2013-12-06 19:23 - 2013-12-06 19:22 - 00008270 _____ C:\Users\RSFC\Desktop\FRST.txt
2013-12-06 19:23 - 2011-02-24 23:14 - 01769385 _____ C:\Windows\WindowsUpdate.log
2013-12-06 19:22 - 2013-12-06 19:22 - 00000000 ____D C:\FRST
2013-12-06 19:21 - 2013-12-06 19:21 - 01925820 _____ (Farbar) C:\Users\RSFC\Desktop\FRST64.exe
2013-12-06 19:18 - 2013-12-06 19:18 - 00007182 _____ C:\Users\RSFC\Desktop\AdwCleaner[S0].txt
2013-12-06 19:18 - 2013-11-26 14:23 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-06 19:17 - 2013-09-03 12:14 - 00001680 _____ C:\Windows\setupact.log
2013-12-06 19:17 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-12-06 19:14 - 2013-12-06 19:14 - 00000000 ____D C:\Program Files (x86)\MyPC Backup
2013-12-06 19:14 - 2013-12-06 19:09 - 00000000 ____D C:\AdwCleaner
2013-12-06 19:14 - 2013-12-04 11:08 - 00001107 _____ C:\Users\RSFC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
2013-12-06 19:14 - 2013-12-04 11:08 - 00001077 _____ C:\Users\RSFC\Desktop\Search.lnk
2013-12-06 19:14 - 2011-08-19 21:51 - 00000000 ___RD C:\Users\RSFC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-06 19:07 - 2013-12-06 19:06 - 01110034 _____ C:\Users\RSFC\Desktop\AdwCleaner.exe
2013-12-06 19:01 - 2013-11-26 14:36 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-06 18:36 - 2013-11-26 14:24 - 00000928 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-06 17:44 - 2009-07-14 05:45 - 00016304 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-06 17:44 - 2009-07-14 05:45 - 00016304 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-06 17:35 - 2013-09-15 22:55 - 00325292 _____ C:\Windows\PFRO.log
2013-12-06 16:55 - 2013-11-26 08:53 - 00053299 _____ C:\Windows\IE11_main.log
2013-12-06 16:53 - 2013-12-06 16:53 - 00009497 _____ C:\Users\RSFC\Desktop\attach.txt
2013-12-06 16:52 - 2013-12-06 16:53 - 00017461 _____ C:\Users\RSFC\Desktop\dds.txt
2013-12-06 16:04 - 2011-08-29 13:54 - 00000000 ____D C:\Users\RSFC\AppData\Roaming\uTorrent
2013-12-06 12:25 - 2013-12-06 12:24 - 00015156 _____ C:\Users\RSFC\Downloads\gibel_imperii.torrent
2013-12-06 10:10 - 2013-12-06 10:10 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Maximum Orgy special pin-up [2012][.avi]
2013-12-06 02:02 - 2013-11-26 14:24 - 00002192 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-12-06 01:56 - 2011-08-29 18:19 - 00021958 _____ C:\Windows\system32\perfh01A.dat
2013-12-06 01:56 - 2011-08-29 18:19 - 00007474 _____ C:\Windows\system32\perfc01A.dat
2013-12-06 01:56 - 2009-07-14 06:13 - 00740012 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-05 11:46 - 2011-08-19 21:56 - 00000000 ____D C:\Users\RSFC\AppData\Local\VirtualStore
2013-12-05 01:46 - 2013-12-05 01:46 - 00002770 _____ C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2013-12-04 11:35 - 2013-12-04 11:35 - 00003694 _____ C:\Windows\System32\Tasks\Adobe online update program
2013-12-04 11:35 - 2013-12-04 11:07 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-12-04 11:19 - 2013-12-04 11:14 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-12-04 11:17 - 2013-12-04 11:17 - 00002216 _____ C:\Users\Public\Desktop\TuneUp 1-Click Maintenance.lnk
2013-12-04 11:17 - 2013-12-04 11:17 - 00002190 _____ C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
2013-12-04 11:17 - 2013-12-04 11:15 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2014
2013-12-04 11:16 - 2013-12-04 11:16 - 00000000 ____D C:\Users\RSFC\AppData\Roaming\TuneUp Software
2013-12-04 11:05 - 2013-12-04 11:05 - 00000000 ____D C:\Program Files (x86)\DownloadXCtrl.com
2013-12-04 10:56 - 2011-08-19 22:06 - 00000000 ____D C:\Users\RSFC\AppData\Roaming\Skype
2013-12-04 10:52 - 2013-12-04 10:52 - 00923784 _____ (CNET Download.com) C:\Users\RSFC\Downloads\cbsidlm-cbsi145-DownloadX_ActiveX_Download_Control-ORG-10911713.exe
2013-12-04 10:32 - 2013-12-04 10:31 - 00985600 _____ C:\Users\RSFC\Downloads\MicrosoftFixit50123.msi
2013-12-03 09:37 - 2013-12-03 09:37 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel Russian Institute Holidays at my parents.XxX
2013-12-03 09:30 - 2013-12-03 09:29 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Nymphos a baiser (2012)
2013-12-02 16:52 - 2013-12-02 16:52 - 00000000 ____D C:\Users\RSFC\Downloads\The Mademoiselle's Stallions (Marc Dorcel) XXX NEW (2014)
2013-12-01 22:42 - 2013-04-05 14:12 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2013-11-27 16:14 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2013-11-26 14:49 - 2013-10-22 21:44 - 00000000 ____D C:\ProgramData\Oracle
2013-11-26 14:48 - 2013-11-26 14:48 - 00312744 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-11-26 14:48 - 2013-11-26 14:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-11-26 14:48 - 2013-11-26 14:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-11-26 14:48 - 2013-11-26 14:48 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2013-11-26 14:48 - 2013-11-26 14:48 - 00000000 ____D C:\Program Files\Java
2013-11-26 14:46 - 2013-11-26 14:45 - 30694824 _____ (Oracle Corporation) C:\Users\RSFC\Downloads\jre-7u45-windows-x64.exe
2013-11-26 14:36 - 2013-11-26 14:36 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-11-26 14:36 - 2013-11-26 14:36 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-11-26 14:36 - 2013-11-26 14:36 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-11-26 14:35 - 2011-08-21 14:18 - 00000000 ____D C:\Users\RSFC\AppData\Local\Adobe
2013-11-26 14:31 - 2013-11-26 14:24 - 00003924 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-11-26 14:31 - 2013-11-26 14:23 - 00003672 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-11-26 14:27 - 2010-12-28 10:30 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-11-26 14:24 - 2013-11-26 14:23 - 00000000 ____D C:\Program Files (x86)\Google
2013-11-26 14:22 - 2013-11-26 14:22 - 00002026 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2013-11-26 14:22 - 2010-12-28 10:30 - 00000000 ____D C:\ProgramData\Adobe
2013-11-25 17:04 - 2013-09-12 15:27 - 00004544 _____ C:\Users\RSFC\Documents\Ma grande collection pour le plaisir.txt
2013-11-24 17:54 - 2013-11-24 17:50 - 82193738 _____ C:\Users\RSFC\Downloads\83f509a3-390b-4288-ae0a-3ff7711c1ddf.mp4
2013-11-24 17:38 - 2013-11-24 17:38 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - L affaire Italienne
2013-11-24 10:17 - 2013-11-24 10:14 - 00000000 ____D C:\Users\RSFC\Downloads\[Marc Dorcel] Story of Megane [2008-xx][avi][512x288]
2013-11-24 10:09 - 2013-11-24 10:09 - 00000000 ____D C:\Users\RSFC\AppData\Roaming\AVAST Software
2013-11-24 09:59 - 2013-11-24 09:59 - 00000000 _____ C:\Windows\SysWOW64\sho466A.tmp
2013-11-24 09:52 - 2013-11-24 09:52 - 00002031 _____ C:\Users\Public\Desktop\avast! SafeZone.lnk
2013-11-24 09:52 - 2013-04-05 14:12 - 00001971 _____ C:\Users\Public\Desktop\avast! Pro Antivirus.lnk
2013-11-24 09:51 - 2013-04-05 14:12 - 01032416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2013-11-24 09:51 - 2013-04-05 14:12 - 00409832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2013-11-24 09:51 - 2013-04-05 14:12 - 00205320 _____ C:\Windows\system32\Drivers\aswVmm.sys
2013-11-24 09:51 - 2013-04-05 14:12 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2013-11-24 09:51 - 2013-04-05 14:12 - 00084328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2013-11-24 09:51 - 2013-04-05 14:12 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2013-11-24 09:51 - 2013-04-05 14:12 - 00065264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2013-11-24 09:51 - 2013-04-05 14:12 - 00038984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys
2013-11-24 09:51 - 2013-04-05 14:11 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2013-11-24 09:51 - 2012-02-25 13:26 - 00028184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2013-11-24 09:51 - 2011-08-21 08:56 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2013-11-24 09:45 - 2011-08-21 08:55 - 00000000 ____D C:\ProgramData\AVAST Software
2013-11-24 09:44 - 2011-08-21 08:56 - 00000000 _____ C:\Windows\SysWOW64\config.nt
2013-11-21 23:35 - 2013-11-21 23:35 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Les Estheticiennes (2013)
2013-11-21 13:52 - 2013-11-21 13:52 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Glamour
2013-11-21 13:35 - 2013-11-21 13:33 - 27515758 _____ C:\Users\RSFC\Downloads\Шешељ - митинг пред одлазак у Хаг.mp4
2013-11-21 12:43 - 2013-11-21 12:43 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Histoire vraie au Cap d’Agde (2013)
2013-11-21 09:04 - 2013-11-21 09:04 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Ma serveuse de bar (2013) [FRENCH]
2013-11-21 08:51 - 2013-11-21 08:50 - 00000000 ____D C:\Users\RSFC\Downloads\Marc Dorcel - Je Me Prostitue
2013-11-20 08:53 - 2012-05-27 23:26 - 00000000 ____D C:\Program Files (x86)\Opera
2013-11-15 16:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-11-15 09:43 - 2013-08-23 09:28 - 00003351 _____ C:\Users\RSFC\Documents\SFK HERCEGOVINA.txt
2013-11-15 08:49 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\sr-Latn-CS
2013-11-15 08:49 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\sr-Latn-CS
2013-11-15 08:26 - 2013-07-19 02:02 - 00000000 ____D C:\Windows\system32\MRT
2013-11-15 08:22 - 2011-09-14 15:46 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-11-11 11:22 - 2012-12-26 16:41 - 00000000 ____D C:\Program Files\HWiNFO64
2013-11-11 11:11 - 2013-11-11 11:11 - 00021712 _____ (Phoenix Technologies) C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS
2013-11-11 05:50 - 2010-12-28 06:31 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe

