Koči i sporo radi

1

Koči i sporo radi

offline
  • Pridružio: 01 Mar 2008
  • Poruke: 245

Napisano: 11 Jan 2015 11:53

Pre kratkog vremena sam radio zamennu kondenzatora i instalaciju windowsa te imao nekih problema sa programima, provlačili su mi se neki sitni programčići koji su menjali podešavanja u pregledačima i od tad mi se dešava da čekam duže vrme na otvaranje programa, windows explorera i tome slično, verujem da ima nekih špijunskih programa ili tome slično. Molim za mišljenje.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-01-2015
Ran by wolf (administrator) on WOLF-PC on 11-01-2015 11:42:22
Running from C:\Users\wolf\Desktop
Loaded Profile: wolf (Available profiles: wolf & Administrator)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: engleski (SAD)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Cherished Technololgy LIMITED) C:\ProgramData\IePluginServices\PluginService.exe
(Fuyu LIMITED) C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Nitro PDF Software) C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9.exe
(Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE
(Ralink Technology, Corp.) C:\Program Files\Tenda\Common\RaRegistry.exe
(MicroTools) C:\Program Files\Windows Optimizer\P4\optimizer.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(ACD Systems) C:\Program Files\ACD Systems\ACDSee Pro\7.0\acdIDInTouch2.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Tenda Technology, Corp.) C:\Program Files\Tenda\Common\RaUI.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ACPW07EN] => C:\Program Files\ACD Systems\ACDSee Pro\7.0\acdIDInTouch2.exe [1470280 2014-03-05] (ACD Systems)
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6699800 2014-12-26] (SUPERAntiSpyware)
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\...\Run: [DAEMON Tools Ultra Agent] => C:\Program Files\DAEMON Tools Ultra\DTAgent.exe [3639568 2014-07-10] (Disc Soft Ltd)
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\...\Run: [Flvto Youtube Downloader] => "C:\Program Files\Flvto Youtube Downloader\FlvtoYoutubeDownloader.exe" /minimize
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\...\MountPoints2: {4a06256a-8d35-11e4-a9fd-f9c4027cb097} - H:\SETUP.EXE
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\...\MountPoints2: {4a06265d-8d35-11e4-a9fd-f9c4027cb097} - I:\SETUP.EXE
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Tenda Wireless Utility.lnk
ShortcutTarget: Tenda Wireless Utility.lnk -> C:\Program Files\Tenda\Common\RaUI.exe (Tenda Technology, Corp.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type=ds&ts=14196.....8709B1D&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type=ds&ts=14196.....8709B1D&q={searchTerms}
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://services.freshy.com/general/newhometab.php?.....1183&guid={B4B46579-5EDC-47F5-A59A-0A56C61F4F42}&i=
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=141961822.....0_88709B1D
SearchScopes: HKU\S-1-5-21-3743286084-892125646-1870079314-1000 -> DefaultScope {5C72473B-0359-40DF-B6EC-AD89D2BF62F7} URL = https://search.yahoo.com/yhs/search?hspart=tightro....._123114&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3743286084-892125646-1870079314-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3743286084-892125646-1870079314-1000 -> {5C72473B-0359-40DF-B6EC-AD89D2BF62F7} URL = https://search.yahoo.com/yhs/search?hspart=tightro....._123114&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3743286084-892125646-1870079314-1000 -> {9377AC99-9876-4ADA-90FA-742135C8B7E6} URL = http://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=11183
SearchScopes: HKU\S-1-5-21-3743286084-892125646-1870079314-1000 -> {96AD2236-D99D-43F7-A3D3-44C4E939111C} URL = http://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Toolbar: HKU\S-1-5-21-3743286084-892125646-1870079314-1000 -> No Name - {F26029A9-4D07-4638-A44A-1A94386F812C} - No File
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default
FF Homepage: https://www.google.rs/?gws_rd=cr,ssl&ei=iMujVIqqI8v_ywOqo4KYCw
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @nitropdf.com/NitroPDF -> C:\Program Files\Nitro\Pro 9\npnitromozilla.dll (Nitro PDF)
FF Plugin: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @videolan.org/vlc,version=2.0.7 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default\user.js
FF SearchPlugin: C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default\searchplugins\yahoo-1.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pogodakyu.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\vokabular.xml

