izbacuje me iz igre.

1

izbacuje me iz igre.

offline
  • Istrazivanje Windowsa
  • Pridružio: 12 Jul 2012
  • Poruke: 1023

Kompjuter mi izbacuje svaku igru onako minimizira je i onda je moram vratiti tako sto kliknem na tab od igre.To se desava i sa internetom odjednom postane siv.

Dosao sam da proverim da li imam neki virus jer mi je kolega rekao da otvorim temu u ambulanti.

DDS:

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.45.2
Run by Slavko Radic at 14:16:44 on 2014-02-28
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.959.23 [GMT 1:00]
.
.
============== Running Processes ================
.
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\PixArt\PAC7302\Monitor.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = [Link mogu videti samo ulogovani korisnici]
uSearch Bar = [Link mogu videti samo ulogovani korisnici]
mStart Page = [Link mogu videti samo ulogovani korisnici]
uInternet Connection Wizard,ShellNext = iexplore
uSearchAssistant = [Link mogu videti samo ulogovani korisnici]
uSearchURL,(Default) = [Link mogu videti samo ulogovani korisnici]
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - <orphaned>
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil32_11_9_900_170_Plugin.exe -update plugin
mRun: [PAC7302_Monitor] c:\windows\pixart\pac7302\Monitor.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
mRun: [nwiz] c:\program files\nvidia corporation\nview\nwiz.exe /installquiet
uPolicies-Explorer: NoDriveTypeAutoRun = dword:221
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - [Link mogu videti samo ulogovani korisnici]
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - [Link mogu videti samo ulogovani korisnici]
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{DCDA6A31-04D3-488B-BDC7-FBF8DD2AA9B8} : DHCPNameServer = 192.168.1.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
AppInit_DLLs=
Hosts: 192.168.1.2 ps2nfs04.ea.com
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\slavko radic\application data\mozilla\firefox\profiles\ocykmfzx.default\
FF - prefs.js: browser.startup.homepage - [Link mogu videti samo ulogovani korisnici]
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\java\jre7\bin\dtplugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20913.0\npctrlui.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_9_900_170.dll
.
============= SERVICES / DRIVERS ===============
.
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 RPCER;Remote Procedure Call (HNM);c:\program files\common files\odbc\comp.exe [2006-3-28 12801736]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2013-1-19 1691480]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2013-7-20 754856]
S4 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-7-25 162672]
.
=============== File Associations ===============
.
FileExt: .txt: txtfile=c:\windows\system32\NOTEPAD.EXE %1 [UserChoice]
FileExt: .inf: inffile=c:\windows\system32\NOTEPAD.EXE %1 [UserChoice]
.
=============== Created Last 30 ================
.
2014-02-23 10:40:20 -------- d-----w- c:\documents and settings\slavko radic\application data\HD Tune Pro
2014-02-22 08:35:48 -------- d-----w- c:\documents and settings\slavko radic\application data\Microsoft Games
2014-02-16 14:18:18 -------- d-----w- c:\documents and settings\all users\application data\Trymedia
2014-02-15 11:13:16 -------- d-----w- c:\documents and settings\slavko radic\application data\Hotspot Shield
2014-02-05 19:56:17 -------- d-----w- c:\documents and settings\slavko radic\application data\Apowersoft
2014-02-03 19:18:52 -------- d-----w- c:\documents and settings\slavko radic\application data\uTorrent
.
==================== Find3M ====================
.
2014-02-27 18:18:23 4224 -c--a-w- c:\windows\system32\drivers\beep.sys
2014-02-05 23:26:52 920064 ----a-w- c:\windows\system32\wininet.dll
2014-02-05 23:26:43 43520 ------w- c:\windows\system32\licmgr10.dll
2014-02-05 23:26:42 1469440 ------w- c:\windows\system32\inetcpl.cpl
2014-02-05 23:26:37 18944 ----a-w- c:\windows\system32\corpol.dll
2014-02-05 22:24:05 385024 ------w- c:\windows\system32\html.iec
2014-01-27 22:02:07 1073452 -c--a-w- c:\windows\system32\nvdrsdb1.bin
2014-01-27 22:02:07 1 -c--a-w- c:\windows\system32\nvdrssel.bin
2014-01-27 22:01:58 1073452 -c--a-w- c:\windows\system32\nvdrsdb0.bin
2014-01-04 03:13:05 420864 ----a-w- c:\windows\system32\vbscript.dll
2013-12-12 19:50:25 692616 -c--a-w- c:\windows\system32\FlashPlayerApp.exe
2013-12-12 19:50:24 71048 -c--a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-12-05 11:26:06 1172992 ----a-w- c:\windows\system32\msxml3.dll
.
============= FINISH: 14:17:49,42 ===============


[Link mogu videti samo ulogovani korisnici]



offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Ovaj izvještaj mi izgleda čisto, no obavićemo dublju provjeru.


