Mozilla Firefox

2

Mozilla Firefox

offline
  • Pridružio: 14 Okt 2012
  • Poruke: 129

Zoek.exe v5.0.0.0 Updated 19-February-2014
Tool run by BROI on pet 21.02.2014 at 1:17:13,23.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\BROI\Downloads\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-02-19-210710.log 43827 bytes

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1243640450-486176582-2858386702-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C45EC9F0-8333-465D-9728-074BD41985C9} deleted successfully
HKEY_USERS\S-1-5-21-1243640450-486176582-2858386702-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11C8C9C0-D918-44C0-8B5E-D297DA42F2C7} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MgAssistService deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\MgAssistService deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util FindRight deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Util FindRight deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Eventlog\Application\Util FindRight deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Util FindRight deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update FindRight deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update FindRight deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Eventlog\Application\Update FindRight deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Update FindRight deleted successfully

==== FireFox Fix ======================

ProfilePath: C:\Users\BROI\AppData\Roaming\Mozilla\Firefox\Profiles\tgtk0d67.default-1392685605157

---- Lines FindRight removed from prefs.js ----
user_pref("extensions.FindRight.aul", "1392941710464");
user_pref("extensions.FindRight.irl", true);
user_pref("extensions.FindRight.is", "isgiwhRS");
user_pref("extensions.FindRight.ug", "36A7680D-8DBB-4345-A437-7800FBC029A1");
---- FireFox user.js and prefs.js backups ----

user_21.02.2014_0128_.backup
prefs_21.02.2014_0128_.backup

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSC"=-
C:\Users\BROI\AppData\Local\Temp\install757166.exe
"MSC"=-

==== Deleting Files \ Folders ======================

"C:\Users\BROI\AppData\Local\Temp\install757166.exe" not found
C:\PROGRA~3\CorelDRAW Graphics Suite X6.1 deleted
C:\PROGRA~3\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} deleted
C:\Users\BROI\daemonprocess.txt deleted
C:\Users\BROI\.android deleted
C:\Users\BROI\AppData\Roaming\burnaware.ini deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\BROI\AppData\Local\cache deleted
"C:\Program Files\Microsoft Security Client\DbgHelp.dll" not deleted
"C:\Program Files\Microsoft Security Client\EppManifest.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpAsDesc.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpClient.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpCmdRun.exe" not deleted
"C:\Program Files\Microsoft Security Client\MpCommu.dll" not deleted
"C:\Program Files\Microsoft Security Client\mpevmsg.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpOAv.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpRTP.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpSvc.dll" not deleted
"C:\Program Files\Microsoft Security Client\MSESysprep.dll" not deleted
"C:\Program Files\Microsoft Security Client\MsMpCom.dll" not deleted
"C:\Program Files\Microsoft Security Client\MsMpEng.exe" not deleted
"C:\Program Files\Microsoft Security Client\MsMpLics.dll" not deleted
"C:\Program Files\Microsoft Security Client\MsMpRes.dll" not deleted
"C:\Program Files\Microsoft Security Client\msseces.exe" not deleted
"C:\Program Files\Microsoft Security Client\msseoobe.exe" not deleted
"C:\Program Files\Microsoft Security Client\msseooberes.dll" not deleted
"C:\Program Files\Microsoft Security Client\MsseWat.dll" not deleted
"C:\Program Files\Microsoft Security Client\NisIpsPlugin.dll" not deleted
"C:\Program Files\Microsoft Security Client\NisLog.dll" not deleted
"C:\Program Files\Microsoft Security Client\NisSrv.exe" not deleted
"C:\Program Files\Microsoft Security Client\NisWFP.dll" not deleted
"C:\Program Files\Microsoft Security Client\Setup.exe" not deleted
"C:\Program Files\Microsoft Security Client\SetupRes.dll" not deleted
"C:\Program Files\Microsoft Security Client\shellext.dll" not deleted
"C:\Program Files\Microsoft Security Client\SqmApi.dll" not deleted
"C:\Program Files\Microsoft Security Client\SymSrv.dll" not deleted
"C:\Program Files\Microsoft Security Client\SymSrv.yes" not deleted
"C:\PROGRA~2\FindRight\updateFindRight.exe" deleted
"C:\Program Files\Microsoft Security Client\en-us\MsMpRes.dll.mui" deleted
"C:\PROGRA~2\FindRight\bin\utilFindRight.exe" deleted
"C:\Program Files\Microsoft Security Client" not deleted
"C:\PROGRA~2\FindRight" not deleted
"C:\Program Files\Microsoft Security Client\en-us" not deleted
"C:\PROGRA~2\FindRight\bin" not deleted

==== Firefox Extensions ======================

ProfilePath: C:\Users\BROI\AppData\Roaming\Mozilla\Firefox\Profiles\tgtk0d67.default-1392685605157
- Qualys BrowserCheck - %ProfilePath%\extensions\{7D2FB79E-E58C-4DB5-A36F-AC1C73967F4D}
- Vlc context menu - %ProfilePath%\extensions\vlcplaylist@helgatauscher.de.xpi
- FindRight - %ProfilePath%\extensions\{42e50651-9669-456e-9081-d5a836274274}.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\BROI\AppData\Roaming\Mozilla\Firefox\Profiles\tgtk0d67.default-1392685605157
D775FA6F1E88B3B99E69E8A0D6C3A819 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll - Shockwave Flash


==== Deleted Firefox Extensions ======================

C:\Users\BROI\AppData\Roaming\Mozilla\Firefox\Profiles\tgtk0d67.default-1392685605157\extensions\{42e50651-9669-456e-9081-d5a836274274}.xpi deleted

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[03.01.2014 01:32]

Qualys BrowserCheck for Windows - BROI\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejhnkognlohdkpjkjongioociddgoibk
Google Wallet - BROI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
DefaultTab - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc

==== Chrome Fix ======================

C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Deleting CLSID Registry Keys ======================

HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{2c774641-5504-46a8-b63f-6715ae3fe376} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2c774641-5504-46a8-b63f-6715ae3fe376} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\BROI\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\BROI\AppData\Local\Mozilla\Firefox\Profiles\tgtk0d67.default-1392685605157\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\BROI\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=440 folders=57 49681454 bytes)

