Problem sa programom

1

Problem sa programom

offline
  • Bojan Panic
  • Pridružio: 14 Sep 2014
  • Poruke: 76
  • Gde živiš: Vojvodina, Odzaci

Skoro mi se pojavio program na kineskom i ne znam kako da ga uklonim.(Ne znam koja je vrsta probrama ali lici na antivirus)




A u task manageru sam nasao par procesa koji sadrze kineska slova.






mycity.rs/must-login.png

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:12-08-2015
Ran by Bojan (administrator) on PANIC-PC (13-08-2015 15:11:25)
Running from C:\Users\Bojan\Desktop
Loaded Profiles: Bojan (Available Profiles: Panic & Bojan)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Tencent) C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe
(Beijing Rising Information Technology Co., Ltd.) C:\Program Files (x86)\Rising\RSD\RsMgrSvc.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(Qihu Software Co. Limited) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Beijing Rising Information Technology Co., Ltd.) C:\Program Files (x86)\Rising\RAV\ravmond.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(BitTorrent Inc.) C:\Users\Bojan\AppData\Roaming\uTorrent\uTorrent.exe
() C:\Program Files\ACD Systems\ACDSee Ultimate\8.0\ACDSeeCommanderUltimate8.exe
() C:\Program Files (x86)\DFX\DFX.exe
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
(CANON INC.) C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Beijing Rising Information Technology Co., Ltd.) C:\Program Files (x86)\Rising\RSD\popwndexe.exe
(ACD Systems) C:\Program Files\ACD Systems\ACDSee Ultimate\8.0\acdIDInTouch2.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe
(Beijing Rising Information Technology Co., Ltd.) C:\Program Files (x86)\Rising\RAV\rstray.exe
(Tencent) C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTray.exe
() C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe
() C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe
() C:\Program Files (x86)\DFX\Universal\Apps\dfxItunesSong.exe
(Tencent) C:\Program Files (x86)\Common Files\Tencent\QQDownload\130\Tencentdl.exe
(Beijing Rising Information Technology Co., Ltd.) C:\Program Files (x86)\Rising\RAV\rstray64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Qihu 360 Software Co., Ltd.) C:\Program Files (x86)\360\Total Security\safemon\chrome\360webshield.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-09] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642656 2013-03-07] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [NBAgent] => C:\Program Files (x86)\Nero\Nero 11\Nero BackItUp\NBAgent.exe [1493288 2011-09-20] (Nero AG)
HKLM-x32\...\Run: [DFX] => C:\Program Files (x86)\DFX\DFX.exe [1131880 2014-08-24] ()
HKLM-x32\...\Run: [VIDCP4EN] => C:\Program Files (x86)\ACD Systems\ACDSee Video Converter Pro 4.1\acdIDInTouch2.exe [1480008 2014-03-05] (ACD Systems)
HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe [1286776 2015-07-31] (QIHU 360 SOFTWARE CO. LIMITED)
HKLM-x32\...\Run: [CanonSolutionMenuEx] => C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1185112 2010-04-02] (CANON INC.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
HKLM-x32\...\Run: [fr] => C:\Program Files (x86)\fr\fr.exe
HKLM-x32\...\Run: [RSDTRAY] => C:\Program Files (x86)\Rising\RSD\popwndexe.exe [126808 2012-09-25] (Beijing Rising Information Technology Co., Ltd.)
HKLM-x32\...\Run: [SohuVA] => "C:\Program Files (x86)\????\SHPlayer.exe" /auto
HKLM-x32\...\Run: [ QQPCTray] => C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTRAY.EXE [355296 2015-08-12] (Tencent)
HKLM-x32\...\Run: [RavTRAY] => C:\Program Files (x86)\Rising\RAV\rstray.exe [111000 2015-08-13] (Beijing Rising Information Technology Co., Ltd.)
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53288576 2015-06-29] (Skype Technologies S.A.)
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\...\Run: [uTorrent] => C:\Users\Bojan\AppData\Roaming\uTorrent\uTorrent.exe [1993056 2015-08-01] (BitTorrent Inc.)
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\...\Run: [ACDSeeCommanderUltimate8] => C:\Program Files\ACD Systems\ACDSee Ultimate\8.0\ACDSeeCommanderUltimate8.exe [2054152 2014-12-16] ()
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMGCShellExt64.dll [2015-08-12] (Tencent)
BootExecute: autocheck autochk * bsmain

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.oursurfing.com/?type=hp&ts=1439381707&z=f2363849cca831fb3924c39g7zec9t2c6b0g5m1ebt&from=amt&uid=WDCXWD10EZRX-00A8LB0_WD-WMC1U499823098230
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hao123.com/?tn=97951667_hao_pg
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.oursurfing.com/?type=hp&ts=1439381707&z=f2363849cca831fb3924c39g7zec9t2c6b0g5m1ebt&from=amt&uid=WDCXWD10EZRX-00A8LB0_WD-WMC1U499823098230
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = google.com
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hao123.com/?tn=97951667_hao_pg
SearchScopes: HKU\S-1-5-21-3916067527-1229850284-1596982685-1002 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.v9.com/web/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3916067527-1229850284-1596982685-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.v9.com/web/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3916067527-1229850284-1596982685-1002 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.v9.com/web/?q={searchTerms}
BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: 电脑管家网页防火墙 -> {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} -> C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSWebMon64.dat [2015-08-12] (Tencent)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon64.dll [2015-07-31] (Qihu 360 Software Co., Ltd.)
BHO-x32: Ó¦Óñ¦Ò»¼ü°²×°²å¼þ -> {50F4150A-48B2-417A-BE4C-C83F580FB904} -> C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll [2014-05-30] (腾讯公司)
BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-08] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon.dll [2015-07-31] (Qihu 360 Software Co., Ltd.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-08] (Oracle Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Hosts: 127.0.0.1 acdid.acdsystems.com
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{3CD31E15-D32F-4D86-91B3-CB18353FACD4}: [DhcpNameServer] 192.168.1.1 0.0.0.0

FireFox:
========
FF ProfilePath: C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\lskyg098.default
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2012-07-31] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-08] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @qq.com/npAndroidAssistant -> C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll [2014-05-30] (腾讯公司)
FF Plugin-x32: @qq.com/QQPCMgr -> C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\npQMExtensionsMozilla.dll [2015-08-12] (Tencent Technology (Shenzhen) Company Limited)
FF Plugin-x32: @rising.com.cn/nprising -> C:\Program Files (x86)\Rising\RAV\nprising.dll [2015-08-13] (Beijing Rising Information Technology Co., Ltd.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-08-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-08-01] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF Plugin HKU\S-1-5-21-3916067527-1229850284-1596982685-1002: @rising.com.cn/nprising -> C:\Program Files (x86)\Rising\RAV\nprising.dll [2015-08-13] (Beijing Rising Information Technology Co., Ltd.)
FF HKLM-x32\...\Firefox\Extensions: [WebProtection@360safe.com] - C:\Program Files (x86)\360\Total Security\safemon\webprotection_firefox
FF Extension: 360 Internet Protection - C:\Program Files (x86)\360\Total Security\safemon\webprotection_firefox [2015-08-01]

