Unico browser

1

Unico browser

offline
  • Pridružio: 25 Jan 2015
  • Poruke: 33

Neko mi je instalirao Unico browser, kojeg ne mogu da se resim.
Prvo sam ga ignorisao, ali sada kad god pustim neki video na netu (youtube ilio nesto drugo), krene pa se zakoci i onda vise ne mogu da pustim vise ni pesmu ili video sa mog kompjutera Sad
Kada sam hteo da ga unistaliram iz control panela, nije htelo i isao sam na „delete“ pa ga vise uopste nemam tu na listi programa...
FRST izvestaj:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by BOKI (administrator) on BOKI-PC on 05-04-2015 21:05:09
Running from C:\Users\BOKI\Downloads
Loaded Profiles: BOKI (Available profiles: BOKI)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 9 (Default browser path: "C:\Users\BOKI\AppData\Local\UnicoBrowser\Application\unicobrowser.exe" "%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\avastui.exe
(BitTorrent Inc.) C:\Users\BOKI\AppData\Roaming\uTorrent\uTorrent.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
() C:\Program Files\CyberLink\Shared files\RichVideo.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Adobe Systems, Incorporated) C:\Program Files\Adobe\Adobe Photoshop CC 2014 (32 Bit)\Photoshop.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Joyent, Inc) C:\Program Files\Adobe\Adobe Photoshop CC 2014 (32 Bit)\node.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe [6155336 2013-02-22] (Realtek Semiconductor)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [630912 2012-05-05] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [AMD AVT] => C:\Program Files\AMD AVT\bin\kdbsync.exe [12288 2012-04-20] ()
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-09-19] (Adobe Systems Incorporated)
HKLM\...\Run: [SwitchBoard] => C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
HKLM\...\Run: [AdobeCS6ServiceManager] => C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2011-10-24] (Apple Inc.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Alwil Software\Avast5\AvastUI.exe [4085896 2014-10-03] (AVAST Software)
HKLM\...\Run: [AdobeCEPServiceManager] => C:\Program Files\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [1039240 2013-05-16] (Adobe Systems Incorporated)
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\BOKI\AppData\Local\Akamai\netsession_win.exe"
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\Run: [uTorrent] => C:\Users\BOKI\AppData\Roaming\uTorrent\uTorrent.exe [1442384 2015-03-26] (BitTorrent Inc.)
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\Run: [DAEMON Tools Ultra Agent] => C:\Program Files\DAEMON Tools Ultra\DTAgent.exe [3128352 2013-06-25] (Disc Soft Ltd)
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {6085d8f1-07cf-11e3-9f37-d43d7ebd7db3} - H:\autorun.exe
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {69d3c555-092c-11e3-9e96-d43d7ebd7db3} - I:\setup.exe /autorun
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {b6c2d322-06f8-11e3-a34b-806e6f6e6963} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL D:\intro.html
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2014-11-21] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShell.dll (AVAST Software)
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = google.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = google.com
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = msn.com/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll No File
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll No File
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll No File
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-04-08] (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 89.216.1.30 89.216.1.50
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-07-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-07-11] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll [2014-12-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\Alwil Software\Avast5\WebRep\FF [2014-10-02]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-08-18]
CHR Extension: (Google Drive) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-08-18]
CHR Extension: (YouTube) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-08-18]
CHR Extension: (Google Search) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-08-18]
CHR Extension: (FoxyProxy Basic) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\dookpfaalaaappcdneeahomimbllocnb [2015-03-22]
CHR Extension: (Video Downloader professional) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2013-10-21]
CHR Extension: (Avast Online Security) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-10-02]
CHR Extension: (Windows Media Player Extension for HTML5) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\hokdglbhghcebcopdbanieangmcamaak [2013-10-05]
CHR Extension: (Google Wallet) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-24]
CHR Extension: (Gmail) - C:\Users\BOKI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-08-18]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx [2014-10-02]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [291840 2012-05-05] (Advanced Micro Devices, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2014-10-02] (AVAST Software)
R3 Disc Soft Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe [632352 2013-06-25] (Disc Soft Ltd)
S2 HPSupportSolutionsFrameworkService; C:\Program Files\Hp\Common\HPSupportSolutionsFrameworkService.exe [89864 2014-12-11] (Hewlett-Packard Company)
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [762192 2013-07-18] (Nero AG)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2009-05-15] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2009-05-15] (Hewlett-Packard) [File not signed]
R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2010-08-20] ()
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S3 SwitchBoard; "C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-10-02] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-10-02] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-10-02] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-10-02] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-10-03] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-10-02] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-10-02] ()