Some content of TEMP:
====================
C:\Users\RSFC\AppData\Local\Temp\BackupSetup.exe
C:\Users\RSFC\AppData\Local\Temp\Quarantine.exe
C:\Users\RSFC\AppData\Local\Temp\SkypeSetup.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-11-30 00:06

==================== End Of Log ============================


mycity.rs/must-login.png

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Arrow Kakvo je sada stanje? Da li i dalje imaš problema?

offline
  • Pridružio: 14 Okt 2010
  • Poruke: 60

Sto se tice you tube klipova isti problem kao i pre. A sto se tice windows update ista stvar. Ne moze da instalira ispravku. I jos da dodam da u ccleaner programu ne mogu da obrisem neke programe koji se pokrecu pri podizanju sistema. To sam zaboravio da dodam na pocetku. Jedino da restartujem racunar pa da probam ponovo.

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Preuzmite program GMER sa donjeg linka na Desktop:


GMER download
Kliknite dati link;
Kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati file, odaberite Desktop i kliknite Save.



Dvoklikom pokrenite GMER.
Sačekajte da se završi uvodno skeniranje - ukoliko se pojavi bilo kakav upit, kliknite No;

kliknite Scan i sačekajte da skeniranje bude završeno;

kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer1);

kliknite desnim tasterom u prozor programa Gmer i odaberite Options > 3rd party - kliknite Scan;

po završetku skeniranja kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer2);

kliknite taster >>> i odaberite Autostart karticu;

po završetku kratkotrajnog skeniranja, kliknite Copy;

otvorite Notepad i u njega postavite kopirani tekst - izveštaj sačuvajte na Desktop (pod nazivom Gmer3);


Slikoviti prikaz postupka

Priložite sva tri izveštaja uz poruku korišćenjem opcije Prikači fajl.






Preuzmi smeenk-ov zoek.zip ili zoek.rar () sa ovog ili ovog linka i sačuvaj ga na Desktop.

Raspakuj arhivu u neki folder (uputstvo), a zatim:

zatvori browser i ostale pokrenute programe;
privremeno deaktiviraj zaštitni softver ( ukoliko je to potrebno ) Uputstvo ;
dvoklikom pokreni zoek na ikonicu programa ;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sledeći tekst:

createsrpoint;
StandardSearch;
installer-list;
installedprogs;
uninstall-list;


Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.

offline
  • Pridružio: 14 Okt 2010
  • Poruke: 60

Napisano: 06 Dec 2013 23:40

Izbacilo mi u toku skeniranja gmer-om ovo pa sam iz pocetka morao da skeniram




Dopuna: 06 Dec 2013 23:56

Ista stvar mi se dogodila, izbacilo mi je istu stvar. Meni nije jasno da li je prekinuto skeniranje?
evo ga taj izvestaj koji treba da bude gmer 1

mycity.rs/must-login.png

Dopuna: 07 Dec 2013 1:05

Isto je i sa gmer 2 , isto obavestenje je iskocilo. Evo izvestaj
mycity.rs/must-login.png

Evo i GMER3


mycity.rs/must-login.png

Dopuna: 07 Dec 2013 1:41

Zoek.exe Version 4.0.0.5 Updated 05-December-2013
Tool run by RSFC on sub 07.12.2013 at 1:22:35,84.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\RSFC\AppData\Local\Temp\Rar$DIa0.802\zoek.com [Script inserted]

==== System Restore Info ======================

7.12.2013 1:24:58 Zoek.exe System Restore Point Created Succesfully.