Chrome:
=======
CHR Profile: C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-01]
CHR Extension: (Google Docs) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-01]
CHR Extension: (COD MW3 by St0n3 (Smile - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aokpkhkaciinbfdgmaelijhngickobgo [2015-08-01]
CHR Extension: (Google Drive) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-01]
CHR Extension: (Video AdBlock for Chrome) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bknbnapaddjdnbilpmlacdkjdkjmbjhd [2015-08-01]
CHR Extension: (YouTube) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-01]
CHR Extension: (Adblock Plus) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-08-01]
CHR Extension: (Google Search) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-01]
CHR Extension: (Google Sheets) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-01]
CHR Extension: (360 Internet Protection) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2015-08-01]
CHR Extension: (No Name) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdacmkapnkjmbddfcajlehdieeckelbm [2015-08-02]
CHR Extension: (Little Alchemy) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2015-08-01]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-01]
CHR Extension: (https://www.google.rs/?gws_rd=ssl) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\njbedanhdfchdhhhdjaphkhdanpffipa [2015-08-01]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-01]
CHR Extension: (Gmail) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-01]
CHR HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ooebklgpfnbcnpokahmdidgbmlcdepkm] - clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-03-07] (Advanced Micro Devices, Inc.) [File not signed]
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2007048 2015-08-13] (Electronic Arts)
R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [858744 2015-07-31] (QIHU 360 SOFTWARE CO. LIMITED)
R2 QQPCRTP; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRtp.exe [297608 2015-08-12] (Tencent)
R2 RsMgrSvc; C:\Program Files (x86)\Rising\RSD\RsMgrSvc.exe [196288 2015-08-12] (Beijing Rising Information Technology Co., Ltd.)
R2 RsRavMon; C:\Program Files (x86)\Rising\RAV\ravmond.exe [277552 2014-05-15] (Beijing Rising Information Technology Co., Ltd.)
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [1069248 2014-02-06] () [File not signed]
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 TAOFrame; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TAOFrame.exe [293856 2015-08-12] (Tencent)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [137296 2015-07-31] (360.cn)
R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [77904 2015-07-31] (360.cn)
R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [319568 2015-07-31] (360.cn)
R3 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [40520 2015-07-31] (360.cn)
R1 360FsFlt; C:\Windows\System32\DRIVERS\360FsFlt.sys [363088 2015-07-31] (360.cn)
R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV64.sys [178768 2015-07-31] (360.cn)
R3 DFX11_1; C:\Windows\System32\drivers\dfx11_1x64.sys [28008 2012-12-13] (Windows (R) Win 7 DDK provider)
R1 HyperVM; C:\Windows\system32\drivers\hvm.sys [41784 2015-08-13] (Beijing Rising Information Technology Co., Ltd.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\55FB0724.sys [129752 2015-08-13] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-11-21] (Malwarebytes Corporation)
R1 QMUdisk; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUdisk64.sys [62264 2015-08-12] (Tencent)
R2 QQSysMonX64; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQSysMonX64.sys [129336 2015-08-12] (电脑管家)
R1 rsutils; C:\Windows\System32\DRIVERS\rsutils.sys [71760 2015-08-13] (Beijing Rising Information Technology Co., Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2015-08-01] (Duplex Secure Ltd.)
R0 sysmon; C:\Windows\System32\DRIVERS\sysmon.sys [119256 2015-08-13] (Beijing Rising Information Technology Co., Ltd.)
R2 TAOAccelerator; C:\Windows\system32\Drivers\TAOAccelerator64.sys [99640 2015-08-12] (Tencent)
R2 TAOKernelDriver; C:\Windows\system32\Drivers\TAOKernel64.sys [174392 2015-08-12] (Tencent Technology(Shenzhen) Company Limited)
R3 TFsFlt; C:\Windows\System32\Drivers\TFsFltX64.sys [87864 2015-08-12] (电脑管家)
R3 TS888x64; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TS888x64.sys [28984 2015-08-13] (Tencent)
R1 TSCPM; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\tscpm64.sys [42296 2015-08-12] (电脑管家)
R1 TSDefenseBt; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TsDefenseBT64.sys [28472 2015-08-12] (Tencent)
R3 TSSKX64; C:\Windows\System32\drivers\tsskx64.sys [38200 2015-08-12] (电脑管家)
R1 TSSysKit; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSSysKit64.sys [87352 2015-08-12] (电脑管家)
U3 aptpsglr; C:\Windows\System32\Drivers\aptpsglr.sys [0 ] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-13 15:11 - 2015-08-13 15:12 - 00023342 _____ C:\Users\Bojan\Desktop\FRST.txt
2015-08-13 15:10 - 2015-08-13 15:11 - 00000000 ____D C:\FRST
2015-08-13 15:09 - 2015-08-13 15:09 - 02173952 _____ (Farbar) C:\Users\Bojan\Downloads\FRST64.exe
2015-08-13 15:09 - 2015-08-13 15:09 - 02173952 _____ (Farbar) C:\Users\Bojan\Desktop\FRST64.exe
2015-08-13 13:59 - 2015-08-13 13:59 - 00000000 ____D C:\Program Files (x86)\Origin Games
2015-08-13 13:57 - 2015-08-13 13:59 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Origin
2015-08-13 13:57 - 2015-08-13 13:59 - 00000000 ____D C:\Users\Panic\AppData\Local\Origin
2015-08-13 13:53 - 2015-08-13 13:56 - 99426288 _____ (Electronic Arts, Inc.) C:\Users\Panic\Downloads\OriginSetup.exe
2015-08-13 13:50 - 2015-08-13 13:56 - 00000000 ____D C:\Program Files (x86)\Origin
2015-08-13 13:50 - 2015-08-13 13:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2015-08-13 13:50 - 2015-08-13 13:50 - 00000000 ____D C:\ProgramData\Electronic Arts
2015-08-13 13:48 - 2015-08-13 13:50 - 17116168 _____ (Electronic Arts, Inc.) C:\Users\Panic\Downloads\OriginThinSetup.exe
2015-08-13 13:37 - 2015-08-13 13:37 - 00030603 _____ C:\Users\Panic\Downloads\F3BD768C6116F0787D7A079434D0EDBC2E8EB592.torrent
2015-08-13 12:37 - 2015-08-13 12:37 - 00000000 ____D C:\Users\Panic\Documents\Euro Truck Simulator 2
2015-08-13 11:46 - 2015-08-13 11:46 - 00060738 _____ C:\Users\Panic\Downloads\[kat.cr]adobe.flash.professional.cs6.(zabranjeno).torrent
2015-08-13 11:35 - 2015-08-13 11:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件
2015-08-13 11:25 - 2015-08-13 11:25 - 00000134 _____ C:\Windows\SysWOW64\BsMain.ini
2015-08-13 11:25 - 2015-08-13 11:25 - 00000000 ___RD C:\RavBin
2015-08-13 11:25 - 2015-08-13 11:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rising Antivirus
2015-08-13 11:25 - 2015-08-13 11:23 - 00091928 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\SysWOW64\vpatch.dll
2015-08-13 11:25 - 2015-08-13 11:09 - 00325400 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\system32\ravext64.dll
2015-08-13 11:25 - 2015-08-13 11:09 - 00256280 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\SysWOW64\ravext.dll
2015-08-13 11:25 - 2015-08-13 11:07 - 00041784 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\system32\Drivers\hvm.sys
2015-08-13 11:25 - 2015-08-13 11:06 - 00240472 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\SysWOW64\bsmain.exe
2015-08-13 11:10 - 2015-08-13 11:21 - 00000000 ____D C:\Users\Panic\Desktop\ggggggggg
2015-08-12 14:57 - 2015-08-13 10:58 - 00000000 ____D C:\QMDownload
2015-08-12 14:47 - 2015-08-13 14:11 - 00028984 _____ (Tencent) C:\Windows\SysWOW64\Drivers\TS888x64.sys
2015-08-12 14:47 - 2015-08-12 15:10 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Tencent
2015-08-12 14:35 - 2015-08-13 10:56 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Tencent
2015-08-12 14:35 - 2015-08-12 14:49 - 00000000 ____D C:\ProgramData\Tencent
2015-08-12 14:35 - 2015-08-12 14:35 - 00174392 _____ (Tencent Technology(Shenzhen) Company Limited) C:\Windows\system32\Drivers\TAOKernel64.sys
2015-08-12 14:35 - 2015-08-12 14:35 - 00099640 _____ (Tencent) C:\Windows\system32\Drivers\TAOAccelerator64.sys
2015-08-12 14:35 - 2015-08-12 14:35 - 00087864 _____ (电脑管家) C:\Windows\system32\Drivers\TFsFltX64.sys
2015-08-12 14:35 - 2015-08-12 14:35 - 00038200 _____ (电脑管家) C:\Windows\system32\Drivers\TSSKX64.sys
2015-08-12 14:35 - 2015-08-12 14:35 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
2015-08-12 14:35 - 2015-08-12 14:35 - 00000000 ____D C:\ProgramData\TXQMPC
2015-08-12 14:35 - 2015-08-12 14:35 - 00000000 ____D C:\Program Files\Common Files\Tencent
2015-08-12 14:35 - 2015-08-12 14:35 - 00000000 ____D C:\Program Files (x86)\Tencent
2015-08-12 14:15 - 2015-08-12 14:15 - 00000000 ____D C:\Users\Panic\AppData\Roaming\360safe
2015-08-12 14:14 - 2015-08-12 14:14 - 00003820 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1439381649
2015-08-12 14:14 - 2015-08-12 14:14 - 00001139 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-08-12 14:14 - 2015-08-12 14:14 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Opera Software
2015-08-12 14:14 - 2015-08-12 14:14 - 00000000 ____D C:\Users\Panic\AppData\Local\Opera Software
2015-08-12 14:13 - 2015-08-12 14:14 - 00552951 _____ C:\Users\Panic\Downloads\Adobe Flash Professional Cs6 Serial number (zabranjeno) Download Full__13150_i1579057194_il52452.exe.zip
2015-08-12 14:13 - 2015-08-12 14:13 - 00552951 _____ C:\Users\Panic\Downloads\Adobe Flash Professional Cs6 Serial number (zabranjeno) Download Full__13150_i1579057052_il52452.exe.zip
2015-08-12 14:13 - 2015-08-12 14:13 - 00552951 _____ C:\Users\Panic\Downloads\Adobe Flash Professional Cs6 Serial number (zabranjeno) Download Full__13150_i1579056913_il52452.exe.zip
2015-08-12 14:12 - 2015-08-12 14:12 - 00552895 _____ C:\Users\Panic\Downloads\Adobe flash professional CS6 (zabranjeno) Serial number__13150_i1579056358_il26088.exe.zip
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ___HD C:\sohucache
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ____D C:\Users\Panic\Documents\搜狐影音
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ____D C:\Users\Panic\Documents\ËѺüÓ°Òô
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ____D C:\Users\Panic\AppData\Local\Temp尰
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ____D C:\SHDownload
2015-08-12 14:11 - 2015-08-13 11:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rising Software Deployment System
2015-08-12 14:11 - 2015-08-13 11:03 - 00119256 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\system32\Drivers\sysmon.sys
2015-08-12 14:11 - 2015-08-13 11:03 - 00071760 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\system32\Drivers\rsutils.sys
2015-08-12 14:11 - 2015-08-12 14:11 - 00000150 __RSH C:\rising.ini
2015-08-12 14:11 - 2015-08-12 14:11 - 00000000 ____D C:\ProgramData\Rising
2015-08-12 14:11 - 2015-08-12 14:11 - 00000000 ____D C:\Program Files (x86)\Rising
2015-08-12 14:11 - 2012-02-29 09:49 - 00011888 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\system32\Drivers\rsndisp.sys
2015-08-12 14:10 - 2015-08-13 10:33 - 00000000 ____D C:\Program Files (x86)\fr
2015-08-12 14:09 - 2015-08-12 14:09 - 00552931 _____ C:\Users\Panic\Downloads\Adobe flash professional CS6 (zabranjeno) Serial number download__13150_i1579054862_il10186.exe.zip
2015-08-12 12:44 - 2015-08-12 12:44 - 00000000 ____D C:\Users\Panic\Desktop\ijhp
2015-08-11 20:05 - 2015-08-11 20:30 - 00000000 ____D C:\Users\Bojan\Documents\Euro Truck Simulator 2
2015-08-11 20:05 - 2015-08-11 20:05 - 00001513 _____ C:\Users\Bojan\Desktop\Euro Truck Simulator 2 (x64).lnk
2015-08-11 20:05 - 2015-08-11 20:05 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Euro Truck Simulator 2
2015-08-11 20:05 - 2015-08-11 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2015-08-11 19:38 - 2015-08-11 19:38 - 00000000 ____D C:\Program Files (x86)\R.G. Mechanics
2015-08-11 19:31 - 2015-08-11 19:31 - 00000000 ____D C:\ProgramData\2DBoy
2015-08-11 19:30 - 2015-08-11 19:30 - 00001921 _____ C:\Users\Public\Desktop\World of Goo.lnk
2015-08-11 19:30 - 2015-08-11 19:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldOfGoo
2015-08-11 19:30 - 2015-08-11 19:30 - 00000000 ____D C:\Program Files (x86)\WorldOfGoo
2015-08-11 19:25 - 2015-08-11 19:24 - 14406509 _____ C:\Users\Bojan\Desktop\Level 100.rar
2015-08-11 19:16 - 2015-08-11 19:16 - 00003584 _____ C:\Users\Bojan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-11 19:11 - 2015-08-11 19:24 - 14406509 _____ C:\Users\Bojan\Downloads\Level 100.rar
2015-08-11 19:09 - 2015-08-11 19:09 - 00017148 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]euro.truck.simulator.2.v.1.19.2.1s.27.dlc.repack.by.r.g.Мechanics.torrent
2015-08-11 16:33 - 2015-08-11 16:33 - 00016240 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]bullet.for.my.valentine.venom.2015.320ak.torrent
2015-08-11 14:08 - 2015-08-11 14:09 - 00000000 ____D C:\Users\Panic\Desktop\G
2015-08-11 10:46 - 2015-08-11 14:01 - 00006144 _____ C:\Users\Panic\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-11 10:39 - 2015-08-11 10:39 - 50602780 _____ C:\Users\Panic\Desktop\Title 01_1.avi
2015-08-11 09:52 - 2015-08-11 09:54 - 68336662 _____ C:\Users\Panic\Downloads\WidescreenAssets.libzip
2015-08-10 16:26 - 2015-08-10 14:09 - 78581208 _____ C:\Users\Panic\Desktop\FILE0734.MOV
2015-08-10 15:51 - 2015-08-10 15:51 - 15060669 _____ C:\Users\Panic\Desktop\Theme_-_Playing_with_Fire.libzip
2015-08-10 15:50 - 2015-08-10 15:51 - 15060669 _____ C:\Users\Panic\Downloads\Theme_-_Playing_with_Fire.libzip
2015-08-10 15:47 - 2015-08-10 16:30 - 00000000 ____D C:\Users\Panic\Documents\ACDSee Video Converter Pro 4.1
2015-08-10 15:44 - 2015-08-10 15:44 - 00001168 _____ C:\Users\Public\Desktop\Camtasia Studio 8.lnk
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\ProgramData\TechSmith
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\ProgramData\regid.1995-08.com.techsmith
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\Program Files (x86)\TechSmith
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\Program Files (x86)\QuickTime
2015-08-10 15:43 - 2015-08-10 15:43 - 00000000 ____D C:\Windows\system32\appmgmt
2015-08-10 15:04 - 2015-08-10 15:04 - 01345555 _____ C:\Users\Panic\Documents\INTRO.mp4
2015-08-10 15:04 - 2015-08-10 15:04 - 00000000 ____D C:\Users\Panic\Desktop\Camtasia Studio FULL 8.1.2 + Serials [ThumperDC]
2015-08-10 15:04 - 2013-04-13 01:00 - 00002324 _____ C:\Users\Panic\Desktop\wWw.ThumperDC.COM.txt
2015-08-10 15:03 - 2015-08-10 15:03 - 00000000 ____D C:\ProgramData\YTD Video Downloader
2015-08-10 14:59 - 2015-08-10 15:22 - 00000000 ____D C:\Users\Panic\Desktop\lllllllllllllllll
2015-08-10 14:56 - 2015-08-10 14:56 - 00020079 _____ C:\Users\Panic\Downloads\E8AC9B2DB72667AE716E5D0938241CDDC6D22B2A.torrent
2015-08-09 16:10 - 2015-08-09 16:10 - 00001908 _____ C:\Windows\diagwrn.xml
2015-08-09 16:10 - 2015-08-09 16:10 - 00001908 _____ C:\Windows\diagerr.xml
2015-08-09 08:27 - 2015-08-09 08:27 - 00028218 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]microsoft.windows.10.6in1.aio.english.full.updated.8.5.15.preactivated.2015.by.whitedeath.torrent
2015-08-08 16:11 - 2015-08-08 16:11 - 05760677 _____ C:\Users\Bojan\Downloads\Sky-Cubes-Survival-Map.zip
2015-08-08 15:40 - 2015-08-08 15:40 - 02727286 _____ C:\Users\Bojan\Downloads\Megacube.zip
2015-08-08 15:13 - 2015-08-08 15:13 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\java
2015-08-08 15:11 - 2015-08-08 15:11 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-08-08 15:11 - 2015-08-08 15:11 - 00000000 ____D C:\ProgramData\Sun
2015-08-08 15:11 - 2015-08-08 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-08-08 15:10 - 2015-08-08 15:10 - 00000000 ____D C:\ProgramData\Oracle
2015-08-08 15:10 - 2015-08-08 15:10 - 00000000 ____D C:\Program Files (x86)\Java
2015-08-08 15:09 - 2015-08-08 15:09 - 00563296 _____ (Oracle Corporation) C:\Users\Bojan\Downloads\chromeinstall-8u51 (1).exe
2015-08-08 15:08 - 2015-08-08 15:08 - 00563296 _____ (Oracle Corporation) C:\Users\Bojan\Downloads\chromeinstall-8u51.exe
2015-08-08 15:08 - 2015-08-08 15:08 - 00001713 _____ C:\Users\Bojan\Desktop\Minecraft Launcher - Shortcut.lnk
2015-08-08 15:06 - 2015-08-08 15:14 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\.minecraft
2015-08-08 15:06 - 2015-08-08 15:06 - 00000000 ____D C:\Users\Bojan\Desktop\New folder
2015-08-08 13:09 - 2015-08-08 13:09 - 00000000 ____D C:\Users\Panic\Documents\My Spore Creations
2015-08-08 13:09 - 2015-08-08 13:09 - 00000000 ____D C:\Users\Panic\AppData\Roaming\SPORE
2015-08-08 13:00 - 2015-08-08 13:00 - 00000000 ____D C:\ProgramData\CanonIJ
2015-08-08 12:59 - 2015-08-08 12:59 - 00000000 ___HD C:\ProgramData\CanonIJScan
2015-08-08 12:59 - 2015-08-08 12:59 - 00000000 _____ C:\Users\Panic\Sti_Trace.log
2015-08-08 12:58 - 2015-08-08 12:59 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Canon
2015-08-08 12:55 - 2015-08-08 12:55 - 00000000 ____D C:\Program Files (x86)\Spore
2015-08-08 12:47 - 2015-08-08 13:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spore
2015-08-08 11:20 - 2015-08-12 12:38 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-08-08 11:12 - 2015-08-08 11:12 - 00015904 _____ C:\Users\Panic\Downloads\78CFD6990A17E78858605A65F1EF5433B7B30CBC.torrent
2015-08-07 14:43 - 2015-08-07 14:43 - 00165488 _____ C:\Users\Bojan\Downloads\0A35C3B00A315B9ED41473B036B8CE82F8EA2F34.torrent
2015-08-07 14:25 - 2015-08-07 14:25 - 00014505 _____ C:\Users\Bojan\Downloads\[kat.cr]ellusionist.wayne.houchin.stigmata.torrent
2015-08-07 14:19 - 2015-08-07 14:19 - 00013611 _____ C:\Users\Bojan\Downloads\[www.seedpeer.eu] Magic Tricks Stigmata By Wayne Houchin Mp4.SEEDPEER.torrent
2015-08-07 13:13 - 2015-08-07 13:38 - 00000000 ____D C:\Users\Panic\Desktop\Five Nights At Freddy's PART 4 zamalo da predjem
2015-08-07 10:55 - 2015-08-13 14:10 - 00000000 ____D C:\ProgramData\Origin
2015-08-07 10:49 - 2015-08-07 11:21 - 00000000 ____D C:\Users\Panic\Desktop\rr
2015-08-06 20:08 - 2015-08-06 20:08 - 00000000 ___HD C:\Users\Panic\Desktop\[Originals]
2015-08-06 20:00 - 2015-08-10 15:47 - 00000000 ____D C:\Users\Panic\AppData\Roaming\ACD Systems
2015-08-06 18:23 - 2013-01-13 23:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:22 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-08-06 18:23 - 2013-01-13 22:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-08-06 18:23 - 2013-01-13 22:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-08-06 18:23 - 2013-01-13 22:08 - 01504768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-08-06 18:23 - 2013-01-13 22:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-08-06 18:23 - 2013-01-13 21:59 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-08-06 18:23 - 2013-01-13 21:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-08-06 18:23 - 2013-01-13 21:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-08-06 18:23 - 2013-01-13 21:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-08-06 18:23 - 2013-01-13 21:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-08-06 18:23 - 2013-01-13 21:51 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-08-06 18:23 - 2013-01-13 21:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-08-06 18:23 - 2013-01-13 21:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-08-06 18:23 - 2013-01-13 21:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-08-06 18:23 - 2013-01-13 21:43 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-08-06 18:23 - 2013-01-13 21:38 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-08-06 18:23 - 2013-01-13 21:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-08-06 18:23 - 2013-01-13 21:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-08-06 18:23 - 2013-01-13 21:37 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-08-06 18:23 - 2013-01-13 21:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-08-06 18:23 - 2013-01-13 21:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-08-06 18:23 - 2013-01-13 21:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-08-06 18:23 - 2013-01-13 21:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-08-06 18:23 - 2013-01-13 21:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-08-06 18:23 - 2013-01-13 21:15 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-08-06 18:23 - 2013-01-13 21:10 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-08-06 18:23 - 2013-01-13 21:02 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-08-06 18:23 - 2013-01-13 20:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-08-06 18:23 - 2013-01-13 20:32 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-08-06 18:23 - 2013-01-13 20:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-08-06 18:23 - 2013-01-13 19:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-08-06 18:23 - 2013-01-13 19:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-08-06 18:23 - 2013-01-04 08:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-08-06 18:23 - 2013-01-04 08:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-08-06 18:22 - 2015-08-06 18:22 - 11840839 _____ C:\Users\Bojan\Downloads\Windows6.1-KB2670838-x64.msu
2015-08-06 18:22 - 2015-08-06 18:22 - 05911327 _____ C:\Users\Bojan\Downloads\Windows6.1-KB2670838-x86.msu
2015-08-06 18:11 - 2015-08-06 18:11 - 01118920 _____ (Microsoft Corporation) C:\Users\Bojan\Downloads\NDP452-KB2901954-Web.exe
2015-08-06 18:10 - 2015-08-06 18:10 - 00000000 ____D C:\Users\Bojan\AppData\Local\CrashDumps
2015-08-06 17:22 - 2015-08-06 17:22 - 00927799 _____ C:\Users\Bojan\Downloads\d3dcompiler_43.zip
2015-08-06 17:21 - 2015-08-06 17:21 - 00042664 _____ C:\Users\Bojan\Downloads\xinput1_3.zip
2015-08-06 15:37 - 2015-08-06 15:38 - 00600302 _____ C:\Users\Bojan\Downloads\Awesome Piston House!(2).zip
2015-08-06 13:51 - 2015-08-06 13:51 - 00022084 _____ C:\Users\Bojan\Downloads\[www.seedpeer.eu] Wayne Houchin.SEEDPEER.torrent
2015-08-06 13:33 - 2015-08-06 13:33 - 00022309 _____ C:\Users\Bojan\Downloads\90889E193F5117EF01A19541BA182D83247941BA.torrent
2015-08-06 13:27 - 2015-08-06 14:26 - 00000000 ____D C:\KVRT_Data
2015-08-06 13:25 - 2015-08-06 13:25 - 03617312 _____ (Facebook Inc.) C:\Users\Bojan\Downloads\Kaspersky_T838776512885641T_.exe
2015-08-06 13:13 - 2015-08-12 12:11 - 00000204 _____ C:\Users\Panic\Desktop\pvz garden warframe.txt
2015-08-06 13:12 - 2015-08-06 13:13 - 00014737 _____ C:\Users\Panic\Downloads\Plants.vs..Zombies.Garden.Warfare.(x64).torrent
2015-08-06 13:12 - 2015-08-06 13:12 - 01993056 _____ (BitTorrent Inc.) C:\Users\Panic\Downloads\uTorrent (2).exe
2015-08-06 13:11 - 2015-08-06 13:11 - 01993056 _____ (BitTorrent Inc.) C:\Users\Panic\Downloads\uTorrent.exe
2015-08-06 13:11 - 2015-08-06 13:11 - 01993056 _____ (BitTorrent Inc.) C:\Users\Panic\Downloads\uTorrent (1).exe
2015-08-06 13:09 - 2015-08-06 13:09 - 00570019 _____ C:\Users\Panic\Downloads\Plants Vs Zombies Garden Warfa Downloader__3687_i1574453241_il640359.exe.zip
2015-08-06 13:08 - 2015-08-06 13:08 - 00245488 _____ C:\Users\Panic\Downloads\Plants vs. Zombies Garden Warfare Full Version (1).zip
2015-08-06 12:59 - 2015-08-06 13:00 - 00581351 _____ C:\Users\Panic\Downloads\Plants Vs Zombies Garden Warfa Downloader__3687_i1574447093_il638893.exe.zip
2015-08-06 12:56 - 2015-08-06 12:56 - 00246635 _____ C:\Users\Panic\Downloads\Plants vs. Zombies Garden Warfare Full Version.zip
2015-08-06 11:57 - 2015-08-06 12:35 - 00000000 ____D C:\Users\Panic\Desktop\fff
2015-08-06 11:27 - 2015-08-06 11:27 - 82955830 _____ C:\Users\Panic\Desktop\Broforce.zip
2015-08-06 11:27 - 2015-08-06 11:27 - 00000000 ____D C:\Users\Panic\Desktop\Broforce
2015-08-06 11:25 - 2015-08-06 11:27 - 82955830 _____ C:\Users\Panic\Downloads\Broforce.zip
2015-08-06 11:17 - 2015-08-06 11:18 - 00000000 ____D C:\Users\Panic\Desktop\za kraj klipa
2015-08-05 20:55 - 2015-08-05 21:00 - 00000000 ____D C:\Users\Panic\Desktop\How To Download Five Nights At Freddy's 4 (kako skinuti five nights at freddy's 4)
2015-08-05 19:23 - 2015-08-05 19:23 - 00001293 _____ C:\Users\Public\Desktop\YTD Video Downloader.lnk
2015-08-05 19:23 - 2015-08-05 19:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader
2015-08-05 19:23 - 2015-08-05 19:23 - 00000000 ____D C:\Program Files (x86)\GreenTree Applications
2015-08-05 18:13 - 2015-08-05 18:13 - 00019599 _____ C:\Users\Bojan\Downloads\[kat.cr]t11.wayne.houchin.control.torrent
2015-08-05 17:37 - 2015-08-05 17:37 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2015-08-05 15:01 - 2015-08-05 15:12 - 00000000 ____D C:\Users\Panic\Desktop\fghjklop
2015-08-05 13:37 - 2015-08-05 13:46 - 00000000 ____D C:\Fraps
2015-08-05 13:37 - 2015-08-05 13:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2015-08-05 13:35 - 2015-08-05 13:35 - 00003772 _____ C:\Users\Panic\Downloads\41006003DAB4357F89A727E69DE82C96523F7C8C.torrent
2015-08-05 09:27 - 2015-08-05 09:27 - 00001790 _____ C:\Users\Panic\Desktop\Adobe Premiere Pro - Shortcut.lnk
2015-08-05 09:25 - 2015-08-05 09:25 - 00003502 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Panic-PC-Panic
2015-08-05 09:24 - 2015-08-05 09:24 - 00000000 ____D C:\Users\Panic\Documents\Adobe
2015-08-05 09:21 - 2015-08-05 09:21 - 00001106 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2015.lnk
2015-08-05 09:21 - 2015-08-05 09:21 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2015-08-05 09:20 - 2015-08-05 09:20 - 00000000 ____D C:\Program Files\Adobe
2015-08-05 09:19 - 2015-08-05 09:21 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-08-05 09:18 - 2015-08-05 09:19 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-04 18:22 - 2015-08-04 18:22 - 00001559 _____ C:\Users\Public\Desktop\Moorhuhn Kart 2 XXL spielen.lnk
2015-08-04 18:22 - 2015-08-04 18:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Moorhuhn Kart 2 XXL
2015-08-04 18:22 - 2015-08-04 18:22 - 00000000 ____D C:\Phenomedia AG
2015-08-04 17:57 - 2015-08-04 17:57 - 00012433 _____ C:\Users\Panic\Downloads\5DF04F536CF50D105FB82F8CE19484022E0FC1A9.torrent
2015-08-04 15:05 - 2015-08-04 15:05 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\AVG
2015-08-04 14:54 - 2015-08-04 14:54 - 00000000 ____D C:\Users\Bojan\AppData\Local\Avg
2015-08-04 14:54 - 2015-08-04 14:54 - 00000000 ____D C:\Users\Bojan\AppData\Local\Adobe
2015-08-04 14:51 - 2015-08-05 09:17 - 00001534 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2015-08-04 14:49 - 2015-08-13 10:42 - 00000000 ____D C:\Users\Panic\AppData\Local\Adobe
2015-08-04 14:49 - 2015-08-06 09:23 - 00000000 ____D C:\ProgramData\Adobe
2015-08-04 13:51 - 2015-08-04 14:01 - 00000000 ____D C:\Users\Panic\Desktop\Untitled
2015-08-04 13:43 - 2015-08-04 13:43 - 00000000 ____D C:\Users\Panic\AppData\Local\CrashDumps
2015-08-04 11:29 - 2015-08-04 11:29 - 00011054 _____ C:\Users\Panic\Downloads\6E88B3F25BA49D483D740A652BF013C341BC5373.torrent
2015-08-04 11:22 - 2015-08-04 11:22 - 00058265 _____ C:\Users\Panic\Downloads\6DB2C5CA436AA05CC1DF239CCEC6D4E17F15A4B7.torrent
2015-08-04 10:19 - 2015-08-04 10:47 - 00000000 ____D C:\Users\Panic\Desktop\rrrrrrrrr
2015-08-03 20:55 - 2015-08-07 13:10 - 00018987 _____ C:\Users\Panic\Desktop\fnaf.camproj
2015-08-03 20:10 - 2015-08-03 20:11 - 00000000 ____D C:\Users\Panic\Desktop\intro
2015-08-03 15:56 - 2015-08-03 15:57 - 00000000 ____D C:\Users\Panic\AppData\Roaming\BSplayer PRO
2015-08-03 15:54 - 2015-08-02 18:17 - 79596300 _____ C:\Users\Panic\Desktop\FILE0724.MOV
2015-08-03 15:53 - 2015-08-03 15:53 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2015-08-03 15:42 - 2015-08-12 11:34 - 00000000 ____D C:\Users\Panic\Documents\Camtasia Studio
2015-08-03 15:42 - 2015-08-03 15:42 - 00000000 ____D C:\Users\Panic\AppData\Roaming\TechSmith
2015-08-03 15:42 - 2015-08-03 15:42 - 00000000 ____D C:\Users\Panic\AppData\Local\TechSmith
2015-08-03 15:38 - 2015-08-03 20:41 - 00000000 ____D C:\Users\Panic\Desktop\TechSmith Camtasia Studio 8.4.4 Incl. Serials [TechTools.Net]
2015-08-03 15:38 - 2014-11-23 16:41 - 00000189 _____ C:\Users\Panic\Desktop\Serials.txt
2015-08-03 15:38 - 2014-11-13 16:16 - 00000037 _____ C:\Users\Panic\Desktop\File download from TechTools.NET.txt
2015-08-03 15:32 - 2015-08-03 15:32 - 00020760 _____ C:\Users\Panic\Downloads\97C4B0B22EA0B2C6F5D6D87FA8F44B6647CD692E (1).torrent
2015-08-03 15:31 - 2015-08-03 15:31 - 00020760 _____ C:\Users\Panic\Downloads\97C4B0B22EA0B2C6F5D6D87FA8F44B6647CD692E.torrent
2015-08-03 15:28 - 2015-08-03 15:28 - 00000000 ____D C:\Users\Panic\AppData\Roaming\MMFApplications
2015-08-03 15:28 - 2015-08-03 15:28 - 00000000 ____D C:\Users\Panic\AppData\Roaming\360TotalSecurity
2015-08-03 15:27 - 2015-08-03 15:27 - 482401428 _____ C:\Users\Panic\Downloads\IGG-Five.Nights.at.Freddys.4.v1.022 (1).rar
2015-08-03 15:27 - 2015-08-03 15:27 - 482401428 _____ C:\Users\Panic\Desktop\IGG-Five.Nights.at.Freddys.4.v1.022 (1).rar
2015-08-03 15:27 - 2015-07-28 14:48 - 00000000 ____D C:\Users\Panic\Desktop\IGG-Five.Nights.at.Freddys.4.v1.022
2015-08-03 15:25 - 2015-08-03 15:25 - 00000000 ____D C:\Windows\System32\Tasks\Lenovo
2015-08-03 15:25 - 2015-08-03 15:25 - 00000000 ____D C:\Windows\Downloaded Installations
2015-08-03 15:25 - 2015-08-03 15:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2015-08-03 15:25 - 2015-08-03 15:25 - 00000000 ____D C:\Program Files (x86)\Lenovo
2015-08-03 15:24 - 2015-08-03 15:24 - 00000813 _____ C:\Users\Panic\Desktop\µTorrent.lnk
2015-08-03 15:24 - 2015-08-03 15:24 - 00000793 _____ C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-08-03 15:15 - 2015-08-13 14:10 - 00000000 ____D C:\Users\Panic\AppData\Roaming\uTorrent
2015-08-03 14:29 - 2015-08-05 09:25 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Adobe
2015-08-03 14:29 - 2015-08-03 14:29 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Macromedia
2015-08-03 14:29 - 2015-08-03 14:29 - 00000000 ____D C:\Users\Panic\AppData\Roaming\LolClient
2015-08-03 10:50 - 2015-08-03 10:52 - 37579720 _____ (RSUPPORT ) C:\Users\Panic\Downloads\mobizen (1).exe
2015-08-03 10:48 - 2015-08-03 10:48 - 482401428 _____ C:\Users\Panic\Downloads\IGG-Five.Nights.at.Freddys.4.v1.022.rar
2015-08-03 10:44 - 2015-08-03 10:48 - 37579720 _____ (RSUPPORT ) C:\Users\Panic\Downloads\mobizen.exe
2015-08-03 10:20 - 2015-08-03 10:20 - 00000000 ____D C:\Users\Panic\AppData\Roaming\AVG
2015-08-03 10:19 - 2015-08-03 10:19 - 00000000 ____D C:\Users\Panic\AppData\Local\Avg
2015-08-03 10:18 - 2015-08-05 09:31 - 00000000 ____D C:\ProgramData\AVG
2015-08-03 10:17 - 2015-08-03 10:17 - 00000000 ____D C:\Users\Panic\Documents\My Cheat Tables
2015-08-03 10:16 - 2015-08-03 15:24 - 00000000 ____D C:\Users\Panic\AppData\Roaming\OpenCandy
2015-08-03 10:16 - 2015-08-03 10:16 - 00001089 _____ C:\Users\Panic\Desktop\Cheat Engine.lnk
2015-08-03 10:16 - 2015-08-03 10:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.4
2015-08-03 10:16 - 2015-08-03 10:16 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.4
2015-08-03 10:13 - 2015-08-03 10:15 - 09056424 _____ (Cheat Engine ) C:\Users\Panic\Downloads\CheatEngine64.exe
2015-08-03 09:47 - 2015-08-03 09:47 - 00000000 ____D C:\ProgramData\Riot Games
2015-08-03 09:45 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2015-08-03 09:45 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2015-08-03 09:45 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2015-08-03 09:45 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2015-08-03 09:45 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2015-08-03 09:44 - 2015-08-03 09:44 - 00000000 ____D C:\Riot Games
2015-08-03 09:44 - 2015-08-03 09:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2015-08-03 09:43 - 2015-08-03 09:43 - 30993712 _____ (Riot Games) C:\Users\Panic\Downloads\LeagueofLegends_EUNE_Installer_9_15_2014 (1).exe
2015-08-03 09:41 - 2015-08-03 09:41 - 00000000 ____D C:\Users\Panic\AppData\Local\SKIDROW
2015-08-03 09:35 - 2015-08-03 09:45 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Riot Games
2015-08-03 09:34 - 2015-08-03 09:34 - 30993712 _____ (Riot Games) C:\Users\Panic\Downloads\LeagueofLegends_EUNE_Installer_9_15_2014.exe
2015-08-03 09:25 - 2015-08-13 10:33 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\55FB0724.sys
2015-08-02 19:22 - 2015-08-02 19:22 - 00000000 ____D C:\Users\Bojan\AppData\Local\SKIDROW
2015-08-02 19:18 - 2015-08-02 19:18 - 00001066 _____ C:\Users\Bojan\Desktop\Super Hexagon.lnk
2015-08-02 19:18 - 2015-08-02 19:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Hexagon
2015-08-02 19:18 - 2015-08-02 19:18 - 00000000 ____D C:\Program Files (x86)\Super Hexagon
2015-08-02 19:08 - 2015-08-02 19:08 - 00015360 _____ C:\Users\Bojan\Downloads\[kickass.proxyindex.net]super.hexagon.pxg.torrent
2015-08-02 18:31 - 2015-08-02 18:31 - 00012036 _____ C:\Users\Bojan\Downloads\[kat.cr]criss.angel.masterminds.vol.1.vol.2.torrent
2015-08-02 17:24 - 2015-08-12 14:32 - 00000000 __SHD C:\ProgramData\360Quarant
2015-08-02 17:24 - 2015-08-12 14:32 - 00000000 __SHD C:\$360Section
2015-08-02 13:48 - 2015-08-02 13:48 - 00305832 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys
2015-08-02 13:48 - 2015-08-02 13:48 - 00000036 _____ C:\Users\Bojan\AppData\Local\housecall.guid.cache
2015-08-02 13:47 - 2015-08-02 13:47 - 03617312 _____ (Facebook Inc.) C:\Users\Bojan\Downloads\Trendmicro_T836901839739775T_.exe
2015-08-02 12:57 - 2015-08-02 12:57 - 00001267 _____ C:\Users\Panic\Desktop\Nero Recode.lnk
2015-08-02 12:57 - 2015-08-02 12:57 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Nero
2015-08-02 12:57 - 2015-08-02 12:57 - 00000000 ____D C:\Users\Panic\AppData\Local\Nero_AG
2015-08-02 03:22 - 2015-08-01 20:26 - 00000000 ____D C:\Windows\Panther
2015-08-02 02:25 - 2015-08-13 11:11 - 00134522 _____ C:\Windows\WindowsUpdate.log
2015-08-02 02:25 - 2015-08-02 02:25 - 00001355 _____ C:\Windows\TSSysprep.log
2015-08-02 02:25 - 2015-08-02 02:25 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2015-08-02 02:25 - 2015-08-02 02:25 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2015-08-01 21:00 - 2015-08-01 21:00 - 00002123 _____ C:\Users\Panic\Desktop\MP Navigator EX 4.0.lnk
2015-08-01 21:00 - 2015-08-01 21:00 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Mozilla
2015-08-01 21:00 - 2015-08-01 21:00 - 00000000 ____D C:\Users\Panic\AppData\Local\Mozilla
2015-08-01 20:59 - 2015-08-01 20:59 - 00000000 ____D C:\Users\Panic\Tracing
2015-08-01 20:58 - 2015-08-01 20:58 - 00000000 ____D C:\Users\Panic\AppData\Local\Skype
2015-08-01 20:57 - 2015-08-13 13:45 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Skype
2015-08-01 20:57 - 2015-08-06 20:01 - 00000000 ____D C:\Users\Panic\AppData\Local\ACD Systems
2015-08-01 20:57 - 2015-08-06 10:08 - 00000000 ____D C:\Users\Panic\AppData\Local\Google
2015-08-01 20:57 - 2015-08-01 20:57 - 00000000 ___HD C:\ProgramData\CanonIJSolutionMenuEX
2015-08-01 20:57 - 2015-08-01 20:57 - 00000000 ____D C:\Users\Panic\AppData\Local\DFX
2015-08-01 20:50 - 2015-08-01 20:50 - 00002951 _____ C:\Users\Bojan\Desktop\Microsoft Excel 2010.lnk
2015-08-01 20:49 - 2015-08-01 20:49 - 00002123 _____ C:\Users\Bojan\Desktop\MP Navigator EX 4.0.lnk
2015-08-01 20:43 - 2015-08-01 20:43 - 00000000 ____D C:\Program Files\EPSON
2015-08-01 20:42 - 2015-08-01 20:44 - 00000000 ____D C:\ProgramData\EPSON
2015-08-01 20:42 - 2008-08-08 04:09 - 00108032 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_L12067.DLL
2015-08-01 20:42 - 2005-04-12 03:01 - 00056320 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\EBPEPS2B.DLL
2015-08-01 20:39 - 2015-08-13 14:11 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-08-01 20:39 - 2015-08-08 13:00 - 00000000 ____D C:\ProgramData\CanonIJPLM
2015-08-01 20:39 - 2015-08-01 20:39 - 00002079 _____ C:\Users\Public\Desktop\Canon Solution Menu EX.lnk
2015-08-01 20:39 - 2015-08-01 20:39 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-01 20:39 - 2015-08-01 20:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-08-01 20:39 - 2015-08-01 20:39 - 00000000 ____D C:\ProgramData\CanonIJWSpt
2015-08-01 20:39 - 2015-08-01 20:39 - 00000000 ____D C:\Program Files\Common Files\CANON
2015-08-01 20:39 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-08-01 20:39 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-08-01 20:39 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-08-01 20:38 - 2015-08-01 20:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2015-08-01 20:37 - 2015-08-01 20:37 - 00002378 _____ C:\Users\Public\Desktop\Canon CanoScan LiDE 110 On-screen Manual.lnk
2015-08-01 20:37 - 2015-08-01 20:37 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information
2015-08-01 20:37 - 2015-08-01 20:37 - 00000000 ___HD C:\Program Files\CanonBJ
2015-08-01 20:37 - 2015-08-01 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CanoScan LiDE 110
2015-08-01 20:37 - 2015-08-01 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon CanoScan LiDE 110 Manual
2015-08-01 20:37 - 2010-03-29 17:33 - 00514560 _____ (CANON INC.) C:\Windows\system32\CNQ2414L.dll
2015-08-01 20:37 - 2010-03-29 17:33 - 00438272 _____ (CANON INC.) C:\Windows\SysWOW64\CNQ2414L.dll
2015-08-01 20:37 - 2010-03-19 10:04 - 00393256 _____ C:\Windows\SysWOW64\CNQ2414N.DAT
2015-08-01 20:37 - 2010-03-19 10:04 - 00393256 _____ C:\Windows\system32\CNQ2414N.DAT
2015-08-01 20:37 - 2010-03-18 17:13 - 01354240 _____ (CANON INC.) C:\Windows\system32\CNQ2414C.dll
2015-08-01 20:37 - 2010-03-18 17:13 - 00112128 _____ (CANON INC.) C:\Windows\system32\CNQ2414I.dll
2015-08-01 20:37 - 2010-03-18 17:11 - 00106496 _____ (CANON INC.) C:\Windows\SysWOW64\CNQ2414U.dll
2015-08-01 20:37 - 2010-03-11 09:57 - 00248320 _____ (CANON INC.) C:\Windows\system32\CNQ2414Y.dll
2015-08-01 20:37 - 2010-01-13 15:04 - 00103424 _____ (Canon Inc.) C:\Windows\system32\CNQ2414O.dll
2015-08-01 20:37 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll
2015-08-01 20:37 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2015-08-01 20:36 - 2015-08-01 20:38 - 00000000 ____D C:\Program Files (x86)\Canon
2015-08-01 20:34 - 2015-08-02 12:33 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-01 20:34 - 2015-08-01 20:34 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-08-01 20:33 - 2015-08-01 20:34 - 00000124 _____ C:\Users\Bojan\Documents\ax_files.xml
2015-08-01 20:30 - 2015-08-01 20:30 - 00001184 _____ C:\Users\Public\Desktop\Alcohol 120%.lnk
2015-08-01 20:30 - 2015-08-01 20:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alcohol 120%
2015-08-01 20:30 - 2015-08-01 20:30 - 00000000 ____D C:\Program Files (x86)\Alcohol Soft
2015-08-01 20:28 - 2015-08-12 14:47 - 00109216 _____ C:\Users\Bojan\AppData\Local\GDIPFONTCACHEV1.DAT
2015-08-01 20:28 - 2015-08-09 16:10 - 00000000 _____ C:\Windows\setuperr.log
2015-08-01 20:27 - 2015-08-13 10:31 - 05078456 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-01 20:25 - 2015-08-01 20:25 - 00381440 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys
2015-08-01 20:23 - 2015-08-01 20:23 - 00000000 ____D C:\Windows\Tasks\360Disabled
2015-08-01 20:23 - 2015-08-01 20:23 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\360safe
2015-08-01 20:22 - 2015-08-12 14:46 - 00000000 ____D C:\ProgramData\360TotalSecurity
2015-08-01 20:22 - 2015-08-01 20:23 - 00000000 ____D C:\ProgramData\360safe
2015-08-01 20:22 - 2015-08-01 20:22 - 00001153 _____ C:\Users\Public\Desktop\360 Total Security.lnk
2015-08-01 20:22 - 2015-08-01 20:22 - 00000000 _RSHD C:\360SANDBOX
2015-08-01 20:22 - 2015-08-01 20:22 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\360TotalSecurity
2015-08-01 20:22 - 2015-08-01 20:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center
2015-08-01 20:22 - 2015-08-01 20:22 - 00000000 ____D C:\Program Files (x86)\360
2015-08-01 20:22 - 2015-07-31 13:22 - 00363088 _____ (360.cn) C:\Windows\system32\Drivers\360fsflt.sys
2015-08-01 20:22 - 2015-07-31 13:22 - 00319568 _____ (360.cn) C:\Windows\system32\Drivers\360Box64.sys
2015-08-01 20:22 - 2015-07-31 13:22 - 00178768 _____ (360.cn) C:\Windows\system32\Drivers\BAPIDRV64.SYS
2015-08-01 20:22 - 2015-07-31 13:22 - 00137296 _____ (360.cn) C:\Windows\system32\Drivers\360AntiHacker64.sys
2015-08-01 20:22 - 2015-07-31 13:22 - 00077904 _____ (360.cn) C:\Windows\system32\Drivers\360AvFlt.sys
2015-08-01 20:22 - 2015-07-31 13:22 - 00040520 _____ (360.cn) C:\Windows\system32\Drivers\360Camera64.sys
2015-08-01 20:15 - 2015-08-01 20:15 - 39308920 _____ C:\Users\Bojan\Downloads\360TS_Setup.exe
2015-08-01 20:15 - 2015-08-01 20:15 - 01339000 _____ (QIHU 360 SOFTWARE CO. LIMITED) C:\Users\Bojan\Downloads\360TS_Setup_Mini.exe
2015-08-01 20:03 - 2015-08-01 20:06 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\KW
2015-08-01 19:58 - 2015-08-01 20:15 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2015-08-01 19:53 - 2015-08-01 19:53 - 00001386 _____ C:\Users\Public\Desktop\ACDSee Video Converter Pro 4.1.lnk
2015-08-01 19:53 - 2015-08-01 19:53 - 00000000 ____D C:\Users\Bojan\Documents\ACDSee Video Converter Pro 4.1
2015-08-01 19:52 - 2015-08-01 19:52 - 00000000 ____D C:\Program Files (x86)\ACD Systems
2015-08-01 19:44 - 2015-08-08 13:07 - 00032290 _____ C:\Windows\DirectX.log
2015-08-01 19:44 - 2015-08-01 19:53 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:46 - 00000000 ____D C:\Users\Bojan\AppData\Local\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:44 - 00002281 _____ C:\Users\Public\Desktop\ACDSee Ultimate 8 (64-bit).lnk
2015-08-01 19:44 - 2015-08-01 19:44 - 00000000 ____D C:\ProgramData\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:44 - 00000000 ____D C:\Program Files\Common Files\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:44 - 00000000 ____D C:\Program Files\ACD Systems
2015-08-01 19:44 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2015-08-01 19:44 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2015-08-01 19:43 - 2015-08-01 19:43 - 00000000 ____D C:\Users\Bojan\AppData\Local\Downloaded Installations
2015-08-01 19:39 - 2015-08-01 20:25 - 00003796 _____ C:\Windows\System32\Tasks\klcp_update
2015-08-01 19:39 - 2015-08-01 19:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2015-08-01 19:39 - 2015-08-01 19:39 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2015-08-01 19:36 - 2015-08-01 19:36 - 00001825 _____ C:\Users\Public\Desktop\jetVideo.lnk
2015-08-01 19:36 - 2015-08-01 19:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\jetVideo
2015-08-01 19:36 - 2015-08-01 19:36 - 00000000 ____D C:\Program Files (x86)\JetVideo
2015-08-01 19:25 - 2015-08-01 19:25 - 00001153 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player PRO.lnk
2015-08-01 19:25 - 2015-08-01 19:25 - 00001147 _____ C:\Users\Public\Desktop\BS.Player PRO.lnk
2015-08-01 19:25 - 2015-08-01 19:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webteh
2015-08-01 19:23 - 2015-08-01 20:26 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Notepad++
2015-08-01 19:23 - 2015-08-01 19:23 - 05357534 _____ C:\Users\Bojan\Downloads\npp.6.8.Installer.exe
2015-08-01 19:23 - 2015-08-01 19:23 - 00001057 _____ C:\Users\Panic\Desktop\Notepad++.lnk
2015-08-01 19:23 - 2015-08-01 19:23 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-08-01 19:23 - 2015-08-01 19:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-08-01 19:23 - 2015-08-01 19:23 - 00000000 ____D C:\Program Files (x86)\Notepad++
2015-08-01 19:20 - 2015-08-01 19:20 - 00014270 _____ C:\Users\Bojan\Downloads\[kat.cr]bs.player.pro.2.67.1076.final.incl.serials.keygen.torrent
2015-08-01 19:13 - 2015-08-01 19:13 - 00014173 _____ C:\Users\Bojan\Downloads\[kat.cr]bsplayer.pro.2.64.key.keygen.core.by.senzati.torrent
2015-08-01 19:10 - 2015-08-01 19:12 - 36739868 _____ ( ) C:\Users\Bojan\Downloads\K-Lite_Codec_Pack_1130_Full.exe
2015-08-01 19:09 - 2015-08-01 19:24 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\BSplayer PRO
2015-08-01 19:09 - 2015-08-01 19:24 - 00000000 ____D C:\Program Files (x86)\Webteh
2015-08-01 19:07 - 2015-08-01 19:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2015-08-01 19:07 - 2015-08-01 19:07 - 00000000 ____D C:\Program Files\7-Zip
2015-08-01 19:06 - 2015-08-01 19:06 - 01331823 _____ (Igor Pavlov) C:\Users\Bojan\Downloads\7z1505-x64.exe
2015-08-01 19:04 - 2015-08-01 19:04 - 00002601 _____ C:\Users\Bojan\Desktop\µTorrent.lnk
2015-08-01 19:04 - 2015-08-01 19:04 - 00002601 _____ C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-08-01 19:03 - 2015-08-13 15:12 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\uTorrent
2015-08-01 19:03 - 2015-08-01 19:03 - 01993056 _____ (BitTorrent Inc.) C:\Users\Bojan\Downloads\uTorrent.exe
2015-08-01 18:58 - 2015-08-01 18:58 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Nero
2015-08-01 18:52 - 2015-08-01 18:52 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-08-01 18:52 - 2015-08-01 18:52 - 00000000 ____D C:\Program Files\Realtek
2015-08-01 18:52 - 2014-05-14 18:37 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-08-01 18:52 - 2014-05-14 16:00 - 01099203 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-08-01 18:52 - 2014-05-09 11:17 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-08-01 18:52 - 2014-04-30 11:34 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-08-01 18:52 - 2014-04-28 15:48 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-08-01 18:52 - 2014-04-25 13:51 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-08-01 18:52 - 2014-04-25 13:23 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-08-01 18:52 - 2014-04-10 12:19 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-08-01 18:52 - 2014-04-10 12:19 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-08-01 18:52 - 2014-04-10 12:19 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-08-01 18:52 - 2014-03-06 16:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-08-01 18:52 - 2014-02-18 17:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-08-01 18:52 - 2014-01-28 11:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-08-01 18:52 - 2014-01-08 15:25 - 00397592 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
2015-08-01 18:52 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-08-01 18:52 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-08-01 18:52 - 2012-06-08 16:21 - 00897152 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO64.dll
2015-08-01 18:52 - 2012-06-08 16:21 - 00753280 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO32.dll
2015-08-01 18:52 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-08-01 18:52 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-08-01 18:52 - 2011-12-16 14:57 - 00065112 _____ (Creative Technology Ltd.) C:\Windows\system32\MBppld64.dll
2015-08-01 18:52 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-08-01 18:52 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-08-01 18:52 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-08-01 18:52 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-08-01 18:52 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-08-01 18:52 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-08-01 18:52 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-08-01 18:52 - 2009-11-18 07:13 - 00060504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBPPCn64.dll
2015-08-01 18:51 - 2015-08-01 18:52 - 00000000 ___HD C:\Program Files (x86)\Temp
2015-08-01 18:51 - 2014-02-26 15:16 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2015-08-01 18:48 - 2015-08-05 18:44 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\COWON
2015-08-01 18:46 - 2015-08-01 18:46 - 00001825 _____ C:\Users\Public\Desktop\jetAudio.lnk
2015-08-01 18:46 - 2015-08-01 18:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\jetAudio
2015-08-01 18:46 - 2015-08-01 18:46 - 00000000 ____D C:\Program Files (x86)\JetAudio
2015-08-01 18:41 - 2015-08-01 18:41 - 00000000 ____D C:\Users\Bojan\AppData\Local\DFX
2015-08-01 18:41 - 2015-08-01 18:41 - 00000000 ____D C:\ProgramData\DFX
2015-08-01 18:40 - 2015-08-01 19:58 - 00000000 ____D C:\Users\Guest
2015-08-01 18:40 - 2015-08-01 19:58 - 00000000 ____D C:\Users\Administrator
2015-08-01 18:40 - 2015-08-01 18:40 - 00001710 _____ C:\Users\Public\Desktop\DFX.lnk
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Users\Panic\AppData\Roaming\vlc
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Users\Guest\AppData\Roaming\vlc
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\vlc
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Users\Administrator\AppData\Roaming\vlc
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DFX Audio Enhancer
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Program Files (x86)\DFX
2015-08-01 18:32 - 2015-08-06 09:47 - 00002185 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-08-01 18:32 - 2015-08-01 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-08-01 18:31 - 2015-08-13 14:42 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-08-01 18:31 - 2015-08-13 14:11 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-08-01 18:31 - 2015-08-01 20:23 - 00003904 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-08-01 18:31 - 2015-08-01 20:23 - 00003652 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-08-01 18:31 - 2015-08-01 18:32 - 00000000 ____D C:\Users\Bojan\AppData\Local\Google
2015-08-01 18:31 - 2015-08-01 18:32 - 00000000 ____D C:\Program Files (x86)\Google
2015-08-01 18:30 - 2015-08-02 14:15 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-08-01 18:30 - 2015-08-01 18:30 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-08-01 18:30 - 2015-08-01 18:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-08-01 18:26 - 2015-08-01 18:30 - 00000000 ____D C:\Users\Bojan\AppData\Local\Mozilla
2015-08-01 18:26 - 2015-08-01 18:27 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Mozilla
2015-08-01 18:26 - 2015-08-01 18:26 - 00000000 ____D C:\ProgramData\Mozilla
2015-08-01 18:20 - 2015-08-01 18:20 - 00000000 ____D C:\User Data
2015-08-01 18:20 - 2015-08-01 18:20 - 00000000 ____D C:\Program Files (x86)\newtabs
2015-08-01 18:20 - 2015-08-01 18:20 - 00000000 _____ C:\extensions.sqlite
2015-08-01 18:19 - 2015-08-01 18:19 - 00001130 _____ C:\Users\Public\Desktop\Foxit Reader.lnk
2015-08-01 18:19 - 2015-08-01 18:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2015-08-01 18:19 - 2015-08-01 18:19 - 00000000 ____D C:\Program Files (x86)\Foxit Software
2015-08-01 18:16 - 2015-08-01 18:16 - 00001216 _____ C:\Users\Public\Desktop\Nero Burning ROM.lnk
2015-08-01 18:14 - 2015-08-01 18:14 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2015-08-01 18:13 - 2011-07-13 13:59 - 00072240 _____ (Nero AG) C:\Windows\system32\Drivers\NBVol.sys
2015-08-01 18:13 - 2011-07-13 13:59 - 00015920 _____ (Nero AG) C:\Windows\system32\Drivers\NBVolUp.sys
2015-08-01 18:12 - 2015-08-01 18:14 - 00000000 ____D C:\Program Files (x86)\Nero
2015-08-01 18:12 - 2015-08-01 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2015-08-01 18:07 - 2015-08-01 18:07 - 00003021 _____ C:\Users\Bojan\Desktop\Microsoft Word 2010.lnk
2015-08-01 18:05 - 2015-08-01 18:05 - 00003704 _____ C:\Windows\System32\Tasks\AutoPico Daily Restart
2015-08-01 18:05 - 2015-08-01 18:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2015-08-01 18:05 - 2015-08-01 18:05 - 00000000 ____D C:\Program Files\KMSpico
2015-08-01 18:04 - 2015-08-01 18:04 - 00000000 ____D C:\ProgramData\Microsoft Toolkit
2015-08-01 18:02 - 2015-08-01 18:02 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-08-01 18:01 - 2015-08-01 18:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-08-01 18:01 - 2015-08-01 18:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-08-01 18:01 - 2015-08-01 18:01 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2015-08-01 18:01 - 2015-08-01 18:01 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2015-08-01 18:00 - 2015-08-01 18:00 - 00000000 ____D C:\Windows\PCHEALTH
2015-08-01 18:00 - 2015-08-01 18:00 - 00000000 ____D C:\Program Files\Microsoft Sync Framework
2015-08-01 18:00 - 2015-08-01 18:00 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2015-08-01 17:59 - 2015-08-01 18:03 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-01 17:59 - 2015-08-01 18:00 - 00000000 ____D C:\Program Files\Microsoft Office
2015-08-01 17:59 - 2015-08-01 17:59 - 00000000 ____D C:\Users\Bojan\AppData\Local\Microsoft Help
2015-08-01 17:59 - 2015-08-01 17:59 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-08-01 17:59 - 2015-08-01 17:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2015-08-01 17:59 - 2015-08-01 17:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-08-01 17:59 - 2015-08-01 17:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-08-01 17:58 - 2015-08-01 17:58 - 00000000 __RHD C:\MSOCache
2015-08-01 17:57 - 2015-08-01 17:57 - 00000000 ____D C:\Users\Bojan\AppData\Local\AMD
2015-08-01 17:56 - 2015-08-01 17:56 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\ATI
2015-08-01 17:56 - 2015-08-01 17:56 - 00000000 ____D C:\Users\Bojan\AppData\Local\ATI
2015-08-01 17:55 - 2015-08-01 17:55 - 00000000 ____D C:\Users\Bojan\Tracing
2015-08-01 17:54 - 2015-08-13 15:11 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Skype
2015-08-01 17:54 - 2015-08-01 17:54 - 00000000 ____D C:\Users\Bojan\AppData\Local\Skype
2015-08-01 17:53 - 2015-08-01 20:08 - 00002697 _____ C:\Users\Public\Desktop\Skype.lnk
2015-08-01 17:53 - 2015-08-01 20:08 - 00000000 ____D C:\ProgramData\Skype
2015-08-01 17:53 - 2015-08-01 20:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-08-01 17:53 - 2015-08-01 17:53 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-08-01 17:49 - 2015-08-06 14:26 - 00000000 ___HD C:\Users\Bojan
2015-08-01 17:49 - 2015-08-05 18:29 - 00000000 ____D C:\Users\Bojan\AppData\Local\VirtualStore
2015-08-01 17:49 - 2015-08-01 17:49 - 00001447 _____ C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-08-01 17:49 - 2015-08-01 17:49 - 00001413 _____ C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2015-08-01 17:49 - 2015-08-01 17:49 - 00000020 ___SH C:\Users\Bojan\ntuser.ini
2015-08-01 17:49 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-01 17:49 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-01 17:46 - 2015-08-13 10:32 - 00109216 _____ C:\Users\Panic\AppData\Local\GDIPFONTCACHEV1.DAT
2015-08-01 17:46 - 2015-08-01 17:46 - 00000000 ____D C:\Users\Panic\AppData\Roaming\ATI
2015-08-01 17:46 - 2015-08-01 17:46 - 00000000 ____D C:\Users\Panic\AppData\Local\ATI
2015-08-01 17:46 - 2015-08-01 17:46 - 00000000 ____D C:\Users\Panic\AppData\Local\AMD
2015-08-01 17:46 - 2015-08-01 17:46 - 00000000 ____D C:\ProgramData\ATI
2015-08-01 17:45 - 2011-09-29 11:30 - 00646248 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2015-08-01 17:45 - 2011-09-29 11:30 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2015-08-01 17:45 - 2011-09-29 11:30 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll
2015-08-01 17:43 - 2015-08-04 18:22 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-08-01 17:43 - 2015-08-01 18:52 - 00000000 ____D C:\Program Files (x86)\Realtek
2015-08-01 17:43 - 2015-08-01 17:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2015-08-01 17:43 - 2011-09-16 09:12 - 00032360 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtVlan620.sys
2015-08-01 17:43 - 2011-06-15 15:11 - 00058472 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtTeam60.sys
2015-08-01 17:43 - 2011-06-15 15:11 - 00027136 _____ (Realtek ) C:\Windows\system32\Drivers\RtNdPt60.sys
2015-08-01 17:41 - 2015-08-01 17:41 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files\AMD
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files (x86)\AMD
2015-08-01 17:39 - 2015-08-06 18:16 - 00773536 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-08-01 17:39 - 2015-08-01 17:40 - 00000000 ____D C:\ProgramData\AMD
2015-08-01 17:39 - 2015-08-01 17:39 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-08-01 17:39 - 2012-08-28 14:27 - 00058536 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2015-08-01 17:35 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files\ATI Technologies
2015-08-01 17:35 - 2015-08-01 17:35 - 00000000 ____D C:\Program Files\ATI
2015-08-01 17:30 - 2015-08-12 12:22 - 00000000 ____D C:\Users\Panic\AppData\Local\VirtualStore
2015-08-01 17:30 - 2015-08-01 17:30 - 00001447 _____ C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-08-01 17:30 - 2015-08-01 17:30 - 00001413 _____ C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2015-08-01 17:29 - 2015-08-10 15:45 - 00000000 ____D C:\Users\Panic
2015-08-01 17:29 - 2015-08-01 17:29 - 00000020 ___SH C:\Users\Panic\ntuser.ini
2015-08-01 17:29 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-01 17:29 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-01 17:28 - 2015-08-01 17:28 - 00000000 __SHD C:\Recovery