R3 dtscsibus; C:\Windows\System32\DRIVERS\dtscsibus.sys [24704 2013-08-18] (Disc Soft Ltd)
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
S3 MSICDSetup; \??\D:\CDriver.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-05 21:05 - 2015-04-05 21:06 - 00014915 _____ () C:\Users\BOKI\Downloads\FRST.txt
2015-04-05 21:05 - 2015-04-05 21:05 - 00000000 ____D () C:\FRST
2015-04-05 20:35 - 2015-04-05 20:35 - 01135104 _____ (Farbar) C:\Users\BOKI\Downloads\FRST.exe
2015-04-05 01:42 - 2015-04-05 01:42 - 00000000 ___SD () C:\Windows\system32\GWX
2015-03-30 21:17 - 2015-03-30 21:20 - 00000000 ____D () C:\AdwCleaner
2015-03-30 21:16 - 2015-03-30 21:17 - 02208768 _____ () C:\Users\BOKI\Downloads\adwcleaner_4.200.exe
2015-03-29 21:37 - 2015-03-29 21:38 - 00008439 _____ () C:\claraInstaller.txt
2015-03-29 21:37 - 2015-03-29 21:38 - 00000000 ____D () C:\Users\BOKI\AppData\Local\UnicoBrowser
2015-03-29 16:18 - 2015-03-29 16:18 - 35536765 _____ () C:\Users\BOKI\Downloads\codeschool_2361.mp4
2015-03-29 16:17 - 2015-03-29 16:19 - 104223775 _____ () C:\Users\BOKI\Downloads\codeschool_2354.mp4
2015-03-29 16:17 - 2015-03-29 16:18 - 93656367 _____ () C:\Users\BOKI\Downloads\codeschool_2353.mp4
2015-03-29 16:17 - 2015-03-29 16:18 - 67618292 _____ () C:\Users\BOKI\Downloads\codeschool_2357.mp4
2015-03-29 16:17 - 2015-03-29 16:18 - 38985992 _____ () C:\Users\BOKI\Downloads\codeschool_2356.mp4
2015-03-29 16:17 - 2015-03-29 16:18 - 34032229 _____ () C:\Users\BOKI\Downloads\codeschool_2358.mp4
2015-03-29 16:14 - 2015-03-29 16:15 - 68245357 _____ () C:\Users\BOKI\Downloads\codeschool_2349.mp4
2015-03-24 20:25 - 2015-03-11 05:30 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-24 20:25 - 2015-03-11 05:30 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-24 20:25 - 2015-03-11 05:29 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-24 20:25 - 2015-03-11 05:29 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-24 20:25 - 2015-03-11 05:29 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-24 20:25 - 2015-03-11 05:29 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-03-24 20:25 - 2015-03-11 05:29 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-03-24 20:25 - 2015-03-11 05:26 - 00892928 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-03-23 02:19 - 2015-03-23 02:19 - 00034835 _____ () C:\Users\BOKI\Documents\My Movie.wlmp
2015-03-23 02:13 - 2015-03-23 02:14 - 00000000 ____D () C:\tmpDownload
2015-03-23 01:40 - 2015-03-23 01:40 - 00001211 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2015-03-23 01:39 - 2015-03-23 01:39 - 00001280 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2015-03-23 01:38 - 2015-03-23 01:39 - 00000000 ____D () C:\Program Files\Windows Live
2015-03-23 01:34 - 2015-03-29 21:41 - 00000000 ____D () C:\Users\BOKI\AppData\Local\Windows Live
2015-03-23 01:34 - 2015-03-23 01:34 - 00000000 ____D () C:\Program Files\Common Files\Windows Live
2015-03-19 01:40 - 2015-03-19 01:40 - 00001080 _____ () C:\Users\BOKI\Desktop\NBA 2K14.lnk
2015-03-19 01:40 - 2015-03-19 01:40 - 00000000 ____D () C:\Users\BOKI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\2K Sports
2015-03-19 01:31 - 2015-03-19 01:31 - 00000000 ____D () C:\Program Files\2K Sports
2015-03-19 00:50 - 2015-03-19 00:50 - 00000000 ____D () C:\Users\BOKI\Desktop\NBA.2K14-RELOADED
2015-03-18 23:06 - 2015-03-18 23:06 - 00000000 ____D () C:\Users\BOKI\Downloads\Source
2015-03-18 00:04 - 2015-03-18 00:04 - 00000000 ____D () C:\Users\BOKI\Desktop\PHP.MySQL.JavaScript.and.HTML5.All-in-One.For.Dummies[A4]
2015-03-18 00:04 - 2015-03-18 00:04 - 00000000 ____D () C:\Users\BOKI\Desktop\Learning_php_mysql_javascript_css_html5_Robin_Nixon_3e
2015-03-17 00:42 - 2015-03-17 00:42 - 00000000 ____D () C:\Users\BOKI\Desktop\panteri
2015-03-15 16:09 - 2015-04-05 20:11 - 00000000 ____D () C:\Program Files\Pingendo
2015-03-15 16:09 - 2015-03-19 00:46 - 00000000 ____D () C:\Users\BOKI\AppData\Local\Pingendo
2015-03-15 16:08 - 2015-03-15 16:08 - 00000000 ____D () C:\Users\BOKI\Downloads\pingendo-win32
2015-03-14 20:37 - 2015-04-05 15:53 - 00000000 ____D () C:\Users\BOKI\Desktop\Site
2015-03-13 23:34 - 2015-03-13 23:34 - 00032923 _____ () C:\Users\BOKI\Downloads\Lobster.zip
2015-03-13 23:34 - 2015-03-13 23:34 - 00024751 _____ () C:\Users\BOKI\Downloads\harabara.zip
2015-03-13 23:33 - 2015-03-13 23:34 - 00025475 _____ () C:\Users\BOKI\Downloads\Days.zip
2015-03-13 23:33 - 2015-03-13 23:33 - 00107775 _____ () C:\Users\BOKI\Downloads\kimberley.zip
2015-03-12 22:43 - 2015-03-12 22:44 - 00000000 ____D () C:\Users\BOKI\Desktop\30 Days to Learn HTML and CSS
2015-03-12 22:42 - 2015-03-12 22:42 - 00000000 ____D () C:\Users\BOKI\Desktop\HTML And CSS - Design And Build Websites V413HAV
2015-03-11 23:13 - 2015-03-06 07:15 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-11 23:13 - 2015-03-06 07:15 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-03-11 23:13 - 2015-03-06 07:10 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-03-11 23:13 - 2015-03-06 07:10 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-03-11 23:13 - 2015-03-06 07:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-03-11 23:13 - 2015-03-06 07:09 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-03-11 23:13 - 2015-03-06 07:07 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-11 23:13 - 2015-03-06 07:07 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-03-11 23:13 - 2015-03-06 07:06 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-11 23:13 - 2015-02-26 05:11 - 02381312 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 23:13 - 2015-02-21 19:37 - 12375040 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-11 23:13 - 2015-02-21 19:34 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-11 23:13 - 2015-02-21 19:29 - 09747968 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-11 23:13 - 2015-02-21 19:28 - 01810944 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-11 23:13 - 2015-02-21 19:22 