==== Windows Installer Info ======================

Adobe Reader XI (11.0.04) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\68AB67CA7DA73301B744BA0000000010]C:\Windows\Installer\3a5028c.msi
AMD Accelerated Video Transcoding [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\2A481405E0B139D506A315E7397EDE3B]C:\Windows\Installer\20b76e.msi
AMD APP SDK Runtime [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D276F30548C6A844F8F8B43CA58C4314]C:\Windows\Installer\20b767.msi
AMD Catalyst Install Manager [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9DF7AD641CB88AB7891D724F667478B1]C:\Windows\Installer\20b681.msi
AMD Drag and Drop Transcoding [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F3987040C253281B0EA48A3C33D32AB9]C:\Windows\Installer\20b754.msi
AMD Fuel [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AA01B24033280E9AD4BE7B52C386D6BB]C:\Windows\Installer\20b696.msi
AMD Media Foundation Decoders [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DD5BACD096CCA172FC302FDBB606DBA8]C:\Windows\Installer\20b760.msi
AMD VISION Engine Control Center [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\29E590689591463829E0288EF1468FBF]C:\Windows\Installer\20b74d.msi
Catalyst Control Center - Branding [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\32FA0F2EF2EF2224A934556EC34CE11F]C:\Windows\Installer\20b68e.msi
Catalyst Control Center - Branding [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E32909BFF49F34340A480FBA9303C5B8]C:\Windows\Installer\2adc4.msi
Catalyst Control Center Graphics Previews Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\14F9A0910D583BDCAAD20A673D90359C]C:\Windows\Installer\2adca.msi
Catalyst Control Center Graphics Previews Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\56AFD012508FB2A1F438E87272A93E58]C:\Windows\Installer\20b69d.msi
Catalyst Control Center InstallProxy [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B0F614749856E1956C8F24532D32B041]C:\Windows\Installer\20b679.msi
Catalyst Control Center Localization All [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\224BF55B308B5F1155283B66E61A9BCA]C:\Windows\Installer\20b73e.msi
Catalyst Control Center Localization All [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\CD11D8628C14CB202A7F1A727ABBC53E]C:\Windows\Installer\2ae4e.msi
ccc-core-static [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\95F613235E00DEEF7DC0A7B50AE56580]C:\Windows\Installer\2ae5b.msi
ccc-utility64 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\52608575376CAEF778198EB4A7FA0596]C:\Windows\Installer\20b745.msi
ccc-utility64 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\894690A171B9DA44AC195CD9A617DFF3]C:\Windows\Installer\2ae54.msi
CCC Help Chinese Standard [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8704FECA68B955421ED8435DD2739D5D]C:\Windows\Installer\20b730.msi
CCC Help Chinese Standard [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C7FB8238B81863D9AB97D0B54E65020F]C:\Windows\Installer\2ae42.msi
CCC Help Chinese Traditional [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DABFED36562345DA2EE9D982262F5A94]C:\Windows\Installer\2ae48.msi
CCC Help Chinese Traditional [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F23A66CF75A1C5CAF421AD2C4FBC770A]C:\Windows\Installer\20b737.msi
CCC Help Czech [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8734E9591ACC4E4E425297D39AE2D859]C:\Windows\Installer\20b6a4.msi
CCC Help Czech [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EBACAB0F694F33F5E663087D9ACFF26E]C:\Windows\Installer\2add0.msi
CCC Help Danish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\37B4F4797102471E0907F3850FB143F1]C:\Windows\Installer\20b6ab.msi
CCC Help Danish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A8B6935711921A9D6A804BBEA3C23DC7]C:\Windows\Installer\2add6.msi
CCC Help Dutch [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3BE5E2E9E6CD77299EBD3171E5D7AD93]C:\Windows\Installer\20b6f8.msi
CCC Help Dutch [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BA9D5B03FEBBC4023385F3D979E5957A]C:\Windows\Installer\2ae18.msi
CCC Help English [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1D7CF526D656CEB18FF6E3CAFAAD8AEF]C:\Windows\Installer\20b6c0.msi
CCC Help English [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E849BB3AFD17D01F421461CBA8162E52]C:\Windows\Installer\2ade8.msi
CCC Help Finnish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1142431C89A5A8ED65920D5C811E2C08]C:\Windows\Installer\20b6ce.msi
CCC Help Finnish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\99503218809869D7B295191B7383CCD0]C:\Windows\Installer\2adf4.msi
CCC Help French [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\53F50D98A3390C989B539CB2EE2492DB]C:\Windows\Installer\20b6d5.msi
CCC Help French [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\885D83A4B9461BE1A675574BC5337B3F]C:\Windows\Installer\2adfa.msi
CCC Help German [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0795D7C85434AB19511861D7BE55F256]C:\Windows\Installer\2addc.msi
CCC Help German [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\8FEE1537C6D964F5A5912F7C54C61E23]C:\Windows\Installer\20b6b2.msi
CCC Help Greek [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\488E59E800F5640320ACBA2CC8B6DB44]C:\Windows\Installer\2ade2.msi
CCC Help Greek [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DAC22892A67CEEB0555FAA5A42AD18F4]C:\Windows\Installer\20b6b9.msi
CCC Help Hungarian [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\30AF67B9A4D31A188186010E000262F0]C:\Windows\Installer\2ae00.msi
CCC Help Hungarian [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\81A02E8992C3AF68054B19C8B2430A28]C:\Windows\Installer\20b6dc.msi
CCC Help Italian [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\51D58E5AC587C8153BC2EEF207FA1F12]C:\Windows\Installer\2ae06.msi
CCC Help Italian [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FD3921A390D7F0BB5967CE74EEA43926]C:\Windows\Installer\20b6e3.msi
CCC Help Japanese [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\45130DF888732BA0B97EF3268A063FF8]C:\Windows\Installer\2ae0c.msi
CCC Help Japanese [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5A0CCAAA28340D407CE560967C9B946B]C:\Windows\Installer\20b6ea.msi
CCC Help Korean [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9206A43DA1BF8AE99A8335398FA2A300]C:\Windows\Installer\20b6f1.msi
CCC Help Korean [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F88E2398E0DD4DA9C1F73B5A070AE26B]C:\Windows\Installer\2ae12.msi
CCC Help Norwegian [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6D3EB9A135D4D9C27BD765D25839B619]C:\Windows\Installer\20b6ff.msi
CCC Help Norwegian [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2A4BD0A0DA5D013FF3A057E94FF3850]C:\Windows\Installer\2ae1e.msi
CCC Help Polish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0DF6A7F05F78D5BF79C3FC06D41ECBB6]C:\Windows\Installer\20b706.msi
CCC Help Polish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\CCBABC3B7205DA2F2BF6C31A05D0EA2E]C:\Windows\Installer\2ae24.msi
CCC Help Portuguese [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\43E271F770144698A6AE0515FF2D56FF]C:\Windows\Installer\20b70d.msi
CCC Help Portuguese [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\61833837BF0D0A4AE1D8621BBA1E8263]C:\Windows\Installer\2ae2a.msi
CCC Help Russian [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4680108B8F51B31602FECA531BB4E3D0]C:\Windows\Installer\20b714.msi
CCC Help Russian [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F0F75B8C285138AC5AD1625B5A2426A3]C:\Windows\Installer\2ae30.msi
CCC Help Spanish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\31D90A3E04D48FC3D723B85DF5D85133]C:\Windows\Installer\20b6c7.msi
CCC Help Spanish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6BFF9EE3DF2F11A3727EA6685A0AE80C]C:\Windows\Installer\2adee.msi
CCC Help Swedish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\19453C2F32397EA30632B61482401535]C:\Windows\Installer\20b71b.msi
CCC Help Swedish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9AC1C89C75FFF5AC488A2F2F073F37B5]C:\Windows\Installer\2ae36.msi
CCC Help Thai [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7714B80D061566B69843F2092131D416]C:\Windows\Installer\20b722.msi
CCC Help Thai [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A4E95CC1D34A88AF2EE665682355F4CD]C:\Windows\Installer\2ae3c.msi
CCC Help Turkish [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\76C3BB694BE475790E2C0C2DEF09351B]C:\Windows\Installer\20b729.msi
D3DX10 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7BD4C90EC03660F46A13E87A329932FA]C:\Windows\Installer\27145.msi
Java 7 Update 45 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\4EA42A62D9304AC4784BF268140754FF]C:\Windows\Installer\3c2320e.msi
Microsoft .NET Framework 4 Client Profile [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DFC90B5F2B0FFA63D84FD16F6BF37C4B]C:\Windows\Installer\12d1abd.msi
Microsoft Application Error Reporting [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\000021599B0090400100000000F01FEC]C:\Windows\Installer\270f1.msi
Microsoft Office 2010 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004159070000000000000000F01FEC]C:\Windows\Installer\85d88.msi
Microsoft Office Klikni i pokreni 2010 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\00004109D600A1800100000000F01FEC]C:\Windows\Installer\283ab4.msi
Microsoft Primary Interoperability Assemblies 2005 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\0EE303C2595A34537AA139C1A74CE0ED]c:\Windows\Installer\26539.msi
Microsoft Silverlight [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D7314F9862C648A4DB8BE2A5B47BE100]C:\Windows\Installer\5617fd3.msi
Microsoft Visual C++ 2005 Redistributable [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\c1c4f01781cc94c4c8fb1542c0981a2a]C:\Windows\Installer\2f5346d.msi
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EFEE0228DC83E77358593193D847A0EC]c:\Windows\Installer\2652f.msi
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\67D6ECF5CD5FBA732B8B22BAC8DE1B4D]C:\Windows\Installer\2f5347f.msi
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D20352A90C039D93DBF6126ECE614057]c:\Windows\Installer\26534.msi
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\CFD2C1F142D260E3CB8B271543DA9F98]c:\Windows\Installer\125c7.msi
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6E815EB96CCE9A53884E7857C57002F0]C:\Windows\Installer\2f53486.msi
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C173E5AD3336A8D3394AF65D2BB0CCE6]C:\Windows\Installer\2adb1.msi
MSVCRT [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A6C64DD86500CEF47BA082BB611A1FF1]C:\Windows\Installer\27129.msi
MSXML 4.0 SP2 (KB954430) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DDA39468D428E8B4DB27C8D5DC5CA217]C:\Windows\Installer\2021eb7.msi
Photo Service - powered by myphotobook [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C6C740D3EE913E641CB4F98A2406FDB9]C:\Windows\Installer\270aa.msi
PlayReady PC Runtime amd64 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F4339ACB9C6B56F4A937CAA523A9D440]C:\Windows\Installer\2651b.msi
Skype Click to Call [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7692FC6BE18C0C0489510C7547EF1F02]C:\Windows\Installer\1feae.msi
Skypet 6.10 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E7FF67E4ABEA78C47B88DC745E24B5D9]C:\Windows\Installer\4bb054a7.msi
TOSHIBA Disc Creator [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F20E0AD5B079B424FB1415A305814E0C]C:\Windows\Installer\85d82.msi
TOSHIBA Web Camera Application [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1098C3F63DBED074788FCA12F0E6E520]C:\Windows\Installer\85d6b.msi
TRORMCLauncher [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E8D7C56ED681B484EB8AED0F33C16E00]C:\Windows\Installer\125b7.msi
Utility Common Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7DF8862129BCB5A4EB4EC5E8504734F4]C:\Windows\Installer\28082.msi
Windows Live Communications Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3D04254D3B6B9FF42B3445CE3E1E0066]C:\Windows\Installer\27135.msi
Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\032440EF5AC97F34B985A55C2AA8F133]C:\Windows\Installer\27155.msi
Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\36B538718038F724C85F7DE6D0F54E75]C:\Windows\Installer\2718f.msi
Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9278661A2D4CEA9478B7BF063826FF1F]C:\Windows\Installer\27253.msi
Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\AA0FD014D288D054E9B15F93A7FCAF08]C:\Windows\Installer\2717a.msi
Windows Live Essentials [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\ECACF10CD3CC2A94DA2C85A39458C785]C:\Windows\Installer\27165.msi
Windows Live ID Sign-in Assistant [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\26ABA8B10F47DE741BC84A13825E198B]C:\Windows\Installer\270e9.msi
Windows Live Installer [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F132F0B0A6ECD384AA32773B467F9571]C:\Windows\Installer\27141.msi
Windows Live Language Selector [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\BC3F6BE54F64F1540A82F7D6D8537D0D]C:\Windows\Installer\270f5.msi
Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\02B294EE51BF89A488C3034553A4118F]C:\Windows\Installer\27187.msi
Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\468E03D6EA64B5342803B8D5244BEA73]C:\Windows\Installer\2719c.msi
Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\55565908215A0914C9DA0B003CD6B6B6]C:\Windows\Installer\2715d.msi
Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6B0A5870FD70FC341B741EBEC4AE3054]C:\Windows\Installer\27172.msi
Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\884FD4BEFEAAF6043A14BCA2AA13B509]C:\Windows\Installer\2714d.msi
Windows Live Messenger [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DAADC9281FA5F28479B895C1613AA4CC]C:\Windows\Installer\27260.msi
Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\73C655B691981994CA43390D819BAE94]C:\Windows\Installer\2717e.msi
Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\775F634D5961F2D4B844CA679CE90020]C:\Windows\Installer\27159.msi
Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B6ACDB9A3563B764CA384963D73AFB3E]C:\Windows\Installer\27149.msi
Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C67ED0D7E478EDB42A404F42100696E3]C:\Windows\Installer\27193.msi
Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\D603F370158996948B82B746440DD755]C:\Windows\Installer\27169.msi
Windows Live Photo Common [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FAE9CB777C418334B9C15D3A1E240C8B]C:\Windows\Installer\27257.msi
Windows Live PIMT Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\DFDBABC48F94DF74EBD7CEED270725A5]C:\Windows\Installer\27139.msi
Windows Live SOXE [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F4E3B286A696ED244AC1C470AE61874B]C:\Windows\Installer\27131.msi
Windows Live SOXE Definitions [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\26CEF00243C306D4C98ECE73E2100CF8]C:\Windows\Installer\2712d.msi
Windows Live UX Platform [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\E97A59ECCF4EFFF4A857920FB449F22F]C:\Windows\Installer\2713d.msi
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\08C813B64EB797D4F935240959E89A48]C:\Windows\Installer\27176.msi
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\5C1E110C7F68BEE47B6EC063C7DE792B]C:\Windows\Installer\2724f.msi
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\798554A0606C8594DA43D60F34D081B4]C:\Windows\Installer\27161.msi
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C4FAF96273284A9448045606FF514B0B]C:\Windows\Installer\2718b.msi
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\FDEF50A6E266FB64A85210E0F3C1C996]C:\Windows\Installer\27151.msi