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-13 14:34 - 2009-07-14 06:45 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-08-13 14:34 - 2009-07-14 06:45 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-08-13 13:51 - 2009-07-14 06:51 - 00002624 _____ C:\Windows\setupact.log
2015-08-13 10:39 - 2009-07-14 07:13 - 00781298 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-13 10:31 - 2010-11-21 05:47 - 00159500 _____ C:\Windows\PFRO.log
2015-08-13 10:31 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-08 13:06 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2015-08-06 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK
2015-08-06 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR
2015-08-06 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\zh-HK
2015-08-06 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR
2015-08-03 09:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports
2015-08-02 12:34 - 2009-07-14 05:20 - 00000000 __RSD C:\Windows\Media
2015-08-02 03:22 - 2009-07-14 07:38 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG
2015-08-02 03:22 - 2009-07-14 07:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2015-08-02 03:21 - 2009-07-14 06:45 - 00000000 ____D C:\Windows\Setup
2015-08-02 02:27 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-08-02 02:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe
2015-08-02 02:25 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-08-02 02:25 - 2009-07-14 06:46 - 00002790 _____ C:\Windows\DtcInstall.log
2015-08-02 02:25 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-02 02:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep
2015-08-02 02:23 - 2010-11-21 09:16 - 00000000 ____D C:\Windows\CSC
2015-08-01 18:12 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-08-01 18:01 - 2010-11-21 09:16 - 00000000 ____D C:\Windows\ShellNew
2015-08-01 18:00 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-08-01 17:59 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-08-01 17:59 - 2009-07-14 04:34 - 00000478 _____ C:\Windows\win.ini
2015-08-01 17:28 - 2010-11-21 05:24 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-08-01 17:28 - 2010-11-21 05:24 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-08-01 17:28 - 2010-11-21 05:24 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2015-08-01 17:28 - 2010-11-21 05:24 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2015-08-01 17:28 - 2010-11-21 05:23 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slwga.dll
2015-08-01 17:28 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\restore

