Iskačući prozori

1

Iskačući prozori

offline
  • Pridružio: 05 Mar 2010
  • Poruke: 41

Na internet exploreru i mozili kada otvorim novi lik iskaču mi prozori sa nekim reklamama, pokušavao sam da ih uklonim sa antimalvare ali nevedi. ako neko moze da mi pomogne biću mu veoma zahvalan. Hvala unapred
mycity.rs/must-login.png

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-11-2014 01
Ran by Misa (administrator) on MISA-PC on 01-12-2014 02:38:19
Running from C:\Users\Misa\Downloads
Loaded Profile: Misa (Available profiles: Misa)
Platform: Windows 7 Ultimate (X64) OS Language: English (United States)
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
() C:\Program Files (x86)\Savevid\SavevidService.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
() C:\Program Files (x86)\Savevid\SavevidWSServer.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Bandoo Media Inc.) C:\Program Files (x86)\Savevid\SavevidPluginCore.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(BitTorrent Inc.) C:\Users\Misa\AppData\Roaming\BitTorrent\BitTorrent.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Cyberlink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe
() C:\Program Files (x86)\Savevid\SavevidWSServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12445288 2012-01-16] (Realtek Semiconductor)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-22] (AVAST Software)
HKLM-x32\...\Run: [RemoteControl] => C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe [30208 2005-12-07] (Cyberlink Corp.)
HKLM-x32\...\Run: [LanguageShortcut] => C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe [49152 2006-05-18] ()
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-23] (Piriform Ltd)
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30520936 2014-11-18] (Skype Technologies S.A.)
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\...\Run: [BitTorrent] => C:\Users\Misa\AppData\Roaming\BitTorrent\BitTorrent.exe [1723480 2014-11-22] (BitTorrent Inc.)
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\...\MountPoints2: {ad64e057-71de-11e4-9c05-902b34472b9a} - F:\LaunchU3.exe -a
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\Software\Microsoft\Internet Explorer\Main,Start Page = google.rs/
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = msn.com/?ocid=iehp
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xD5261867E105D001
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = google.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = default-search.net/search?sid=476&a.....=ds&p={searchTerms}
SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = default-search.net/search?sid=476&a.....=ds&p={searchTerms}
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> {45CD46A5-FB81-4fa5-A88E-BA9BDF1BA15B} URL = search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBDSV
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> {5143FB06-4452-4940-8C21-3FC5D4BA114F} URL = google.com/cse?cx=partner-pub-379428894.....802&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = default-search.net/search?sid=476&a.....=ds&p={searchTerms}
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> {C7845E60-0E34-4fe9-AE14-09468E5D2E54} URL = bing.com/search?q={searchTerms}&form=SPLBR1&pc=SPLH
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 89.216.1.40 89.216.1.50

FireFox:
========
FF ProfilePath: C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default
FF SearchEngineOrder.1: default-search.net
FF Homepage: google.rs
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-4030691657-4207463097-1842436398-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Misa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF user.js: detected! => C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default\user.js
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\pogodakyu.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\vokabular.xml
FF Extension: Hold Page 1.0.1 - C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default\Extensions\{df47b99d-26f5-45f4-85c5-97b4da365f21}.xpi [2014-12-01]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-11-22]
FF Extension: No Name - wrc@avast.com [Not Found]

Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Misa\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Docs) - C:\Users\Misa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-22]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-22]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-22] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [104416 2014-11-22] (AVAST Software)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [167936 2005-08-08] () [File not signed]
R2 SavevidService; C:\Program Files (x86)\Savevid\SavevidService.exe [796160 2014-08-14] ()
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2145080 2014-07-16] (TuneUp Software)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21104 2011-01-10] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-22] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2014-11-22] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-22] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [449936 2014-11-22] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-22] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-22] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-22] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-22] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-22] ()
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2014-06-23] (TuneUp Software)
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
R3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-01 02:38 - 2014-12-01 02:38 - 00013884 _____ () C:\Users\Misa\Downloads\FRST.txt
2014-12-01 02:36 - 2014-12-01 02:38 - 00000000 ____D () C:\FRST
2014-12-01 02:36 - 2014-12-01 02:36 - 02117120 _____ (Farbar) C:\Users\Misa\Downloads\FRST64.exe
2014-12-01 02:27 - 2014-12-01 02:27 - 00418192 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-12-01 02:27 - 2014-12-01 02:27 - 00110752 _____ () C:\Users\Misa\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-01 02:27 - 2014-12-01 02:27 - 00054210 _____ () C:\Windows\PFRO.log
2014-12-01 02:27 - 2014-12-01 02:27 - 00002658 _____ () C:\Windows\setupact.log
2014-12-01 02:27 - 2014-12-01 02:27 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-01 02:18 - 2014-12-01 02:18 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-12-01 01:31 - 2014-12-01 01:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FLV to AVI
2014-12-01 01:31 - 2014-12-01 01:56 - 00000000 ____D () C:\Program Files (x86)\FLV to AVI
2014-12-01 01:31 - 2014-12-01 01:31 - 00001025 _____ () C:\Users\Public\Desktop\FLV to AVI.lnk
2014-12-01 01:13 - 2014-12-01 01:15 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-01 01:12 - 2014-10-31 23:26 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-01 01:02 - 2014-12-01 01:56 - 00000000 ____D () C:\Program Files (x86)\Savevid
2014-12-01 01:02 - 2014-12-01 01:02 - 00000838 _____ () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Savevid.lnk
2014-12-01 00:20 - 2014-12-01 01:56 - 00000000 ____D () C:\Users\Misa\AppData\Local\JDownloader v2.0
2014-11-30 02:26 - 2014-12-01 00:41 - 00000000 ____D () C:\Users\Misa\Documents\Преузимања
2014-11-30 02:24 - 2014-11-30 02:24 - 00003326 _____ () C:\Windows\System32\Tasks\{7C442AA6-EEA5-4B21-96C1-9B545A17264A}
2014-11-28 10:04 - 2014-11-28 10:04 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-11-28 09:51 - 2014-09-15 01:44 - 03195392 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-28 00:57 - 2014-11-28 00:57 - 00000000 ____D () C:\ProgramData\Contrast
2014-11-28 00:57 - 2014-11-28 00:57 - 00000000 ____D () C:\Program Files (x86)\Contrast
2014-11-28 00:40 - 2012-06-02 23:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-11-28 00:40 - 2012-06-02 23:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-11-28 00:40 - 2012-06-02 23:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-11-28 00:40 - 2012-06-02 23:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-11-28 00:40 - 2012-06-02 23:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-11-28 00:40 - 2012-06-02 23:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-11-28 00:40 - 2012-06-02 23:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-11-28 00:40 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-11-28 00:40 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-11-28 00:30 - 2014-12-01 01:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Contrast
2014-11-28 00:30 - 2014-11-28 00:30 - 00001054 _____ () C:\Users\Public\Desktop\Contrast PlanPlus 10.lnk
2014-11-28 00:30 - 2014-11-28 00:30 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Contrast
2014-11-27 02:03 - 2014-11-27 02:03 - 00003914 _____ () C:\Windows\System32\Tasks\InstallShield Software online update program
2014-11-27 02:03 - 2014-11-27 02:03 - 00003818 _____ () C:\Windows\System32\Tasks\InstallShield Software update service
2014-11-27 02:03 - 2014-11-27 02:03 - 00003694 _____ () C:\Windows\System32\Tasks\Adobe online update program
2014-11-27 01:59 - 2014-11-27 01:59 - 00002199 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014.lnk
2014-11-27 01:59 - 2014-11-27 01:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014
2014-11-27 01:59 - 2014-11-27 01:59 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014
2014-11-27 01:59 - 2014-07-16 10:24 - 00040760 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2014-11-27 01:59 - 2014-07-16 10:24 - 00029496 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2014-11-27 01:59 - 2014-07-16 10:24 - 00025400 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
2014-11-27 01:31 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-11-27 01:30 - 2014-11-27 01:53 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works
2014-11-27 01:30 - 2014-11-27 01:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio
2014-11-27 01:29 - 2014-11-27 01:29 - 00000000 ____D () C:\Windows\PCHEALTH
2014-11-27 01:28 - 2014-11-27 01:28 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-11-27 01:27 - 2014-11-27 01:53 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2014-11-27 01:27 - 2014-11-27 01:30 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-11-27 01:26 - 2014-11-27 01:26 - 00000000 __RHD () C:\MSOCache
2014-11-26 18:57 - 2014-11-26 18:57 - 00003122 _____ () C:\Windows\System32\Tasks\{015C266A-6004-4BEF-B781-AC4469E0F04B}
2014-11-26 18:26 - 2014-11-27 01:53 - 00000000 ____D () C:\Users\Misa\AppData\Local\Unity
2014-11-25 08:27 - 2014-11-30 21:26 - 00000010 _____ () C:\Windows\popcinfo.dat
2014-11-24 22:38 - 2014-11-26 21:29 - 00031232 _____ () C:\Users\Misa\Documents\PONUDA.xls
2014-11-24 00:13 - 2014-11-27 01:53 - 00000000 ____D () C:\Users\Misa\Documents\Titlovi
2014-11-24 00:13 - 2014-11-24 00:13 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\WinRAR
2014-11-23 23:40 - 2014-11-23 23:40 - 00730638 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-11-22 23:19 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse
2014-11-22 23:17 - 2014-11-27 01:53 - 00000000 ____D () C:\Program Files (x86)\GameHouse
2014-11-22 21:56 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X3
2014-11-22 21:55 - 2014-11-22 21:55 - 00000000 ____D () C:\Program Files (x86)\Corel
2014-11-22 15:31 - 2014-11-22 15:31 - 00001877 _____ () C:\Users\Misa\Desktop\XBMC.lnk
2014-11-22 15:11 - 2014-11-30 21:29 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\XBMC
2014-11-22 15:11 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-11-22 15:11 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-11-22 15:10 - 2014-11-27 01:53 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XBMC
2014-11-22 15:10 - 2014-11-22 15:10 - 00000000 ____D () C:\Program Files (x86)\XBMC
2014-11-22 14:51 - 2014-11-22 14:51 - 00002770 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2014-11-22 14:01 - 2014-11-22 14:01 - 00000832 _____ () C:\Users\Misa\Desktop\BitTorrent.lnk
2014-11-22 14:01 - 2014-11-22 14:01 - 00000812 _____ () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-11-22 14:00 - 2014-12-01 02:38 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\BitTorrent
2014-11-22 14:00 - 2014-11-22 14:00 - 00000000 ____D () C:\ProgramData\APN
2014-11-22 13:53 - 2014-12-01 02:37 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Skype
2014-11-22 13:53 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-11-22 13:53 - 2014-11-22 13:53 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-11-22 13:53 - 2014-11-22 13:53 - 00000000 ____D () C:\Users\Misa\AppData\Local\Skype
2014-11-22 13:37 - 2014-11-22 13:37 - 00000000 ____D () C:\Users\Misa\AppData\Local\Avg2014
2014-11-22 13:29 - 2014-11-22 13:29 - 00003156 _____ () C:\Windows\System32\Tasks\{906B8BF3-E15B-4E38-AEB5-B16884A8B866}
2014-11-22 13:26 - 2014-11-22 13:26 - 00003156 _____ () C:\Windows\System32\Tasks\{64196158-5DAB-4741-9578-5BF780D52550}
2014-11-22 13:26 - 2014-11-22 13:26 - 00003156 _____ () C:\Windows\System32\Tasks\{19727198-53BE-4F8C-836D-99FA58D71552}
2014-11-22 13:25 - 2014-11-22 13:53 - 00000000 ____D () C:\ProgramData\Skype
2014-11-22 11:39 - 2014-11-22 11:39 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\TuneUp Software
2014-11-22 11:39 - 2014-11-22 11:39 - 00000000 ____D () C:\Users\Misa\AppData\Local\TuneUp Software
2014-11-22 11:38 - 2014-11-27 02:03 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-11-22 11:37 - 2014-11-22 13:30 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-11-22 11:36 - 2014-12-01 02:27 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\FirefoxToolbar
2014-11-22 11:36 - 2014-12-01 02:27 - 00000000 ____D () C:\Users\Misa\AppData\Local\Linkey
2014-11-22 11:36 - 2014-12-01 02:27 - 00000000 ____D () C:\Program Files (x86)\Settings Manager
2014-11-22 11:36 - 2014-11-22 11:36 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\WebTest
2014-11-22 11:35 - 2014-11-22 22:57 - 00000000 ____D () C:\KMPlayer
2014-11-22 11:35 - 2014-11-22 14:01 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\RHEng
2014-11-22 11:35 - 2014-11-22 11:35 - 00000606 _____ () C:\Users\Misa\Desktop\KMPlayer.lnk
2014-11-22 11:35 - 2014-11-22 11:35 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2014-11-22 11:29 - 2014-11-22 11:29 - 00000000 ____D () C:\Users\Misa\Documents\CyberLink
2014-11-22 11:29 - 2014-11-22 11:29 - 00000000 ____D () C:\ProgramData\CyberLink
2014-11-22 11:28 - 2014-11-22 11:29 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2014-11-22 11:28 - 2014-11-22 11:28 - 00002047 ____N () C:\Users\Desktop\CyberLink PowerDVD.lnk
2014-11-22 11:28 - 2014-11-22 11:28 - 00002047 _____ () C:\Users\Misa\Desktop\CyberLink PowerDVD.lnk
2014-11-22 11:28 - 2014-11-22 11:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2014-11-22 11:28 - 2014-11-22 11:28 - 00000000 ____D () C:\Program Files (x86)\CyberLink
2014-11-22 11:28 - 2003-03-18 20:14 - 00499712 ____N (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll
2014-11-22 11:28 - 2003-02-21 04:42 - 00348160 ____N (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2014-11-22 11:28 - 2001-03-08 18:30 - 00024064 ____N (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll
2014-11-22 10:26 - 2014-11-22 10:26 - 00000594 _____ () C:\Users\Misa\Desktop\AddrBook - Shortcut.lnk
2014-11-22 10:26 - 2014-11-22 10:26 - 00000000 ____D () C:\Address Book
2014-11-22 09:43 - 2014-11-22 22:03 - 00002516 ___SH () C:\Windows\SysWOW64\KGyGaAvL.sys
2014-11-22 09:43 - 2014-11-22 09:43 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Corel
2014-11-22 09:40 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\InstallShield
2014-11-22 09:40 - 2014-11-22 21:57 - 00003379 _____ () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Program Updates.lnk
2014-11-22 08:18 - 2014-11-22 08:18 - 00262144 _____ () C:\Windows\system32\config\userdiff
2014-11-22 08:18 - 2014-11-22 00:47 - 00000000 ____D () C:\Windows\Panther
2014-11-22 08:14 - 2014-11-22 08:14 - 00000000 ___HD () C:\$INPLACE.~TR
2014-11-22 08:14 - 2014-11-21 23:26 - 00000000 ___HD () C:\$WINDOWS.~Q
2014-11-22 04:28 - 2014-11-22 04:28 - 00000000 ____D () C:\Program Files (x86)\SearchProtect
2014-11-22 04:24 - 2014-11-22 04:24 - 00000994 _____ () C:\Users\Public\Desktop\PS3 Media Server.lnk
2014-11-22 04:24 - 2014-11-22 04:24 - 00000000 ____D () C:\Program Files (x86)\PS3 Media Server
2014-11-22 04:22 - 2014-11-22 04:22 - 00000000 ____D () C:\PS3_Media_Server_v1
2014-11-22 03:54 - 2014-11-30 00:49 - 00000000 ____D () C:\ProgramData\PMS
2014-11-22 03:54 - 2014-11-22 04:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PS3 Media Server
2014-11-22 03:43 - 2014-11-27 01:53 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\PDF Writer
2014-11-22 03:43 - 2014-11-22 03:43 - 00000000 ____D () C:\Users\Misa\AppData\Local\PDF Writer
2014-11-22 03:41 - 2014-11-22 03:42 - 00000000 ____D () C:\ProgramData\PDF Writer
2014-11-22 03:41 - 2014-11-22 03:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bullzip
2014-11-22 03:41 - 2014-11-22 03:41 - 00000000 ____D () C:\Program Files\Common Files\Bullzip
2014-11-22 03:41 - 2014-11-22 03:41 - 00000000 ____D () C:\Program Files\Bullzip
2014-11-22 03:41 - 2013-09-01 11:59 - 01103872 _____ () C:\Windows\SysWOW64\CBLCtlsU.ocx
2014-11-22 03:41 - 2013-07-13 11:15 - 00805376 _____ () C:\Windows\SysWOW64\EditCtlsU.ocx
2014-11-22 03:41 - 2013-07-12 21:57 - 00539648 _____ () C:\Windows\SysWOW64\LblCtlsU.ocx
2014-11-22 03:41 - 2013-04-05 12:55 - 00476160 _____ () C:\Windows\SysWOW64\TabStripCtlU.ocx
2014-11-22 03:41 - 2013-03-28 22:13 - 00645632 _____ () C:\Windows\SysWOW64\BtnCtlsU.ocx
2014-11-22 03:41 - 2013-03-03 13:37 - 01061888 _____ () C:\Windows\SysWOW64\ExLvwU.ocx
2014-11-22 03:41 - 2008-10-30 20:22 - 00227840 _____ (Bullzip) C:\Windows\SysWOW64\bzFlRdr.dll
2014-11-22 03:41 - 2008-07-09 20:22 - 00103424 _____ (Bullzip) C:\Windows\SysWOW64\bzDCT.dll
2014-11-22 03:14 - 2014-11-22 03:13 - 00208770 _____ () C:\Windows\hplj1010.hi1
2014-11-22 03:14 - 2014-11-22 03:13 - 00013592 _____ () C:\Windows\hplj1010.bu1
2014-11-22 03:13 - 2014-11-22 03:15 - 00045056 _____ (Northern Codeworks) C:\Windows\NCUNINST.EXE
2014-11-22 03:13 - 2014-11-22 03:13 - 00003032 _____ () C:\Windows\System32\Tasks\{5BC85649-3FAB-4749-9657-082224F7EFAF}
2014-11-22 03:12 - 2014-11-22 03:15 - 00208861 _____ () C:\Windows\hplj1010.his
2014-11-22 03:12 - 2014-11-22 03:15 - 00013593 _____ () C:\Windows\hplj1010.ini
2014-11-22 03:00 - 2014-11-22 03:00 - 00003198 _____ () C:\Windows\System32\Tasks\{5E1D67F3-97F2-4580-942E-1FA65EB95831}
2014-11-22 02:53 - 2014-11-22 03:00 - 00000858 _____ () C:\ProgramData\hpzinstall.log
2014-11-22 02:17 - 2014-11-22 02:17 - 00000000 ____D () C:\Program Files (x86)\Hp
2014-11-22 02:02 - 2014-11-22 03:51 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Adobe
2014-11-22 02:02 - 2014-11-22 02:02 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Macromedia
2014-11-22 02:02 - 2014-11-22 02:02 - 00000000 ____D () C:\Users\Misa\AppData\Local\Macromedia
2014-11-22 01:56 - 2014-11-22 01:56 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-11-22 01:56 - 2014-11-22 01:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-11-22 01:51 - 2014-11-22 01:51 - 00000000 ____D () C:\Windows\Sun
2014-11-22 01:50 - 2014-11-22 01:58 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-22 01:50 - 2014-11-22 01:50 - 00000000 ____D () C:\ProgramData\Sun
2014-11-22 01:50 - 2014-11-22 01:50 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-22 01:47 - 2014-12-01 02:02 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-22 01:47 - 2014-11-27 01:53 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-11-22 01:47 - 2014-11-27 01:53 - 00000000 ____D () C:\Windows\system32\Macromed
2014-11-22 01:47 - 2014-11-26 13:02 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-22 01:47 - 2014-11-26 13:02 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-22 01:47 - 2014-11-26 13:02 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-22 01:46 - 2014-11-22 01:54 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-22 01:46 - 2014-11-22 01:46 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-11-22 01:46 - 2014-11-22 01:46 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-11-22 01:45 - 2014-11-23 01:54 - 00000000 ____D () C:\Users\Misa\AppData\Local\Adobe
2014-11-22 01:42 - 2014-11-22 01:42 - 00001153 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player PRO.lnk
2014-11-22 01:42 - 2014-11-22 01:42 - 00001147 _____ () C:\Users\Public\Desktop\BS.Player PRO.lnk
2014-11-22 01:42 - 2014-11-22 01:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webteh
2014-11-22 01:41 - 2014-11-29 01:12 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\BSplayer PRO
2014-11-22 01:41 - 2014-11-22 01:41 - 00000000 ____D () C:\Program Files (x86)\Webteh
2014-11-22 01:32 - 2014-12-01 01:46 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-11-22 01:32 - 2014-12-01 01:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-11-22 01:32 - 2014-12-01 01:46 - 00000000 ____D () C:\Program Files\WinRAR
2014-11-22 01:30 - 2014-11-22 01:30 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\U3
2014-11-22 01:11 - 2014-11-29 13:23 - 00000000 ____D () C:\db
2014-11-22 01:09 - 2014-11-22 01:09 - 00001055 _____ () C:\Users\Misa\Desktop\Expert 2000.LNK
2014-11-22 01:05 - 2014-11-22 01:14 - 00000000 ____D () C:\Program Files (x86)\Expert2000
2014-11-22 01:05 - 2014-11-22 01:05 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Expert
2014-11-22 01:05 - 2014-11-22 01:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Expert
2014-11-22 01:04 - 2014-11-22 01:05 - 00249856 ____N (Microsoft Corporation) C:\Windows\Setup1.exe
2014-11-22 01:04 - 2014-11-22 01:05 - 00073216 _____ (Microsoft Corporation) C:\Windows\ST6UNST.EXE
2014-11-22 01:04 - 2014-11-22 01:04 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Project1
2014-11-22 01:04 - 2014-11-22 01:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Project1
2014-11-22 01:04 - 2014-11-22 01:04 - 00000000 ____D () C:\Program Files (x86)\Project1
2014-11-22 01:04 - 2000-12-06 04:00 - 00209608 ____R (Microsoft Corporation) C:\Windows\SysWOW64\TABCTL32.OCX
2014-11-22 01:04 - 2000-12-06 04:00 - 00209608 ____R (Microsoft Corporation) C:\Windows\system32\TABCTL32.OCX
2014-11-22 00:56 - 2014-11-22 00:56 - 00001970 _____ () C:\Users\Public\Desktop\Avast Internet Security.lnk
2014-11-22 00:56 - 2014-11-22 00:55 - 00028184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2014-11-22 00:56 - 2014-11-22 00:54 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-11-22 00:55 - 2014-11-22 00:55 - 00449936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNdisFlt.sys
2014-11-22 00:54 - 2014-12-01 02:28 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-22 00:54 - 2014-11-22 01:00 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-22 00:54 - 2014-11-22 00:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2014-11-22 00:54 - 2014-11-22 00:54 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-11-22 00:54 - 2014-11-22 00:54 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\AVAST Software
2014-11-22 00:54 - 2014-11-22 00:54 - 00000000 ____D () C:\Users\Misa\AppData\Local\Google
2014-11-22 00:53 - 2014-11-22 00:53 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-11-22 00:53 - 2014-11-22 00:53 - 00000000 ____D () C:\Program Files\AVAST Software
2014-11-22 00:43 - 2014-11-22 00:43 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-22 00:43 - 2014-11-22 00:43 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-11-22 00:43 - 2014-11-22 00:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-22 00:43 - 2014-11-22 00:43 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-22 00:42 - 2014-11-22 00:42 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\ASP
2014-11-22 00:41 - 2014-11-22 00:44 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Systweak
2014-11-22 00:40 - 2014-11-17 19:23 - 00019736 _____ () C:\Windows\system32\roboot64.exe
2014-11-22 00:38 - 2014-11-23 03:20 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-22 00:38 - 2014-11-22 00:38 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-11-22 00:38 - 2014-11-22 00:38 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Mozilla
2014-11-22 00:38 - 2014-11-22 00:38 - 00000000 ____D () C:\Users\Misa\AppData\Local\Mozilla
2014-11-22 00:38 - 2014-11-22 00:38 - 00000000 ____D () C:\ProgramData\Mozilla
2014-11-22 00:38 - 2014-11-22 00:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-22 00:37 - 2014-11-22 00:37 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-11-22 00:36 - 2014-11-04 14:30 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-22 00:18 - 2014-12-01 01:00 - 00004286 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{35C10B01-FCAD-408A-A713-3A4367721D53}
2014-11-21 23:55 - 2014-11-21 23:55 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-11-21 23:50 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-21 23:50 - 2014-11-21 23:50 - 00000000 ____D () C:\Users\Misa\AppData\Local\Microsoft Help
2014-11-21 23:42 - 2014-11-21 23:42 - 00000000 ____D () C:\Splashtop
2014-11-21 23:41 - 2014-11-22 00:37 - 00000000 ____D () C:\ProgramData\Splashtop
2014-11-21 23:41 - 2014-11-21 23:41 - 00000000 ____D () C:\ProgramData\Intel
2014-11-21 23:41 - 2011-12-16 10:40 - 00015128 _____ () C:\Windows\system32\Drivers\IntelMEFWVer.dll
2014-11-21 23:40 - 2014-11-21 23:41 - 00000000 ____D () C:\Program Files\Intel
2014-11-21 23:40 - 2014-11-21 23:40 - 00000000 ____D () C:\Windows\SysWOW64\Atheros_L1e
2014-11-21 23:40 - 2011-03-23 03:20 - 00077936 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1C62x64.sys
2014-11-21 23:39 - 2014-11-22 11:28 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-21 23:39 - 2014-11-21 23:41 - 00000244 _____ () C:\csb.log
2014-11-21 23:39 - 2014-11-21 23:39 - 00002995 _____ () C:\RHDSetup.log
2014-11-21 23:39 - 2014-11-21 23:39 - 00000206 _____ () C:\Install.log
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\InstallShield
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Program Files\Realtek
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Program Files\GIGABYTE
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Program Files (x86)\GIGABYTE
2014-11-21 23:39 - 2012-01-17 12:19 - 04734440 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-11-21 23:39 - 2012-01-17 09:25 - 00215644 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-11-21 23:39 - 2012-01-17 03:39 - 03844200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-11-21 23:39 - 2012-01-12 12:25 - 02649704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-11-21 23:39 - 2012-01-10 07:48 - 00958296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-11-21 23:39 - 2011-12-23 06:30 - 00823912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-11-21 23:39 - 2011-12-20 08:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-11-21 23:39 - 2011-12-18 10:58 - 02603864 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll
2014-11-21 23:39 - 2011-12-18 10:58 - 02131288 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2014-11-21 23:39 - 2011-12-16 07:57 - 00894040 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO64.dll
2014-11-21 23:39 - 2011-12-16 07:57 - 00750680 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO32.dll
2014-11-21 23:39 - 2011-12-16 07:57 - 00065112 _____ (Creative Technology Ltd.) C:\Windows\system32\MBppld64.dll
2014-11-21 23:39 - 2011-12-15 05:39 - 00100968 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-11-21 23:39 - 2011-12-13 13:22 - 02528832 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-11-21 23:39 - 2011-12-13 09:58 - 01560168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-11-21 23:39 - 2011-12-13 04:01 - 01698408 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-11-21 23:39 - 2011-11-22 09:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2014-11-21 23:39 - 2011-11-10 01:04 - 00060184 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys
2014-11-21 23:39 - 2011-07-22 12:35 - 01247848 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-11-21 23:39 - 2011-01-10 18:16 - 00021104 _____ () C:\Windows\system32\Drivers\AppleCharger.sys
2014-11-21 23:39 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-11-21 23:39 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-11-21 23:39 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-11-21 23:39 - 2010-07-22 09:37 - 00200800 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-11-21 23:39 - 2010-07-02 12:40 - 00080984 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
2014-11-21 23:39 - 2010-04-06 16:30 - 00031272 _____ () C:\Windows\system32\AppleChargerSrv.exe
2014-11-21 23:39 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2014-11-21 23:39 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2014-11-21 23:39 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2014-11-21 23:39 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2014-11-21 23:39 - 2009-11-18 00:13 - 00060504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBPPCn64.dll
2014-11-21 23:39 - 2009-11-17 11:12 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-11-21 23:38 - 2014-11-21 23:38 - 00000000 ____D () C:\Program Files\Common Files\Intel
2014-11-21 23:38 - 2012-01-12 23:24 - 05886232 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00511256 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00440600 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00398104 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00274200 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00248600 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00170264 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2014-11-21 23:38 - 2012-01-12 23:23 - 00184600 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2014-11-21 23:38 - 2012-01-06 05:02 - 00018488 _____ () C:\Windows\system32\iglhxs64.vp
2014-11-21 23:38 - 2012-01-06 04:49 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2618.dll
2014-11-21 23:38 - 2012-01-06 04:36 - 14652768 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2014-11-21 23:38 - 2012-01-06 04:36 - 08034304 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll
2014-11-21 23:38 - 2012-01-06 04:36 - 00963912 _____ () C:\Windows\SysWOW64\igkrng600.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00963912 _____ () C:\Windows\system32\igkrng600.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00261208 _____ () C:\Windows\SysWOW64\igfcg600m.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00261208 _____ () C:\Windows\system32\igfcg600m.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00145804 _____ () C:\Windows\SysWOW64\igcompkrng600.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00145804 _____ () C:\Windows\system32\igcompkrng600.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00079360 _____ () C:\Windows\system32\igdde64.dll
2014-11-21 23:38 - 2012-01-06 04:29 - 06079488 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll
2014-11-21 23:38 - 2012-01-06 04:29 - 00058880 _____ () C:\Windows\SysWOW64\igdde32.dll
2014-11-21 23:38 - 2012-01-06 04:23 - 09536000 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll
2014-11-21 23:38 - 2012-01-06 04:11 - 07740928 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll
2014-11-21 23:38 - 2012-01-06 02:58 - 18098176 _____ () C:\Windows\system32\ig4icd64.dll
2014-11-21 23:38 - 2012-01-06 02:44 - 13184512 _____ () C:\Windows\SysWOW64\ig4icd32.dll
2014-11-21 23:38 - 2012-01-06 02:31 - 00440320 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00432128 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00430592 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00428544 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00221099 _____ () C:\Windows\system32\Gfxres.th-TH.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00207830 _____ () C:\Windows\system32\Gfxres.el-GR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00191775 _____ () C:\Windows\system32\Gfxres.ru-RU.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00164334 _____ () C:\Windows\system32\Gfxres.ar-SA.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00161613 _____ () C:\Windows\system32\Gfxres.ja-JP.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00157226 _____ () C:\Windows\system32\Gfxres.he-IL.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00148033 _____ () C:\Windows\system32\Gfxres.it-IT.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00146675 _____ () C:\Windows\system32\Gfxres.ko-KR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00145687 _____ () C:\Windows\system32\Gfxres.es-ES.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00145579 _____ () C:\Windows\system32\Gfxres.de-DE.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00144338 _____ () C:\Windows\system32\Gfxres.ro-RO.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00143805 _____ () C:\Windows\system32\Gfxres.fr-FR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00143155 _____ () C:\Windows\system32\Gfxres.tr-TR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00142664 _____ () C:\Windows\system32\Gfxres.pt-BR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00142335 _____ () C:\Windows\system32\Gfxres.nl-NL.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00142189 _____ () C:\Windows\system32\Gfxres.hu-HU.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00141644 _____ () C:\Windows\system32\Gfxres.pt-PT.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00141435 _____ () C:\Windows\system32\Gfxres.sv-SE.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00140923 _____ () C:\Windows\system32\Gfxres.pl-PL.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00140885 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00140549 _____ () C:\Windows\system32\Gfxres.fi-FI.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00140122 _____ () C:\Windows\system32\Gfxres.sk-SK.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00139487 _____ () C:\Windows\system32\Gfxres.hr-HR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00136451 _____ () C:\Windows\system32\Gfxres.sl-SI.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00136369 _____ () C:\Windows\system32\Gfxres.nb-NO.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00135868 _____ () C:\Windows\system32\Gfxres.da-DK.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00131317 _____ () C:\Windows\system32\Gfxres.en-US.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00126976 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2014-11-21 23:38 - 2012-01-06 02:31 - 00124962 _____ () C:\Windows\system32\Gfxres.zh-TW.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00123467 _____ () C:\Windows\system32\Gfxres.zh-CN.resources
2014-11-21 23:38 - 2012-01-06 02:30 - 00410624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2014-11-21 23:38 - 2012-01-06 02:30 - 00386048 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2014-11-21 23:38 - 2012-01-06 02:30 - 00062976 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2014-11-21 23:38 - 2012-01-06 02:30 - 00028672 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 09007616 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2014-11-21 23:38 - 2012-01-06 02:29 - 00172032 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00110592 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00009216 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2014-11-21 23:38 - 2012-01-06 02:27 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2014-11-21 23:38 - 2012-01-06 02:26 - 00320000 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 02780160 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 02191872 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 01981696 _____ () C:\Windows\system32\iglhxa64.cpa
2014-11-21 23:38 - 2012-01-06 02:24 - 00524800 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00519680 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00246784 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00244224 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00219136 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00201728 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00059425 _____ () C:\Windows\system32\iglhxo64.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00059398 _____ () C:\Windows\system32\iglhxg64.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00059230 _____ () C:\Windows\system32\iglhxc64.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00059104 _____ () C:\Windows\system32\iglhxc64_dev.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00058796 _____ () C:\Windows\system32\iglhxg64_dev.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00058109 _____ () C:\Windows\system32\iglhxo64_dev.vp
2014-11-21 23:38 - 2011-12-26 04:07 - 00086016 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2014-11-21 23:38 - 2011-12-26 04:06 - 00017920 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-11-21 23:38 - 2011-12-26 04:02 - 00120832 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2014-11-21 23:38 - 2011-12-26 04:02 - 00020992 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-11-21 23:37 - 2014-11-27 02:03 - 00000000 ___HD () C:\ProgramData\{8533ADFA-85F0-4dc1-946A-2A0BA58E78E3}
2014-11-21 23:37 - 2014-11-21 23:41 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-11-21 23:37 - 2010-12-23 04:09 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-11-21 23:36 - 2014-11-22 00:37 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Splashtop
2014-11-21 23:34 - 2014-11-21 23:34 - 00000010 _____ () C:\Windows\GSetup.ini
2014-11-21 23:30 - 2014-11-21 23:30 - 00001413 _____ () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-11-21 23:29 - 2014-11-21 23:30 - 00001447 _____ () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-21 23:29 - 2014-11-21 23:29 - 00000020 ___SH () C:\Users\Misa\ntuser.ini
2014-11-21 23:27 - 2014-12-01 02:30 - 01078851 _____ () C:\Windows\WindowsUpdate.log
2014-11-21 23:26 - 2014-11-21 23:26 - 00022744 _____ () C:\Windows\system32\emptyregdb.dat
2014-11-21 23:22 - 2014-12-01 01:56 - 00000000 ____D () C:\Users\Misa
2014-11-21 23:22 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-21 23:22 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-21 23:21 - 2014-11-21 23:21 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-11-21 23:21 - 2014-11-21 23:21 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-11-21 23:02 - 2014-11-21 23:02 - 00001890 _____ () C:\Windows\diagwrn.xml
2014-11-21 23:02 - 2014-11-21 23:02 - 00001890 _____ () C:\Windows\diagerr.xml
2014-11-21 22:47 - 2014-11-22 01:12 - 00000000 ____D () C:\Users\Misa\AppData\Local\VirtualStore
2014-11-21 22:47 - 2014-11-21 23:29 - 00000000 __SHD () C:\Recovery

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-01 02:32 - 2009-07-14 06:13 - 00717956 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-01 02:32 - 2009-07-14 05:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-01 02:32 - 2009-07-14 05:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-01 02:27 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-01 01:57 - 2009-07-14 03:34 - 00000580 _____ () C:\Windows\win.ini
2014-12-01 01:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-01 01:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2014-12-01 01:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2014-12-01 01:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-27 23:59 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-11-27 01:53 - 2009-07-14 08:46 - 00000000 ____D () C:\Windows\ShellNew
2014-11-27 01:53 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-11-27 01:53 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-11-22 13:46 - 2009-07-14 06:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-11-22 13:21 - 2009-07-14 05:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-11-22 08:18 - 2009-07-14 06:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-11-22 08:18 - 2009-07-14 06:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-11-22 08:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe
2014-11-21 23:39 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore
2014-11-21 23:29 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Recovery
2014-11-21 23:23 - 2009-07-14 04:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-21 23:23 - 2009-07-14 04:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-21 23:23 - 2009-07-14 04:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-21 23:23 - 2009-07-14 04:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-21 23:21 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-11-21 23:21 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-21 23:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-11-21 23:19 - 2009-07-14 08:46 - 00000000 ____D () C:\Windows\CSC

Some content of TEMP:
====================
C:\Users\Misa\AppData\Local\Temp\13061863174848864143.exe
C:\Users\Misa\AppData\Local\Temp\i4jdel0.exe
C:\Users\Misa\AppData\Local\Temp\JDownloaderSetup.exe
C:\Users\Misa\AppData\Local\Temp\proxy_vole664542286209637249.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-25 00:38

==================== End Of Log ============================


mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Arrow Korak 1

Idi u Start -> Control Panel -> Programs and Features i deinstaliraj sljedeće programe:

Savevid
TuneUp Utilities 2014



Arrow Korak 2

Otvori Notepad i iskopiraj sljedeći tekst koji se nalazi unutar Kod polja.

HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\...\MountPoints2: {ad64e057-71de-11e4-9c05-902b34472b9a} - F:\LaunchU3.exe -a
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = http://www.default-search.net/search?sid=476&a.....=ds&p={searchTerms}
SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = http://www.default-search.net/search?sid=476&a.....=ds&p={searchTerms}
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = http://www.default-search.net/search?sid=476&a.....=ds&p={searchTerms}
FF user.js: detected! => C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default\user.js
FF Extension: Hold Page 1.0.1 - C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default\Extensions\{df47b99d-26f5-45f4-85c5-97b4da365f21}.xpi [2014-12-01]
R2 SavevidService; C:\Program Files (x86)\Savevid\SavevidService.exe [796160 2014-08-14] ()
Task: {CA08A409-9B31-4D65-B08A-0768A950F70B} - \ASP No Task File <==== ATTENTION
C:\Program Files (x86)\Savevid
EmptyTemp:


U okviru Notepad-a klikni na File --> Save As
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se fixlog.txt, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt).




Arrow Korak 3

Preuzmi "Xplode"-ov AdwCleaner i sačuvaj ga na Desktop
Dvoklikom pokreni program.
u EULA prozoru klikni na I agree.
Klikni na dugme Scan i sačekaj da se završi skeniranje.
Klikni na dugme Clean i pričekaj da program završi.
Program će zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni OK kao potvrdu.
Na sljedeća dva prozora koja se otvore (Informations i Restart required ) klikni OK

Računar će se restartovati, a potom otvoriti Notepad (C:\AdwCleaner[S0].txt) sa izvještajem.
Sačuvaj taj izvještaj na Desktop i okači ga uz poruku koristeći opciju "Prikači fajl"

Napomena: Izvještaj ce takođe biti sačuvan na C:\Adwcleaner\AdwCleaner[S0].txt

offline
  • Pridružio: 05 Mar 2010
  • Poruke: 41

Napisano: 01 Dec 2014 11:18

mycity.rs/must-login.png

Dopuna: 01 Dec 2014 11:27

mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Kakvo je sada stanje?



Arrow

Preuzmi Malwarebytes Anti-Rootkit (MBAR) sa sledeceg linka i sacuvaj ga na Desktop.

Dvoklikom pokreni MBAR () na ikonicu programa:
- Klikni OK na sledecem prozoru da bi dozvolio raspakivanje u zaseban mbar folder na desktop-u;
- mbar.exe ce biti startovan. Na nekim sistemima to moze da potraje nekoliko dodatnih sekundi, te pricekati pokretanje.;
- U uvodnom prozoru klikni dugme Next ukoliko si saglasan;



• Na 'Update Database' prozoru klik na dugme Update da bi preuzeo sveze definicije. Kada se ispise poruka 'Success: Database was successfully updated' klik na dugme Next;
• Pod sekcijom 'Scan Targets' proveri da su sve opcije stiklirane, te klikni na dugme Scan;

Obavestenje: sa nekim infekcijama moze se desiti da se prikaze neka od sledecih poruka:
- 'Could not load protection driver' => u tom slucaju klikni OK.
- 'Could not load DDA driver' => klikni Yes na to obavestenje da bi dozvolio ucitavanje nakon restarta. Dozvoli restart i nastavi sa ostatkom instrukcija posle restarta.





>> Ukoliko malware nije detektovan, klik na Exit dugme da zatvoris program. U sledecu poruku postavi mbar-log-year-month-day (sat-minuti-sekundi).txt i system-log.txt izveštaje.

>> Ukoliko su infekcija/e pronadjene, proveriti da li je obelezena opcija 'Create Restore Point' i klikni na dugme Cleanup! da bi uklonili pretnje.
- Procedura uklanjanje malware-a (scheduled) ce biti zakazana po restartu, bice prikazano obavestenje u pop-up prozoru. Klikni dugme Yes i sistem bi trebao da se restartuje i da zavrsi proceduru ciscenja.



Obavestenje! samo ukoliko je RootKit detektovan: - postaraj se da pokrenes fixdamage.exe alat koji se nalazi u mbar folderu, \Plugins\fixdamage.exe:
- Dvoklikom pokreni fixdamage, u crnom prozoru koji se otvori (command prompt) ukucaj Y (Y stoji za Yes) da bi nastavio izvrsenje, pricekati da alat odradi sve popravke ...
- Kada vidis poruku 'press any key to exit' popravka je kompletirana. Pritisnuti bilo koju tipku na tastaturi da bi se prozor zatvorio. Restartovati sistem.





Sledeci izvestaji ce biti formirani u mbar folderu.
1. mbar-log-year-month-day (hour-minute-second).txt
2. system-log.txt

Iskopiraj sadrzaj mbar log-a u poruku a system log okaci uz poruku koristeci opciju Prikači fajl.

offline
  • Pridružio: 05 Mar 2010
  • Poruke: 41

mycity.rs/must-login.png

mycity.rs/must-login.png
Kada sam odradio sve kako si me uputio sve je funkcionisalo, ali veceras je pocelo sve po staron, neznam sta je klinac umedjuvremenu uradio a uglavnom gleda ctane na you tube ili igra igrice.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Ponovo pokreni FRST, označi Addition.txt i klikni na Scan. kada završi, postavi mi nove FRST.txt i Addition.txt izvještaje.

offline
  • Pridružio: 05 Mar 2010
  • Poruke: 41

mycity.rs/must-login.png

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-12-2014
Ran by Misa (administrator) on MISA-PC on 02-12-2014 10:34:41
Running from C:\Users\Misa\Desktop
Loaded Profile: Misa (Available profiles: Misa)
Platform: Windows 7 Ultimate (X64) OS Language: English (United States)
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(BitTorrent Inc.) C:\Users\Misa\AppData\Roaming\BitTorrent\BitTorrent.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Cyberlink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12445288 2012-01-16] (Realtek Semiconductor)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-22] (AVAST Software)
HKLM-x32\...\Run: [RemoteControl] => C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe [30208 2005-12-07] (Cyberlink Corp.)
HKLM-x32\...\Run: [LanguageShortcut] => C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe [49152 2006-05-18] ()
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-23] (Piriform Ltd)
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30520936 2014-11-18] (Skype Technologies S.A.)
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\...\Run: [BitTorrent] => C:\Users\Misa\AppData\Roaming\BitTorrent\BitTorrent.exe [1723480 2014-11-22] (BitTorrent Inc.)
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\...\Run: [ISUSPM Startup] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [249856 2005-08-11] (Macrovision Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\Software\Microsoft\Internet Explorer\Main,Start Page = google.rs/
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = msn.com/?ocid=iehp
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xD5261867E105D001
HKU\S-1-5-21-4030691657-4207463097-1842436398-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = google.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> DefaultScope {45CD46A5-FB81-4fa5-A88E-BA9BDF1BA15B} URL = search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBDSV
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> {45CD46A5-FB81-4fa5-A88E-BA9BDF1BA15B} URL = search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBDSV
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> {5143FB06-4452-4940-8C21-3FC5D4BA114F} URL = google.com/cse?cx=partner-pub-379428894.....802&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4030691657-4207463097-1842436398-1000 -> {C7845E60-0E34-4fe9-AE14-09468E5D2E54} URL = bing.com/search?q={searchTerms}&form=SPLBR1&pc=SPLH
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: neurowise 1.0.0.4 -> {d08ab008-0647-4784-8e2c-5769cd4a7c3a} -> C:\Program Files (x86)\neurowise\neurowisebho.dll No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 89.216.1.40 89.216.1.50

FireFox:
========
FF ProfilePath: C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default
FF Homepage: google.rs
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-4030691657-4207463097-1842436398-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Misa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\pogodakyu.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\vokabular.xml
FF Extension: DownloadHelper - C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-12-01]
FF Extension: neurowise 1.0.1 - C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default\Extensions\{3457e5fd-a0a9-479b-87ee-32c6d67f88f0}.xpi [2014-12-01]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-12-02]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-11-22]
FF Extension: No Name - wrc@avast.com [Not Found]

Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Misa\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Docs) - C:\Users\Misa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-22]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-22]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-22] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [104416 2014-11-22] (AVAST Software)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [167936 2005-08-08] () [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21104 2011-01-10] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-22] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2014-11-22] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-22] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [449936 2014-11-22] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-22] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-22] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-22] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-22] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-22] ()
S3 gdrv; \??\C:\Windows\gdrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-02 10:34 - 2014-12-02 10:34 - 00012576 _____ () C:\Users\Misa\Desktop\FRST.txt
2014-12-02 10:34 - 2014-12-02 10:34 - 00000000 ____D () C:\FRST
2014-12-02 10:33 - 2014-12-02 10:33 - 02117120 _____ (Farbar) C:\Users\Misa\Desktop\FRST64.exe
2014-12-02 09:50 - 2014-12-02 09:50 - 00110752 _____ () C:\Users\Misa\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-02 08:39 - 2014-12-02 08:39 - 00418192 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-12-02 08:39 - 2014-12-02 08:39 - 00002658 _____ () C:\Windows\setupact.log
2014-12-02 08:39 - 2014-12-02 08:39 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-02 04:26 - 2014-12-02 04:32 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-12-02 04:26 - 2014-12-02 04:26 - 00135384 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-02 04:25 - 2014-12-02 04:25 - 16448208 _____ (Malwarebytes Corp.) C:\Users\Misa\Downloads\mbar-1.08.2.1001.exe
2014-12-02 04:25 - 2014-12-02 04:25 - 00096472 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-12-02 02:45 - 2014-12-02 03:09 - 130118658 _____ () C:\Users\Misa\Downloads\Shaolin_basic_kung_fu_2_stretching_drills.flv
2014-12-02 02:35 - 2014-12-02 02:53 - 91558340 _____ () C:\Users\Misa\Downloads\Shaolin_basic_kung_fu_1_warm-up_endurance_stretching_drills.flv
2014-12-02 01:59 - 2014-12-02 01:59 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-01 15:15 - 2014-12-01 15:15 - 00000000 ____D () C:\Users\Misa\dwhelper
2014-12-01 12:03 - 2014-12-01 12:03 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Unity
2014-12-01 11:18 - 2014-12-02 04:14 - 00000000 ____D () C:\AdwCleaner
2014-12-01 11:17 - 2014-12-01 11:17 - 02154496 _____ () C:\Users\Misa\Downloads\AdwCleaner.exe
2014-12-01 02:18 - 2014-12-02 04:26 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-12-01 01:31 - 2014-12-01 01:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FLV to AVI
2014-12-01 01:31 - 2014-12-01 01:56 - 00000000 ____D () C:\Program Files (x86)\FLV to AVI
2014-12-01 01:31 - 2014-12-01 01:31 - 00001025 _____ () C:\Users\Public\Desktop\FLV to AVI.lnk
2014-12-01 01:13 - 2014-12-01 01:15 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-01 01:12 - 2014-10-31 23:26 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-01 00:20 - 2014-12-01 01:56 - 00000000 ____D () C:\Users\Misa\AppData\Local\JDownloader v2.0
2014-11-30 02:26 - 2014-12-01 00:41 - 00000000 ____D () C:\Users\Misa\Documents\Преузимања
2014-11-30 02:24 - 2014-11-30 02:24 - 00003326 _____ () C:\Windows\System32\Tasks\{7C442AA6-EEA5-4B21-96C1-9B545A17264A}
2014-11-28 10:04 - 2014-11-28 10:04 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-11-28 09:51 - 2014-09-15 01:44 - 03195392 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-28 00:57 - 2014-11-28 00:57 - 00000000 ____D () C:\ProgramData\Contrast
2014-11-28 00:57 - 2014-11-28 00:57 - 00000000 ____D () C:\Program Files (x86)\Contrast
2014-11-28 00:40 - 2012-06-02 23:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-11-28 00:40 - 2012-06-02 23:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-11-28 00:40 - 2012-06-02 23:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-11-28 00:40 - 2012-06-02 23:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-11-28 00:40 - 2012-06-02 23:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-11-28 00:40 - 2012-06-02 23:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-11-28 00:40 - 2012-06-02 23:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-11-28 00:40 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-11-28 00:40 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-11-28 00:30 - 2014-12-01 01:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Contrast
2014-11-28 00:30 - 2014-11-28 00:30 - 00001054 _____ () C:\Users\Public\Desktop\Contrast PlanPlus 10.lnk
2014-11-28 00:30 - 2014-11-28 00:30 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Contrast
2014-11-27 02:03 - 2014-11-27 02:03 - 00003914 _____ () C:\Windows\System32\Tasks\InstallShield Software online update program
2014-11-27 02:03 - 2014-11-27 02:03 - 00003818 _____ () C:\Windows\System32\Tasks\InstallShield Software update service
2014-11-27 02:03 - 2014-11-27 02:03 - 00003694 _____ () C:\Windows\System32\Tasks\Adobe online update program
2014-11-27 01:31 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-11-27 01:30 - 2014-11-27 01:53 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works
2014-11-27 01:30 - 2014-11-27 01:48 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio
2014-11-27 01:29 - 2014-11-27 01:29 - 00000000 ____D () C:\Windows\PCHEALTH
2014-11-27 01:28 - 2014-11-27 01:28 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-11-27 01:27 - 2014-11-27 01:53 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2014-11-27 01:27 - 2014-11-27 01:30 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-11-27 01:26 - 2014-11-27 01:26 - 00000000 __RHD () C:\MSOCache
2014-11-26 18:57 - 2014-11-26 18:57 - 00003122 _____ () C:\Windows\System32\Tasks\{015C266A-6004-4BEF-B781-AC4469E0F04B}
2014-11-26 18:26 - 2014-11-27 01:53 - 00000000 ____D () C:\Users\Misa\AppData\Local\Unity
2014-11-25 08:27 - 2014-11-30 21:26 - 00000010 _____ () C:\Windows\popcinfo.dat
2014-11-24 22:38 - 2014-11-26 21:29 - 00031232 _____ () C:\Users\Misa\Documents\PONUDA.xls
2014-11-24 00:13 - 2014-11-27 01:53 - 00000000 ____D () C:\Users\Misa\Documents\Titlovi
2014-11-24 00:13 - 2014-11-24 00:13 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\WinRAR
2014-11-23 23:40 - 2014-11-23 23:40 - 00730638 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-11-22 23:19 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse
2014-11-22 23:17 - 2014-11-27 01:53 - 00000000 ____D () C:\Program Files (x86)\GameHouse
2014-11-22 21:56 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X3
2014-11-22 21:55 - 2014-11-22 21:55 - 00000000 ____D () C:\Program Files (x86)\Corel
2014-11-22 15:31 - 2014-11-22 15:31 - 00001877 _____ () C:\Users\Misa\Desktop\XBMC.lnk
2014-11-22 15:11 - 2014-11-30 21:29 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\XBMC
2014-11-22 15:11 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-11-22 15:11 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-11-22 15:10 - 2014-11-27 01:53 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XBMC
2014-11-22 15:10 - 2014-11-22 15:10 - 00000000 ____D () C:\Program Files (x86)\XBMC
2014-11-22 14:01 - 2014-11-22 14:01 - 00000832 _____ () C:\Users\Misa\Desktop\BitTorrent.lnk
2014-11-22 14:01 - 2014-11-22 14:01 - 00000812 _____ () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
2014-11-22 14:00 - 2014-12-02 10:31 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\BitTorrent
2014-11-22 13:53 - 2014-12-02 10:32 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Skype
2014-11-22 13:53 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-11-22 13:53 - 2014-11-22 13:53 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-11-22 13:53 - 2014-11-22 13:53 - 00000000 ____D () C:\Users\Misa\AppData\Local\Skype
2014-11-22 13:37 - 2014-11-22 13:37 - 00000000 ____D () C:\Users\Misa\AppData\Local\Avg2014
2014-11-22 13:29 - 2014-11-22 13:29 - 00003156 _____ () C:\Windows\System32\Tasks\{906B8BF3-E15B-4E38-AEB5-B16884A8B866}
2014-11-22 13:26 - 2014-11-22 13:26 - 00003156 _____ () C:\Windows\System32\Tasks\{64196158-5DAB-4741-9578-5BF780D52550}
2014-11-22 13:26 - 2014-11-22 13:26 - 00003156 _____ () C:\Windows\System32\Tasks\{19727198-53BE-4F8C-836D-99FA58D71552}
2014-11-22 13:25 - 2014-11-22 13:53 - 00000000 ____D () C:\ProgramData\Skype
2014-11-22 11:39 - 2014-11-22 11:39 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\TuneUp Software
2014-11-22 11:39 - 2014-11-22 11:39 - 00000000 ____D () C:\Users\Misa\AppData\Local\TuneUp Software
2014-11-22 11:38 - 2014-11-27 02:03 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-11-22 11:37 - 2014-11-22 13:30 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-11-22 11:36 - 2014-11-22 11:36 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\WebTest
2014-11-22 11:35 - 2014-12-02 01:43 - 00000000 ____D () C:\KMPlayer
2014-11-22 11:35 - 2014-11-22 11:35 - 00000606 _____ () C:\Users\Misa\Desktop\KMPlayer.lnk
2014-11-22 11:35 - 2014-11-22 11:35 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2014-11-22 11:29 - 2014-11-22 11:29 - 00000000 ____D () C:\Users\Misa\Documents\CyberLink
2014-11-22 11:29 - 2014-11-22 11:29 - 00000000 ____D () C:\ProgramData\CyberLink
2014-11-22 11:28 - 2014-11-22 11:29 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2014-11-22 11:28 - 2014-11-22 11:28 - 00002047 ____N () C:\Users\Desktop\CyberLink PowerDVD.lnk
2014-11-22 11:28 - 2014-11-22 11:28 - 00002047 _____ () C:\Users\Misa\Desktop\CyberLink PowerDVD.lnk
2014-11-22 11:28 - 2014-11-22 11:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2014-11-22 11:28 - 2014-11-22 11:28 - 00000000 ____D () C:\Program Files (x86)\CyberLink
2014-11-22 11:28 - 2003-03-18 20:14 - 00499712 ____N (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll
2014-11-22 11:28 - 2003-02-21 04:42 - 00348160 ____N (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2014-11-22 11:28 - 2001-03-08 18:30 - 00024064 ____N (Microsoft Corporation) C:\Windows\SysWOW64\msxml3a.dll
2014-11-22 10:26 - 2014-11-22 10:26 - 00000594 _____ () C:\Users\Misa\Desktop\AddrBook - Shortcut.lnk
2014-11-22 10:26 - 2014-11-22 10:26 - 00000000 ____D () C:\Address Book
2014-11-22 09:43 - 2014-11-22 22:03 - 00002516 ___SH () C:\Windows\SysWOW64\KGyGaAvL.sys
2014-11-22 09:43 - 2014-11-22 09:43 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Corel
2014-11-22 09:40 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\InstallShield
2014-11-22 09:40 - 2014-11-22 21:57 - 00003379 _____ () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Program Updates.lnk
2014-11-22 08:18 - 2014-11-22 08:18 - 00262144 _____ () C:\Windows\system32\config\userdiff
2014-11-22 08:18 - 2014-11-22 00:47 - 00000000 ____D () C:\Windows\Panther
2014-11-22 08:14 - 2014-11-22 08:14 - 00000000 ___HD () C:\$INPLACE.~TR
2014-11-22 08:14 - 2014-11-21 23:26 - 00000000 ___HD () C:\$WINDOWS.~Q
2014-11-22 04:24 - 2014-11-22 04:24 - 00000994 _____ () C:\Users\Public\Desktop\PS3 Media Server.lnk
2014-11-22 04:24 - 2014-11-22 04:24 - 00000000 ____D () C:\Program Files (x86)\PS3 Media Server
2014-11-22 04:22 - 2014-11-22 04:22 - 00000000 ____D () C:\PS3_Media_Server_v1
2014-11-22 03:54 - 2014-11-30 00:49 - 00000000 ____D () C:\ProgramData\PMS
2014-11-22 03:54 - 2014-11-22 04:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PS3 Media Server
2014-11-22 03:43 - 2014-11-27 01:53 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\PDF Writer
2014-11-22 03:43 - 2014-11-22 03:43 - 00000000 ____D () C:\Users\Misa\AppData\Local\PDF Writer
2014-11-22 03:41 - 2014-11-22 03:42 - 00000000 ____D () C:\ProgramData\PDF Writer
2014-11-22 03:41 - 2014-11-22 03:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bullzip
2014-11-22 03:41 - 2014-11-22 03:41 - 00000000 ____D () C:\Program Files\Common Files\Bullzip
2014-11-22 03:41 - 2014-11-22 03:41 - 00000000 ____D () C:\Program Files\Bullzip
2014-11-22 03:41 - 2013-09-01 11:59 - 01103872 _____ () C:\Windows\SysWOW64\CBLCtlsU.ocx
2014-11-22 03:41 - 2013-07-13 11:15 - 00805376 _____ () C:\Windows\SysWOW64\EditCtlsU.ocx
2014-11-22 03:41 - 2013-07-12 21:57 - 00539648 _____ () C:\Windows\SysWOW64\LblCtlsU.ocx
2014-11-22 03:41 - 2013-04-05 12:55 - 00476160 _____ () C:\Windows\SysWOW64\TabStripCtlU.ocx
2014-11-22 03:41 - 2013-03-28 22:13 - 00645632 _____ () C:\Windows\SysWOW64\BtnCtlsU.ocx
2014-11-22 03:41 - 2013-03-03 13:37 - 01061888 _____ () C:\Windows\SysWOW64\ExLvwU.ocx
2014-11-22 03:41 - 2008-10-30 20:22 - 00227840 _____ (Bullzip) C:\Windows\SysWOW64\bzFlRdr.dll
2014-11-22 03:41 - 2008-07-09 20:22 - 00103424 _____ (Bullzip) C:\Windows\SysWOW64\bzDCT.dll
2014-11-22 03:14 - 2014-11-22 03:13 - 00208770 _____ () C:\Windows\hplj1010.hi1
2014-11-22 03:14 - 2014-11-22 03:13 - 00013592 _____ () C:\Windows\hplj1010.bu1
2014-11-22 03:13 - 2014-11-22 03:15 - 00045056 _____ (Northern Codeworks) C:\Windows\NCUNINST.EXE
2014-11-22 03:13 - 2014-11-22 03:13 - 00003032 _____ () C:\Windows\System32\Tasks\{5BC85649-3FAB-4749-9657-082224F7EFAF}
2014-11-22 03:12 - 2014-11-22 03:15 - 00208861 _____ () C:\Windows\hplj1010.his
2014-11-22 03:12 - 2014-11-22 03:15 - 00013593 _____ () C:\Windows\hplj1010.ini
2014-11-22 03:00 - 2014-11-22 03:00 - 00003198 _____ () C:\Windows\System32\Tasks\{5E1D67F3-97F2-4580-942E-1FA65EB95831}
2014-11-22 02:53 - 2014-11-22 03:00 - 00000858 _____ () C:\ProgramData\hpzinstall.log
2014-11-22 02:17 - 2014-11-22 02:17 - 00000000 ____D () C:\Program Files (x86)\Hp
2014-11-22 02:02 - 2014-11-22 03:51 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Adobe
2014-11-22 02:02 - 2014-11-22 02:02 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Macromedia
2014-11-22 02:02 - 2014-11-22 02:02 - 00000000 ____D () C:\Users\Misa\AppData\Local\Macromedia
2014-11-22 01:56 - 2014-11-22 01:56 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-11-22 01:56 - 2014-11-22 01:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-11-22 01:51 - 2014-11-22 01:51 - 00000000 ____D () C:\Windows\Sun
2014-11-22 01:50 - 2014-11-22 01:58 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-22 01:50 - 2014-11-22 01:50 - 00000000 ____D () C:\ProgramData\Sun
2014-11-22 01:50 - 2014-11-22 01:50 - 00000000 ____D () C:\Program Files (x86)\Java
2014-11-22 01:47 - 2014-12-02 10:02 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-22 01:47 - 2014-11-27 01:53 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-11-22 01:47 - 2014-11-27 01:53 - 00000000 ____D () C:\Windows\system32\Macromed
2014-11-22 01:47 - 2014-11-26 13:02 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-22 01:47 - 2014-11-26 13:02 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-22 01:47 - 2014-11-26 13:02 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-22 01:46 - 2014-11-22 01:54 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-22 01:46 - 2014-11-22 01:46 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-11-22 01:46 - 2014-11-22 01:46 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-11-22 01:45 - 2014-11-23 01:54 - 00000000 ____D () C:\Users\Misa\AppData\Local\Adobe
2014-11-22 01:42 - 2014-11-22 01:42 - 00001153 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player PRO.lnk
2014-11-22 01:42 - 2014-11-22 01:42 - 00001147 _____ () C:\Users\Public\Desktop\BS.Player PRO.lnk
2014-11-22 01:42 - 2014-11-22 01:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webteh
2014-11-22 01:41 - 2014-11-29 01:12 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\BSplayer PRO
2014-11-22 01:41 - 2014-11-22 01:41 - 00000000 ____D () C:\Program Files (x86)\Webteh
2014-11-22 01:32 - 2014-12-01 01:46 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-11-22 01:32 - 2014-12-01 01:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-11-22 01:32 - 2014-12-01 01:46 - 00000000 ____D () C:\Program Files\WinRAR
2014-11-22 01:30 - 2014-11-22 01:30 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\U3
2014-11-22 01:11 - 2014-12-02 10:13 - 00000000 ____D () C:\db
2014-11-22 01:09 - 2014-11-22 01:09 - 00001055 _____ () C:\Users\Misa\Desktop\Expert 2000.LNK
2014-11-22 01:05 - 2014-11-22 01:14 - 00000000 ____D () C:\Program Files (x86)\Expert2000
2014-11-22 01:05 - 2014-11-22 01:05 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Expert
2014-11-22 01:05 - 2014-11-22 01:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Expert
2014-11-22 01:04 - 2014-11-22 01:05 - 00249856 ____N (Microsoft Corporation) C:\Windows\Setup1.exe
2014-11-22 01:04 - 2014-11-22 01:05 - 00073216 _____ (Microsoft Corporation) C:\Windows\ST6UNST.EXE
2014-11-22 01:04 - 2014-11-22 01:04 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Project1
2014-11-22 01:04 - 2014-11-22 01:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Project1
2014-11-22 01:04 - 2014-11-22 01:04 - 00000000 ____D () C:\Program Files (x86)\Project1
2014-11-22 01:04 - 2000-12-06 04:00 - 00209608 ____R (Microsoft Corporation) C:\Windows\SysWOW64\TABCTL32.OCX
2014-11-22 01:04 - 2000-12-06 04:00 - 00209608 ____R (Microsoft Corporation) C:\Windows\system32\TABCTL32.OCX
2014-11-22 00:56 - 2014-11-22 00:56 - 00001970 _____ () C:\Users\Public\Desktop\Avast Internet Security.lnk
2014-11-22 00:56 - 2014-11-22 00:55 - 00028184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2014-11-22 00:56 - 2014-11-22 00:54 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-11-22 00:55 - 2014-11-22 00:55 - 00449936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNdisFlt.sys
2014-11-22 00:54 - 2014-12-01 11:22 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-22 00:54 - 2014-11-22 01:00 - 00000000 ____D () C:\Program Files (x86)\Google
2014-11-22 00:54 - 2014-11-22 00:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2014-11-22 00:54 - 2014-11-22 00:54 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-11-22 00:54 - 2014-11-22 00:54 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-11-22 00:54 - 2014-11-22 00:54 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\AVAST Software
2014-11-22 00:54 - 2014-11-22 00:54 - 00000000 ____D () C:\Users\Misa\AppData\Local\Google
2014-11-22 00:53 - 2014-11-22 00:53 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-11-22 00:53 - 2014-11-22 00:53 - 00000000 ____D () C:\Program Files\AVAST Software
2014-11-22 00:43 - 2014-11-22 00:43 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-22 00:43 - 2014-11-22 00:43 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-11-22 00:43 - 2014-11-22 00:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-22 00:43 - 2014-11-22 00:43 - 00000000 ____D () C:\Program Files\CCleaner
2014-11-22 00:38 - 2014-12-02 04:01 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-22 00:38 - 2014-11-22 00:38 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-11-22 00:38 - 2014-11-22 00:38 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Mozilla
2014-11-22 00:38 - 2014-11-22 00:38 - 00000000 ____D () C:\Users\Misa\AppData\Local\Mozilla
2014-11-22 00:38 - 2014-11-22 00:38 - 00000000 ____D () C:\ProgramData\Mozilla
2014-11-22 00:37 - 2014-11-22 00:37 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-11-22 00:36 - 2014-11-04 14:30 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-22 00:18 - 2014-12-02 04:09 - 00004286 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{35C10B01-FCAD-408A-A713-3A4367721D53}
2014-11-21 23:55 - 2014-11-21 23:55 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-11-21 23:50 - 2014-11-27 01:53 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-21 23:50 - 2014-11-21 23:50 - 00000000 ____D () C:\Users\Misa\AppData\Local\Microsoft Help
2014-11-21 23:42 - 2014-11-21 23:42 - 00000000 ____D () C:\Splashtop
2014-11-21 23:41 - 2014-11-22 00:37 - 00000000 ____D () C:\ProgramData\Splashtop
2014-11-21 23:41 - 2014-11-21 23:41 - 00000000 ____D () C:\ProgramData\Intel
2014-11-21 23:41 - 2011-12-16 10:40 - 00015128 _____ () C:\Windows\system32\Drivers\IntelMEFWVer.dll
2014-11-21 23:40 - 2014-11-21 23:41 - 00000000 ____D () C:\Program Files\Intel
2014-11-21 23:40 - 2014-11-21 23:40 - 00000000 ____D () C:\Windows\SysWOW64\Atheros_L1e
2014-11-21 23:40 - 2011-03-23 03:20 - 00077936 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\L1C62x64.sys
2014-11-21 23:39 - 2014-11-22 11:28 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-21 23:39 - 2014-11-21 23:41 - 00000244 _____ () C:\csb.log
2014-11-21 23:39 - 2014-11-21 23:39 - 00002995 _____ () C:\RHDSetup.log
2014-11-21 23:39 - 2014-11-21 23:39 - 00000206 _____ () C:\Install.log
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ___HD () C:\Program Files (x86)\Temp
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\InstallShield
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Program Files\Realtek
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Program Files\GIGABYTE
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-11-21 23:39 - 2014-11-21 23:39 - 00000000 ____D () C:\Program Files (x86)\GIGABYTE
2014-11-21 23:39 - 2012-01-17 12:19 - 04734440 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-11-21 23:39 - 2012-01-17 09:25 - 00215644 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-11-21 23:39 - 2012-01-17 03:39 - 03844200 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-11-21 23:39 - 2012-01-12 12:25 - 02649704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-11-21 23:39 - 2012-01-10 07:48 - 00958296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-11-21 23:39 - 2011-12-23 06:30 - 00823912 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-11-21 23:39 - 2011-12-20 08:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-11-21 23:39 - 2011-12-18 10:58 - 02603864 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll
2014-11-21 23:39 - 2011-12-18 10:58 - 02131288 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2014-11-21 23:39 - 2011-12-16 07:57 - 00894040 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO64.dll
2014-11-21 23:39 - 2011-12-16 07:57 - 00750680 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO32.dll
2014-11-21 23:39 - 2011-12-16 07:57 - 00065112 _____ (Creative Technology Ltd.) C:\Windows\system32\MBppld64.dll
2014-11-21 23:39 - 2011-12-15 05:39 - 00100968 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-11-21 23:39 - 2011-12-13 13:22 - 02528832 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-11-21 23:39 - 2011-12-13 09:58 - 01560168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-11-21 23:39 - 2011-12-13 04:01 - 01698408 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-11-21 23:39 - 2011-11-22 09:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2014-11-21 23:39 - 2011-11-10 01:04 - 00060184 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECIx64.sys
2014-11-21 23:39 - 2011-07-22 12:35 - 01247848 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-11-21 23:39 - 2011-01-10 18:16 - 00021104 _____ () C:\Windows\system32\Drivers\AppleCharger.sys
2014-11-21 23:39 - 2010-11-08 00:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-11-21 23:39 - 2010-11-08 00:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-11-21 23:39 - 2010-11-03 11:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-11-21 23:39 - 2010-09-27 02:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-11-21 23:39 - 2010-07-22 09:37 - 00200800 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-11-21 23:39 - 2010-07-02 12:40 - 00080984 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
2014-11-21 23:39 - 2010-04-06 16:30 - 00031272 _____ () C:\Windows\system32\AppleChargerSrv.exe
2014-11-21 23:39 - 2009-11-24 02:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2014-11-21 23:39 - 2009-11-24 02:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2014-11-21 23:39 - 2009-11-24 02:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2014-11-21 23:39 - 2009-11-24 02:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2014-11-21 23:39 - 2009-11-18 00:13 - 00060504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBPPCn64.dll
2014-11-21 23:39 - 2009-11-17 11:12 - 00108960 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-11-21 23:38 - 2014-11-21 23:38 - 00000000 ____D () C:\Program Files\Common Files\Intel
2014-11-21 23:38 - 2012-01-12 23:24 - 05886232 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00511256 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00440600 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00398104 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00274200 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00248600 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2014-11-21 23:38 - 2012-01-12 23:24 - 00170264 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2014-11-21 23:38 - 2012-01-12 23:23 - 00184600 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2014-11-21 23:38 - 2012-01-06 05:02 - 00018488 _____ () C:\Windows\system32\iglhxs64.vp
2014-11-21 23:38 - 2012-01-06 04:49 - 00090112 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2618.dll
2014-11-21 23:38 - 2012-01-06 04:36 - 14652768 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2014-11-21 23:38 - 2012-01-06 04:36 - 08034304 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll
2014-11-21 23:38 - 2012-01-06 04:36 - 00963912 _____ () C:\Windows\SysWOW64\igkrng600.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00963912 _____ () C:\Windows\system32\igkrng600.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00261208 _____ () C:\Windows\SysWOW64\igfcg600m.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00261208 _____ () C:\Windows\system32\igfcg600m.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00145804 _____ () C:\Windows\SysWOW64\igcompkrng600.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00145804 _____ () C:\Windows\system32\igcompkrng600.bin
2014-11-21 23:38 - 2012-01-06 04:36 - 00079360 _____ () C:\Windows\system32\igdde64.dll
2014-11-21 23:38 - 2012-01-06 04:29 - 06079488 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumd32.dll
2014-11-21 23:38 - 2012-01-06 04:29 - 00058880 _____ () C:\Windows\SysWOW64\igdde32.dll
2014-11-21 23:38 - 2012-01-06 04:23 - 09536000 _____ (Intel Corporation) C:\Windows\system32\igd10umd64.dll
2014-11-21 23:38 - 2012-01-06 04:11 - 07740928 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll
2014-11-21 23:38 - 2012-01-06 02:58 - 18098176 _____ () C:\Windows\system32\ig4icd64.dll
2014-11-21 23:38 - 2012-01-06 02:44 - 13184512 _____ () C:\Windows\SysWOW64\ig4icd32.dll
2014-11-21 23:38 - 2012-01-06 02:31 - 00440320 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00432128 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00430592 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00428544 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2014-11-21 23:38 - 2012-01-06 02:31 - 00221099 _____ () C:\Windows\system32\Gfxres.th-TH.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00207830 _____ () C:\Windows\system32\Gfxres.el-GR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00191775 _____ () C:\Windows\system32\Gfxres.ru-RU.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00164334 _____ () C:\Windows\system32\Gfxres.ar-SA.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00161613 _____ () C:\Windows\system32\Gfxres.ja-JP.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00157226 _____ () C:\Windows\system32\Gfxres.he-IL.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00148033 _____ () C:\Windows\system32\Gfxres.it-IT.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00146675 _____ () C:\Windows\system32\Gfxres.ko-KR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00145687 _____ () C:\Windows\system32\Gfxres.es-ES.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00145579 _____ () C:\Windows\system32\Gfxres.de-DE.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00144338 _____ () C:\Windows\system32\Gfxres.ro-RO.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00143805 _____ () C:\Windows\system32\Gfxres.fr-FR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00143155 _____ () C:\Windows\system32\Gfxres.tr-TR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00142664 _____ () C:\Windows\system32\Gfxres.pt-BR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00142335 _____ () C:\Windows\system32\Gfxres.nl-NL.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00142189 _____ () C:\Windows\system32\Gfxres.hu-HU.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00141644 _____ () C:\Windows\system32\Gfxres.pt-PT.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00141435 _____ () C:\Windows\system32\Gfxres.sv-SE.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00140923 _____ () C:\Windows\system32\Gfxres.pl-PL.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00140885 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00140549 _____ () C:\Windows\system32\Gfxres.fi-FI.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00140122 _____ () C:\Windows\system32\Gfxres.sk-SK.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00139487 _____ () C:\Windows\system32\Gfxres.hr-HR.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00136451 _____ () C:\Windows\system32\Gfxres.sl-SI.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00136369 _____ () C:\Windows\system32\Gfxres.nb-NO.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00135868 _____ () C:\Windows\system32\Gfxres.da-DK.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00131317 _____ () C:\Windows\system32\Gfxres.en-US.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00126976 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2014-11-21 23:38 - 2012-01-06 02:31 - 00124962 _____ () C:\Windows\system32\Gfxres.zh-TW.resources
2014-11-21 23:38 - 2012-01-06 02:31 - 00123467 _____ () C:\Windows\system32\Gfxres.zh-CN.resources
2014-11-21 23:38 - 2012-01-06 02:30 - 00410624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2014-11-21 23:38 - 2012-01-06 02:30 - 00386048 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2014-11-21 23:38 - 2012-01-06 02:30 - 00062976 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2014-11-21 23:38 - 2012-01-06 02:30 - 00028672 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 09007616 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2014-11-21 23:38 - 2012-01-06 02:29 - 00172032 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00110592 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2014-11-21 23:38 - 2012-01-06 02:29 - 00009216 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2014-11-21 23:38 - 2012-01-06 02:27 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2014-11-21 23:38 - 2012-01-06 02:26 - 00320000 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 02780160 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 02191872 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 01981696 _____ () C:\Windows\system32\iglhxa64.cpa
2014-11-21 23:38 - 2012-01-06 02:24 - 00524800 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00519680 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00246784 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00244224 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00219136 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00201728 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll
2014-11-21 23:38 - 2012-01-06 02:24 - 00059425 _____ () C:\Windows\system32\iglhxo64.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00059398 _____ () C:\Windows\system32\iglhxg64.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00059230 _____ () C:\Windows\system32\iglhxc64.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00059104 _____ () C:\Windows\system32\iglhxc64_dev.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00058796 _____ () C:\Windows\system32\iglhxg64_dev.vp
2014-11-21 23:38 - 2012-01-06 02:24 - 00058109 _____ () C:\Windows\system32\iglhxo64_dev.vp
2014-11-21 23:38 - 2011-12-26 04:07 - 00086016 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2014-11-21 23:38 - 2011-12-26 04:06 - 00017920 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-11-21 23:38 - 2011-12-26 04:02 - 00120832 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2014-11-21 23:38 - 2011-12-26 04:02 - 00020992 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2014-11-21 23:37 - 2014-11-27 02:03 - 00000000 ___HD () C:\ProgramData\{8533ADFA-85F0-4dc1-946A-2A0BA58E78E3}
2014-11-21 23:37 - 2014-11-21 23:41 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-11-21 23:37 - 2010-12-23 04:09 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-11-21 23:36 - 2014-11-22 00:37 - 00000000 ____D () C:\Users\Misa\AppData\Roaming\Splashtop
2014-11-21 23:34 - 2014-11-21 23:34 - 00000010 _____ () C:\Windows\GSetup.ini
2014-11-21 23:30 - 2014-11-21 23:30 - 00001413 _____ () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-11-21 23:29 - 2014-11-21 23:30 - 00001447 _____ () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-21 23:29 - 2014-11-21 23:29 - 00000020 ___SH () C:\Users\Misa\ntuser.ini
2014-11-21 23:27 - 2014-12-02 08:46 - 01288093 _____ () C:\Windows\WindowsUpdate.log
2014-11-21 23:26 - 2014-11-21 23:26 - 00022744 _____ () C:\Windows\system32\emptyregdb.dat
2014-11-21 23:22 - 2014-12-01 15:15 - 00000000 ____D () C:\Users\Misa
2014-11-21 23:22 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-21 23:22 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-21 23:21 - 2014-11-21 23:21 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-11-21 23:21 - 2014-11-21 23:21 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-11-21 23:02 - 2014-11-21 23:02 - 00001890 _____ () C:\Windows\diagwrn.xml
2014-11-21 23:02 - 2014-11-21 23:02 - 00001890 _____ () C:\Windows\diagerr.xml
2014-11-21 22:47 - 2014-11-22 01:12 - 00000000 ____D () C:\Users\Misa\AppData\Local\VirtualStore
2014-11-21 22:47 - 2014-11-21 23:29 - 00000000 __SHD () C:\Recovery