Chrome:
=======

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-12-26] (SUPERAntiSpyware.com)
R3 Disc Soft Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe [887056 2014-07-10] (Disc Soft Ltd)
S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-26] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-26] (globalUpdate) [File not signed]
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [715656 2014-12-26] (Cherished Technololgy LIMITED)
S2 KMService; C:\Windows\system32\srvany.exe [8192 2014-12-26] () [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22192 2014-08-22] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [288120 2014-08-22] (Microsoft Corporation)
R2 NitroDriverReadSpool9; C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9.exe [197128 2013-12-17] (Nitro PDF Software)
R2 RalinkRegistryWriter; C:\Program Files\Tenda\Common\RaRegistry.exe [375872 2011-03-31] (Ralink Technology, Corp.)
S3 RaMediaServer; C:\Program Files\Tenda\Common\RaMediaServer.exe [621632 2011-03-04] ()
R2 Themes; C:\Windows\system32\themeservice.dll [37376 2014-12-26] (Microsoft Corporation) [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [485888 2014-12-26] (Fuyu LIMITED) [File not signed]
R2 WindowsOptimizer_P4; C:\Program Files\Windows Optimizer\P4\optimizer.exe [2966136 2014-12-13] (MicroTools)
S3 COMSysApp; %SystemRoot%\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [26080 2012-10-08] (Wondershare)
S3 asmthub3; C:\Windows\system32\drivers\asmthub3.sys [100328 2011-03-04] (ASMedia Technology Inc)
S3 asmtxhci; C:\Windows\system32\drivers\asmtxhci.sys [309224 2011-03-04] (ASMedia Technology Inc)
S3 b06diag; C:\Windows\system32\drivers\bxdiagx.sys [76840 2010-12-16] (Broadcom Corporation)
S3 BFN7x86; C:\Windows\system32\drivers\Xeno7x86.sys [129640 2011-01-14] (Bigfoot Networks, Inc.)
S3 BFNVis32; C:\Windows\system32\drivers\XenoVx86.sys [129640 2011-01-14] (Bigfoot Networks, Inc.)
S3 Btcsrusb; C:\Windows\System32\Drivers\btcusb.sys [36496 2007-05-09] (IVT Corporation.)
S3 BXOIS; C:\Windows\system32\drivers\bxois.sys [431144 2010-12-10] (Broadcom Corporation)
S3 cbaf; C:\Windows\System32\Drivers\cbaf.sys [11008 2007-11-03] (Intel Corp.)
S3 dfuuwb; C:\Windows\System32\Drivers\DfuUWB.sys [500736 2008-09-11] (Intel Corp.)
R3 dtscsibus; C:\Windows\System32\DRIVERS\dtscsibus.sys [24704 2014-12-26] (Disc Soft Ltd)
S3 ETD; C:\Windows\system32\drivers\ETD.sys [109448 2010-02-03] (ELAN Microelectronic Corp.)
S3 EtronHub3; C:\Windows\System32\Drivers\EtronHub3.sys [33152 2011-03-07] (Etron Technology Inc)
S3 EtronXHCI; C:\Windows\System32\Drivers\EtronXHCI.sys [52992 2011-03-07] (Etron Technology Inc)
S3 FTDIBUS; C:\Windows\system32\drivers\ftdibus.sys [61704 2011-03-18] (FTDI Ltd.)
S3 HWA; C:\Windows\System32\Drivers\HWA.sys [53376 2008-09-29] (Intel Corp.)
S3 IFCoEMP; C:\Windows\system32\drivers\ifM60x32.sys [269584 2011-01-13] (Intel(R) Corporation)
S3 IFCoEVB; C:\Windows\system32\drivers\ifP60X32.sys [61712 2011-01-13] (Intel(R) Corporation)
S3 ioatdma1; C:\Windows\System32\Drivers\qd16032.sys [36552 2009-11-16] (Intel Corporation)
S3 ioatdma2; C:\Windows\System32\Drivers\qd26032.sys [37576 2009-11-16] (Intel Corporation)
S3 mcdbus; C:\Windows\system32\drivers\mcdbus.sys [116736 2009-02-24] (MagicISO, Inc.) [File not signed]
S3 MEI; C:\Windows\system32\drivers\HECI.sys [40832 2009-06-23] (Intel Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [231800 2014-07-17] (Microsoft Corporation)
S3 MTsensor; C:\Windows\system32\drivers\ASACPI.sys [5810 2004-08-13] ()
R3 netr28u; C:\Windows\System32\DRIVERS\netr28u.sys [1270848 2011-11-16] (Ralink Technology Corp.)
S3 nusb3hub; C:\Windows\system32\drivers\nusb3hub.sys [63872 2011-02-10] (Renesas Electronics Corporation)
S3 nusb3xhc; C:\Windows\system32\drivers\nusb3xhc.sys [141952 2011-02-10] (Renesas Electronics Corporation)
S3 nvamacpi; C:\Windows\system32\drivers\NVAMACPI.sys [24608 2009-07-17] (NVIDIA Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 TTP7; C:\Windows\system32\drivers\ttp7up.sys [12928 2005-11-09] (TerraTec) [File not signed]
S3 uagp35; C:\Windows\system32\drivers\sisagpx.sys [58400 2009-08-01] (Silicon Integrated Systems Corporation)
S3 UsbFltr; C:\Windows\system32\drivers\copperhd.sys [11596 2005-11-02] (Razer (Asia-Pacific) Pte Ltd)
S3 uwbusb; C:\Windows\System32\Drivers\usbuwbmini.sys [9600 2008-09-15] (Intel Corp.)
R1 {20028c4e-ef35-4336-a227-afedf096d2a7}Gw; C:\Windows\System32\drivers\{20028c4e-ef35-4336-a227-afedf096d2a7}Gw.sys [43200 2014-12-30] (StdLib)
U5 BlueletAudio; C:\Windows\System32\Drivers\BlueletAudio.sys [34704 2007-05-11] (IVT Corporation.)
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () [File not signed]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-11 11:42 - 2015-01-11 11:42 - 00014286 _____ () C:\Users\wolf\Desktop\FRST.txt
2015-01-11 11:42 - 2015-01-11 11:42 - 00000000 ____D () C:\FRST
2015-01-11 11:40 - 2015-01-11 11:40 - 01115648 _____ (Farbar) C:\Users\wolf\Desktop\FRST.exe
2015-01-10 21:00 - 2015-01-10 21:00 - 00000000 ___HD () C:\Users\wolf\Desktop\[Originals]
2015-01-10 17:35 - 2015-01-05 17:09 - 15109075 _____ () C:\Users\wolf\Desktop\Kladovo, Negotin i Majdanpek saniraju posledice poplava, 28. septembar 2014. (RTV Bor).mp4
2015-01-10 17:34 - 2015-01-05 17:09 - 06396918 _____ () C:\Users\wolf\Desktop\Predata i lista GG _Okupljanje za Majdanpek i Porečje_, 21. avgust 2014. (RTV Bor).mp4
2015-01-10 15:10 - 2015-01-10 15:10 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Reallusion
2015-01-10 14:49 - 2015-01-10 14:49 - 00002192 _____ () C:\Users\Public\Desktop\CrazyTalk v6.21 PRO.lnk
2015-01-10 14:49 - 2015-01-10 14:49 - 00000080 __RSH () C:\Windows\CT6PRET.BIN
2015-01-10 14:44 - 2015-01-10 14:44 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\WinRAR
2015-01-10 14:43 - 2015-01-10 14:43 - 00001413 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-10 14:43 - 2015-01-10 14:43 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini
2015-01-10 14:43 - 2015-01-10 14:43 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe
2015-01-10 14:43 - 2015-01-10 14:43 - 00000000 ____D () C:\Users\Administrator\AppData\Local\ACD Systems
2015-01-10 14:43 - 2015-01-10 14:43 - 00000000 ____D () C:\Users\Administrator
2015-01-10 14:43 - 2014-12-26 23:24 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Microsoft Help
2015-01-10 14:43 - 2009-07-14 05:42 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-10 14:43 - 2009-07-14 05:37 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-10 14:03 - 2015-01-11 10:46 - 00000392 _____ () C:\Windows\setupact.log
2015-01-10 14:03 - 2015-01-10 14:03 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-10 11:51 - 2015-01-10 11:51 - 00001991 _____ () C:\Users\Public\Desktop\CrazyTalk v7.11 PRO.lnk
2015-01-10 11:51 - 2015-01-10 11:51 - 00000172 __RSH () C:\Windows\CT7PRET.BIN
2015-01-09 21:54 - 2015-01-09 21:54 - 00001100 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WavePad Sound Editor.lnk
2015-01-09 21:54 - 2015-01-09 21:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCH Software Suite
2015-01-09 21:10 - 2015-01-09 22:09 - 05722324 _____ () C:\Users\wolf\Desktop\default.ct7Project
2015-01-09 21:06 - 2015-01-09 21:06 - 11660356 _____ () C:\Users\wolf\Desktop\VUČIĆU PEDERU !!! HD.mp4
2015-01-09 14:41 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-01-07 19:00 - 2015-01-07 19:00 - 00002169 _____ () C:\Users\Public\Desktop\CrazyTalk Animator v2.0 Pipeline.lnk
2015-01-07 19:00 - 2015-01-07 19:00 - 00000182 __RSH () C:\Windows\CTA2STET.BIN
2015-01-07 18:06 - 2015-01-07 18:06 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-01-07 18:05 - 2015-01-08 11:01 - 00000000 ____D () C:\ProgramData\Adobe
2015-01-07 18:05 - 2015-01-07 18:06 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2015-01-07 18:05 - 2015-01-07 18:05 - 00000000 ____D () C:\Program Files\Adobe
2015-01-07 17:50 - 2015-01-10 14:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reallusion
2015-01-07 17:49 - 2015-01-10 14:47 - 00000000 ____D () C:\Program Files\Reallusion
2015-01-07 14:39 - 2015-01-07 14:39 - 00001883 _____ () C:\Users\Public\Desktop\Caricature Studio 6.lnk
2015-01-07 14:39 - 2015-01-07 14:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Caricature Studio 6
2015-01-07 14:39 - 2015-01-07 14:39 - 00000000 ____D () C:\Program Files\Caricature Studio
2015-01-07 13:03 - 2015-01-07 13:03 - 00000000 ____D () C:\ProgramData\Pinnacle
2015-01-07 13:03 - 2015-01-07 13:03 - 00000000 ____D () C:\ProgramData\Avid
2015-01-07 13:02 - 2015-01-07 13:02 - 00000000 ____D () C:\ProgramData\PACE
2015-01-07 12:58 - 2015-01-07 12:58 - 00000000 ____D () C:\Windows\Downloaded Installations
2015-01-06 20:21 - 2015-01-06 20:23 - 00000000 ____D () C:\ProgramData\Ralink
2015-01-06 20:21 - 2015-01-06 20:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tenda Wireless
2015-01-06 20:20 - 2015-01-06 20:20 - 00000000 ____D () C:\ProgramData\Tenda Driver
2015-01-06 20:20 - 2011-11-16 10:32 - 01270848 _____ (Ralink Technology Corp.) C:\Windows\system32\Drivers\netr28u.sys
2015-01-06 20:20 - 2011-11-16 10:20 - 00238944 _____ (Ralink Technology, Inc.) C:\Windows\system32\RaCoInst.dll
2015-01-06 20:20 - 2011-11-16 10:20 - 00014119 _____ () C:\Windows\system32\RaCoInst.dat
2015-01-06 20:19 - 2015-01-06 20:20 - 00000000 ____D () C:\Program Files\Cisco
2015-01-06 20:19 - 2015-01-06 20:19 - 00000000 ____D () C:\Windows\system32\RaLanguages
2015-01-06 20:19 - 2015-01-06 20:19 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\InstallShield
2015-01-06 20:19 - 2015-01-06 20:19 - 00000000 ____D () C:\Program Files\Tenda
2015-01-06 20:19 - 2011-09-16 16:19 - 00000450 _____ () C:\Windows\system32\DiagFunc.ini
2015-01-06 20:19 - 2011-05-04 13:56 - 01608768 _____ (Ralink Technology, Corp.) C:\Windows\system32\RaCertMgr.dll
2015-01-06 20:19 - 2011-05-04 13:54 - 00802880 _____ (Ralink Technology, Corp.) C:\Windows\system32\RAIHV.dll
2015-01-06 20:19 - 2010-07-01 17:45 - 00119648 _____ (Ralink Technology, Corp.) C:\Windows\system32\RAEXTUI.dll
2015-01-06 20:19 - 2010-06-29 10:34 - 00480608 _____ () C:\Windows\system32\DiagFunc.dll
2015-01-06 16:42 - 2015-01-06 16:42 - 00000000 ____H () C:\Users\wolf\Documents\Default.rdp
2015-01-06 13:45 - 2015-01-10 12:18 - 00000000 ____D () C:\Users\Public\Documents\Reallusion
2015-01-06 13:45 - 2015-01-06 13:45 - 00000000 ____D () C:\ProgramData\Reallusion
2015-01-06 13:44 - 2007-10-31 20:11 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\wavdest.ax
2015-01-06 11:45 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2015-01-06 11:45 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2015-01-06 11:44 - 2015-01-07 18:58 - 00000000 ____D () C:\Program Files\Common Files\Reallusion
2015-01-05 21:20 - 2015-01-05 21:20 - 00000998 _____ () C:\Users\wolf\Desktop\AudioConverter.lnk
2015-01-05 21:20 - 2015-01-05 21:20 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Softplicity
2015-01-05 21:20 - 2015-01-05 21:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Audio Converter
2015-01-05 21:20 - 2015-01-05 21:20 - 00000000 ____D () C:\Program Files\TotalAudioConverter
2015-01-05 11:29 - 2015-01-05 11:29 - 00002006 _____ () C:\Users\Public\Desktop\NCH Suite.lnk
2015-01-05 11:29 - 2015-01-05 11:29 - 00001172 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Express Burn Disc Burning Software.lnk
2015-01-05 11:29 - 2015-01-05 11:29 - 00001160 _____ () C:\Users\Public\Desktop\Express Burn Disc Burning Software.lnk
2015-01-05 11:29 - 2015-01-05 11:29 - 00001154 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Express Rip CD Ripper Software.lnk
2015-01-05 11:29 - 2015-01-05 11:29 - 00001142 _____ () C:\Users\Public\Desktop\Express Rip CD Ripper Software.lnk
2015-01-05 11:29 - 2015-01-05 11:29 - 00001122 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixPad Multitrack Recording Software.lnk
2015-01-05 11:29 - 2015-01-05 11:29 - 00001110 _____ () C:\Users\Public\Desktop\MixPad Multitrack Recording Software.lnk
2015-01-05 11:29 - 2015-01-05 11:29 - 00001104 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Switch Sound File Converter.lnk
2015-01-05 11:29 - 2015-01-05 11:29 - 00001092 _____ () C:\Users\Public\Desktop\Switch Sound File Converter.lnk
2015-01-05 11:29 - 2015-01-05 11:29 - 00000000 ____D () C:\Users\wolf\Documents\Mixpad Projects
2015-01-04 20:52 - 2015-01-04 20:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft
2015-01-04 20:52 - 2015-01-04 20:52 - 00000000 ____D () C:\Program Files\Apowersoft
2015-01-04 20:52 - 2013-02-07 22:44 - 00429816 ____H (Bytescout) C:\Windows\system32\ApowersoftScreenCapturing.dll
2015-01-04 20:52 - 2013-02-07 22:44 - 00261880 ____H (Bytescout) C:\Windows\system32\ApowersoftScreenCapturingFilter.dll
2015-01-04 20:52 - 2013-02-07 22:44 - 00175864 ____H (Bytescout) C:\Windows\system32\ApowersoftVideoMixerFilter.dll
2015-01-04 20:18 - 2015-01-10 18:05 - 00000000 ____D () C:\Users\wolf\Desktop\video isečci
2015-01-02 18:41 - 2015-01-02 18:51 - 1404667392 _____ () C:\Users\wolf\Documents\st mil.avi
2015-01-01 18:37 - 2015-01-01 18:37 - 00000000 ____D () C:\Users\wolf\Documents\VideoPad Projects
2015-01-01 18:24 - 2015-01-09 21:54 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\NCH Software
2015-01-01 18:24 - 2015-01-09 21:54 - 00000000 ____D () C:\Program Files\NCH Software
2015-01-01 18:24 - 2015-01-06 21:48 - 00000000 ____D () C:\ProgramData\NCH Software
2015-01-01 18:24 - 2015-01-01 18:24 - 00001116 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoPad Video Editor.lnk
2015-01-01 14:03 - 2015-01-01 14:03 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Publish Providers
2015-01-01 14:03 - 2015-01-01 14:03 - 00000000 ____D () C:\ProgramData\Sony
2015-01-01 14:01 - 2015-01-01 14:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-01-01 14:00 - 2015-01-01 14:03 - 00000000 ____D () C:\Users\wolf\AppData\Local\Sony
2015-01-01 14:00 - 2015-01-01 14:00 - 00000000 ____D () C:\Program Files\Sony
2015-01-01 13:59 - 2015-01-02 18:39 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Sony
2015-01-01 13:28 - 2015-01-01 13:28 - 00430992 _____ () C:\Users\wolf\Downloads\FLVPlayerSetup-NbttoTSpA.exe
2015-01-01 13:11 - 2015-01-01 13:11 - 00000000 ____D () C:\Users\wolf\.MCTranscodingSDK
2015-01-01 13:03 - 2015-01-01 13:44 - 00000000 ____D () C:\Users\Public\Documents\Lightworks
2015-01-01 13:03 - 2015-01-01 13:03 - 00000000 ____D () C:\ProgramData\Geevs
2014-12-31 20:01 - 2014-12-31 20:01 - 04854328 _____ (NCH Software) C:\Users\wolf\Downloads\vppsetup.exe
2014-12-31 19:50 - 2014-12-31 19:50 - 00012867 _____ () C:\Users\wolf\Documents\My Movie.wlmp
2014-12-31 17:14 - 2014-12-31 17:14 - 00001251 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2014-12-31 17:14 - 2014-12-31 17:14 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2014-12-31 17:13 - 2014-12-31 17:13 - 00001320 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2014-12-31 17:13 - 2014-12-31 17:13 - 00000020 _____ () C:\Windows\přW
2014-12-31 17:11 - 2014-12-31 17:14 - 00000000 ____D () C:\Program Files\Windows Live
2014-12-31 17:11 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-12-31 17:11 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-12-31 17:11 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-12-31 17:10 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-12-31 17:08 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2014-12-31 17:06 - 2015-01-05 19:01 - 00000000 ____D () C:\Users\wolf\AppData\Local\Windows Live
2014-12-31 17:06 - 2014-12-31 17:06 - 01239752 _____ (Microsoft Corporation) C:\Users\wolf\Downloads\wlsetup-webEN (windows esencijal 2012 ).exe
2014-12-31 17:06 - 2014-12-31 17:06 - 00000000 ____D () C:\Program Files\Common Files\Windows Live
2014-12-31 17:05 - 2014-12-31 17:05 - 00373096 _____ () C:\Users\wolf\Downloads\SoftonicDownloader_for_windows-movie-maker-2012.exe
2014-12-31 15:44 - 2014-12-31 15:44 - 00373088 _____ () C:\Users\wolf\Downloads\SoftonicDownloader_for_windows-movie-maker.exe
2014-12-31 15:24 - 2014-12-31 15:24 - 00000000 ____D () C:\temp
2014-12-31 14:57 - 2014-12-31 14:57 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\DivX
2014-12-31 13:50 - 2014-12-31 18:58 - 00000000 ____D () C:\OutputFolder
2014-12-31 13:47 - 2014-12-31 13:49 - 00000000 ____D () C:\Program Files\Ultra Video Splitter
2014-12-31 13:47 - 2014-12-31 13:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultra Video Splitter
2014-12-31 13:47 - 2007-04-12 14:19 - 00129024 _____ () C:\Windows\system32\AVERM.dll
2014-12-31 13:47 - 2006-09-26 13:57 - 00028672 _____ () C:\Windows\system32\AVEQT.dll
2014-12-31 13:43 - 2014-12-31 13:43 - 01200623 _____ () C:\Users\wolf\Downloads\ezsplitter(1).exe
2014-12-31 13:41 - 2014-12-31 13:43 - 00231808 _____ () C:\Users\wolf\Downloads\ezsplitter.exe
2014-12-31 12:09 - 2015-01-05 18:36 - 00000000 ____D () C:\Users\wolf\Documents\VideoOutput
2014-12-31 12:09 - 2014-12-31 12:09 - 00000000 ____D () C:\Users\wolf\Documents\Snapshot
2014-12-31 12:08 - 2014-12-31 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video
2014-12-31 12:08 - 2014-12-31 12:08 - 00000000 ____D () C:\Program Files\Video to Video
2014-12-31 12:04 - 2014-12-31 12:04 - 23279669 _____ (Media Converters ) C:\Users\wolf\Downloads\videotovideo_setup.exe
2014-12-31 11:34 - 2014-12-31 11:39 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Machete Lite
2014-12-31 11:32 - 2015-01-05 11:22 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\avidemux
2014-12-31 11:29 - 2014-12-31 11:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avidemux
2014-12-31 11:29 - 2014-12-31 11:29 - 00000000 ____D () C:\Program Files\Avidemux 2.6
2014-12-31 11:19 - 2014-12-31 11:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Machete Lite
2014-12-31 11:19 - 2014-12-31 11:19 - 00000000 ____D () C:\Program Files\MacheteSoft
2014-12-31 11:16 - 2014-12-31 11:16 - 01834496 _____ () C:\Users\wolf\Downloads\MacheteLiteInst (isecanje videa).msi
2014-12-31 11:07 - 2014-12-30 17:51 - 00043200 _____ (StdLib) C:\Windows\system32\Drivers\{20028c4e-ef35-4336-a227-afedf096d2a7}Gw.sys
2014-12-31 11:00 - 2014-12-31 11:00 - 00000000 ____D () C:\Users\wolf\AppData\Local\WMTools Downloaded Files
2014-12-31 10:59 - 2014-12-31 10:59 - 00000000 ____D () C:\Program Files\Windows Optimizer
2014-12-31 10:59 - 2014-12-31 10:59 - 00000000 ____D () C:\Program Files\Software Update Services
2014-12-31 10:59 - 2014-12-31 10:59 - 00000000 ____D () C:\Program Files\AspInfo
2014-12-31 10:59 - 2008-06-27 10:49 - 00518064 _____ (Codejock Software) C:\Windows\system32\framework.ocx
2014-12-30 21:50 - 2014-12-30 21:50 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\FlvtoConverter
2014-12-30 21:50 - 2014-12-30 21:50 - 00000000 ____D () C:\Users\wolf\AppData\Local\Hotger
2014-12-30 21:48 - 2014-12-30 21:48 - 00988472 _____ (Hotger) C:\Users\wolf\Downloads\FYDLoad_flvto_4.exe
2014-12-30 21:43 - 2014-12-30 21:43 - 00000000 ____D () C:\Windows\system32\QuickTime
2014-12-30 21:43 - 2014-12-30 21:43 - 00000000 ____D () C:\Windows\system32\custom matrices
2014-12-30 21:43 - 2014-12-30 21:43 - 00000000 ____D () C:\Windows\system32\C2MP
2014-12-30 21:43 - 2014-12-30 21:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 - Codec Pack
2014-12-30 21:32 - 2014-12-30 21:34 - 00000000 ____D () C:\Users\wolf\Documents\Freemake
2014-12-30 21:32 - 2014-12-30 21:33 - 00000000 ____D () C:\ProgramData\Freemake
2014-12-30 21:32 - 2014-12-30 21:32 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\RHEng
2014-12-30 21:32 - 2014-12-30 21:32 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2014-12-30 21:32 - 2014-12-30 21:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
2014-12-30 21:32 - 2014-12-30 21:32 - 00000000 ____D () C:\Program Files\Freemake
2014-12-30 21:29 - 2014-12-30 21:30 - 01270544 _____ (Ellora Assets Corporation ) C:\Users\wolf\Downloads\FreemakeVideoConverterSetup.exe
2014-12-30 21:25 - 2014-12-30 21:37 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\BSplayer PRO
2014-12-30 21:25 - 2014-12-30 21:25 - 00001125 _____ () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\BS.Player PRO.lnk
2014-12-30 21:25 - 2014-12-30 21:25 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Webteh
2014-12-30 21:25 - 2014-12-30 21:25 - 00000000 ____D () C:\Program Files\Webteh
2014-12-30 21:21 - 2015-01-01 18:30 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\vlc
2014-12-30 21:21 - 2014-12-30 21:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-12-30 21:20 - 2014-12-30 21:20 - 00000000 ____D () C:\Program Files\VideoLAN
2014-12-30 19:57 - 2014-12-30 19:57 - 00000000 ____D () C:\ProgramData\YTD Video Downloader
2014-12-30 19:55 - 2014-12-30 19:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader
2014-12-30 19:55 - 2014-12-30 19:55 - 00000000 ____D () C:\Program Files\GreenTree Applications
2014-12-30 19:18 - 2014-12-30 19:19 - 58886681 _____ () C:\Users\wolf\Downloads\srecna god.wmv
2014-12-30 16:11 - 2015-01-02 14:48 - 00000000 ____D () C:\Users\wolf\AppData\Local\Microsoft Games
2014-12-29 16:57 - 2014-12-29 16:57 - 00001717 _____ () C:\Users\wolf\Desktop\Risen3 - prečica.lnk
2014-12-29 16:49 - 2014-12-29 16:49 - 00000000 ____D () C:\Users\wolf\AppData\Local\Risen3
2014-12-29 16:21 - 2014-12-29 16:23 - 00000000 ____D () C:\ProgramData\Bluetooth
2014-12-29 16:21 - 2014-12-29 16:21 - 00000000 ____D () C:\Users\wolf\Documents\Bluetooth
2014-12-29 16:21 - 2014-12-29 16:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IVT BlueSoleil
2014-12-29 16:21 - 2014-12-29 16:21 - 00000000 ____D () C:\Program Files\IVT Corporation
2014-12-29 16:19 - 2015-01-09 14:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2014-12-29 16:19 - 2014-12-29 16:19 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Risen 3
2014-12-29 16:18 - 2014-12-29 16:18 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-12-29 16:18 - 2014-12-29 16:18 - 00000000 ____D () C:\Program Files\AGEIA Technologies
2014-12-29 16:18 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-12-29 16:18 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-12-29 16:18 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2014-12-29 16:02 - 2015-01-09 14:42 - 00000000 ____D () C:\Program Files\R.G. Mechanics
2014-12-28 10:30 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-27 22:09 - 2014-12-27 22:09 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-12-27 19:13 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-12-27 19:13 - 2014-08-29 02:44 - 02744320 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-12-27 12:22 - 2014-12-27 21:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems
2014-12-27 12:22 - 2014-12-27 12:22 - 00000000 ____D () C:\Program Files\Common Files\ACD Systems
2014-12-27 12:22 - 2014-12-27 12:22 - 00000000 ____D () C:\Program Files\ACD Systems
2014-12-27 12:20 - 2014-12-27 12:20 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-12-27 12:04 - 2014-12-27 12:04 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-12-27 12:00 - 2014-12-27 12:01 - 00000000 ____D () C:\Users\wolf\AppData\Local\ACD Systems
2014-12-27 12:00 - 2014-12-27 12:00 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\ACD Systems
2014-12-27 11:58 - 2015-01-07 13:02 - 00000000 ____D () C:\Users\wolf\AppData\Local\Downloaded Installations
2014-12-27 11:45 - 2014-12-27 11:45 - 18324562 _____ () C:\Users\wolf\Downloads\MonochromaticMoodsMarkNelson (tema win7).themepack
2014-12-27 11:45 - 2014-12-27 11:45 - 13034045 _____ () C:\Users\wolf\Downloads\Footpaths (tema win7).themepack
2014-12-27 11:44 - 2014-12-27 11:44 - 06447006 _____ () C:\Users\wolf\Downloads\DanubeSunsetsAlinaSerban (tema win7).themepack
2014-12-27 11:38 - 2014-05-08 10:06 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-12-27 11:27 - 2012-08-23 15:48 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-12-27 11:27 - 2012-08-23 15:46 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\terminpt.sys
2014-12-27 11:27 - 2012-08-23 15:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-12-27 11:27 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2014-12-27 11:26 - 2014-12-27 11:29 - 00002117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2014-12-27 11:26 - 2014-12-27 11:29 - 00001945 _____ () C:\Windows\epplauncher.mif
2014-12-27 11:26 - 2013-10-02 01:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-12-27 11:26 - 2013-10-02 01:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-12-27 11:26 - 2013-10-02 01:30 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-12-27 11:26 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-12-27 11:26 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-12-27 11:26 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-12-27 11:26 - 2013-10-02 00:45 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-12-27 11:26 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-12-27 11:26 - 2013-10-02 00:00 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-12-27 11:26 - 2013-10-01 23:53 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-12-27 11:26 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-12-27 11:25 - 2014-12-27 11:29 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2014-12-27 03:13 - 2015-01-11 11:40 - 00253842 _____ () C:\Windows\WindowsUpdate.log
2014-12-27 03:13 - 2014-12-27 03:13 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-12-27 03:13 - 2014-12-27 03:13 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-12-27 03:12 - 2014-12-27 03:12 - 00000000 ____D () C:\Windows\system32\RTCOM
2014-12-27 03:12 - 2014-12-27 03:12 - 00000000 ____D () C:\Program Files\Realtek
2014-12-27 03:12 - 2014-12-27 03:12 - 00000000 _____ () C:\Windows\ativpsrm.bin
2014-12-27 03:12 - 2011-03-07 12:25 - 03296600 ____R (Dolby Laboratories) C:\Windows\system32\R4EEP32A.dll
2014-12-27 03:12 - 2011-03-07 12:25 - 00345944 ____R (Dolby Laboratories) C:\Windows\system32\R4EED32A.dll
2014-12-27 03:12 - 2011-03-07 12:25 - 00102744 ____R (Dolby Laboratories) C:\Windows\system32\R4EEL32A.dll
2014-12-27 03:12 - 2011-03-07 12:25 - 00088408 ____R (Dolby Laboratories) C:\Windows\system32\R4EEA32A.dll
2014-12-27 03:12 - 2011-03-07 12:25 - 00061272 ____R (Dolby Laboratories) C:\Windows\system32\R4EEG32A.dll
2014-12-27 03:11 - 2014-12-27 03:11 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2014-12-27 03:11 - 2009-11-11 17:37 - 00592488 _____ (NVIDIA Corporation) C:\Windows\system32\nvuninst.exe
2014-12-27 03:08 - 2014-12-27 13:41 - 00000000 ____D () C:\Windows\Panther
2014-12-26 23:24 - 2014-12-26 23:24 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-12-26 23:24 - 2014-12-26 23:24 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-12-26 23:19 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-12-26 23:15 - 2014-12-26 23:15 - 00000000 __SHD () C:\Users\wolf\AppData\Local\EmieUserList
2014-12-26 23:15 - 2014-12-26 23:15 - 00000000 __SHD () C:\Users\wolf\AppData\Local\EmieSiteList
2014-12-26 23:15 - 2014-12-26 23:15 - 00000000 __SHD () C:\Users\wolf\AppData\Local\EmieBrowserModeList
2014-12-26 22:38 - 2012-02-11 06:21 - 00317952 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2014-12-26 22:37 - 2014-11-22 02:48 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-26 22:37 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2014-12-26 22:37 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2014-12-26 22:37 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2014-12-26 22:37 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2014-12-26 22:37 - 2014-07-09 02:29 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2014-12-26 22:37 - 2014-07-08 23:30 - 00419992 _____ () C:\Windows\system32\locale.nls
2014-12-26 22:37 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-12-26 22:37 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-12-26 22:37 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-12-26 22:37 - 2012-07-06 20:23 - 00393728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2014-12-26 22:37 - 2011-04-28 04:15 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2014-12-26 22:37 - 2011-03-11 06:39 - 00143744 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2014-12-26 22:37 - 2011-03-11 06:39 - 00117120 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2014-12-26 22:37 - 2011-03-11 06:38 - 00332160 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2014-12-26 22:37 - 2011-03-11 06:38 - 00080256 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2014-12-26 22:37 - 2011-03-11 06:38 - 00022400 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2014-12-26 22:37 - 2011-03-11 06:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2014-12-26 22:37 - 2011-03-11 06:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2014-12-26 22:37 - 2011-03-11 04:48 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-12-26 22:32 - 2014-12-26 22:32 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Nitro
2014-12-26 22:29 - 2014-12-26 22:29 - 00002519 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nitro Pro 9.lnk
2014-12-26 22:29 - 2013-12-17 15:05 - 00027144 _____ (Nitro PDF Software) C:\Windows\system32\nitrolocalmon9.dll
2014-12-26 22:29 - 2013-12-17 15:05 - 00018440 _____ (Nitro PDF Software) C:\Windows\system32\nitrolocalui9.dll
2014-12-26 22:28 - 2014-12-26 22:28 - 00000000 ____D () C:\ProgramData\Nitro
2014-12-26 22:28 - 2014-12-26 22:28 - 00000000 ____D () C:\Program Files\Nitro
2014-12-26 22:28 - 2014-12-26 22:28 - 00000000 ____D () C:\Program Files\Common Files\Nitro
2014-12-26 22:24 - 2014-12-26 22:24 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Downloaded Installations
2014-12-26 22:22 - 2014-12-26 22:22 - 00001323 _____ () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ProfiPreferans.com.lnk
2014-12-26 22:19 - 2014-12-27 09:59 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-12-26 22:19 - 2014-12-26 23:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-12-26 22:18 - 2014-12-26 22:37 - 00000000 ____D () C:\Users\wolf\AppData\Local\Deployment
2014-12-26 22:18 - 2014-12-26 22:18 - 00000000 ____D () C:\Users\wolf\AppData\Local\Apps\2.0
2014-12-26 22:16 - 2014-12-26 22:16 - 00000000 ____D () C:\Program Files\GTWorks
2014-12-26 22:15 - 2014-12-26 22:14 - 00008192 _____ () C:\Windows\system32\srvany.exe
2014-12-26 22:00 - 2014-12-26 22:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2014-12-26 22:00 - 2014-12-26 22:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-12-26 21:57 - 2014-12-26 21:57 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2014-12-26 21:56 - 2014-12-31 17:13 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-12-26 21:56 - 2014-12-26 21:56 - 06953496 _____ (Microsoft Corporation) C:\Users\wolf\Downloads\silverlight5.exe
2014-12-26 21:56 - 2014-12-26 21:56 - 00000000 ____D () C:\Windows\PCHEALTH
2014-12-26 21:56 - 2014-12-26 21:56 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Macromedia
2014-12-26 21:56 - 2014-12-26 21:56 - 00000000 ____D () C:\Users\wolf\AppData\Local\Macromedia
2014-12-26 21:56 - 2014-12-26 21:56 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2014-12-26 21:52 - 2014-12-26 21:52 - 00000000 __RHD () C:\MSOCache
2014-12-26 21:44 - 2014-12-31 17:14 - 00000000 ____D () C:\Windows\sr-Latn-CS
2014-12-26 21:43 - 2014-12-26 21:43 - 00000000 ____D () C:\Windows\system32\Drivers\sr-Latn-CS
2014-12-26 21:12 - 2014-12-26 21:12 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 8
2014-12-26 21:11 - 2014-12-26 21:11 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-12-26 21:10 - 2014-12-27 22:17 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-26 21:10 - 2014-12-26 21:56 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-12-26 21:10 - 2014-12-26 21:10 - 00000000 ____D () C:\Users\wolf\AppData\Local\Microsoft Help
2014-12-26 21:04 - 2014-12-26 21:05 - 00244328 _____ () C:\Users\wolf\Downloads\Firefox Setup Stub 34.0.5.exe
2014-12-26 21:03 - 2015-01-11 11:30 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-26 21:03 - 2015-01-08 17:21 - 00000000 ____D () C:\Users\wolf\AppData\Local\Adobe
2014-12-26 21:03 - 2014-12-26 21:03 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-12-26 21:03 - 2014-12-26 21:03 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-12-26 21:03 - 2014-12-26 21:03 - 00000000 ____D () C:\Windows\system32\Macromed
2014-12-26 21:03 - 2014-10-18 02:32 - 03209728 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-12-26 21:03 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-12-26 21:03 - 2014-07-07 02:40 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-12-26 21:03 - 2014-07-07 02:40 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-12-26 21:03 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-12-26 20:42 - 2012-07-26 04:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-12-26 20:42 - 2012-07-26 04:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-12-26 20:42 - 2012-07-26 04:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-12-26 20:42 - 2012-07-26 04:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-12-26 20:42 - 2012-07-26 04:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-12-26 20:42 - 2012-07-26 03:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-12-26 20:42 - 2012-07-26 03:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-12-26 20:42 - 2012-06-02 15:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-12-26 20:41 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-12-26 20:41 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-12-26 20:41 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-12-26 20:41 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-12-26 20:40 - 2012-03-01 06:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2014-12-26 20:40 - 2012-03-01 06:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-12-26 20:36 - 2014-12-26 20:38 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-26 20:36 - 2014-11-27 16:40 - 109818608 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-26 20:34 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-12-26 20:34 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-12-26 20:24 - 2014-12-26 20:24 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-26 20:24 - 2014-12-26 20:24 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-26 20:20 - 2014-12-04 05:38 - 00728576 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-26 20:20 - 2014-12-04 05:38 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-26 20:20 - 2014-12-04 05:38 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-26 20:20 - 2014-12-04 05:38 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-26 20:20 - 2014-12-04 05:38 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-26 20:20 - 2014-12-04 05:38 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-26 20:20 - 2014-12-04 05:34 - 00873984 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-26 20:20 - 2014-12-02 00:28 - 01160872 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-26 20:20 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-26 20:20 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-12-26 20:20 - 2011-12-30 06:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2014-12-26 20:19 - 2014-09-04 06:06 - 00373248 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-12-26 20:19 - 2014-06-03 10:30 - 00101824 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-12-26 20:19 - 2014-06-03 10:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-12-26 20:19 - 2014-06-03 10:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-12-26 20:19 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2014-12-26 20:19 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2014-12-26 20:19 - 2012-10-03 17:42 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2014-12-26 20:19 - 2012-10-03 17:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2014-12-26 20:19 - 2012-10-03 17:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2014-12-26 20:19 - 2012-10-03 17:42 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2014-12-26 20:19 - 2012-10-03 17:40 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2014-12-26 20:19 - 2012-10-03 17:29 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2014-12-26 20:19 - 2012-10-03 16:21 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2014-12-26 20:12 - 2013-11-27 02:19 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-12-26 20:12 - 2013-11-27 02:18 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-12-26 20:12 - 2013-11-27 02:18 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-12-26 20:12 - 2013-11-27 02:18 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-12-26 20:12 - 2013-11-27 02:18 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-12-26 20:12 - 2013-11-27 02:18 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-12-26 20:12 - 2013-07-12 11:07 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-12-26 20:12 - 2012-01-04 09:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2014-12-26 20:12 - 2011-10-26 05:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-12-26 20:12 - 2011-08-27 05:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2014-12-26 20:12 - 2011-06-15 09:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll
2014-12-26 20:12 - 2011-06-15 09:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2014-12-26 20:12 - 2011-06-15 09:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2014-12-26 20:12 - 2011-06-15 09:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2014-12-26 20:12 - 2011-06-15 09:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2014-12-26 20:12 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-12-26 20:07 - 2015-01-08 17:21 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Adobe
2014-12-26 20:07 - 2014-12-26 20:07 - 00001413 _____ () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-26 19:59 - 2014-12-26 19:59 - 19749376 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 12836864 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 04299264 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-26 19:59 - 2014-12-26 19:59 - 02277888 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 02052096 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-26 19:59 - 2014-12-26 19:59 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-26 19:59 - 2014-12-26 19:59 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-12-26 19:59 - 2014-12-26 19:59 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00342200 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-12-26 19:59 - 2014-12-26 19:59 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-12-26 19:59 - 2014-12-26 19:59 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-12-26 19:59 - 2014-12-26 19:59 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-26 19:59 - 2014-12-26 19:59 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-12-26 19:59 - 2014-12-26 19:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-12-26 19:59 - 2014-12-26 19:59 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-12-26 19:59 - 2014-12-26 19:59 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-12-26 19:59 - 2014-12-26 19:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-12-26 19:59 - 2014-12-26 19:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-12-26 19:59 - 2014-12-26 19:59 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-26 19:58 - 2014-12-26 19:58 - 01293216 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-12-26 19:58 - 2014-12-26 19:58 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-12-26 19:58 - 2014-12-26 19:58 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-12-26 19:58 - 2014-12-26 19:58 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-12-26 19:58 - 2014-12-26 19:58 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
2014-12-26 19:58 - 2014-12-26 19:58 - 00000000 ____D () C:\Program Files\Unlocker
2014-12-26 19:57 - 2014-12-26 19:57 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2014-12-26 19:57 - 2014-12-26 19:57 - 00002265 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Uninstaller PRO 11.lnk
2014-12-26 19:57 - 2014-12-26 19:57 - 00000000 ____D () C:\Users\wolf\AppData\Local\Innovative Solutions
2014-12-26 19:57 - 2014-12-26 19:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Uninstaller PRO
2014-12-26 19:57 - 2014-12-26 19:57 - 00000000 ____D () C:\ProgramData\Innovative Solutions
2014-12-26 19:57 - 2014-12-26 19:57 - 00000000 ____D () C:\Program Files\Innovative Solutions
2014-12-26 19:57 - 2014-12-26 19:57 - 00000000 ____D () C:\Program Files\Common Files\Innovative Solutions
2014-12-26 19:57 - 2014-12-26 19:57 - 00000000 ____D () C:\Innovative Solutions
2014-12-26 19:57 - 2009-11-05 12:24 - 00042496 _____ () C:\Windows\system32\AdvUninstCPL.cpl
2014-12-26 19:54 - 2015-01-11 10:48 - 00000890 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-12-26 19:54 - 2015-01-10 19:59 - 00000894 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-12-26 19:54 - 2014-12-26 19:54 - 01158144 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 01080832 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00906240 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-12-26 19:54 - 2014-12-26 19:54 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-12-26 19:52 - 2014-12-26 19:52 - 01505280 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-12-26 19:35 - 2014-12-26 19:35 - 01544680 _____ (Object Browser) C:\Users\wolf\AppData\Roaming\FGFIR.exe
2014-12-26 19:33 - 2014-12-26 19:53 - 00000000 ____D () C:\Program Files\globalUpdate
2014-12-26 19:33 - 2014-12-26 19:33 - 01865192 _____ (Object Browser) C:\Users\wolf\AppData\Roaming\IBBMII.exe
2014-12-26 19:33 - 2014-12-26 19:33 - 00000000 ____D () C:\Users\wolf\AppData\Local\globalUpdate
2014-12-26 19:32 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-12-26 19:32 - 2014-10-03 02:46 - 01179648 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-12-26 19:32 - 2014-10-03 02:46 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-26 19:32 - 2014-10-03 02:46 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-12-26 19:32 - 2014-10-03 02:46 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-12-26 19:32 - 2014-10-03 02:46 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-12-26 19:32 - 2012-06-06 06:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2014-12-26 19:32 - 2011-05-04 05:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2014-12-26 19:32 - 2011-05-04 05:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2014-12-26 19:32 - 2011-05-04 05:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2014-12-26 19:32 - 2011-05-04 05:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2014-12-26 19:32 - 2011-05-04 05:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2014-12-26 19:32 - 2011-05-04 05:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2014-12-26 19:32 - 2011-05-04 05:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2014-12-26 19:32 - 2011-05-04 05:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2014-12-26 19:32 - 2011-05-04 05:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2014-12-26 19:31 - 2014-02-04 03:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-12-26 19:31 - 2014-02-04 03:06 - 00149952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-12-26 19:31 - 2014-02-04 03:06 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-12-26 19:31 - 2014-02-04 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-12-26 19:31 - 2012-08-22 18:05 - 00712048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2014-12-26 19:31 - 2012-07-04 20:45 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2014-12-26 19:29 - 2014-11-11 04:21 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-12-26 19:29 - 2014-11-11 04:13 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-12-26 19:29 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-12-26 19:27 - 2014-11-11 02:32 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2014-12-26 19:27 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-12-26 19:27 - 2012-05-02 05:29 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-12-26 19:26 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-12-26 19:26 - 2013-04-26 06:04 - 00496640 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-12-26 19:25 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-12-26 19:24 - 2014-12-26 19:24 - 00000000 ____D () C:\Users\wolf\AppData\Local\Disc_Soft_Ltd
2014-12-26 19:24 - 2014-12-26 19:24 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-12-26 19:24 - 2014-12-26 19:24 - 00000000 ____D () C:\ProgramData\IePluginServices
2014-12-26 19:24 - 2014-01-24 03:00 - 01213376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-12-26 19:23 - 2014-12-26 19:41 - 00000000 ____D () C:\ProgramData\TEMP
2014-12-26 19:23 - 2014-07-17 02:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-12-26 19:23 - 2014-07-17 02:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-12-26 19:23 - 2014-07-16 03:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-12-26 19:23 - 2014-07-16 03:56 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-12-26 19:23 - 2014-07-16 03:16 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-12-26 19:23 - 2014-04-05 03:16 - 01310144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-12-26 19:23 - 2014-04-05 03:16 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-12-26 19:23 - 2014-04-05 03:16 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-12-26 19:23 - 2012-04-26 05:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2014-12-26 19:23 - 2012-04-26 05:41 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2014-12-26 19:22 - 2014-12-26 19:22 - 00000000 ____D () C:\Users\wolf\AppData\Local\CrashRpt
2014-12-26 19:21 - 2014-06-25 02:37 - 12877312 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-12-26 19:21 - 2014-04-25 03:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-12-26 19:21 - 2014-03-04 11:39 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-12-26 19:21 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-12-26 19:21 - 2013-08-05 02:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2014-12-26 19:21 - 2012-05-14 05:23 - 00769024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-12-26 19:21 - 2011-05-24 11:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2014-12-26 19:18 - 2014-12-26 19:18 - 00000792 _____ () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-12-26 19:18 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-12-26 19:18 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-12-26 19:18 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-12-26 19:18 - 2014-01-28 03:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-12-26 19:18 - 2013-07-03 04:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-12-26 19:18 - 2013-07-03 04:36 - 00025728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-12-26 19:18 - 2013-03-19 04:33 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2014-12-26 19:18 - 2013-02-12 04:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2014-12-26 19:17 - 2014-12-26 19:18 - 00000000 ____D () C:\Program Files\uTorrent
2014-12-26 19:17 - 2013-10-05 02:52 - 01168896 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-12-26 19:17 - 2013-10-05 02:52 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-12-26 19:17 - 2013-10-05 02:52 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-12-26 19:17 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-12-26 19:17 - 2013-06-25 23:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-12-26 19:17 - 2012-11-28 23:57 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-12-26 19:17 - 2012-11-28 23:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-12-26 19:17 - 2012-11-28 23:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-12-26 19:16 - 2015-01-10 14:01 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\uTorrent
2014-12-26 19:16 - 2013-02-27 05:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-12-26 19:15 - 2013-10-12 02:57 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-12-26 19:15 - 2013-10-12 02:56 - 00681472 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-12-26 19:15 - 2013-10-12 02:56 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-12-26 19:15 - 2013-10-12 02:55 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2014-12-26 19:13 - 2014-04-12 03:07 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-12-26 19:13 - 2014-04-12 03:06 - 00872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-12-26 19:13 - 2014-04-12 03:06 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-12-26 19:13 - 2014-04-12 03:06 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2014-12-26 19:13 - 2014-04-12 03:06 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-12-26 19:13 - 2014-04-12 03:06 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2014-12-26 19:13 - 2014-04-12 03:06 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-12-26 19:13 - 2014-04-12 03:06 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2014-12-26 19:13 - 2014-04-12 03:06 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2014-12-26 19:13 - 2014-04-12 03:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 03:03 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 02:17 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2014-12-26 19:13 - 2014-04-12 02:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 02:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 02:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-12-26 19:13 - 2014-04-12 02:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-12-26 19:13 - 2014-03-04 11:42 - 03974080 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2014-12-26 19:13 - 2014-03-04 11:42 - 03918784 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-12-26 19:13 - 2014-03-04 10:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-12-26 19:13 - 2014-03-04 10:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-12-26 19:13 - 2014-03-04 10:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-12-26 19:13 - 2014-03-04 10:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-12-26 19:13 - 2014-03-04 10:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-12-26 19:13 - 2014-03-04 10:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-12-26 19:13 - 2014-03-04 10:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-12-26 19:11 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-12-26 19:11 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-12-26 19:11 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-12-26 19:11 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-12-26 19:11 - 2012-11-02 06:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2014-12-26 19:10 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-12-26 19:10 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-12-26 19:10 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-12-26 19:10 - 2013-01-24 05:47 - 00196328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2014-12-26 19:10 - 2011-08-17 05:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2014-12-26 19:10 - 2011-08-17 05:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2014-12-26 19:09 - 2014-07-14 02:42 - 00654848 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-12-26 19:09 - 2014-07-14 02:42 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2014-12-26 19:09 - 2013-08-28 01:57 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2014-12-26 19:09 - 2012-12-07 13:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2014-12-26 19:09 - 2012-12-07 13:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2014-12-26 19:09 - 2012-12-07 11:46 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2014-12-26 19:09 - 2012-12-07 11:46 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2014-12-26 19:09 - 2012-08-21 21:12 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2014-12-26 19:08 - 2012-09-25 23:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2014-12-26 19:07 - 2014-12-26 21:56 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-12-26 19:07 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-26 19:07 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-12-26 19:07 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-12-26 19:07 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-12-26 19:07 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-12-26 19:07 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-12-26 19:07 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-12-26 19:07 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-12-26 19:07 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-12-26 19:07 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-12-26 19:07 - 2012-07-04 22:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2014-12-26 19:07 - 2012-07-04 22:14 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2014-12-26 19:07 - 2012-07-04 22:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2014-12-26 19:06 - 2012-10-09 18:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2014-12-26 19:06 - 2012-10-09 18:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2014-12-26 19:06 - 2012-03-17 08:27 - 00056176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2014-12-26 19:06 - 2011-10-15 06:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2014-12-26 19:05 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-12-26 19:05 - 2014-06-06 10:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-12-26 19:05 - 2014-05-30 07:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-12-26 19:05 - 2014-03-26 15:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-12-26 19:05 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-12-26 19:05 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-12-26 19:05 - 2013-10-04 02:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-12-26 19:05 - 2013-10-04 02:17 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-12-26 19:05 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-26 19:05 - 2013-06-06 05:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-12-26 19:05 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-12-26 19:05 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-12-26 19:05 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-12-26 19:05 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-12-26 19:05 - 2011-07-09 04:15 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-12-26 19:03 - 2014-12-31 12:13 - 00249488 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-12-26 19:02 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-12-26 19:02 - 2014-08-23 02:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-12-26 19:02 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-12-26 19:02 - 2013-05-11 04:30 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-12-26 19:02 - 2013-05-11 04:29 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-12-26 19:02 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2014-12-26 19:02 - 2012-05-05 08:46 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2014-12-26 19:02 - 2011-12-16 08:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2014-12-26 19:00 - 2014-10-03 02:44 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-12-26 19:00 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-12-26 19:00 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-12-26 19:00 - 2014-10-03 02:44 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-12-26 19:00 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-12-26 19:00 - 2014-08-21 07:34 - 01236992 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-12-26 19:00 - 2014-08-21 07:31 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-12-26 19:00 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-12-26 19:00 - 2014-06-12 08:22 - 00730560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-12-26 19:00 - 2014-06-12 08:22 - 00219072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-12-26 19:00 - 2014-06-12 08:18 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-12-26 19:00 - 2012-02-17 06:30 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-12-26 19:00 - 2012-02-17 05:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-12-26 19:00 - 2011-11-17 06:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-12-26 19:00 - 2011-06-16 05:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2014-12-26 18:59 - 2014-10-10 01:45 - 02379264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-12-26 18:59 - 2014-06-18 02:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-12-26 18:52 - 2014-12-26 21:09 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\DAEMON Tools Ultra
2014-12-26 18:52 - 2014-12-26 18:52 - 00024704 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtscsibus.sys
2014-12-26 18:52 - 2014-12-26 18:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Ultra
2014-12-26 18:51 - 2014-12-26 18:52 - 00000000 ____D () C:\Program Files\DAEMON Tools Ultra
2014-12-26 18:50 - 2014-12-26 18:51 - 00000000 ____D () C:\ProgramData\DAEMON Tools Ultra
2014-12-26 18:50 - 2014-12-26 18:50 - 00000000 ____D () C:\Program Files\Disc Soft Ltd
2014-12-26 18:48 - 2014-10-14 02:53 - 00136632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-12-26 18:48 - 2014-10-14 02:50 - 00526848 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-12-26 18:48 - 2014-10-14 02:50 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-12-26 18:48 - 2014-10-14 02:49 - 01062400 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-12-26 18:48 - 2014-10-14 02:49 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-12-26 18:48 - 2014-10-14 02:46 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-12-26 18:48 - 2014-07-16 03:56 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-12-26 18:48 - 2014-07-16 03:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-12-26 18:48 - 2014-04-12 03:10 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-12-26 18:48 - 2014-04-12 03:06 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-12-26 18:48 - 2014-04-12 03:06 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2014-12-26 18:48 - 2014-04-12 03:06 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-12-26 18:48 - 2014-04-12 03:06 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-12-26 18:48 - 2014-04-12 03:06 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-12-26 18:48 - 2014-04-12 03:04 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2014-12-26 18:48 - 2014-03-04 11:39 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-12-26 18:48 - 2014-03-04 11:39 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-12-26 18:48 - 2013-07-09 07:16 - 00369848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-12-26 18:48 - 2013-07-04 12:59 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2014-12-26 18:48 - 2013-07-04 12:54 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-12-26 18:48 - 2013-07-04 11:01 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2014-12-26 18:46 - 2015-01-10 14:17 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-26 18:46 - 2015-01-10 10:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-12-26 18:46 - 2014-12-26 18:46 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\SUPERAntiSpyware.com
2014-12-26 18:45 - 2014-12-26 18:45 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\WinRAR
2014-12-26 18:45 - 2014-12-26 18:45 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-12-26 18:43 - 2014-12-31 14:58 - 00000000 ____D () C:\Users\wolf\Documents\Screen Recording Suite
2014-12-26 18:43 - 2012-10-08 19:53 - 00026080 _____ (Wondershare) C:\Windows\system32\Drivers\Apowersoft_AudioDevice.sys
2014-12-26 18:42 - 2014-12-26 18:42 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-12-26 18:42 - 2014-12-26 18:42 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Apowersoft
2014-12-26 18:42 - 2014-12-26 18:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-12-26 18:42 - 2014-12-26 18:42 - 00000000 ____D () C:\Program Files\WinRAR
2014-12-26 18:39 - 2014-12-26 18:39 - 00000000 ____D () C:\Program Files\CCleaner
2014-12-26 18:34 - 2014-12-26 21:46 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-12-26 18:34 - 2014-12-26 21:46 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-12-26 18:34 - 2014-12-26 21:07 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-26 18:34 - 2014-12-26 21:07 - 00000000 ____D () C:\Users\wolf\AppData\Local\Mozilla
2014-12-26 18:34 - 2014-12-26 18:36 - 00000000 ____D () C:\Users\wolf\AppData\Roaming\Mozilla
2014-12-26 18:34 - 2014-12-26 18:34 - 00000000 ____D () C:\ProgramData\Mozilla
2014-12-26 18:30 - 2014-05-14 17:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-12-26 18:30 - 2014-05-14 17:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-12-26 18:30 - 2014-05-14 17:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-12-26 18:30 - 2014-05-14 17:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-12-26 18:30 - 2014-05-14 17:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-12-26 18:30 - 2014-05-14 17:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-12-26 18:30 - 2014-05-14 17:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-12-26 18:30 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-12-26 18:30 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-12-26 18:26 - 2015-01-06 20:20 - 00007617 _____ () C:\Windows\system32\RaCoInst.log
2014-12-26 18:25 - 2015-01-10 11:50 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-12-26 18:24 - 2014-12-28 13:00 - 00109280 _____ () C:\Users\wolf\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-26 18:18 - 2015-01-06 14:34 - 00000000 ____D () C:\Users\wolf
2014-12-26 18:18 - 2014-12-31 13:38 - 00000000 ____D () C:\Users\wolf\AppData\Local\VirtualStore
2014-12-26 18:18 - 2014-12-26 18:18 - 00000020 ___SH () C:\Users\wolf\ntuser.ini
2014-12-26 18:18 - 2010-11-20 22:29 - 02755072 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll.backup
2014-12-26 18:18 - 2009-07-14 05:42 - 00000000 ___RD () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-12-26 18:18 - 2009-07-14 05:37 - 00000000 ___RD () C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-12-26 18:18 - 2009-07-14 02:16 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll.backup
2014-12-26 18:18 - 2009-07-14 02:16 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\themeservice.dll.backup
2014-12-26 18:17 - 2014-12-26 18:17 - 00000000 __SHD () C:\Recovery
2014-12-26 10:49 - 2015-01-05 18:00 - 00000000 ____D () C:\Users\wolf\Desktop\Desktop fascikla