==================== Files in the root of some directories =======

2015-08-11 19:16 - 2015-08-11 19:16 - 0003584 _____ () C:\Users\Bojan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-02 13:48 - 2015-08-02 13:48 - 0000036 _____ () C:\Users\Bojan\AppData\Local\housecall.guid.cache

Some files in TEMP:
====================
C:\Users\Bojan\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\Bojan\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Bojan\AppData\Local\Temp\MSETUP4.EXE
C:\Users\Bojan\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Bojan\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\Panic\AppData\Local\Temp\360Inst_sohuyy.exe
C:\Users\Panic\AppData\Local\Temp\Opera_NI_stable.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-08-02 02:23

==================== End of log ============================

mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Deinstaliraj:

NewTabs Uninstall
YTD Video Downloader 4.9


Imaš dva AV-a na sistemu, Rising Antivirus i 360 Total Security. Onaj koji nisi ti lično instalirao je najvjerovatnije taj kineski pa ga deinstaliraj.


Kda to obaviš postavi mi nove FRST.txt i Addition.txt izvještaje.

offline
  • Bojan Panic
  • Pridružio: 14 Sep 2014
  • Poruke: 76
  • Gde živiš: Vojvodina, Odzaci

Rising Antivirus je obrisan (posto sam ja instaliao samo 360 total security) a kineski program je jos ostao.
A evo i izvestaja

mycity.rs/must-login.png

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:12-08-2015
Ran by Bojan (administrator) on PANIC-PC (14-08-2015 13:30:52)
Running from C:\Users\Bojan\Desktop
Loaded Profiles: Bojan (Available Profiles: Panic & Bojan)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Tencent) C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe
(StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Tencent) C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTray.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(BitTorrent Inc.) C:\Users\Bojan\AppData\Roaming\uTorrent\uTorrent.exe
() C:\Program Files\ACD Systems\ACDSee Ultimate\8.0\ACDSeeCommanderUltimate8.exe
(Qihu Software Co. Limited) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe
(Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
() C:\Program Files (x86)\DFX\DFX.exe
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
(CANON INC.) C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe
() C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe
(ACD Systems) C:\Program Files\ACD Systems\ACDSee Ultimate\8.0\acdIDInTouch2.exe
() C:\Program Files (x86)\DFX\Universal\Apps\dfxItunesSong.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Qihu 360 Software Co., Ltd.) C:\Program Files (x86)\360\Total Security\safemon\chrome\360webshield.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-09] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642656 2013-03-07] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [NBAgent] => C:\Program Files (x86)\Nero\Nero 11\Nero BackItUp\NBAgent.exe [1493288 2011-09-20] (Nero AG)
HKLM-x32\...\Run: [DFX] => C:\Program Files (x86)\DFX\DFX.exe [1131880 2014-08-24] ()
HKLM-x32\...\Run: [VIDCP4EN] => C:\Program Files (x86)\ACD Systems\ACDSee Video Converter Pro 4.1\acdIDInTouch2.exe [1480008 2014-03-05] (ACD Systems)
HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe [1286776 2015-07-31] (QIHU 360 SOFTWARE CO. LIMITED)
HKLM-x32\...\Run: [CanonSolutionMenuEx] => C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1185112 2010-04-02] (CANON INC.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
HKLM-x32\...\Run: [fr] => C:\Program Files (x86)\fr\fr.exe
HKLM-x32\...\Run: [SohuVA] => "C:\Program Files (x86)\????\SHPlayer.exe" /auto
HKLM-x32\...\Run: [ QQPCTray] => C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTRAY.EXE [355296 2015-08-12] (Tencent)
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53288576 2015-06-29] (Skype Technologies S.A.)
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\...\Run: [uTorrent] => C:\Users\Bojan\AppData\Roaming\uTorrent\uTorrent.exe [1993056 2015-08-01] (BitTorrent Inc.)
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\...\Run: [ACDSeeCommanderUltimate8] => C:\Program Files\ACD Systems\ACDSee Ultimate\8.0\ACDSeeCommanderUltimate8.exe [2054152 2014-12-16] ()
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMGCShellExt64.dll [2015-08-12] (Tencent)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.oursurfing.com/?type=hp&ts=1439381707&z=f2363849cca831fb3924c39g7zec9t2c6b0g5m1ebt&from=amt&uid=WDCXWD10EZRX-00A8LB0_WD-WMC1U499823098230
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hao123.com/?tn=97951667_hao_pg
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.oursurfing.com/?type=hp&ts=1439381707&z=f2363849cca831fb3924c39g7zec9t2c6b0g5m1ebt&from=amt&uid=WDCXWD10EZRX-00A8LB0_WD-WMC1U499823098230
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = google.com
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hao123.com/?tn=97951667_hao_pg
SearchScopes: HKU\S-1-5-21-3916067527-1229850284-1596982685-1002 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.v9.com/web/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3916067527-1229850284-1596982685-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.v9.com/web/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3916067527-1229850284-1596982685-1002 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.v9.com/web/?q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices)
BHO: 电脑管家网页防火墙 -> {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} -> C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSWebMon64.dat [2015-08-12] (Tencent)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon64.dll [2015-07-31] (Qihu 360 Software Co., Ltd.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO-x32: Ó¦Óñ¦Ò»¼ü°²×°²å¼þ -> {50F4150A-48B2-417A-BE4C-C83F580FB904} -> C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll [2014-05-30] (腾讯公司)
BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-08] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon.dll [2015-07-31] (Qihu 360 Software Co., Ltd.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-08] (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)
Hosts: 127.0.0.1 acdid.acdsystems.com
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{3CD31E15-D32F-4D86-91B3-CB18353FACD4}: [DhcpNameServer] 192.168.1.1 0.0.0.0