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-02 08:44 - 2009-07-14 05:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-02 08:44 - 2009-07-14 05:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-02 08:43 - 2009-07-14 06:13 - 00717956 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-02 08:39 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-01 03:05 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-01 01:57 - 2009-07-14 03:34 - 00000580 _____ () C:\Windows\win.ini
2014-12-01 01:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2014-12-01 01:56 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2014-12-01 01:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-27 23:59 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-11-27 01:53 - 2009-07-14 08:46 - 00000000 ____D () C:\Windows\ShellNew
2014-11-27 01:53 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-11-27 01:53 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-11-22 13:46 - 2009-07-14 06:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-11-22 13:21 - 2009-07-14 05:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-11-22 08:18 - 2009-07-14 06:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-11-22 08:18 - 2009-07-14 06:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-11-22 08:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe
2014-11-21 23:39 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore
2014-11-21 23:29 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Recovery
2014-11-21 23:23 - 2009-07-14 04:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-21 23:23 - 2009-07-14 04:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-21 23:23 - 2009-07-14 04:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-21 23:23 - 2009-07-14 04:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-21 23:21 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-11-21 23:21 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-21 23:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-11-21 23:19 - 2009-07-14 08:46 - 00000000 ____D () C:\Windows\CSC

Some content of TEMP:
====================
C:\Users\Misa\AppData\Local\Temp\Quarantine.exe
C:\Users\Misa\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-25 00:38

==================== End Of Log ============================

mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Arrow Korak 1

Idi u Start -> Control Panel -> Programs and Features i deinstaliraj sljedeće programe:

neurowise




Arrow Korak 2

Otvori Notepad i iskopiraj sljedeći tekst koji se nalazi unutar Kod polja.

BHO-x32: neurowise 1.0.0.4 -> {d08ab008-0647-4784-8e2c-5769cd4a7c3a} -> C:\Program Files (x86)\neurowise\neurowisebho.dll No File
FF Extension: neurowise 1.0.1 - C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default\Extensions\{3457e5fd-a0a9-479b-87ee-32c6d67f88f0}.xpi [2014-12-01]
C:\Program Files (x86)\neurowise


U okviru Notepad-a klikni na File --> Save As
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se fixlog.txt, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt).





Arrow Korak 3

Preuzmi zoek.exe sa ovog ili ovog linka i sačuvaj ga na Desktop.


Zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;
dvoklikom pokreni zoek.exe;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sljedeći tekst:

process;
startupall;
drivers-services-list;
skipfix-iedefaults;
firefoxlook;
chromelook;
filesrcm;


Klikni na dugme i pričekaj da se skeniranje završi.


Zoek će po potrebi restartovati Windows, a na kraju rada otvoriti Notepad sa izvještajem o skeniranju.

Napomena: Izvještaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadržaj tog loga u poruku.

offline
  • Pridružio: 05 Mar 2010
  • Poruke: 41

Napisano: 02 Dec 2014 17:38

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-12-2014
Ran by Misa at 2014-12-02 17:34:42 Run:1
Running from C:\Users\Misa\Desktop
Loaded Profile: Misa (Available profiles: Misa)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************

BHO-x32: neurowise 1.0.0.4 -> {d08ab008-0647-4784-8e2c-5769cd4a7c3a} -> C:\Program Files (x86)\neurowise\neurowisebho.dll No File
FF Extension: neurowise 1.0.1 - C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default\Extensions\{3457e5fd-a0a9-479b-87ee-32c6d67f88f0}.xpi [2014-12-01]
C:\Program Files (x86)\neurowise
*****************

"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d08ab008-0647-4784-8e2c-5769cd4a7c3a}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{d08ab008-0647-4784-8e2c-5769cd4a7c3a}" => Key deleted successfully.
C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default\Extensions\{3457e5fd-a0a9-479b-87ee-32c6d67f88f0}.xpi => Moved successfully.
"C:\Program Files (x86)\neurowise" => File/Directory not found.

==== End of Fixlog ====

Dopuna: 02 Dec 2014 17:50

Zoek.exe v5.0.0.0 Updated 29-11-2014
Tool run by Misa on Tue 12/02/2014 at 17:42:59.55.
Microsoft Windows 7 Ultimate 6.1.7600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Misa\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

12/2/2014 5:43:32 PM Zoek.exe System Restore Point Created Succesfully.

==== Running Processes ======================

C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\afwServ.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Misa\AppData\Roaming\BitTorrent\BitTorrent.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Users\Misa\Desktop\zoek.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\SysWOW64\cmd.exe

==== Services and Drivers ======================

You do not have Microsoft .NET Framework 4.0(or higher) installed.
Download it here v4.0: microsoft.com/en-us/download/details.aspx?id=17851
Download it here v4.5: microsoft.com/en-in/download/details.aspx?id=30653