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-11 10:53 - 2009-07-14 05:34 - 00023904 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-11 10:53 - 2009-07-14 05:34 - 00023904 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-11 10:50 - 2010-11-20 22:01 - 00785302 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-11 10:46 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-10 14:43 - 2009-07-14 05:46 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-01-06 20:10 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2015-01-06 19:54 - 2009-07-14 03:37 - 00000000 __RHD () C:\Users\Public\Libraries
2015-01-06 16:59 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-06 14:34 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\wfp
2015-01-06 14:32 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\registration
2014-12-31 19:02 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\LiveKernelReports
2014-12-31 17:19 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-12-31 17:11 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-12-31 17:05 - 2009-07-14 03:37 - 00000000 ___RD () C:\Users\Public
2014-12-31 12:52 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache
2014-12-31 11:07 - 2009-07-14 03:04 - 00000580 _____ () C:\Windows\win.ini
2014-12-31 11:02 - 2010-11-21 01:46 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-12-31 10:56 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Resources
2014-12-29 16:20 - 2009-07-14 03:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-12-28 21:37 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2014-12-28 10:24 - 2009-07-14 05:33 - 00408064 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-12-27 03:13 - 2009-07-14 05:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-12-27 03:10 - 2010-11-21 01:46 - 00000000 ____D () C:\Windows\CSC
2014-12-27 03:08 - 2009-07-14 05:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-12-27 03:08 - 2009-07-14 05:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-12-26 22:11 - 2010-11-21 01:46 - 00000000 ____D () C:\Windows\ShellNew
2014-12-26 21:59 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\MSBuild
2014-12-26 21:44 - 2010-11-21 01:46 - 00000000 ____D () C:\Program Files\Windows Journal
2014-12-26 21:44 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-12-26 21:44 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-12-26 21:44 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Defender
2014-12-26 21:44 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\DVD Maker
2014-12-26 21:44 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\System
2014-12-26 21:43 - 2010-11-21 01:38 - 00000000 ____D () C:\Windows\system32\WCN
2014-12-26 20:24 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\AppCompat
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-TW
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-HK
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-CN
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\tr-TR
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\sv-SE
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ru-RU
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pt-PT
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pt-BR
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pl-PL
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\nl-NL
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\nb-NO
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ko-KR
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ja-JP
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\it-IT
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\hu-HU
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\fr-FR
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\fi-FI
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\el-GR
2014-12-26 20:04 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\de-DE
2014-12-26 19:33 - 2009-07-14 03:37 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-12-26 18:25 - 2009-07-14 05:52 - 00000000 ____D () C:\Windows\system32\restore
2014-12-26 18:18 - 2010-11-20 22:29 - 02755072 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2014-12-26 18:18 - 2009-07-14 00:40 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2014-12-26 18:18 - 2009-07-14 00:39 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\themeservice.dll

