Potreban jedan dobar sistematski pregled

1

Potreban jedan dobar sistematski pregled

offline
  • Pridružio: 29 Avg 2014
  • Poruke: 30

Napisano: 25 Maj 2015 17:21

Mislim da je na mom laptopu virulencija dostigla najveci potencijal Smile
Od juce mi stalno iskacu neke reklame po OPERA pretrazivacu, kao i sada dok vam pisem. Nesto Adon, Geforce, Sense itd... Jedna veoma neprijatna situacija koja se izgleda tesko moze kontrolisati.
Pa sam sa tim u vidu resio da se obratim vama.
To mi se desilo kada sam otvorio nesto sto ocigledno nisam smeo..
U medjuvremenu sam instalirao antivirus 360 total security, a ako resimo problem verovatno cu da idem na Kaspersky komercijal.
Ovde je dole izvestaj po vasem uputstvu kao i izvestaj programa Hijackthis
Skinuo sam i u medjuvremenu Malwarbaytes home na trial modu, i on mi je nasao vise stotina detektovanih objekata ali mi se komp u sekundi restertovao kada sam hteo da pokrenem paralelno i ovaj vas program za skeniranje.


Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 24-05-2015 01
Ran by SLOBA (administrator) on SLOBA-PC on 25-05-2015 17:10:37
Running from C:\Users\SLOBA.SLOBA-PC\Desktop
Loaded Profiles: SLOBA (Available Profiles: SLOBA & Privremeno)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: [Link mogu videti samo ulogovani korisnici]

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe
() D:\Program files\360\Total Security\safemon\QHActiveDefense.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
() D:\Program files\360\Total Security\safemon\QHSafeTray.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
(TeamViewer GmbH) C:\Windows\System32\config\systemprofile\AppData\Local\Temp\TeamViewer\TeamViewer_Service.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(Qihu Software Co. Limited) D:\Program files\360\Total Security\safemon\QHWatchdog.exe
(IObit) C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
(Opera Software) C:\Program Files\Opera\29.0.1795.60\opera.exe
(Opera Software) C:\Program Files\Opera\29.0.1795.60\opera.exe
(Opera Software) C:\Program Files\Opera\29.0.1795.60\opera.exe
(Opera Software) C:\Program Files\Opera\29.0.1795.60\opera.exe
(Opera Software) C:\Program Files\Opera\29.0.1795.60\opera.exe
(Opera Software) C:\Program Files\Opera\29.0.1795.60\opera.exe
(Opera Software) C:\Program Files\Opera\29.0.1795.60\opera.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [QHSafeTray] => D:\Program files\360\Total Security\safemon\QHSafeTray.exe [986224 2015-04-30] ()
HKU\S-1-5-21-622532197-3803626068-3240053254-1000\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files\DAEMON Tools Pro\DTAgent.exe [3035968 2012-02-02] (DT Soft Ltd)
HKU\S-1-5-21-622532197-3803626068-3240053254-1000\...\Run: [Advanced SystemCare 8] => C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe [2428704 2015-01-20] (IObit)
HKU\S-1-5-21-622532197-3803626068-3240053254-1000\...\MountPoints2: G - G:\LaunchU3.exe -a
HKU\S-1-5-21-622532197-3803626068-3240053254-1000\...\MountPoints2: {1a80fcd2-9c69-11e3-b9e8-001167754b1d} - G:\LaunchU3.exe -a
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [Link mogu videti samo ulogovani korisnici]
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [Link mogu videti samo ulogovani korisnici]
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2015-05-24] (IObit)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27] (Adobe Systems Incorporated)
BHO: No Name -> {665b7e0e-0399-4fe9-adf8-5eb0fce4a4f2} -> No File
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} [Link mogu videti samo ulogovani korisnici]
Handler: linkscanner - No CLSID Value -
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 109.122.98.6

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_223.dll No File
FF Plugin: @java.com/DTPlugin,version=10.72.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-22] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.72.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-22] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [2013-09-13] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll [2014-11-28] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll [2014-11-28] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2012-07-27] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-622532197-3803626068-3240053254-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\SLOBA\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdjvu.dll [2012-11-11] (Caminova, Inc.)
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (SavePass 1.1) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\akaelkiagnbfcccfnmbimdbplecgbikh [2015-05-24]
CHR Extension: (Docs) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-08]
CHR Extension: (Google Drive) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-08]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-02-08]
CHR Extension: (YouTube) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-08]
CHR Extension: (Google Search) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-08]
CHR Extension: (DelugeSiphon) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gabdloknkpdefdpkkibplcfnkngbidim [2015-02-26]
CHR Extension: (ActiveMail) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmbjhlidpnohinigphldbcffhikcill [2015-02-26]
CHR Extension: (Extreme User Agent Switcher) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilmdgdmjdkojpcchfiegejaihkopkhid [2015-03-06]
CHR Extension: (Google Wallet) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-08]
CHR Extension: (Gmail) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-08]

Opera:
=======
OPR Extension: (SavePass 1.1) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\akaelkiagnbfcccfnmbimdbplecgbikh [2015-05-24]
OPR Extension: (Ge-Force) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\jhongheibdpfhdpfccheljfcabgliidh [2015-05-24]
OPR Extension: (Sense) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\knlpigpfaognbholppaembpfphilacie [2015-05-24]
OPR Extension: (Bookmarks Manager) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\nkgbeagkihphgjnlkclfjjjplmefndnm [2015-02-08]
OPR Extension: (Search opera) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\omnhkboaejidgnodedpmnbdlbmjileik [2015-02-08]
StartMenuInternet: (HKLM) OperaStable - C:\Program Files\Opera\Launcher.exe [Link mogu videti samo ulogovani korisnici]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdvancedSystemCareService8; C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [815392 2014-11-04] (IObit)
S4 avgfws; C:\Program Files\AVG\AVG2014\avgfws.exe [1417160 2014-08-25] (AVG Technologies CZ, s.r.o.)
S4 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3242000 2014-08-25] (AVG Technologies CZ, s.r.o.)
S4 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-08-25] (AVG Technologies CZ, s.r.o.)
R2 DiagTrack; C:\Windows\system32\diagtrack.dll [851456 2015-05-11] (Microsoft Corporation)
S4 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [344896 2014-09-30] (IObit)
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2724128 2015-01-16] (IObit)
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 QHActiveDefense; D:\Program files\360\Total Security\safemon\QHActiveDefense.exe [820848 2015-04-30] ()
S3 SentinelKeysServer; C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [316992 2007-04-27] (SafeNet, Inc.)
S4 SentinelProtectionServer; C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe [206400 2007-04-27] (SafeNet, Inc)
S4 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) []
R2 TeamViewer; c:\Windows\System32\config\systemprofile\AppData\Local\Temp\teamviewer\TeamViewer_Service.exe [4254992 2015-01-30] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S3 AdobeFlashPlayerUpdateSvc; No ImagePath
S2 SpyHunter 4 Service; No ImagePath

