Blokiranje kompjutera

Blokiranje kompjutera

offline
  • Pridružio: 01 Nov 2011
  • Poruke: 79

Problem je da napomenem odmah kada koristim web browser, možda je i u običnom radu, ali ja kompjuter koristim samo za internet, ne igre, grafike, ništa, samo internet.

Koristim i Mozillu i chrome i iexplorer i operu, ali najviše mozillu.

Odjedanputa iz čista mira komp mi se ukoči i moram mozillu gasiti u task menadzeru, dok je blokirana ceo komp kao da radi sa 5% snage, i čini mi se da npr kad upalim komp ujutro radi brže nego u podne, i onda ga restartujem i opet radi brzo.

Brzina interneta mi je 4/1


mycity.rs/must-login.png






OTL logfile created on: 9/15/2012 19:55:22 - Run 1
OTL by OldTimer - Version 3.2.61.4 Folder = C:\Users\AvD.AtArB\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00003009 | Country: Zimbabwe | Language: ENW | Date Format: M/d/yyyy

3.98 Gb Total Physical Memory | 2.56 Gb Available Physical Memory | 64.23% Memory free
7.96 Gb Paging File | 6.26 Gb Available in Paging File | 78.60% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 166.02 Gb Total Space | 99.91 Gb Free Space | 60.18% Space Free | Partition Type: NTFS
Drive D: | 299.74 Gb Total Space | 108.37 Gb Free Space | 36.15% Space Free | Partition Type: NTFS

Computer Name: AVDATARB-PC | User Name: AvD.AtArB | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/09/15 19:54:53 | 000,599,552 | ---- | M] (OldTimer Tools) -- C:\Users\AvD.AtArB\Desktop\OTL.exe
PRC - [2012/09/07 22:23:55 | 000,917,984 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2012/08/13 13:33:30 | 003,064,000 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
PRC - [2012/07/22 07:41:03 | 001,536,712 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_265.exe
PRC - [2012/04/17 15:05:00 | 000,651,264 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe
PRC - [2012/04/17 15:05:00 | 000,162,816 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\adb.exe
PRC - [2012/04/04 06:53:50 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012/03/23 14:25:24 | 000,087,040 | ---- | M] () -- C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
PRC - [2012/03/12 21:25:06 | 000,583,680 | ---- | M] (MyCity) -- C:\Program Files (x86)\MCShield\MCShieldRTM.exe
PRC - [2012/03/07 01:15:17 | 004,241,512 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012/03/07 01:15:14 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2010/10/25 22:40:42 | 000,356,352 | ---- | M] (Transaction Software, D 81829 Munich) -- D:\TECDOC_CD\1_2011\db\tbmux32.exe
PRC - [2009/08/06 08:20:00 | 000,239,648 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2007/11/27 18:13:44 | 000,385,024 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe


========== Modules (No Company Name) ==========

MOD - [2012/09/07 22:23:54 | 002,244,064 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2012/07/22 07:41:03 | 009,465,032 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_265.dll
MOD - [2012/04/17 15:05:00 | 001,515,520 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\Maps\R66Api.dll
MOD - [2012/04/17 15:05:00 | 000,651,264 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe
MOD - [2012/04/17 15:05:00 | 000,559,244 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\sqlite3.7.dll
MOD - [2012/04/17 15:05:00 | 000,516,599 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\sqlite3.dll
MOD - [2012/04/17 15:05:00 | 000,389,120 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\htcDetect.dll
MOD - [2012/04/17 15:05:00 | 000,172,032 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\htcDetectLegend.dll
MOD - [2012/04/17 15:05:00 | 000,162,816 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\adb.exe
MOD - [2012/04/17 15:05:00 | 000,151,552 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\htcDisk.dll
MOD - [2012/04/17 15:05:00 | 000,103,936 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\OutputLog.dll
MOD - [2012/04/17 15:05:00 | 000,094,208 | ---- | M] () -- C:\Program Files (x86)\HTC\HTC Sync 3.0\fdHttpd.dll
MOD - [2010/11/21 04:49:11 | 006,611,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\1e85062785e286cd9eae9c26d2c61f73\System.Data.ni.dll
MOD - [2010/11/21 04:48:25 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\461d3b6b3f43e6fbe6c897d5936e17e4\System.Xml.ni.dll
MOD - [2010/11/21 04:48:22 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\bc09ad2d49d8535371845cd7532f9271\System.Configuration.ni.dll
MOD - [2010/11/21 04:48:21 | 007,963,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\9e0a3b9b9f457233a335d7fba8f95419\System.ni.dll
MOD - [2010/11/21 04:48:14 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\62a0b3e4b40ec0e8c5cfaa0c8848e64a\mscorlib.ni.dll
MOD - [2010/11/21 04:24:08 | 002,927,616 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll


========== Services (SafeList) ==========

SRV:64bit: - [2012/03/07 01:15:14 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2009/07/14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012/09/07 22:23:54 | 000,114,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/08/13 13:33:30 | 003,064,000 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012/06/07 19:12:14 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/04/04 06:53:50 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012/03/23 14:25:24 | 000,087,040 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service)
SRV - [2010/10/25 22:40:42 | 000,356,352 | ---- | M] (Transaction Software, D 81829 Munich) [Auto | Running] -- D:\TECDOC_CD\1_2011\db\tbmux32.exe -- (Transbase TECDOC CD 1_2011 Service)
SRV - [2009/08/06 08:20:00 | 000,239,648 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2009/06/10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/08/20 14:48:50 | 000,019,032 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdrvio.sys -- (pwdrvio)
DRV:64bit: - [2012/08/20 14:48:48 | 000,012,384 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdspio.sys -- (pwdspio)
DRV:64bit: - [2012/06/10 15:11:21 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2012/03/07 01:04:06 | 000,819,032 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2012/03/07 01:04:04 | 000,337,240 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2012/03/07 01:02:20 | 000,053,080 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2012/03/07 01:01:57 | 000,059,224 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2012/03/07 01:01:52 | 000,069,976 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2012/03/07 01:01:32 | 000,024,408 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2010/12/28 04:16:04 | 000,075,888 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C60x64.sys -- (L1C)
DRV:64bit: - [2010/11/21 04:24:43 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010/11/21 04:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/21 04:23:48 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tsusbhub.sys -- (tsusbhub)
DRV:64bit: - [2010/11/21 04:23:48 | 000,088,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Synth3dVsc.sys -- (Synth3dVsc)
DRV:64bit: - [2010/11/21 04:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2010/11/21 04:23:48 | 000,034,816 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
DRV:64bit: - [2010/11/21 04:23:47 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010/11/21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/21 04:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010/11/21 04:23:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/06/25 16:08:10 | 000,036,928 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\htcnprot.sys -- (htcnprot)
DRV:64bit: - [2010/01/06 20:23:18 | 001,847,296 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athurx.sys -- (athur)
DRV:64bit: - [2009/11/02 18:16:50 | 000,033,736 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ANDROIDUSB.sys -- (HTCAND64)
DRV:64bit: - [2009/07/14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 02:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2009/07/14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = google.rs/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = howzit.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-zw
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 33 31 AA 62 38 49 CD 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = daemon-search.com/search?q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "https://www.google.rs/"
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_265.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_265.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.7.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\AvD.AtArB\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\AvD.AtArB\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012/05/12 14:42:38 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012/09/07 22:23:55 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2012/08/14 07:23:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\AvD.AtArB\AppData\Roaming\Mozilla\Extensions
[2012/08/25 20:24:24 | 000,000,000 | ---D | M] (No name found) -- C:\Users\AvD.AtArB\AppData\Roaming\Mozilla\Firefox\Profiles\6c8twxzn.default\extensions
[2012/09/07 22:23:52 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/09/07 22:23:55 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012/08/29 21:19:50 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012/08/29 21:19:50 | 000,002,253 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