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-01-04 12:48

==================== End Of Log ============================
https://www.mycity.rs/must-login.png

Dopuna: 11 Jan 2015 12:11

ovaj mystartsearch mi pravi probleme

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Arrow Korak 1

Idi u Start -> Control Panel -> Programs and Features i deinstaliraj sljedeće programe:

YTD Video Downloader 4.8.8



Arrow Korak 2

Otvori Notepad i iskopiraj sljedeći tekst koji se nalazi unutar Kod polja.

R1 {20028c4e-ef35-4336-a227-afedf096d2a7}Gw; C:\Windows\System32\drivers\{20028c4e-ef35-4336-a227-afedf096d2a7}Gw.sys [43200 2014-12-30] (StdLib)
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\...\MountPoints2: {4a06256a-8d35-11e4-a9fd-f9c4027cb097} - H:\SETUP.EXE
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\...\MountPoints2: {4a06265d-8d35-11e4-a9fd-f9c4027cb097} - I:\SETUP.EXE
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type=ds&ts=14196.....8709B1D&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type=ds&ts=14196.....8709B1D&q={searchTerms}
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://services.freshy.com/general/newhometab.php?.....1183&guid={B4B46579-5EDC-47F5-A59A-0A56C61F4F42}&i=
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=141961822.....0_88709B1D
Toolbar: HKU\S-1-5-21-3743286084-892125646-1870079314-1000 -> No Name - {F26029A9-4D07-4638-A44A-1A94386F812C} - No File
FF Plugin: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF user.js: detected! => C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default\user.js
S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-26] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-26] (globalUpdate) [File not signed]
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [715656 2014-12-26] (Cherished Technololgy LIMITED)
R2 WindowsOptimizer_P4; C:\Program Files\Windows Optimizer\P4\optimizer.exe [2966136 2014-12-13] (MicroTools)
C:\ProgramData\WindowsMangerProtect
C:\Program Files\globalUpdate
C:\ProgramData\IePluginServices
C:\Windows\System32\drivers\{20028c4e-ef35-4336-a227-afedf096d2a7}Gw.sys
C:\Program Files\Windows Optimizer
C:\ProgramData\YTD Video Downloader
C:\Program Files\GreenTree Application
EmptyTemp:


U okviru Notepad-a klikni na File --> Save As
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se fixlog.txt, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt).




Arrow Korak 3

Preuzmi "Xplode"-ov AdwCleaner i sačuvaj ga na Desktop
Dvoklikom pokreni program.
u EULA prozoru klikni na I agree.
Klikni na dugme Scan i sačekaj da se završi skeniranje.
Klikni na dugme Clean i pričekaj da program završi.
Program će zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni OK kao potvrdu.
Na sljedeća dva prozora koja se otvore (Informations i Restart required ) klikni OK

Računar će se restartovati, a potom otvoriti Notepad (C:\AdwCleaner[S0].txt) sa izvještajem.
Sačuvaj taj izvještaj na Desktop i okači ga uz poruku koristeći opciju "Prikači fajl"

Napomena: Izvještaj ce takođe biti sačuvan na C:\Adwcleaner\AdwCleaner[S0].txt

offline
  • Pridružio: 01 Mar 2008
  • Poruke: 245

Napisano: 11 Jan 2015 17:36

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-01-2015
Ran by wolf at 2015-01-11 16:59:53 Run:1
Running from C:\Users\wolf\Desktop
Loaded Profile: wolf (Available profiles: wolf & Administrator)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
R1 {20028c4e-ef35-4336-a227-afedf096d2a7}Gw; C:\Windows\System32\drivers\{20028c4e-ef35-4336-a227-afedf096d2a7}Gw.sys [43200 2014-12-30] (StdLib)
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\...\MountPoints2: {4a06256a-8d35-11e4-a9fd-f9c4027cb097} - H:\SETUP.EXE
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\...\MountPoints2: {4a06265d-8d35-11e4-a9fd-f9c4027cb097} - I:\SETUP.EXE
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type=ds&ts=14196.....8709B1D&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type=ds&ts=14196.....8709B1D&q={searchTerms}
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://services.freshy.com/general/newhometab.php?.....1183&guid={B4B46579-5EDC-47F5-A59A-0A56C61F4F42}&i=
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=141961822.....0_88709B1D
Toolbar: HKU\S-1-5-21-3743286084-892125646-1870079314-1000 -> No Name - {F26029A9-4D07-4638-A44A-1A94386F812C} - No File
FF Plugin: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF user.js: detected! => C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default\user.js
S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-26] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-26] (globalUpdate) [File not signed]
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [715656 2014-12-26] (Cherished Technololgy LIMITED)
R2 WindowsOptimizer_P4; C:\Program Files\Windows Optimizer\P4\optimizer.exe [2966136 2014-12-13] (MicroTools)
C:\ProgramData\WindowsMangerProtect
C:\Program Files\globalUpdate
C:\ProgramData\IePluginServices
C:\Windows\System32\drivers\{20028c4e-ef35-4336-a227-afedf096d2a7}Gw.sys
C:\Program Files\Windows Optimizer
C:\ProgramData\YTD Video Downloader
C:\Program Files\GreenTree Application
EmptyTemp:
*****************

{20028c4e-ef35-4336-a227-afedf096d2a7}Gw => Service stopped successfully.
{20028c4e-ef35-4336-a227-afedf096d2a7}Gw => Service deleted successfully.
"HKU\S-1-5-21-3743286084-892125646-1870079314-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4a06256a-8d35-11e4-a9fd-f9c4027cb097}" => Key deleted successfully.
HKCR\CLSID\{4a06256a-8d35-11e4-a9fd-f9c4027cb097} => Key not found.
"HKU\S-1-5-21-3743286084-892125646-1870079314-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4a06265d-8d35-11e4-a9fd-f9c4027cb097}" => Key deleted successfully.
HKCR\CLSID\{4a06265d-8d35-11e4-a9fd-f9c4027cb097} => Key not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully.
HKU\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{F26029A9-4D07-4638-A44A-1A94386F812C} => value deleted successfully.
HKCR\CLSID\{F26029A9-4D07-4638-A44A-1A94386F812C} => Key not found.
"HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10" => Key deleted successfully.
C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll => Moved successfully.
"HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4" => Key deleted successfully.
C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll not found.
C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default\user.js => Moved successfully.
globalUpdate => Service deleted successfully.
globalUpdatem => Service deleted successfully.
IePluginServices => Service stopped successfully.
IePluginServices => Service deleted successfully.
WindowsOptimizer_P4 => Service stopped successfully.
WindowsOptimizer_P4 => Service deleted successfully.
C:\ProgramData\WindowsMangerProtect => Moved successfully.
C:\Program Files\globalUpdate => Moved successfully.
C:\ProgramData\IePluginServices => Moved successfully.
C:\Windows\System32\drivers\{20028c4e-ef35-4336-a227-afedf096d2a7}Gw.sys => Moved successfully.
C:\Program Files\Windows Optimizer => Moved successfully.
"C:\ProgramData\YTD Video Downloader" => File/Directory not found.
"C:\Program Files\GreenTree Application" => File/Directory not found.
EmptyTemp: => Removed 288 MB temporary data.


