poceo je da se pojavljuje bsod vrlo cesto na nekoliko minuta. Avast i malwerbyites ne nalaze nista.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-03-2017
Ran by Sasa (administrator) on THE_RAIN (20-03-2017 11:11:56)
Running from C:\Users\Sasa\Desktop
Loaded Profiles: Sasa (Available Profiles: Sasa)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 10 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Amazon Inc.) C:\Program Files\Amazon\Amazon1ButtonApp\Amazon1ButtonService.Exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Opera Software) C:\Program Files\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Program Files\Opera\43.0.2442.1144\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Program Files\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Program Files\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Program Files\Opera\43.0.2442.1144\opera.exe
(Opera Software) C:\Program Files\Opera\43.0.2442.1144\opera.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avBugReport.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-22] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-03-15] (AVAST Software)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes)
HKU\S-1-5-21-145182595-3807908386-872423831-1000\...\MountPoints2: {c2308eab-5231-11e6-97f9-001e8c66b255} - F:\Lenovo_Suite.exe
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2017-03-15] (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{21E66D89-8B5F-45D5-974D-FD65AC03280F}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-145182595-3807908386-872423831-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
BHO: No Name -> {13D67BB7-DB5F-48AA-884D-7A5D94168509} -> No File
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-22] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-01-25] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-03-15] (AVAST Software)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-25] (Oracle Corporation)
FireFox:
========
FF DefaultProfile: fwvfatgg.default
FF ProfilePath: C:\Users\Sasa\AppData\Roaming\Mozilla\Firefox\Profiles\fwvfatgg.default [2017-03-20]
FF Extension: (Adblock Plus) - C:\Users\Sasa\AppData\Roaming\Mozilla\Firefox\Profiles\fwvfatgg.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-23]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF48
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF48 [2017-03-16]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF48
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF48 [2017-03-16]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_25_0_0_127.dll [2017-03-14] ()
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-02-12] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-02-12] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-02-12] (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-02-12] (Foxit Corporation)
FF Plugin: @huawei.com/NPPlugin -> C:\Program Files\Web_TV\WebTVPlugin\NPPlugin.dll [2015-04-23] ()
FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-25] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-25] (Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin HKU\S-1-5-21-145182595-3807908386-872423831-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Sasa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-12-17] (Unity Technologies ApS)
Chrome:
=======
CHR Profile: C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default [2016-10-31]
CHR Extension: (Google Slides) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-01-13]
CHR Extension: (Google Docs) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-04-20]
CHR Extension: (Google Drive) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-13]
CHR Extension: (YouTube) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-04-20]
CHR Extension: (Google Search) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-04-20]
CHR Extension: (Avast SafePrice) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2016-10-31]
CHR Extension: (Google Docs Offline) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-20]
CHR Extension: (Avast Online Security) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-04-01]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-10-31]
CHR Extension: (Chrome Media Router) - C:\Users\Sasa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-31]
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>
Opera:
=======
OPR Extension: (Adblock Plus) - C:\Users\Sasa\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2017-03-20]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Amazon 1Button App Service; C:\Program Files\Amazon\Amazon1ButtonApp\Amazon1ButtonService.Exe [428728 2016-12-12] (Amazon Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5545144 2017-03-15] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-03-15] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [278784 2017-03-16] (AVAST Software)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [3303888 2017-01-20] (Malwarebytes)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-14] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdriverx.sys [257288 2017-03-15] (AVAST Software s.r.o.)
R0 aswbidsh; C:\Windows\system32\drivers\aswbidshx.sys [148720 2017-03-15] (AVAST Software s.r.o.)
R0 aswblog; C:\Windows\system32\drivers\aswblogx.sys [267016 2017-03-15] (AVAST Software s.r.o.)