Arrow

Preuzmi Farbar-ov Farbar Recovery Scan Tool () sa ove adrese na Desktop:
Postoji 32-bit. i 64-bitna verzija. Potrebno je preuzeti verziju koja je kompatibilna sa tvojim sistemom.
Ako nisi siguran koja verzija se odnosi na tvoj sistem, preuzmi ih obe i pokreni. Samo jedan od njih će raditi na tvom sistemu, to će biti prava verzija.


dvoklikom pokreni program, kada se alat pokrene klikni Yes na Disclaimer prozor;
pod Optional Scan sekciji, označi List BCD i Driver MD5 polja;
klikni na dugme Scan;
po završetku skeniranja, alat će formirati izveštaj (FRST.txt) u isti direktorijum gde je FRST alat sačuvan;
iskopiraj sadržaj FRST.txt izveštaja u poruku;
po prvom pokretanju, alat bi trebao formirati i dodatni izveštaj (Addition.txt);
okači Addition.txt izveštaj uz poruku koristeći opciju Prikači fajl



offline
  • Istrazivanje Windowsa
  • Pridružio: 12 Jul 2012
  • Poruke: 1023

FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-02-2014 02
Ran by Slavko Radic (administrator) on SLAVKO on 28-02-2014 19:25:49
Running from C:\Documents and Settings\Slavko Radic\My Documents\Downloads
Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: [Link mogu videti samo ulogovani korisnici]
Download link for 64-Bit Version: [Link mogu videti samo ulogovani korisnici]
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: [Link mogu videti samo ulogovani korisnici]

==================== Processes (Whitelisted) =================

(PixArt Imaging Incorporation) C:\WINDOWS\PixArt\PAC7302\Monitor.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\IEXPLORE.EXE
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [PAC7302_Monitor] - C:\WINDOWS\PixArt\PAC7302\Monitor.exe [323584 2007-12-10] (PixArt Imaging Incorporation)
HKLM\...\Run: [NvCplDaemon] - C:\WINDOWS\system32\NvCpl.dll [15517472 2013-01-31] (NVIDIA Corporation)
HKLM\...\Run: [NvMediaCenter] - C:\WINDOWS\system32\NvMCTray.dll [108832 2013-01-31] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1982312 2013-01-31] ()
HKU\S-1-5-21-57989841-606747145-839522115-1003\...\RunOnce: [FlashPlayerUpdate] - C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_11_9_900_170_Plugin.exe [839560 2013-12-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-57989841-606747145-839522115-1003\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-57989841-606747145-839522115-1003\...\MountPoints2: F - F:\setup.exe /autorun

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [Link mogu videti samo ulogovani korisnici]
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: No Name - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File
Toolbar: HKLM - No Name - {10921475-03CE-4E04-90CE-E2E7EF20C814} - No File
Toolbar: HKCU - &Address - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
DPF: {17492023-C23A-453E-A040-C7C580BBF700} [Link mogu videti samo ulogovani korisnici]
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici]
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Slavko Radic\Application Data\Mozilla\Firefox\Profiles\ocykmfzx.default
FF Homepage: [Link mogu videti samo ulogovani korisnici]
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Adblock Plus Pop-up Addon - C:\Documents and Settings\Slavko Radic\Application Data\Mozilla\Firefox\Profiles\ocykmfzx.default\Extensions\adblockpopups@jessehakanen.net.xpi [2014-02-23]
FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files\Mozilla Firefox\extensions\afurladvisor@anchorfree.com [2014-02-15]

========================== Services (Whitelisted) =================

S4 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2013-10-08] (Oracle Corporation)
S2 RPCER; C:\Program Files\Common Files\ODBC\comp.exe [12801736 2006-03-28] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R1 AmdK8; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [36864 2006-07-01] (Advanced Micro Devices)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
R3 HSFHWBS2; C:\WINDOWS\System32\DRIVERS\HSFBS2S2.sys [220032 2004-08-03] (Conexant Systems, Inc.)
R3 HSF_DP; C:\WINDOWS\System32\DRIVERS\HSFDPSP2.sys [1041536 2004-08-03] (Conexant Systems, Inc.)
R3 HssDrv; C:\WINDOWS\System32\DRIVERS\HssDrv.sys [44744 2013-06-21] (AnchorFree Inc.)
S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R0 nvata; C:\WINDOWS\System32\DRIVERS\nvata.sys [105344 2006-08-14] (NVIDIA Corporation)
R0 nvgts; C:\WINDOWS\System32\DRIVERS\nvgts.sys [168040 2010-04-09] (NVIDIA Corporation)
S3 PAC7302; C:\WINDOWS\System32\DRIVERS\PAC7302.SYS [461824 2009-04-28] (PixArt Imaging Inc.)
S3 rtl8139; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [20992 2004-08-03] (Realtek Semiconductor Corporation)
R3 winachsf; C:\WINDOWS\System32\DRIVERS\HSFCXTS2.sys [685056 2004-08-03] (Conexant Systems, Inc.)
S4 IntelIde; No ImagePath
U5 Nsynas32; C:\Windows\System32\Drivers\Nsynas32.sys [17784 2001-04-09] (Syncrosoft Hard- und Software GmbH)
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
U1 WS2IFSL;
U3 mbr; \??\C:\DOCUME~1\SLAVKO~1\LOCALS~1\Temp\mbr.sys [X]