The system needed a reboot.

==== End of Fixlog 17:00:25 ====
https://www.mycity.rs/must-login.png

Dopuna: 11 Jan 2015 18:03

a koči i dalje, evo kako to izgleda (koristim traku za brzo pokretanje)

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

U koraku br.3 trebalo je da postaviš C:\AdwCleaner[S0].txt, a ne sam AdwCleaner.exe

offline
  • Pridružio: 01 Mar 2008
  • Poruke: 245

# AdwCleaner v4.107 - Report created 11/01/2015 at 17:28:08
# Updated 07/01/2015 by Xplode
# Database : 2014-12-21.4 [Local]
# Operating System : Windows 7 Ultimate Service Pack 1 (32 bits)
# Username : wolf - WOLF-PC
# Running from : C:\Users\wolf\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : WindowsMangerProtect
[#] Service Deleted : KMService

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\NCH Software
Folder Deleted : C:\Program Files\NCH Software
Folder Deleted : C:\Users\wolf\AppData\Local\globalUpdate
Folder Deleted : C:\Users\wolf\AppData\Local\CrashRpt
Folder Deleted : C:\Users\wolf\AppData\Roaming\NCH Software
Folder Deleted : C:\Users\wolf\AppData\Roaming\RHEng
File Deleted : C:\Windows\system32\srvany.exe

***** [ Scheduled Tasks ] *****

Task Deleted : globalUpdateUpdateTaskMachineCore
Task Deleted : globalUpdateUpdateTaskMachineUA

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Key Deleted : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices
Key Deleted : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Key Deleted : HKCU\Software\ad76a6098df431046ffdf41b1a2ed40a
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655515523}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666516623}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DEDAF650-12B8-48F5-A843-BBA100716106}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\GlobalUpdate
Key Deleted : HKCU\Software\Goobzo
Key Deleted : HKCU\Software\InstalledBrowserExtensions
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\SupHpUISoft
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\GlobalUpdate
Key Deleted : HKLM\SOFTWARE\InstalledBrowserExtensions
Key Deleted : HKLM\SOFTWARE\supWindowsMangerProtect
Key Deleted : HKLM\SOFTWARE\supWPM
Key Deleted : HKLM\SOFTWARE\mystartsearchSoftware

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17496


-\\ Mozilla Firefox v34.0.5 (x86 sr)

[x28ikosk.default\prefs.js] - Line Deleted : user_pref("extensions.crossrider.bic", "14a8803037a4367de6a68450fb73f58f");
[x28ikosk.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1420024197513");
[x28ikosk.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001");
[x28ikosk.default\prefs.js] - Line Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "videodownloadconverter@mindspark.com");
[x28ikosk.default\prefs.js] - Line Deleted : user_pref("plugin.state.npconduitfirefoxplugin", 0);

*************************

AdwCleaner[R0].txt - [7989 octets] - [11/01/2015 17:24:37]
AdwCleaner[S0].txt - [8157 octets] - [11/01/2015 17:28:08]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8217 octets] ##########

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

OK. Idemo dalje.

Preuzmi zoek.exe sa ovog ili ovog linka i sačuvaj ga na Desktop.


Zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;
dvoklikom pokreni zoek.exe;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sljedeći tekst:

process;
startupall;
drivers-services-list;
skipfix-iedefaults;
firefoxlook;
chromelook;
filesrcm;


Klikni na dugme i pričekaj da se skeniranje završi.


Zoek će po potrebi restartovati Windows, a na kraju rada otvoriti Notepad sa izvještajem o skeniranju.

Napomena: Izvještaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadržaj tog loga u poruku.

offline
  • Pridružio: 01 Mar 2008
  • Poruke: 245

Zoek.exe v5.0.0.0 Updated 09-January-2015
Tool run by wolf on ned 11.01.2015 at 20:17:38,38.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\wolf\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

11.1.2015 20:18:26 Zoek.exe System Restore Point Created Succesfully.

==== Running Processes ======================

C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9.exe
C:\Windows\system32\NLSSRV32.EXE
C:\Program Files\Tenda\Common\RaRegistry.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ACD Systems\ACDSee Pro\7.0\acdIDInTouch2.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Windows\system32\wbem\wmiprvse.exe
C:\Users\wolf\Desktop\zoek.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\vssvc.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k swprv

==== Services(whitelist) ======================
Powered by E Dev

R2 - [!SASCORE] - SAS Core Service - c:\program files\superantispyware\sascore.exe
R2 - [AdobeARMservice] - Adobe Acrobat Update Service - c:\program files\common files\adobe\arm\1.0\armsvc.exe
R2 - [AMD External Events Utility] - AMD External Events Utility - c:\windows\system32\atiesrxx.exe
R2 - [MsMpSvc] - Microsoft Antimalware Service - c:\program files\microsoft security client\msmpeng.exe
R2 - [nlsX86cc] - Nalpeiron Licensing Service - c:\windows\system32\nlssrv32.exe
R2 - [RalinkRegistryWriter] - RalinkRegistryWriter - c:\program files\tenda\common\raregistry.exe
R2 - [wlidsvc] - Windows Live ID Sign-in Assistant - c:\program files\common files\microsoft shared\windows live\wlidsvc.exe
R2 - [WMPNetworkSvc] - Usluga deljenja putem mreĹľe za Windows Media Player - c:\program files\windows media player\wmpnetwk.exe
R2 - [WSearch] - Windows Search - c:\windows\system32\searchindexer.exe
R3 - [Disc Soft Bus Service] - Disc Soft Bus Service - c:\program files\daemon tools ultra\discsoftbusservice.exe
R3 - [NisSrv] - Microsoft Network Inspection - c:\program files\microsoft security client\nissrv.exe
R3 - [osppsvc] - Office Software Protection Platform - c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\osppsvc.exe
R3 - [VSS] - Volume Shadow Copy - c:\windows\system32\vssvc.exe
S2 - [clr_optimization_v4.0.30319_32] - Microsoft .NET Framework NGEN v4.0.30319_X86 - c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe
S2 - [sppsvc] - Software Protection - c:\windows\system32\sppsvc.exe
S3 - [AdobeFlashPlayerUpdateSvc] - Adobe Flash Player Update Service - c:\windows\system32\macromed\flash\flashplayerupdateservice.exe
S3 - [ALG] - Application Layer Gateway Service - c:\windows\system32\alg.exe
S3 - [aspnet_state] - ASP.NET State Service - c:\windows\microsoft.net\framework\v4.0.30319\aspnet_state.exe
S3 - [COMSysApp] - COM+ System Application - c:\windows\system32\dllhost.exe
S3 - [ehRecvr] - Windows Media Center Receiver Service - c:\windows\ehome\ehrecvr.exe
S3 - [ehSched] - Windows Media Center Scheduler Service - c:\windows\ehome\ehsched.exe
S3 - [Fax] - Faks - c:\windows\system32\fxssvc.exe
S3 - [FontCache3.0.0.0] - Windows Presentation Foundation Font Cache 3.0.0.0 - c:\windows\microsoft.net\framework\v3.0\wpf\presentationfontcache.exe
S3 - [IEEtwCollectorService] - Internet Explorer ETW Collector Service - c:\windows\system32\ieetwcollector.exe
S3 - [Microsoft SharePoint Workspace Audit Service] - Microsoft SharePoint Workspace Audit Service - c:\program files\microsoft office\office14\groove.exe
S3 - [MozillaMaintenance] - Mozilla Maintenance Service - c:\program files\mozilla maintenance service\maintenanceservice.exe
S3 - [MSDTC] - Distributed Transaction Coordinator - c:\windows\system32\msdtc.exe
S3 - [msiserver] - Windows Installer - c:\windows\system32\msiexec.exe
S3 - [ose] - Office Source Engine - c:\program files\common files\microsoft shared\source engine\ose.exe
S3 - [RaMediaServer] - RaMediaServer - c:\program files\tenda\common\ramediaserver.exe
S3 - [RpcLocator] - Remote Procedure Call (RPC) Locator - c:\windows\system32\locator.exe
S3 - [SNMPTRAP] - SNMP Trap - c:\windows\system32\snmptrap.exe
S3 - [TrustedInstaller] - Windows Modules Installer - c:\windows\servicing\trustedinstaller.exe
S3 - [vds] - Virtual Disk - c:\windows\system32\vds.exe
S3 - [WatAdminSvc] - Usluga tehnologije aktivacije operativnog sistema Windows - c:\windows\system32\wat\watadminsvc.exe
S3 - [wbengine] - Block Level Backup Engine Service - c:\windows\system32\wbengine.exe
S3 - [wmiApSrv] - WMI Performance Adapter - c:\windows\system32\wbem\wmiapsrv.exe
S4 - [clr_optimization_v2.0.50727_32] - Microsoft .NET Framework NGEN v2.0.50727_X86 - c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe

==== Drivers(whitelist) ======================
Powered by E Dev

R0 - [FileInfo] - File Information FS MiniFilter - C:\Windows\system32\Drivers\FileInfo.sys
R0 - [FltMgr] - FltMgr - C:\Windows\system32\Drivers\FltMgr.sys
R0 - [MpFilter] - Microsoft Malware Protection Driver - C:\Windows\system32\Drivers\MpFilter.sys
R0 - [Mup] - MUP - C:\Windows\system32\Drivers\Mup.sys
R1 - [NetBIOS] - NetBIOS Interface - C:\Windows\system32\Drivers\NetBIOS.sys
R3 - [srv] - Server SMB 1.xxx Driver - C:\Windows\system32\Drivers\srv.sys
R3 - [srv2] - Server SMB 2.xxx Driver - C:\Windows\system32\Drivers\srv2.sys
R0 - [ACPI] - Microsoft ACPI Driver - C:\Windows\system32\Drivers\ACPI.sys
R0 - [amdxata] - amdxata - C:\Windows\system32\Drivers\amdxata.sys
R0 - [atapi] - IDE Channel - C:\Windows\system32\Drivers\atapi.sys
R0 - [CLFS] - Common Log (CLFS) - C:\Windows\system32\Drivers\CLFS.sys [x]
R0 - [CNG] - CNG - C:\Windows\system32\Drivers\CNG.sys
R0 - [Disk] - Disk Driver - C:\Windows\system32\Drivers\Disk.sys
R0 - [fvevol] - Bitlocker Drive Encryption Filter Driver - C:\Windows\system32\Drivers\fvevol.sys
R0 - [hwpolicy] - Hardware Policy Driver - C:\Windows\system32\Drivers\hwpolicy.sys
R0 - [KSecDD] - KSecDD - C:\Windows\system32\Drivers\KSecDD.sys
R0 - [KSecPkg] - KSecPkg - C:\Windows\system32\Drivers\KSecPkg.sys
R0 - [mountmgr] - Mount Point Manager - C:\Windows\system32\Drivers\mountmgr.sys
R0 - [msisadrv] - msisadrv - C:\Windows\system32\Drivers\msisadrv.sys
R0 - [NDIS] - NDIS System Driver - C:\Windows\system32\Drivers\NDIS.sys
R0 - [nvstor] - nvstor - C:\Windows\system32\Drivers\nvstor.sys
R0 - [partmgr] - Partition Manager - C:\Windows\system32\Drivers\partmgr.sys
R0 - [pci] - PCI Bus Driver - C:\Windows\system32\Drivers\pci.sys
R0 - [pciide] - pciide - C:\Windows\system32\Drivers\pciide.sys
R0 - [pcw] - Performance Counters for Windows Driver - C:\Windows\system32\Drivers\pcw.sys
R0 - [rdyboost] - ReadyBoost - C:\Windows\system32\Drivers\rdyboost.sys
R0 - [spldr] - Security Processor Loader Driver - C:\Windows\system32\Drivers\spldr.sys
R0 - [storflt] - Disk Virtual Machine Bus Acceleration Filter Driver - C:\Windows\system32\Drivers\storflt.sys [x]
R0 - [Tcpip] - UpravljaÄŤki program TCP/IP protokola - C:\Windows\system32\Drivers\Tcpip.sys
R0 - [vdrvroot] - Microsoft Virtual Drive Enumerator Driver - C:\Windows\system32\Drivers\vdrvroot.sys
R0 - [volmgr] - Volume Manager Driver - C:\Windows\system32\Drivers\volmgr.sys
R0 - [volmgrx] - Dynamic Volume Manager - C:\Windows\system32\Drivers\volmgrx.sys
R0 - [volsnap] - Storage volumes - C:\Windows\system32\Drivers\volsnap.sys
R0 - [Wdf01000] - Kernel Mode Driver Frameworks service - C:\Windows\system32\Drivers\Wdf01000.sys
R1 - [AFD] - Ancillary Function Driver for Winsock - C:\Windows\system32\Drivers\AFD.sys
R1 - [Beep] - Beep - C:\Windows\system32\Drivers\Beep.sys
R1 - [tdx] - NetIO TDI upravljačkog programa podrške koji je zastareo - C:\Windows\system32\Drivers\tdx.sys
R2 - [tcpipreg] - TCP/IP Registry Compatibility - C:\Windows\system32\Drivers\tcpipreg.sys