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-11 23:13 - 2015-02-21 19:21 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-11 23:13 - 2015-02-21 19:21 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-11 23:13 - 2015-02-21 19:20 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-11 23:13 - 2015-02-21 19:20 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-11 23:13 - 2015-02-21 19:19 - 01803264 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-11 23:13 - 2015-02-21 19:19 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-11 23:13 - 2015-02-21 19:19 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-11 23:13 - 2015-02-21 19:19 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-11 23:13 - 2015-02-21 19:19 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-11 23:13 - 2015-02-21 19:18 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-11 23:13 - 2015-02-21 19:18 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-11 23:13 - 2015-02-21 19:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-11 23:13 - 2015-02-21 19:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-11 23:13 - 2015-02-21 19:18 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-11 23:13 - 2015-02-21 19:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-11 23:13 - 2015-02-21 19:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-11 23:13 - 2015-02-21 19:17 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-11 23:13 - 2015-02-13 07:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-11 23:13 - 2015-02-03 05:12 - 01011200 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 23:13 - 2015-02-03 05:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-11 23:13 - 2015-01-31 05:32 - 00919552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-11 23:13 - 2015-01-31 04:52 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-11 23:13 - 2015-01-31 04:51 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-03-11 23:13 - 2015-01-17 04:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-11 23:12 - 2015-02-20 06:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-11 23:12 - 2015-02-20 06:13 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 23:12 - 2015-02-20 06:13 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-11 23:12 - 2015-02-20 06:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-11 23:12 - 2015-02-20 05:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 23:12 - 2015-02-04 04:54 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 23:12 - 2015-02-03 05:16 - 03973048 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-03-11 23:12 - 2015-02-03 05:16 - 03917760 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 23:12 - 2015-02-03 05:16 - 00078784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-03-11 23:12 - 2015-02-03 05:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 02135040 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-11 23:12 - 2015-02-03 05:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-03-11 23:12 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-03-11 23:12 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-03-11 23:12 - 2015-02-03 05:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-03-11 23:12 - 2015-02-03 05:11 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-11 23:12 - 2015-02-03 05:11 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-11 23:12 - 2015-02-03 05:11 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-03-11 23:12 - 2015-02-03 05:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-03-11 23:12 - 2015-02-03 05:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-11 23:12 - 2015-02-03 05:11 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-03-11 23:12 - 2015-02-03 05:11 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-03-11 23:12 - 2015-02-03 05:11 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-03-11 23:12 - 2015-02-03 05:10 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-03-11 23:12 - 2015-02-03 05:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-03-11 23:12 - 2015-02-03 05:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-03-11 23:12 - 2015-02-03 05:00 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-03-11 23:12 - 2015-02-03 04:26 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-03-11 23:12 - 2015-01-31 01:56 - 00370488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-11 23:12 - 2014-11-01 00:22 - 00521384 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-11 23:12 - 2014-06-28 02:21 - 00455752 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-11 23:12 - 2014-06-28 02:21 - 00409272 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-08 18:39 - 2015-03-02 23:51 - 489680432 _____ () C:\Users\BOKI\Desktop\KK PARTIZAN - KK C zvezda 77 63.mp4
2015-03-07 00:44 - 2015-03-07 00:44 - 00000000 ____D () C:\Users\BOKI\AppData\Local\CREZ
2015-03-07 00:13 - 2015-03-08 18:38 - 00000084 _____ () C:\Windows\netdet.ini
2015-03-07 00:04 - 2015-03-07 00:04 - 00000000 ____D () C:\IExp1.tmp
2015-03-07 00:03 - 2015-03-07 00:06 - 00000000 ___HD () C:\Windows\msdownld.tmp
2015-03-07 00:03 - 2015-03-07 00:04 - 00000000 ____D () C:\Windows\RegisteredPackages
2015-03-07 00:03 - 2015-03-07 00:04 - 00000000 ____D () C:\IExp0.tmp
2015-03-07 00:03 - 2015-03-07 00:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media
2015-03-07 00:02 - 2015-03-07 00:13 - 00000000 ____D () C:\CREZ
2015-03-07 00:02 - 2015-03-07 00:02 - 00002279 _____ () C:\Users\BOKI\Desktop\CREZ - All Sport.lnk
2015-03-07 00:02 - 2015-03-07 00:02 - 00000000 ____D () C:\Users\BOKI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CREZ
2015-03-07 00:02 - 2015-03-07 00:02 - 00000000 ____D () C:\Program Files\CREZ
2015-03-06 23:57 - 2015-03-07 00:00 - 90114401 _____ (CREZ ) C:\Users\BOKI\Downloads\CREZallsport.v2011.exe
2015-03-06 22:15 - 2015-03-10 00:23 - 00000000 ____D () C:\Users\BOKI\Desktop\The Best And Most Expensive Fonts 1500 Font Collection
2015-03-06 13:38 - 2015-03-06 13:38 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_ZuneDriver_01_09_00.Wdf
2015-03-06 13:35 - 2015-03-06 13:35 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_winusb_01009.Wdf