==== Files Recently Created / Modified ======================

====== C:\Windows ====
2014-11-25 07:27:11 B2C5BE478A6E45ED064DECD837EC3CC4 10 ----a-w- C:\Windows\popcinfo.dat
2014-11-22 02:14:23 E46AF490E4E6F1EF180CEE8C3A319034 208770 ----a-w- C:\Windows\hplj1010.hi1
2014-11-22 02:14:23 2F4DE59F2108864525C4F0A094964F54 13592 ----a-w- C:\Windows\hplj1010.bu1
2014-11-22 02:13:46 D1594734A6FFF8CBFCEBDFFFE713B76C 45056 ----a-w- C:\Windows\NCUNINST.EXE
2014-11-22 02:12:09 F4A13A9DAE366D2A2A1C79BAD703B853 13593 ----a-w- C:\Windows\hplj1010.ini
2014-11-22 02:12:09 ED7D510ED1097A357665AF865FDCA88E 208861 ----a-w- C:\Windows\hplj1010.his
2014-11-22 00:04:41 B9917FC4C836776765E311FFF84DD534 249856 ------w- C:\Windows\Setup1.exe
2014-11-22 00:04:40 D422839C99927DB561F5C019643EACEC 73216 ----a-w- C:\Windows\ST6UNST.EXE
2014-11-21 23:54:00 B59EF013D567E5746F1DEE2565F747ED 43152 ----a-w- C:\Windows\avastSS.scr
2014-11-21 22:39:00 2FA617D1B062B8D9F08036E90003B3E2 1698408 ------r- C:\Windows\RtlExUpd.dll
2014-11-21 22:34:31 A8ED0188CA6580088F760D25D83E557E 10 ----a-w- C:\Windows\GSetup.ini
2014-11-21 22:02:42 67FC5B9D0957C4FBB37376DE49A2B170 1890 ----a-w- C:\Windows\diagwrn.xml
2014-11-21 22:02:42 67FC5B9D0957C4FBB37376DE49A2B170 1890 ----a-w- C:\Windows\diagerr.xml
====== C:\Users\Misa\AppData\Local\Temp ====
====== Java Cache =====
====== C:\Windows\SysWOW64 =====
2014-11-23 22:40:58 6DCAFAB8B2347C8E672ADF417AFA6F72 730638 ----a-w- C:\Windows\SysWOW64\PerfStringBackup.INI
2014-11-22 14:11:50 86E39E9161C3D930D93822F1563C280D 1998168 ----a-w- C:\Windows\SysWOW64\D3DX9_43.dll
2014-11-22 14:11:50 1C9B45E87528B8BB8CFA884EA0099A85 2106216 ----a-w- C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-11-22 10:28:24 718D1C9346A991EE101F2DFA72A50D70 24064 ------w- C:\Windows\SysWOW64\msxml3a.dll
2014-11-22 10:28:07 86F1895AE8C5E8B17D99ECE768A70732 348160 ------w- C:\Windows\SysWOW64\msvcr71.dll
2014-11-22 10:28:07 561FA2ABB31DFA8FAB762145F81667C2 499712 ------w- C:\Windows\SysWOW64\msvcp71.dll
2014-11-22 08:43:26 08F67633B2CED9DD8E46FE3D1D37BCC2 2516 --sha-w- C:\Windows\SysWOW64\KGyGaAvL.sys
2014-11-22 02:41:42 B4DF0B041525828BADE1AC84B1CE146C 103424 ----a-w- C:\Windows\SysWOW64\bzDCT.dll
2014-11-22 02:41:42 0DAD3B8A1238F5C8E404A420601B4F06 227840 ----a-w- C:\Windows\SysWOW64\bzFlRdr.dll
2014-11-22 02:41:35 F217A7D1140C192D80A86E0F6B6D41D5 1103872 ----a-w- C:\Windows\SysWOW64\CBLCtlsU.ocx
2014-11-22 02:41:35 C73C34CA23BA5E9558EDB5814E75C7F7 645632 ----a-w- C:\Windows\SysWOW64\BtnCtlsU.ocx
2014-11-22 02:41:35 76FF9BB794285B419C97CCE6DC873039 476160 ----a-w- C:\Windows\SysWOW64\TabStripCtlU.ocx
2014-11-22 02:41:35 5481283249DAA4AA8F6006DD4518FCAE 1061888 ----a-w- C:\Windows\SysWOW64\ExLvwU.ocx
2014-11-22 02:41:35 28076804EFD850BDF1EDAF4A1B40121E 805376 ----a-w- C:\Windows\SysWOW64\EditCtlsU.ocx
2014-11-22 02:41:35 010E6BCC74D9D94F678310C4BF21CF31 539648 ----a-w- C:\Windows\SysWOW64\LblCtlsU.ocx
2014-11-22 00:56:12 A042349B7208BF8BED858B1E9B48B06D 98216 ----a-w- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-11-22 00:47:56 BE5F23057D3D32A399E26F7C53BB6C1F 71344 ----a-w- C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-22 00:47:56 37989014E32A82A5534A40F27A3943EE 701104 ----a-w- C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-22 00:04:15 908938D3BA2D870EE9FC6238A4C6AF95 209608 ----a-r- C:\Windows\SysWOW64\TABCTL32.OCX
2014-11-21 22:39:06 95ACD7ADED94CCFA85A6FB9192471723 750680 ----a-w- C:\Windows\SysWOW64\MBAPO32.dll
2014-11-21 22:38:49 BDAF1F5B47727C6D3DDC56EFD6822CE1 17920 ----a-w- C:\Windows\SysWOW64\OpenCL.dll
2014-11-21 22:38:49 702961104FDDCDA000B01BD523350EA9 86016 ----a-w- C:\Windows\SysWOW64\IntelOpenCL32.dll
2014-11-21 22:38:27 DB84D759193FDEDF82144E565108037E 274200 ----a-w- C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2014-11-21 22:38:27 D7C4D72F6BD5D6692A0C520730F8EE59 6079488 ----a-w- C:\Windows\SysWOW64\igdumd32.dll
2014-11-21 22:38:27 D377FFC50388E680AEE8547AA2CCC64E 519680 ----a-w- C:\Windows\SysWOW64\iglhsip32.dll
2014-11-21 22:38:27 CCFCB0C9378D2D4EF3A67463A4504659 25088 ----a-w- C:\Windows\SysWOW64\igfxexps32.dll
2014-11-21 22:38:27 AC8BA7B1FB4B5719C5F7F2002C4537C3 261208 ----a-w- C:\Windows\SysWOW64\igfcg600m.bin
2014-11-21 22:38:27 86C3FA212F835633C49A350FDED57952 201728 ----a-w- C:\Windows\SysWOW64\iglhcp32.dll
2014-11-21 22:38:27 84D07B5AE2364D61253ED8902179A9A6 963912 ----a-w- C:\Windows\SysWOW64\igkrng600.bin
2014-11-21 22:38:27 7D46EE391B6A37424642BD289BF7CD87 2191872 ----a-w- C:\Windows\SysWOW64\igfxcmjit32.dll
2014-11-21 22:38:27 764B163D8F746BA346C75154987B1282 7740928 ----a-w- C:\Windows\SysWOW64\igd10umd32.dll
2014-11-21 22:38:27 52F56BFFA06B1A48D737F82FEC73469A 320000 ----a-w- C:\Windows\SysWOW64\igfxdv32.dll
2014-11-21 22:38:27 518E227CDF8DDCE0988419748A76C007 58880 ----a-w- C:\Windows\SysWOW64\igdde32.dll
2014-11-21 22:38:27 481F6E1CD63E09F0516B5E78B35D333E 145804 ----a-w- C:\Windows\SysWOW64\igcompkrng600.bin
2014-11-21 22:38:27 1569B153CFAC45F356592CCC03AFFFED 246784 ----a-w- C:\Windows\SysWOW64\igfxcmrt32.dll
2014-11-21 22:38:27 02D12C14C0A55C5D58A8E419306C5831 13184512 ----a-w- C:\Windows\SysWOW64\ig4icd32.dll
2014-11-21 22:37:42 7F0A9C71155C2C99E87BE082F63D1174 53248 ----a-r- C:\Windows\SysWOW64\CSVer.dll
====== C:\Windows\SysWOW64\drivers =====
====== C:\Windows\Sysnative =====
2014-12-02 07:39:04 DCC6FB7CC1AD80806C333404F4612C8C 418192 ----a-w- C:\Windows\Sysnative\FNTCACHE.DAT
2014-12-01 00:12:58 D92FB5770CBDE049A4732B76A77F6864 103374192 ----a-w- C:\Windows\Sysnative\MRT.exe
2014-11-28 08:51:04 6A7A217A6514BE39E78A7BF58C06F712 3195392 ----a-w- C:\Windows\Sysnative\win32k.sys
2014-11-27 23:40:13 D9EF901DCA379CFE914E9FA13B73B4C4 2428952 ----a-w- C:\Windows\Sysnative\wuaueng.dll
2014-11-27 23:40:13 C1C03EA437EDDA8A7D4D8786E5AE6751 57880 ----a-w- C:\Windows\Sysnative\wuauclt.exe
2014-11-27 23:40:13 7FE0D0C8F53735EA17C9AE93EFE7AD5A 44056 ----a-w- C:\Windows\Sysnative\wups2.dll
2014-11-27 23:40:13 50EBD31C3527366FAFA468BD609F7352 2622464 ----a-w- C:\Windows\Sysnative\wucltux.dll
2014-11-27 23:40:08 E746ED90132C6B6313CE9179F56BD31D 38424 ----a-w- C:\Windows\Sysnative\wups.dll
2014-11-27 23:40:08 C47F35CC6FA4F1BDBEF8F87AC1A46537 701976 ----a-w- C:\Windows\Sysnative\wuapi.dll
2014-11-27 23:40:08 4AA6AA52A16EED6481E83D73EED4C8D5 99840 ----a-w- C:\Windows\Sysnative\wudriver.dll
2014-11-27 23:40:03 FF0729002E081668620A681182D63FE6 36864 ----a-w- C:\Windows\Sysnative\wuapp.exe
2014-11-27 23:40:03 3E38C20AC83B01C45723B63B0F7A8FDC 186752 ----a-w- C:\Windows\Sysnative\wuwebv.dll
2014-11-22 00:04:00 908938D3BA2D870EE9FC6238A4C6AF95 209608 ----a-r- C:\Windows\Sysnative\TABCTL32.OCX
2014-11-21 23:56:02 6663B30328C239D2AB10D2583054CF2E 364512 ----a-w- C:\Windows\Sysnative\aswBoot.exe
2014-11-21 23:36:27 A7B22A0542D02AB67A0A0D3107DD53F0 275080 ------w- C:\Windows\Sysnative\MpSigStub.exe
2014-11-21 22:39:48 95EF7247C50C7241FDAE39A9B3AFF4AE 31272 ----a-w- C:\Windows\Sysnative\AppleChargerSrv.exe
2014-11-21 22:39:12 CA1D7D09854D305A64B100DC1400BA21 331880 ----a-w- C:\Windows\Sysnative\RtlCPAPI64.dll
2014-11-21 22:39:12 A88BE9A6C4E646A2B2A1BD3A7F4B58E7 198896 ----a-w- C:\Windows\Sysnative\SRSHP64.dll
2014-11-21 22:39:12 A028717B791416182959B325D5B40679 211184 ----a-w- C:\Windows\Sysnative\SRSTSH64.dll
2014-11-21 22:39:12 8E91C848C5CE0D73E58B9F57BFAA8CB3 2603864 ----a-w- C:\Windows\Sysnative\WavesGUILib.dll
2014-11-21 22:39:12 2FCADCC14F8E540F6ADE4BF92BD8AEDD 155888 ----a-w- C:\Windows\Sysnative\SRSWOW64.dll
2014-11-21 22:39:12 018D3D2478754AA411DE6DA6DE5F8F21 518896 ----a-w- C:\Windows\Sysnative\SRSTSX64.dll
2014-11-21 22:39:11 DBB1955A113203C4751D4DCDB6DCB7CF 823912 ----a-w- C:\Windows\Sysnative\RtkApi64.dll
2014-11-21 22:39:11 CF76C15D7372C36388E3D18F35A629F6 3844200 ----a-w- C:\Windows\Sysnative\RtkAPO64.dll
2014-11-21 22:39:11 AE19B3A788C1563C9F91F424B10346D4 2649704 ----a-w- C:\Windows\Sysnative\RtPgEx64.dll
2014-11-21 22:39:11 8814A281406553A2640D6A04702C63BD 14952 ----a-w- C:\Windows\Sysnative\RtkCoLDR64.dll
2014-11-21 22:39:11 0805289E121F3E3C458C970B08314EB2 149608 ----a-w- C:\Windows\Sysnative\RtkCfg64.dll
2014-11-21 22:39:10 ED626E3931E6969B510F2D37345864B3 1247848 ----a-w- C:\Windows\Sysnative\RTCOM64.dll
2014-11-21 22:39:10 ECAEC5FBBBEF8612AF0A866AFA5F7EF2 101208 ----a-w- C:\Windows\Sysnative\RTEEL64A.dll
2014-11-21 22:39:10 E9D4A333DF15D06C68AC4BFB9B6581CB 310104 ----a-w- C:\Windows\Sysnative\RP3DAA64.dll
2014-11-21 22:39:10 E16AD3495533DA435F1AB00A00C3BD10 1560168 ----a-w- C:\Windows\Sysnative\RTSnMg64.cpl
2014-11-21 22:39:10 D0D0D82B7366E691275E433CD34F89B2 375128 ----a-w- C:\Windows\Sysnative\RTEEP64A.dll
2014-11-21 22:39:10 B6FE01558CC03F3866C9AD0ED19261D8 310104 ----a-w- C:\Windows\Sysnative\RP3DHT64.dll
2014-11-21 22:39:10 A6286A6C7A1BBFCBA17AA54384A21D1C 204120 ----a-w- C:\Windows\Sysnative\RTEED64A.dll
2014-11-21 22:39:10 992B5CF570A3F8578423B36464E2FD7D 100968 ----a-w- C:\Windows\Sysnative\RCoInstII64.dll
2014-11-21 22:39:10 6F4CD493196100EEF349D7132CECAFD9 78680 ----a-w- C:\Windows\Sysnative\RTEEG64A.dll
2014-11-21 22:39:07 6C35ACAEF20D460E6DEA9A4286340364 958296 ----a-w- C:\Windows\Sysnative\MaxxAudioAPOShell64.dll
2014-11-21 22:39:07 350823AC8941C4F34ABC0FF7C8AE7CCA 2131288 ----a-w- C:\Windows\Sysnative\MaxxAudioEQ.dll
2014-11-21 22:39:06 CF8CE8E1CF73A91F339B67A259416B16 894040 ----a-w- C:\Windows\Sysnative\MBAPO64.dll
2014-11-21 22:39:06 7E6CA0FBCFDD2B6E2D99EDD8B673A192 80984 ----a-w- C:\Windows\Sysnative\MBWrp64.dll
2014-11-21 22:39:06 75616F8DB5C092A8A50AFEC273859DD7 318808 ----a-w- C:\Windows\Sysnative\MaxxAudioAPO20.dll
2014-11-21 22:39:06 50E41327A6B0312313C5A90A203950CA 65112 ----a-w- C:\Windows\Sysnative\MBppld64.dll
2014-11-21 22:39:06 09D9D2C960A14D3857B6E5B1AB6F4D0E 60504 ----a-w- C:\Windows\Sysnative\MBPPCn64.dll
2014-11-21 22:39:03 C4546CAE1BE2DA00E3BE45E1C03F7DDD 2528832 ----a-w- C:\Windows\Sysnative\FMAPO64.dll
2014-11-21 22:39:01 A7138E6FFA25D5281A0E35ABF60D60A9 200800 ----a-w- C:\Windows\Sysnative\AERTAC64.dll
2014-11-21 22:39:01 973ADB6AD47AC047F900C0D760AB6BE2 108960 ----a-w- C:\Windows\Sysnative\AERTAR64.dll
2014-11-21 22:38:54 D27A534364AF6B02AD06E9791D530614 120832 ----a-w- C:\Windows\Sysnative\IntelOpenCL64.dll
2014-11-21 22:38:54 1EFDCC1142CB4683DA52DE9216EC6EB1 20992 ----a-w- C:\Windows\Sysnative\OpenCL.dll
2014-11-21 22:38:27 FEF6B95976E6E0ECCC954C0372DE2FCB 143155 ----a-w- C:\Windows\Sysnative\Gfxres.tr-TR.resources
2014-11-21 22:38:27 FC9BEFD67F89C7DCB799B1BA43609DE9 438272 ----a-w- C:\Windows\Sysnative\igfxrhun.lrc
2014-11-21 22:38:27 FC2BD4853FA2B2B5C0974D974469871F 184600 ----a-w- C:\Windows\Sysnative\difx64.exe
2014-11-21 22:38:27 FC0A8124C460F45CED82FAA2C0D317FB 438272 ----a-w- C:\Windows\Sysnative\igfxrfin.lrc
2014-11-21 22:38:27 FAE1F99BB09C4D3A6F914669C37FCB65 440600 ----a-w- C:\Windows\Sysnative\igfxpers.exe
2014-11-21 22:38:27 F3976FB273018EA1911F036D858A5837 219136 ----a-w- C:\Windows\Sysnative\igfxcmrt64.dll
2014-11-21 22:38:27 EEA651EC4E756A2C25AF1D3685C901A6 524800 ----a-w- C:\Windows\Sysnative\iglhsip64.dll
2014-11-21 22:38:27 ECE7DBF87A6E24AC8A680064FFAE5A58 58796 ----a-w- C:\Windows\Sysnative\iglhxg64_dev.vp
2014-11-21 22:38:27 EC25662DE9D3A0C88DFFCD0AA662A5ED 139487 ----a-w- C:\Windows\Sysnative\Gfxres.hr-HR.resources
2014-11-21 22:38:27 EC22B955141C84044325D1E8780E5427 140549 ----a-w- C:\Windows\Sysnative\Gfxres.fi-FI.resources
2014-11-21 22:38:27 EBB0FE136508F206431082F6D09CDFB6 140122 ----a-w- C:\Windows\Sysnative\Gfxres.sk-SK.resources
2014-11-21 22:38:27 EA2AC2833EDF6C173C7B84F2E0333687 142335 ----a-w- C:\Windows\Sysnative\Gfxres.nl-NL.resources
2014-11-21 22:38:27 E800FE44562B1872F617C87AD8F20225 170264 ----a-w- C:\Windows\Sysnative\igfxtray.exe
2014-11-21 22:38:27 E7E191FAF788F644747A7C2F2EC35656 264 ----a-w- C:\Windows\Sysnative\GfxUI.exe.config
2014-11-21 22:38:27 E6315526D0902A583ED561E9E02A9127 191775 ----a-w- C:\Windows\Sysnative\Gfxres.ru-RU.resources
2014-11-21 22:38:27 E414A049CC7F825E558C835E130EEF49 438784 ----a-w- C:\Windows\Sysnative\igfxrhrv.lrc
2014-11-21 22:38:27 E1B31A60ABFA6ADA34C6268017FE5F39 429056 ----a-w- C:\Windows\Sysnative\igfxdev.dll
2014-11-21 22:38:27 E156077FD9A75FB25B9DB1201C4A040E 438784 ----a-w- C:\Windows\Sysnative\igfxrnld.lrc
2014-11-21 22:38:27 E0E41AEDD71B00DDA001541941736448 141435 ----a-w- C:\Windows\Sysnative\Gfxres.sv-SE.resources
2014-11-21 22:38:27 DFE306B1D19EE4400A77374B047C28C9 438272 ----a-w- C:\Windows\Sysnative\igfxrsky.lrc
2014-11-21 22:38:27 DAC962CEB2B519E6CB5D23EC66F15B0F 142336 ----a-w- C:\Windows\Sysnative\igfxdo.dll
2014-11-21 22:38:27 D44065A826DF1C8F24E9EA12597D0F67 146675 ----a-w- C:\Windows\Sysnative\Gfxres.ko-KR.resources
2014-11-21 22:38:27 CF2AF560485AB64CF950C7C3A1797713 9216 ----a-w- C:\Windows\Sysnative\IGFXDEVLib.dll
2014-11-21 22:38:27 CB8BEA6EC2789FDDD058333FB82E0ECB 164334 ----a-w- C:\Windows\Sysnative\Gfxres.ar-SA.resources
2014-11-21 22:38:27 CAFECA613E89A794D2E9B06221EE9F66 135868 ----a-w- C:\Windows\Sysnative\Gfxres.da-DK.resources
2014-11-21 22:38:27 C8558354F71C60418F4396F650E62A51 437248 ----a-w- C:\Windows\Sysnative\igfxrtha.lrc
2014-11-21 22:38:27 C5C725E114AC0D7AC289CCF75FBB3AB5 131317 ----a-w- C:\Windows\Sysnative\Gfxres.en-US.resources
2014-11-21 22:38:27 C44460E879EF5440136C829FD51CE5D4 440320 ----a-w- C:\Windows\Sysnative\igfxrell.lrc
2014-11-21 22:38:27 BC0121EC5027DA261C4C6D5F98AD1010 172032 ----a-w- C:\Windows\Sysnative\gfxSrvc.dll
2014-11-21 22:38:27 BA9D13CDE4DD3266A2E382AFCCC967CD 145579 ----a-w- C:\Windows\Sysnative\Gfxres.de-DE.resources
2014-11-21 22:38:27 B3DC1CF9A02E9A2516DB59B548104CE8 437760 ----a-w- C:\Windows\Sysnative\igfxrtrk.lrc
2014-11-21 22:38:27 B2A66476718F6492A65F8497FC9FB227 18098176 ----a-w- C:\Windows\Sysnative\ig4icd64.dll
2014-11-21 22:38:27 B239253EF9A917EEDB5CD567079F0CDB 8034304 ----a-w- C:\Windows\Sysnative\igdumd64.dll
2014-11-21 22:38:27 AC8BA7B1FB4B5719C5F7F2002C4537C3 261208 ----a-w- C:\Windows\Sysnative\igfcg600m.bin
2014-11-21 22:38:27 A6D2B0EBF2ED6C12921F58CA4E67C187 2780160 ----a-w- C:\Windows\Sysnative\igfxcmjit64.dll
2014-11-21 22:38:27 9F8153A55E757C9BF6F065CD71D0F2D0 90112 ----a-w- C:\Windows\Sysnative\igfxCoIn_v2618.dll
2014-11-21 22:38:27 9F7C4732521C9BFB08F915D5953CF94A 9007616 ----a-w- C:\Windows\Sysnative\igfxress.dll
2014-11-21 22:38:27 9F69286E6491E047A88E76D498177387 126976 ----a-w- C:\Windows\Sysnative\igfxcpl.cpl
2014-11-21 22:38:27 9EF7F92A73B31C85B74376F9DAF89F8A 438272 ----a-w- C:\Windows\Sysnative\igfxrcsy.lrc
2014-11-21 22:38:27 9EB9DB528A0546532ACD3D6D65B2648E 9536000 ----a-w- C:\Windows\Sysnative\igd10umd64.dll
2014-11-21 22:38:27 9D068CF01FC9A74EF3ACAEC779962B0C 58109 ----a-w- C:\Windows\Sysnative\iglhxo64_dev.vp
2014-11-21 22:38:27 975581CB984EEB050E8CD277B66EC966 79360 ----a-w- C:\Windows\Sysnative\igdde64.dll
2014-11-21 22:38:27 93015DA2804DD7D966165284AB673181 430592 ----a-w- C:\Windows\Sysnative\igfxrkor.lrc
2014-11-21 22:38:27 8DC0ED0D8B7A2502FC102564870C21F7 439296 ----a-w- C:\Windows\Sysnative\igfxrrom.lrc
2014-11-21 22:38:27 8ADDCDBC533F9565E950A0F6D5BE51C2 439808 ----a-w- C:\Windows\Sysnative\igfxresn.lrc
2014-11-21 22:38:27 8ABA3F7183EF6441F2A04E8057258215 62976 ----a-w- C:\Windows\Sysnative\igfxsrvc.dll
2014-11-21 22:38:27 876752EC198C30E61E99159C7A5B364C 143805 ----a-w- C:\Windows\Sysnative\Gfxres.fr-FR.resources
2014-11-21 22:38:27 84D07B5AE2364D61253ED8902179A9A6 963912 ----a-w- C:\Windows\Sysnative\igkrng600.bin
2014-11-21 22:38:27 814FD1A5070EADFADA636D4654B80A6B 438784 ----a-w- C:\Windows\Sysnative\igfxrdeu.lrc
2014-11-21 22:38:27 80DA974CE89A5437B38ADC42893FF32B 438784 ----a-w- C:\Windows\Sysnative\igfxrita.lrc
2014-11-21 22:38:27 7F6342494DD1DCE1E24729A43C720787 136451 ----a-w- C:\Windows\Sysnative\Gfxres.sl-SI.resources
2014-11-21 22:38:27 7E47E15D883DDDA9224549909C94AA1D 439808 ----a-w- C:\Windows\Sysnative\igfxrfra.lrc
2014-11-21 22:38:27 7D017884882FC5798B27D9FB6D991D7F 437760 ----a-w- C:\Windows\Sysnative\igfxrsve.lrc
2014-11-21 22:38:27 7CA8E86A9D40261FCFD2E4A3E3EC761D 142189 ----a-w- C:\Windows\Sysnative\Gfxres.hu-HU.resources
2014-11-21 22:38:27 7B88EA330D291C5576BACA05173238D0 248600 ----a-w- C:\Windows\Sysnative\igfxext.exe
2014-11-21 22:38:27 7834EB45B4A68FD99701B08201BEE12A 18488 ----a-w- C:\Windows\Sysnative\iglhxs64.vp
2014-11-21 22:38:27 76FD7A314962B662D26A79D66B8B9D45 148033 ----a-w- C:\Windows\Sysnative\Gfxres.it-IT.resources
2014-11-21 22:38:27 6FBF733E8ACB2F13407DD9582217F720 59398 ----a-w- C:\Windows\Sysnative\iglhxg64.vp
2014-11-21 22:38:27 6E8AF847311A3A6428AD3FB3499F371B 435712 ----a-w- C:\Windows\Sysnative\igfxrara.lrc
2014-11-21 22:38:27 6D4F7638AA5CA80D97E11590ADA2DD4D 244224 ----a-w- C:\Windows\Sysnative\iglhcp64.dll
2014-11-21 22:38:27 694D9B8C919797D612B0BD9B33ADACEC 438784 ----a-w- C:\Windows\Sysnative\igfxrptg.lrc
2014-11-21 22:38:27 68367B75B5978E4320BEF7513A5222D6 437760 ----a-w- C:\Windows\Sysnative\igfxrnor.lrc
2014-11-21 22:38:27 6775C0D46B5AD750438198B5B6672907 386048 ----a-w- C:\Windows\Sysnative\igfxpph.dll
2014-11-21 22:38:27 660C6D34F98228FC375C03AB02116955 435712 ----a-w- C:\Windows\Sysnative\igfxrheb.lrc
2014-11-21 22:38:27 617611FBF31AF49761F9656D643DF48F 28672 ----a-w- C:\Windows\Sysnative\igfxexps.dll
2014-11-21 22:38:27 5E5A6B5D9C777DD3737C079E311EA2B2 142664 ----a-w- C:\Windows\Sysnative\Gfxres.pt-BR.resources
2014-11-21 22:38:27 5D3342A551557882AF07A4861C11C70E 398104 ----a-w- C:\Windows\Sysnative\hkcmd.exe
2014-11-21 22:38:27 5BFB2254179BA6D7D33BD971AACFB32B 221099 ----a-w- C:\Windows\Sysnative\Gfxres.th-TH.resources
2014-11-21 22:38:27 5AB8F721E0049239B1D1EB322205F9B0 511256 ----a-w- C:\Windows\Sysnative\igfxsrvc.exe
2014-11-21 22:38:27 55632EAD6A6C6708C6671D4622454EDB 59230 ----a-w- C:\Windows\Sysnative\iglhxc64.vp
2014-11-21 22:38:27 555B90CAEC4AE1D3140338CF2D16A11B 59104 ----a-w- C:\Windows\Sysnative\iglhxc64_dev.vp
2014-11-21 22:38:27 548BAF2CCBD273ED473B4EEFAC588EE1 437760 ----a-w- C:\Windows\Sysnative\igfxrptb.lrc
2014-11-21 22:38:27 4C6172BCF9433B625E91F223F0888A5B 428544 ----a-w- C:\Windows\Sysnative\igfxrchs.lrc
2014-11-21 22:38:27 4AAE475058A8ED648904E7A54B4E7294 157226 ----a-w- C:\Windows\Sysnative\Gfxres.he-IL.resources
2014-11-21 22:38:27 48434EAFE70409D261DAF5AD244F03CA 59425 ----a-w- C:\Windows\Sysnative\iglhxo64.vp
2014-11-21 22:38:27 481F6E1CD63E09F0516B5E78B35D333E 145804 ----a-w- C:\Windows\Sysnative\igcompkrng600.bin
2014-11-21 22:38:27 45D7FC8B3092F45D08CFD6FB1E8E7441 207830 ----a-w- C:\Windows\Sysnative\Gfxres.el-GR.resources
2014-11-21 22:38:27 413E59D5E7AF8D982EBCCD73D24EA0E2 437248 ----a-w- C:\Windows\Sysnative\igfxrdan.lrc
2014-11-21 22:38:27 40DFD4CFB98AB5E4666B0F607CB64921 1981696 ----a-w- C:\Windows\Sysnative\iglhxa64.cpa
2014-11-21 22:38:27 40CE91CE52B8715E7A0A7DD0B7F98B5C 5886232 ----a-w- C:\Windows\Sysnative\GfxUI.exe
2014-11-21 22:38:27 3AF584EE8867534811C6B68628C0E685 437760 ----a-w- C:\Windows\Sysnative\igfxrslv.lrc
2014-11-21 22:38:27 38241404586620C2FB75B92D82B0362B 432128 ----a-w- C:\Windows\Sysnative\igfxrjpn.lrc
2014-11-21 22:38:27 33E0F3489302BCFDD33883A04BBF2146 161613 ----a-w- C:\Windows\Sysnative\Gfxres.ja-JP.resources
2014-11-21 22:38:27 2CA8D8BE4C0957E4D7618D1F38C45D19 144338 ----a-w- C:\Windows\Sysnative\Gfxres.ro-RO.resources
2014-11-21 22:38:27 2BDA1EEC5F39F6732A84AB07D1EECCCB 136369 ----a-w- C:\Windows\Sysnative\Gfxres.nb-NO.resources
2014-11-21 22:38:27 2329BE8E840DC7C90F6748A8C4236C12 141644 ----a-w- C:\Windows\Sysnative\Gfxres.pt-PT.resources
2014-11-21 22:38:27 21A15E0555B3914236522BB1E54472E1 429056 ----a-w- C:\Windows\Sysnative\igfxrcht.lrc
2014-11-21 22:38:27 18DE6D8623A82AC3603B0E5F8B6A7338 438784 ----a-w- C:\Windows\Sysnative\igfxrplk.lrc
2014-11-21 22:38:27 16F3FAB2DE6E785C02C45A963DF81160 410624 ----a-w- C:\Windows\Sysnative\igfxTMM.dll
2014-11-21 22:38:27 1452FB16154500187C4F4096B3E8B00E 124962 ----a-w- C:\Windows\Sysnative\Gfxres.zh-TW.resources
2014-11-21 22:38:27 1303CD56AC0CE8DDACF53E72B5682D34 140923 ----a-w- C:\Windows\Sysnative\Gfxres.pl-PL.resources
2014-11-21 22:38:27 105CFE016CCB20175BEACEC146F175AB 94208 ----a-w- C:\Windows\Sysnative\IccLibDll_x64.dll
2014-11-21 22:38:27 0F6E4A9E95A57D2F4D6F9F10A9D3AE66 110592 ----a-w- C:\Windows\Sysnative\hccutils.dll
2014-11-21 22:38:27 0EF2A6818FAE466418BF96A67B49FA13 286208 ----a-w- C:\Windows\Sysnative\igfxrenu.lrc
2014-11-21 22:38:27 086C6AA37B00A0A2A468B34E3D86AA77 145687 ----a-w- C:\Windows\Sysnative\Gfxres.es-ES.resources
2014-11-21 22:38:27 07BBAE58F5A94597D5D70F0CB1769659 439296 ----a-w- C:\Windows\Sysnative\igfxrrus.lrc
2014-11-21 22:38:27 07050EB4D7A5D40969E4C45195B35E94 140885 ----a-w- C:\Windows\Sysnative\Gfxres.cs-CZ.resources
2014-11-21 22:38:27 06DF8A0180AE13F9EB0F138D73A2E529 123467 ----a-w- C:\Windows\Sysnative\Gfxres.zh-CN.resources
2014-11-21 22:26:11 C494DD3E3892F1DBE576C9C398AE54C4 22744 ----a-w- C:\Windows\Sysnative\emptyregdb.dat
====== C:\Windows\Sysnative\drivers =====
2014-12-02 03:26:23 435DCC78057A57965DA660A85A0922DE 135384 ----a-w- C:\Windows\Sysnative\drivers\MBAMSwissArmy.sys
2014-12-02 03:25:43 3540DDFAC8A076B983F86EB2A79D8FBD 96472 ----a-w- C:\Windows\Sysnative\drivers\mbamchameleon.sys
2014-11-21 23:56:03 EAFC6970073525E98D4D0E2B56741227 28184 ----a-w- C:\Windows\Sysnative\drivers\aswKbd.sys
2014-11-21 23:55:54 8025E7521EB601207627E8B4722ACE19 449936 ----a-w- C:\Windows\Sysnative\drivers\aswNdisFlt.sys
2014-11-21 23:54:05 7509F07BA6F84C1E3B2C0D78A1F6F782 116728 ----a-w- C:\Windows\Sysnative\drivers\aswStm.sys
2014-11-21 23:54:04 B1881A01E301990B671694CA1623F1B6 436624 ----a-w- C:\Windows\Sysnative\drivers\aswSP.sys
2014-11-21 23:54:04 1A5BDDE65B648DC3AD48B6ECAA3AE9C8 267632 ----a-w- C:\Windows\Sysnative\drivers\aswVmm.sys
2014-11-21 23:54:04 1323269A92645705DEFA053F3596829D 65776 ----a-w- C:\Windows\Sysnative\drivers\aswRvrt.sys
2014-11-21 23:54:03 9BE9F2B83DE80E2752B1405CC427E2EC 29208 ----a-w- C:\Windows\Sysnative\drivers\aswHwid.sys
2014-11-21 23:54:03 4750016EF9CC1DEC6DA3FE5AF9A7F095 93568 ----a-w- C:\Windows\Sysnative\drivers\aswRdr2.sys
2014-11-21 23:54:03 2DA1C1AEDF454F8E32A863A1AEACDD8C 83280 ----a-w- C:\Windows\Sysnative\drivers\aswMonFlt.sys
2014-11-21 23:54:02 E74FD717476B30E23F45354B8F3ACB30 1050432 ----a-w- C:\Windows\Sysnative\drivers\aswsnx.sys
2014-11-21 22:55:03 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-11-21 22:41:30 C74F37177A69090481115B5B82EBCBC7 15128 ----a-w- C:\Windows\Sysnative\drivers\IntelMEFWVer.dll
2014-11-21 22:40:19 173666119D217E3739205C169E2BF0E5 77936 ----a-w- C:\Windows\Sysnative\drivers\L1C62x64.sys
2014-11-21 22:39:48 6BE11AD81D4527D299F0CB5F3731AABC 21104 ----a-w- C:\Windows\Sysnative\drivers\AppleCharger.sys
2014-11-21 22:39:45 6B01B7414A105B9E51652089A03027CF 60184 ----a-w- C:\Windows\Sysnative\drivers\HECIx64.sys
2014-11-21 22:39:10 ACACD1B925D448558C1C9D0258749451 4734440 ----a-w- C:\Windows\Sysnative\drivers\RTKVHD64.sys
2014-11-21 22:39:10 0F9527E75A28F0391F0933DF9A363A4B 215644 ----a-w- C:\Windows\Sysnative\drivers\RTAIODAT.DAT
2014-11-21 22:38:27 54E37A4E66B2CA1C38E9728FAD5F9822 14652768 ----a-w- C:\Windows\Sysnative\drivers\igdkmd64.sys
====== C:\Windows\Tasks ======
2014-11-30 01:24:34 EF1A383773D855DCC476CF82AFEA761C 3326 ----a-w- C:\Windows\Sysnative\Tasks\{7C442AA6-EEA5-4B21-96C1-9B545A17264A}
2014-11-27 01:03:30 BF590E8C8669F8DFF373A600F87FD462 3914 ----a-w- C:\Windows\Sysnative\Tasks\InstallShield Software online update program
2014-11-27 01:03:29 E7C335A7DCF2348296319BF68A6340CD 3818 ----a-w- C:\Windows\Sysnative\Tasks\InstallShield Software update service
2014-11-27 01:03:28 772096B1533565D97B73C65131B7AA23 3694 ----a-w- C:\Windows\Sysnative\Tasks\Adobe online update program
2014-11-26 17:57:44 37C3D43EEF166DD44B1D65E4C0A18F5E 3122 ----a-w- C:\Windows\Sysnative\Tasks\{015C266A-6004-4BEF-B781-AC4469E0F04B}
2014-11-22 12:29:35 C4C43B9EF75AC7FAE4C242D9E0AC0872 3156 ----a-w- C:\Windows\Sysnative\Tasks\{906B8BF3-E15B-4E38-AEB5-B16884A8B866}
2014-11-22 12:26:33 1F630FB7100E3BF2D052A99DA702A2D9 3156 ----a-w- C:\Windows\Sysnative\Tasks\{64196158-5DAB-4741-9578-5BF780D52550}
2014-11-22 12:26:18 C4C43B9EF75AC7FAE4C242D9E0AC0872 3156 ----a-w- C:\Windows\Sysnative\Tasks\{19727198-53BE-4F8C-836D-99FA58D71552}
2014-11-22 02:13:59 81E6506B7DBBFE8D1937D73DE305848F 3032 ----a-w- C:\Windows\Sysnative\Tasks\{5BC85649-3FAB-4749-9657-082224F7EFAF}
2014-11-22 02:00:38 4EBFD51B0D0603EE13B8E80097551BE5 3198 ----a-w- C:\Windows\Sysnative\Tasks\{5E1D67F3-97F2-4580-942E-1FA65EB95831}
2014-11-22 00:47:57 CDC26A354DBF7FD6C1E9B621A448B1CC 3768 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Flash Player Updater
2014-11-22 00:47:57 37A816EF0F07958539BA13CACCB9F15A 830 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-21 23:54:35 29AA27521A1DB4BCA85711DF4D61FE76 4182 ----a-w- C:\Windows\Sysnative\Tasks\avast! Emergency Update
2014-11-21 23:18:21 731FF27A02659EDB2D246A3673D06EDB 4286 ----a-w- C:\Windows\Sysnative\Tasks\User_Feed_Synchronization-{35C10B01-FCAD-408A-A713-3A4367721D53}
====== C:\Windows\Temp ======
======= C:\Program Files =====
2014-11-27 00:28:04 -------- d-----w- C:\Program Files\Microsoft Office
2014-11-22 02:41:39 -------- d-----w- C:\Program Files\Common Files\Bullzip
2014-11-22 02:41:34 -------- d-----w- C:\Program Files\Bullzip
2014-11-22 00:32:10 -------- d-----w- C:\Program Files\WinRAR
2014-11-21 22:40:48 -------- d-----w- C:\Program Files\Intel
2014-11-21 22:39:48 -------- d-----w- C:\Program Files\GIGABYTE
2014-11-21 22:39:25 -------- d-----w- C:\Program Files\Realtek
2014-11-21 22:38:43 -------- d-----w- C:\Program Files\Common Files\Intel
======= C:\PROGRA~2 =====
2014-12-01 00:31:04 -------- d-----w- C:\PROGRA~2\FLV to AVI
2014-11-28 09:04:36 -------- d-----w- C:\PROGRA~2\MSXML 4.0
2014-11-27 23:57:07 -------- d-----w- C:\PROGRA~2\Contrast
2014-11-27 00:30:23 -------- d-----w- C:\PROGRA~2\Microsoft Works
2014-11-27 00:30:05 -------- d-----w- C:\PROGRA~2\Microsoft Visual Studio
2014-11-27 00:29:49 -------- d-----w- C:\PROGRA~2\Microsoft.NET
2014-11-27 00:27:55 -------- d-----w- C:\PROGRA~2\Microsoft Visual Studio 8
2014-11-27 00:27:07 -------- d-----w- C:\PROGRA~2\Microsoft Office
2014-11-22 22:17:57 -------- d-----w- C:\PROGRA~2\GameHouse
2014-11-22 20:55:33 -------- d-----w- C:\PROGRA~2\Corel
2014-11-22 20:55:33 -------- d-----w- C:\PROGRA~2\COMMON~1\Corel
2014-11-22 14:10:43 -------- d-----w- C:\PROGRA~2\XBMC
2014-11-22 12:53:16 -------- d-----w- C:\PROGRA~2\COMMON~1\Skype
2014-11-22 12:53:15 -------- d-----r- C:\PROGRA~2\Skype
2014-11-22 10:28:05 -------- d-----w- C:\PROGRA~2\CyberLink
2014-11-22 03:24:27 -------- d-----w- C:\PROGRA~2\PS3 Media Server
2014-11-22 01:53:16 -------- d-----w- C:\PROGRA~2\COMMON~1\SWF Studio
2014-11-22 01:17:07 -------- d-----w- C:\PROGRA~2\Hp
2014-11-22 00:50:32 -------- d-----w- C:\PROGRA~2\COMMON~1\Java
2014-11-22 00:50:16 -------- d-----w- C:\PROGRA~2\Java
2014-11-22 00:46:13 -------- d-----w- C:\PROGRA~2\COMMON~1\Adobe
2014-11-22 00:46:13 -------- d-----w- C:\PROGRA~2\Adobe
2014-11-22 00:41:53 -------- d-----w- C:\PROGRA~2\Webteh
2014-11-22 00:05:23 -------- d-----w- C:\PROGRA~2\Expert2000
2014-11-22 00:04:45 -------- d-----w- C:\PROGRA~2\Project1
2014-11-21 23:54:13 -------- d-----w- C:\PROGRA~2\Google
2014-11-21 23:38:43 -------- d-----w- C:\PROGRA~2\Mozilla Maintenance Service
2014-11-21 23:11:01 -------- d-----w- C:\PROGRA~2\COMMON~1\DESIGNER
2014-11-21 22:40:02 -------- d-----w- C:\PROGRA~2\COMMON~1\postureAgent
2014-11-21 22:39:48 -------- d-----w- C:\PROGRA~2\GIGABYTE
2014-11-21 22:39:01 -------- d--h--w- C:\PROGRA~2\Temp
2014-11-21 22:39:01 -------- d--h--w- C:\PROGRA~2\InstallShield Installation Information
2014-11-21 22:39:01 -------- d-----w- C:\PROGRA~2\Realtek
2014-11-21 22:38:58 -------- d-----w- C:\PROGRA~2\COMMON~1\InstallShield
2014-11-21 22:38:41 -------- d-----w- C:\PROGRA~2\COMMON~1\Intel
2014-11-21 22:37:42 -------- d-----w- C:\PROGRA~2\Intel
======= C: =====
====== C:\Users\Misa\AppData\Roaming ======
2014-12-02 08:50:53 CCE117595401244D709BA3836ABAB4F5 110752 ----a-w- C:\Users\Misa\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-01 11:03:17 -------- d-----w- C:\Users\Misa\AppData\Roaming\Unity
2014-11-30 23:20:25 -------- d-----w- C:\Users\Misa\AppData\Local\JDownloader v2.0
2014-11-28 08:50:51 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\TuneUp Software
2014-11-28 08:50:51 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\TuneUp Software
2014-11-27 23:30:58 -------- d-----w- C:\Users\Misa\AppData\Roaming\Contrast
2014-11-26 17:26:07 -------- d-----w- C:\Users\Misa\AppData\Locallow\Unity
2014-11-26 17:26:07 -------- d-----w- C:\Users\Misa\AppData\Local\Unity
2014-11-23 23:13:26 -------- d-----w- C:\Users\Misa\AppData\Roaming\WinRAR
2014-11-22 14:11:59 -------- d-----w- C:\Users\Misa\AppData\Roaming\XBMC
2014-11-22 14:10:54 -------- d-----w- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XBMC
2014-11-22 13:00:03 -------- d-----w- C:\Users\Misa\AppData\Roaming\BitTorrent
2014-11-22 12:53:23 -------- d-----w- C:\Users\Misa\AppData\Local\Skype
2014-11-22 12:53:21 -------- d-----w- C:\Users\Misa\AppData\Roaming\Skype
2014-11-22 12:37:23 -------- d-----w- C:\Users\Misa\AppData\Local\Avg2014
2014-11-22 10:39:05 -------- d-----w- C:\Users\Misa\AppData\Roaming\TuneUp Software
2014-11-22 10:39:05 -------- d-----w- C:\Users\Misa\AppData\Local\TuneUp Software
2014-11-22 10:36:51 -------- d-----w- C:\Users\Misa\AppData\Roaming\WebTest
2014-11-22 10:35:19 -------- d-----w- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2014-11-22 10:28:27 -------- d-----w- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2014-11-22 08:43:26 -------- d-----w- C:\Users\Misa\AppData\Roaming\Corel
2014-11-22 02:51:28 -------- d-----w- C:\Users\Misa\AppData\Locallow\Adobe
2014-11-22 02:43:29 -------- d-----w- C:\Users\Misa\AppData\Roaming\PDF Writer
2014-11-22 02:43:29 -------- d-----w- C:\Users\Misa\AppData\Local\PDF Writer
2014-11-22 02:10:24 -------- d-----w- C:\Users\Misa\AppData\Local\ElevatedDiagnostics
2014-11-22 01:02:15 -------- d-----w- C:\Users\Misa\AppData\Roaming\Adobe
2014-11-22 00:49:57 -------- d-----w- C:\Users\Misa\AppData\Locallow\Sun
2014-11-22 00:45:38 -------- d-----w- C:\Users\Misa\AppData\Local\Adobe
2014-11-22 00:41:53 -------- d-----w- C:\Users\Misa\AppData\Roaming\BSplayer PRO
2014-11-22 00:32:13 -------- d-----w- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-11-22 00:30:40 -------- d-----w- C:\Users\Misa\AppData\Roaming\U3
2014-11-22 00:05:25 -------- d-----w- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Expert
2014-11-22 00:04:47 -------- d-----w- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Project1
2014-11-21 23:59:51 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google
2014-11-21 23:54:13 -------- d-----w- C:\Users\Misa\AppData\Local\Google
2014-11-21 23:40:52 -------- d-----w- C:\Users\Misa\AppData\Local\Programs
2014-11-21 23:38:49 -------- d-----w- C:\Users\Misa\AppData\Roaming\Mozilla
2014-11-21 23:38:49 -------- d-----w- C:\Users\Misa\AppData\Local\Mozilla
2014-11-21 22:50:32 -------- d-----w- C:\Users\Misa\AppData\Local\Microsoft Help
2014-11-21 22:40:42 -------- d-s---w- C:\Users\Misa\AppData\Locallow\Microsoft
2014-11-21 22:39:40 -------- d-----w- C:\Users\Misa\AppData\Roaming\InstallShield
2014-11-21 22:36:59 -------- d-----w- C:\Users\Misa\AppData\Roaming\Splashtop
2014-11-21 22:22:02 -------- d-s---w- C:\Users\Misa\AppData\Roaming\Microsoft
2014-11-21 22:22:02 -------- d-----w- C:\Users\Misa\AppData\Roaming\Media Center Programs
2014-11-21 22:22:02 -------- d-----w- C:\Users\Misa\AppData\Local\Temp
2014-11-21 22:22:02 -------- d-----w- C:\Users\Misa\AppData\Local\Microsoft
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-21 22:00:58 -------- d-----w- C:\Users\Misa\AppData\Local\Diagnostics
2014-11-21 21:47:44 -------- d-----r- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-11-21 21:47:44 -------- d-----r- C:\Users\Misa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-11-21 21:47:36 -------- d-----w- C:\Users\Misa\AppData\Roaming\Identities
2014-11-21 21:47:33 -------- d-----w- C:\Users\Misa\AppData\Local\VirtualStore
====== C:\Users\Misa ======
2014-12-02 09:33:39 8C5B21CD725D0050D3634E8BE1D9B6AF 2117120 ----a-w- C:\Users\Misa\Desktop\FRST64.exe
2014-12-02 03:25:23 F92CE6E6B3A0AB75E48D9A6BE9DDB550 16448208 ----a-w- C:\Users\Misa\Downloads\mbar-1.08.2.1001.exe
2014-12-01 14:15:01 -------- d-----w- C:\Users\Misa\dwhelper
2014-12-01 10:17:12 CBDDB6C4BCD895F8879FD6AC588007A0 2154496 ----a-w- C:\Users\Misa\Downloads\AdwCleaner.exe
2014-12-01 00:31:05 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FLV to AVI
2014-11-30 23:30:20 -------- d-----r- C:\Windows\sysWoW64\config\systemprofile\Favorites
2014-11-30 23:30:20 -------- d-----r- C:\Windows\SysNative\config\systemprofile\Favorites
2014-11-27 23:57:07 -------- d-----w- C:\ProgramData\Contrast
2014-11-27 23:30:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Contrast
2014-11-27 00:31:38 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-11-22 22:19:29 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse
2014-11-22 20:56:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X3
2014-11-22 12:53:16 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-11-22 12:25:51 -------- d-----w- C:\ProgramData\Skype
2014-11-22 10:38:00 -------- d-sh--w- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-11-22 10:37:59 -------- d--h--w- C:\ProgramData\Common Files
2014-11-22 10:37:59 -------- d-----w- C:\ProgramData\TuneUp Software
2014-11-22 10:29:27 -------- d-----w- C:\ProgramData\CyberLink
2014-11-22 10:28:28 8970913000E81ABC338AB1C62E5891F4 2047 ------w- C:\Users\Desktop\CyberLink PowerDVD.lnk
2014-11-22 10:28:27 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD
2014-11-22 08:40:13 -------- d-----w- C:\ProgramData\InstallShield
2014-11-22 02:54:25 -------- d-----w- C:\ProgramData\PMS
2014-11-22 02:54:25 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PS3 Media Server
2014-11-22 02:41:42 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bullzip
2014-11-22 02:41:35 -------- d-----w- C:\ProgramData\PDF Writer
2014-11-22 00:56:08 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-11-22 00:50:33 -------- d-----w- C:\ProgramData\Sun
2014-11-22 00:50:18 -------- d-----w- C:\ProgramData\Oracle
2014-11-22 00:46:00 -------- d-----w- C:\ProgramData\Adobe
2014-11-22 00:42:17 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webteh
2014-11-22 00:32:13 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-11-22 00:05:44 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Expert
2014-11-22 00:04:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Project1
2014-11-21 23:38:43 -------- d-----w- C:\ProgramData\Mozilla
2014-11-21 22:50:31 -------- d-----w- C:\ProgramData\Microsoft Help
2014-11-21 22:41:50 -------- d-----w- C:\ProgramData\Splashtop
2014-11-21 22:41:14 -------- d-----w- C:\ProgramData\Intel
2014-11-21 22:37:01 -------- d--h--w- C:\ProgramData\{8533ADFA-85F0-4dc1-946A-2A0BA58E78E3}
2014-11-21 22:29:32 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\Misa\ntuser.ini
2014-11-21 22:22:02 -------- d--h--w- C:\Users\Misa\AppData
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\Videos
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\Saved Games
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\Pictures
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\Music
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\Links
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\Favorites
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\Downloads
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\Documents
2014-11-21 22:22:02 -------- d-----r- C:\Users\Misa\Desktop
2014-11-21 21:47:44 -------- d-----r- C:\Users\Misa\Searches
2014-11-21 21:47:34 -------- d-----r- C:\Users\Misa\Contacts