==== Files Recently Created / Modified ======================

====== C:\Windows ====
2015-01-10 13:49:13 CE8294C9DAAE53BDD76A82026AAAA044 80 --sh--r- C:\Windows\CT6PRET.BIN
2015-01-10 10:51:29 62C0DBFA0B19542A2E4B6F589ACBAE31 172 --sh--r- C:\Windows\CT7PRET.BIN
2015-01-07 18:00:27 EE19363123FE2A995C8879CF5AE4E7E1 182 --sh--r- C:\Windows\CTA2STET.BIN
2014-12-31 16:13:30 F9F4905664C5B42B49E78EFA12D1A6B6 20 ----a-w- C:\Windows\přW
2014-12-27 10:26:32 2A66E81AE941E54A237490FC35D387C8 1945 ----a-w- C:\Windows\epplauncher.mif
2014-12-27 02:12:10 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\ativpsrm.bin
====== C:\Users\wolf\AppData\Local\Temp ====
====== Java Cache =====
====== C:\Windows\system32 =====
2015-01-09 13:41:21 20C835843FCEC4DEDFCD7BFFA3B91641 470880 ----a-w- C:\Windows\System32\d3dx10_43.dll
2015-01-06 19:20:23 221494C29E9F4B6D02514CA29F2A3A4E 14119 ----a-w- C:\Windows\System32\RaCoInst.dat
2015-01-06 19:20:21 F1FEFE8332330B94E54EC23116245144 238944 ----a-w- C:\Windows\System32\RaCoInst.dll
2015-01-06 19:19:48 2D934CABCA1FC8D16A9E44B001CA919C 450 ----a-w- C:\Windows\System32\DiagFunc.ini
2015-01-06 19:19:47 ADC918BB2E218E8FC4362BBB71101D3E 119648 ----a-w- C:\Windows\System32\RAEXTUI.dll
2015-01-06 19:19:47 987F9C8FB463A7B1A0BAE92A72A9D879 802880 ----a-w- C:\Windows\System32\RAIHV.dll
2015-01-06 19:19:47 956D57F575F463A0B925B45FF176159B 480608 ----a-w- C:\Windows\System32\DiagFunc.dll
2015-01-06 19:19:47 2D20E70AAF29452AB081301E16993B30 1608768 ----a-w- C:\Windows\System32\RaCertMgr.dll
2015-01-06 12:44:51 6A0FD09411D1903AD563CCCDD0967FBC 81920 ----a-w- C:\Windows\System32\wavdest.ax
2015-01-06 10:45:53 C6A44FC3CF2F5801561804272217B14D 1892184 ----a-w- C:\Windows\System32\D3DX9_42.dll
2015-01-06 10:45:51 8F3EB548AC4ED90252394F60C77E3196 3850760 ----a-w- C:\Windows\System32\D3DX9_38.dll
2015-01-04 19:52:15 8D8553F7EB189144F4985E864694A241 175864 ---ha-w- C:\Windows\System32\ApowersoftVideoMixerFilter.dll
2015-01-04 19:52:15 49BCA237BD9969FA82623BF5EF5E16FA 261880 ---ha-w- C:\Windows\System32\ApowersoftScreenCapturingFilter.dll
2015-01-04 19:52:15 065E5E2E93224BEAA963F1786D211EF5 429816 ---ha-w- C:\Windows\System32\ApowersoftScreenCapturing.dll
2014-12-31 16:11:17 8A4CEBF34370D689E198E6673C1F2C40 74072 ----a-w- C:\Windows\System32\XAPOFX1_5.dll
2014-12-31 16:11:16 81DFDDFB401D663BA7E6AD1C80364216 527192 ----a-w- C:\Windows\System32\XAudio2_7.dll
2014-12-31 16:11:14 8E0BB968FF41D80E5F2C747C04DB79AE 248672 ----a-w- C:\Windows\System32\d3dx11_43.dll
2014-12-31 16:10:06 501AC862517C5445742BEE8A2B88414E 453456 ----a-w- C:\Windows\System32\d3dx10_42.dll
2014-12-31 16:08:36 26AF232140C88B42D92A88F2198EDF6A 3426072 ----a-w- C:\Windows\System32\d3dx9_32.dll
2014-12-31 12:47:47 DC657CC8C152C77F22DBE14C7B96374D 129024 ----a-w- C:\Windows\System32\AVERM.dll
2014-12-31 12:47:47 23B8B59396A50388CD34CEEE55A103EE 28672 ----a-w- C:\Windows\System32\AVEQT.dll
2014-12-29 15:18:04 1C9B45E87528B8BB8CFA884EA0099A85 2106216 ----a-w- C:\Windows\System32\D3DCompiler_43.dll
2014-12-29 15:18:03 86E39E9161C3D930D93822F1563C280D 1998168 ----a-w- C:\Windows\System32\D3DX9_43.dll
2014-12-29 15:18:00 77F595DEE5FFACEA72B135B1FCE1312E 81768 ----a-w- C:\Windows\System32\xinput1_3.dll
====== C:\Windows\system32\drivers =====
2015-01-06 19:20:21 AF2ED1D41A180C4F4BBD1B941C17D44E 1270848 ----a-w- C:\Windows\System32\drivers\netr28u.sys
2014-12-27 11:04:03 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-12-27 10:27:29 E951866BAC5A23403F62A349EDBB6EEB 24064 ----a-w- C:\Windows\System32\drivers\terminpt.sys
2014-12-27 10:27:29 65375DF758CA1872AB7EBBBA457FD5E6 14848 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys
2014-12-27 10:26:52 C6A5FBD4977305E1FA23E02C042DB463 49152 ----a-w- C:\Windows\System32\drivers\TsUsbFlt.sys
2014-12-27 02:11:54 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01009.Wdf
2014-12-26 21:37:45 D320BF87125326F996D4904FE24300FC 80256 ----a-w- C:\Windows\System32\drivers\amdsata.sys
2014-12-26 21:37:45 B3E25EE28883877076E0E1FF877D02E0 117120 ----a-w- C:\Windows\System32\drivers\nvraid.sys
2014-12-26 21:37:45 6A3DB51D317307F3AC65CB127B9A2BEB 76288 ----a-w- C:\Windows\System32\drivers\USBSTOR.SYS
2014-12-26 21:37:45 5CD5F9A5444E6CDCB0AC89BD62D8B76E 332160 ----a-w- C:\Windows\System32\drivers\iaStorV.sys
2014-12-26 21:37:45 46387FB17B086D16DEA267D5BE23A2F2 22400 ----a-w- C:\Windows\System32\drivers\amdxata.sys
2014-12-26 21:37:45 4380E59A170D88C4F1022EFF6719A8A4 143744 ----a-w- C:\Windows\System32\drivers\nvstor.sys
2014-12-26 21:37:35 C81E9413A25A439F436B1D4B6A0CF9E9 60416 ----a-w- C:\Windows\System32\drivers\BTHUSB.SYS
2014-12-26 21:37:35 1153DE2E4F5941E10C399CB5592F78A1 393728 ----a-w- C:\Windows\System32\drivers\bthport.sys
2014-12-26 19:42:57 867C301E8B790040AE9CF6486E8041DF 155136 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys
2014-12-26 19:42:57 06E6F32C8D0A3F66D956F57B43A2E070 66560 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys
2014-12-26 19:42:55 933222B19FF3E7EA5F65517EA1F7D57E 3 ----a-w- C:\Windows\System32\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-12-26 19:40:59 7DAE5EBCC80E45D3253F4923DC424D05 19824 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-12-26 19:19:38 3EEBD3BD93DA46A26E89893C7AB2FF3B 35328 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys
2014-12-26 19:12:12 E83AF87457337D459F48139FAC8A1994 20480 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2014-12-26 19:12:12 7DE31B21FA92EE427C058C44CEB7859B 258560 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2014-12-26 19:12:12 7C2BC8D0FCBB45CA9231E4743B0D04FB 6016 ----a-w- C:\Windows\System32\drivers\usbd.sys
2014-12-26 19:12:12 7855D97212A9A62D1105A44729D0A4CA 284672 ----a-w- C:\Windows\System32\drivers\usbport.sys
2014-12-26 19:12:12 5620619CE693AADF8767CDA00F940BEE 76288 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2014-12-26 19:12:12 3735F2A99C5EA762D869748333C83CE8 43520 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2014-12-26 19:12:11 2352AB5F9F8F097BF9D41D5A4718A041 86016 ----a-w- C:\Windows\System32\drivers\usbcir.sys
2014-12-26 18:31:47 ECFE2AE9092C672965131CF376AAF4BD 149952 ----a-w- C:\Windows\System32\drivers\storport.sys
2014-12-26 18:31:47 EB34CE31FABD4DC4343FD2AD16D2CAF9 234432 ----a-w- C:\Windows\System32\drivers\msiscsi.sys
2014-12-26 18:31:47 648F4DDB63AE28F735F3AAD93262D836 27072 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2014-12-26 18:31:20 15B74B6283CEBCCE3054C1001CA01B5E 712048 ----a-w- C:\Windows\System32\drivers\ndis.sys
2014-12-26 18:31:19 ED80D303102A746D30C1684B387BCBF1 33280 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys
2014-12-26 18:27:49 7FE680A3DFA421C4A8E4879AE4C5AAB0 74752 ----a-w- C:\Windows\System32\drivers\tdx.sys
2014-12-26 18:24:02 90EE3C4BD199287D2630C5232F459367 1213376 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2014-12-26 18:23:57 EA47AB18E289333AB94397D77CA6E3A1 1310144 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2014-12-26 18:23:57 CAEEBB6EFC12A3C15B104339F6FEB313 187840 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2014-12-26 18:23:57 9390485C87BFD1D92B3F4B96E248175C 240576 ----a-w- C:\Windows\System32\drivers\netio.sys
2014-12-26 18:23:44 CD9214A6AE17D188D17C3CF8CB9CC693 184320 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2014-12-26 18:23:43 E10601CF12F9E619BC16A40E962954E9 31232 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys
2014-12-26 18:21:35 DDCE686D76C2B4DB435A3AF5BD0E691D 133056 ----a-w- C:\Windows\System32\drivers\ataport.sys
2014-12-26 18:18:37 FE8A57C8E04EDD3AA8ADD8F3C8F65297 15872 ----a-w- C:\Windows\System32\drivers\usb8023.sys
2014-12-26 18:18:32 F1B27299F547D452EDAEF01FC187CB91 25728 ----a-w- C:\Windows\System32\drivers\hidparse.sys
2014-12-26 18:18:32 50ABE682EBE752EAF62B18790D6D491C 55808 ----a-w- C:\Windows\System32\drivers\hidclass.sys
2014-12-26 18:17:55 933222B19FF3E7EA5F65517EA1F7D57E 3 ----a-w- C:\Windows\System32\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-12-26 18:17:55 48704647CD2E9DAA2EB81BDE6D029EDB 47720 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys
2014-12-26 18:17:55 25944D2CC49E0A6C581D02A74B7D6645 527064 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys
2014-12-26 18:13:25 0AF3961280E854194ED3F57C38B4340A 50176 ----a-w- C:\Windows\System32\drivers\appid.sys
2014-12-26 18:10:28 E306A24D9694C724FA2491278BF50FDB 196328 ----a-w- C:\Windows\System32\drivers\fvevol.sys
2014-12-26 18:06:30 3F34A1B4C5F6475F320C275E63AFCE9B 56176 ----a-w- C:\Windows\System32\drivers\partmgr.sys
2014-12-26 18:05:40 D0B388DA1D111A34366E04EB4A5DD156 338944 ----a-w- C:\Windows\System32\drivers\afd.sys
2014-12-26 18:05:38 AC8EB88C4176892062CF7A8952943662 223744 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2014-12-26 18:05:17 EB6137D696A9B4E9718AC6F8641CB4C9 177152 ----a-w- C:\Windows\System32\drivers\portcls.sys
2014-12-26 18:05:16 9842041E2F5ACE1E2F5FB4EF02053DC8 81408 ----a-w- C:\Windows\System32\drivers\drmk.sys
2014-12-26 18:00:32 B3BF926A5B3D2C5AFDFC7B278557C206 219072 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2014-12-26 18:00:32 B1234153466969A433AD39B58E9A4820 730560 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2014-12-26 18:00:25 2C2C5AFE7EE4F620D69C23C0617651A8 24576 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2014-12-26 17:52:05 50778FE9ED67AEB01EA99877B1B4A4DF 24704 ----a-w- C:\Windows\System32\drivers\dtscsibus.sys
2014-12-26 17:48:21 FF1F3273DE17F630FCABF165BD7064CB 369848 ----a-w- C:\Windows\System32\drivers\cng.sys
2014-12-26 17:48:20 EADF7B02E9D1419984EA4127EDB22D69 67520 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2014-12-26 17:48:20 7B7B6B779F08A2C36A978F409054C1A9 136632 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2014-12-26 17:48:04 42705B8BCE824C8A6F4A12D706A9CEDE 116736 ----a-w- C:\Windows\System32\drivers\mrxdav.sys
2014-12-26 17:43:00 548CCBD8B48FDF7E2435AD6017920A7F 26080 ----a-w- C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys
====== C:\Windows\Tasks ======
2015-01-08 10:02:51 F64A2D5E9C1762DEAFBEB4978044D22B 3874 ----a-w- C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2015-01-06 13:17:04 639F14D20FB0800F008E79572B626587 3468 ----a-w- C:\Windows\system32\Tasks\{691D7F5A-B877-4A3D-8DDF-B37984C9FD93}
2015-01-01 17:24:38 -------- d-----w- C:\Windows\system32\Tasks\NCH Software
2014-12-31 14:24:59 E3EA02B9A248976D4A1B221DE2F1F1CE 3164 ----a-w- C:\Windows\system32\Tasks\{724A82D6-355D-4CDA-8C56-8076C84E57B6}
2014-12-30 12:00:26 -------- d-----w- C:\Windows\system32\Tasks\Games
2014-12-26 20:20:40 -------- d-----w- C:\Windows\system32\Tasks\OfficeSoftwareProtectionPlatform
2014-12-26 20:03:55 D6C774B9A9758220F01BE682E5FECB6E 830 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-26 20:03:55 0EB5EEA8B1E478578E4C9AF59EAFBA57 3768 ----a-w- C:\Windows\system32\Tasks\Adobe Flash Player Updater
2014-12-26 18:38:50 2CAC244F08BFF65744F48DC3DD54EF27 3126 ----a-w- C:\Windows\system32\Tasks\{E0386A4F-864E-477A-82BA-F9AF8256F459}
2014-12-26 18:31:16 96EFEB9DD1889898FB9A16D7396502AF 3146 ----a-w- C:\Windows\system32\Tasks\{D7E95650-F5B6-470A-95EF-60AF0FEC48B3}
====== C:\Windows\Temp ======
======= C:\Program Files =====
2015-01-07 17:05:38 -------- d-----w- C:\Program Files\Common Files\Adobe
2015-01-07 17:05:38 -------- d-----w- C:\Program Files\Adobe
2015-01-07 16:49:55 -------- d-----w- C:\Program Files\Reallusion
2015-01-07 13:39:01 -------- d-----w- C:\Program Files\Caricature Studio
2015-01-06 19:19:59 -------- d-----w- C:\Program Files\Cisco
2015-01-06 19:19:45 -------- d-----w- C:\Program Files\Tenda
2015-01-06 10:44:30 -------- d-----w- C:\Program Files\Common Files\Reallusion
2015-01-05 20:20:34 -------- d-----w- C:\Program Files\TotalAudioConverter
2015-01-04 19:52:05 -------- d-----w- C:\Program Files\Apowersoft
2015-01-01 13:00:02 -------- d-----w- C:\Program Files\Sony
2014-12-31 16:11:57 -------- d-----w- C:\Program Files\Windows Live
2014-12-31 16:06:18 -------- d-----w- C:\Program Files\Common Files\Windows Live
2014-12-31 12:47:43 -------- d-----w- C:\Program Files\Ultra Video Splitter
2014-12-31 11:08:34 -------- d-----w- C:\Program Files\Video to Video
2014-12-31 10:29:25 -------- d-----w- C:\Program Files\Avidemux 2.6
2014-12-31 10:19:48 -------- d-----w- C:\Program Files\MacheteSoft
2014-12-31 09:59:21 -------- d-----w- C:\Program Files\AspInfo
2014-12-31 09:59:19 -------- d-----w- C:\Program Files\Software Update Services
2014-12-30 20:32:18 -------- d-----w- C:\Program Files\Freemake
2014-12-30 20:25:01 -------- d-----w- C:\Program Files\Webteh
2014-12-30 20:20:09 -------- d-----w- C:\Program Files\VideoLAN
2014-12-29 15:21:00 -------- d-----w- C:\Program Files\IVT Corporation
2014-12-29 15:18:22 -------- d-----w- C:\Program Files\NVIDIA Corporation
2014-12-29 15:02:54 -------- d-----w- C:\Program Files\R.G. Mechanics
2014-12-27 21:09:54 -------- d-----w- C:\Program Files\Common Files\DESIGNER
2014-12-27 11:22:06 -------- d-----w- C:\Program Files\Common Files\ACD Systems
2014-12-27 11:22:06 -------- d-----w- C:\Program Files\ACD Systems
2014-12-27 02:12:22 -------- d-----w- C:\Program Files\Realtek
2014-12-26 21:28:25 -------- d-----w- C:\Program Files\Nitro
2014-12-26 21:28:25 -------- d-----w- C:\Program Files\Common Files\Nitro
2014-12-26 21:19:09 -------- d-----w- C:\Program Files\Microsoft Silverlight
2014-12-26 21:16:51 -------- d-----w- C:\Program Files\GTWorks
2014-12-26 20:57:53 -------- d-----w- C:\Program Files\Microsoft Synchronization Services
2014-12-26 20:56:42 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition
2014-12-26 20:12:16 -------- d-----w- C:\Program Files\Microsoft Visual Studio 8
2014-12-26 20:11:17 -------- d-----w- C:\Program Files\Microsoft Analysis Services
2014-12-26 20:10:31 -------- d-----w- C:\Program Files\Microsoft Office
2014-12-26 18:58:29 -------- d-----w- C:\Program Files\Unlocker
2014-12-26 18:57:12 -------- d-----w- C:\Program Files\Common Files\Innovative Solutions
2014-12-26 18:57:07 -------- d-----w- C:\Program Files\Innovative Solutions
2014-12-26 18:17:43 -------- d-----w- C:\Program Files\uTorrent
2014-12-26 18:07:25 -------- d-----w- C:\Program Files\Microsoft.NET
2014-12-26 17:51:58 -------- d-----w- C:\Program Files\DAEMON Tools Ultra
2014-12-26 17:50:20 -------- d-----w- C:\Program Files\Disc Soft Ltd
2014-12-26 17:46:33 -------- d-----w- C:\Program Files\SUPERAntiSpyware
2014-12-26 17:42:04 -------- d-----w- C:\Program Files\WinRAR
2014-12-26 17:34:48 -------- d-----w- C:\Program Files\Mozilla Maintenance Service
2014-12-26 17:25:49 -------- d--h--w- C:\Program Files\InstallShield Installation Information
======= C: =====
====== C:\Users\wolf\AppData\Roaming ======
2015-01-10 14:10:14 -------- d-----w- C:\Users\wolf\AppData\Roaming\Reallusion
2015-01-10 13:44:10 -------- d-----w- C:\Users\Administrator\AppData\Roaming\WinRAR
2015-01-10 13:43:33 -------- d-----w- C:\Users\Administrator\AppData\Local\ACD Systems
2015-01-10 13:43:28 -------- d-----r- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2015-01-10 13:43:28 -------- d-----r- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2015-01-10 13:43:18 -------- d-----w- C:\Users\Administrator\AppData\Roaming\Identities
2015-01-10 13:43:10 -------- d-----w- C:\Users\Administrator\AppData\Roaming\Adobe
2015-01-10 13:43:07 -------- d-s---w- C:\Users\Administrator\AppData\Roaming\Microsoft
2015-01-10 13:43:07 -------- d-----w- C:\Users\Administrator\AppData\Roaming\Media Center Programs
2015-01-10 13:43:07 -------- d-----w- C:\Users\Administrator\AppData\Local\Temp
2015-01-10 13:43:07 -------- d-----w- C:\Users\Administrator\AppData\Local\Microsoft Help
2015-01-10 13:43:07 -------- d-----w- C:\Users\Administrator\AppData\Local\Microsoft
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-08 16:21:15 -------- d-----w- C:\Users\wolf\AppData\Locallow\Adobe
2015-01-06 19:19:10 -------- d-----w- C:\Users\wolf\AppData\Roaming\InstallShield
2015-01-06 18:55:24 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Local\PnrpSqm
2015-01-06 18:54:34 -------- d-----w- C:\Windows\serviceprofiles\Localservice\AppData\Roaming\PeerNetworking
2015-01-06 15:33:11 -------- d-----w- C:\Users\wolf\AppData\Local\ElevatedDiagnostics
2015-01-06 15:29:20 -------- d-----w- C:\Users\wolf\AppData\Local\Diagnostics
2015-01-05 20:20:54 -------- d-----w- C:\Users\wolf\AppData\Roaming\Softplicity
2015-01-01 20:15:00 E8DE02C80087E8F347F0A281E6A983DE 871584 ----a-w- C:\Windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat
2015-01-01 13:03:20 -------- d-----w- C:\Users\wolf\AppData\Roaming\Publish Providers
2015-01-01 13:00:03 -------- d-----w- C:\Users\wolf\AppData\Local\Sony
2015-01-01 12:59:08 -------- d-----w- C:\Users\wolf\AppData\Roaming\Sony
2014-12-31 16:06:44 -------- d-----w- C:\Users\wolf\AppData\Local\Windows Live
2014-12-31 13:57:35 -------- d-----w- C:\Users\wolf\AppData\Roaming\DivX
2014-12-31 10:34:54 -------- d-----w- C:\Users\wolf\AppData\Roaming\Machete Lite
2014-12-31 10:32:06 -------- d-----w- C:\Users\wolf\AppData\Roaming\avidemux
2014-12-31 10:00:34 -------- d-----w- C:\Users\wolf\AppData\Local\WMTools Downloaded Files
2014-12-30 20:50:05 -------- d-----w- C:\Users\wolf\AppData\Local\Hotger
2014-12-30 20:50:04 -------- d-----w- C:\Users\wolf\AppData\Roaming\FlvtoConverter
2014-12-30 20:32:43 -------- d-----w- C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2014-12-30 20:25:22 -------- d-----w- C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Webteh
2014-12-30 20:25:12 -------- d-----w- C:\Users\wolf\AppData\Roaming\BSplayer PRO
2014-12-30 20:21:26 -------- d-----w- C:\Users\wolf\AppData\Roaming\vlc
2014-12-30 15:11:03 -------- d-----w- C:\Users\wolf\AppData\Local\Microsoft Games
2014-12-29 15:49:11 -------- d-----w- C:\Users\wolf\AppData\Local\Risen3
2014-12-29 15:19:26 -------- d-----w- C:\Users\wolf\AppData\Roaming\Risen 3
2014-12-27 12:30:01 -------- d-s---w- C:\Windows\serviceprofiles\Localservice\AppData\Locallow\Microsoft
2014-12-27 11:00:57 -------- d-----w- C:\Users\wolf\AppData\Roaming\ACD Systems
2014-12-27 11:00:41 -------- d-----w- C:\Users\wolf\AppData\Local\ACD Systems
2014-12-27 10:58:27 -------- d-----w- C:\Users\wolf\AppData\Local\Downloaded Installations
2014-12-26 22:24:31 -------- d-----w- C:\Users\Default\AppData\Local\Microsoft Help
2014-12-26 22:24:31 -------- d-----w- C:\Users\Default User\AppData\Local\Microsoft Help
2014-12-26 22:15:33 -------- d-sh--w- C:\Users\wolf\AppData\Locallow\EmieUserList
2014-12-26 22:15:33 -------- d-sh--w- C:\Users\wolf\AppData\Locallow\EmieBrowserModeList
2014-12-26 22:15:31 -------- d-sh--w- C:\Users\wolf\AppData\Local\EmieUserList
2014-12-26 22:15:31 -------- d-sh--w- C:\Users\wolf\AppData\Local\EmieSiteList
2014-12-26 22:15:31 -------- d-sh--w- C:\Users\wolf\AppData\Local\EmieBrowserModeList
2014-12-26 22:15:21 -------- d-sh--w- C:\Users\wolf\AppData\Locallow\EmieSiteList
2014-12-26 21:32:24 -------- d-----w- C:\Users\wolf\AppData\Roaming\Nitro
2014-12-26 21:24:34 -------- d-----w- C:\Users\wolf\AppData\Roaming\Downloaded Installations
2014-12-26 21:18:15 -------- d-----w- C:\Users\wolf\AppData\Local\Deployment
2014-12-26 21:18:15 -------- d-----w- C:\Users\wolf\AppData\Local\Apps
2014-12-26 20:10:43 -------- d-----w- C:\Users\wolf\AppData\Local\Microsoft Help
2014-12-26 20:03:15 -------- d-----w- C:\Users\wolf\AppData\Local\Adobe
2014-12-26 19:07:47 -------- d-----r- C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-12-26 19:07:47 -------- d-----r- C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-12-26 19:07:40 -------- d-----w- C:\Users\wolf\AppData\Roaming\Adobe
2014-12-26 18:58:29 -------- d-----w- C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
2014-12-26 18:57:14 -------- d-----w- C:\Users\wolf\AppData\Local\Innovative Solutions
2014-12-26 18:35:00 3001FD76831D638964DA6614EEB80FFF 1544680 ----a-w- C:\Users\wolf\AppData\Roaming\FGFIR.exe
2014-12-26 18:33:52 8369EAB2774BE62BCE2A846FE403F03A 1865192 ----a-w- C:\Users\wolf\AppData\Roaming\IBBMII.exe
2014-12-26 18:24:05 -------- d-----w- C:\Users\wolf\AppData\Local\Disc_Soft_Ltd
2014-12-26 18:23:50 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Roaming\DAEMON Tools Ultra
2014-12-26 18:22:55 -------- d-----w- C:\Users\wolf\AppData\Local\Installer
2014-12-26 18:16:45 -------- d-----w- C:\Users\wolf\AppData\Roaming\uTorrent
2014-12-26 17:52:02 -------- d-----w- C:\Users\wolf\AppData\Roaming\DAEMON Tools Ultra
2014-12-26 17:46:15 -------- d-----w- C:\Users\wolf\AppData\Roaming\SUPERAntiSpyware.com
2014-12-26 17:45:03 -------- d-----w- C:\Users\wolf\AppData\Roaming\WinRAR
2014-12-26 17:42:56 -------- d-----w- C:\Users\wolf\AppData\Roaming\Apowersoft
2014-12-26 17:42:49 -------- d-----w- C:\Users\wolf\AppData\Local\Programs
2014-12-26 17:42:08 -------- d-----w- C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-12-26 17:34:55 -------- d-----w- C:\Users\wolf\AppData\Roaming\Mozilla
2014-12-26 17:34:55 -------- d-----w- C:\Users\wolf\AppData\Local\Mozilla
2014-12-26 17:33:06 -------- d-s---w- C:\Users\wolf\AppData\Locallow\Microsoft
2014-12-26 17:24:44 7A750669757B0C4BA286677E2F0455BA 109280 ----a-w- C:\Users\wolf\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-26 17:18:37 -------- d-----w- C:\Users\wolf\AppData\Roaming\Identities
2014-12-26 17:18:27 -------- d-----w- C:\Users\wolf\AppData\Local\VirtualStore
2014-12-26 17:18:26 -------- d-s---w- C:\Users\wolf\AppData\Roaming\Microsoft
2014-12-26 17:18:26 -------- d-----w- C:\Users\wolf\AppData\Roaming\Media Center Programs
2014-12-26 17:18:26 -------- d-----w- C:\Users\wolf\AppData\Local\Temp
2014-12-26 17:18:26 -------- d-----w- C:\Users\wolf\AppData\Local\Microsoft
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
====== C:\Users\wolf ======
2015-01-11 15:59:02 61CA40317EBF1254770BF8B495B3F8DA 2191360 ----a-w- C:\Users\wolf\Desktop\AdwCleaner.exe
2015-01-11 10:40:27 0315848916A1D424F60C9D855F69F5CB 1115648 ----a-w- C:\Users\wolf\Desktop\FRST.exe
2015-01-10 13:43:28 -------- d-----r- C:\Users\Administrator\Searches
2015-01-10 13:43:16 -------- d-----r- C:\Users\Administrator\Contacts
2015-01-10 13:43:07 6FC234AD3752E1267B34FB12BCD6718B 20 --sha-w- C:\Users\Administrator\ntuser.ini
2015-01-10 13:43:07 -------- d--h--w- C:\Users\Administrator\AppData
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\Videos
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\Saved Games
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\Pictures
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\Music
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\Links
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\Favorites
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\Downloads
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\Documents
2015-01-10 13:43:07 -------- d-----r- C:\Users\Administrator\Desktop
2015-01-09 20:54:08 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCH Software Suite
2015-01-09 20:54:08 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs
2015-01-07 17:05:08 -------- d-----w- C:\ProgramData\Adobe
2015-01-07 16:50:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reallusion
2015-01-07 13:39:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Caricature Studio 6
2015-01-07 12:03:47 -------- d-----w- C:\ProgramData\Avid
2015-01-07 12:03:46 -------- d-----w- C:\ProgramData\Pinnacle
2015-01-07 12:02:08 -------- d-----w- C:\ProgramData\PACE
2015-01-06 19:21:17 -------- d-----w- C:\ProgramData\Ralink
2015-01-06 19:21:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tenda Wireless
2015-01-06 19:20:20 -------- d-----w- C:\ProgramData\Tenda Driver
2015-01-06 12:45:52 -------- d-----w- C:\ProgramData\Reallusion
2015-01-06 12:45:04 -------- d-----w- C:\Users\Public\Documents\Reallusion
2015-01-05 20:20:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Audio Converter
2015-01-04 19:52:15 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft
2015-01-01 17:24:37 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Related Programs
2015-01-01 13:03:24 -------- d-----w- C:\ProgramData\Sony
2015-01-01 13:01:20 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-01-01 12:28:42 522CA56F9C8388B2A1D5408587451F96 430992 ----a-w- C:\Users\wolf\Downloads\FLVPlayerSetup-NbttoTSpA.exe
2015-01-01 12:11:31 -------- d-----w- C:\Users\wolf\.MCTranscodingSDK
2015-01-01 12:03:55 -------- d-----w- C:\ProgramData\Geevs
2015-01-01 12:03:24 -------- d-----w- C:\Users\Public\Documents\Lightworks
2014-12-31 19:01:02 EF345C1552F2E76C89DF608065E0887C 4854328 ----a-w- C:\Users\wolf\Downloads\vppsetup.exe
2014-12-31 16:14:36 -------- d-----r- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2014-12-31 16:06:09 FD16C47494166590F41C2DB1365AD13F 1239752 ----a-w- C:\Users\wolf\Downloads\wlsetup-webEN (windows esencijal 2012 ).exe
2014-12-31 16:05:05 F7B7ED6EBBDE8BAF0F11258BD790BF05 373096 ----a-w- C:\Users\wolf\Downloads\SoftonicDownloader_for_windows-movie-maker-2012.exe
2014-12-31 14:44:19 3BDA4063E345257B209D778D44F2BA0A 373088 ----a-w- C:\Users\wolf\Downloads\SoftonicDownloader_for_windows-movie-maker.exe
2014-12-31 12:47:52 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultra Video Splitter
2014-12-31 12:43:32 40034C7309E38A15AE2FE7E7C2CEC4FE 1200623 ----a-w- C:\Users\wolf\Downloads\ezsplitter(1).exe
2014-12-31 12:41:51 BBFFF75CC2B246B45C6702E3E9804753 231808 ----a-w- C:\Users\wolf\Downloads\ezsplitter.exe
2014-12-31 11:08:52 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video
2014-12-31 11:04:00 47D44A7E72D7BEC83CAB3D1FB8892E4D 23279669 ----a-w- C:\Users\wolf\Downloads\videotovideo_setup.exe
2014-12-31 10:29:41 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avidemux
2014-12-31 10:19:48 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Machete Lite
2014-12-30 20:48:09 AF79B5F53685916C6F9D7762A8EBECC7 988472 ----a-w- C:\Users\wolf\Downloads\FYDLoad_flvto_4.exe
2014-12-30 20:43:14 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 - Codec Pack
2014-12-30 20:32:43 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
2014-12-30 20:32:40 -------- d-----w- C:\ProgramData\Freemake
2014-12-30 20:29:59 ABD42EC465D65590952C6A13D6A64F39 1270544 ----a-w- C:\Users\wolf\Downloads\FreemakeVideoConverterSetup.exe
2014-12-30 20:21:07 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-12-29 15:21:53 -------- d-----w- C:\ProgramData\Bluetooth
2014-12-29 15:21:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IVT BlueSoleil
2014-12-29 15:19:26 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2014-12-28 11:44:17 -------- d-----r- C:\Windows\system32\config\systemprofile\Searches
2014-12-27 11:22:33 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems
2014-12-26 21:28:25 -------- d-----w- C:\ProgramData\Nitro
2014-12-26 21:19:40 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-12-26 21:00:22 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2014-12-26 21:00:21 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-12-26 20:10:27 -------- d-----w- C:\ProgramData\Microsoft Help
2014-12-26 19:07:47 -------- d-----r- C:\Users\wolf\Searches
2014-12-26 18:57:15 -------- d-----w- C:\ProgramData\Innovative Solutions
2014-12-26 18:57:14 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Uninstaller PRO
2014-12-26 18:23:28 -------- d---a-w- C:\ProgramData\TEMP
2014-12-26 17:52:02 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Ultra
2014-12-26 17:50:29 -------- d-----w- C:\ProgramData\DAEMON Tools Ultra
2014-12-26 17:46:35 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-12-26 17:45:22 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com
2014-12-26 17:42:08 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-12-26 17:34:48 -------- d-----w- C:\ProgramData\Mozilla
2014-12-26 17:18:35 -------- d-----r- C:\Users\wolf\Contacts
2014-12-26 17:18:26 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\wolf\ntuser.ini
2014-12-26 17:18:26 -------- d--h--w- C:\Users\wolf\AppData
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\Videos
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\Saved Games
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\Pictures
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\Music
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\Links
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\Favorites
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\Downloads
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\Documents
2014-12-26 17:18:26 -------- d-----r- C:\Users\wolf\Desktop
2014-12-26 17:17:29 -------- d-----r- C:\Windows\system32\config\systemprofile\Contacts