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker.sys [88136 2015-04-30] (360.cn)
R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [65608 2015-04-30] (360.cn)
R1 360Box; C:\Windows\System32\DRIVERS\360Box.sys [202312 2015-04-30] (360.cn)
S3 360Camera; C:\Windows\System32\Drivers\360Camera.sys [34888 2015-04-30] (360.cn)
R1 360SelfProtection; C:\Windows\System32\drivers\360SelfProtection.sys [174536 2015-04-30] (360安全中心)
R0 amdide; C:\Windows\System32\DRIVERS\amdide.sys [11944 2014-11-15] (Advanced Micro Devices Inc.)
S3 AR5416; C:\Windows\System32\DRIVERS\athw.sys [1938272 2010-11-05] (Atheros Communications, Inc.)
R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [188696 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-08-06] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42784 2014-08-11] (AVG Technologies)
R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV.sys [169040 2015-04-30] (Qihu 360 Software Co., Ltd.)
R3 BlueletAudio; C:\Windows\System32\DRIVERS\blueletaudio.sys [34704 2007-05-11] (IVT Corporation.)
R3 BlueletSCOAudio; C:\Windows\System32\DRIVERS\BlueletSCOAudio.sys [27792 2007-03-05] (IVT Corporation.)
R3 BT; C:\Windows\System32\DRIVERS\btnetdrv.sys [16272 2007-05-23] (IVT Corporation.)
S3 Btcsrusb; C:\Windows\System32\Drivers\btcusb.sys [36496 2007-05-23] (IVT Corporation.)
R0 BTHidEnum; C:\Windows\System32\Drivers\vbtenum.sys [20880 2007-03-05] (IVT Corporation.)
R0 BTHidMgr; C:\Windows\System32\Drivers\BTHidMgr.sys [35600 2007-03-05] (IVT Corporation.)
R0 DsArk; C:\Windows\system32\Drivers\DsArk.sys [99912 2015-04-30] (360.cn)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-03-29] (DT Soft Ltd)
R1 EfiMon; C:\Windows\System32\Drivers\Efimon.sys [23752 2015-04-30] (360安全中心)
R1 ElRawDisk; C:\Windows\system32\drivers\ElRawDsk.sys [26248 2014-04-07] (EldoS Corporation)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [19984 2015-05-25] ()
S4 FileMonitor; C:\Program Files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys [21480 2013-03-23] (IObit)
R0 HookPort; C:\Windows\System32\Drivers\Hookport.sys [58440 2015-04-30] (360安全中心)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2015-02-07] (REALiX(tm))
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2015-05-25] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation)
R1 qutmdserv; C:\Windows\System32\DRIVERS\qutmdrv.sys [257352 2015-04-30] (360.cn)
R1 qutmipc; C:\Windows\system32\drivers\qutmipc.sys [45896 2015-04-30] (360.cn)
S3 RegFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [32288 2013-11-19] (IObit.com)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [18624 2014-06-04] (IObit)
S3 UrlFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys [20944 2013-11-19] (IObit.com)
R3 VComm; C:\Windows\System32\DRIVERS\VComm.sys [34448 2007-03-05] (IVT Corporation.)
R3 VcommMgr; C:\Windows\System32\Drivers\VcommMgr.sys [44304 2007-03-05] (IVT Corporation.)
S4 AVGIDSDriver; system32\DRIVERS\avgidsdriverx.sys [X]
S4 AVGIDSHX; system32\DRIVERS\avgidshx.sys [X]
S4 AVGIDSShim; system32\DRIVERS\avgidsshimx.sys [X]
S4 Avgrkx86; system32\DRIVERS\avgrkx86.sys [X]
S4 Avgtdix; system32\DRIVERS\avgtdix.sys [X]
S2 SentinelFilter; No ImagePath
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-25 17:10 - 2015-05-25 17:10 - 00015538 _____ () C:\Users\SLOBA.SLOBA-PC\Desktop\FRST.txt
2015-05-25 17:02 - 2015-05-25 17:10 - 00000000 ____D () C:\FRST
2015-05-25 16:44 - 2015-05-25 16:44 - 01146880 _____ (Farbar) C:\Users\SLOBA.SLOBA-PC\Desktop\FRST.exe
2015-05-25 16:16 - 2015-05-25 16:16 - 00005463 _____ () C:\Users\SLOBA.SLOBA-PC\Desktop\hijackthis.log
2015-05-25 16:15 - 2015-05-25 16:15 - 00388608 _____ (Trend Micro Inc.) C:\Users\SLOBA.SLOBA-PC\Desktop\HijackThis.exe
2015-05-25 15:57 - 2015-05-25 16:47 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-25 15:56 - 2015-05-25 15:56 - 00001069 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-25 15:56 - 2015-05-25 15:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-05-25 15:56 - 2015-05-25 15:56 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-05-25 15:56 - 2015-04-14 09:37 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-25 15:56 - 2015-04-14 09:37 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-05-25 15:56 - 2015-04-14 09:37 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-05-25 13:48 - 2015-05-25 14:10 - 00000000 ____D () C:\Program Files\Immunet
2015-05-25 13:48 - 2015-05-25 13:49 - 00000000 ____D () C:\ProgramData\Immunet
2015-05-25 13:48 - 2015-05-25 13:48 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ImmunetNetworkMonitor_01009.Wdf
2015-05-25 13:42 - 2015-05-25 13:43 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\work
2015-05-25 13:35 - 2015-05-25 13:35 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2015-05-25 13:10 - 2015-05-25 13:10 - 00000000 ____D () C:\Users\SLOBA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter
2015-05-25 13:10 - 2015-05-25 13:10 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Enigma Software Group
2015-05-25 13:10 - 2015-05-25 13:10 - 00000000 ____D () C:\sh4ldr
2015-05-25 13:08 - 2015-05-25 13:08 - 00019984 _____ () C:\Windows\system32\Drivers\EsgScanner.sys
2015-05-25 13:04 - 2015-05-25 13:04 - 00001518 _____ () C:\Users\SLOBA.SLOBA-PC\Desktop\opera.exe - Shortcut.lnk
2015-05-25 11:35 - 2015-05-25 13:08 - 00000000 ____D () C:\Program Files\Enigma Software Group
2015-05-25 11:34 - 2015-05-25 12:53 - 00000000 ____D () C:\Windows\AF54923662584AC6A0435B5B89C6EB61.TMP
2015-05-25 11:31 - 2015-05-25 11:31 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard
2015-05-24 20:32 - 2015-05-25 16:46 - 00001204 _____ () C:\Windows\PFRO.log
2015-05-24 18:44 - 2015-05-24 18:44 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\360TotalSecurity
2015-05-24 14:21 - 2015-05-25 16:46 - 00000668 _____ () C:\Windows\setupact.log
2015-05-24 14:21 - 2015-05-24 14:21 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-24 13:15 - 2015-05-24 13:15 - 00001195 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2015-05-24 12:54 - 2015-04-30 15:41 - 00099912 _____ (360.cn) C:\Windows\system32\Drivers\DsArk.sys
2015-05-24 12:41 - 2015-05-24 13:17 - 00000000 ____D () C:\Program Files\d53c3b29-b83b-4343-8e45-001eeac3bad3
2015-05-23 17:44 - 2015-05-23 17:44 - 00054656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-05-23 17:20 - 2015-05-24 15:35 - 00000000 __SHD () C:\$360Section
2015-05-23 15:52 - 2015-05-24 15:35 - 00000000 ____D () C:\ProgramData\360Quarant
2015-05-23 15:51 - 2015-05-23 16:27 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\360safe
2015-05-23 15:48 - 2015-05-24 18:34 - 00000000 ____D () C:\ProgramData\360safe
2015-05-23 15:48 - 2015-05-23 15:48 - 00000806 _____ () C:\Users\Public\Desktop\360 Total Security.lnk
2015-05-23 15:48 - 2015-05-23 15:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center
2015-05-23 15:48 - 2015-05-23 15:48 - 00000000 ____D () C:\ProgramData\360TotalSecurity
2015-05-23 15:48 - 2015-04-30 15:41 - 00174536 _____ (360安全中心) C:\Windows\system32\Drivers\360SelfProtection.sys
2015-05-23 15:48 - 2015-04-30 15:41 - 00045896 _____ (360.cn) C:\Windows\system32\Drivers\qutmipc.sys
2015-05-23 15:47 - 2015-05-25 16:46 - 00000000 _RSHD () C:\360SANDBOX
2015-05-23 15:47 - 2015-04-30 15:41 - 00202312 _____ (360.cn) C:\Windows\system32\Drivers\360Box.sys
2015-05-23 15:47 - 2015-04-30 15:41 - 00088136 _____ (360.cn) C:\Windows\system32\Drivers\360AntiHacker.sys
2015-05-23 15:47 - 2015-04-30 15:41 - 00034888 _____ (360.cn) C:\Windows\system32\Drivers\360Camera.sys
2015-05-23 15:46 - 2015-04-30 15:41 - 00257352 _____ (360.cn) C:\Windows\system32\Drivers\qutmdrv.sys
2015-05-23 15:46 - 2015-04-30 15:41 - 00169040 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\BAPIDRV.SYS
2015-05-23 15:46 - 2015-04-30 15:41 - 00065608 _____ (360.cn) C:\Windows\system32\Drivers\360AvFlt.sys
2015-05-23 15:46 - 2015-04-30 15:41 - 00058440 _____ (360安全中心) C:\Windows\system32\Drivers\hookport.sys
2015-05-23 15:46 - 2015-04-30 15:41 - 00023752 _____ (360安全中心) C:\Windows\system32\Drivers\efimon.sys
2015-05-23 15:29 - 2015-05-25 00:51 - 00000000 ____D () C:\AdwCleaner
2015-05-23 15:08 - 2015-05-23 15:08 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Software Tool
2015-05-23 15:06 - 2015-05-24 12:45 - 00000004 _____ () C:\Windows\system32\029B560A371F4E00AB32838EBC01B9E7
2015-05-23 15:06 - 2015-05-23 15:10 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Local\BrowserHelper
2015-05-23 15:05 - 2015-05-23 15:05 - 00000000 ____D () C:\Users\Public\Documents\ShopperPro
2015-05-23 15:04 - 2015-05-23 15:04 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Local\CrashRpt
2015-05-20 23:41 - 2015-05-20 23:42 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\wc predlozi
2015-05-15 15:06 - 2015-05-15 15:08 - 00000000 ____D () C:\Windows\rescache
2015-05-15 14:36 - 2015-05-15 15:11 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\sajtdw
2015-05-14 03:21 - 2015-05-01 15:16 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 11:53 - 2015-05-05 03:12 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-05-13 11:53 - 2015-04-22 03:48 - 00342736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-13 11:53 - 2015-04-21 18:25 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-05-13 11:53 - 2015-04-21 18:25 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-05-13 11:53 - 2015-04-21 18:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-13 11:53 - 2015-04-21 18:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-13 11:53 - 2015-04-21 18:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-05-13 11:53 - 2015-04-21 18:10 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-05-13 11:53 - 2015-04-21 18:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-13 11:53 - 2015-04-21 18:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-05-13 11:53 - 2015-04-21 18:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-13 11:53 - 2015-04-21 18:03 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-05-13 11:53 - 2015-04-21 18:02 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-05-13 11:53 - 2015-04-21 18:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-13 11:53 - 2015-04-21 17:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-13 11:53 - 2015-04-21 17:58 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-05-13 11:53 - 2015-04-21 17:58 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-05-13 11:53 - 2015-04-21 17:57 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-05-13 11:53 - 2015-04-21 17:51 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-05-13 11:53 - 2015-04-21 17:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-05-13 11:53 - 2015-04-21 17:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-05-13 11:53 - 2015-04-21 17:39 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-05-13 11:53 - 2015-04-21 17:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-13 11:53 - 2015-04-21 17:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-13 11:53 - 2015-04-21 17:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-13 11:53 - 2015-04-21 17:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-13 11:53 - 2015-04-21 17:26 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-13 11:53 - 2015-04-21 17:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-13 11:53 - 2015-04-21 17:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-05-13 11:53 - 2015-04-21 17:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-13 11:53 - 2015-04-21 17:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-13 11:53 - 2015-04-21 16:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-13 11:53 - 2015-04-21 16:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-13 11:53 - 2015-04-20 04:56 - 01250816 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-13 11:53 - 2015-04-20 04:56 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-13 11:53 - 2015-04-20 04:03 - 02382336 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-13 11:53 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-13 11:53 - 2015-04-13 05:19 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-13 11:52 - 2015-04-08 05:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-05-13 11:52 - 2015-04-08 05:14 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 03989440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 03934144 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 01307648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00851456 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-05-11 09:59 - 2015-05-11 09:59 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-05-11 09:59 - 2015-05-11 09:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 01372160 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-05-11 09:57 - 2015-05-11 09:57 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-05-11 09:57 - 2015-05-11 09:57 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-05-11 09:56 - 2015-05-11 09:56 - 02311168 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-05-08 23:34 - 2015-05-09 12:23 - 00107622 _____ () C:\Users\SLOBA.SLOBA-PC\Desktop\Spn sismis.ai
2015-04-30 19:54 - 2015-04-30 19:54 - 00000000 ____D () C:\Users\SLOBA\AppData\Local\ACD Systems