==== Empty Temp Folders ======================

C:\Users\BROI\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\BROI\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Program Files\Microsoft Security Client\DbgHelp.dll" not deleted
"C:\Program Files\Microsoft Security Client\EppManifest.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpAsDesc.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpClient.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpCmdRun.exe" not deleted
"C:\Program Files\Microsoft Security Client\MpCommu.dll" not deleted
"C:\Program Files\Microsoft Security Client\mpevmsg.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpOAv.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpRTP.dll" not deleted
"C:\Program Files\Microsoft Security Client\MpSvc.dll" not deleted
"C:\Program Files\Microsoft Security Client\MSESysprep.dll" not deleted
"C:\Program Files\Microsoft Security Client\MsMpCom.dll" not deleted
"C:\Program Files\Microsoft Security Client\MsMpEng.exe" not deleted
"C:\Program Files\Microsoft Security Client\MsMpLics.dll" not deleted
"C:\Program Files\Microsoft Security Client\MsMpRes.dll" not deleted
"C:\Program Files\Microsoft Security Client\msseces.exe" not deleted
"C:\Program Files\Microsoft Security Client\msseoobe.exe" not deleted
"C:\Program Files\Microsoft Security Client\msseooberes.dll" not deleted
"C:\Program Files\Microsoft Security Client\MsseWat.dll" not deleted
"C:\Program Files\Microsoft Security Client\NisIpsPlugin.dll" not deleted
"C:\Program Files\Microsoft Security Client\NisLog.dll" not deleted
"C:\Program Files\Microsoft Security Client\NisSrv.exe" not deleted
"C:\Program Files\Microsoft Security Client\NisWFP.dll" not deleted
"C:\Program Files\Microsoft Security Client\Setup.exe" not deleted
"C:\Program Files\Microsoft Security Client\SetupRes.dll" not deleted
"C:\Program Files\Microsoft Security Client\shellext.dll" not deleted
"C:\Program Files\Microsoft Security Client\SqmApi.dll" not deleted
"C:\Program Files\Microsoft Security Client\SymSrv.dll" not deleted
"C:\Program Files\Microsoft Security Client\SymSrv.yes" not deleted
"C:\Program Files\Microsoft Security Client" not deleted
"C:\PROGRA~2\FindRight" not found

==== EOF on pet 21.02.2014 at 1:34:49,83 ======================

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Imas problem sa MSE antivirusom, nije dobro izbrisan a ja ne mogu rucno da ga brisem, probaj ovako.



Arrow Preuzmi Microsoft Security Essentials installer na Desktop:

32-bitna verzija,
http://download.microsoft.com/download/A/3/8/A38FF.....nstall.exe

64-bitna verzija,
http://download.microsoft.com/download/A/3/8/A38FF.....nstall.exe

Arrow Pritisni dugme i R, otvoriće se ovakav prozor:



Arrow Prevuci fajl koji je predhodno preuzet u Open sekciju:





Arrow Potrebno je da dodati na kraju " /U"(bez navodnika, i sa razmakom između putanje i /U).




Arrow U prozoru koji se otvori, klikni na Uninstall








***************************



Zatim mi ponovi zoek sa ovom skriptom i prilozi log fajl.

Uninstall-List;
QuickScan;

offline
  • Pridružio: 14 Okt 2012
  • Poruke: 129

Ja ranije nisam imao problem ovako sa ovim anti virusom,a jos sto je najveci problem sto nemoze da se izbrise,nemoze iz CONTRA PANEL a nemoze ni na ovakav nacin kao sto si mi ti napisao,nemoze iz prostog razloga sto mi javlja ovo a sada ces videti na slici...Sad

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Obrisi AVG, onda ponovo instaliraj MSE pa pokusaj da ga deinstaliras.

NIsi ni prvi ni poslednji koji je imao takav problem, ne vezano koji je AV bio u pitanju.

Neznajuci da Antivirus nije dobrom deinstaliran, korisnik instalira drugi i onda dolazi do takvih problema.

offline
  • Pridružio: 14 Okt 2012
  • Poruke: 129

Ali ja sam AVG anti virus izbrisao,samo imam instalaciju u selekciju downlods,a MSE sam pokusao da instaliram ali opet mi javlja isto kao na ovu sliku sto sam ti malopre poslo.

offline
  • Pridružio: 14 Okt 2012
  • Poruke: 129

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Da probamo ovako.

Preuzmi Farbar-ov Farbar Recovery Scan Tool () sa ove adrese na Desktop:
Postoji 32bit. i 64bit.-na verzija. Potrebno je preuzeti verziju koja je kompatibilna sa tvojim sistemom.
Ako nisi siguran koja verzija se odnosi na tvoj sistem, preuzmi ih obe i pokreni. Samo jedan od njih će raditi na tvom sistemu, to će biti prava verzija.


dvoklikom pokreni program, kada se alat pokrene klikni Yes na disclaimer prozor;
pričekati koji trenutak dok alat proverava postoji li novija verzija;
klikni na dugme Scan;
po završetku skeniranja, alat će formirati izveštaj (FRST.txt) u isti direktorijum gde je FRST alat sačuvan;
iskopiraj sadržaj FRST.txt izveštaja u poruku;
po prvom pokretanju, alat bi trebao formirati i dodatni izveštaj (Addition.txt);
okači Addition.txt izveštaj uz poruku koristeći opciju Prikači fajl

offline
  • Pridružio: 14 Okt 2012
  • Poruke: 129

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-02-2014 01
Ran by BROI (administrator) on BROI-PC on 22-02-2014 16:01:29
Running from C:\Users\BROI\Downloads
Windows 7 Ultimate Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Farbar) C:\Users\BROI\Downloads\FRST64(1).exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MpCmdRun.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM-x32\...\Run: [GoforFilesInstaller Starter] - "C:\Users\BROI\AppData\Local\Temp\install757166.exe" -startup
HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4962320 2014-01-22] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-1243640450-486176582-2858386702-1000\...\MountPoints2: {7f0676bf-8615-11e3-8006-001bfc72466f} - F:\AutoRun.exe {D2D77DC2-8299-11D1-8949-444553540000} 5.2066.1.A11B02 PID_0083

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x80DA4D0A0CB7CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = sr-me
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {0D41B8C5-2599-4893-8183-00195EC8D5F9} asus.com/support/asusTek_sys_ctrl3.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 89.216.1.40 89.216.1.50

FireFox:
========
FF ProfilePath: C:\Users\BROI\AppData\Roaming\Mozilla\Firefox\Profiles\tgtk0d67.default-1392685605157
FF user.js: detected! => C:\Users\BROI\AppData\Roaming\Mozilla\Firefox\Profiles\tgtk0d67.default-1392685605157\user.js
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll ()
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazon-en-GB.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-en-GB.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\pogodakyu.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\vokabular.xml
FF Extension: Qualys BrowserCheck - C:\Users\BROI\AppData\Roaming\Mozilla\Firefox\Profiles\tgtk0d67.default-1392685605157\Extensions\{7D2FB79E-E58C-4DB5-A36F-AC1C73967F4D} [2014-02-19]
FF Extension: Vlc Kontextmenü - C:\Users\BROI\AppData\Roaming\Mozilla\Firefox\Profiles\tgtk0d67.default-1392685605157\Extensions\vlcplaylist@helgatauscher.de.xpi [2014-02-19]

Chrome:
=======
CHR Extension: (Qualys BrowserCheck for Windows) - C:\Users\BROI\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejhnkognlohdkpjkjongioociddgoibk [2014-02-18]
CHR Extension: (Google Wallet) - C:\Users\BROI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-01]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03]

==================== Services (Whitelisted) =================

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-08-30] (Advanced Micro Devices, Inc.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3788816 2014-01-22] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363616 2014-01-03] (Microsoft Corporation)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
S3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75064 2013-10-05] ()