R0 aswbuniv; C:\Windows\system32\drivers\aswbunivx.sys [41176 2017-03-15] (AVAST Software s.r.o.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [34136 2017-03-15] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [31064 2017-03-15] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [106392 2017-03-15] (AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [27896 2017-03-16] (AVAST Software)
R1 aswNetSec; C:\Windows\system32\drivers\aswNetSec.sys [355752 2017-03-16] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [90336 2017-03-15] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [62152 2017-03-15] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [756200 2017-03-15] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [465024 2017-03-15] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [118288 2017-03-15] (AVAST Software)
R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [278776 2017-03-15] (AVAST Software)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae.sys [59968 2017-02-24] ()
R2 MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys [161216 2017-03-20] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [95672 2017-03-20] (Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [39360 2017-03-20] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [219584 2017-03-20] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [64288 2017-03-20] (Malwarebytes)
R0 oem-drv86; C:\Windows\System32\DRIVERS\oem-drv86.sys [28160 2017-03-20] (secr9tos) [File not signed]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-20 11:06 - 2017-03-20 11:06 - 269160352 _____ C:\Windows\MEMORY.DMP
2017-03-20 11:06 - 2017-03-20 11:06 - 00160016 _____ C:\Windows\Minidump\032017-13650-01.dmp
2017-03-20 11:04 - 2017-03-20 11:12 - 00012940 _____ C:\Users\Sasa\Desktop\FRST.txt
2017-03-20 11:04 - 2017-03-20 11:11 - 00000000 ____D C:\FRST
2017-03-20 11:02 - 2017-03-20 11:02 - 01766912 _____ (Farbar) C:\Users\Sasa\Desktop\FRST.exe
2017-03-20 10:47 - 2017-03-20 11:07 - 00219584 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-03-20 10:47 - 2017-03-20 11:07 - 00161216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2017-03-20 10:47 - 2017-03-20 11:07 - 00095672 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-03-20 10:47 - 2017-03-20 11:07 - 00064288 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-03-20 10:47 - 2017-03-20 11:07 - 00039360 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-03-20 10:47 - 2017-03-20 10:47 - 00002020 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-03-20 10:47 - 2017-03-20 10:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-03-20 10:47 - 2017-03-20 10:47 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-03-20 10:47 - 2017-03-20 10:47 - 00000000 ____D C:\Program Files\Malwarebytes
2017-03-20 10:47 - 2017-02-24 06:23 - 00059968 _____ C:\Windows\system32\Drivers\mbae.sys
2017-03-20 10:46 - 2017-03-20 10:46 - 57131432 _____ (Malwarebytes ) C:\Users\Sasa\Desktop\mb3-setup-consumer-3.0.6.1469-1075.exe
2017-03-20 10:36 - 2017-03-20 10:36 - 00151504 _____ C:\Windows\Minidump\032017-12183-01.dmp
2017-03-20 10:25 - 2017-03-20 10:25 - 00160040 _____ C:\Windows\Minidump\032017-12620-01.dmp
2017-03-20 10:13 - 2017-03-20 10:13 - 00160520 _____ C:\Windows\Minidump\032017-12058-01.dmp
2017-03-20 09:38 - 2017-03-20 09:38 - 00160088 _____ C:\Windows\Minidump\032017-13213-01.dmp
2017-03-20 09:27 - 2017-03-20 09:27 - 00160176 _____ C:\Windows\Minidump\032017-12948-01.dmp
2017-03-20 09:15 - 2017-03-20 11:06 - 00000000 ____D C:\Windows\Minidump
2017-03-20 09:15 - 2017-03-20 09:15 - 00151472 _____ C:\Windows\Minidump\032017-13790-01.dmp
2017-03-20 09:03 - 2017-03-20 09:03 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-03-16 09:04 - 2017-03-16 09:04 - 00002003 _____ C:\Users\Public\Desktop\Avast Internet Security.lnk
2017-03-16 09:04 - 2017-03-16 09:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2017-03-16 09:03 - 2017-03-16 09:02 - 00355752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetSec.sys
2017-03-16 09:03 - 2017-03-15 09:02 - 00328208 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-03-16 09:02 - 2017-03-16 09:02 - 00027896 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetNd6.sys