========== Chrome ==========

CHR - homepage:
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms},
CHR - homepage:
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\AvD.AtArB\AppData\Local\Google\Chrome\Application\21.0.1180.89\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\AvD.AtArB\AppData\Local\Google\Chrome\Application\21.0.1180.89\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\AvD.AtArB\AppData\Local\Google\Chrome\Application\21.0.1180.89\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_257.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: QuickTime Plug-in 7.1.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.1.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.1.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.1.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.1.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.1.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.1.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll
CHR - plugin: Java(TM) Platform SE 7 U5 (Enabled) = C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 7.0.50.255 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: Google Update (Enabled) = C:\Users\AvD.AtArB\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - Extension: YouTube = C:\Users\AvD.AtArB\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google Search = C:\Users\AvD.AtArB\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: iMacros for Chrome = C:\Users\AvD.AtArB\AppData\Local\Google\Chrome\User Data\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\5.1.1_0\
CHR - Extension: avast! WebRep = C:\Users\AvD.AtArB\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0\
CHR - Extension: Gmail = C:\Users\AvD.AtArB\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2009/06/10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [HTC Sync Loader] C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe ()
O4 - HKLM..\Run: [OM2_Monitor] C:\Program Files (x86)\OLYMPUS\OLYMPUS Master 2\FirstStart.exe (OLYMPUS IMAGING CORP.)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [MCShield Monitor] C:\Program Files (x86)\MCShield\MCShieldRTM.exe (MyCity)
O4 - HKCU..\Run: [OM2_Monitor] C:\Program Files (x86)\OLYMPUS\OLYMPUS Master 2\MMonitor.exe (OLYMPUS IMAGING CORP.)
O4 - Startup: C:\Users\AvD.AtArB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Picture Motion Browser Media Check Tool.lnk = C:\Program Files (x86)\Sony\Sony Picture Utility\PMBCore\SPUVolumeWatcher.exe (Sony Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A3C327A6-8167-4DBE-8D25-5536C5A01E3B}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012/09/15 19:54:50 | 000,599,552 | ---- | C] (OldTimer Tools) -- C:\Users\AvD.AtArB\Desktop\OTL.exe
[2012/09/15 18:25:44 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{89919FFB-41F0-47AA-9052-E6EFAA4B0BD2}
[2012/09/15 06:25:20 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{078DDA65-4664-4B2E-9DEC-61A560567130}
[2012/09/14 17:38:09 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{0F33FD81-F51B-4833-9FF8-290A18ED6D3F}
[2012/09/14 05:37:33 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{7A0A8918-C942-40C2-9AC8-C3026573EBED}
[2012/09/13 05:42:13 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{E4B679A6-796E-41A7-A633-1D25AFEF8784}
[2012/09/12 05:41:14 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{5BF57852-C731-496C-806A-C7B8F84C32CF}
[2012/09/11 17:40:03 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{D72C637F-7D3E-4F02-9DCC-00AF61ECEE41}
[2012/09/11 05:40:05 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{4CCEC5A2-1852-45DD-9788-321647FB84E4}
[2012/09/10 07:46:54 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{12B83A92-2394-49B6-A51C-3262A84E94A2}
[2012/09/09 21:22:46 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Roaming\vlc
[2012/09/09 21:22:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2012/09/09 21:22:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
[2012/09/09 21:18:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2012/09/09 21:18:18 | 000,246,760 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2012/09/09 21:18:15 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2012/09/09 21:18:15 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2012/09/09 21:18:15 | 000,095,208 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2012/09/09 21:18:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2012/09/09 19:46:19 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{235BB4F8-F1AA-412B-9A27-FE4FD31B044B}
[2012/09/09 07:45:52 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{D9743D35-C288-49D0-84F5-5B79041636FB}