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-25 16:56 - 2014-11-28 00:51 - 00000884 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-25 16:55 - 2009-07-14 06:34 - 00023872 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-25 16:55 - 2009-07-14 06:34 - 00023872 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-25 16:50 - 2015-03-02 00:27 - 01112894 _____ () C:\Windows\WindowsUpdate.log
2015-05-25 16:46 - 2014-11-28 00:51 - 00000880 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-25 16:46 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-25 16:41 - 2014-11-21 17:07 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-25 15:56 - 2013-01-04 23:45 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-05-25 15:38 - 2014-09-04 01:52 - 00000394 __RSH () C:\ProgramData\ntuser.pol
2015-05-25 13:43 - 2012-03-13 14:26 - 00000000 ____D () C:\ProgramData\MFAData
2015-05-25 13:39 - 2014-09-04 18:36 - 00000000 ____D () C:\ProgramData\AVG2014
2015-05-25 12:46 - 2014-08-26 22:59 - 00000000 ____D () C:\Program Files\Opera
2015-05-25 00:54 - 2009-07-14 06:53 - 00032638 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-24 16:56 - 2014-12-19 15:50 - 00000000 ____D () C:\ZET 9
2015-05-24 14:09 - 2014-12-14 14:10 - 30883840 _____ () C:\Windows\system32\config\components.iobit
2015-05-24 14:08 - 2014-11-13 13:44 - 02088960 _____ () C:\Windows\system32\config\default.iobit
2015-05-24 14:08 - 2014-11-13 13:44 - 00098304 _____ () C:\Windows\system32\config\sam.iobit
2015-05-24 14:08 - 2014-11-13 13:44 - 00024576 _____ () C:\Windows\system32\config\security.iobit
2015-05-24 14:08 - 2014-11-13 13:43 - 56016896 _____ () C:\Windows\system32\config\software.iobit
2015-05-24 14:00 - 2014-11-28 00:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-05-24 13:59 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System
2015-05-24 13:56 - 2014-12-09 16:10 - 00000000 ___RD () C:\Users\SLOBA.SLOBA-PC\Desktop\Dekstop
2015-05-24 13:28 - 2015-04-17 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit
2015-05-24 13:28 - 2015-04-17 12:38 - 00000000 ____D () C:\Program Files\TweakBit
2015-05-24 13:27 - 2015-04-19 20:10 - 00000000 ____D () C:\Program Files\Moyea
2015-05-24 13:17 - 2015-02-26 21:37 - 00000000 ____D () C:\Program Files\ActiveMail
2015-05-24 13:17 - 2012-03-13 14:17 - 00000000 ____D () C:\Program Files\ACD Systems
2015-05-24 13:16 - 2014-09-04 01:01 - 00000000 ____D () C:\ProgramData\ProductData
2015-05-24 13:03 - 2013-01-05 08:06 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\CISTACI
2015-05-24 12:22 - 2013-07-12 07:37 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\Folderi
2015-05-24 11:09 - 2015-02-08 02:40 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2015-05-24 02:30 - 2015-03-10 20:31 - 00000000 ____D () C:\Program Files\cillickit
2015-05-23 18:00 - 2013-08-09 17:19 - 00000302 _____ () C:\Windows\Tasks\BSEZJFCVUW.job
2015-05-23 17:44 - 2015-02-07 15:58 - 00002064 _____ () C:\Users\Public\Desktop\Advanced SystemCare 8.lnk
2015-05-23 17:20 - 2012-03-13 12:52 - 00000997 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-05-23 15:42 - 2010-11-20 23:01 - 00785302 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-23 15:15 - 2012-03-20 16:54 - 00000000 ___RD () C:\Program Files\Skype
2015-05-21 03:01 - 2015-04-01 12:06 - 00000000 ___SD () C:\Windows\system32\GWX
2015-05-14 13:45 - 2015-04-24 22:56 - 00000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe PNG Format CS6 Prefs
2015-05-14 11:48 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-05-14 03:43 - 2015-04-07 19:36 - 03778536 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-14 03:39 - 2010-11-21 02:46 - 00000000 ____D () C:\Program Files\Windows Journal
2015-05-14 03:39 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2015-05-14 03:21 - 2015-02-07 20:40 - 00000000 ____D () C:\Windows\system32\MRT
2015-05-14 03:10 - 2015-02-07 20:40 - 137310008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-05-09 11:44 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-30 19:54 - 2015-02-08 02:38 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Local\ACD Systems

==================== Files in the root of some directories =======

2013-07-29 13:05 - 2014-06-22 18:14 - 0003728 _____ () C:\Program Files\Mozilla Firefoxavg-secure-search.xml
2012-10-18 10:25 - 2013-01-04 23:54 - 0000015 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\3718e742a
2012-10-18 10:25 - 2013-01-04 23:54 - 10577566 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\3718E780a
2014-04-20 20:12 - 2014-04-20 20:12 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe AIFF Format CS5 Prefs
2012-11-20 11:58 - 2013-05-16 12:28 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe GIF Format CS5 Prefs
2015-04-21 20:59 - 2015-04-21 20:59 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe GIF Format CS6 Prefs
2012-04-27 11:19 - 2012-04-27 11:24 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe PNG Format CS5 Prefs
2015-04-24 22:56 - 2015-05-14 13:45 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe PNG Format CS6 Prefs
2014-09-01 10:18 - 2014-09-01 10:18 - 0002086 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\HBUNZ
2014-11-28 14:58 - 2014-11-28 15:09 - 0000872 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\LiveSupport.exe_log.txt
2014-11-28 14:58 - 2014-11-28 15:11 - 0000086 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\regsvr32.exe_log.txt
2014-09-01 10:18 - 2014-09-01 10:18 - 0001248 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\YPDI
2012-04-12 22:08 - 2012-04-12 22:08 - 0001456 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Local\Adobe Save for Web 12.0 Prefs
2015-04-21 20:58 - 2015-04-21 20:58 - 0001456 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Local\Adobe Save for Web 13.0 Prefs
2012-03-13 16:42 - 2014-09-03 19:35 - 0050176 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-23 23:47 - 2015-02-23 23:47 - 0007605 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Local\Resmon.ResmonCfg
2013-01-09 22:23 - 2010-05-28 23:37 - 0015086 _____ () C:\ProgramData\Amazon.ico
2014-11-15 21:58 - 2014-11-15 21:58 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\SLOBA.SLOBA-PC\AppData\Local\Temp\clrvu.exe
C:\Users\SLOBA.SLOBA-PC\AppData\Local\Temp\oo2.exe
C:\Users\SLOBA.SLOBA-PC\AppData\Local\Temp\Quarantine.exe
C:\Users\SLOBA.SLOBA-PC\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-24 20:49

==================== End of log ============================

Dopuna: 25 Maj 2015 17:31

Cekam dalja uputstva......



offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Pozdrav,

Nisi okačio Addition.txt izvještaj.



offline
  • Pridružio: 29 Avg 2014
  • Poruke: 30

Napisano: 25 Maj 2015 20:14

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 24-05-2015 01
Ran by SLOBA (administrator) on SLOBA-PC on 25-05-2015 20:06:51
Running from C:\Users\SLOBA.SLOBA-PC\Desktop
Loaded Profiles: SLOBA (Available Profiles: SLOBA & Privremeno)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: [Link mogu videti samo ulogovani korisnici]

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe
() D:\Program files\360\Total Security\safemon\QHActiveDefense.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
(TeamViewer GmbH) C:\Windows\System32\config\systemprofile\AppData\Local\Temp\TeamViewer\TeamViewer_Service.exe
(Qihu Software Co. Limited) D:\Program files\360\Total Security\safemon\QHWatchdog.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe
() D:\Program files\360\Total Security\safemon\QHSafeTray.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
(IObit) C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [QHSafeTray] => D:\Program files\360\Total Security\safemon\QHSafeTray.exe [986224 2015-04-30] ()
HKU\S-1-5-21-622532197-3803626068-3240053254-1000\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files\DAEMON Tools Pro\DTAgent.exe [3035968 2012-02-02] (DT Soft Ltd)
HKU\S-1-5-21-622532197-3803626068-3240053254-1000\...\Run: [Advanced SystemCare 8] => C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe [2428704 2015-01-20] (IObit)
HKU\S-1-5-21-622532197-3803626068-3240053254-1000\...\MountPoints2: G - G:\LaunchU3.exe -a
HKU\S-1-5-21-622532197-3803626068-3240053254-1000\...\MountPoints2: {1a80fcd2-9c69-11e3-b9e8-001167754b1d} - G:\LaunchU3.exe -a
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [Link mogu videti samo ulogovani korisnici]
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [Link mogu videti samo ulogovani korisnici]
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll [2015-05-24] (IObit)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27] (Adobe Systems Incorporated)
BHO: No Name -> {665b7e0e-0399-4fe9-adf8-5eb0fce4a4f2} -> No File
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} [Link mogu videti samo ulogovani korisnici]
Handler: linkscanner - No CLSID Value -
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 109.122.98.6

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_223.dll No File
FF Plugin: @java.com/DTPlugin,version=10.72.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-22] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.72.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-22] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [2013-09-13] ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll [2014-11-28] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll [2014-11-28] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2012-07-27] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-622532197-3803626068-3240053254-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\SLOBA\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdjvu.dll [2012-11-11] (Caminova, Inc.)
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (No Name) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\akaelkiagnbfcccfnmbimdbplecgbikh [2015-05-24]
CHR Extension: (Docs) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-08]
CHR Extension: (Google Drive) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-08]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-02-08]
CHR Extension: (YouTube) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-08]
CHR Extension: (Google Search) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-08]
CHR Extension: (DelugeSiphon) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gabdloknkpdefdpkkibplcfnkngbidim [2015-02-26]
CHR Extension: (ActiveMail) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmbjhlidpnohinigphldbcffhikcill [2015-02-26]
CHR Extension: (Google Wallet) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-08]
CHR Extension: (Gmail) - C:\Users\SLOBA.SLOBA-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-08]