==== Installed Programs ======================

Adobe Flash Player 11 Plugin
Adobe Reader XI (11.0.04)
AMD Accelerated Video Transcoding
AMD APP SDK Runtime
AMD Catalyst Install Manager
AMD Drag and Drop Transcoding
AMD Fuel
AMD Media Foundation Decoders
AMD VISION Engine Control Center
avast Pro Antivirus
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-core-static
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCleaner
CDBurnerXP
D3DX10
DownloadX ActiveX Download Control 1.6.7
FormatFactory 2.70
GOM Audio
GOM Player
HWiNFO64 Version 4.08
Java 7 Update 45 (64-bit)
Malwarebytes Anti-Malware verzija 1.70.0.1100
MCShield ::Anti-Malware Tool::
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office 2010
Microsoft Office Klikni i pokreni 2010
Microsoft Office Starter 2010 - srpski
Microsoft Primary Interoperability Assemblies 2005
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
MSVCRT
MSXML 4.0 SP2 (KB954430)
Opera Stable 18.0.1284.63
Photo Service - powered by myphotobook
PlayReady PC Runtime amd64
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
Realtek USB 2.0 Card Reader
Realtek WLAN Driver
Revo Uninstaller 1.94
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)
Skype Click to Call
Skypet 6.10
Snap.Do Engine
Synaptics Pointing Device Driver
TOSHIBA Disc Creator
TOSHIBA Web Camera Application
TRORMCLauncher
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3)
Utility Common Driver
uTorrent
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Language Selector
Windows Live Messenger
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
WinRAR 5.00 (64-bit)

==== Running Processes ======================

C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe

==== System Specs ======================

Windows: Windows 7 Home Premium Edition (64-bit) Service Pack 1 (Build 7601)
Memory (RAM): 1644 MB
CPU Info: AMD E-240 Processor
CPU Speed: 1509,5 MHz
Sound Card: Speakers (Realtek High Definiti |
Display Adapters: AMD Radeon HD 6310 Graphics | AMD Radeon HD 6310 Graphics | RDPDD Chained DD | RDP Encoder Mirror Driver | RDP Reflector Display Driver
Monitors: 1x; Generic PnP Monitor |
Screen Resolution: 1366 X 768 - 32 bit
Network: Network Present
Network Adapters: Realtek RTL8188CE Wireless LAN 802.11n PCI-E NIC | Realtek PCIe FE Family Controller
CD / DVD Drives: 1x (E: | ) E: HL-DT-STDVDRAM GT30N
Ports: COM Ports NOT Present. LPT Port NOT Present.
Mouse: 5 Button Wheel Mouse Present
Hard Disks: C: 149,0GB | D: 148,7GB | Q: 0,0MB
Hard Disks - Free: C: 50,6GB | D: 138,7GB | Q: 0,0MB
Manufacturer *: TOSHIBA
BIOS Info: AT/AT COMPATIBLE | 01/28/11 | TOSCPL - 1072009
Time Zone: Standard. vreme u Centr. Evropi
Motherboard *: TOSHIBA PWWBE
Country: Srbija
Language: SRM

==== System Specs (Software) ======================

Anti-Virus: avast! Antivirus On-access scanning disabled (Outdated)
Anti-Spyware: Windows Defender disabled (Outdated)
Anti-Spyware: avast! Antivirus disabled (Outdated)
Default Browser: Opera Internet Browser 18.0.1284.63
Internet Explorer Version: 9.0.8112.16421
Opera Browser version: 18.0.1284.63
Adobe Reader version: 11.0.04.63
Sun Java version: 1.7.0_45 (64-bit)
Flash Player version: 11.9.900.152