[2012/09/08 17:44:30 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{9E8069FB-8A05-40DA-BB8B-65D0EB687A3C}
[2012/09/07 22:23:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2012/09/07 05:43:16 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{E484224B-0DA6-48E7-9CE5-99CB434D96D0}
[2012/09/05 19:16:23 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{FE9D2E38-87DC-47F4-994B-854088147459}
[2012/09/05 16:42:01 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\Desktop\MILE
[2012/09/05 05:39:12 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{CC03EF17-DABE-4234-A791-2075BAE5FBB3}
[2012/09/04 17:37:43 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{1EF6EFE0-85DD-4D1B-ADFD-4040719A2F5A}
[2012/09/04 05:37:03 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{4AC494EB-6628-476F-BD77-D02319FB0618}
[2012/09/03 17:03:25 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\Desktop\KARTICA telefon
[2012/09/03 16:40:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard Home Edition 7.6
[2012/09/03 16:40:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MiniTool Partition Wizard Home Edition 7.6
[2012/09/03 15:31:22 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\Desktop\Android1
[2012/09/03 15:00:18 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\.android
[2012/09/03 14:49:05 | 000,000,000 | ---D | C] -- C:\Android
[2012/09/03 14:41:35 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\Documents\My Photos
[2012/09/03 14:41:35 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\Documents\My Documents
[2012/09/03 14:33:46 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Roaming\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1
[2012/09/03 14:28:20 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\Htc
[2012/09/03 14:27:55 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Roaming\HTC
[2012/09/03 14:27:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTC Sync
[2012/09/03 14:21:36 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\Downloaded Installations
[2012/09/03 14:21:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTC
[2012/09/03 14:21:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spirent Communications
[2012/09/03 14:21:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HTC
[2012/09/03 14:21:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe AIR
[2012/09/03 13:56:41 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\Desktop\Za ROOT Downloadovano
[2012/09/03 07:43:22 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{DBE592B6-D2BA-43D0-BCE5-D17D6D162C18}
[2012/09/02 09:14:57 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{97D49D1F-5DDB-4E0A-9D86-F67F70A8F597}
[2012/09/01 21:14:05 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{5C68019E-A4CC-4642-88CC-D1B0524BDCAD}
[2012/09/01 14:55:49 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\Desktop\Karcher
[2012/09/01 07:28:50 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{151D4281-58CE-4290-AD51-A7D6CA25B28A}
[2012/08/31 17:02:26 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\MigWiz
[2012/08/31 04:44:49 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{D599BFF6-1912-4D3A-9884-27FE413F28C8}
[2012/08/30 04:49:24 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{91AE556E-DFEE-4EEA-8397-0932AF2E745A}
[2012/08/29 13:21:53 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{0658031F-4259-43CB-8DE5-3BE1E00C0369}
[2012/08/28 12:37:44 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{9CD25082-F536-45B5-8E79-B34C74E4B16C}
[2012/08/27 04:45:18 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{E09ACB5B-ADAA-4FCA-801F-635DF999511E}
[2012/08/26 12:14:02 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\Desktop\KOTAO
[2012/08/26 08:23:39 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{70793C73-82F6-478A-AA59-A1381106D1DE}
[2012/08/25 05:59:56 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{4D34F31B-636E-465C-980A-6EF8B084C63E}
[2012/08/23 04:46:10 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{66E4049C-282C-4779-BDD0-CE9FC5DA7096}
[2012/08/22 06:06:59 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{9DD94258-80EF-46C6-8727-20AE1C4E127E}
[2012/08/21 04:50:38 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{C9554283-D336-469A-8522-DA0DBC5D9B2B}
[2012/08/20 04:45:18 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{6510177D-46E6-4550-A66F-E78B57982CA7}
[2012/08/18 07:30:48 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{B51B07BF-D9BF-4A9C-A76B-5B6C394B27E8}
[2012/08/17 04:46:42 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{3154580D-6409-4EC7-8BCF-A07E1BC1C1B1}
[2012/08/17 04:46:14 | 000,000,000 | ---D | C] -- C:\Users\AvD.AtArB\AppData\Local\{ED3BF791-7725-402B-9039-E7B43F276F47}