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-05 21:05 - 2013-08-18 05:07 - 00000000 ____D () C:\Users\BOKI\AppData\Roaming\uTorrent
2015-04-05 21:04 - 2013-08-18 02:58 - 00000886 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-05 20:57 - 2015-03-01 17:23 - 00000000 ____D () C:\Users\BOKI\Desktop\stre
2015-04-05 20:21 - 2013-08-17 07:00 - 00000000 ____D () C:\Users\BOKI
2015-04-05 20:13 - 2015-01-03 03:39 - 00000000 ____D () C:\Program Files\Common Files\Topaz Labs
2015-04-05 20:12 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-04-05 20:11 - 2013-08-17 22:56 - 00000000 ____D () C:\Users\BOKI\AppData\Roaming\Adobe
2015-04-05 20:11 - 2013-08-17 07:46 - 00000000 ____D () C:\Program Files\Adobe
2015-04-05 19:53 - 2009-07-14 06:34 - 00020544 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-05 19:53 - 2009-07-14 06:34 - 00020544 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-05 19:49 - 2014-02-04 18:02 - 01991054 _____ () C:\Windows\WindowsUpdate.log
2015-04-05 19:44 - 2015-01-22 22:08 - 00024568 _____ () C:\Windows\setupact.log
2015-04-05 19:44 - 2013-08-18 02:58 - 00000882 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-05 19:44 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-05 13:13 - 2013-08-18 04:02 - 00000000 ____D () C:\Users\BOKI\AppData\Local\Adobe
2015-04-03 20:26 - 2013-08-17 07:01 - 00782470 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-30 21:14 - 2013-08-19 01:19 - 00000000 ___RD () C:\Users\BOKI\Desktop\Programi
2015-03-30 20:25 - 2015-01-25 14:53 - 00042170 _____ () C:\Windows\PFRO.log
2015-03-25 01:04 - 2014-12-10 20:33 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-25 01:04 - 2014-07-10 03:01 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-23 01:39 - 2013-10-16 23:07 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-23 01:37 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-03-22 00:08 - 2014-12-28 02:44 - 00000000 ____D () C:\Users\BOKI\Desktop\kursevi
2015-03-20 22:21 - 2014-11-16 17:55 - 00000000 ____D () C:\Users\BOKI\Desktop\Adobe Illustrator CC 17.1 Final Multilanguage [ChingLiu]
2015-03-19 01:48 - 2013-08-20 08:27 - 00000000 ____D () C:\Users\BOKI\AppData\Roaming\2K Sports
2015-03-14 00:44 - 2014-11-06 19:35 - 00000000 ____D () C:\Users\BOKI\Desktop\IT Akademija
2015-03-12 04:35 - 2009-07-14 06:46 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-03-12 04:34 - 2009-07-14 06:33 - 03825792 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-12 04:16 - 2013-08-17 08:06 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-12 04:15 - 2014-08-30 15:26 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-12 04:07 - 2014-08-30 15:26 - 119837696 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-11 23:26 - 2014-11-20 00:12 - 00000000 ____D () C:\Users\BOKI\Documents\My Digital Editions
2015-03-10 17:31 - 2013-08-17 07:20 - 00099712 _____ () C:\Users\BOKI\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-07 12:57 - 2015-02-22 15:46 - 00000000 ____D () C:\Users\BOKI\Desktop\Nebojsa
2015-03-07 01:13 - 2014-06-17 23:14 - 00000000 ____D () C:\Users\BOKI\Desktop\Sandra telefon
2015-03-07 00:13 - 2009-07-14 04:04 - 00000623 _____ () C:\Windows\win.ini
2015-03-06 13:36 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\pt-PT
2015-03-06 13:36 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\pt-BR
2015-03-06 13:36 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\nl-NL
2015-03-06 13:36 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\it-IT
2015-03-06 13:36 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\fr-FR
2015-03-06 13:36 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE

==================== Files in the root of some directories =======

2014-02-24 01:47 - 2014-02-24 22:23 - 0000132 _____ () C:\Users\BOKI\AppData\Roaming\Adobe PNG Format CS6 Prefs
2013-10-18 23:24 - 2013-10-18 23:24 - 0000052 _____ () C:\Users\BOKI\AppData\Roaming\Camdata.ini
2013-10-18 23:24 - 2013-10-18 23:24 - 0000408 _____ () C:\Users\BOKI\AppData\Roaming\CamLayout.ini
2013-10-18 23:24 - 2013-10-18 23:24 - 0000408 _____ () C:\Users\BOKI\AppData\Roaming\CamShapes.ini
2013-10-18 23:24 - 2013-10-18 23:24 - 0004510 _____ () C:\Users\BOKI\AppData\Roaming\CamStudio.cfg
2015-01-11 19:05 - 2015-01-11 19:05 - 0000112 _____ () C:\Users\BOKI\AppData\Roaming\JP2K CS6 Prefs
2014-11-09 12:27 - 2015-01-11 18:16 - 0001456 _____ () C:\Users\BOKI\AppData\Local\Adobe Save for Web 13.0 Prefs
2013-12-27 13:13 - 2013-12-27 13:13 - 0000000 ___SH () C:\Users\BOKI\AppData\Local\LumaEmu
2013-09-10 22:55 - 2013-11-04 21:54 - 0000722 _____ () C:\ProgramData\hpzinstall.log
2014-06-13 20:26 - 2014-09-17 17:41 - 11224242 _____ () C:\ProgramData\OfflineCatalogue_1_2014_FEBI_CD.log