==== Files Recently Created / Modified ======================

====== C:\Windows ====
====== C:\Users\RSFC\AppData\Local\Temp ====
2013-12-06 22:06:40 CD12A4289F5ADF9B55B6DA9119D1278C 73568 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\wow_helper.exe
2013-12-06 22:06:39 9E15DA34EBADE5B11B31BB9A0A5DC3E0 1392480 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_crashreporter.exe
2013-12-06 22:06:37 C1BD1CF1A7759D1ED01A34522BFADED6 2457952 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_autoupdate.exe
2013-12-06 22:06:37 52B2513D5A3ACDCBF0D71020BACC0AC2 33809240 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\Opera_18.0.1284.63_Autoupdate.exe
2013-12-06 22:06:35 FB5D490F63B9870B068E42148E8F2E22 108896 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\libEGL.dll
2013-12-06 22:06:35 D08077ABED28059F4F51E068DB1DFA4A 123744 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\npTestNetscapePlugIn.dll
2013-12-06 22:06:35 9ECBB2B4188D3DF683BD02175BBE8A07 421728 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\msvcp100.dll
2013-12-06 22:06:35 83B2D0E04AC8B7E2F2D008B32878673D 774496 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\msvcr100.dll
2013-12-06 22:06:35 81B98BC1E9DD13930C52423801AB36E7 886112 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\libGLESv2.dll
2013-12-06 22:06:35 6CE12EB4A60841BB4399327349275D3A 43704160 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera.exe
2013-12-06 22:06:34 4581038C4FB37FB15514AF268DDEB633 2379616 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\launcher_lib.dll
2013-12-06 22:06:34 44A4C90ECA408C05C2BCBD61C859B760 9968480 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\icudt.dll
2013-12-06 22:06:34 3FE3B15066C12494E3D77A67486D4287 879968 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\ffmpegsumo.dll
2013-12-06 22:06:34 25A39E7382DF8697993127A53FC1C303 1598304 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\launcher.exe
2013-12-06 22:06:33 256B5119FE9532FE039C5069079FF442 3222880 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\d3dcompiler_46.dll
2013-12-06 22:06:30 CD12A4289F5ADF9B55B6DA9119D1278C 73568 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3812_7719\wow_helper.exe
2013-12-06 22:06:29 C1BD1CF1A7759D1ED01A34522BFADED6 2457952 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3812_7719\opera_autoupdate.exe
2013-12-06 22:06:29 9E15DA34EBADE5B11B31BB9A0A5DC3E0 1392480 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3812_7719\opera_crashreporter.exe
2013-12-06 21:57:40 52B2513D5A3ACDCBF0D71020BACC0AC2 33809240 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3812_7719\Opera_18.0.1284.63_Autoupdate.exe
2013-12-06 16:39:45 CD12A4289F5ADF9B55B6DA9119D1278C 73568 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3976_32106\wow_helper.exe
2013-12-06 16:39:45 9E15DA34EBADE5B11B31BB9A0A5DC3E0 1392480 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3976_32106\opera_crashreporter.exe
2013-12-06 16:39:44 C1BD1CF1A7759D1ED01A34522BFADED6 2457952 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3976_32106\opera_autoupdate.exe
2013-12-06 16:32:21 52B2513D5A3ACDCBF0D71020BACC0AC2 33809240 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3976_32106\Opera_18.0.1284.63_Autoupdate.exe
====== Java Cache =====
====== C:\Windows\SysWOW64 =====
2013-11-26 13:36:31 75984F7E3F7B231552775808C6D3CC6C 692616 ----a-w- C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-11-26 13:36:31 613E4062ED3520C51E024388E4D6CFA9 71048 ----a-w- C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-11-24 08:59:45 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\SysWOW64\sho466A.tmp
====== C:\Windows\SysWOW64\drivers =====
2013-11-11 10:11:19 1ED08A6264C5C92099D6D1DAE5E8F530 21712 ----a-w- C:\Windows\SysWOW64\drivers\DrvAgent64.SYS
====== C:\Windows\Sysnative =====
2013-11-26 13:48:55 D3035E7C890D45AEC9A2F6B388593B2D 312744 ----a-w- C:\Windows\Sysnative\javaws.exe
2013-11-26 13:48:37 6653906AFCCC8179315A889B4AC29172 108968 ----a-w- C:\Windows\Sysnative\WindowsAccessBridge-64.dll
2013-11-26 13:48:37 5B11EB00AC6B39FDC78222FF88429ACF 189352 ----a-w- C:\Windows\Sysnative\javaw.exe
2013-11-26 13:48:37 5AE4FBF3B0A57CCA5260F18483B13085 189352 ----a-w- C:\Windows\Sysnative\java.exe
====== C:\Windows\Sysnative\drivers =====
2013-11-14 15:04:52 79059559E89D06E8B80CE2944BE20228 497152 ----a-w- C:\Windows\Sysnative\drivers\afd.sys
2013-11-14 15:04:01 8F489706472F7E9A06BAAA198703FA64 95680 ----a-w- C:\Windows\Sysnative\drivers\ksecdd.sys
2013-11-14 15:04:01 868A2CAAB12EFC7A021682BCA0EEC54C 154560 ----a-w- C:\Windows\Sysnative\drivers\ksecpkg.sys
2013-11-14 15:04:00 EBF28856F69CF094A902F884CF989706 458712 ----a-w- C:\Windows\Sysnative\drivers\cng.sys
====== C:\Windows\Tasks ======
2013-12-04 10:35:48 76BE1D449E4ECF40D0F07F00C07B2E4C 3696 ----a-w- C:\Windows\Sysnative\Tasks\Adobe online update program
2013-11-26 13:36:32 A1B03F09434DE4ED3BA7B82EBA02A863 3768 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Flash Player Updater
2013-11-26 13:36:32 592AF41E0CAB8B3C49AA975CFB5D9BC4 830 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job
====== C:\Windows\Temp ======
======= C:\Program Files =====
2013-11-26 13:48:09 -------- d-----w- C:\Program Files\Java
======= C:\PROGRA~2 =====
2013-12-06 18:14:22 -------- d-----w- C:\PROGRA~2\MyPC Backup
2013-12-04 10:05:19 -------- d-----w- C:\PROGRA~2\DownloadXCtrl.com
2013-11-26 13:23:30 -------- d-----w- C:\PROGRA~2\Google
======= C: =====
====== C:\Users\RSFC\AppData\Roaming ======
2013-12-05 10:18:54 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\TuneUp Software
2013-12-04 10:16:46 -------- d-----w- C:\Users\RSFC\AppData\Roaming\TuneUp Software
2013-11-26 13:29:50 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google
2013-11-14 15:38:08 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Locallow\AVG SafeGuard toolbar
====== C:\Users\RSFC ======
2013-12-06 18:21:15 CE9B46F93937211EFA36F5FA3944DF1C 1925820 ----a-w- C:\Users\RSFC\Desktop\FRST64.exe
2013-12-06 18:06:24 5CE10688C6671AE9AFC20B09376E8AB2 1110034 ----a-w- C:\Users\RSFC\Desktop\AdwCleaner.exe
2013-12-04 10:14:40 -------- d-----w- C:\ProgramData\TuneUp Software
2013-12-04 10:07:01 -------- d-sh--w- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-12-04 10:05:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DownloadX ActiveX Download Control 1.6
2013-12-04 09:52:20 D0984B7F50985E31C6F4D1CDC8984020 923784 ----a-w- C:\Users\RSFC\Downloads\cbsidlm-cbsi145-DownloadX_ActiveX_Download_Control-ORG-10911713.exe
2013-11-26 13:48:37 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2013-11-26 13:45:45 416F3C6C242AB491202B4DD5E1B5FFB0 30694824 ----a-w- C:\Users\RSFC\Downloads\jre-7u45-windows-x64.exe
2013-11-24 08:52:34 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2013-11-11 10:11:13 -------- d--h--w- C:\ProgramData\Common Files