Opera:
=======
OPR Extension: (SavePass 1.1) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\akaelkiagnbfcccfnmbimdbplecgbikh [2015-05-24]
OPR Extension: (Ge-Force) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\jhongheibdpfhdpfccheljfcabgliidh [2015-05-24]
OPR Extension: (Sense) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\knlpigpfaognbholppaembpfphilacie [2015-05-24]
OPR Extension: (Bookmarks Manager) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\nkgbeagkihphgjnlkclfjjjplmefndnm [2015-02-08]
OPR Extension: (Search opera) - C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Opera Software\Opera Stable\Extensions\omnhkboaejidgnodedpmnbdlbmjileik [2015-02-08]
StartMenuInternet: (HKLM) OperaStable - C:\Program Files\Opera\Launcher.exe [Link mogu videti samo ulogovani korisnici]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdvancedSystemCareService8; C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [815392 2014-11-04] (IObit)
S4 avgfws; C:\Program Files\AVG\AVG2014\avgfws.exe [1417160 2014-08-25] (AVG Technologies CZ, s.r.o.)
S4 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3242000 2014-08-25] (AVG Technologies CZ, s.r.o.)
S4 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-08-25] (AVG Technologies CZ, s.r.o.)
R2 DiagTrack; C:\Windows\system32\diagtrack.dll [851456 2015-05-11] (Microsoft Corporation)
S4 IMFservice; C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [344896 2014-09-30] (IObit)
S2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2724128 2015-01-16] (IObit)
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 QHActiveDefense; D:\Program files\360\Total Security\safemon\QHActiveDefense.exe [820848 2015-04-30] ()
S3 SentinelKeysServer; C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [316992 2007-04-27] (SafeNet, Inc.)
S4 SentinelProtectionServer; C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe [206400 2007-04-27] (SafeNet, Inc)
S4 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) []
R2 TeamViewer; c:\Windows\System32\config\systemprofile\AppData\Local\Temp\teamviewer\TeamViewer_Service.exe [4254992 2015-01-30] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S3 AdobeFlashPlayerUpdateSvc; No ImagePath
S2 SpyHunter 4 Service; No ImagePath

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker.sys [88136 2015-04-30] (360.cn)
R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [65608 2015-04-30] (360.cn)
R1 360Box; C:\Windows\System32\DRIVERS\360Box.sys [202312 2015-04-30] (360.cn)
S3 360Camera; C:\Windows\System32\Drivers\360Camera.sys [34888 2015-04-30] (360.cn)
R1 360SelfProtection; C:\Windows\System32\drivers\360SelfProtection.sys [174536 2015-04-30] (360安全中心)
R0 amdide; C:\Windows\System32\DRIVERS\amdide.sys [11944 2014-11-15] (Advanced Micro Devices Inc.)
S3 AR5416; C:\Windows\System32\DRIVERS\athw.sys [1938272 2010-11-05] (Atheros Communications, Inc.)
R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [188696 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-08-06] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42784 2014-08-11] (AVG Technologies)
R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV.sys [169040 2015-04-30] (Qihu 360 Software Co., Ltd.)
R3 BlueletAudio; C:\Windows\System32\DRIVERS\blueletaudio.sys [34704 2007-05-11] (IVT Corporation.)
R3 BlueletSCOAudio; C:\Windows\System32\DRIVERS\BlueletSCOAudio.sys [27792 2007-03-05] (IVT Corporation.)
R3 BT; C:\Windows\System32\DRIVERS\btnetdrv.sys [16272 2007-05-23] (IVT Corporation.)
S3 Btcsrusb; C:\Windows\System32\Drivers\btcusb.sys [36496 2007-05-23] (IVT Corporation.)
R0 BTHidEnum; C:\Windows\System32\Drivers\vbtenum.sys [20880 2007-03-05] (IVT Corporation.)
R0 BTHidMgr; C:\Windows\System32\Drivers\BTHidMgr.sys [35600 2007-03-05] (IVT Corporation.)
R0 DsArk; C:\Windows\system32\Drivers\DsArk.sys [99912 2015-04-30] (360.cn)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-03-29] (DT Soft Ltd)
R1 EfiMon; C:\Windows\System32\Drivers\Efimon.sys [23752 2015-04-30] (360安全中心)
R1 ElRawDisk; C:\Windows\system32\drivers\ElRawDsk.sys [26248 2014-04-07] (EldoS Corporation)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [19984 2015-05-25] ()
S4 FileMonitor; C:\Program Files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys [21480 2013-03-23] (IObit)
R0 HookPort; C:\Windows\System32\Drivers\Hookport.sys [58440 2015-04-30] (360安全中心)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2015-02-07] (REALiX(tm))
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2015-05-25] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation)
R1 qutmdserv; C:\Windows\System32\DRIVERS\qutmdrv.sys [257352 2015-04-30] (360.cn)
R1 qutmipc; C:\Windows\system32\drivers\qutmipc.sys [45896 2015-04-30] (360.cn)
S3 RegFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [32288 2013-11-19] (IObit.com)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [18624 2014-06-04] (IObit)
S3 UrlFilter; C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys [20944 2013-11-19] (IObit.com)
R3 VComm; C:\Windows\System32\DRIVERS\VComm.sys [34448 2007-03-05] (IVT Corporation.)
R3 VcommMgr; C:\Windows\System32\Drivers\VcommMgr.sys [44304 2007-03-05] (IVT Corporation.)
S4 AVGIDSDriver; system32\DRIVERS\avgidsdriverx.sys [X]
S4 AVGIDSHX; system32\DRIVERS\avgidshx.sys [X]
S4 AVGIDSShim; system32\DRIVERS\avgidsshimx.sys [X]
S4 Avgrkx86; system32\DRIVERS\avgrkx86.sys [X]
S4 Avgtdix; system32\DRIVERS\avgtdix.sys [X]
S2 SentinelFilter; No ImagePath
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-25 20:06 - 2015-05-25 20:07 - 00014910 _____ () C:\Users\SLOBA.SLOBA-PC\Desktop\FRST.txt
2015-05-25 19:35 - 2015-05-25 19:35 - 00066202 _____ () C:\Users\SLOBA.SLOBA-PC\Desktop\Malware list remove.txt
2015-05-25 17:53 - 2015-05-25 19:55 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-25 17:53 - 2015-05-25 17:53 - 00001069 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-25 17:53 - 2015-05-25 17:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-05-25 17:53 - 2015-05-25 17:53 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-05-25 17:53 - 2015-04-14 09:37 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-25 17:53 - 2015-04-14 09:37 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-05-25 17:53 - 2015-04-14 09:37 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-05-25 17:02 - 2015-05-25 20:06 - 00000000 ____D () C:\FRST
2015-05-25 16:44 - 2015-05-25 16:44 - 01146880 _____ (Farbar) C:\Users\SLOBA.SLOBA-PC\Desktop\FRST.exe
2015-05-25 16:15 - 2015-05-25 16:15 - 00388608 _____ (Trend Micro Inc.) C:\Users\SLOBA.SLOBA-PC\Desktop\HijackThis.exe
2015-05-25 13:48 - 2015-05-25 14:10 - 00000000 ____D () C:\Program Files\Immunet
2015-05-25 13:48 - 2015-05-25 13:49 - 00000000 ____D () C:\ProgramData\Immunet
2015-05-25 13:48 - 2015-05-25 13:48 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ImmunetNetworkMonitor_01009.Wdf
2015-05-25 13:42 - 2015-05-25 13:43 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\work
2015-05-25 13:35 - 2015-05-25 13:35 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2015-05-25 13:10 - 2015-05-25 13:10 - 00000000 ____D () C:\Users\SLOBA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter
2015-05-25 13:10 - 2015-05-25 13:10 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Enigma Software Group
2015-05-25 13:10 - 2015-05-25 13:10 - 00000000 ____D () C:\sh4ldr
2015-05-25 13:08 - 2015-05-25 13:08 - 00019984 _____ () C:\Windows\system32\Drivers\EsgScanner.sys
2015-05-25 13:04 - 2015-05-25 13:04 - 00001518 _____ () C:\Users\SLOBA.SLOBA-PC\Desktop\opera.exe - Shortcut.lnk
2015-05-25 11:35 - 2015-05-25 13:08 - 00000000 ____D () C:\Program Files\Enigma Software Group
2015-05-25 11:34 - 2015-05-25 12:53 - 00000000 ____D () C:\Windows\AF54923662584AC6A0435B5B89C6EB61.TMP
2015-05-25 11:31 - 2015-05-25 11:31 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard
2015-05-24 20:32 - 2015-05-25 19:39 - 00117832 _____ () C:\Windows\PFRO.log
2015-05-24 18:44 - 2015-05-24 18:44 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\360TotalSecurity
2015-05-24 14:21 - 2015-05-25 19:39 - 00000724 _____ () C:\Windows\setupact.log
2015-05-24 14:21 - 2015-05-24 14:21 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-24 13:15 - 2015-05-24 13:15 - 00001195 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2015-05-24 12:54 - 2015-04-30 15:41 - 00099912 _____ (360.cn) C:\Windows\system32\Drivers\DsArk.sys
2015-05-24 12:41 - 2015-05-24 13:17 - 00000000 ____D () C:\Program Files\d53c3b29-b83b-4343-8e45-001eeac3bad3
2015-05-23 17:44 - 2015-05-23 17:44 - 00054656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys
2015-05-23 17:20 - 2015-05-24 15:35 - 00000000 __SHD () C:\$360Section
2015-05-23 15:52 - 2015-05-24 15:35 - 00000000 ____D () C:\ProgramData\360Quarant
2015-05-23 15:51 - 2015-05-23 16:27 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\360safe
2015-05-23 15:48 - 2015-05-24 18:34 - 00000000 ____D () C:\ProgramData\360safe
2015-05-23 15:48 - 2015-05-23 15:48 - 00000806 _____ () C:\Users\Public\Desktop\360 Total Security.lnk
2015-05-23 15:48 - 2015-05-23 15:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center
2015-05-23 15:48 - 2015-05-23 15:48 - 00000000 ____D () C:\ProgramData\360TotalSecurity
2015-05-23 15:48 - 2015-04-30 15:41 - 00174536 _____ (360安全中心) C:\Windows\system32\Drivers\360SelfProtection.sys
2015-05-23 15:48 - 2015-04-30 15:41 - 00045896 _____ (360.cn) C:\Windows\system32\Drivers\qutmipc.sys
2015-05-23 15:47 - 2015-05-25 16:46 - 00000000 _RSHD () C:\360SANDBOX
2015-05-23 15:47 - 2015-04-30 15:41 - 00202312 _____ (360.cn) C:\Windows\system32\Drivers\360Box.sys
2015-05-23 15:47 - 2015-04-30 15:41 - 00088136 _____ (360.cn) C:\Windows\system32\Drivers\360AntiHacker.sys
2015-05-23 15:47 - 2015-04-30 15:41 - 00034888 _____ (360.cn) C:\Windows\system32\Drivers\360Camera.sys
2015-05-23 15:46 - 2015-04-30 15:41 - 00257352 _____ (360.cn) C:\Windows\system32\Drivers\qutmdrv.sys
2015-05-23 15:46 - 2015-04-30 15:41 - 00169040 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\BAPIDRV.SYS
2015-05-23 15:46 - 2015-04-30 15:41 - 00065608 _____ (360.cn) C:\Windows\system32\Drivers\360AvFlt.sys
2015-05-23 15:46 - 2015-04-30 15:41 - 00058440 _____ (360安全中心) C:\Windows\system32\Drivers\hookport.sys
2015-05-23 15:46 - 2015-04-30 15:41 - 00023752 _____ (360安全中心) C:\Windows\system32\Drivers\efimon.sys
2015-05-23 15:29 - 2015-05-25 00:51 - 00000000 ____D () C:\AdwCleaner
2015-05-23 15:08 - 2015-05-23 15:08 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Software Tool
2015-05-23 15:06 - 2015-05-24 12:45 - 00000004 _____ () C:\Windows\system32\029B560A371F4E00AB32838EBC01B9E7
2015-05-23 15:04 - 2015-05-23 15:04 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Local\CrashRpt
2015-05-20 23:41 - 2015-05-20 23:42 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\wc predlozi
2015-05-15 15:06 - 2015-05-15 15:08 - 00000000 ____D () C:\Windows\rescache
2015-05-15 14:36 - 2015-05-15 15:11 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\sajtdw
2015-05-14 03:21 - 2015-05-01 15:16 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 11:53 - 2015-05-05 03:12 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-05-13 11:53 - 2015-04-22 03:48 - 00342736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-13 11:53 - 2015-04-21 18:25 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-05-13 11:53 - 2015-04-21 18:25 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-05-13 11:53 - 2015-04-21 18:24 - 19691008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-13 11:53 - 2015-04-21 18:11 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-13 11:53 - 2015-04-21 18:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-05-13 11:53 - 2015-04-21 18:10 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-05-13 11:53 - 2015-04-21 18:09 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-13 11:53 - 2015-04-21 18:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-05-13 11:53 - 2015-04-21 18:04 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-13 11:53 - 2015-04-21 18:03 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-05-13 11:53 - 2015-04-21 18:02 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-05-13 11:53 - 2015-04-21 18:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-05-13 11:53 - 2015-04-21 17:58 - 00664576 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-13 11:53 - 2015-04-21 17:58 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-05-13 11:53 - 2015-04-21 17:58 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-05-13 11:53 - 2015-04-21 17:57 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-05-13 11:53 - 2015-04-21 17:51 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-05-13 11:53 - 2015-04-21 17:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-05-13 11:53 - 2015-04-21 17:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-05-13 11:53 - 2015-04-21 17:39 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-05-13 11:53 - 2015-04-21 17:38 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-13 11:53 - 2015-04-21 17:36 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-13 11:53 - 2015-04-21 17:31 - 04305920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-13 11:53 - 2015-04-21 17:26 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-13 11:53 - 2015-04-21 17:26 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-13 11:53 - 2015-04-21 17:25 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-13 11:53 - 2015-04-21 17:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-05-13 11:53 - 2015-04-21 17:17 - 12828672 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-13 11:53 - 2015-04-21 17:02 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-13 11:53 - 2015-04-21 16:58 - 01310208 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-13 11:53 - 2015-04-21 16:56 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-13 11:53 - 2015-04-20 04:56 - 01250816 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-05-13 11:53 - 2015-04-20 04:56 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-05-13 11:53 - 2015-04-20 04:03 - 02382336 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-13 11:53 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-13 11:53 - 2015-04-13 05:19 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-05-13 11:52 - 2015-04-08 05:14 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-05-13 11:52 - 2015-04-08 05:14 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 03989440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 03934144 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 01307648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00851456 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-05-11 09:59 - 2015-05-11 09:59 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-05-11 09:59 - 2015-05-11 09:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2015-05-11 09:59 - 2015-05-11 09:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-05-11 09:59 - 2015-05-11 09:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 01372160 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-05-11 09:57 - 2015-05-11 09:57 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2015-05-11 09:57 - 2015-05-11 09:57 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-05-11 09:57 - 2015-05-11 09:57 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-05-11 09:56 - 2015-05-11 09:56 - 02311168 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-05-08 23:34 - 2015-05-09 12:23 - 00107622 _____ () C:\Users\SLOBA.SLOBA-PC\Desktop\Spn sismis.ai
2015-04-30 19:54 - 2015-04-30 19:54 - 00000000 ____D () C:\Users\SLOBA\AppData\Local\ACD Systems