========== Files - Modified Within 30 Days ==========

[2012/09/15 19:58:00 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1675243283-1723671596-2523844302-1000UA.job
[2012/09/15 19:54:53 | 000,599,552 | ---- | M] (OldTimer Tools) -- C:\Users\AvD.AtArB\Desktop\OTL.exe
[2012/09/15 11:58:00 | 000,000,872 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1675243283-1723671596-2523844302-1000Core.job
[2012/09/15 06:24:07 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/09/15 06:24:03 | 3207,045,120 | -HS- | M] () -- C:\hiberfil.sys
[2012/09/12 20:58:59 | 000,168,370 | ---- | M] () -- C:\Users\AvD.AtArB\Desktop\Capture+-+-.PNG
[2012/09/12 16:10:12 | 001,263,808 | ---- | M] () -- C:\Users\AvD.AtArB\Desktop\Capture++.PNG
[2012/09/09 21:22:27 | 000,001,070 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2012/09/09 21:18:11 | 000,095,208 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2012/09/09 21:18:10 | 000,821,736 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\npDeployJava1.dll
[2012/09/09 21:18:10 | 000,746,984 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2012/09/09 21:18:10 | 000,246,760 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2012/09/09 21:18:10 | 000,174,056 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2012/09/09 21:18:10 | 000,174,056 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2012/09/08 16:40:05 | 000,799,938 | ---- | M] () -- C:\Users\AvD.AtArB\Desktop\feroli SUN P7_SR uputstvo.pdf
[2012/09/05 16:51:32 | 000,713,888 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/09/05 16:51:32 | 000,615,122 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/09/05 16:51:32 | 000,103,496 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/09/04 18:33:29 | 000,058,423 | ---- | M] () -- C:\Users\AvD.AtArB\Desktop\Capture1.PNG
[2012/09/04 15:34:06 | 000,240,605 | ---- | M] () -- C:\Users\AvD.AtArB\Desktop\Capture.PNG
[2012/09/03 16:40:19 | 000,001,286 | ---- | M] () -- C:\Users\Public\Desktop\MiniTool Partition Wizard Home Edition.lnk
[2012/09/03 14:27:52 | 000,001,082 | ---- | M] () -- C:\Users\Public\Desktop\HTC Sync.lnk
[2012/09/03 10:57:58 | 000,021,150 | ---- | M] () -- C:\Users\AvD.AtArB\Desktop\prvo1.jpg
[2012/08/31 22:46:47 | 000,020,832 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/08/31 22:46:47 | 000,020,832 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/08/28 20:59:04 | 005,580,163 | ---- | M] () -- C:\Users\AvD.AtArB\Desktop\Ljuba Alicic A TI JOS ME VOLIS TI SADIN IDIC.mp3
[2012/08/28 20:56:35 | 003,548,880 | ---- | M] () -- C:\Users\AvD.AtArB\Desktop\Sadin Idic (Mirko Kodic) - Zaljubljeno srce.mp3
[2012/08/25 08:58:54 | 000,001,213 | ---- | M] () -- C:\Users\AvD.AtArB\Application Data\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk
[2012/08/25 08:58:54 | 000,001,189 | ---- | M] () -- C:\Users\Public\Desktop\GOM Player.lnk
[2012/08/20 14:48:50 | 000,019,032 | ---- | M] () -- C:\Windows\SysNative\pwdrvio.sys
[2012/08/20 14:48:48 | 002,966,720 | ---- | M] () -- C:\Windows\SysNative\pwNative.exe
[2012/08/20 14:48:48 | 000,012,384 | ---- | M] () -- C:\Windows\SysNative\pwdspio.sys