====== C: exe-files ==
2013-12-06 22:08:44 9E15DA34EBADE5B11B31BB9A0A5DC3E0 1392480 ----a-w- C:\Program Files (x86)\Opera\18.0.1284.63\opera_crashreporter.exe
2013-12-06 22:08:43 C1BD1CF1A7759D1ED01A34522BFADED6 2457952 ----a-w- C:\Program Files (x86)\Opera\18.0.1284.63\opera_autoupdate.exe
2013-12-06 22:08:37 6CE12EB4A60841BB4399327349275D3A 43704160 ----a-w- C:\Program Files (x86)\Opera\18.0.1284.63\opera.exe
2013-12-06 22:08:36 CD12A4289F5ADF9B55B6DA9119D1278C 73568 ----a-w- C:\Program Files (x86)\Opera\18.0.1284.63\wow_helper.exe
2013-12-06 22:06:40 CD12A4289F5ADF9B55B6DA9119D1278C 73568 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\wow_helper.exe
2013-12-06 22:06:39 9E15DA34EBADE5B11B31BB9A0A5DC3E0 1392480 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_crashreporter.exe
2013-12-06 22:06:37 C1BD1CF1A7759D1ED01A34522BFADED6 2457952 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_autoupdate.exe
2013-12-06 22:06:37 52B2513D5A3ACDCBF0D71020BACC0AC2 33809240 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\Opera_18.0.1284.63_Autoupdate.exe
2013-12-06 22:06:35 6CE12EB4A60841BB4399327349275D3A 43704160 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera.exe
2013-12-06 22:06:34 25A39E7382DF8697993127A53FC1C303 1598304 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\installing\launcher.exe
2013-12-06 22:06:30 CD12A4289F5ADF9B55B6DA9119D1278C 73568 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3812_7719\wow_helper.exe
2013-12-06 22:06:29 C1BD1CF1A7759D1ED01A34522BFADED6 2457952 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3812_7719\opera_autoupdate.exe
2013-12-06 22:06:29 9E15DA34EBADE5B11B31BB9A0A5DC3E0 1392480 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3812_7719\opera_crashreporter.exe
2013-12-06 21:57:40 52B2513D5A3ACDCBF0D71020BACC0AC2 33809240 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3812_7719\Opera_18.0.1284.63_Autoupdate.exe
2013-12-06 18:21:15 CE9B46F93937211EFA36F5FA3944DF1C 1925820 ----a-w- C:\Users\RSFC\Desktop\FRST64.exe
2013-12-06 18:06:24 5CE10688C6671AE9AFC20B09376E8AB2 1110034 ----a-w- C:\Users\RSFC\Desktop\AdwCleaner.exe
2013-12-06 16:39:45 CD12A4289F5ADF9B55B6DA9119D1278C 73568 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3976_32106\wow_helper.exe
2013-12-06 16:39:45 9E15DA34EBADE5B11B31BB9A0A5DC3E0 1392480 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3976_32106\opera_crashreporter.exe
2013-12-06 16:39:44 C1BD1CF1A7759D1ED01A34522BFADED6 2457952 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3976_32106\opera_autoupdate.exe
2013-12-06 16:32:21 52B2513D5A3ACDCBF0D71020BACC0AC2 33809240 ----a-w- C:\Users\RSFC\AppData\Local\Temp\CProgram Files (x86)Opera\3976_32106\Opera_18.0.1284.63_Autoupdate.exe
2013-12-04 10:05:35 44F100A3706E49216C058A0618C91997 10706976 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Installer.exe
2013-12-04 10:05:34 5A94C9184831009AF03566A674A65CF0 90112 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\DownloadXDemo\obj\x86\Release\DownloadXDemo.exe
2013-12-04 10:05:33 129D5114EC8B2B7308FDF70ECDCA47BF 93184 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\DownloadXDemo\obj\x86\Debug\DownloadXDemo.exe
2013-12-04 10:05:32 5A94C9184831009AF03566A674A65CF0 90112 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\DownloadXDemo\bin\x86\Release\DownloadXDemo.exe
2013-12-04 10:05:32 22CBEA70EF58692AF7D18AA9C498F1B0 14848 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\DownloadXDemo\bin\x86\Release\DownloadXDemo.vshost.exe
2013-12-04 10:05:31 22CBEA70EF58692AF7D18AA9C498F1B0 14848 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\DownloadXDemo\bin\x86\Debug\DownloadXDemo.vshost.exe
2013-12-04 10:05:31 129D5114EC8B2B7308FDF70ECDCA47BF 93184 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\DownloadXDemo\bin\x86\Debug\DownloadXDemo.exe
2013-12-04 10:05:29 5A39DA62F7571EF26FCB8BD6C18728CE 233472 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\Visual C++\DownloadXProDemo_VisualCpp\Release\DownloadXProDemo_VisualCpp.exe
2013-12-04 10:05:27 EEBE11A2D59767128CABEDF0DF8B0CA7 2158714 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\Visual C++\DownloadXProDemo_VisualCpp\Debug\DownloadXProDemo_VisualCpp.exe
2013-12-04 10:05:26 D23F9E0FD9826B693FEE579A4B1FE397 40960 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\VB.NET\DownloadXProDemo_VBNet\obj\x86\Release\DownloadXProDemo_VBNet.exe
2013-12-04 10:05:26 D23F9E0FD9826B693FEE579A4B1FE397 40960 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\VB.NET\DownloadXProDemo_VBNet\bin\x86\Release\DownloadXProDemo_VBNet.exe
2013-12-04 10:05:26 5CCC7B041D8220D711A9558CD0DF0592 43008 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\VB.NET\DownloadXProDemo_VBNet\obj\x86\Debug\DownloadXProDemo_VBNet.exe
2013-12-04 10:05:26 22CBEA70EF58692AF7D18AA9C498F1B0 14848 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\VB.NET\DownloadXProDemo_VBNet\bin\x86\Release\DownloadXProDemo_VBNet.vshost.exe
2013-12-04 10:05:25 5CCC7B041D8220D711A9558CD0DF0592 43008 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\VB.NET\DownloadXProDemo_VBNet\bin\x86\Debug\DownloadXProDemo_VBNet.exe
2013-12-04 10:05:25 40C44394B13A6ECBC569F1CA76A12614 387584 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\Delphi\DownloadXProDemo_Delphi\DownloadXProDemo_Delphi.exe
2013-12-04 10:05:25 22CBEA70EF58692AF7D18AA9C498F1B0 14848 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\VB.NET\DownloadXProDemo_VBNet\bin\x86\Debug\DownloadXProDemo_VBNet.vshost.exe
2013-12-04 10:05:23 9CB4E44BCFEC92207AB54FF46E639B80 75776 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\C++Builder\DownloadXProDemo_CppBuilder\DownloadXProDemo_CppBuilder.exe
2013-12-04 10:05:22 AE1086618478DB5A427A9975EEA15EAF 24576 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\C#\DownloadXProDemo_CSharp\obj\x86\Release\DownloadXProDemo_CSharp.exe
2013-12-04 10:05:21 AE1086618478DB5A427A9975EEA15EAF 24576 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\C#\DownloadXProDemo_CSharp\bin\x86\Release\DownloadXProDemo_CSharp.exe
2013-12-04 10:05:21 78E0FCBB67C7E0DBA4DDE1D6FC7E03E6 25600 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\C#\DownloadXProDemo_CSharp\obj\x86\Debug\DownloadXProDemo_CSharp.exe
2013-12-04 10:05:21 78E0FCBB67C7E0DBA4DDE1D6FC7E03E6 25600 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\C#\DownloadXProDemo_CSharp\bin\x86\Debug\DownloadXProDemo_CSharp.exe
2013-12-04 10:05:21 22CBEA70EF58692AF7D18AA9C498F1B0 14848 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\C#\DownloadXProDemo_CSharp\bin\x86\Release\DownloadXProDemo_CSharp.vshost.exe
2013-12-04 10:05:21 22CBEA70EF58692AF7D18AA9C498F1B0 14848 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Examples\C#\DownloadXProDemo_CSharp\bin\x86\Debug\DownloadXProDemo_CSharp.vshost.exe
2013-12-04 10:05:20 B73D12730171BBC0A98DCE7277D48DAA 10240 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\Bin\CheckForNewVersion.exe
2013-12-04 10:05:19 9ADA7C4CC03AEC1EE5A427E9636BA08C 717985 ----a-w- C:\Program Files (x86)\DownloadXCtrl.com\DownloadX ActiveX Download Control 1.6\unins000.exe
2013-12-04 09:52:20 D0984B7F50985E31C6F4D1CDC8984020 923784 ----a-w- C:\Users\RSFC\Downloads\cbsidlm-cbsi145-DownloadX_ActiveX_Download_Control-ORG-10911713.exe
=== C: other files ==