Files to move or delete:
====================
C:\Users\BOKI\jagex_cl_runescape_LIVE.dat
C:\Users\BOKI\random.dat


Some content of TEMP:
====================
C:\Users\BOKI\AppData\Local\Temp\AAMHelper.exe
C:\Users\BOKI\AppData\Local\Temp\AdobeApplicationManager.exe
C:\Users\BOKI\AppData\Local\Temp\drm_dialogs.dll
C:\Users\BOKI\AppData\Local\Temp\Quarantine.exe
C:\Users\BOKI\AppData\Local\Temp\sqlite3.dll
C:\Users\BOKI\AppData\Local\Temp\UnicoBrowser.exe
C:\Users\BOKI\AppData\Local\Temp\WebPlayerRemote_old.exe
C:\Users\BOKI\AppData\Local\Temp\xmlUpdater.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2013-12-10 16:16

==================== End Of Log ============================
mycity.rs/must-login.png

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

There are more than one entries detected in hosts
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {6085d8f1-07cf-11e3-9f37-d43d7ebd7db3} - H:\autorun.exe
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {69d3c555-092c-11e3-9e96-d43d7ebd7db3} - I:\setup.exe /autorun
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {b6c2d322-06f8-11e3-a34b-806e6f6e6963} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL D:\intro.html
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
S3 MSICDSetup; \??\D:\CDriver.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
C:\Users\BOKI\jagex_cl_runescape_LIVE.dat
C:\Users\BOKI\random.dat
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • Pridružio: 25 Jan 2015
  • Poruke: 33

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2015
Ran by BOKI at 2015-04-05 22:34:32 Run:1
Running from C:\Users\BOKI\Desktop
Loaded Profiles: BOKI (Available profiles: BOKI)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
There are more than one entries detected in hosts
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {6085d8f1-07cf-11e3-9f37-d43d7ebd7db3} - H:\autorun.exe
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {69d3c555-092c-11e3-9e96-d43d7ebd7db3} - I:\setup.exe /autorun
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {b6c2d322-06f8-11e3-a34b-806e6f6e6963} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL D:\intro.html
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
S3 MSICDSetup; \??\D:\CDriver.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
C:\Users\BOKI\jagex_cl_runescape_LIVE.dat
C:\Users\BOKI\random.dat
EmptyTemp:
*****************

There are more than one entries detected in hosts => Error: No automatic fix found for this entry.
"HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6085d8f1-07cf-11e3-9f37-d43d7ebd7db3}" => Key deleted successfully.
HKCR\CLSID\{6085d8f1-07cf-11e3-9f37-d43d7ebd7db3} => Key not found.
"HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{69d3c555-092c-11e3-9e96-d43d7ebd7db3}" => Key deleted successfully.
HKCR\CLSID\{69d3c555-092c-11e3-9e96-d43d7ebd7db3} => Key not found.
"HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b6c2d322-06f8-11e3-a34b-806e6f6e6963}" => Key deleted successfully.
HKCR\CLSID\{b6c2d322-06f8-11e3-a34b-806e6f6e6963} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
MSICDSetup => Service deleted successfully.
NTIOLib_1_0_C => Service deleted successfully.
Synth3dVsc => Service deleted successfully.
tsusbhub => Service deleted successfully.
VGPU => Service deleted successfully.
EagleXNt => Service deleted successfully.
C:\Users\BOKI\jagex_cl_runescape_LIVE.dat => Moved successfully.
C:\Users\BOKI\random.dat => Moved successfully.
EmptyTemp: => Removed 3 GB temporary data.


The system needed a reboot.

==== End of Fixlog 22:35:39 ====
I dalje slike pokusava da mi otvori u unico browseru, vecina fajlova ima ikonicu unico itd, mada vidim i poboljsanja.