====== C: exe-files ==
2014-12-02 09:33:39 8C5B21CD725D0050D3634E8BE1D9B6AF 2117120 ----a-w- C:\Users\Misa\Desktop\FRST64.exe
2014-12-02 03:25:23 F92CE6E6B3A0AB75E48D9A6BE9DDB550 16448208 ----a-w- C:\Users\Misa\Downloads\mbar-1.08.2.1001.exe
2014-12-01 10:17:12 CBDDB6C4BCD895F8879FD6AC588007A0 2154496 ----a-w- C:\Users\Misa\Downloads\AdwCleaner.exe
2014-12-01 00:31:04 CE705499A5B1CE7652D07163094B97B7 2243584 ----a-w- C:\Program Files (x86)\FLV to AVI\flvtoavi.exe
2014-12-01 00:31:04 CAF186593CB734DCCE460095BE4FA530 1194185 ----a-w- C:\Program Files (x86)\FLV to AVI\unins000.exe
2014-12-01 00:31:04 1676E1B9A76550F7F6DDE38E5F95D30B 28641792 ----a-w- C:\Program Files (x86)\FLV to AVI\ffmpeg.exe
2014-12-01 00:12:58 D92FB5770CBDE049A4732B76A77F6864 103374192 ----a-w- C:\Windows\System32\MRT.exe
2014-11-30 23:35:27 357209FBDF87360F4F2DBCE0D1A64744 31308800 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\tools\Windows\ffmpeg\x64\ffmpeg.exe
2014-11-30 23:35:27 3170117CFB72CA0C8BC0F4E177A99FF3 31241216 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\tools\Windows\ffmpeg\x64\ffprobe.exe
2014-11-30 23:29:55 F5E6D3F393383040721C724E6CD1B589 40960 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\tools\Windows\rtmpdump\SendSignal.exe
2014-11-30 23:29:55 3D1EC7713B815CFC6E59CC852018EE5B 358912 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\tools\Windows\rtmpdump\rtmpdump.exe
2014-11-30 23:29:55 23E0E3B40B8AF8A296AE22C0DA5B7A7A 77824 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\tools\Windows\elevate\Elevate64.exe
2014-11-30 23:25:46 DE395ADB369470A953A11B8C300697E2 35680 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\.install4j\i4jdel.exe
2014-11-30 23:25:46 CD6520511D206DE1C0BC6CDD9F704C75 420480 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\JDownloader2.exe
2014-11-30 23:25:46 79008E5F92F3298EAB3D8B5A75CD3A1A 420480 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\Uninstall JDownloader.exe
2014-11-30 23:25:46 4ECFB7585A9C1FE255CE9C8CFE353567 261248 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\JDownloader2Update.exe
2014-11-30 23:25:43 D953A554DAB7910997AB84EAC99C4930 16296 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\tnameserv.exe
2014-11-30 23:25:43 ADB3173F81C7B2DD7CECCD33F434E6DE 196008 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\unpack200.exe
2014-11-30 23:25:43 AD72569DC020A1297B8F54270078CB75 16808 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\servertool.exe
2014-11-30 23:25:43 AA3D312018CEB196293418007D87781F 16808 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\rmiregistry.exe
2014-11-30 23:25:43 6FC0E2AB92257CF9967446A34E3C2A2A 15784 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\rmid.exe
2014-11-30 23:25:43 6C482FB65BAC1F12B5CB2BD2A7455DC2 16296 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\pack200.exe
2014-11-30 23:25:43 63315D1F07BB9506CEF836D087AB545D 16296 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\orbd.exe
2014-11-30 23:25:43 3A6EA5A061ECE1AAE5248A6E9894E1EB 64424 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\ssvagent.exe
2014-11-30 23:25:43 2AF703199EB2ECF114D6D142CB9492A0 16808 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\policytool.exe
2014-11-30 23:25:42 F98137D29A56DBB373E617757BC7052F 68008 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\jp2launcher.exe
2014-11-30 23:25:42 AA9AB2CEF93047F433D084CA861057B4 16296 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\keytool.exe
2014-11-30 23:25:42 8661E0790258D0AD10DFC4B9D91A604C 16296 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\kinit.exe
2014-11-30 23:25:42 593E2563453891D25AD5FE8EB33CBF42 15784 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\jjs.exe
2014-11-30 23:25:42 39226C436BBC53680FE9B6BD4BA4FF55 16296 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\ktab.exe
2014-11-30 23:25:42 3716B475C38A1BFB938E4075A8676F7B 16296 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\klist.exe
2014-11-30 23:25:41 FB2AC6F33E7A05FCE4852CA7FAE067C6 191400 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\javaw.exe
2014-11-30 23:25:41 D6DF0ED078887547BD22212B2846D0C6 76200 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\javacpl.exe
2014-11-30 23:25:41 B68BCAC02F8E7B1F372D196EC0E83BC1 15784 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\java-rmi.exe
2014-11-30 23:25:41 A3F7F80E58A68D09C1D003F419519BE5 34216 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\jabswitch.exe
2014-11-30 23:25:41 1241901A8B46409B33BE2B3452F881B7 190888 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\bin\java.exe
2014-11-27 23:40:13 C1C03EA437EDDA8A7D4D8786E5AE6751 57880 ----a-w- C:\Windows\System32\wuauclt.exe
2014-11-27 23:40:03 FF0729002E081668620A681182D63FE6 36864 ----a-w- C:\Windows\System32\wuapp.exe
2014-11-26 17:26:07 378FD536AE49B042FCBE0E3EFBEBD669 644556 ----a-w- C:\Users\Misa\AppData\Local\Unity\WebPlayer\Uninstall.exe
=== C: other files ==
2014-12-02 12:32:27 76CDB2BAD9582D23C1F6F4D868218D6C 22 ----a-w- C:\Users\Misa\AppData\Local\Temp\avastBCLTMP\{d08ab008-0647-4784-8e2c-5769cd4a7c3a}.zip
2014-12-02 03:26:23 435DCC78057A57965DA660A85A0922DE 135384 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-12-02 03:25:43 3540DDFAC8A076B983F86EB2A79D8FBD 96472 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-11-30 23:37:18 B1DD37FED9611BEFAF6C0AB8BB3C876C 4128 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\linkcollector5.zip
2014-11-30 23:37:18 4B48A0E2AD229CCA87F2C61B98F0C9D9 3869 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\downloadList3.zip
2014-11-30 23:35:47 A42A5EDA39414B1714B49D4604F614B9 4129 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\linkcollector4.zip
2014-11-30 23:35:20 7CE78C8DCCF64C4EDBEC8B615F4C4E8E 3867 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\downloadList2.zip
2014-11-30 23:35:15 481BF544B35B4CAFEFAB009B01CEC138 232 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\linkcollector3.zip
2014-11-30 23:35:10 2588204FC0D49C6C25A51D8F33868D45 3866 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\downloadList1.zip
2014-11-30 23:35:10 070A006ED48057F61E1091FAB50D9F20 232 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\linkcollector2.zip
2014-11-30 23:34:34 9A036A789419E3DF43C66EB7647967E7 3866 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\downloadList.zip
2014-11-30 23:34:34 5AFAA6BB4FD6D7BBFDEE8F4915F5A422 232 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\linkcollector1.zip
2014-11-30 23:32:48 7F3A4BB9A29F9509FC4C48F1A2F28BBC 4204 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\cfg\linkcollector.zip
2014-11-30 23:25:44 989B5A4C74E9E9BBA99CC1AA24BA809F 14130 ----a-w- C:\Users\Misa\AppData\Local\JDownloader v2.0\jre\lib\deploy\ffjcext.zip
2014-11-28 08:51:04 6A7A217A6514BE39E78A7BF58C06F712 3195392 ----a-w- C:\Windows\System32\win32k.sys