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-25 19:56 - 2014-11-28 00:51 - 00000884 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-25 19:47 - 2009-07-14 06:34 - 00023872 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-25 19:47 - 2009-07-14 06:34 - 00023872 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-25 19:43 - 2015-03-02 00:27 - 01123595 _____ () C:\Windows\WindowsUpdate.log
2015-05-25 19:41 - 2014-11-21 17:07 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-25 19:40 - 2014-11-28 00:51 - 00000880 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-25 19:39 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-25 19:36 - 2015-01-18 11:00 - 00000000 ____D () C:\ProgramData\SaverrExtension
2015-05-25 19:36 - 2015-01-11 12:01 - 00000000 ____D () C:\ProgramData\takueoRlleoave
2015-05-25 19:36 - 2015-01-11 11:58 - 00000000 ____D () C:\ProgramData\ttaKessavE
2015-05-25 15:56 - 2013-01-04 23:45 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-05-25 15:38 - 2014-09-04 01:52 - 00000394 __RSH () C:\ProgramData\ntuser.pol
2015-05-25 13:43 - 2012-03-13 14:26 - 00000000 ____D () C:\ProgramData\MFAData
2015-05-25 13:39 - 2014-09-04 18:36 - 00000000 ____D () C:\ProgramData\AVG2014
2015-05-25 12:46 - 2014-08-26 22:59 - 00000000 ____D () C:\Program Files\Opera
2015-05-25 00:54 - 2009-07-14 06:53 - 00032638 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-24 16:56 - 2014-12-19 15:50 - 00000000 ____D () C:\ZET 9
2015-05-24 14:09 - 2014-12-14 14:10 - 30883840 _____ () C:\Windows\system32\config\components.iobit
2015-05-24 14:08 - 2014-11-13 13:44 - 02088960 _____ () C:\Windows\system32\config\default.iobit
2015-05-24 14:08 - 2014-11-13 13:44 - 00098304 _____ () C:\Windows\system32\config\sam.iobit
2015-05-24 14:08 - 2014-11-13 13:44 - 00024576 _____ () C:\Windows\system32\config\security.iobit
2015-05-24 14:08 - 2014-11-13 13:43 - 56016896 _____ () C:\Windows\system32\config\software.iobit
2015-05-24 14:00 - 2014-11-28 00:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-05-24 13:59 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System
2015-05-24 13:56 - 2014-12-09 16:10 - 00000000 ___RD () C:\Users\SLOBA.SLOBA-PC\Desktop\Dekstop
2015-05-24 13:28 - 2015-04-17 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit
2015-05-24 13:28 - 2015-04-17 12:38 - 00000000 ____D () C:\Program Files\TweakBit
2015-05-24 13:27 - 2015-04-19 20:10 - 00000000 ____D () C:\Program Files\Moyea
2015-05-24 13:17 - 2015-02-26 21:37 - 00000000 ____D () C:\Program Files\ActiveMail
2015-05-24 13:17 - 2012-03-13 14:17 - 00000000 ____D () C:\Program Files\ACD Systems
2015-05-24 13:16 - 2014-09-04 01:01 - 00000000 ____D () C:\ProgramData\ProductData
2015-05-24 13:03 - 2013-01-05 08:06 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\CISTACI
2015-05-24 12:22 - 2013-07-12 07:37 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\Desktop\Folderi
2015-05-24 11:09 - 2015-02-08 02:40 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2015-05-24 02:30 - 2015-03-10 20:31 - 00000000 ____D () C:\Program Files\cillickit
2015-05-23 18:00 - 2013-08-09 17:19 - 00000302 _____ () C:\Windows\Tasks\BSEZJFCVUW.job
2015-05-23 17:44 - 2015-02-07 15:58 - 00002064 _____ () C:\Users\Public\Desktop\Advanced SystemCare 8.lnk
2015-05-23 17:20 - 2012-03-13 12:52 - 00000997 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-05-23 15:42 - 2010-11-20 23:01 - 00785302 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-23 15:15 - 2012-03-20 16:54 - 00000000 ___RD () C:\Program Files\Skype
2015-05-21 03:01 - 2015-04-01 12:06 - 00000000 ___SD () C:\Windows\system32\GWX
2015-05-14 13:45 - 2015-04-24 22:56 - 00000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe PNG Format CS6 Prefs
2015-05-14 11:48 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-05-14 03:43 - 2015-04-07 19:36 - 03778536 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-14 03:39 - 2010-11-21 02:46 - 00000000 ____D () C:\Program Files\Windows Journal
2015-05-14 03:39 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2015-05-14 03:21 - 2015-02-07 20:40 - 00000000 ____D () C:\Windows\system32\MRT
2015-05-14 03:10 - 2015-02-07 20:40 - 137310008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-05-09 11:44 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-30 19:54 - 2015-02-08 02:38 - 00000000 ____D () C:\Users\SLOBA.SLOBA-PC\AppData\Local\ACD Systems

==================== Files in the root of some directories =======

2013-07-29 13:05 - 2014-06-22 18:14 - 0003728 _____ () C:\Program Files\Mozilla Firefoxavg-secure-search.xml
2012-10-18 10:25 - 2013-01-04 23:54 - 0000015 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\3718e742a
2012-10-18 10:25 - 2013-01-04 23:54 - 10577566 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\3718E780a
2014-04-20 20:12 - 2014-04-20 20:12 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe AIFF Format CS5 Prefs
2012-11-20 11:58 - 2013-05-16 12:28 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe GIF Format CS5 Prefs
2015-04-21 20:59 - 2015-04-21 20:59 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe GIF Format CS6 Prefs
2012-04-27 11:19 - 2012-04-27 11:24 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe PNG Format CS5 Prefs
2015-04-24 22:56 - 2015-05-14 13:45 - 0000132 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Adobe PNG Format CS6 Prefs
2014-09-01 10:18 - 2014-09-01 10:18 - 0002086 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\HBUNZ
2014-11-28 14:58 - 2014-11-28 15:09 - 0000872 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\LiveSupport.exe_log.txt
2014-11-28 14:58 - 2014-11-28 15:11 - 0000086 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\regsvr32.exe_log.txt
2014-09-01 10:18 - 2014-09-01 10:18 - 0001248 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\YPDI
2012-04-12 22:08 - 2012-04-12 22:08 - 0001456 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Local\Adobe Save for Web 12.0 Prefs
2015-04-21 20:58 - 2015-04-21 20:58 - 0001456 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Local\Adobe Save for Web 13.0 Prefs
2012-03-13 16:42 - 2014-09-03 19:35 - 0050176 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-23 23:47 - 2015-02-23 23:47 - 0007605 _____ () C:\Users\SLOBA.SLOBA-PC\AppData\Local\Resmon.ResmonCfg
2013-01-09 22:23 - 2010-05-28 23:37 - 0015086 _____ () C:\ProgramData\Amazon.ico
2014-11-15 21:58 - 2014-11-15 21:58 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\SLOBA.SLOBA-PC\AppData\Local\Temp\oo2.exe
C:\Users\SLOBA.SLOBA-PC\AppData\Local\Temp\Quarantine.exe
C:\Users\SLOBA.SLOBA-PC\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-24 20:49