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Scan] i pricekaj da program zavrsi.
Klikni na dugme [Clean]
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S0].txt

offline
  • Pridružio: 25 Jan 2015
  • Poruke: 33

mycity.rs/must-login.png

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Postavi mi novi FRST log i Addition log.

offline
  • Pridružio: 25 Jan 2015
  • Poruke: 33

mycity.rs/must-login.png

mycity.rs/must-login.png

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:


HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {69d3c555-092c-11e3-9e96-d43d7ebd7db3} - I:\setup.exe /autorun
C:\claraInstaller.txt
C:\Users\BOKI\AppData\Local\UnicoBrowser
CustomCLSID: HKU\S-1-5-21-3776892106-3194915494-1832249852-1000_Classes\CLSID\22CDC392-E8A9-43C6-B6CB-763C240CDD1F\localserver32 -> C:\Users\BOKI\AppData\Local\UnicoBrowser\Application\39.0.2132.8\delegate_execute.exe (The Chromium Authors)
Task: {B9BEAC73-C996-4B74-ACB9-4864E66E7D67} - System32\Tasks\Run_Browser => C:\Users\BOKI\AppData\Local\UnicoBrowser\Application\unicobrowser.exe [2015-03-18] (The Unico Browser Authors)
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • Pridružio: 25 Jan 2015
  • Poruke: 33

Boot Mode: Normal

==============================================

Content of fixlist:
*****************
HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\...\MountPoints2: {69d3c555-092c-11e3-9e96-d43d7ebd7db3} - I:\setup.exe /autorun
C:\claraInstaller.txt
C:\Users\BOKI\AppData\Local\UnicoBrowser
CustomCLSID: HKU\S-1-5-21-3776892106-3194915494-1832249852-1000_Classes\CLSID\22CDC392-E8A9-43C6-B6CB-763C240CDD1F\localserver32 -> C:\Users\BOKI\AppData\Local\UnicoBrowser\Application\39.0.2132.8\delegate_execute.exe (The Chromium Authors)
Task: {B9BEAC73-C996-4B74-ACB9-4864E66E7D67} - System32\Tasks\Run_Browser => C:\Users\BOKI\AppData\Local\UnicoBrowser\Application\unicobrowser.exe [2015-03-18] (The Unico Browser Authors)
EmptyTemp:
*****************

"HKU\S-1-5-21-3776892106-3194915494-1832249852-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{69d3c555-092c-11e3-9e96-d43d7ebd7db3}" => Key deleted successfully.
HKCR\CLSID\{69d3c555-092c-11e3-9e96-d43d7ebd7db3} => Key not found.
C:\claraInstaller.txt => Moved successfully.
C:\Users\BOKI\AppData\Local\UnicoBrowser => Moved successfully.
"HKU\S-1-5-21-3776892106-3194915494-1832249852-1000_Classes\CLSID\22CDC392-E8A9-43C6-B6CB-763C240CDD1F" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B9BEAC73-C996-4B74-ACB9-4864E66E7D67}" => Key Deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9BEAC73-C996-4B74-ACB9-4864E66E7D67}" => Key Deleted successfully.
C:\Windows\System32\Tasks\Run_Browser => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Run_Browser" => Key Deleted successfully.
EmptyTemp: => Removed 111.1 MB temporary data.


The system needed a reboot.

==== End of Fixlog 00:56:32 ====
Mislim da je sada sve OK.

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Ako nema problema vise, onda jos ovo:

Sledeća procedura će implementirati završno čišćenje.



Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.

Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;
Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.

Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Ukoliko neki alat ili izveštaj nije uklonjen, slobodno ih obriši ručno.


Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)
- Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
- DelFix briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

Ko je trenutno na forumu
 

Ukupno su 895 korisnika na forumu :: 50 registrovanih, 8 sakrivenih i 837 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 8u47, AK - 230, Apok, bankulen, bestguarder, cavatina, ccoogg123, comi_pfc, Denaya, DonRumataEstorski, draggan, drimer, Georgius, goxin, havoc995, JOntra, jukeboxer, Kandrbandrdzilo, Karla, krkalon, kybonacci, Lord Nem, Mercury, mile23, Milometer, milutin134, nenad81, NoOneEver Dreams, oldtimer, ozzy, panzerwaffe, pein, procesor, raso7, Ripanjac, Romibrat, royst33, S2M, Sančo, sasakrajina, Singidunumac, Srki94, Srle993, ss10, Steeeefan, stegonosa, Tragač, VP6919, wizzardone, 125