==================== Drivers (Whitelisted) ====================

R0 amdkmafd; C:\Windows\System32\DRIVERS\amdkmafd.sys [21160 2013-12-30] (Advanced Micro Devices, Inc.)
S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [38424 2011-07-07] (Google Inc)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-25] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [196376 2013-11-25] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [251192 2013-08-01] (AVG Technologies CZ, s.r.o.)
S3 massfilter_hs; C:\Windows\system32\drivers\massfilter_hs.sys [18456 2011-07-07] (HandSet Incorporated)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2013-12-30] ()
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19152 2013-09-30] ()
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] ()
S3 RTL8187B; C:\Windows\System32\DRIVERS\RTL8187B.sys [416768 2009-06-10] (Realtek Semiconductor Corporation )
S4 AVGIDSDriver; system32\DRIVERS\avgidsdrivera.sys [X]
S4 Avgrkx64; system32\DRIVERS\avgrkx64.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-22 16:00 - 2014-02-22 16:00 - 02154496 _____ (Farbar) C:\Users\BROI\Downloads\FRST64(1).exe
2014-02-22 11:41 - 2014-02-22 11:41 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software
2014-02-22 11:41 - 2014-02-22 11:41 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software
2014-02-22 11:35 - 2014-02-22 11:35 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\AVG2014
2014-02-22 11:33 - 2014-02-22 11:41 - 00000965 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-02-22 11:31 - 2014-02-22 11:34 - 00000000 ____D () C:\ProgramData\AVG2014
2014-02-22 11:31 - 2014-02-22 11:31 - 00000000 ___HD () C:\$AVG
2014-02-22 11:30 - 2014-02-22 11:30 - 00000000 ____D () C:\Program Files (x86)\AVG
2014-02-22 11:26 - 2014-02-22 11:35 - 00000000 ____D () C:\Users\BROI\AppData\Local\Avg2014
2014-02-22 11:19 - 2014-02-22 15:50 - 00000112 _____ () C:\Windows\setupact.log
2014-02-22 11:19 - 2014-02-22 11:19 - 00000690 _____ () C:\Windows\PFRO.log
2014-02-22 11:19 - 2014-02-22 11:19 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-22 01:43 - 2014-02-22 01:43 - 00002970 _____ () C:\Windows\System32\Tasks\{9F327A92-7C5B-44D7-AB92-B21E2DE79AF4}
2014-02-22 01:22 - 2014-02-22 01:23 - 13670584 _____ (Microsoft Corporation) C:\Users\BROI\Downloads\mseinstall(1).exe
2014-02-22 01:13 - 2014-02-22 01:14 - 13670584 _____ (Microsoft Corporation) C:\Users\BROI\Downloads\mseinstall.exe
2014-02-21 23:29 - 2014-02-21 23:30 - 13670584 _____ (Microsoft Corporation) C:\Users\BROI\Desktop\mseinstall.exe
2014-02-21 11:34 - 2014-02-21 11:34 - 00007605 _____ () C:\Users\BROI\AppData\Local\Resmon.ResmonCfg
2014-02-21 01:33 - 2014-02-21 01:17 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-02-21 01:18 - 2014-02-19 22:07 - 00043827 _____ () C:\zoek-results2014-02-19-210710.log
2014-02-20 20:55 - 2014-02-20 20:55 - 17858952 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-02-20 00:58 - 2014-02-20 00:58 - 00000000 ____D () C:\Users\BROI\AppData\Local\DFX
2014-02-20 00:55 - 2014-02-20 00:55 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\vlc
2014-02-20 00:55 - 2014-02-20 00:55 - 00000000 ____D () C:\Users\Guest
2014-02-20 00:55 - 2014-02-20 00:55 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\vlc
2014-02-20 00:55 - 2014-02-20 00:55 - 00000000 ____D () C:\Users\Administrator
2014-02-20 00:52 - 2014-02-20 00:52 - 00930440 _____ (CNET Download.com) C:\Users\BROI\Downloads\cbsidlm-cbsi176-DFX_Audio_Enhancer-ORG-10048113.exe
2014-02-19 22:55 - 2013-09-08 21:01 - 00000035 _____ () C:\Users\BROI\Downloads\Key AV.txt
2014-02-19 22:55 - 2013-09-08 20:59 - 143845104 _____ (AVG Technologies) C:\Users\BROI\Downloads\avg_avct_x64_all_2014_4117a6638.exe
2014-02-19 22:26 - 2014-02-19 22:55 - 148148420 _____ () C:\Users\BROI\Downloads\bj6gm.AVG.AntiVirus.Pro.2014.14.0.Build.4117.x64.rar
2014-02-19 22:02 - 2014-02-21 01:34 - 00013403 _____ () C:\zoek-results.log
2014-02-19 22:01 - 2014-02-21 01:31 - 00000000 ____D () C:\zoek_backup
2014-02-19 21:58 - 2014-02-19 21:58 - 01284608 _____ () C:\Users\BROI\Desktop\zoek.exe
2014-02-19 02:39 - 2014-02-21 01:34 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2014-02-19 02:39 - 2014-02-19 02:39 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client
2014-02-19 01:55 - 2014-02-19 22:17 - 00000000 ____D () C:\Program Files (x86)\JDownloader
2014-02-19 01:55 - 2014-02-19 01:55 - 00002037 _____ () C:\Users\BROI\Desktop\JDownloader.lnk
2014-02-19 01:52 - 2014-02-19 01:52 - 00081488 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\BROI\Downloads\WebInstaller.exe
2014-02-18 12:06 - 2014-02-18 12:06 - 00001169 _____ () C:\Users\BROI\Desktop\Auslogics DiskDefrag.lnk
2014-02-18 12:06 - 2014-02-18 12:06 - 00000000 ____D () C:\Program Files (x86)\Auslogics
2014-02-18 12:05 - 2014-02-18 12:05 - 06204024 _____ (Auslogics Labs Pty Ltd ) C:\Users\BROI\Downloads\disk-defrag-setup.exe
2014-02-18 11:45 - 2014-02-18 11:45 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-02-18 11:45 - 2014-02-18 11:45 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-02-18 11:45 - 2014-02-18 11:45 - 00000000 ____D () C:\Program Files\CCleaner
2014-02-18 11:42 - 2014-02-18 11:42 - 04721920 _____ (Piriform Ltd) C:\Users\BROI\Downloads\ccsetup410.exe
2014-02-18 11:37 - 2014-02-19 23:11 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\vlc
2014-02-18 11:37 - 2014-02-18 11:37 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-02-18 11:33 - 2014-02-18 11:35 - 24677393 _____ () C:\Users\BROI\Downloads\vlc-2.1.3-skidajmo.com.exe
2014-02-18 01:50 - 2014-02-18 01:50 - 00448512 _____ (OldTimer Tools) C:\Users\BROI\Downloads\TFC.exe
2014-02-18 01:08 - 2014-02-18 01:10 - 00010873 _____ () C:\Users\BROI\Downloads\error.log
2014-02-18 01:05 - 2014-02-18 01:07 - 26440904 _____ (AppWork GmbH) C:\Users\BROI\Downloads\JDownloaderSetup.exe
2014-02-18 00:44 - 2014-02-18 00:44 - 00006190 _____ () C:\Users\BROI\Downloads\New Text Document.txt
2014-02-17 20:11 - 2014-02-17 20:11 - 00025371 _____ () C:\Users\BROI\Downloads\295882_493794962_Addition.txt
2014-02-17 20:06 - 2014-02-22 16:01 - 00011809 _____ () C:\Users\BROI\Downloads\FRST.txt
2014-02-17 20:05 - 2014-02-22 16:01 - 00000000 ____D () C:\FRST
2014-02-17 20:05 - 2014-02-17 20:05 - 02152448 _____ (Farbar) C:\Users\BROI\Downloads\FRST64.exe
2014-02-17 19:30 - 2014-02-17 19:30 - 00688992 ____R (Swearware) C:\Users\BROI\Downloads\dds.scr
2014-02-17 19:22 - 2014-02-17 19:22 - 00007589 _____ () C:\Users\BROI\Downloads\AdwCleaner[S0].txt
2014-02-17 19:14 - 2014-02-17 19:19 - 00000000 ____D () C:\AdwCleaner
2014-02-17 19:12 - 2014-02-17 19:12 - 01241888 _____ () C:\Users\BROI\Downloads\AdwCleaner.exe
2014-02-17 19:11 - 2014-02-17 19:11 - 00001619 _____ () C:\Users\BROI\Downloads\272623_940619330_AdwCleaner[S0].txt
2014-02-17 19:05 - 2014-02-17 19:05 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-02-17 19:05 - 2014-02-17 19:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-17 18:57 - 2014-02-17 18:58 - 00282896 _____ (Mozilla) C:\Users\BROI\Downloads\Firefox Setup Stub 27.0.1 (1).exe
2014-02-17 12:53 - 2014-02-17 12:53 - 00000000 ____D () C:\Windows\pss
2014-02-16 23:58 - 2014-02-16 23:58 - 02152176 _____ () C:\Users\BROI\Downloads\CodecPerformerSetup (2).exe
2014-02-16 23:55 - 2014-02-16 23:55 - 02152176 _____ () C:\Users\BROI\Downloads\CodecPerformerSetup (1).exe
2014-02-16 23:45 - 2014-02-16 23:46 - 00000000 ____D () C:\Program Files (x86)\Free Games 111
2014-02-16 23:43 - 2014-02-16 23:44 - 02152176 _____ () C:\Users\BROI\Downloads\CodecPerformerSetup.exe
2014-02-16 23:11 - 2014-02-16 23:13 - 35747752 _____ (TuneUp Software) C:\Users\BROI\Downloads\TuneUpUtilities2014_en-US.exe
2014-02-16 20:09 - 2014-02-22 15:55 - 00000000 ____D () C:\ProgramData\MFAData
2014-02-16 20:09 - 2014-02-16 20:09 - 04462392 _____ (AVG Technologies) C:\Users\BROI\Downloads\avg_isct_stb_all_2014_4335.exe
2014-02-16 20:09 - 2014-02-16 20:09 - 00000000 ____D () C:\Users\BROI\AppData\Local\MFAData
2014-02-16 01:49 - 2014-02-16 01:50 - 07713382 _____ () C:\Users\BROI\Downloads\RegCurePro 3.1.7 (MrXintax).rar
2014-02-16 01:39 - 2014-02-16 01:40 - 05937720 _____ (ParetoLogic, Inc.) C:\Users\BROI\Downloads\RegCureProSetup.exe
2014-02-16 01:34 - 2014-02-16 01:34 - 04274544 _____ (LionSea Software ) C:\Users\BROI\Downloads\Smart_Rundll32_Exe_Fixer_Pro_Setup.exe
2014-02-16 01:21 - 2014-02-16 01:22 - 13110272 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtwebkit4.dll
2014-02-16 01:14 - 2014-02-16 01:15 - 08942520 _____ (http://www.goforfiles.com/) C:\Users\BROI\Downloads\Smart_Rundll32_Exe_Fixer_Pro.full.rar_downloader.exe
2014-02-16 01:04 - 2014-02-16 01:05 - 08576000 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtgui4.dll
2014-02-16 00:58 - 2014-02-16 00:58 - 00000406 _____ () C:\Windows\system32\ioloBootDefrag.cfg
2014-02-16 00:55 - 2014-02-22 11:34 - 00003230 _____ () C:\Windows\System32\Tasks\SidebarExecute
2014-02-16 00:55 - 2014-02-16 02:13 - 00074703 _____ () C:\Windows\SysWOW64\mfc45.dat
2014-02-16 00:55 - 2014-02-16 00:55 - 00003118 _____ () C:\Windows\System32\Tasks\iolo Process Governor
2014-02-16 00:55 - 2014-02-16 00:55 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\ioloGovernor
2014-02-16 00:55 - 2014-02-16 00:55 - 00000000 ____D () C:\ProgramData\ioloGovernor
2014-02-15 19:33 - 2014-02-15 19:33 - 00001770 _____ () C:\Users\BROI\Downloads\Review Smart Rundll32 Exe Fixer Pro serial key (downloads).html
2014-02-15 16:15 - 2014-02-16 01:10 - 00001052 _____ () C:\Users\Public\Desktop\Smart Rundll32 Exe Fixer Pro.lnk
2014-02-15 16:15 - 2014-02-16 01:10 - 00000000 ____D () C:\Program Files\Smart Rundll32 Exe Fixer Pro
2014-02-15 01:06 - 2014-02-15 01:06 - 01052160 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtnetwork4.dll
2014-02-15 00:56 - 2014-02-15 00:56 - 02563072 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtcore4.dll
2014-02-15 00:55 - 2014-02-15 00:56 - 04524032 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtcored4.dll