==================== End of log ============================


I ovaj drugi ADDITION

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 24-05-2015 01
Ran by SLOBA at 2015-05-25 20:08:33
Running from C:\Users\SLOBA.SLOBA-PC\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-622532197-3803626068-3240053254-500 - Administrator - Disabled)
Guest (S-1-5-21-622532197-3803626068-3240053254-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-622532197-3803626068-3240053254-1002 - Limited - Enabled)
Privremeno (S-1-5-21-622532197-3803626068-3240053254-1003 - Administrator - Enabled) => C:\Users\Privremeno
SLOBA (S-1-5-21-622532197-3803626068-3240053254-1000 - Administrator - Enabled) => C:\Users\SLOBA.SLOBA-PC

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: 360 Total Security (Enabled - Up to date) {2B66EE1E-E5C8-C2F7-648F-4E55AC68D37D}
AS: 360 Total Security (Enabled - Up to date) {90070FFA-C3F2-CD79-5E3F-7527D7EF99C0}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

360 Total Security (HKLM\...\360TotalSecurity) (Version: 6.0.0.2016 - 360 Security Center)
ACDSee Photo Manager 12 (HKLM\...\{A5CBD7C5-CF16-443F-A4F2-3503C9DE311B}) (Version: 12.0.342 - ACD Systems International Inc.)
ActivePresenter (HKLM\...\{A2A40277-D807-4754-95A3-2F294C2C51D3}_is1) (Version: 5.0.0 - Atomi Systems, Inc.)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 15.0.0.356 - Adobe Systems Incorporated)
Adobe Content Viewer (HKLM\...\com.adobe.dmp.contentviewer) (Version: 1.4.0 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.0.6 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Flash Player 17 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 17.0.0.149 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Illustrator CS6 (HKLM\...\{4869414E-7AEA-4C8E-BE1C-8D40977FD517}) (Version: 16.0 - Adobe Systems Incorporated)
Adobe InDesign CS5.5 (HKLM\...\{857CC5F0-040E-1016-A173-D55ADD80C260}) (Version: 7.5 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Adobe Pixel Bender Toolkit 2 (HKLM\...\{D5CC77BE-BC5B-424E-8E45-DF60AFF7BE9C}) (Version: 2.0 - Adobe Systems Incorporated)
Adobe Reader X (10.1.4) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.4 - Adobe Systems Incorporated)
Adobe Widget Browser (HKLM\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
adSy (HKLM\...\{FE8CAC5A-416E-25AB-CA78-CA001CE2BFFB}) (Version: - "") <==== ATTENTION
Advanced SystemCare 8 (HKLM\...\Advanced SystemCare 8_is1) (Version: 8.1.0 - IObit)
Agent Ransack (HKLM\...\{8B51F879-18C4-4C37-8D2B-E340AEE7AACB}) (Version: 7.0.828.1 - Mythicsoft Ltd)
Airytec Switch Off (HKLM\...\Airytec Switch Off) (Version: 3.5.1 - Airytec)
Apple Application Support (HKLM\...\{6A3F9D74-BB80-4451-8CA1-4B3A857F1359}) (Version: 2.0.1 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4765 - AVG Technologies)
AVG 2014 (Version: 14.0.4015 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4765 - AVG Technologies) Hidden
Bluesoleil2.6.0.9 Release 070606 (HKLM\...\{846AC73B-9394-48B9-B941-8F7F472F0047}) (Version: 2.6.0.9 Release 070606 - IVT Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 3.21 - Piriform)
ccoinsave (HKLM\...\{C8AAF59A-6BAA-F68B-9470-A856460A8093}) (Version: - "") <==== ATTENTION
cillickit (HKLM\...\{CDFBAC3A-2FE1-0B77-34C9-065BBCC8B77C}) (Version: - "") <==== ATTENTION
copuNk (HKLM\...\{6824985F-31D5-9CBE-1EB7-3D7ECDC6356E}) (Version: - "") <==== ATTENTION
CyberLink WaveEditor (HKLM\...\InstallShield_{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 1.0.1.3320 - CyberLink Corp.)
DAEMON Tools Pro (HKLM\...\DAEMON Tools Pro) (Version: 5.0.0316.0317 - DT Soft Ltd)
DelugeSiphon (HKLM\...\{89AE616B-E500-0C2D-D0D2-F444CEEB4619}) (Version: - "")
Film Stack (HKLM\...\{35E13884-BAC3-5F4A-799B-05F882E0BD9F}) (Version: - "") <==== ATTENTION
Free YouTube Downloader 3.5.134 (HKLM\...\{A7E19604-93AF-4611-8C9F-CE509C2B286F}_is1) (Version: - HOW Inc.)
Google Chrome (HKLM\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.)
Google Update Helper (Version: 1.3.24.7 - Google Inc.) Hidden
IObit Malware Fighter (HKLM\...\IObit Malware Fighter_is1) (Version: 2.5 - IObit)
IObit Uninstaller (HKLM\...\IObitUninstall) (Version: 4.2.6.2 - IObit)
Java 7 Update 72 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217072FF}) (Version: 7.0.720 - Oracle)
Macromedia Dreamweaver 8 (HKLM\...\{0837A661-FEC3-48B3-876C-91E7D32048A9}) (Version: 8.0.0.2734 - Macromedia)
Macromedia Extension Manager (HKLM\...\{5546CDB5-2CE2-498B-B059-5B3BF81FC41F}) (Version: 1.7.240 - Macromedia, Inc.)
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft LifeCam (HKLM\...\{BD71B413-9FEE-49BB-A6D1-2C0BFB99BDFE}) (Version: 3.60.253.0 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Opera Stable 29.0.1795.60 (HKLM\...\Opera 29.0.1795.60) (Version: 29.0.1795.60 - Opera Software ASA)
PDF Settings CS5 (Version: 10.0 - Adobe Systems Incorporated) Hidden
PDF Settings CS6 (Version: 11.0 - Adobe Systems Incorporated) Hidden
PerformanceTest v7.0 (HKLM\...\PerformanceTest 7_is1) (Version: 7.0 - Passmark Software)
QuickTime (HKLM\...\{C9E14402-3631-4182-B377-6B0DFB1C0339}) (Version: 7.70.80.34 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7373 - Realtek Semiconductor Corp.)
Rosetta Stone Version 3 (HKLM\...\{80F7CA44-F3A5-4853-8BA6-DDF57CD4F078}) (Version: 3.4.7.0 - Rosetta Stone Ltd.)
Sentinel Protection Installer 7.4.0 (HKLM\...\{5A180ED5-0AC1-410A-B790-5E0319CD0A93}) (Version: 7.4.0 - SafeNet, Inc.)
Skype™ 6.18 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.)
Smart Defrag 3 (HKLM\...\Smart Defrag 3_is1) (Version: 3.3 - IObit)
Surfing Protection (HKLM\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
Tajima DG/ML By Pulse 12 (HKLM\...\InstallShield_{8A76F64A-1F32-4C9B-8B3A-FC92177069F3}) (Version: 12.0.3324 - Pulse Microsystems Ltd.)
Tajima DG/ML By Pulse 12 (Version: 12.0.3324 - Pulse Microsystems Ltd.) Hidden
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.51a - Ghisler Software GmbH)
Unity Web Player (HKU\S-1-5-21-622532197-3803626068-3240053254-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VS10RuntimeWin32 (Version: 1.0.0 - immunet) Hidden
Win7codecs (HKLM\...\{8C0CAA7A-3272-4991-A808-2C7559DE3409}) (Version: 2.9.1 - Shark007)
WinRAR 5.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
ZET 9 Lite 2.25 (HKLM\...\ZET 9 Lite 2.25) (Version: 2.25 - ZET Astrology Software)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================

24-05-2015 13:16:24 IObit Uninstaller restore point
24-05-2015 13:18:38 IObit Uninstaller restore point
25-05-2015 11:31:47 Installed SpyHunter
25-05-2015 11:34:14 Installed SpyHunter
25-05-2015 12:52:15 Removed SpyHunter
25-05-2015 13:37:00 Removed AVG 2014

==================== Hostscontent: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-03-13 22:04 - 2010-05-13 18:53 - 00001204 ____N C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
127.0.0.1 activate.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-3.adobe.com
127.0.0.1 ereg.wip3.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 wip3.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 ereg.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 adobe-dns.adobe.com