====== C: exe-files ==
2015-01-11 15:59:02 61CA40317EBF1254770BF8B495B3F8DA 2191360 ----a-w- C:\Users\wolf\Desktop\AdwCleaner.exe
2015-01-11 10:40:27 0315848916A1D424F60C9D855F69F5CB 1115648 ----a-w- C:\Users\wolf\Desktop\FRST.exe
2015-01-10 13:48:08 EA8EEE0AA826273D9EB338125D86DC14 594944 ----a-w- C:\Program Files\Reallusion\CrazyTalk 6\CT Program\CTIEMain.exe
2015-01-10 13:48:03 1569B073CC3B756A7F726F6E203DD772 399360 ----a-w- C:\Program Files\Reallusion\CrazyTalk 6\CT Program\RLYoutubeUploadTool.exe
2015-01-10 13:47:55 A205551E7BA8580D2C0FF896A4D79FA9 460248 ----a-w- C:\Program Files\InstallShield Installation Information\{60CE924D-12CB-4A96-8B75-18F92CE1D585}\setup.exe
2015-01-10 10:50:56 8578F812F1A14C9544ACC1E154A25342 12847544 ----a-w- C:\Program Files\Reallusion\CrazyTalk7\CTApp.exe
2015-01-10 10:50:34 70C5EB9D45B8858163E3628F1EC8E44B 18360 ----a-w- C:\Program Files\Reallusion\CrazyTalk7\RLSysRegAgentU.exe
2015-01-10 10:50:30 A3F98D3DCE10B33234268EF72CD2A8CB 815328 ----a-w- C:\Program Files\InstallShield Installation Information\{27C4EA98-84A3-4CDF-A436-F984A0283357}\setup.exe
2015-01-08 10:02:39 516C021FEBEDE2962C9252DF85606C76 382168 ----a-w- C:\ProgramData\Adobe\ARM\S\21023\AdobeARMHelper.exe
2015-01-07 18:00:15 3E3BA08605276FB162E9C6D1FE8395AE 1095464 ----a-w- C:\Program Files\Common Files\Reallusion\Downloader\RLCntDownloader.exe
2015-01-07 18:00:14 2484AD6E5C4E7BBE9F8185097A19EF6A 196608 ----a-w- C:\Program Files\Common Files\Reallusion\Downloader\TerminateProc.exe
2015-01-07 17:57:56 FAF606F423D2D1B102CBCBAA260E3AB2 19087144 ----a-w- C:\Program Files\Reallusion\CrazyTalk Animator 2\CrazyTalkAnimator.exe
2015-01-07 17:57:55 8824B9E2325DD8BBD1C35C1E81B1468E 815712 ----a-w- C:\Program Files\InstallShield Installation Information\{7127D4CC-78E6-41E3-8BCB-A50ED34846E2}\setup.exe
2015-01-07 12:01:38 045F518E62ECD595EAE97C2602F92980 991328 ----a-w- C:\Program Files\InstallShield Installation Information\{C2AF7B2D-7018-414B-9B8B-D3C9F3BED04F}\setup.exe
2015-01-06 19:21:07 CBC738221E5B80C4566E4AC0DC16CC8C 621632 ----a-w- C:\Program Files\Tenda\Tenda\RaMediaServer\RaMediaServer.exe
2015-01-06 19:21:07 CBC738221E5B80C4566E4AC0DC16CC8C 621632 ----a-w- C:\Program Files\Tenda\Common\RaMediaServer.exe
2015-01-06 19:21:05 F502A4B72524D21C5CA7183E61FB522E 375872 ----a-w- C:\Program Files\Tenda\Tenda\Service\RaRegistry.exe
2015-01-06 19:21:05 F502A4B72524D21C5CA7183E61FB522E 375872 ----a-w- C:\Program Files\Tenda\Common\RaRegistry.exe
2015-01-06 19:21:01 5C7120DC5D6E373EDC52CA05E7C3CCFF 646208 ----a-w- C:\Program Files\Tenda\Common\SelectCard.exe
2015-01-06 19:21:00 4928FBEB0BA5A5E608F816E128E925E7 12423168 ----a-w- C:\Program Files\Tenda\Common\RaUI.exe
2015-01-06 19:20:59 CD2C42A0561A47912C44BDA3739ABE06 66848 ----a-w- C:\Program Files\Tenda\Common\RaSwap.exe
2015-01-06 19:20:59 88776D64209E170EA8BC82B6E58FDABE 564288 ----a-w- C:\Program Files\Tenda\Tenda\Utility\RaSwapEx.exe
2015-01-06 19:20:59 88776D64209E170EA8BC82B6E58FDABE 564288 ----a-w- C:\Program Files\Tenda\Common\RaSwapEx.exe
2015-01-06 19:20:59 5C7120DC5D6E373EDC52CA05E7C3CCFF 646208 ----a-w- C:\Program Files\Tenda\Tenda\Utility\SelectCard.exe
2015-01-06 19:20:59 4EBC8B16E4FFA41F36B8D13CF1FCF211 83296 ----a-w- C:\Program Files\Tenda\Common\devcon.exe
2015-01-06 19:20:59 394EA0490D4A382627D5D3951633DE16 86880 ----a-w- C:\Program Files\Tenda\Common\devcon64.exe
2015-01-06 19:20:58 CD2C42A0561A47912C44BDA3739ABE06 66848 ----a-w- C:\Program Files\Tenda\Tenda\Utility\RaSwap.exe
2015-01-06 19:20:58 4EBC8B16E4FFA41F36B8D13CF1FCF211 83296 ----a-w- C:\Program Files\Tenda\Tenda\Utility\devcon.exe
2015-01-06 19:20:58 394EA0490D4A382627D5D3951633DE16 86880 ----a-w- C:\Program Files\Tenda\Tenda\Utility\devcon64.exe
2015-01-06 19:20:53 4928FBEB0BA5A5E608F816E128E925E7 12423168 ----a-w- C:\Program Files\Tenda\Tenda\Utility\RaUI.exe
2015-01-06 19:20:21 2080966E43599BCD802E5216DCD3AAFE 533792 ----a-w- C:\ProgramData\Tenda Driver\Tenda\Driver\RaInst.exe
2015-01-06 19:19:44 FBAB280D0CAC5E21C72F0A1A7B5B9608 455600 ----a-w- C:\Program Files\InstallShield Installation Information\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}\setup.exe
2015-01-06 12:45:52 2484AD6E5C4E7BBE9F8185097A19EF6A 196608 ----a-w- C:\Program Files\Common Files\Reallusion\LiveUpdate\TerminateProc.exe
2015-01-06 12:45:50 6A8C3BDC1324320830BEDDBD58147B1E 233984 ----a-w- C:\Program Files\Common Files\Reallusion\LiveUpdate\RLLiveUpdate.exe
2015-01-05 20:20:43 E2B0DFC9660480F706BD12397F863A5E 184320 ----a-w- C:\Program Files\TotalAudioConverter\mp4info.exe
2015-01-05 20:20:43 2B25475C24B096E1B7DB765BCDB4569E 155136 ----a-w- C:\Program Files\TotalAudioConverter\oggenc.exe
2015-01-05 20:20:42 AF4FD3CB1C5D44212042CF880B83D916 195072 ----a-w- C:\Program Files\TotalAudioConverter\lame.exe
2015-01-05 20:20:42 5B688C7C378110E4F4EECD31114DE245 237568 ----a-w- C:\Program Files\TotalAudioConverter\flac.exe
2015-01-05 20:20:40 85947BAD8316EF07808EBC056B123F44 156672 ----a-w- C:\Program Files\TotalAudioConverter\faac.exe
2015-01-05 20:20:40 7CDFBB707C254E1F8AAA16BEDD9C2CCE 348160 ----a-w- C:\Program Files\TotalAudioConverter\mp4creator60.exe
2015-01-05 20:20:40 162238D2F524890B71DB24B146B7A238 104960 ----a-w- C:\Program Files\TotalAudioConverter\mppenc.exe
2015-01-05 20:20:34 DB33AFF82214F1033C58A83A714F8665 2703584 ----a-w- C:\Program Files\TotalAudioConverter\AudioConverter.exe
2015-01-05 20:20:34 189BF1AF8E59CA62AB3A6EAF90C3E9AC 678682 ----a-w- C:\Program Files\TotalAudioConverter\unins000.exe
2015-01-04 19:52:14 D39CC2A6440DA4F16B2F5663A57C4F7F 91872 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftAudioCapturing\x64\devcon.exe
2015-01-04 19:52:14 B3ECA5E1BDA96380F1D2741D82FE3161 157696 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\OggEnc.exe
2015-01-04 19:52:14 012898B5B175887C7F1D6B6AFE10B4CE 87776 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftAudioCapturing\x86\devcon.exe
2015-01-04 19:52:13 6B6BE3176D58A76DA4F335EDF5A75289 145408 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\Lame.exe
2015-01-04 19:52:13 5B9277B9DB672E59B94E81D6D8F98507 76800 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\Faac.exe
2015-01-04 19:52:09 E893ADF89E22F9477D002BABE37B534F 48864 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftEndPointController.exe
2015-01-04 19:52:06 FA86E2806AD92A43C9C685741585D84C 1641064 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\Screen Recording Suite.exe
2015-01-04 19:52:06 80408BE5BA8CF623966D4C45AFC10F0C 115936 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftGetDefault.exe
2015-01-04 19:52:05 F8021782B935A118D37D7FC8674EB5F1 1186359 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\unins000.exe
=== C: other files ==
2015-01-06 19:20:21 AF2ED1D41A180C4F4BBD1B941C17D44E 1270848 ----a-w- C:\Windows\System32\DriverStore\FileRepository\netr28u.inf_x86_neutral_624d6789c95a17ab\netr28u.sys
2015-01-06 19:20:21 AF2ED1D41A180C4F4BBD1B941C17D44E 1270848 ----a-w- C:\Windows\System32\drivers\netr28u.sys
2015-01-06 19:20:21 AF2ED1D41A180C4F4BBD1B941C17D44E 1270848 ----a-w- C:\ProgramData\Tenda Driver\Tenda\Driver\netr28u.sys
2015-01-04 19:52:15 590EDF0E162D1A14DB4676873FC9A168 72 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\driver_install.bat
2015-01-04 19:52:15 548CCBD8B48FDF7E2435AD6017920A7F 26080 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\Apowersoft_AudioDevice.sys
2015-01-04 19:52:14 CB3052B6E5A8FD94EE10347904C901C6 52 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftAudioCapturing\x86\status.bat
2015-01-04 19:52:14 CB3052B6E5A8FD94EE10347904C901C6 52 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftAudioCapturing\x64\status.bat
2015-01-04 19:52:14 590EDF0E162D1A14DB4676873FC9A168 72 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftAudioCapturing\x86\driver_install.bat
2015-01-04 19:52:14 590EDF0E162D1A14DB4676873FC9A168 72 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftAudioCapturing\x64\driver_install.bat
2015-01-04 19:52:14 548CCBD8B48FDF7E2435AD6017920A7F 26080 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftAudioCapturing\x86\Apowersoft_AudioDevice.sys
2015-01-04 19:52:14 4FC6E2C2FC50445450651F42E90CC0BD 31968 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\ApowersoftAudioCapturing\x64\Apowersoft_AudioDevice.sys
2015-01-04 19:52:13 E2258FAB36D38332C6FDC38CE621145D 39 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\getDefault.bat
2015-01-04 19:52:13 44BF0D32789844DE58B256BC3326855C 42 ----a-w- C:\Program Files\Apowersoft\Screen Recording Suite\getAllDevices.bat