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"20131121"="C:\Program Files\AVAST Software\Avast\setup\emupdate\1346027e-1c80-4819-a71b-6de7e03e1bf7.exe /check"
"AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui"

==== Startup Registry Disabled ======================

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]
"Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""


==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [26.11.2013 14:36]

==== Other Scheduled Tasks ======================

"C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\SysNative\tasks\Adobe online update program" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]
"C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [24.11.2013 09:52]

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
fjpdnoojnohifgekbkmnfbiobhcbedka - C:\Program Files (x86)\outobox\fjpdnoojnohifgekbkmnfbiobhcbedka.crx[]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[24.11.2013 09:51]

Google Docs - RSFC - Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - RSFC - Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - RSFC - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - RSFC - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
outobox - RSFC - Default\Extensions\fjpdnoojnohifgekbkmnfbiobhcbedka
avast Online Security - RSFC - Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Google Wallet - RSFC - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - RSFC - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== IE Start and Search Settings ======================

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
"Search Bar"="http://www.google.com"
"Use Search Asst"="yes"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://www.google.com"
"SearchAssistant"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found

==== Uninstall List x64 ======================

Adobe Flash Player 11 Plugin [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player Plugin]
Adobe Reader XI (11.0.04) [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-7AD7-1033-7B44-AB0000000001}]
AMD Accelerated Video Transcoding [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{504184A2-1B0E-5D93-603A-517E93E7EDB3}]
AMD APP SDK Runtime [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{503F672D-6C84-448A-8F8F-4BC35AC83441}]
AMD Catalyst Install Manager [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{46DA7FD9-8BC1-7BA8-98D1-27F46647871B}]
AMD Drag and Drop Transcoding [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0407893F-352C-B182-E04A-A8C3333DA29B}]
AMD Fuel [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{042B10AA-8233-A9E0-4DEB-B7253C686DBB}]
AMD Media Foundation Decoders [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0DCAB5DD-CC69-271A-CF03-F2BD6B60BD8A}]
AMD VISION Engine Control Center [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86095E92-1959-8364-920E-82E81F64F8FB}]
avast Pro Antivirus [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\avast]
Catalyst Control Center - Branding [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E2F0AF23-FE2F-4222-9A43-55E63CC41EF1}]
Catalyst Control Center - Branding [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FB90923E-F94F-4343-A084-F0AB39305C8B}]
Catalyst Control Center Graphics Previews Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{190A9F41-85D0-CDB3-AA2D-A076D30953C9}]
Catalyst Control Center Graphics Previews Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{210DFA65-F805-1A2B-4F83-8E27279AE385}]
Catalyst Control Center InstallProxy [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{47416F0B-6589-591E-C6F8-4235D2230B14}]
Catalyst Control Center Localization All [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{268D11DC-41C8-02BC-A2F7-A127A7BB5CE3}]
Catalyst Control Center Localization All [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B55FB422-B803-11F5-5582-B3666EA1B9AC}]
ccc-core-static [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{32316F59-00E5-FEED-D70C-7A5BA05E5608}]
ccc-utility64 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1A096498-9B17-44AD-CA91-C59D6A71FD3F}]
ccc-utility64 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{57580625-C673-7FEA-8791-E84B7AAF5069}]
CCC Help Chinese Standard [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8328BF7C-818B-9D36-BA79-0D5BE45620F0}]
CCC Help Chinese Standard [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{ACEF4078-9B86-2455-E18D-34D52D37D9D5}]
CCC Help Chinese Traditional [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{63DEFBAD-3265-AD54-E29E-9D2862F2A549}]
CCC Help Chinese Traditional [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FC66A32F-1A57-AC5C-4F12-DAC2F4CB77A0}]
CCC Help Czech [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{959E4378-CCA1-E4E4-2425-793DA92E8D95}]
CCC Help Czech [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{F0BACABE-F496-5F33-6E36-80D7A9FC2FE6}]
CCC Help Danish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{75396B8A-2911-D9A1-A608-B4EB3A2CD37C}]
CCC Help Danish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{974F4B73-2017-E174-9070-3F58F01B341F}]
CCC Help Dutch [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{30B5D9AB-BBEF-204C-3358-3F9D975E59A7}]
CCC Help Dutch [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{9E2E5EB3-DC6E-9277-E9DB-13175E7DDA39}]
CCC Help English [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{625FC7D1-656D-1BEC-F86F-3EACAFDAA8FE}]
CCC Help English [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A3BB948E-71DF-F10D-2441-16BC8A61E225}]
CCC Help Finnish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{81230599-8908-7D96-2B59-91B13738CC0D}]
CCC Help Finnish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C1342411-5A98-DE8A-5629-D0C518E1C280}]
CCC Help French [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4A38D588-649B-1EB1-6A57-75B45C33B7F3}]
CCC Help French [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{89D05F35-933A-89C0-B935-C92BEE4229BD}]
CCC Help German [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{7351EEF8-9D6C-5F46-5A19-F2C7456CE132}]
CCC Help German [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8C7D5970-4345-91BA-1581-167DEB552F65}]
CCC Help Greek [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{29822CAD-C76A-0BEE-55F5-AAA524DA814F}]
CCC Help Greek [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8E95E884-5F00-3046-02CA-ABC28C6BBD44}]
CCC Help Hungarian [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{98E20A18-3C29-86FA-50B4-918C2B34A082}]
CCC Help Hungarian [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{9B76FA03-3D4A-81A1-1868-10E00020260F}]
CCC Help Italian [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3A1293DF-7D09-BB0F-9576-EC47EE4A9362}]
CCC Help Italian [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A5E85D15-785C-518C-B32C-EE2F70AFF121}]
CCC Help Japanese [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8FD03154-3788-0AB2-9BE7-3F62A860F38F}]
CCC Help Japanese [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{AAACC0A5-4382-04D0-C75E-0669C7B949B6}]
CCC Help Korean [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8932E88F-DD0E-9AD4-1C7F-B3A570A02EB6}]
CCC Help Korean [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D34A6029-FB1A-9EA8-A938-5393F82A3A00}]
CCC Help Norwegian [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1A9BE3D6-4D53-2C9D-B77D-562D85936B91}]
CCC Help Norwegian [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A0DB4A2B-5AD0-310D-FFA3-50E749FF8305}]
CCC Help Polish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0F7A6FD0-87F5-FB5D-973C-CF604DE1BC6B}]
CCC Help Polish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B3CBABCC-5027-F2AD-B26F-3CA1500DAEE2}]
CCC Help Portuguese [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{73833816-D0FB-A4A0-1E8D-26B1ABE12836}]
CCC Help Portuguese [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{7F172E34-4107-8964-6AEA-5051FFD265FF}]
CCC Help Russian [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B8010864-15F8-613B-20EF-AC35B14B3E0D}]
CCC Help Russian [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C8B57F0F-1582-CA83-A51D-26B5A542623A}]
CCC Help Spanish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3EE9FFB6-F2FD-3A11-27E7-6A86A5A08EC0}]
CCC Help Spanish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E3A09D13-4D40-3CF8-7D32-8BD55F8D1533}]
CCC Help Swedish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C98C1CA9-FF57-CA5F-84A8-F2F270F3735B}]
CCC Help Swedish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{F2C35491-9323-3AE7-6023-6B4128045153}]
CCC Help Thai [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1CC59E4A-A43D-FA88-E26E-568632554FDC}]
CCC Help Thai [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D08B4177-5160-6B66-8934-2F9012134D61}]
CCC Help Turkish [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{96BB3C67-4EB4-9757-E0C2-C0D2FE9053B1}]
CCleaner [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner]
CDBurnerXP [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1]
D3DX10 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E09C4DB7-630C-4F06-A631-8EA7239923AF}]
DownloadX ActiveX Download Control 1.6.7 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\CA17A131-B7D9-41D6-868F-29A9BD9FCC8E_is1]
FormatFactory 2.70 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\FormatFactory]
GOM Audio [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\GomAudio]
GOM Player [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\GOM Player]
HWiNFO64 Version 4.08 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\HWiNFO64_is1]
Java 7 Update 45 (64-bit) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F86417045FF}]
Malwarebytes Anti-Malware verzija 1.70.0.1100 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1]
MCShield ::Anti-Malware Tool:: [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\MCShield]
Microsoft .NET Framework 4 Client Profile [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}]
Microsoft Office Klikni i pokreni 2010 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Office14.Click2Run]
Microsoft Primary Interoperability Assemblies 2005 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{2C303EE0-A595-3543-A71A-931C7AC40EDE}]
Microsoft Silverlight [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}]
Microsoft Visual C++ 2005 Redistributable [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}]
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8220EEFE-38CD-377E-8595-13398D740ACE}]
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}]
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{9A25302D-30C0-39D9-BD6F-21E6EC160475}]
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}]
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{9BE518E6-ECC6-35A9-88E4-87755C07200F}]
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}]
MSVCRT [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}]
MSXML 4.0 SP2 (KB954430) [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}]
Opera Stable 18.0.1284.63 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Opera 18.0.1284.63]
Photo Service - powered by myphotobook [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3D047C6C-19EE-46E3-C14B-9FA84260DF9B}]
Photo Service - powered by myphotobook [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\eu.myphotobook.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1]
PlayReady PC Runtime amd64 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}]
Realtek Ethernet Controller Driver [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}]
Realtek High Definition Audio Driver [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}]
Realtek USB 2.0 Card Reader [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{96AE7E41-E34E-47D0-AC07-1091A8127911}]
Realtek WLAN Driver [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{9D3D8C60-A55F-4fed-B2B9-173001290E16}]
Revo Uninstaller 1.94 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Revo Uninstaller]
Skype Click to Call [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B6CF2967-C81E-40C0-9815-C05774FEF120}]
Skypet 6.10 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}]
Snap.Do Engine [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\{dbfbd591-aec1-486c-8b28-dd815facc943}]
Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\SynTPDeinstKey]
TOSHIBA Disc Creator [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5DA0E02F-970B-424B-BF41-513A5018E4C0}]
TOSHIBA Web Camera Application [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}]
TOSHIBA Web Camera Application [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}]
TRORMCLauncher [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E65C7D8E-186D-484B-BEA8-DEF0331CE600}]
TRORMCLauncher [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}]
Utility Common Driver [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}]
Utility Common Driver [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{12688FD7-CB92-4A5B-BEE4-5C8E0574434F}]
uTorrent [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent]
Windows Live Communications Platform [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D45240D3-B6B3-4FF9-B243-54ECE3E10066}]
Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{17835B63-8308-427F-8CF5-D76E0D5FE457}]
Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{410DF0AA-882D-450D-9E1B-F5397ACFFA80}]
Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A1668729-C4D2-49AE-877B-FB608362FFF1}]
Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C01FCACE-CC3D-49A2-ADC2-583A49857C58}]
Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}]
Windows Live Essentials [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WinLiveSuite]
Windows Live ID Sign-in Assistant [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1B8ABA62-74F0-47ED-B18C-A43128E591B8}]
Windows Live Installer [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0B0F231F-CE6A-483D-AA23-77B364F75917}]
Windows Live Language Selector [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}]
Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0785A0B6-07DF-43CF-B147-E1EB4CEA0345}]
Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{6D30E864-46AE-435B-8230-8B5D42B4AE37}]
Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{80956555-A512-4190-9CAD-B000C36D6B6B}]
Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{829CDAAD-5AF1-482F-978B-591C16A34ACC}]
Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EB4DF488-AAEF-406F-A341-CB2AAA315B90}]
Windows Live Messenger [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EE492B20-FB15-4A98-883C-3054354A11F8}]
Windows Live Photo Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{073F306D-9851-4969-B828-7B6444D07D55}]
Windows Live Photo Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{6B556C37-8919-4991-AC34-93D018B9EA49}]
Windows Live Photo Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{77BC9EAF-14C7-4338-9B1C-D5A3E142C0B8}]
Windows Live Photo Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{7D0DE76C-874E-4BDE-A204-F4240160693E}]
Windows Live Photo Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}]
Windows Live Photo Common [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D436F577-1695-4D2F-8B44-AC76C99E0002}]
Windows Live PIMT Platform [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}]
Windows Live SOXE [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{682B3E4F-696A-42DE-A41C-4C07EA1678B4}]
Windows Live SOXE Definitions [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{200FEC62-3C34-4D60-9CE8-EC372E01C08F}]
Windows Live UX Platform [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}]
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0A455897-C606-4958-AD34-6DF0430D184B}]
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{269FAF4C-8237-49A4-8440-6560FF15B4B0}]
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{6A05FEDF-662E-46BF-8A25-010E3F1C9C69}]
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{6B318C80-7BE4-4D79-9F53-4290958EA984}]
Windows Live UX Platform Language Pack [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C011E1C5-86F7-4EEB-B7E6-0C367CED97B2}]
WinRAR 5.00 (64-bit) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\WinRAR archiver]