FireFox:
========
FF ProfilePath: C:\Users\Bojan\AppData\Roaming\Mozilla\Firefox\Profiles\lskyg098.default
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2012-07-31] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-08] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @qq.com/npAndroidAssistant -> C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll [2014-05-30] (腾讯公司)
FF Plugin-x32: @qq.com/QQPCMgr -> C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\npQMExtensionsMozilla.dll [2015-08-12] (Tencent Technology (Shenzhen) Company Limited)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-08-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-08-01] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation)
FF HKLM-x32\...\Firefox\Extensions: [WebProtection@360safe.com] - C:\Program Files (x86)\360\Total Security\safemon\webprotection_firefox
FF Extension: 360 Internet Protection - C:\Program Files (x86)\360\Total Security\safemon\webprotection_firefox [2015-08-01]

Chrome:
=======
CHR Profile: C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-01]
CHR Extension: (Google Docs) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-01]
CHR Extension: (COD MW3 by St0n3 (Smile - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aokpkhkaciinbfdgmaelijhngickobgo [2015-08-01]
CHR Extension: (Google Drive) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-01]
CHR Extension: (Video AdBlock for Chrome) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bknbnapaddjdnbilpmlacdkjdkjmbjhd [2015-08-01]
CHR Extension: (YouTube) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-01]
CHR Extension: (Adblock Plus) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-08-01]
CHR Extension: (Google Search) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-01]
CHR Extension: (Google Sheets) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-01]
CHR Extension: (360 Internet Protection) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2015-08-01]
CHR Extension: (No Name) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdacmkapnkjmbddfcajlehdieeckelbm [2015-08-02]
CHR Extension: (Little Alchemy) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2015-08-01]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-01]
CHR Extension: (https://www.google.rs/?gws_rd=ssl) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\njbedanhdfchdhhhdjaphkhdanpffipa [2015-08-01]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-01]
CHR Extension: (Gmail) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-01]
CHR HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ooebklgpfnbcnpokahmdidgbmlcdepkm] - clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-03-07] (Advanced Micro Devices, Inc.) [File not signed]
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2007048 2015-08-13] (Electronic Arts)
R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [858744 2015-07-31] (QIHU 360 SOFTWARE CO. LIMITED)
R2 QQPCRTP; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe [297608 2015-08-05] (Tencent)
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [997568 2014-06-29] (@ByELDI) [File not signed]
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 TAOFrame; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TAOFrame.exe [293856 2015-08-12] (Tencent)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [137296 2015-07-31] (360.cn)
R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [77904 2015-07-31] (360.cn)
R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [319568 2015-07-31] (360.cn)
R1 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [40520 2015-07-31] (360.cn)
R1 360FsFlt; C:\Windows\System32\DRIVERS\360FsFlt.sys [363088 2015-07-31] (360.cn)
R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV64.sys [178768 2015-07-31] (360.cn)
R3 DFX11_1; C:\Windows\System32\drivers\dfx11_1x64.sys [28008 2012-12-13] (Windows (R) Win 7 DDK provider)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\55FB0724.sys [129752 2015-08-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-11-21] (Malwarebytes Corporation)
R1 QMUdisk; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUdisk64.sys [62264 2015-08-12] (Tencent)
R2 QQSysMonX64; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQSysMonX64.sys [129336 2015-08-12] (电脑管家)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2015-08-01] (Duplex Secure Ltd.)
R2 TAOAccelerator; C:\Windows\system32\Drivers\TAOAccelerator64.sys [99640 2015-08-12] (Tencent)
R2 TAOKernelDriver; C:\Windows\system32\Drivers\TAOKernel64.sys [174392 2015-08-12] (Tencent Technology(Shenzhen) Company Limited)
R3 TFsFlt; C:\Windows\System32\Drivers\TFsFltX64.sys [87864 2015-08-12] (电脑管家)
R3 TS888x64; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TS888x64.sys [28984 2015-08-14] (Tencent)
R1 TSCPM; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\tscpm64.sys [42296 2015-08-12] (电脑管家)
R1 TSDefenseBt; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSDefenseBT64.sys [28472 2015-08-12] (Tencent)
S3 TSSKX64; C:\Windows\System32\drivers\tsskx64.sys [38200 2015-08-12] (电脑管家)
R1 TSSysKit; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSSysKit64.sys [87352 2015-08-12] (电脑管家)
U3 atyhc6hb; C:\Windows\System32\Drivers\atyhc6hb.sys [0 ] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-14 12:09 - 2015-08-14 12:09 - 05554508 _____ C:\Users\Panic\Downloads\pencil-0-4-4b-win.zip
2015-08-14 12:09 - 2015-08-14 12:09 - 05554508 _____ C:\Users\Panic\Desktop\pencil-0-4-4b-win.zip
2015-08-14 12:09 - 2015-08-14 12:09 - 00000000 ____D C:\Users\Panic\Desktop\pencil-0-4-4b-win
2015-08-14 11:56 - 2015-08-14 11:56 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Pencil
2015-08-14 11:56 - 2015-08-14 11:56 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Evolus
2015-08-14 11:56 - 2015-08-14 11:56 - 00000000 ____D C:\Users\Panic\AppData\Local\Pencil
2015-08-14 11:56 - 2015-08-14 11:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evolus
2015-08-14 11:55 - 2015-08-14 11:55 - 00000000 ____D C:\Program Files (x86)\Evolus
2015-08-14 11:54 - 2015-08-14 11:55 - 24218412 _____ (Evolus Co., Ltd.) C:\Users\Panic\Downloads\Pencil-2.0.5.win32.installer.exe
2015-08-14 10:31 - 2015-08-14 10:32 - 00000000 ____D C:\Users\Panic\AppData\Roaming\.minecraft
2015-08-14 10:28 - 2015-08-14 10:28 - 00018130 _____ C:\Users\Panic\Downloads\[kat.cr]minecraft.1.4.7.teamextreme.portable.torrent
2015-08-14 10:06 - 2015-08-14 10:06 - 00060738 _____ C:\Users\Panic\Downloads\[kat.cr]adobe.flash.professional.cs6.(zabranjeno) (1).torrent
2015-08-14 10:06 - 2015-08-14 10:06 - 00035112 _____ C:\Users\Panic\Downloads\[kat.cr]adobe.flash.professional.cs6.classroom.in.a.book.pdf.epub.torrent
2015-08-13 18:48 - 2015-08-13 18:48 - 00002837 _____ C:\Users\Bojan\Desktop\Word 2013.lnk
2015-08-13 18:48 - 2015-08-13 18:48 - 00002789 _____ C:\Users\Bojan\Desktop\Excel 2013.lnk
2015-08-13 18:42 - 2015-08-13 18:42 - 00000869 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2015-08-13 18:42 - 2015-08-13 18:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2015-08-13 18:42 - 2015-08-13 18:42 - 00000000 ____D C:\Program Files\CPUID
2015-08-13 18:41 - 2015-08-13 18:42 - 01629552 _____ ( ) C:\Users\Bojan\Downloads\cpu-z_1.73-en.exe
2015-08-13 18:40 - 2015-08-13 18:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-08-13 18:40 - 2015-08-13 18:40 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2015-08-13 18:39 - 2015-08-13 18:39 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-08-13 18:38 - 2015-08-13 18:39 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-08-13 18:38 - 2015-08-13 18:38 - 00000000 ____D C:\Windows\PCHEALTH
2015-08-13 18:33 - 2015-08-13 18:33 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-08-13 18:33 - 2015-08-13 18:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-08-13 18:32 - 2015-08-13 18:38 - 00000000 ____D C:\Program Files\Microsoft Office
2015-08-13 18:32 - 2015-08-13 18:32 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-08-13 18:28 - 2015-08-13 18:28 - 00000000 __RHD C:\MSOCache
2015-08-13 18:26 - 2015-08-14 13:18 - 00003314 _____ C:\Windows\System32\Tasks\RsDelayLauncher_{8A34248E-7D35-4832-8378-7659E0B0A380}
2015-08-13 16:35 - 2015-08-13 16:35 - 00014777 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]microsoft.office.professional.plus.2013.32.64.bit.activator.rareabyss.torrent
2015-08-13 16:31 - 2015-08-13 16:31 - 00015925 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]microsoft.office.professional.plus.2013.64.bit.english.rareabyss.torrent
2015-08-13 16:29 - 2015-08-13 16:29 - 00024639 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]windows.10.aio.6in1.english.x86.x64.2015.by.whitedeath.teamos.torrent
2015-08-13 16:25 - 2015-08-13 16:26 - 00018826 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]terminator.genisys.2015.720p.hc.hdrip.900mb.mkvcage.torrent
2015-08-13 15:11 - 2015-08-14 13:31 - 00022208 _____ C:\Users\Bojan\Desktop\FRST.txt
2015-08-13 15:10 - 2015-08-14 13:30 - 00000000 ____D C:\FRST
2015-08-13 15:09 - 2015-08-13 15:09 - 02173952 _____ (Farbar) C:\Users\Bojan\Downloads\FRST64.exe
2015-08-13 15:09 - 2015-08-13 15:09 - 02173952 _____ (Farbar) C:\Users\Bojan\Desktop\FRST64.exe
2015-08-13 13:59 - 2015-08-13 13:59 - 00000000 ____D C:\Program Files (x86)\Origin Games
2015-08-13 13:57 - 2015-08-13 13:59 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Origin
2015-08-13 13:57 - 2015-08-13 13:59 - 00000000 ____D C:\Users\Panic\AppData\Local\Origin
2015-08-13 13:53 - 2015-08-13 13:56 - 99426288 _____ (Electronic Arts, Inc.) C:\Users\Panic\Downloads\OriginSetup.exe
2015-08-13 13:50 - 2015-08-13 13:56 - 00000000 ____D C:\Program Files (x86)\Origin
2015-08-13 13:50 - 2015-08-13 13:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2015-08-13 13:50 - 2015-08-13 13:50 - 00000000 ____D C:\ProgramData\Electronic Arts
2015-08-13 13:48 - 2015-08-13 13:50 - 17116168 _____ (Electronic Arts, Inc.) C:\Users\Panic\Downloads\OriginThinSetup.exe
2015-08-13 13:37 - 2015-08-13 13:37 - 00030603 _____ C:\Users\Panic\Downloads\F3BD768C6116F0787D7A079434D0EDBC2E8EB592.torrent
2015-08-13 12:37 - 2015-08-13 12:37 - 00000000 ____D C:\Users\Panic\Documents\Euro Truck Simulator 2
2015-08-13 11:46 - 2015-08-13 11:46 - 00060738 _____ C:\Users\Panic\Downloads\[kat.cr]adobe.flash.professional.cs6.(zabranjeno).torrent
2015-08-13 11:35 - 2015-08-13 11:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件
2015-08-13 11:25 - 2015-08-14 13:24 - 00000000 ___RD C:\RavBin
2015-08-13 11:25 - 2015-08-13 11:23 - 00091928 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\SysWOW64\vpatch.dll
2015-08-13 11:10 - 2015-08-13 11:21 - 00000000 ____D C:\Users\Panic\Desktop\ggggggggg
2015-08-12 14:57 - 2015-08-13 10:58 - 00000000 ____D C:\QMDownload
2015-08-12 14:47 - 2015-08-14 13:27 - 00028984 _____ (Tencent) C:\Windows\SysWOW64\Drivers\TS888x64.sys
2015-08-12 14:47 - 2015-08-12 15:10 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Tencent
2015-08-12 14:35 - 2015-08-13 10:56 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Tencent
2015-08-12 14:35 - 2015-08-12 14:49 - 00000000 ____D C:\ProgramData\Tencent
2015-08-12 14:35 - 2015-08-12 14:35 - 00174392 _____ (Tencent Technology(Shenzhen) Company Limited) C:\Windows\system32\Drivers\TAOKernel64.sys
2015-08-12 14:35 - 2015-08-12 14:35 - 00099640 _____ (Tencent) C:\Windows\system32\Drivers\TAOAccelerator64.sys
2015-08-12 14:35 - 2015-08-12 14:35 - 00087864 _____ (电脑管家) C:\Windows\system32\Drivers\TFsFltX64.sys
2015-08-12 14:35 - 2015-08-12 14:35 - 00038200 _____ (电脑管家) C:\Windows\system32\Drivers\TSSKX64.sys
2015-08-12 14:35 - 2015-08-12 14:35 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
2015-08-12 14:35 - 2015-08-12 14:35 - 00000000 ____D C:\ProgramData\TXQMPC
2015-08-12 14:35 - 2015-08-12 14:35 - 00000000 ____D C:\Program Files\Common Files\Tencent
2015-08-12 14:35 - 2015-08-12 14:35 - 00000000 ____D C:\Program Files (x86)\Tencent
2015-08-12 14:15 - 2015-08-12 14:15 - 00000000 ____D C:\Users\Panic\AppData\Roaming\360safe
2015-08-12 14:14 - 2015-08-12 14:14 - 00003820 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1439381649
2015-08-12 14:14 - 2015-08-12 14:14 - 00001139 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-08-12 14:14 - 2015-08-12 14:14 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Opera Software
2015-08-12 14:14 - 2015-08-12 14:14 - 00000000 ____D C:\Users\Panic\AppData\Local\Opera Software
2015-08-12 14:13 - 2015-08-12 14:14 - 00552951 _____ C:\Users\Panic\Downloads\Adobe Flash Professional Cs6 Serial number (zabranjeno) Download Full__13150_i1579057194_il52452.exe.zip
2015-08-12 14:13 - 2015-08-12 14:13 - 00552951 _____ C:\Users\Panic\Downloads\Adobe Flash Professional Cs6 Serial number (zabranjeno) Download Full__13150_i1579057052_il52452.exe.zip
2015-08-12 14:13 - 2015-08-12 14:13 - 00552951 _____ C:\Users\Panic\Downloads\Adobe Flash Professional Cs6 Serial number (zabranjeno) Download Full__13150_i1579056913_il52452.exe.zip
2015-08-12 14:12 - 2015-08-12 14:12 - 00552895 _____ C:\Users\Panic\Downloads\Adobe flash professional CS6 (zabranjeno) Serial number__13150_i1579056358_il26088.exe.zip
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ___HD C:\sohucache
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ____D C:\Users\Panic\Documents\搜狐影音
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ____D C:\Users\Panic\Documents\ËѺüÓ°Òô
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ____D C:\Users\Panic\AppData\Local\Temp尰
2015-08-12 14:12 - 2015-08-12 14:12 - 00000000 ____D C:\SHDownload
2015-08-12 14:11 - 2015-08-14 13:27 - 00000000 ____D C:\ProgramData\Rising
2015-08-12 14:10 - 2015-08-13 10:33 - 00000000 ____D C:\Program Files (x86)\fr
2015-08-12 14:09 - 2015-08-12 14:09 - 00552931 _____ C:\Users\Panic\Downloads\Adobe flash professional CS6 (zabranjeno) Serial number download__13150_i1579054862_il10186.exe.zip
2015-08-12 12:44 - 2015-08-12 12:44 - 00000000 ____D C:\Users\Panic\Desktop\ijhp
2015-08-11 20:05 - 2015-08-13 16:19 - 00000000 ____D C:\Users\Bojan\Documents\Euro Truck Simulator 2
2015-08-11 20:05 - 2015-08-11 20:05 - 00001513 _____ C:\Users\Bojan\Desktop\Euro Truck Simulator 2 (x64).lnk
2015-08-11 20:05 - 2015-08-11 20:05 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Euro Truck Simulator 2
2015-08-11 20:05 - 2015-08-11 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2015-08-11 19:38 - 2015-08-11 19:38 - 00000000 ____D C:\Program Files (x86)\R.G. Mechanics
2015-08-11 19:31 - 2015-08-11 19:31 - 00000000 ____D C:\ProgramData\2DBoy
2015-08-11 19:30 - 2015-08-11 19:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldOfGoo
2015-08-11 19:30 - 2015-08-11 19:30 - 00000000 ____D C:\Program Files (x86)\WorldOfGoo
2015-08-11 19:25 - 2015-08-11 19:24 - 14406509 _____ C:\Users\Bojan\Desktop\Level 100.rar
2015-08-11 19:16 - 2015-08-11 19:16 - 00003584 _____ C:\Users\Bojan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-11 19:11 - 2015-08-11 19:24 - 14406509 _____ C:\Users\Bojan\Downloads\Level 100.rar
2015-08-11 19:09 - 2015-08-11 19:09 - 00017148 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]euro.truck.simulator.2.v.1.19.2.1s.27.dlc.repack.by.r.g.Мechanics.torrent
2015-08-11 16:33 - 2015-08-11 16:33 - 00016240 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]bullet.for.my.valentine.venom.2015.320ak.torrent
2015-08-11 14:08 - 2015-08-11 14:09 - 00000000 ____D C:\Users\Panic\Desktop\G
2015-08-11 10:46 - 2015-08-11 14:01 - 00006144 _____ C:\Users\Panic\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-11 10:39 - 2015-08-11 10:39 - 50602780 _____ C:\Users\Panic\Desktop\Title 01_1.avi
2015-08-11 09:52 - 2015-08-11 09:54 - 68336662 _____ C:\Users\Panic\Downloads\WidescreenAssets.libzip
2015-08-10 16:26 - 2015-08-10 14:09 - 78581208 _____ C:\Users\Panic\Desktop\FILE0734.MOV
2015-08-10 15:51 - 2015-08-10 15:51 - 15060669 _____ C:\Users\Panic\Desktop\Theme_-_Playing_with_Fire.libzip
2015-08-10 15:50 - 2015-08-10 15:51 - 15060669 _____ C:\Users\Panic\Downloads\Theme_-_Playing_with_Fire.libzip
2015-08-10 15:47 - 2015-08-10 16:30 - 00000000 ____D C:\Users\Panic\Documents\ACDSee Video Converter Pro 4.1
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\ProgramData\TechSmith
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\ProgramData\regid.1995-08.com.techsmith
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\Program Files (x86)\TechSmith
2015-08-10 15:44 - 2015-08-10 15:44 - 00000000 ____D C:\Program Files (x86)\QuickTime
2015-08-10 15:43 - 2015-08-10 15:43 - 00000000 ____D C:\Windows\system32\appmgmt
2015-08-10 15:04 - 2015-08-10 15:04 - 01345555 _____ C:\Users\Panic\Documents\INTRO.mp4
2015-08-10 15:04 - 2015-08-10 15:04 - 00000000 ____D C:\Users\Panic\Desktop\Camtasia Studio FULL 8.1.2 + Serials [ThumperDC]
2015-08-10 15:04 - 2013-04-13 01:00 - 00002324 _____ C:\Users\Panic\Desktop\wWw.ThumperDC.COM.txt
2015-08-10 14:59 - 2015-08-10 15:22 - 00000000 ____D C:\Users\Panic\Desktop\lllllllllllllllll
2015-08-10 14:56 - 2015-08-10 14:56 - 00020079 _____ C:\Users\Panic\Downloads\E8AC9B2DB72667AE716E5D0938241CDDC6D22B2A.torrent
2015-08-09 16:10 - 2015-08-09 16:10 - 00001908 _____ C:\Windows\diagwrn.xml
2015-08-09 16:10 - 2015-08-09 16:10 - 00001908 _____ C:\Windows\diagerr.xml
2015-08-09 08:27 - 2015-08-09 08:27 - 00028218 _____ C:\Users\Bojan\Downloads\[kickasstorrent.proxyindex.net]microsoft.windows.10.6in1.aio.english.full.updated.8.5.15.preactivated.2015.by.whitedeath.torrent
2015-08-08 16:11 - 2015-08-08 16:11 - 05760677 _____ C:\Users\Bojan\Downloads\Sky-Cubes-Survival-Map.zip
2015-08-08 15:40 - 2015-08-08 15:40 - 02727286 _____ C:\Users\Bojan\Downloads\Megacube.zip
2015-08-08 15:13 - 2015-08-08 15:13 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\java
2015-08-08 15:11 - 2015-08-08 15:11 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-08-08 15:11 - 2015-08-08 15:11 - 00000000 ____D C:\ProgramData\Sun
2015-08-08 15:11 - 2015-08-08 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-08-08 15:10 - 2015-08-08 15:10 - 00000000 ____D C:\ProgramData\Oracle
2015-08-08 15:10 - 2015-08-08 15:10 - 00000000 ____D C:\Program Files (x86)\Java
2015-08-08 15:09 - 2015-08-08 15:09 - 00563296 _____ (Oracle Corporation) C:\Users\Bojan\Downloads\chromeinstall-8u51 (1).exe
2015-08-08 15:08 - 2015-08-08 15:08 - 00563296 _____ (Oracle Corporation) C:\Users\Bojan\Downloads\chromeinstall-8u51.exe
2015-08-08 15:08 - 2015-08-08 15:08 - 00001713 _____ C:\Users\Bojan\Desktop\Minecraft Launcher - Shortcut.lnk
2015-08-08 15:06 - 2015-08-08 15:14 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\.minecraft
2015-08-08 15:06 - 2015-08-08 15:06 - 00000000 ____D C:\Users\Bojan\Desktop\New folder
2015-08-08 13:09 - 2015-08-08 13:09 - 00000000 ____D C:\Users\Panic\Documents\My Spore Creations
2015-08-08 13:09 - 2015-08-08 13:09 - 00000000 ____D C:\Users\Panic\AppData\Roaming\SPORE
2015-08-08 13:00 - 2015-08-08 13:00 - 00000000 ____D C:\ProgramData\CanonIJ
2015-08-08 12:59 - 2015-08-08 12:59 - 00000000 ___HD C:\ProgramData\CanonIJScan
2015-08-08 12:59 - 2015-08-08 12:59 - 00000000 _____ C:\Users\Panic\Sti_Trace.log
2015-08-08 12:58 - 2015-08-08 12:59 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Canon
2015-08-08 12:55 - 2015-08-08 12:55 - 00000000 ____D C:\Program Files (x86)\Spore
2015-08-08 12:47 - 2015-08-08 13:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spore
2015-08-08 11:20 - 2015-08-12 12:38 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-08-08 11:12 - 2015-08-08 11:12 - 00015904 _____ C:\Users\Panic\Downloads\78CFD6990A17E78858605A65F1EF5433B7B30CBC.torrent
2015-08-07 14:43 - 2015-08-07 14:43 - 00165488 _____ C:\Users\Bojan\Downloads\0A35C3B00A315B9ED41473B036B8CE82F8EA2F34.torrent
2015-08-07 14:25 - 2015-08-07 14:25 - 00014505 _____ C:\Users\Bojan\Downloads\[kat.cr]ellusionist.wayne.houchin.stigmata.torrent
2015-08-07 14:19 - 2015-08-07 14:19 - 00013611 _____ C:\Users\Bojan\Downloads\[www.seedpeer.eu] Magic Tricks Stigmata By Wayne Houchin Mp4.SEEDPEER.torrent
2015-08-07 13:13 - 2015-08-07 13:38 - 00000000 ____D C:\Users\Panic\Desktop\Five Nights At Freddy's PART 4 zamalo da predjem
2015-08-07 10:55 - 2015-08-14 13:16 - 00000000 ____D C:\ProgramData\Origin
2015-08-07 10:49 - 2015-08-07 11:21 - 00000000 ____D C:\Users\Panic\Desktop\rr
2015-08-06 20:08 - 2015-08-06 20:08 - 00000000 ___HD C:\Users\Panic\Desktop\[Originals]
2015-08-06 20:00 - 2015-08-10 15:47 - 00000000 ____D C:\Users\Panic\AppData\Roaming\ACD Systems
2015-08-06 18:23 - 2013-01-13 23:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 23:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-08-06 18:23 - 2013-01-13 22:22 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-08-06 18:23 - 2013-01-13 22:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-08-06 18:23 - 2013-01-13 22:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-08-06 18:23 - 2013-01-13 22:08 - 01504768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-08-06 18:23 - 2013-01-13 22:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-08-06 18:23 - 2013-01-13 21:59 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-08-06 18:23 - 2013-01-13 21:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-08-06 18:23 - 2013-01-13 21:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-08-06 18:23 - 2013-01-13 21:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-08-06 18:23 - 2013-01-13 21:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-08-06 18:23 - 2013-01-13 21:51 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-08-06 18:23 - 2013-01-13 21:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-08-06 18:23 - 2013-01-13 21:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-08-06 18:23 - 2013-01-13 21:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-08-06 18:23 - 2013-01-13 21:43 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-08-06 18:23 - 2013-01-13 21:38 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-08-06 18:23 - 2013-01-13 21:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-08-06 18:23 - 2013-01-13 21:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-08-06 18:23 - 2013-01-13 21:37 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-08-06 18:23 - 2013-01-13 21:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-08-06 18:23 - 2013-01-13 21:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-08-06 18:23 - 2013-01-13 21:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-08-06 18:23 - 2013-01-13 21:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-08-06 18:23 - 2013-01-13 21:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-08-06 18:23 - 2013-01-13 21:15 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-08-06 18:23 - 2013-01-13 21:10 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-08-06 18:23 - 2013-01-13 21:02 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-08-06 18:23 - 2013-01-13 20:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-08-06 18:23 - 2013-01-13 20:32 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-08-06 18:23 - 2013-01-13 20:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-08-06 18:23 - 2013-01-13 19:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-08-06 18:23 - 2013-01-13 19:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-08-06 18:23 - 2013-01-04 08:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-08-06 18:23 - 2013-01-04 08:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-08-06 18:22 - 2015-08-06 18:22 - 11840839 _____ C:\Users\Bojan\Downloads\Windows6.1-KB2670838-x64.msu
2015-08-06 18:22 - 2015-08-06 18:22 - 05911327 _____ C:\Users\Bojan\Downloads\Windows6.1-KB2670838-x86.msu
2015-08-06 18:11 - 2015-08-06 18:11 - 01118920 _____ (Microsoft Corporation) C:\Users\Bojan\Downloads\NDP452-KB2901954-Web.exe
2015-08-06 18:10 - 2015-08-13 18:50 - 00000000 ____D C:\Users\Bojan\AppData\Local\CrashDumps
2015-08-06 17:22 - 2015-08-06 17:22 - 00927799 _____ C:\Users\Bojan\Downloads\d3dcompiler_43.zip
2015-08-06 17:21 - 2015-08-06 17:21 - 00042664 _____ C:\Users\Bojan\Downloads\xinput1_3.zip
2015-08-06 15:37 - 2015-08-06 15:38 - 00600302 _____ C:\Users\Bojan\Downloads\Awesome Piston House!(2).zip
2015-08-06 13:51 - 2015-08-06 13:51 - 00022084 _____ C:\Users\Bojan\Downloads\[www.seedpeer.eu] Wayne Houchin.SEEDPEER.torrent
2015-08-06 13:33 - 2015-08-06 13:33 - 00022309 _____ C:\Users\Bojan\Downloads\90889E193F5117EF01A19541BA182D83247941BA.torrent
2015-08-06 13:27 - 2015-08-06 14:26 - 00000000 ____D C:\KVRT_Data
2015-08-06 13:25 - 2015-08-06 13:25 - 03617312 _____ (Facebook Inc.) C:\Users\Bojan\Downloads\Kaspersky_T838776512885641T_.exe
2015-08-06 13:13 - 2015-08-12 12:11 - 00000204 _____ C:\Users\Panic\Desktop\pvz garden warframe.txt
2015-08-06 13:12 - 2015-08-06 13:13 - 00014737 _____ C:\Users\Panic\Downloads\Plants.vs..Zombies.Garden.Warfare.(x64).torrent
2015-08-06 13:12 - 2015-08-06 13:12 - 01993056 _____ (BitTorrent Inc.) C:\Users\Panic\Downloads\uTorrent (2).exe
2015-08-06 13:11 - 2015-08-06 13:11 - 01993056 _____ (BitTorrent Inc.) C:\Users\Panic\Downloads\uTorrent.exe
2015-08-06 13:11 - 2015-08-06 13:11 - 01993056 _____ (BitTorrent Inc.) C:\Users\Panic\Downloads\uTorrent (1).exe
2015-08-06 13:09 - 2015-08-06 13:09 - 00570019 _____ C:\Users\Panic\Downloads\Plants Vs Zombies Garden Warfa Downloader__3687_i1574453241_il640359.exe.zip
2015-08-06 13:08 - 2015-08-06 13:08 - 00245488 _____ C:\Users\Panic\Downloads\Plants vs. Zombies Garden Warfare Full Version (1).zip
2015-08-06 12:59 - 2015-08-06 13:00 - 00581351 _____ C:\Users\Panic\Downloads\Plants Vs Zombies Garden Warfa Downloader__3687_i1574447093_il638893.exe.zip
2015-08-06 12:56 - 2015-08-06 12:56 - 00246635 _____ C:\Users\Panic\Downloads\Plants vs. Zombies Garden Warfare Full Version.zip
2015-08-06 11:57 - 2015-08-06 12:35 - 00000000 ____D C:\Users\Panic\Desktop\fff
2015-08-06 11:27 - 2015-08-06 11:27 - 82955830 _____ C:\Users\Panic\Desktop\Broforce.zip
2015-08-06 11:27 - 2015-08-06 11:27 - 00000000 ____D C:\Users\Panic\Desktop\Broforce
2015-08-06 11:25 - 2015-08-06 11:27 - 82955830 _____ C:\Users\Panic\Downloads\Broforce.zip
2015-08-06 11:17 - 2015-08-06 11:18 - 00000000 ____D C:\Users\Panic\Desktop\za kraj klipa
2015-08-05 20:55 - 2015-08-05 21:00 - 00000000 ____D C:\Users\Panic\Desktop\How To Download Five Nights At Freddy's 4 (kako skinuti five nights at freddy's 4)
2015-08-05 18:13 - 2015-08-05 18:13 - 00019599 _____ C:\Users\Bojan\Downloads\[kat.cr]t11.wayne.houchin.control.torrent
2015-08-05 17:37 - 2015-08-05 17:37 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2015-08-05 15:01 - 2015-08-05 15:12 - 00000000 ____D C:\Users\Panic\Desktop\fghjklop
2015-08-05 13:37 - 2015-08-05 13:46 - 00000000 ____D C:\Fraps
2015-08-05 13:37 - 2015-08-05 13:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2015-08-05 13:35 - 2015-08-05 13:35 - 00003772 _____ C:\Users\Panic\Downloads\41006003DAB4357F89A727E69DE82C96523F7C8C.torrent
2015-08-05 09:27 - 2015-08-05 09:27 - 00001790 _____ C:\Users\Panic\Desktop\Adobe Premiere Pro - Shortcut.lnk
2015-08-05 09:25 - 2015-08-05 09:25 - 00003502 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Panic-PC-Panic
2015-08-05 09:24 - 2015-08-05 09:24 - 00000000 ____D C:\Users\Panic\Documents\Adobe
2015-08-05 09:21 - 2015-08-05 09:21 - 00001106 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2015.lnk
2015-08-05 09:21 - 2015-08-05 09:21 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2015-08-05 09:20 - 2015-08-05 09:20 - 00000000 ____D C:\Program Files\Adobe
2015-08-05 09:19 - 2015-08-05 09:21 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-08-05 09:18 - 2015-08-05 09:19 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-04 18:22 - 2015-08-04 18:22 - 00001559 _____ C:\Users\Public\Desktop\Moorhuhn Kart 2 XXL spielen.lnk
2015-08-04 18:22 - 2015-08-04 18:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Moorhuhn Kart 2 XXL
2015-08-04 18:22 - 2015-08-04 18:22 - 00000000 ____D C:\Phenomedia AG
2015-08-04 17:57 - 2015-08-04 17:57 - 00012433 _____ C:\Users\Panic\Downloads\5DF04F536CF50D105FB82F8CE19484022E0FC1A9.torrent
2015-08-04 15:05 - 2015-08-04 15:05 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\AVG
2015-08-04 14:54 - 2015-08-04 14:54 - 00000000 ____D C:\Users\Bojan\AppData\Local\Avg
2015-08-04 14:54 - 2015-08-04 14:54 - 00000000 ____D C:\Users\Bojan\AppData\Local\Adobe
2015-08-04 14:51 - 2015-08-05 09:17 - 00001534 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2015-08-04 14:49 - 2015-08-14 09:19 - 00000000 ____D C:\Users\Panic\AppData\Local\Adobe
2015-08-04 14:49 - 2015-08-06 09:23 - 00000000 ____D C:\ProgramData\Adobe
2015-08-04 13:51 - 2015-08-04 14:01 - 00000000 ____D C:\Users\Panic\Desktop\Untitled
2015-08-04 13:43 - 2015-08-04 13:43 - 00000000 ____D C:\Users\Panic\AppData\Local\CrashDumps