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-4030691657-4207463097-1842436398-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
"Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun"
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun"
"BitTorrent"="C:\Users\Misa\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED"
"ISUSPM Startup"="C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe -startup"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui"
"RemoteControl"="C:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe"
"LanguageShortcut"="C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe"
"GrooveMonitor"="C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
"Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun"
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe /autoRun"
"BitTorrent"="C:\Users\Misa\AppData\Roaming\BitTorrent\BitTorrent.exe /MINIMIZED"
"ISUSPM Startup"="C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe -startup"

==== Startup Registry Enabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="C:\Windows\system32\igfxtray.exe"
"HotKeysCmds"="C:\Windows\system32\hkcmd.exe"
"Persistence"="C:\Windows\system32\igfxpers.exe"
"RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s"

==== Startup Registry Disabled ======================

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run-]
"ISUSPM Startup"="\"C:\\Program Files (x86)\\Common Files\\InstallShield\\UpdateService\\ISUSPM.exe\" -startup"


[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run-]
"Adobe ARM"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""
"ISUSScheduler"="\"C:\\Program Files (x86)\\Common Files\\InstallShield\\UpdateService\\issch.exe\" -start"


==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [11/26/2014 01:02 PM]

==== Other Scheduled Tasks ======================

"C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\SysNative\tasks\Adobe online update program" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]
"C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\SysNative\tasks\InstallShield Software online update program" [C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe]
"C:\Windows\SysNative\tasks\InstallShield Software update service" [C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe]
"C:\Windows\SysNative\tasks\User_Feed_Synchronization-{35C10B01-FCAD-408A-A713-3A4367721D53}" [C:\Windows\system32\msfeedssync.exe]
"C:\Windows\SysNative\tasks\{19727198-53BE-4F8C-836D-99FA58D71552}" ["c:\program files (x86)\mozilla firefox\firefox.exe"]
"C:\Windows\SysNative\tasks\{906B8BF3-E15B-4E38-AEB5-B16884A8B866}" ["c:\program files (x86)\mozilla firefox\firefox.exe"]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [11/22/2014 12:55 AM]

==== Firefox Extensions ======================

ProfilePath: C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default
- Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
- Undetermined - wrc@avast.com
- Undetermined - {b9db16a4-6edc-47ec-a1f4-b86292ed211d}
- DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- Skype Click to Call - %AppDir%\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\Misa\AppData\Roaming\Mozilla\Firefox\Profiles\dfbkfd44.default
8303B3CEC05500F763B4FA75210598BB - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll - Shockwave Flash
4CF4939E0C6F8CA572677A7D35451176 - C:\Users\Misa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player


==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[11/22/2014 12:53 AM]

Docs - Misa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake

==== IE Start and Search Settings ======================

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.rs/"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{45CD46A5-FB81-4fa5-A88E-BA9BDF1BA15B}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{45CD46A5-FB81-4fa5-A88E-BA9BDF1BA15B} Yahoo Url="http://search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBDSV"
{5143FB06-4452-4940-8C21-3FC5D4BA114F} Google Url="http://www.google.com/cse?cx=partner-pub-3794288947762788%3A7941509802&ie=UTF-8&sa=Search&siteurl=www.google.com%2Fcse%2Fhome%3Fcx%3Dpartner-pub-3794288947762788%3A7941509802&q={searchTerms}"
{C7845E60-0E34-4fe9-AE14-09468E5D2E54} Bing Url="http://www.bing.com/search?q={searchTerms}&form=SPLBR1&pc=SPLH"

==== C:\zoek_backup content ======================

C:\zoek_backup (files=0 folders=0 0 bytes)

==== EOF on Tue 12/02/2014 at 17:45:27.02 ======================

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Kakvo je sada stanje?

Ko je trenutno na forumu
 

Ukupno su 503 korisnika na forumu :: 14 registrovanih, 1 sakriven i 488 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: bankulen, branko7, brundo65, Georgius, Nebo_M, nemanjazema, NoOneEver Dreams, nuke92, Pakito93, pavle_pzs, Simon simonović, vasa.93, VJ, Zi0mek