==== HijackThis Entries ======================

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [20131121] C:\Program Files\AVAST Software\Avast\setup\emupdate\1346027e-1c80-4819-a71b-6de7e03e1bf7.exe /check
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Add to TOSHIBA Bulletin Board - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (AudioSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ipnathlp.dll,-106 (SharedAccess) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Windows Update (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe

==== EOF on sub 07.12.2013 at 1:38:17,58 ======================

Dopuna: 07 Dec 2013 13:39

Situacija danas izgleda ovako, windows update je instalirao tu ispravku koju nije mogao ovih dana. Ccleaner -om sam ocistio neke programe koji mi nisu bili potrebni ali postoji jedan koga ne moze da obrise. Trenutno sam film na youtube i odmah nakon klika na dati film, pri pocetku,pocinje da krci bruji i koci ali nakon pola minuta krece normalno da radi. Sinoc nije bilo izvodljivo da pogledam film. Ton ide, doista sa krcanjem, prevod se menja ali slika koci.Jednostavno nisam siguran da se nesto popravilo dugorocnije. Do veceras necu moci da budem za racunarom. Zeleo sam samo da napisem i upoznam vas priblizno kakva je sada situacija.
Hvala vam najlepse.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Kolega ima problema sa ISP-om pa ću ja umejsto njega dati uputstvo šta dalje da radiš.


Arrow Korak 1

Idi u Start -> Control Panel -> Programs and Features i deinstaliraj sljedeće programe ako ti ne trebaju:

Skype Click to Call
Snap.Do Engine




Arrow Korak 2


Zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;
dvoklikom pokreni zoek.exe;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sljedeći tekst:

C:\Windows\sysWoW64\config\systemprofile\AppData\Locallow\AVG SafeGuard toolbar;fs
C:\Users\RSFC\Downloads\cbsidlm-cbsi145-DownloadX_ActiveX_Download_Control-ORG-10911713.exe;f
fjpdnoojnohifgekbkmnfbiobhcbedka;chr
C:\Program Files (x86)\outobox;fs
autoclean;
emptyalltemp;
emtpyclsid;


Klikni na dugme i pričekaj da se skeniranje završi.


Zoek će po potrebi restartovati Windows, a na kraju rada otvoriti Notepad sa izvještajem o skeniranju.

Napomena: Izvještaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadržaj tog loga u poruku.



Question

Kakvo je sada stanje?

Ko je trenutno na forumu
 

Ukupno su 834 korisnika na forumu :: 9 registrovanih, 0 sakrivenih i 825 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: Bluper, bojank, goxin, Neutral-M, robytz, Romibrat, SR-3m, TBF1D, wizzardone