2015-08-04 11:29 - 2015-08-04 11:29 - 00011054 _____ C:\Users\Panic\Downloads\6E88B3F25BA49D483D740A652BF013C341BC5373.torrent
2015-08-04 11:22 - 2015-08-04 11:22 - 00058265 _____ C:\Users\Panic\Downloads\6DB2C5CA436AA05CC1DF239CCEC6D4E17F15A4B7.torrent
2015-08-04 10:19 - 2015-08-04 10:47 - 00000000 ____D C:\Users\Panic\Desktop\rrrrrrrrr
2015-08-03 20:55 - 2015-08-07 13:10 - 00018987 _____ C:\Users\Panic\Desktop\fnaf.camproj
2015-08-03 20:10 - 2015-08-03 20:11 - 00000000 ____D C:\Users\Panic\Desktop\intro
2015-08-03 15:56 - 2015-08-03 15:57 - 00000000 ____D C:\Users\Panic\AppData\Roaming\BSplayer PRO
2015-08-03 15:54 - 2015-08-02 18:17 - 79596300 _____ C:\Users\Panic\Desktop\FILE0724.MOV
2015-08-03 15:53 - 2015-08-03 15:53 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2015-08-03 15:42 - 2015-08-12 11:34 - 00000000 ____D C:\Users\Panic\Documents\Camtasia Studio
2015-08-03 15:42 - 2015-08-03 15:42 - 00000000 ____D C:\Users\Panic\AppData\Roaming\TechSmith
2015-08-03 15:42 - 2015-08-03 15:42 - 00000000 ____D C:\Users\Panic\AppData\Local\TechSmith
2015-08-03 15:38 - 2015-08-03 20:41 - 00000000 ____D C:\Users\Panic\Desktop\TechSmith Camtasia Studio 8.4.4 Incl. Serials [TechTools.Net]
2015-08-03 15:38 - 2014-11-23 16:41 - 00000189 _____ C:\Users\Panic\Desktop\Serials.txt
2015-08-03 15:38 - 2014-11-13 16:16 - 00000037 _____ C:\Users\Panic\Desktop\File download from TechTools.NET.txt
2015-08-03 15:32 - 2015-08-03 15:32 - 00020760 _____ C:\Users\Panic\Downloads\97C4B0B22EA0B2C6F5D6D87FA8F44B6647CD692E (1).torrent
2015-08-03 15:31 - 2015-08-03 15:31 - 00020760 _____ C:\Users\Panic\Downloads\97C4B0B22EA0B2C6F5D6D87FA8F44B6647CD692E.torrent
2015-08-03 15:28 - 2015-08-03 15:28 - 00000000 ____D C:\Users\Panic\AppData\Roaming\MMFApplications
2015-08-03 15:28 - 2015-08-03 15:28 - 00000000 ____D C:\Users\Panic\AppData\Roaming\360TotalSecurity
2015-08-03 15:27 - 2015-08-03 15:27 - 482401428 _____ C:\Users\Panic\Downloads\IGG-Five.Nights.at.Freddys.4.v1.022 (1).rar
2015-08-03 15:27 - 2015-08-03 15:27 - 482401428 _____ C:\Users\Panic\Desktop\IGG-Five.Nights.at.Freddys.4.v1.022 (1).rar
2015-08-03 15:27 - 2015-07-28 14:48 - 00000000 ____D C:\Users\Panic\Desktop\IGG-Five.Nights.at.Freddys.4.v1.022
2015-08-03 15:25 - 2015-08-03 15:25 - 00000000 ____D C:\Windows\System32\Tasks\Lenovo
2015-08-03 15:25 - 2015-08-03 15:25 - 00000000 ____D C:\Windows\Downloaded Installations
2015-08-03 15:25 - 2015-08-03 15:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2015-08-03 15:25 - 2015-08-03 15:25 - 00000000 ____D C:\Program Files (x86)\Lenovo
2015-08-03 15:24 - 2015-08-03 15:24 - 00000813 _____ C:\Users\Panic\Desktop\µTorrent.lnk
2015-08-03 15:24 - 2015-08-03 15:24 - 00000793 _____ C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-08-03 15:15 - 2015-08-14 13:16 - 00000000 ____D C:\Users\Panic\AppData\Roaming\uTorrent
2015-08-03 14:29 - 2015-08-05 09:25 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Adobe
2015-08-03 14:29 - 2015-08-03 14:29 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Macromedia
2015-08-03 14:29 - 2015-08-03 14:29 - 00000000 ____D C:\Users\Panic\AppData\Roaming\LolClient
2015-08-03 10:50 - 2015-08-03 10:52 - 37579720 _____ (RSUPPORT ) C:\Users\Panic\Downloads\mobizen (1).exe
2015-08-03 10:48 - 2015-08-03 10:48 - 482401428 _____ C:\Users\Panic\Downloads\IGG-Five.Nights.at.Freddys.4.v1.022.rar
2015-08-03 10:44 - 2015-08-03 10:48 - 37579720 _____ (RSUPPORT ) C:\Users\Panic\Downloads\mobizen.exe
2015-08-03 10:20 - 2015-08-03 10:20 - 00000000 ____D C:\Users\Panic\AppData\Roaming\AVG
2015-08-03 10:19 - 2015-08-03 10:19 - 00000000 ____D C:\Users\Panic\AppData\Local\Avg
2015-08-03 10:18 - 2015-08-05 09:31 - 00000000 ____D C:\ProgramData\AVG
2015-08-03 10:17 - 2015-08-03 10:17 - 00000000 ____D C:\Users\Panic\Documents\My Cheat Tables
2015-08-03 10:16 - 2015-08-03 15:24 - 00000000 ____D C:\Users\Panic\AppData\Roaming\OpenCandy
2015-08-03 10:16 - 2015-08-03 10:16 - 00001089 _____ C:\Users\Panic\Desktop\Cheat Engine.lnk
2015-08-03 10:16 - 2015-08-03 10:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.4
2015-08-03 10:16 - 2015-08-03 10:16 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.4
2015-08-03 10:13 - 2015-08-03 10:15 - 09056424 _____ (Cheat Engine ) C:\Users\Panic\Downloads\CheatEngine64.exe
2015-08-03 09:47 - 2015-08-03 09:47 - 00000000 ____D C:\ProgramData\Riot Games
2015-08-03 09:45 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2015-08-03 09:45 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2015-08-03 09:45 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2015-08-03 09:45 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2015-08-03 09:45 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2015-08-03 09:44 - 2015-08-03 09:44 - 00000000 ____D C:\Riot Games
2015-08-03 09:44 - 2015-08-03 09:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2015-08-03 09:43 - 2015-08-03 09:43 - 30993712 _____ (Riot Games) C:\Users\Panic\Downloads\LeagueofLegends_EUNE_Installer_9_15_2014 (1).exe
2015-08-03 09:41 - 2015-08-03 09:41 - 00000000 ____D C:\Users\Panic\AppData\Local\SKIDROW
2015-08-03 09:35 - 2015-08-03 09:45 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Riot Games
2015-08-03 09:34 - 2015-08-03 09:34 - 30993712 _____ (Riot Games) C:\Users\Panic\Downloads\LeagueofLegends_EUNE_Installer_9_15_2014.exe
2015-08-03 09:25 - 2015-08-14 13:27 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\55FB0724.sys
2015-08-02 19:22 - 2015-08-02 19:22 - 00000000 ____D C:\Users\Bojan\AppData\Local\SKIDROW
2015-08-02 19:18 - 2015-08-02 19:18 - 00001066 _____ C:\Users\Bojan\Desktop\Super Hexagon.lnk
2015-08-02 19:18 - 2015-08-02 19:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Hexagon
2015-08-02 19:18 - 2015-08-02 19:18 - 00000000 ____D C:\Program Files (x86)\Super Hexagon
2015-08-02 19:08 - 2015-08-02 19:08 - 00015360 _____ C:\Users\Bojan\Downloads\[kickass.proxyindex.net]super.hexagon.pxg.torrent
2015-08-02 18:31 - 2015-08-02 18:31 - 00012036 _____ C:\Users\Bojan\Downloads\[kat.cr]criss.angel.masterminds.vol.1.vol.2.torrent
2015-08-02 17:24 - 2015-08-12 14:32 - 00000000 __SHD C:\ProgramData\360Quarant
2015-08-02 17:24 - 2015-08-12 14:32 - 00000000 __SHD C:\$360Section
2015-08-02 13:48 - 2015-08-02 13:48 - 00305832 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys
2015-08-02 13:48 - 2015-08-02 13:48 - 00000036 _____ C:\Users\Bojan\AppData\Local\housecall.guid.cache
2015-08-02 13:47 - 2015-08-02 13:47 - 03617312 _____ (Facebook Inc.) C:\Users\Bojan\Downloads\Trendmicro_T836901839739775T_.exe
2015-08-02 12:57 - 2015-08-02 12:57 - 00001267 _____ C:\Users\Panic\Desktop\Nero Recode.lnk
2015-08-02 12:57 - 2015-08-02 12:57 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Nero
2015-08-02 12:57 - 2015-08-02 12:57 - 00000000 ____D C:\Users\Panic\AppData\Local\Nero_AG
2015-08-02 03:22 - 2015-08-01 20:26 - 00000000 ____D C:\Windows\Panther
2015-08-02 02:25 - 2015-08-14 13:30 - 00147349 _____ C:\Windows\WindowsUpdate.log
2015-08-02 02:25 - 2015-08-02 02:25 - 00001355 _____ C:\Windows\TSSysprep.log
2015-08-02 02:25 - 2015-08-02 02:25 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2015-08-02 02:25 - 2015-08-02 02:25 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2015-08-01 21:00 - 2015-08-01 21:00 - 00002123 _____ C:\Users\Panic\Desktop\MP Navigator EX 4.0.lnk
2015-08-01 21:00 - 2015-08-01 21:00 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Mozilla
2015-08-01 21:00 - 2015-08-01 21:00 - 00000000 ____D C:\Users\Panic\AppData\Local\Mozilla
2015-08-01 20:59 - 2015-08-01 20:59 - 00000000 ____D C:\Users\Panic\Tracing
2015-08-01 20:58 - 2015-08-01 20:58 - 00000000 ____D C:\Users\Panic\AppData\Local\Skype
2015-08-01 20:57 - 2015-08-14 13:03 - 00000000 ____D C:\Users\Panic\AppData\Roaming\Skype
2015-08-01 20:57 - 2015-08-06 20:01 - 00000000 ____D C:\Users\Panic\AppData\Local\ACD Systems
2015-08-01 20:57 - 2015-08-06 10:08 - 00000000 ____D C:\Users\Panic\AppData\Local\Google
2015-08-01 20:57 - 2015-08-01 20:57 - 00000000 ___HD C:\ProgramData\CanonIJSolutionMenuEX
2015-08-01 20:57 - 2015-08-01 20:57 - 00000000 ____D C:\Users\Panic\AppData\Local\DFX
2015-08-01 20:49 - 2015-08-01 20:49 - 00002123 _____ C:\Users\Bojan\Desktop\MP Navigator EX 4.0.lnk
2015-08-01 20:43 - 2015-08-01 20:43 - 00000000 ____D C:\Program Files\EPSON
2015-08-01 20:42 - 2015-08-01 20:44 - 00000000 ____D C:\ProgramData\EPSON
2015-08-01 20:42 - 2008-08-08 04:09 - 00108032 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_L12067.DLL
2015-08-01 20:42 - 2005-04-12 03:01 - 00056320 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\EBPEPS2B.DLL
2015-08-01 20:39 - 2015-08-14 13:18 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-08-01 20:39 - 2015-08-08 13:00 - 00000000 ____D C:\ProgramData\CanonIJPLM
2015-08-01 20:39 - 2015-08-01 20:39 - 00002079 _____ C:\Users\Public\Desktop\Canon Solution Menu EX.lnk
2015-08-01 20:39 - 2015-08-01 20:39 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-01 20:39 - 2015-08-01 20:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-08-01 20:39 - 2015-08-01 20:39 - 00000000 ____D C:\ProgramData\CanonIJWSpt
2015-08-01 20:39 - 2015-08-01 20:39 - 00000000 ____D C:\Program Files\Common Files\CANON
2015-08-01 20:39 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-08-01 20:39 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-08-01 20:39 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-08-01 20:38 - 2015-08-01 20:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2015-08-01 20:37 - 2015-08-01 20:37 - 00002378 _____ C:\Users\Public\Desktop\Canon CanoScan LiDE 110 On-screen Manual.lnk
2015-08-01 20:37 - 2015-08-01 20:37 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information
2015-08-01 20:37 - 2015-08-01 20:37 - 00000000 ___HD C:\Program Files\CanonBJ
2015-08-01 20:37 - 2015-08-01 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CanoScan LiDE 110
2015-08-01 20:37 - 2015-08-01 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon CanoScan LiDE 110 Manual
2015-08-01 20:37 - 2010-03-29 17:33 - 00514560 _____ (CANON INC.) C:\Windows\system32\CNQ2414L.dll
2015-08-01 20:37 - 2010-03-29 17:33 - 00438272 _____ (CANON INC.) C:\Windows\SysWOW64\CNQ2414L.dll
2015-08-01 20:37 - 2010-03-19 10:04 - 00393256 _____ C:\Windows\SysWOW64\CNQ2414N.DAT
2015-08-01 20:37 - 2010-03-19 10:04 - 00393256 _____ C:\Windows\system32\CNQ2414N.DAT
2015-08-01 20:37 - 2010-03-18 17:13 - 01354240 _____ (CANON INC.) C:\Windows\system32\CNQ2414C.dll
2015-08-01 20:37 - 2010-03-18 17:13 - 00112128 _____ (CANON INC.) C:\Windows\system32\CNQ2414I.dll
2015-08-01 20:37 - 2010-03-18 17:11 - 00106496 _____ (CANON INC.) C:\Windows\SysWOW64\CNQ2414U.dll
2015-08-01 20:37 - 2010-03-11 09:57 - 00248320 _____ (CANON INC.) C:\Windows\system32\CNQ2414Y.dll
2015-08-01 20:37 - 2010-01-13 15:04 - 00103424 _____ (Canon Inc.) C:\Windows\system32\CNQ2414O.dll
2015-08-01 20:37 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\Windows\system32\CNHMCA6.dll
2015-08-01 20:37 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2015-08-01 20:36 - 2015-08-01 20:38 - 00000000 ____D C:\Program Files (x86)\Canon
2015-08-01 20:34 - 2015-08-02 12:33 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-01 20:34 - 2015-08-01 20:34 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-08-01 20:33 - 2015-08-01 20:34 - 00000124 _____ C:\Users\Bojan\Documents\ax_files.xml
2015-08-01 20:30 - 2015-08-01 20:30 - 00001184 _____ C:\Users\Public\Desktop\Alcohol 120%.lnk
2015-08-01 20:30 - 2015-08-01 20:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alcohol 120%
2015-08-01 20:30 - 2015-08-01 20:30 - 00000000 ____D C:\Program Files (x86)\Alcohol Soft
2015-08-01 20:28 - 2015-08-13 18:49 - 00111912 _____ C:\Users\Bojan\AppData\Local\GDIPFONTCACHEV1.DAT
2015-08-01 20:28 - 2015-08-09 16:10 - 00000000 _____ C:\Windows\setuperr.log
2015-08-01 20:27 - 2015-08-14 09:08 - 05106448 _____ C:\Windows\system32\FNTCACHE.DAT
2015-08-01 20:25 - 2015-08-01 20:25 - 00381440 _____ (Duplex Secure Ltd.) C:\Windows\system32\Drivers\sptd.sys
2015-08-01 20:23 - 2015-08-01 20:23 - 00000000 ____D C:\Windows\Tasks\360Disabled
2015-08-01 20:23 - 2015-08-01 20:23 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\360safe
2015-08-01 20:22 - 2015-08-12 14:46 - 00000000 ____D C:\ProgramData\360TotalSecurity
2015-08-01 20:22 - 2015-08-01 20:23 - 00000000 ____D C:\ProgramData\360safe
2015-08-01 20:22 - 2015-08-01 20:22 - 00001153 _____ C:\Users\Public\Desktop\360 Total Security.lnk
2015-08-01 20:22 - 2015-08-01 20:22 - 00000000 _RSHD C:\360SANDBOX
2015-08-01 20:22 - 2015-08-01 20:22 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\360TotalSecurity
2015-08-01 20:22 - 2015-08-01 20:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center
2015-08-01 20:22 - 2015-08-01 20:22 - 00000000 ____D C:\Program Files (x86)\360
2015-08-01 20:22 - 2015-07-31 13:22 - 00363088 _____ (360.cn) C:\Windows\system32\Drivers\360fsflt.sys
2015-08-01 20:22 - 2015-07-31 13:22 - 00319568 _____ (360.cn) C:\Windows\system32\Drivers\360Box64.sys
2015-08-01 20:22 - 2015-07-31 13:22 - 00178768 _____ (360.cn) C:\Windows\system32\Drivers\BAPIDRV64.SYS
2015-08-01 20:22 - 2015-07-31 13:22 - 00137296 _____ (360.cn) C:\Windows\system32\Drivers\360AntiHacker64.sys
2015-08-01 20:22 - 2015-07-31 13:22 - 00077904 _____ (360.cn) C:\Windows\system32\Drivers\360AvFlt.sys
2015-08-01 20:22 - 2015-07-31 13:22 - 00040520 _____ (360.cn) C:\Windows\system32\Drivers\360Camera64.sys
2015-08-01 20:15 - 2015-08-01 20:15 - 39308920 _____ C:\Users\Bojan\Downloads\360TS_Setup.exe
2015-08-01 20:15 - 2015-08-01 20:15 - 01339000 _____ (QIHU 360 SOFTWARE CO. LIMITED) C:\Users\Bojan\Downloads\360TS_Setup_Mini.exe
2015-08-01 20:03 - 2015-08-01 20:06 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\KW
2015-08-01 19:58 - 2015-08-01 20:15 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2015-08-01 19:53 - 2015-08-01 19:53 - 00001386 _____ C:\Users\Public\Desktop\ACDSee Video Converter Pro 4.1.lnk
2015-08-01 19:53 - 2015-08-01 19:53 - 00000000 ____D C:\Users\Bojan\Documents\ACDSee Video Converter Pro 4.1
2015-08-01 19:52 - 2015-08-01 19:52 - 00000000 ____D C:\Program Files (x86)\ACD Systems
2015-08-01 19:44 - 2015-08-08 13:07 - 00032290 _____ C:\Windows\DirectX.log
2015-08-01 19:44 - 2015-08-01 19:53 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:46 - 00000000 ____D C:\Users\Bojan\AppData\Local\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:44 - 00002281 _____ C:\Users\Public\Desktop\ACDSee Ultimate 8 (64-bit).lnk
2015-08-01 19:44 - 2015-08-01 19:44 - 00000000 ____D C:\ProgramData\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:44 - 00000000 ____D C:\Program Files\Common Files\ACD Systems
2015-08-01 19:44 - 2015-08-01 19:44 - 00000000 ____D C:\Program Files\ACD Systems
2015-08-01 19:44 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2015-08-01 19:44 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2015-08-01 19:43 - 2015-08-01 19:43 - 00000000 ____D C:\Users\Bojan\AppData\Local\Downloaded Installations
2015-08-01 19:39 - 2015-08-01 20:25 - 00003796 _____ C:\Windows\System32\Tasks\klcp_update
2015-08-01 19:39 - 2015-08-01 19:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2015-08-01 19:39 - 2015-08-01 19:39 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2015-08-01 19:36 - 2015-08-01 19:36 - 00001825 _____ C:\Users\Public\Desktop\jetVideo.lnk
2015-08-01 19:36 - 2015-08-01 19:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\jetVideo
2015-08-01 19:36 - 2015-08-01 19:36 - 00000000 ____D C:\Program Files (x86)\JetVideo
2015-08-01 19:25 - 2015-08-01 19:25 - 00001153 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player PRO.lnk
2015-08-01 19:25 - 2015-08-01 19:25 - 00001147 _____ C:\Users\Public\Desktop\BS.Player PRO.lnk
2015-08-01 19:25 - 2015-08-01 19:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webteh
2015-08-01 19:23 - 2015-08-01 20:26 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Notepad++
2015-08-01 19:23 - 2015-08-01 19:23 - 05357534 _____ C:\Users\Bojan\Downloads\npp.6.8.Installer.exe
2015-08-01 19:23 - 2015-08-01 19:23 - 00001057 _____ C:\Users\Panic\Desktop\Notepad++.lnk
2015-08-01 19:23 - 2015-08-01 19:23 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-08-01 19:23 - 2015-08-01 19:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-08-01 19:23 - 2015-08-01 19:23 - 00000000 ____D C:\Program Files (x86)\Notepad++
2015-08-01 19:20 - 2015-08-01 19:20 - 00014270 _____ C:\Users\Bojan\Downloads\[kat.cr]bs.player.pro.2.67.1076.final.incl.serials.keygen.torrent
2015-08-01 19:13 - 2015-08-01 19:13 - 00014173 _____ C:\Users\Bojan\Downloads\[kat.cr]bsplayer.pro.2.64.key.keygen.core.by.senzati.torrent
2015-08-01 19:10 - 2015-08-01 19:12 - 36739868 _____ ( ) C:\Users\Bojan\Downloads\K-Lite_Codec_Pack_1130_Full.exe
2015-08-01 19:09 - 2015-08-01 19:24 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\BSplayer PRO
2015-08-01 19:09 - 2015-08-01 19:24 - 00000000 ____D C:\Program Files (x86)\Webteh
2015-08-01 19:07 - 2015-08-01 19:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2015-08-01 19:07 - 2015-08-01 19:07 - 00000000 ____D C:\Program Files\7-Zip
2015-08-01 19:06 - 2015-08-01 19:06 - 01331823 _____ (Igor Pavlov) C:\Users\Bojan\Downloads\7z1505-x64.exe
2015-08-01 19:04 - 2015-08-01 19:04 - 00002601 _____ C:\Users\Bojan\Desktop\µTorrent.lnk
2015-08-01 19:04 - 2015-08-01 19:04 - 00002601 _____ C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-08-01 19:03 - 2015-08-14 13:27 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\uTorrent
2015-08-01 19:03 - 2015-08-01 19:03 - 01993056 _____ (BitTorrent Inc.) C:\Users\Bojan\Downloads\uTorrent.exe
2015-08-01 18:58 - 2015-08-01 18:58 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Nero
2015-08-01 18:52 - 2015-08-01 18:52 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-08-01 18:52 - 2015-08-01 18:52 - 00000000 ____D C:\Program Files\Realtek
2015-08-01 18:52 - 2014-05-14 18:37 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2015-08-01 18:52 - 2014-05-14 16:00 - 01099203 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2015-08-01 18:52 - 2014-05-09 11:17 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2015-08-01 18:52 - 2014-04-30 11:34 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2015-08-01 18:52 - 2014-04-28 15:48 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2015-08-01 18:52 - 2014-04-25 13:51 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2015-08-01 18:52 - 2014-04-25 13:23 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2015-08-01 18:52 - 2014-04-10 12:19 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2015-08-01 18:52 - 2014-04-10 12:19 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2015-08-01 18:52 - 2014-04-10 12:19 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2015-08-01 18:52 - 2014-03-06 16:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2015-08-01 18:52 - 2014-02-18 17:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2015-08-01 18:52 - 2014-01-28 11:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2015-08-01 18:52 - 2014-01-08 15:25 - 00397592 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll
2015-08-01 18:52 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2015-08-01 18:52 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2015-08-01 18:52 - 2012-06-08 16:21 - 00897152 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO64.dll
2015-08-01 18:52 - 2012-06-08 16:21 - 00753280 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO32.dll
2015-08-01 18:52 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2015-08-01 18:52 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2015-08-01 18:52 - 2011-12-16 14:57 - 00065112 _____ (Creative Technology Ltd.) C:\Windows\system32\MBppld64.dll
2015-08-01 18:52 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2015-08-01 18:52 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2015-08-01 18:52 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2015-08-01 18:52 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2015-08-01 18:52 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2015-08-01 18:52 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2015-08-01 18:52 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2015-08-01 18:52 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2015-08-01 18:52 - 2009-11-18 07:13 - 00060504 _____ (Creative Technology Ltd.) C:\Windows\system32\MBPPCn64.dll
2015-08-01 18:51 - 2015-08-01 18:52 - 00000000 ___HD C:\Program Files (x86)\Temp
2015-08-01 18:51 - 2014-02-26 15:16 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2015-08-01 18:48 - 2015-08-05 18:44 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\COWON
2015-08-01 18:46 - 2015-08-01 18:46 - 00001825 _____ C:\Users\Public\Desktop\jetAudio.lnk
2015-08-01 18:46 - 2015-08-01 18:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\jetAudio
2015-08-01 18:46 - 2015-08-01 18:46 - 00000000 ____D C:\Program Files (x86)\JetAudio
2015-08-01 18:41 - 2015-08-01 18:41 - 00000000 ____D C:\Users\Bojan\AppData\Local\DFX
2015-08-01 18:41 - 2015-08-01 18:41 - 00000000 ____D C:\ProgramData\DFX
2015-08-01 18:40 - 2015-08-01 19:58 - 00000000 ____D C:\Users\Guest
2015-08-01 18:40 - 2015-08-01 19:58 - 00000000 ____D C:\Users\Administrator
2015-08-01 18:40 - 2015-08-01 18:40 - 00001710 _____ C:\Users\Public\Desktop\DFX.lnk
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Users\Panic\AppData\Roaming\vlc
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Users\Guest\AppData\Roaming\vlc
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\vlc
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Users\Administrator\AppData\Roaming\vlc
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DFX Audio Enhancer
2015-08-01 18:40 - 2015-08-01 18:40 - 00000000 ____D C:\Program Files (x86)\DFX
2015-08-01 18:32 - 2015-08-13 15:49 - 00002185 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-08-01 18:32 - 2015-08-01 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-08-01 18:31 - 2015-08-14 13:26 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-08-01 18:31 - 2015-08-14 12:42 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-08-01 18:31 - 2015-08-01 20:23 - 00003904 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-08-01 18:31 - 2015-08-01 20:23 - 00003652 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-08-01 18:31 - 2015-08-01 18:32 - 00000000 ____D C:\Users\Bojan\AppData\Local\Google
2015-08-01 18:31 - 2015-08-01 18:32 - 00000000 ____D C:\Program Files (x86)\Google
2015-08-01 18:30 - 2015-08-13 18:39 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-08-01 18:30 - 2015-08-02 14:15 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-08-01 18:30 - 2015-08-01 18:30 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-08-01 18:26 - 2015-08-01 18:30 - 00000000 ____D C:\Users\Bojan\AppData\Local\Mozilla
2015-08-01 18:26 - 2015-08-01 18:27 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Mozilla
2015-08-01 18:26 - 2015-08-01 18:26 - 00000000 ____D C:\ProgramData\Mozilla
2015-08-01 18:20 - 2015-08-01 18:20 - 00000000 ____D C:\User Data
2015-08-01 18:20 - 2015-08-01 18:20 - 00000000 ____D C:\Program Files (x86)\newtabs
2015-08-01 18:20 - 2015-08-01 18:20 - 00000000 _____ C:\extensions.sqlite
2015-08-01 18:19 - 2015-08-01 18:19 - 00001130 _____ C:\Users\Public\Desktop\Foxit Reader.lnk
2015-08-01 18:19 - 2015-08-01 18:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2015-08-01 18:19 - 2015-08-01 18:19 - 00000000 ____D C:\Program Files (x86)\Foxit Software
2015-08-01 18:16 - 2015-08-01 18:16 - 00001216 _____ C:\Users\Public\Desktop\Nero Burning ROM.lnk
2015-08-01 18:14 - 2015-08-01 18:14 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2015-08-01 18:13 - 2011-07-13 13:59 - 00072240 _____ (Nero AG) C:\Windows\system32\Drivers\NBVol.sys
2015-08-01 18:13 - 2011-07-13 13:59 - 00015920 _____ (Nero AG) C:\Windows\system32\Drivers\NBVolUp.sys
2015-08-01 18:12 - 2015-08-01 18:14 - 00000000 ____D C:\Program Files (x86)\Nero
2015-08-01 18:12 - 2015-08-01 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
2015-08-01 18:05 - 2015-08-14 13:27 - 00000000 ____D C:\Program Files\KMSpico
2015-08-01 18:05 - 2015-08-13 18:49 - 00003704 _____ C:\Windows\System32\Tasks\AutoPico Daily Restart
2015-08-01 18:05 - 2015-08-13 18:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2015-08-01 18:04 - 2015-08-01 18:04 - 00000000 ____D C:\ProgramData\Microsoft Toolkit
2015-08-01 18:02 - 2015-08-01 18:02 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-08-01 17:59 - 2015-08-13 18:42 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-01 17:59 - 2015-08-01 17:59 - 00000000 ____D C:\Users\Bojan\AppData\Local\Microsoft Help
2015-08-01 17:57 - 2015-08-01 17:57 - 00000000 ____D C:\Users\Bojan\AppData\Local\AMD
2015-08-01 17:56 - 2015-08-01 17:56 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\ATI
2015-08-01 17:56 - 2015-08-01 17:56 - 00000000 ____D C:\Users\Bojan\AppData\Local\ATI
2015-08-01 17:55 - 2015-08-01 17:55 - 00000000 ____D C:\Users\Bojan\Tracing
2015-08-01 17:54 - 2015-08-14 13:29 - 00000000 ____D C:\Users\Bojan\AppData\Roaming\Skype
2015-08-01 17:54 - 2015-08-01 17:54 - 00000000 ____D C:\Users\Bojan\AppData\Local\Skype
2015-08-01 17:53 - 2015-08-01 20:08 - 00002697 _____ C:\Users\Public\Desktop\Skype.lnk
2015-08-01 17:53 - 2015-08-01 20:08 - 00000000 ____D C:\ProgramData\Skype
2015-08-01 17:53 - 2015-08-01 20:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-08-01 17:53 - 2015-08-01 17:53 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-08-01 17:49 - 2015-08-06 14:26 - 00000000 ___HD C:\Users\Bojan
2015-08-01 17:49 - 2015-08-05 18:29 - 00000000 ____D C:\Users\Bojan\AppData\Local\VirtualStore
2015-08-01 17:49 - 2015-08-01 17:49 - 00001447 _____ C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-08-01 17:49 - 2015-08-01 17:49 - 00001413 _____ C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2015-08-01 17:49 - 2015-08-01 17:49 - 00000020 ___SH C:\Users\Bojan\ntuser.ini
2015-08-01 17:49 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-01 17:49 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Bojan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-01 17:46 - 2015-08-13 18:53 - 00111912 _____ C:\Users\Panic\AppData\Local\GDIPFONTCACHEV1.DAT
2015-08-01 17:46 - 2015-08-01 17:46 - 00000000 ____D C:\Users\Panic\AppData\Roaming\ATI
2015-08-01 17:46 - 2015-08-01 17:46 - 00000000 ____D C:\Users\Panic\AppData\Local\ATI
2015-08-01 17:46 - 2015-08-01 17:46 - 00000000 ____D C:\Users\Panic\AppData\Local\AMD
2015-08-01 17:46 - 2015-08-01 17:46 - 00000000 ____D C:\ProgramData\ATI
2015-08-01 17:45 - 2011-09-29 11:30 - 00646248 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2015-08-01 17:45 - 2011-09-29 11:30 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2015-08-01 17:45 - 2011-09-29 11:30 - 00074272 _____ C:\Windows\system32\RtNicProp64.dll
2015-08-01 17:43 - 2015-08-04 18:22 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-08-01 17:43 - 2015-08-01 18:52 - 00000000 ____D C:\Program Files (x86)\Realtek
2015-08-01 17:43 - 2015-08-01 17:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2015-08-01 17:43 - 2011-09-16 09:12 - 00032360 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtVlan620.sys
2015-08-01 17:43 - 2011-06-15 15:11 - 00058472 _____ (Realtek Corporation) C:\Windows\system32\Drivers\RtTeam60.sys
2015-08-01 17:43 - 2011-06-15 15:11 - 00027136 _____ (Realtek ) C:\Windows\system32\Drivers\RtNdPt60.sys
2015-08-01 17:41 - 2015-08-01 17:41 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files\AMD
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2015-08-01 17:40 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files (x86)\AMD
2015-08-01 17:39 - 2015-08-06 18:16 - 00773536 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2015-08-01 17:39 - 2015-08-01 17:40 - 00000000 ____D C:\ProgramData\AMD
2015-08-01 17:39 - 2015-08-01 17:39 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-08-01 17:39 - 2012-08-28 14:27 - 00058536 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2015-08-01 17:35 - 2015-08-01 17:40 - 00000000 ____D C:\Program Files\ATI Technologies
2015-08-01 17:35 - 2015-08-01 17:35 - 00000000 ____D C:\Program Files\ATI
2015-08-01 17:30 - 2015-08-12 12:22 - 00000000 ____D C:\Users\Panic\AppData\Local\VirtualStore
2015-08-01 17:30 - 2015-08-01 17:30 - 00001447 _____ C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-08-01 17:30 - 2015-08-01 17:30 - 00001413 _____ C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2015-08-01 17:29 - 2015-08-10 15:45 - 00000000 ____D C:\Users\Panic
2015-08-01 17:29 - 2015-08-01 17:29 - 00000020 ___SH C:\Users\Panic\ntuser.ini
2015-08-01 17:29 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-01 17:29 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-01 17:28 - 2015-08-01 17:28 - 00000000 __SHD C:\Recovery