2014-02-15 00:40 - 2014-02-15 00:40 - 00000000 ____D () C:\Users\Public\nettv
2014-02-15 00:38 - 2014-02-15 00:42 - 00000000 ____D () C:\Program Files (x86)\NETTV4
2014-02-15 00:21 - 2014-02-15 00:21 - 00282896 _____ (Mozilla) C:\Users\BROI\Downloads\Firefox Setup Stub 27.0.1.exe
2014-02-14 19:29 - 2014-02-17 18:28 - 00000000 ____D () C:\Program Files (x86)\Dll-Files.com Fixer
2014-02-14 00:53 - 2014-02-16 01:23 - 00000884 __RSH () C:\Users\BROI\ntuser.pol
2014-02-13 17:15 - 2013-11-27 00:29 - 05693440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-02-13 17:15 - 2013-11-26 23:49 - 06573056 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-02-13 01:48 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-02-13 01:48 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-02-13 01:48 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-02-13 01:48 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-02-13 01:48 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-02-13 01:48 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-02-13 01:48 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-02-13 01:48 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-02-13 01:48 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-02-13 01:48 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-02-13 01:48 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-02-13 01:48 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-02-13 01:48 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-02-13 01:48 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-02-13 01:48 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-02-13 01:48 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-02-13 01:47 - 2013-09-25 03:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-02-13 01:47 - 2013-09-25 02:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-02-13 00:54 - 2014-02-13 00:54 - 00116224 _____ () C:\Users\BROI\Desktop\LOTO 1102.xls
2014-02-12 19:03 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-12 19:03 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-12 19:03 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-12 19:03 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-12 19:03 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-12 19:03 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-12 19:01 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-12 19:01 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-12 19:01 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-12 19:01 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-12 19:01 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-12 19:01 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-12 19:01 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-12 19:01 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-12 19:01 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-12 19:01 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-12 19:01 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-12 19:01 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-12 19:01 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-12 19:01 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-12 19:01 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-12 19:01 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-12 19:01 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-12 19:01 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-12 19:00 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-12 19:00 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-12 19:00 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-12 19:00 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-12 16:51 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-12 16:51 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-12 16:50 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-12 16:50 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-12 16:50 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-12 16:50 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-12 16:50 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-12 16:50 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-12 16:50 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-12 16:50 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-12 16:50 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-12 16:50 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-12 16:50 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-12 16:50 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-12 16:50 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-12 16:50 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-12 16:50 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-12 16:50 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-12 16:50 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-12 16:50 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-12 16:50 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-12 16:50 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-12 16:50 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-12 16:50 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-12 16:50 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-12 16:50 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-12 16:50 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-12 16:50 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-12 16:50 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-12 16:50 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-12 16:50 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-12 16:50 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-12 16:50 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-12 16:50 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-12 16:50 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-12 16:50 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-12 16:50 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-12 16:50 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-12 16:50 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-12 16:50 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-12 16:50 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-10 17:33 - 2014-02-16 01:52 - 00000000 ____D () C:\Windows\Minidump
2014-02-09 13:11 - 2014-02-16 01:52 - 00000000 ____D () C:\Program Files (x86)\ZTE_CDMA_Log
2014-02-08 16:38 - 2014-02-17 19:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-08 01:18 - 2014-02-08 01:18 - 00000000 ____D () C:\Windows\system32\%LOCALAPPDATA%
2014-02-03 00:50 - 2014-02-03 00:51 - 17425664 _____ (OneClickRoot) C:\Users\BROI\Downloads\OneClickRoot.exe
2014-02-02 01:54 - 2014-02-02 01:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_androidusb_01005.Wdf
2014-02-02 01:06 - 2014-02-02 01:06 - 00001249 _____ () C:\Users\Public\Desktop\MiniTool Partition Wizard Home Edition.lnk
2014-02-02 01:06 - 2013-09-30 16:26 - 03050808 _____ () C:\Windows\system32\pwNative.exe
2014-02-02 01:06 - 2013-09-30 16:26 - 00019152 ____N () C:\Windows\system32\pwdrvio.sys
2014-02-02 01:06 - 2013-09-30 16:26 - 00012504 ____N () C:\Windows\system32\pwdspio.sys
2014-02-02 01:05 - 2014-02-02 01:06 - 00000000 ____D () C:\Program Files (x86)\MiniTool Partition Wizard Home Edition 8.1.1
2014-02-01 00:36 - 2014-02-01 00:37 - 00000000 ____D () C:\Users\BROI\Desktop\New folder
2014-02-01 00:21 - 2014-02-16 01:52 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-01-30 23:13 - 2014-02-17 00:00 - 00000000 ____D () C:\Program Files (x86)\ffdshow
2014-01-30 23:13 - 2014-01-30 23:13 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
2014-01-30 23:13 - 2014-01-30 23:13 - 00000000 ____D () C:\Program Files (x86)\Haali
2014-01-30 23:13 - 2012-04-09 00:40 - 00079360 _____ () C:\Windows\SysWOW64\ff_vfw.dll
2014-01-26 00:29 - 2014-01-26 00:29 - 00000000 ____D () C:\Program Files\ZTE Handset USB Driver
2014-01-26 00:29 - 2011-09-13 09:53 - 00129432 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\zghsvousb.sys
2014-01-26 00:29 - 2011-09-13 09:53 - 00129432 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\zghstrace.sys
2014-01-26 00:29 - 2011-09-13 09:53 - 00129432 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\zghsnmea.sys
2014-01-26 00:29 - 2011-09-13 09:53 - 00129432 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\zghsmdm.sys
2014-01-26 00:29 - 2011-09-13 09:53 - 00129432 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\zghsdiagmdm.sys
2014-01-26 00:29 - 2011-09-13 09:53 - 00129432 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\zghsdiag.sys
2014-01-26 00:29 - 2011-09-13 09:53 - 00129432 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\zghsat.sys
2014-01-26 00:29 - 2011-09-13 09:43 - 00163352 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\zghsnet.sys
2014-01-26 00:29 - 2011-08-15 16:43 - 00584584 _____ () C:\Windows\adb.exe
2014-01-26 00:29 - 2011-08-15 16:43 - 00102936 _____ (Google, inc) C:\Windows\AdbWinApi.dll
2014-01-26 00:29 - 2011-07-07 16:13 - 00018456 _____ (HandSet Incorporated) C:\Windows\system32\Drivers\massfilter_hs.sys
2014-01-26 00:29 - 2011-07-07 16:10 - 01919512 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01005.dll
2014-01-26 00:29 - 2011-07-07 16:10 - 00038424 _____ (Google Inc) C:\Windows\system32\Drivers\androidusb.sys
2014-01-26 00:29 - 2011-03-28 15:42 - 00129304 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\ghsnmea.sys
2014-01-26 00:29 - 2011-03-28 15:42 - 00129304 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\ghsmdm.sys
2014-01-26 00:29 - 2011-03-28 15:42 - 00129304 _____ (ZTE Incorporated) C:\Windows\system32\Drivers\ghsdiag.sys
2014-01-26 00:29 - 2010-10-18 14:24 - 00038424 _____ (Google Inc) C:\Windows\system32\Drivers\ghsandroid.sys
2014-01-25 19:09 - 2014-01-25 19:20 - 00000000 ____D () C:\Users\BROI\Documents\SEGA Mega Drive Classics