2017-03-15 09:03 - 2017-03-15 09:02 - 00267016 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswblogx.sys
2017-03-15 09:03 - 2017-03-15 09:02 - 00257288 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdriverx.sys
2017-03-15 09:03 - 2017-03-15 09:02 - 00148720 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidshx.sys
2017-03-15 09:03 - 2017-03-15 09:02 - 00041176 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbunivx.sys
2017-03-14 14:02 - 2017-03-14 15:57 - 00000000 ____D C:\Users\Sasa\Desktop\tencoder_32
2017-03-14 13:53 - 2017-03-14 13:53 - 00001323 _____ C:\Users\Public\Desktop\Free Video Cutter Joiner.lnk
2017-03-14 13:53 - 2017-03-14 13:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoMedia
2017-03-14 13:53 - 2017-03-14 13:53 - 00000000 ____D C:\Program Files\DVDVideoMedia
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-03-20 11:06 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-03-20 11:05 - 2016-01-12 22:53 - 00028160 _____ (secr9tos) C:\Windows\system32\Drivers\oem-drv86.sys
2017-03-20 10:48 - 2009-07-14 05:34 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-03-20 10:48 - 2009-07-14 05:34 - 00026352 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-03-20 10:44 - 2016-05-02 09:22 - 00000000 ____D C:\Users\Sasa\AppData\Roaming\vlc
2017-03-20 10:16 - 2016-11-18 16:52 - 00000000 ____D C:\Users\Sasa\AppData\LocalLow\Mozilla
2017-03-19 08:46 - 2016-01-12 16:04 - 00000000 ____D C:\Windows\system32\Macromed
2017-03-19 08:36 - 2016-01-12 14:31 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2017-03-18 09:28 - 2016-11-18 13:09 - 00000000 ____D C:\Program Files\Mozilla Firefox
2017-03-16 09:03 - 2016-01-12 15:58 - 00000000 ____D C:\ProgramData\AVAST Software
2017-03-16 09:03 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2017-03-15 09:03 - 2016-01-12 16:00 - 00465024 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2017-03-15 09:03 - 2016-01-12 16:00 - 00278776 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2017-03-15 09:03 - 2016-01-12 16:00 - 00118288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2017-03-15 09:03 - 2016-01-12 16:00 - 00106392 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-03-15 09:03 - 2016-01-12 16:00 - 00090336 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-03-15 09:03 - 2016-01-12 16:00 - 00062152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-03-15 09:03 - 2016-01-12 16:00 - 00034136 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-03-15 09:02 - 2016-03-23 12:51 - 00031064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-03-15 09:02 - 2016-01-12 16:00 - 00756200 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2017-03-14 11:39 - 2016-01-12 16:04 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2017-03-14 11:39 - 2016-01-12 16:04 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2017-03-03 09:14 - 2016-01-12 16:38 - 00000000 ____D C:\Program Files\Opera
Some files in TEMP:
====================
2016-07-22 07:25 - 2016-07-22 07:25 - 0741440 _____ (Oracle Corporation) C:\Users\Sasa\AppData\Local\Temp\jre-8u101-windows-au.exe
2016-10-20 07:56 - 2016-10-20 07:56 - 0737856 _____ (Oracle Corporation) C:\Users\Sasa\AppData\Local\Temp\jre-8u111-windows-au.exe
2017-01-25 09:13 - 2017-01-25 09:13 - 0739904 _____ (Oracle Corporation) C:\Users\Sasa\AppData\Local\Temp\jre-8u121-windows-au.exe
2016-01-22 09:16 - 2016-01-22 09:16 - 0644704 _____ (Oracle Corporation) C:\Users\Sasa\AppData\Local\Temp\jre-8u71-windows-au.exe
2016-02-09 11:03 - 2016-02-09 11:03 - 0736352 _____ (Oracle Corporation) C:\Users\Sasa\AppData\Local\Temp\jre-8u73-windows-au.exe
2016-03-28 13:48 - 2016-03-28 13:48 - 0736320 _____ (Oracle Corporation) C:\Users\Sasa\AppData\Local\Temp\jre-8u77-windows-au.exe
2016-04-20 14:46 - 2016-04-20 14:46 - 0739904 _____ (Oracle Corporation) C:\Users\Sasa\AppData\Local\Temp\jre-8u91-windows-au.exe
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-03-06 10:34
==================== End of FRST.txt ============================
mycity.rs/must-login.png
|