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-14 13:25 - 2010-11-21 05:47 - 00168778 _____ C:\Windows\PFRO.log
2015-08-14 13:25 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-14 13:25 - 2009-07-14 06:51 - 00003240 _____ C:\Windows\setupact.log
2015-08-14 13:24 - 2009-07-14 06:45 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-08-14 13:24 - 2009-07-14 06:45 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-08-14 09:54 - 2009-07-14 07:13 - 00781298 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-13 18:40 - 2010-11-21 09:16 - 00000000 ____D C:\Windows\ShellNew
2015-08-13 18:40 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-08-13 18:36 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-08-13 18:36 - 2009-07-14 04:34 - 00000478 _____ C:\Windows\win.ini
2015-08-13 18:14 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-08-08 13:06 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2015-08-06 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK
2015-08-06 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR
2015-08-06 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\zh-HK
2015-08-06 18:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\tr-TR
2015-08-03 09:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports
2015-08-02 12:34 - 2009-07-14 05:20 - 00000000 __RSD C:\Windows\Media
2015-08-02 03:22 - 2009-07-14 07:38 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG
2015-08-02 03:22 - 2009-07-14 07:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2015-08-02 03:21 - 2009-07-14 06:45 - 00000000 ____D C:\Windows\Setup
2015-08-02 02:27 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-08-02 02:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe
2015-08-02 02:25 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-08-02 02:25 - 2009-07-14 06:46 - 00002790 _____ C:\Windows\DtcInstall.log
2015-08-02 02:25 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-02 02:25 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep
2015-08-02 02:23 - 2010-11-21 09:16 - 00000000 ____D C:\Windows\CSC
2015-08-01 17:28 - 2010-11-21 05:24 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-08-01 17:28 - 2010-11-21 05:24 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-08-01 17:28 - 2010-11-21 05:24 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2015-08-01 17:28 - 2010-11-21 05:24 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2015-08-01 17:28 - 2010-11-21 05:23 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slwga.dll
2015-08-01 17:28 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\restore