==================== One Month Modified Files and Folders =======

2014-02-22 16:02 - 2014-02-17 20:06 - 00011809 _____ () C:\Users\BROI\Downloads\FRST.txt
2014-02-22 16:01 - 2014-02-17 20:05 - 00000000 ____D () C:\FRST
2014-02-22 16:00 - 2014-02-22 16:00 - 02154496 _____ (Farbar) C:\Users\BROI\Downloads\FRST64(1).exe
2014-02-22 15:58 - 2009-07-14 05:45 - 00023680 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-22 15:58 - 2009-07-14 05:45 - 00023680 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-22 15:55 - 2014-02-16 20:09 - 00000000 ____D () C:\ProgramData\MFAData
2014-02-22 15:53 - 2013-10-21 19:06 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-22 15:51 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-22 15:50 - 2014-02-22 11:19 - 00000112 _____ () C:\Windows\setupact.log
2014-02-22 11:45 - 2013-09-22 03:58 - 01286474 _____ () C:\Windows\WindowsUpdate.log
2014-02-22 11:41 - 2014-02-22 11:41 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software
2014-02-22 11:41 - 2014-02-22 11:41 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software
2014-02-22 11:41 - 2014-02-22 11:33 - 00000965 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-02-22 11:40 - 2013-09-25 21:43 - 00002198 _____ () C:\Windows\epplauncher.mif
2014-02-22 11:35 - 2014-02-22 11:35 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\AVG2014
2014-02-22 11:35 - 2014-02-22 11:26 - 00000000 ____D () C:\Users\BROI\AppData\Local\Avg2014
2014-02-22 11:34 - 2014-02-22 11:31 - 00000000 ____D () C:\ProgramData\AVG2014
2014-02-22 11:34 - 2014-02-16 00:55 - 00003230 _____ () C:\Windows\System32\Tasks\SidebarExecute
2014-02-22 11:31 - 2014-02-22 11:31 - 00000000 ___HD () C:\$AVG
2014-02-22 11:30 - 2014-02-22 11:30 - 00000000 ____D () C:\Program Files (x86)\AVG
2014-02-22 11:19 - 2014-02-22 11:19 - 00000690 _____ () C:\Windows\PFRO.log
2014-02-22 11:19 - 2014-02-22 11:19 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-22 01:44 - 2014-01-20 23:45 - 00000000 ____D () C:\Users\BROI\AppData\Local\CrashDumps
2014-02-22 01:44 - 2014-01-01 19:49 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\AIMP3
2014-02-22 01:43 - 2014-02-22 01:43 - 00002970 _____ () C:\Windows\System32\Tasks\{9F327A92-7C5B-44D7-AB92-B21E2DE79AF4}
2014-02-22 01:23 - 2014-02-22 01:22 - 13670584 _____ (Microsoft Corporation) C:\Users\BROI\Downloads\mseinstall(1).exe
2014-02-22 01:14 - 2014-02-22 01:13 - 13670584 _____ (Microsoft Corporation) C:\Users\BROI\Downloads\mseinstall.exe
2014-02-21 23:30 - 2014-02-21 23:29 - 13670584 _____ (Microsoft Corporation) C:\Users\BROI\Desktop\mseinstall.exe
2014-02-21 11:34 - 2014-02-21 11:34 - 00007605 _____ () C:\Users\BROI\AppData\Local\Resmon.ResmonCfg
2014-02-21 01:34 - 2014-02-19 22:02 - 00013403 _____ () C:\zoek-results.log
2014-02-21 01:34 - 2014-02-19 02:39 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2014-02-21 01:31 - 2014-02-19 22:01 - 00000000 ____D () C:\zoek_backup
2014-02-21 01:28 - 2013-09-21 19:02 - 00000000 ____D () C:\Users\BROI
2014-02-21 01:17 - 2014-02-21 01:33 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-02-20 20:55 - 2014-02-20 20:55 - 17858952 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-02-20 20:55 - 2013-09-21 22:28 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-20 20:55 - 2013-09-21 22:28 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-20 00:58 - 2014-02-20 00:58 - 00000000 ____D () C:\Users\BROI\AppData\Local\DFX
2014-02-20 00:58 - 2013-09-21 19:03 - 00000000 ___RD () C:\Users\BROI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-20 00:55 - 2014-02-20 00:55 - 00000000 ____D () C:\Users\Guest\AppData\Roaming\vlc
2014-02-20 00:55 - 2014-02-20 00:55 - 00000000 ____D () C:\Users\Guest
2014-02-20 00:55 - 2014-02-20 00:55 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\vlc
2014-02-20 00:55 - 2014-02-20 00:55 - 00000000 ____D () C:\Users\Administrator
2014-02-20 00:52 - 2014-02-20 00:52 - 00930440 _____ (CNET Download.com) C:\Users\BROI\Downloads\cbsidlm-cbsi176-DFX_Audio_Enhancer-ORG-10048113.exe
2014-02-19 23:11 - 2014-02-18 11:37 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\vlc
2014-02-19 22:55 - 2014-02-19 22:26 - 148148420 _____ () C:\Users\BROI\Downloads\bj6gm.AVG.AntiVirus.Pro.2014.14.0.Build.4117.x64.rar
2014-02-19 22:17 - 2014-02-19 01:55 - 00000000 ____D () C:\Program Files (x86)\JDownloader
2014-02-19 22:07 - 2014-02-21 01:18 - 00043827 _____ () C:\zoek-results2014-02-19-210710.log
2014-02-19 21:58 - 2014-02-19 21:58 - 01284608 _____ () C:\Users\BROI\Desktop\zoek.exe
2014-02-19 02:39 - 2014-02-19 02:39 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client
2014-02-19 01:55 - 2014-02-19 01:55 - 00002037 _____ () C:\Users\BROI\Desktop\JDownloader.lnk
2014-02-19 01:52 - 2014-02-19 01:52 - 00081488 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\BROI\Downloads\WebInstaller.exe
2014-02-18 12:06 - 2014-02-18 12:06 - 00001169 _____ () C:\Users\BROI\Desktop\Auslogics DiskDefrag.lnk
2014-02-18 12:06 - 2014-02-18 12:06 - 00000000 ____D () C:\Program Files (x86)\Auslogics
2014-02-18 12:05 - 2014-02-18 12:05 - 06204024 _____ (Auslogics Labs Pty Ltd ) C:\Users\BROI\Downloads\disk-defrag-setup.exe
2014-02-18 11:45 - 2014-02-18 11:45 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-02-18 11:45 - 2014-02-18 11:45 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-02-18 11:45 - 2014-02-18 11:45 - 00000000 ____D () C:\Program Files\CCleaner
2014-02-18 11:42 - 2014-02-18 11:42 - 04721920 _____ (Piriform Ltd) C:\Users\BROI\Downloads\ccsetup410.exe
2014-02-18 11:40 - 2014-01-09 01:41 - 00000905 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-02-18 11:40 - 2014-01-01 19:49 - 00000000 ____D () C:\Program Files (x86)\AIMP3
2014-02-18 11:37 - 2014-02-18 11:37 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-02-18 11:35 - 2014-02-18 11:33 - 24677393 _____ () C:\Users\BROI\Downloads\vlc-2.1.3-skidajmo.com.exe