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0E5082DE-B2E4-473E-A738-49DC7180F302} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-28] (Google Inc.)
Task: {0F91AEC0-E64F-4C98-AA7D-7C02070B3DDF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-28] (Google Inc.)
Task: {1059FCB3-27B3-4F8C-9FB1-0713E8E76A1E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-03-27] (Adobe Systems Incorporated)
Task: {40DADF63-9010-4B85-AFCC-20C8A6663316} - System32\Tasks\Driver Booster SkipUAC (SYSTEM) => C:\Program Files\IObit\Driver Booster\DriverBooster.exe
Task: {41378EC5-75D2-4D0E-9385-593C10A481CE} - System32\Tasks\BSEZJFCVUW => Rundll32.exe "C:\Windows\system32\urlmonk.dll",JOCOHH
Task: {4755CADD-BF22-412A-81AF-C59A0A3DDE0D} - System32\Tasks\Opera scheduled Autoupdate 1409086771 => C:\Program Files\Opera\launcher.exe
Task: {4ADB2E39-8942-4A8D-A8CC-A54A17C99BD3} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation)
Task: {6F2E1E70-9E81-4FF8-AE42-7B152CA4C85B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-07-24] (Piriform Ltd)
Task: {7F85DB57-DFB3-4E14-8A2D-DB321A60B294} - System32\Tasks\ASC8_SkipUac_SLOBA => C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe [2015-01-27] (IObit)
Task: {8A80EA53-055A-4CBB-AAB7-9A4F8312BCF0} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files\IObit\Game Booster 3\AutoUpdate.exe
Task: {A46C4951-2027-4F9A-8A21-975AD96A4B1E} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe
Task: {A6FED544-DBDD-4F95-B20E-AAB6AACF70FE} - System32\Tasks\SmartDefrag3_Update => C:\Program Files\IObit\Smart Defrag 3\AutoUpdate.exe [2014-07-23] (IObit)
Task: {B543E77E-05CF-42E9-AC14-37FCCF839F49} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe [2015-01-23] (IObit)
Task: {C2B50A7E-98A6-4EB5-88ED-BED2456CC3D2} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: {C8F0AC80-382C-4EBA-B4D1-719B1249A9D1} - \{03AC333D-87E9-4969-B2B5-33A9779D3432} No Task File <==== ATTENTION
Task: {CB3CD186-59B2-4D52-BD09-95C39B96CA29} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe [2015-01-20] (IObit)
Task: {D2533B32-6268-4828-B5CC-8543BDDA6621} - System32\Tasks\Uninstaller_SkipUac_SLOBA => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe [2015-01-20] (IObit)
Task: {D27CD474-607A-4D5F-85D2-2EE7A9B06612} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation)
Task: {D8D71BF1-6A99-4138-AB4E-B984D9E2BE1C} - System32\Tasks\Driver Booster SkipUAC (SLOBA) => C:\Program Files\IObit\Driver Booster\DriverBooster.exe
Task: {D9E84F2A-9480-4C93-8C5F-7D1CA39321C1} - System32\Tasks\SmartDefrag3_Startup => C:\Program Files\IObit\Smart Defrag 3\SmartDefrag.exe [2014-11-04] (IObit)
Task: {ED63F327-561F-4510-87B5-180B48CAA33D} - System32\Tasks\{DE292287-CED9-470B-B77E-1A12969A1689} => pcalua.exe -a C:\Windows\system32\config\systemprofile\Desktop\vcredist_x86.exe -d C:\Windows\system32\config\systemprofile\Desktop

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\BSEZJFCVUW.job => C:\Windows\system32\rundll32.exe C:\Windows\system32\urlmonk.dll
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2015-02-07 15:58 - 2013-10-25 13:08 - 00517408 _____ () C:\Program Files\IObit\Advanced SystemCare 8\sqlite3.dll
2015-05-23 15:46 - 2015-04-30 15:41 - 00820848 _____ () D:\Program files\360\Total Security\safemon\QHActiveDefense.exe
2015-02-07 15:58 - 2013-01-15 19:48 - 00348992 _____ () C:\Program Files\IObit\Advanced SystemCare 8\madExcept_.bpl
2015-02-07 15:58 - 2013-01-15 19:48 - 00183616 _____ () C:\Program Files\IObit\Advanced SystemCare 8\madBasic_.bpl
2015-02-07 15:58 - 2013-01-15 19:48 - 00051008 _____ () C:\Program Files\IObit\Advanced SystemCare 8\madDisAsm_.bpl
2015-05-23 15:46 - 2015-04-30 15:41 - 00986224 _____ () D:\Program files\360\Total Security\safemon\QHSafeTray.exe
2015-02-07 15:58 - 2013-01-15 19:47 - 00893248 _____ () C:\Program Files\IObit\Advanced SystemCare 8\webres.dll
2015-05-24 13:14 - 2013-01-15 19:48 - 00348992 _____ () C:\Program Files\IObit\IObit Uninstaller\madExcept_.bpl
2015-05-24 13:14 - 2013-01-15 19:48 - 00183616 _____ () C:\Program Files\IObit\IObit Uninstaller\madBasic_.bpl
2015-05-24 13:14 - 2013-01-15 19:48 - 00051008 _____ () C:\Program Files\IObit\IObit Uninstaller\madDisAsm_.bpl

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> 008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> 00hq.com
IE restricted site: HKU\.DEFAULT\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\.DEFAULT\...\01i.info -> 01i.info
IE restricted site: HKU\.DEFAULT\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\.DEFAULT\...\05p.com -> 05p.com
IE restricted site: HKU\.DEFAULT\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\.DEFAULT\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\.DEFAULT\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\.DEFAULT\...\0calories.net -> 0calories.net
IE restricted site: HKU\.DEFAULT\...\0cj.net -> 0cj.net
IE restricted site: HKU\.DEFAULT\...\0scan.com -> 0scan.com
IE restricted site: HKU\.DEFAULT\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1-se.com -> 1-se.com
IE restricted site: HKU\.DEFAULT\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\.DEFAULT\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\.DEFAULT\...\100gal.net -> 100gal.net
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> 100sexlinks.com

There are 4790 more restricted sites.

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-622532197-3803626068-3240053254-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 109.122.98.6

==================== MSCONFIG/TASK MANAGER Error getting ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: AdvancedSystemCareService8 => 2
MSCONFIG\Services: avgfws => 2
MSCONFIG\Services: AVGIDSAgent => 2
MSCONFIG\Services: avgwd => 2
MSCONFIG\Services: DesignSpooler => 2
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: IMFservice => 2
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: SentinelKeysServer => 2
MSCONFIG\Services: wscsvc => 2
MSCONFIG\Services: wuauserv => 2
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: AdobeCS5.5ServiceManager => "C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
MSCONFIG\startupreg: Advanced SystemCare 8 => "C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto
MSCONFIG\startupreg: AVG_TRAY =>
MSCONFIG\startupreg: AVG_UI => "C:\Program Files\AVG\AVG2014\avgui.exe" /TRAYONLY
MSCONFIG\startupreg: DAEMON Tools Pro Agent => "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
MSCONFIG\startupreg: IObit Malware Fighter => "C:\Program Files\IObit\IObit Malware Fighter\IMF.exe" /autostart
MSCONFIG\startupreg: Malwarebytes' Anti-Malware =>
MSCONFIG\startupreg: QuickTime Task => "D:\Program files\QTTask.exe" -atboottime
MSCONFIG\startupreg: RtHDVCpl => "C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe" -s
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: vProt =>

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{D414BDA2-385F-4912-B34E-03B8ACE6E44D}] => (Allow) C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
FirewallRules: [{AC464F81-902B-4B2C-B426-F1F354EE52F0}] => (Allow) C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
FirewallRules: [{55ECFDA9-8DB2-49F1-9E02-614E84564A95}] => (Allow) C:\Program Files\Microsoft LifeCam\LifeCam.exe
FirewallRules: [{0A05F2C8-B915-43F6-893F-D09C4E0DB54B}] => (Allow) C:\Program Files\Microsoft LifeCam\LifeCam.exe
FirewallRules: [{537287AE-F699-45D5-B600-B40DD8ACBCEA}] => (Allow) C:\Program Files\Microsoft LifeCam\LifeEnC2.exe
FirewallRules: [{71951235-0F69-4BAE-9FC4-5B9BA9E1D0B5}] => (Allow) C:\Program Files\Microsoft LifeCam\LifeEnC2.exe
FirewallRules: [{1A08DC47-93D2-456A-B923-D1E24518F70B}] => (Allow) C:\Program Files\Microsoft LifeCam\LifeExp.exe
FirewallRules: [{737930F7-EEC5-4ACF-822D-EFBE39416F5E}] => (Allow) C:\Program Files\Microsoft LifeCam\LifeExp.exe
FirewallRules: [{3FCEEB2C-623C-44DB-98BE-92169F26FDF2}] => (Allow) C:\Program Files\Microsoft LifeCam\LifeTray.exe
FirewallRules: [{FDE0160A-F566-4EA6-904F-870A818B2968}] => (Allow) C:\Program Files\Microsoft LifeCam\LifeTray.exe
FirewallRules: [{CF183421-36CD-4FAC-913D-14B1FDD8DE69}] => (Allow) D:\Program files\RosettaStoneVersion3.exe
FirewallRules: [{742355E6-D827-4A51-9946-BFB161F8878B}] => (Allow) D:\Program files\RosettaStoneVersion3.exe
FirewallRules: [{6CC78581-3C59-4B52-8481-E78AA400C127}] => (Allow) D:\Program files\support\bin\win\RosettaStoneLtdServices.exe
FirewallRules: [{F108CD37-97FE-4419-8C5F-6193C59BEBA9}] => (Allow) D:\Program files\support\bin\win\RosettaStoneLtdServices.exe
FirewallRules: [{0EAD284A-16F8-4CFB-A2A2-529C607F7B71}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{6E4F688A-1FFF-42EE-ABD6-866A6ED3286B}] => (Allow) C:\Windows\explorer.exe
FirewallRules: [{753820BB-390A-403E-851E-F7410C8055C4}] => (Allow) C:\Windows\explorer.exe
FirewallRules: [{5F596B92-787D-4678-8F8D-574ADB8925A6}] => (Allow) LPort=9091
FirewallRules: [{41E3A9DD-1044-4200-ADEE-F4E07A8C9612}] => (Allow) C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe
FirewallRules: [{1C40E65F-3DEE-4BCA-957A-6691EE83247E}] => (Allow) C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe
FirewallRules: [{2DA579BA-3775-42E1-8324-EEE0177F8B12}] => (Allow) C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe
FirewallRules: [{5DEF3D0D-480A-4D42-9C28-B528B1FA4640}] => (Allow) C:\Program Files\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe
FirewallRules: [{1C359AD6-AC4D-4BBD-8B50-BE6BD8BFE50E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{030900AC-CC28-4556-B1A8-4143E842027F}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{C981B44C-76CD-4146-9545-47B3AEC146DA}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{157EFDA1-9657-4FF5-AAF2-36F863A0319A}] => (Allow) C:\Program Files\AVG\AVG2014\avgnsx.exe
FirewallRules: [{A5E1CFD7-69AB-4C77-B40E-1969A5DE1BA0}] => (Allow) C:\Program Files\AVG\AVG2014\avgnsx.exe
FirewallRules: [{12A84600-8B0F-49B6-94F8-06B186B92EBF}] => (Allow) C:\Program Files\AVG\AVG2014\avgdiagex.exe
FirewallRules: [{529120AF-9336-408C-BE55-42BD8F4AFF92}] => (Allow) C:\Program Files\AVG\AVG2014\avgdiagex.exe
FirewallRules: [{BA746298-F833-47B7-BA21-9BF3458AAE55}] => (Allow) C:\Program Files\AVG\AVG2014\avgmfapx.exe
FirewallRules: [{CEEFC261-BB69-4FB4-B276-94452C79A2FD}] => (Allow) C:\Program Files\AVG\AVG2014\avgmfapx.exe
FirewallRules: [{673050FC-E826-45F3-882E-0C503234BAD6}] => (Allow) C:\Program Files\AVG\AVG2014\avgemcx.exe
FirewallRules: [{8FF297F0-450E-4F83-BD00-4DE2223E5B67}] => (Allow) C:\Program Files\AVG\AVG2014\avgemcx.exe
FirewallRules: [{BB9B88B3-88EB-42B7-89D4-2C7E65268DE4}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{721ED0C9-500F-4378-9BE5-37E088FF417E}] => (Allow) D:\Program files\ActivePresenter\ActivePresenter.exe
FirewallRules: [{5FD560C4-8BAF-4B60-8623-77ED1F2678A5}] => (Allow) D:\Program files\ActivePresenter\ActivePresenter.exe
FirewallRules: [{BFAE8443-ACE0-42EF-82D1-76E86AF547B1}] => (Allow) D:\Program files\ActivePresenter\rlhtmlrenderer.exe
FirewallRules: [{B2F51984-2940-4F68-B475-AA1C226C8F54}] => (Allow) D:\Program files\ActivePresenter\rlhtmlrenderer.exe
FirewallRules: [{EE0DDFAF-F850-47DB-8745-AB0E5B75B679}] => (Allow) D:\Program files\ActivePresenter\rlactivator.exe
FirewallRules: [{65D3B4D3-ABE8-4241-B0BE-C7C3CBDAB2BE}] => (Allow) D:\Program files\ActivePresenter\rlactivator.exe
FirewallRules: [{1839AE50-DB73-44FE-B0AC-9EBE9B5DD432}] => (Allow) D:\Program files\ActivePresenter\rlupdater.exe
FirewallRules: [{220B153F-913B-4641-AEC0-3165326E9D4E}] => (Allow) D:\Program files\ActivePresenter\rlupdater.exe
FirewallRules: [{18827C84-AE13-4310-A75C-5E8BEEB9888F}] => (Allow) D:\Program files\360\Total Security\safemon\QHSafeTray.exe
FirewallRules: [{6821690B-EC1D-40BA-820D-54738D456300}] => (Allow) D:\Program files\360\Total Security\safemon\QHSafeTray.exe
FirewallRules: [{CD821944-FE0C-452D-94DC-DFC5E5D2DA7F}] => (Allow) C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\SSN\ssn.exe
FirewallRules: [{F95EBCE2-6E1C-4169-B731-8F1E541FE079}] => (Allow) C:\Users\SLOBA.SLOBA-PC\AppData\Roaming\SSN\updssn.exe
FirewallRules: [{F646D4DE-5777-4A54-83E8-ED1BAADF36D7}] => (Allow) D:\Program files\360\Total Security\LiveUpdate360.exe
FirewallRules: [{05249585-E1BA-44FC-B30C-AD16827110A1}] => (Allow) D:\Program files\360\Total Security\LiveUpdate360.exe