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe"
"DAEMON Tools Ultra Agent"="C:\Program Files\DAEMON Tools Ultra\DTAgent.exe -autorun"
"Flvto Youtube Downloader"="C:\Program Files\Flvto Youtube Downloader\FlvtoYoutubeDownloader.exe /minimize"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ACPW07EN"="C:\Program Files\ACD Systems\ACDSee Pro\7.0\acdIDInTouch2.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe"
"DAEMON Tools Ultra Agent"="C:\Program Files\DAEMON Tools Ultra\DTAgent.exe -autorun"
"Flvto Youtube Downloader"="C:\Program Files\Flvto Youtube Downloader\FlvtoYoutubeDownloader.exe /minimize"

==== Startup Registry Disabled ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ad76a6098df431046ffdf41b1a2ed40a]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ad76a6098df431046ffdf41b1a2ed40a"
"hkey"="HKLM"
"command"="\"C:\\ProgramData\\svchost.exe\" .."

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BCSSync]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="BCSSync"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Microsoft Office\\Office14\\BCSSync.exe\" /DelayServices"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ETDWare]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ETDWare"
"hkey"="HKLM"
"command"="%ProgramFiles%\\Elantech\\ETDCtrl.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\MSC]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="MSC"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Microsoft Security Client\\msseces.exe\" -hide -runkey"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="RtHDVCpl"
"hkey"="HKLM"
"command"="C:\\Program Files\\Realtek\\Audio\\HDA\\RtHDVCpl.exe -s"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SynTPEnh]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="SynTPEnh"
"hkey"="HKLM"
"command"="%ProgramFiles%\\Synaptics\\SynTP\\SynTPEnh.exe"


==== Startup Folders ======================

2015-01-06 19:21:11 1921 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Tenda Wireless Utility.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [26.12.2014 21:03]

==== Other Scheduled Tasks ======================

"C:\Windows\system32\tasks\Adobe Acrobat Update Task" [C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe]
"C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\system32\tasks\NCH Software\WavePadReminder" [C:\Program Files\NCH Software\WavePad\WavePad.exe]
"C:\Windows\system32\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default
user_pref("browser.startup.homepage", "https://www.google.rs/?gws_rd=cr,ssl&ei=iMujVIqqI8v_ywOqo4KYCw");

==== Firefox Extensions ======================

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default
424899266BA430CCE5DDB6C1B4BE1B99 - C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll - Shockwave Flash
0806948270D853B709CCBBF38AF167E4 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
9DF0C4F0CEF60158614EDD1B3AB441EE - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
893BF7D2261C56C24F813405D9D018E0 - C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll - Silverlight Plug-In
F0E80E561C3F715DB01ACCC97B72463A - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Photo Gallery
94A3088646C777CE99C3C1D7809C4BAC - C:\Program Files\Nitro\Pro 9\npnitromozilla.dll - Nitro PDF plugin for Firefox and Chrome
43CEBDFA8B91BEB5FEBD4F9E6768AEF2 - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
8DA2ED6B04EA33F2EAE8BA883F903729 - C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrlui.dll - Microsoft® Silverlight
0C21CB9426AD831DB02FB66232B3A42F - C:\Program Files\Nitro\Pro 9\NPShellExtension.dll - Nitro Pro ShellExtension
6900B96FDD37E5C08FE0AEF0C542F103 - C:\Program Files\Nitro\Pro 9\npdf.dll - FileOpen WebPublisher3+ MSO Security exchange
7B31592F0D472146865BF096CCD34798 - C:\Program Files\Nitro\Pro 9\npnitroie.dll - Nitro PDF plugin for Internet Explorer


==== IE Start and Search Settings ======================

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://services.freshy.com/general/newhometab.php?hometab=home&partner=11183&guid={B4B46579-5EDC-47F5-A59A-0A56C61F4F42}&i="
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{5C72473B-0359-40DF-B6EC-AD89D2BF62F7} Yahoo: Url="https://search.yahoo.com/yhs/search?hspart=tightrope&hsimp=yhs-tig2&type=11183_123114&p={searchTerms}"
{9377AC99-9876-4ADA-90FA-742135C8B7E6} Yahoo//search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=11183"
{96AD2236-D99D-43F7-A3D3-44C4E939111C} Bing Url="http://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox"

==== C:\zoek_backup content ======================

C:\zoek_backup (files=0 folders=0 0 bytes)

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building


Zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;
dvoklikom pokreni zoek.exe;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sljedeći tekst:

C:\Users\wolf\Downloads\SoftonicDownloader_for_windows-movie-maker-2012.exe;fs
C:\Users\wolf\Downloads\SoftonicDownloader_for_windows-movie-maker.exe;fs
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs];r
"Tabs"="about:blank";r
emptyalltemp;
emptyclsid;
autoclean;


Klikni na dugme i pričekaj da se skeniranje završi.


Zoek će po potrebi restartovati Windows, a na kraju rada otvoriti Notepad sa izvještajem o skeniranju.

Napomena: Izvještaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadržaj tog loga u poruku.

offline
  • Pridružio: 01 Mar 2008
  • Poruke: 245

Zoek.exe v5.0.0.0 Updated 09-January-2015
Tool run by wolf on ned 11.01.2015 at 21:58:57,59.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\wolf\Desktop\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-01-11-192222.log 56122 bytes

==== Empty Folders Check ======================

C:\Program Files\AGEIA Technologies deleted successfully
C:\Program Files\uTorrent deleted successfully
C:\Users\wolf\AppData\Roaming\Publish Providers deleted successfully
C:\Users\wolf\AppData\Local\WMTools Downloaded Files deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\SearchScopes\{5C72473B-0359-40DF-B6EC-AD89D2BF62F7} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\SearchScopes\{9377AC99-9876-4ADA-90FA-742135C8B7E6} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1f4a65ea-7129-4b45-93f9-deafbfa2a967} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{22889D94-2F34-4C05-AB31-6D565C9252B} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26cd3c75-8499-4c26-bb6f-6da8fbbdf540} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A37514A-11D0-47FF-9510-6B39317E3DD2} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{72A6AB0F-2FA8-4C73-9FCB-1E62A608F001} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{795c4cc3-4c0e-4650-b5f6-e8c3e6104c8b} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7C5D41E9-77B3-492A-BB38-7A204D9DD21C} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E47CADF-AE22-4E32-91DF-1940A3763883} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F7D72D3-7E5B-4C53-A736-779C3932FD4} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CCE0F91-4065-49C2-8EF4-8F8E2282231} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BB0D227B-D507-4826-8375-C44533198BC5} deleted successfully
HKEY_USERS\S-1-5-21-3743286084-892125646-1870079314-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E770DF5A-BEFA-4F62-9CA1-26133857A4DB} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1f4a65ea-7129-4b45-93f9-deafbfa2a967} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26cd3c75-8499-4c26-bb6f-6da8fbbdf540} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{795c4cc3-4c0e-4650-b5f6-e8c3e6104c8b} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

ProfilePath: C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default

user.js not found
---- Lines allgenius removed from prefs.js ----
user_pref("extensions.allgenius.asul", "1420020466387");
user_pref("extensions.allgenius.irl", true);
user_pref("extensions.allgenius.is", "trlsrs");
user_pref("extensions.allgenius.ug", "44E0F137-1835-438F-928C-AC87F9DE6CDA");
---- FireFox user.js and prefs.js backups ----

prefs_11.01.2015_2212_.backup

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:blank"

==== Deleting Files \ Folders ======================

C:\Users\wolf\Downloads\SoftonicDownloader_for_windows-movie-maker-2012.exe deleted
C:\Users\wolf\Downloads\SoftonicDownloader_for_windows-movie-maker.exe deleted
C:\Program Files\Software Update Services deleted
C:\Users\wolf\AppData\Local\Installer deleted
C:\Windows\system32\config\systemprofile\Searches deleted
C:\Windows\system32\GroupPolicy\Machine deleted
C:\Windows\system32\GroupPolicy\User deleted
C:\Windows\system32\GroupPolicy\gpt.ini deleted
C:\Users\wolf\AppData\Roaming\FGFIR.exe deleted
C:\Users\wolf\AppData\Roaming\IBBMII.exe deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default
user_pref("browser.startup.homepage", "https://www.google.rs/?gws_rd=cr,ssl&ei=iMujVIqqI8v_ywOqo4KYCw");

==== Firefox Extensions ======================

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\wolf\AppData\Roaming\Mozilla\Firefox\Profiles\x28ikosk.default
424899266BA430CCE5DDB6C1B4BE1B99 - C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll - Shockwave Flash
0806948270D853B709CCBBF38AF167E4 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
9DF0C4F0CEF60158614EDD1B3AB441EE - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
893BF7D2261C56C24F813405D9D018E0 - C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll - Silverlight Plug-In
F0E80E561C3F715DB01ACCC97B72463A - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Photo Gallery
94A3088646C777CE99C3C1D7809C4BAC - C:\Program Files\Nitro\Pro 9\npnitromozilla.dll - Nitro PDF plugin for Firefox and Chrome
43CEBDFA8B91BEB5FEBD4F9E6768AEF2 - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
8DA2ED6B04EA33F2EAE8BA883F903729 - C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrlui.dll - Microsoft® Silverlight
0C21CB9426AD831DB02FB66232B3A42F - C:\Program Files\Nitro\Pro 9\NPShellExtension.dll - Nitro Pro ShellExtension
6900B96FDD37E5C08FE0AEF0C542F103 - C:\Program Files\Nitro\Pro 9\npdf.dll - FileOpen WebPublisher3+ MSO Security exchange
7B31592F0D472146865BF096CCD34798 - C:\Program Files\Nitro\Pro 9\npnitroie.dll - Nitro PDF plugin for Internet Explorer


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:blank"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{96AD2236-D99D-43F7-A3D3-44C4E939111C} Bing Url="http://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ad76a6098df431046ffdf41b1a2ed40a deleted successfully

==== Empty IE Cache ======================

C:\Users\wolf\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\wolf\AppData\Local\Mozilla\Firefox\Profiles\x28ikosk.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=12 folders=7 9767726 bytes)

==== Empty Temp Folders ======================

C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\wolf\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\wolf\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on ned 11.01.2015 at 22:15:50,08 ======================

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Kakvo je sada stanje?

Ko je trenutno na forumu
 

Ukupno su 946 korisnika na forumu :: 37 registrovanih, 3 sakrivenih i 906 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., antonije64, Apok, Boris BM, BRATORIII, comi_pfc, crnitrn, dankisha, esx66, FileFinder, Georgius, hawkeye, HrcAk47, hyla, Još malo pa deda, ladro, laki_bb, Lazarus, Leonov, Litostroton, mercedesamg, Mercury, milanovic, MiroslavD, mocnijogurt, moldway, MrNo, mrvica78, nikoli_ca, Parker, stegonosa, Trpe Grozni, vathra, virked, Vlad000, x9, |_MeD_|