2014-02-18 02:03 - 2013-12-15 14:52 - 00000998 _____ () C:\Users\BROI\Desktop\PODSETNIK.txt
2014-02-18 01:50 - 2014-02-18 01:50 - 00448512 _____ (OldTimer Tools) C:\Users\BROI\Downloads\TFC.exe
2014-02-18 01:10 - 2014-02-18 01:08 - 00010873 _____ () C:\Users\BROI\Downloads\error.log
2014-02-18 01:07 - 2014-02-18 01:05 - 26440904 _____ (AppWork GmbH) C:\Users\BROI\Downloads\JDownloaderSetup.exe
2014-02-18 00:44 - 2014-02-18 00:44 - 00006190 _____ () C:\Users\BROI\Downloads\New Text Document.txt
2014-02-17 20:11 - 2014-02-17 20:11 - 00025371 _____ () C:\Users\BROI\Downloads\295882_493794962_Addition.txt
2014-02-17 20:05 - 2014-02-17 20:05 - 02152448 _____ (Farbar) C:\Users\BROI\Downloads\FRST64.exe
2014-02-17 19:30 - 2014-02-17 19:30 - 00688992 ____R (Swearware) C:\Users\BROI\Downloads\dds.scr
2014-02-17 19:22 - 2014-02-17 19:22 - 00007589 _____ () C:\Users\BROI\Downloads\AdwCleaner[S0].txt
2014-02-17 19:19 - 2014-02-17 19:14 - 00000000 ____D () C:\AdwCleaner
2014-02-17 19:12 - 2014-02-17 19:12 - 01241888 _____ () C:\Users\BROI\Downloads\AdwCleaner.exe
2014-02-17 19:11 - 2014-02-17 19:11 - 00001619 _____ () C:\Users\BROI\Downloads\272623_940619330_AdwCleaner[S0].txt
2014-02-17 19:05 - 2014-02-17 19:05 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-02-17 19:05 - 2014-02-17 19:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-17 19:05 - 2014-02-08 16:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-17 18:58 - 2014-02-17 18:57 - 00282896 _____ (Mozilla) C:\Users\BROI\Downloads\Firefox Setup Stub 27.0.1 (1).exe
2014-02-17 18:47 - 2013-09-21 19:02 - 00000000 ____D () C:\Users\BROI\AppData\Local\VirtualStore
2014-02-17 18:28 - 2014-02-14 19:29 - 00000000 ____D () C:\Program Files (x86)\Dll-Files.com Fixer
2014-02-17 12:53 - 2014-02-17 12:53 - 00000000 ____D () C:\Windows\pss
2014-02-17 00:00 - 2014-01-30 23:13 - 00000000 ____D () C:\Program Files (x86)\ffdshow
2014-02-16 23:58 - 2014-02-16 23:58 - 02152176 _____ () C:\Users\BROI\Downloads\CodecPerformerSetup (2).exe
2014-02-16 23:55 - 2014-02-16 23:55 - 02152176 _____ () C:\Users\BROI\Downloads\CodecPerformerSetup (1).exe
2014-02-16 23:46 - 2014-02-16 23:45 - 00000000 ____D () C:\Program Files (x86)\Free Games 111
2014-02-16 23:44 - 2014-02-16 23:43 - 02152176 _____ () C:\Users\BROI\Downloads\CodecPerformerSetup.exe
2014-02-16 23:36 - 2013-10-05 23:40 - 00000000 ____D () C:\Users\BROI\AppData\Local\Microsoft Help
2014-02-16 23:32 - 2013-10-22 23:23 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-02-16 23:13 - 2014-02-16 23:11 - 35747752 _____ (TuneUp Software) C:\Users\BROI\Downloads\TuneUpUtilities2014_en-US.exe
2014-02-16 20:54 - 2013-10-20 18:16 - 00000000 ____D () C:\Program Files (x86)\SWiSH Max4
2014-02-16 20:20 - 2013-10-22 23:25 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\TuneUp Software
2014-02-16 20:09 - 2014-02-16 20:09 - 04462392 _____ (AVG Technologies) C:\Users\BROI\Downloads\avg_isct_stb_all_2014_4335.exe
2014-02-16 20:09 - 2014-02-16 20:09 - 00000000 ____D () C:\Users\BROI\AppData\Local\MFAData
2014-02-16 02:13 - 2014-02-16 00:55 - 00074703 _____ () C:\Windows\SysWOW64\mfc45.dat
2014-02-16 01:52 - 2014-02-10 17:33 - 00000000 ____D () C:\Windows\Minidump
2014-02-16 01:52 - 2014-02-09 13:11 - 00000000 ____D () C:\Program Files (x86)\ZTE_CDMA_Log
2014-02-16 01:52 - 2014-02-01 00:21 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-02-16 01:52 - 2014-01-09 01:44 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\DeepBurner Pro
2014-02-16 01:52 - 2013-09-22 04:54 - 00000000 ____D () C:\Windows\Panther
2014-02-16 01:52 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2014-02-16 01:50 - 2014-02-16 01:49 - 07713382 _____ () C:\Users\BROI\Downloads\RegCurePro 3.1.7 (MrXintax).rar
2014-02-16 01:40 - 2014-02-16 01:39 - 05937720 _____ (ParetoLogic, Inc.) C:\Users\BROI\Downloads\RegCureProSetup.exe
2014-02-16 01:34 - 2014-02-16 01:34 - 04274544 _____ (LionSea Software ) C:\Users\BROI\Downloads\Smart_Rundll32_Exe_Fixer_Pro_Setup.exe
2014-02-16 01:23 - 2014-02-14 00:53 - 00000884 __RSH () C:\Users\BROI\ntuser.pol
2014-02-16 01:22 - 2014-02-16 01:21 - 13110272 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtwebkit4.dll
2014-02-16 01:15 - 2014-02-16 01:14 - 08942520 _____ (http://www.goforfiles.com/) C:\Users\BROI\Downloads\Smart_Rundll32_Exe_Fixer_Pro.full.rar_downloader.exe
2014-02-16 01:10 - 2014-02-15 16:15 - 00001052 _____ () C:\Users\Public\Desktop\Smart Rundll32 Exe Fixer Pro.lnk
2014-02-16 01:10 - 2014-02-15 16:15 - 00000000 ____D () C:\Program Files\Smart Rundll32 Exe Fixer Pro
2014-02-16 01:05 - 2014-02-16 01:04 - 08576000 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtgui4.dll
2014-02-16 00:59 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\Offline Web Pages
2014-02-16 00:58 - 2014-02-16 00:58 - 00000406 _____ () C:\Windows\system32\ioloBootDefrag.cfg
2014-02-16 00:55 - 2014-02-16 00:55 - 00003118 _____ () C:\Windows\System32\Tasks\iolo Process Governor
2014-02-16 00:55 - 2014-02-16 00:55 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\ioloGovernor
2014-02-16 00:55 - 2014-02-16 00:55 - 00000000 ____D () C:\ProgramData\ioloGovernor
2014-02-16 00:52 - 2013-12-01 00:18 - 00000000 ____D () C:\Users\BROI\Desktop\SLICICE MOJE
2014-02-15 19:33 - 2014-02-15 19:33 - 00001770 _____ () C:\Users\BROI\Downloads\Review Smart Rundll32 Exe Fixer Pro serial key (downloads).html
2014-02-15 01:06 - 2014-02-15 01:06 - 01052160 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtnetwork4.dll
2014-02-15 00:56 - 2014-02-15 00:56 - 02563072 _____ (Nokia Corporation and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtcore4.dll
2014-02-15 00:56 - 2014-02-15 00:55 - 04524032 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Windows\SysWOW64\qtcored4.dll
2014-02-15 00:42 - 2014-02-15 00:38 - 00000000 ____D () C:\Program Files (x86)\NETTV4
2014-02-15 00:40 - 2014-02-15 00:40 - 00000000 ____D () C:\Users\Public\nettv
2014-02-15 00:21 - 2014-02-15 00:21 - 00282896 _____ (Mozilla) C:\Users\BROI\Downloads\Firefox Setup Stub 27.0.1.exe