==================== Files in the root of some directories =======

2015-08-11 19:16 - 2015-08-11 19:16 - 0003584 _____ () C:\Users\Bojan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-02 13:48 - 2015-08-02 13:48 - 0000036 _____ () C:\Users\Bojan\AppData\Local\housecall.guid.cache

Some files in TEMP:
====================
C:\Users\Bojan\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\Bojan\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Bojan\AppData\Local\Temp\MSETUP4.EXE
C:\Users\Bojan\AppData\Local\Temp\ose00000.exe
C:\Users\Bojan\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Bojan\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\Panic\AppData\Local\Temp\360Inst_sohuyy.exe
C:\Users\Panic\AppData\Local\Temp\Opera_NI_stable.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-08-02 02:23

==================== End of log ============================

mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Arrow Korak 1

Otvori Notepad i iskopiraj sljedeći tekst koji se nalazi unutar Kod polja.

HKLM-x32\...\Run: [fr] => C:\Program Files (x86)\fr\fr.exe
HKLM-x32\...\Run: [SohuVA] => "C:\Program Files (x86)\????\SHPlayer.exe" /auto
ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMGCShellExt64.dll [2015-08-12] (Tencent)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.oursurfing.com/?type=hp&ts=1439381707&z=f2363849cca831fb3924c39g7zec9t2c6b0g5m1ebt&from=amt&uid=WDCXWD10EZRX-00A8LB0_WD-WMC1U499823098230
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hao123.com/?tn=97951667_hao_pg
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.oursurfing.com/?type=hp&ts=1439381707&z=f2363849cca831fb3924c39g7zec9t2c6b0g5m1ebt&from=amt&uid=WDCXWD10EZRX-00A8LB0_WD-WMC1U499823098230
HKU\S-1-5-21-3916067527-1229850284-1596982685-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.hao123.com/?tn=97951667_hao_pg
SearchScopes: HKU\S-1-5-21-3916067527-1229850284-1596982685-1002 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.v9.com/web/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3916067527-1229850284-1596982685-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://search.v9.com/web/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-3916067527-1229850284-1596982685-1002 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://search.v9.com/web/?q={searchTerms}
BHO: 电脑管家网页防火墙 -> {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} -> C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSWebMon64.dat [2015-08-12] (Tencent)
BHO-x32: Ó¦Óñ¦Ò»¼ü°²×°²å¼þ -> {50F4150A-48B2-417A-BE4C-C83F580FB904} -> C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll [2014-05-30] (腾讯公司)
FF Plugin-x32: @qq.com/npAndroidAssistant -> C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3198\npQQPhoneManagerExt.dll [2014-05-30] (腾讯公司)
FF Plugin-x32: @qq.com/QQPCMgr -> C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\npQMExtensionsMozilla.dll [2015-08-12] (Tencent Technology (Shenzhen) Company Limited)
CHR Extension: (No Name) - C:\Users\Bojan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdacmkapnkjmbddfcajlehdieeckelbm [2015-08-02]
CHR HKLM-x32\...\Chrome\Extension: [ooebklgpfnbcnpokahmdidgbmlcdepkm] - https://clients2.google.com/service/update2/crx
R2 QQPCRTP; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe [297608 2015-08-05] (Tencent)
R1 QMUdisk; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUdisk64.sys [62264 2015-08-12] (Tencent)
R2 QQSysMonX64; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQSysMonX64.sys [129336 2015-08-12] (电脑管家)
R2 TAOAccelerator; C:\Windows\system32\Drivers\TAOAccelerator64.sys [99640 2015-08-12] (Tencent)
R2 TAOKernelDriver; C:\Windows\system32\Drivers\TAOKernel64.sys [174392 2015-08-12] (Tencent Technology(Shenzhen) Company Limited)
R3 TFsFlt; C:\Windows\System32\Drivers\TFsFltX64.sys [87864 2015-08-12] (电脑管家)
R3 TS888x64; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TS888x64.sys [28984 2015-08-14] (Tencent)
R1 TSCPM; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\tscpm64.sys [42296 2015-08-12] (电脑管家)
R1 TSDefenseBt; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSDefenseBT64.sys [28472 2015-08-12] (Tencent)
S3 TSSKX64; C:\Windows\System32\drivers\tsskx64.sys [38200 2015-08-12] (电脑管家)
R1 TSSysKit; C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSSysKit64.sys [87352 2015-08-12] (电脑管家)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP => ""="service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP => ""="service"
C:\Program Files (x86)\fr
C:\Program Files (x86)\Tencent
C:\Program Files (x86)\Common Files\Tencent
C:\Windows\system32\Drivers\TAOAccelerator64.sys
C:\Windows\System32\Drivers\TFsFltX64.sys
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TS888x64.sys
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSDefenseBT64.sys
C:\Windows\System32\drivers\tsskx64.sys
C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TSSysKit64.sys
C:\Users\Bojan\AppData\Roaming\Tencent
C:\Users\Panic\AppData\Roaming\Tencent
C:\ProgramData\Tencent
C:\Users\Panic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
C:\ProgramData\TXQMPC
EmptyTemp:


U okviru Notepad-a klikni na File --> Save As
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se fixlog.txt, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt).




Arrow Korak 2

Preuzmi "Xplode"-ov AdwCleaner i sačuvaj ga na Desktop
Dvoklikom pokreni program.
u EULA prozoru klikni na I agree.
Klikni na dugme Scan i sačekaj da se završi skeniranje.
Klikni na dugme Cleaning i pričekaj da program završi.
Program će zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni OK kao potvrdu.
Na sljedeća dva prozora koja se otvore (Informations i Restart required ) klikni OK

Računar će se restartovati, a potom otvoriti Notepad (C:\AdwCleaner[S0].txt) sa izvještajem.
Sačuvaj taj izvještaj na Desktop i okači ga uz poruku koristeći opciju "Prikači fajl"

Napomena: Izvještaj ce takođe biti sačuvan na C:\Adwcleaner\AdwCleaner[S0].txt

offline
  • Bojan Panic
  • Pridružio: 14 Sep 2014
  • Poruke: 76
  • Gde živiš: Vojvodina, Odzaci

FRST je zavrsio evo fajla
mycity.rs/must-login.png

Adwcleaner se zabaguje kod deleting folders oko 20 min i onda bude not responding

a usput nasao sam link za ovaj kineski program guanjia.qq.com/

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Reci mi kakvo je sad stanje?

offline
  • Bojan Panic
  • Pridružio: 14 Sep 2014
  • Poruke: 76
  • Gde živiš: Vojvodina, Odzaci

Tacno pre par minuta sam deinstalirao program nekako sam nasao tutorial na youtube-u sad je sve u redu.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Preuzmi Malwarebytes Anti-Rootkit (MBAR) sa sledeceg linka i sacuvaj ga na Desktop.

Dvoklikom pokreni MBAR () na ikonicu programa:
- Klikni OK na sledecem prozoru da bi dozvolio raspakivanje u zaseban mbar folder na desktop-u;
- mbar.exe ce biti startovan. Na nekim sistemima to moze da potraje nekoliko dodatnih sekundi, te pricekati pokretanje.;
- U uvodnom prozoru klikni dugme Next ukoliko si saglasan;



• Na 'Update Database' prozoru klik na dugme Update da bi preuzeo sveze definicije. Kada se ispise poruka 'Success: Database was successfully updated' klik na dugme Next;
• Pod sekcijom 'Scan Targets' proveri da su sve opcije stiklirane, te klikni na dugme Scan;

Obavestenje: sa nekim infekcijama moze se desiti da se prikaze neka od sledecih poruka:
- 'Could not load protection driver' => u tom slucaju klikni OK.
- 'Could not load DDA driver' => klikni Yes na to obavestenje da bi dozvolio ucitavanje nakon restarta. Dozvoli restart i nastavi sa ostatkom instrukcija posle restarta.





>> Ukoliko malware nije detektovan, klik na Exit dugme da zatvoris program. U sledecu poruku postavi mbar-log-year-month-day (sat-minuti-sekundi).txt i system-log.txt izveštaje.

>> Ukoliko su infekcija/e pronadjene, proveriti da li je obelezena opcija 'Create Restore Point' i klikni na dugme Cleanup! da bi uklonili pretnje.
- Procedura uklanjanje malware-a (scheduled) ce biti zakazana po restartu, bice prikazano obavestenje u pop-up prozoru. Klikni dugme Yes i sistem bi trebao da se restartuje i da zavrsi proceduru ciscenja.



Obavestenje! samo ukoliko je RootKit detektovan: - postaraj se da pokrenes fixdamage.exe alat koji se nalazi u mbar folderu, \Plugins\fixdamage.exe:
- Dvoklikom pokreni fixdamage, u crnom prozoru koji se otvori (command prompt) ukucaj Y (Y stoji za Yes) da bi nastavio izvrsenje, pricekati da alat odradi sve popravke ...
- Kada vidis poruku 'press any key to exit' popravka je kompletirana. Pritisnuti bilo koju tipku na tastaturi da bi se prozor zatvorio. Restartovati sistem.





Sledeci izvestaji ce biti formirani u mbar folderu.
1. mbar-log-year-month-day (hour-minute-second).txt
2. system-log.txt

Iskopiraj sadrzaj mbar log-a u poruku a system log okaci uz poruku koristeci opciju Prikači fajl.

offline
  • Bojan Panic
  • Pridružio: 14 Sep 2014
  • Poruke: 76
  • Gde živiš: Vojvodina, Odzaci

Ne znam da li da uradim ovo posto sam udate-ovao windows na 10

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10621
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Ako si prešao na Windows 10 nema potrebe. To bi bilo to.

Ko je trenutno na forumu
 

Ukupno su 566 korisnika na forumu :: 7 registrovanih, 4 sakrivenih i 555 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: cikadeda, dragonserbia, GreenMan, Marko Marković, pavle_pzs, vrlenija, zljubomir