========== Files Created - No Company Name ==========

[2012/09/12 20:58:59 | 000,168,370 | ---- | C] () -- C:\Users\AvD.AtArB\Desktop\Capture+-+-.PNG
[2012/09/12 16:10:12 | 001,263,808 | ---- | C] () -- C:\Users\AvD.AtArB\Desktop\Capture++.PNG
[2012/09/09 21:22:27 | 000,001,070 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2012/09/08 16:40:03 | 000,799,938 | ---- | C] () -- C:\Users\AvD.AtArB\Desktop\feroli SUN P7_SR uputstvo.pdf
[2012/09/04 18:33:29 | 000,058,423 | ---- | C] () -- C:\Users\AvD.AtArB\Desktop\Capture1.PNG
[2012/09/04 15:27:54 | 000,240,605 | ---- | C] () -- C:\Users\AvD.AtArB\Desktop\Capture.PNG
[2012/09/03 16:40:43 | 002,966,720 | ---- | C] () -- C:\Windows\SysNative\pwNative.exe
[2012/09/03 16:40:43 | 000,019,032 | ---- | C] () -- C:\Windows\SysNative\pwdrvio.sys
[2012/09/03 16:40:43 | 000,012,384 | ---- | C] () -- C:\Windows\SysNative\pwdspio.sys
[2012/09/03 16:40:19 | 000,001,286 | ---- | C] () -- C:\Users\Public\Desktop\MiniTool Partition Wizard Home Edition.lnk
[2012/09/03 14:27:52 | 000,001,082 | ---- | C] () -- C:\Users\Public\Desktop\HTC Sync.lnk
[2012/09/03 10:57:56 | 000,021,150 | ---- | C] () -- C:\Users\AvD.AtArB\Desktop\prvo1.jpg
[2012/08/28 20:59:01 | 005,580,163 | ---- | C] () -- C:\Users\AvD.AtArB\Desktop\Ljuba Alicic A TI JOS ME VOLIS TI SADIN IDIC.mp3
[2012/08/28 20:56:34 | 003,548,880 | ---- | C] () -- C:\Users\AvD.AtArB\Desktop\Sadin Idic (Mirko Kodic) - Zaljubljeno srce.mp3
[2012/06/10 18:24:20 | 000,000,040 | RH-- | C] () -- C:\Windows\ssystda.dat

========== Files - Unicode (All) ==========
[2012/05/12 18:27:18 | 000,000,000 | ---D | M](C:\Users\AvD.AtArB\Documents\???? ???????? ????????) -- C:\Users\AvD.AtArB\Documents\Моје примљене датотеке
[2012/05/12 18:27:18 | 000,000,000 | ---D | C](C:\Users\AvD.AtArB\Documents\???? ???????? ????????) -- C:\Users\AvD.AtArB\Documents\Моје примљене датотеке

========== Alternate Data Streams ==========

@Alternate Data Stream - 149 bytes -> C:\ProgramData\TEMP:FB6A21E3

< End of report >

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Pozdrav, Doctor NO


Arrow Racunar je čist što se malware-a tiče.



Arrow Otvori temu u Windows potforumu i tamo iznesi problem Smile



Arrow Obavezno poseti temu "Testirajte da li vam je pretraživač ranjiv", pročitaj i isprati link koji stoji u njoj.
Link do teme je: http://www.mycity.rs/Web-browseri/Testirajte-da-li.....anjiv.html




TwinHeadedEagle (AMF Tim)

Ko je trenutno na forumu
 

Ukupno su 684 korisnika na forumu :: 42 registrovanih, 4 sakrivenih i 638 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 357magnum, _Rade, _Sale, ALBION101, AleksSE, Andrija357, Bloody, Cirkon, darkangel, Duško, Filip Marinković, FOX, gorantrojka, h8propaganda, Hoegaarden, HrcAk47, ikan, ivica976, kovinacc, kreza, kuntalo, MB120mm, Mihajlo, milekNS, naki011, nemkea71, nenad81, pavle_pzs, pedja63, Pohovani_00, raketaš, S.Palestinac, Sirius, Steeeefan, stegonosa, suton, theNedjeljko, Toni, vasa.93, VJ, vlvl, xJeremijAx