2014-02-14 00:53 - 2013-10-21 19:06 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-14 00:53 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-02-14 00:53 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-02-13 18:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-02-13 17:07 - 2013-09-22 19:02 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-02-13 01:50 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\sr-Latn-CS
2014-02-13 01:50 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2014-02-13 01:18 - 2013-09-23 01:22 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-13 01:15 - 2013-09-23 01:22 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-13 00:54 - 2014-02-13 00:54 - 00116224 _____ () C:\Users\BROI\Desktop\LOTO 1102.xls
2014-02-12 21:21 - 2013-10-05 23:37 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-02-12 21:07 - 2013-09-22 01:37 - 00765656 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-12 21:07 - 2009-07-14 06:13 - 00765656 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-12 21:04 - 2009-07-14 03:34 - 00000478 _____ () C:\Windows\win.ini
2014-02-09 02:40 - 2014-01-09 01:25 - 00001054 _____ () C:\Users\Public\Desktop\BurnAware Free.lnk
2014-02-09 02:40 - 2014-01-09 01:25 - 00000000 ____D () C:\Program Files (x86)\BurnAware Free
2014-02-08 01:18 - 2014-02-08 01:18 - 00000000 ____D () C:\Windows\system32\%LOCALAPPDATA%
2014-02-08 01:11 - 2009-07-14 06:08 - 00032618 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-02-08 01:04 - 2013-09-22 19:02 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\Skype
2014-02-06 13:16 - 2014-02-12 16:50 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-06 12:30 - 2014-02-12 16:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-06 12:30 - 2014-02-12 16:50 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-06 12:12 - 2014-02-12 16:50 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-06 12:07 - 2014-02-12 16:50 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-06 12:06 - 2014-02-12 16:50 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-06 11:57 - 2014-02-12 16:50 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-06 11:56 - 2014-02-12 16:50 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-06 11:52 - 2014-02-12 16:50 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-06 11:49 - 2014-02-12 16:50 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-06 11:48 - 2014-02-12 16:50 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-06 11:48 - 2014-02-12 16:50 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-06 11:38 - 2014-02-12 16:50 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-06 11:32 - 2014-02-12 16:50 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-06 11:20 - 2014-02-12 16:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-06 11:17 - 2014-02-12 16:50 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-06 11:11 - 2014-02-12 16:50 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-06 11:01 - 2014-02-12 16:50 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-06 11:00 - 2014-02-12 16:50 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-06 10:57 - 2014-02-12 16:50 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-06 10:57 - 2014-02-12 16:50 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-06 10:52 - 2014-02-12 16:50 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-06 10:52 - 2014-02-12 16:50 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-06 10:50 - 2014-02-12 16:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-06 10:49 - 2014-02-12 16:50 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-06 10:47 - 2014-02-12 16:50 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-06 10:46 - 2014-02-12 16:50 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-06 10:25 - 2014-02-12 16:50 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-06 10:25 - 2014-02-12 16:50 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-06 10:24 - 2014-02-12 16:50 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-06 10:22 - 2014-02-12 16:50 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-06 10:13 - 2014-02-12 16:50 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-06 10:09 - 2014-02-12 16:50 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-06 10:03 - 2014-02-12 16:50 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-06 09:55 - 2014-02-12 16:50 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-06 09:41 - 2014-02-12 16:50 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-06 09:40 - 2014-02-12 16:50 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-06 09:36 - 2014-02-12 16:50 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-06 09:34 - 2014-02-12 16:50 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-03 00:51 - 2014-02-03 00:50 - 17425664 _____ (OneClickRoot) C:\Users\BROI\Downloads\OneClickRoot.exe
2014-02-02 01:54 - 2014-02-02 01:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_androidusb_01005.Wdf
2014-02-02 01:46 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-02-02 01:06 - 2014-02-02 01:06 - 00001249 _____ () C:\Users\Public\Desktop\MiniTool Partition Wizard Home Edition.lnk
2014-02-02 01:06 - 2014-02-02 01:05 - 00000000 ____D () C:\Program Files (x86)\MiniTool Partition Wizard Home Edition 8.1.1
2014-02-01 00:37 - 2014-02-01 00:36 - 00000000 ____D () C:\Users\BROI\Desktop\New folder
2014-01-31 00:43 - 2014-01-17 01:37 - 00000319 _____ () C:\Users\BROI\Desktop\IZRADA SAJTA.txt
2014-01-30 23:13 - 2014-01-30 23:13 - 00000000 ____D () C:\Users\BROI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
2014-01-30 23:13 - 2014-01-30 23:13 - 00000000 ____D () C:\Program Files (x86)\Haali
2014-01-26 00:29 - 2014-01-26 00:29 - 00000000 ____D () C:\Program Files\ZTE Handset USB Driver
2014-01-25 19:20 - 2014-01-25 19:09 - 00000000 ____D () C:\Users\BROI\Documents\SEGA Mega Drive Classics