==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: SentinelFilter
Description: SentinelFilter
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: SentinelFilter
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (05/25/2015 07:39:28 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/25/2015 07:37:28 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: The handle is invalid

Error: (05/25/2015 07:37:28 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: The handle is invalid

Error: (05/25/2015 05:04:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: FRST.exe, version: 24.5.2015.1, time stamp: 0x5561e122
Faulting module name: FRST.exe, version: 24.5.2015.1, time stamp: 0x5561e122
Exception code: 0xc0000005
Fault offset: 0x0001f09e
Faulting process id: 0x878
Faulting application start time: 0xFRST.exe0
Faulting application path: FRST.exe1
Faulting module path: FRST.exe2
Report Id: FRST.exe3

Error: (05/25/2015 04:47:54 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/25/2015 03:27:55 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (05/25/2015 01:39:33 PM) (Source: MsiInstaller) (EventID: 11316) (User: SLOBA-PC)
Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 1316. The specified account already exists.

Error: (05/25/2015 01:37:09 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.


Details:
AddWin32ServiceFiles: Unable to back up image of service Airytec Switch Off - Web Interface since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.

Error: (05/25/2015 01:37:09 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.


Details:
AddWin32ServiceFiles: Unable to back up image of service Airytec Switch Off - Task Scheduler since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.

Error: (05/25/2015 01:37:08 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.


Details:
AddWin32ServiceFiles: Unable to back up image of service Pulse Design Spooler since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.


System errors:
=============
Error: (05/25/2015 07:41:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Adobe Flash Player Update Service service failed to start due to the following error:
%%3

Error: (05/25/2015 07:39:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1058

Error: (05/25/2015 07:39:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1058

Error: (05/25/2015 07:39:32 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1058

Error: (05/25/2015 07:39:32 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1058

Error: (05/25/2015 07:39:29 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1058

Error: (05/25/2015 07:39:29 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1058

Error: (05/25/2015 07:39:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1058

Error: (05/25/2015 07:39:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1058

Error: (05/25/2015 07:39:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1058


Microsoft Office:
=========================
Error: (04/17/2015 08:44:24 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 14216 seconds with 4080 seconds of active time. This session ended with a crash.

Error: (02/05/2013 03:13:56 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2423 seconds with 60 seconds of active time. This session ended with a crash.

Error: (11/06/2012 03:58:31 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1511 seconds with 1500 seconds of active time. This session ended with a crash.


==================== Memory info ===========================

Processor: Genuine Intel(R) CPU T2060 @ 1.60GHz
Percentage of memory in use: 48%
Total physical RAM: 1918.11 MB
Available physical RAM: 990.53 MB
Total Pagefile: 3259.11 MB
Available Pagefile: 1860.85 MB
Total Virtual: 2047.88 MB
Available Virtual: 1905.5 MB

==================== Drives ================================

Drive c: (WINDOWS 7) (Fixed) (Total:58.5 GB) (Free:1.36 GB) NTFS
Drive d: (PODACI) (Fixed) (Total:239.5 GB) (Free:214.98 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 8E66A307)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=58.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=239.5 GB) - (Type=07 NTFS)

==================== End of log ============================
[Link mogu videti samo ulogovani korisnici]

Dopuna: 25 Maj 2015 20:15

[Link mogu videti samo ulogovani korisnici]

Dopuna: 25 Maj 2015 20:21

Fotografija mog DESKTOPA
Naime, kada sam pokrenuo anti/virus on je pobrisao shortcut od pretrazivaca, pa sam ja pronasao Opera.exe u direktorijumu. Mozda je i to problem....

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Zašto nisi deinstalirao AVG prije nego što si instalirao 360?


Arrow Korak 1

Idi u Start -> Control Panel -> Programs and Features i deinstaliraj AVG 2014.



Arrow Korak 2

Idi u Start -> Control Panel -> Programs and Features i deinstaliraj sljedeće programe:

Advanced SystemCare 8
ccoinsave
cillickit
copuNk
Film Stack
IObit Malware Fighter
IObit Uninstaller
Surfing Protection



Arrow Korak 3

Ponovo pokreni FRST, označi Addition.tx, klikni na Scan, sačekaj da završi i postavi mi nove izvještaje.

offline
  • Pridružio: 29 Avg 2014
  • Poruke: 30

Napisano: 25 Maj 2015 21:29

Momenat
1.Evo Drake pogledajte fotografije
ccoinsave
cillickit
copuNk
Film Stack
AVG 2014
Ti programi nisu pronadjeni u deinstaleru
2. Ovi su pronadjeni i eliminisani
Advanced SystemCare 8
IObit Malware Fighter
IObit Uninstaller
Surfing Protection








Dopuna: 25 Maj 2015 21:31

Locirao sam AVG pardiniram, ali ove ostale nisam pronasao....

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Onda nastavi sa onima koje možeš da deinstaliraš.

offline
  • Pridružio: 29 Avg 2014
  • Poruke: 30

Evo nepto duže treba da se Avg deinstalira, čim završim pokrećem skeniranje... Da li sam dobro razumeo...

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

DA. Prvo deinstaliraj AVG, restartuj računar i postavi mi nove FRST izvještaje.

offline
  • Pridružio: 29 Avg 2014
  • Poruke: 30

Napisano: 25 Maj 2015 21:52

Intenet veza mi je nakratko pukla dok sam deinstalirao AVG, i dobio sam ovu poruku. Da pokusam ponovo, jer mi je internet u medjuvremenu proradio?



Dopuna: 25 Maj 2015 21:54

Evo sta mi kaze kada zelim opet da ga deinstaliram

Dopuna: 25 Maj 2015 21:55



Dopuna: 25 Maj 2015 21:57

Evo, uspeo sam da ga pokrenem pa cu videti sta ce biti

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building


Restartuj sistem.
Preuzmi AVG 2014 remover sa sljedećeg linka:
[Link mogu videti samo ulogovani korisnici]
Pokreni preuzeti fajl.
Klikni na Yes.
Sačekaj da završi.
Restartuj sistem kada ti to program zatraži.

Ko je trenutno na forumu
 

Ukupno su 4671 korisnika na forumu :: 47 registrovanih, 5 sakrivenih i 4619 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 20624 - dana 04 Apr 2026 04:18

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: _Rade, aleph_one, Arhiv, Avalon015, brandža84, bunker, crnirocko, darionis, Dimitrise93, Draganeli, FileFinder, goran.vvv, gost321, goxin, JimmyNapoli, KizJ, Koser, Kvaka22, kybonacci, ljuba.b, LjubisaR, ljubo70, MIKULENCE, milenko crazy north, milos.cbr, Milos1987, Milos82, mm1811, mnn2, Nikolajevic, OgnjenMitric, Oklopnjak, perko91, pfc74, PMsnow, septembar, Sinisa76, Srki98, umpah-pah, user24, v82, VBoss, XBMC, zeka013, Zoran1959, zoran77, |_MeD_|