==================== Bamital & volsnap Check =================


C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-02-08 18:22

==================== End Of Log ============================
mycity.rs/must-login.png

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:
Start
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
C:\Program Files\Microsoft Security Client\msseces.exe
HKU\S-1-5-21-1243640450-486176582-2858386702-1000\...\MountPoints2: {7f0676bf-8615-11e3-8006-001bfc72466f} - F:\AutoRun.exe
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
C:\Program Files\Microsoft Security Client\MsMpEng.exe
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
C:\Windows\System32\DRIVERS\MpFilter.sys
End

2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • Pridružio: 14 Okt 2012
  • Poruke: 129

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 22-02-2014 01
Ran by BROI at 2014-02-22 18:18:53 Run:2
Running from C:\Users\BROI\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
C:\Program Files\Microsoft Security Client\msseces.exe
HKU\S-1-5-21-1243640450-486176582-2858386702-1000\...\MountPoints2: {7f0676bf-8615-11e3-8006-001bfc72466f} - F:\AutoRun.exe
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
C:\Program Files\Microsoft Security Client\MsMpEng.exe
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
C:\Windows\System32\DRIVERS\MpFilter.sys
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\MSC => Value deleted successfully.
Could not move "C:\Program Files\Microsoft Security Client\msseces.exe" => Scheduled to move on reboot.
HKU\1\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7f0676bf-8615-11e3-8006-001bfc72466f} => Key not found.
HKCR\CLSID\{7f0676bf-8615-11e3-8006-001bfc72466f} => Key not found.
MsMpSvc => Unable to delete service
C:\Program Files\Microsoft Security Client\MsMpEng.exe => Moved successfully.
MpFilter => Unable to delete service
C:\Windows\System32\DRIVERS\MpFilter.sys => Moved successfully.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-02-22 18:19:54)<=

C:\Program Files\Microsoft Security Client\msseces.exe => Is moved successfully.

==== End of Fixlog ====

Ko je trenutno na forumu
 

Ukupno su 1017 korisnika na forumu :: 27 registrovanih, 3 sakrivenih i 987 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: djboj, draganca, dushan, esx66, Georgius, janbo, laki_bb, Litostroton, MB120mm, Millennium, Milometer, milutin134, mrav pesadinac, Panter, Pikac-47, prashinar, raketaš, rasok, Rogan33, stegonosa, Sumadija34, Tas011, Trpe Grozni, Vlada1389, vladulns, zlaya011, žeks62