========================== Drivers MD5 =======================

C:\WINDOWS\System32\DRIVERS\ACPI.sys 8FD99680A539792A30E97944FDAECF17
C:\WINDOWS\system32\Drivers\ACPIEC.sys 9859C0F6936E723E4892D7141B1327D5
C:\WINDOWS\System32\drivers\aec.sys 8BED39E3C35D6A489438B8141717A557
C:\WINDOWS\System32\drivers\Afc.sys FE3EA6E9AFC1A78E6EDCA121E006AFB7
C:\WINDOWS\System32\drivers\afd.sys 1E44BC1E83D8FD2305F8D452DB109CF9
C:\WINDOWS\System32\drivers\Ambfilt.sys 267FC636801EDC5AB28E14036349E3BE
C:\WINDOWS\System32\DRIVERS\AmdK8.sys EFBB0956BAED786E137351B5CA272AEF
C:\WINDOWS\System32\DRIVERS\asyncmac.sys B153AFFAC761E7F5FCFA822B9C4E97BC
C:\WINDOWS\System32\DRIVERS\atapi.sys 9F3A2F5AA6875C72BF062C712CFA2674
C:\WINDOWS\System32\DRIVERS\atmarpc.sys 9916C1225104BA14794209CFA8012159
C:\WINDOWS\System32\DRIVERS\audstub.sys D9F724AA26C010A217C97606B160ED68
C:\WINDOWS\system32\Drivers\Beep.sys DA1F27D85E0D1525F6621372E7B685E9
C:\WINDOWS\system32\Drivers\cbidf2k.sys 90A673FC8E12A79AFBED2576F6A7AAF9
C:\WINDOWS\System32\DRIVERS\CCDECODE.sys 0BE5AEF125BE881C4F854C554F2B025C
C:\WINDOWS\system32\Drivers\Cdaudio.sys C1B486A7658353D33A10CC15211A873B
C:\WINDOWS\system32\Drivers\Cdfs.sys C885B02847F5D2FD45A24E219ED93B32
C:\WINDOWS\System32\DRIVERS\cdrom.sys 1F4260CC5B42272D71F79E570A27A4FE
C:\WINDOWS\System32\DRIVERS\disk.sys 044452051F3E02E7963599FC8F4F3E25
C:\WINDOWS\System32\drivers\dmboot.sys D992FE1274BDE0F84AD826ACAE022A41
C:\WINDOWS\System32\drivers\dmio.sys 7C824CF7BBDE77D95C08005717A95F6F
C:\WINDOWS\System32\drivers\dmload.sys E9317282A63CA4D188C0DF5E09C6AC5F
C:\WINDOWS\System32\drivers\DMusic.sys 8A208DFCF89792A484E76C40E5F50B45
C:\WINDOWS\System32\drivers\drmkaud.sys 8F5FCFF8E8848AFAC920905FBD9D33C8
C:\WINDOWS\system32\Drivers\Fastfat.sys 38D332A6D56AF32635675F132548343E
C:\WINDOWS\System32\DRIVERS\fdc.sys 92CDD60B6730B9F50F6A1A0C1F8CDC81
C:\WINDOWS\system32\Drivers\Fips.sys D45926117EB9FA946A6AF572FBE1CAA3
C:\WINDOWS\System32\DRIVERS\flpydisk.sys 9D27E7B80BFCDF1CDD9B555862D5E7F0
C:\WINDOWS\System32\drivers\fltmgr.sys B2CF4B0786F8212CB92ED2B50C6DB6B0
C:\WINDOWS\system32\Drivers\Fs_Rec.sys 3E1E2BD4F39B0E2B7DC4F4D2BCC2779A
C:\WINDOWS\System32\DRIVERS\ftdisk.sys 6AC26732762483366C3969C9E4D2259D
C:\WINDOWS\System32\DRIVERS\msgpc.sys 0A02C63C8B144BD8C86B103DEE7C86A2
C:\WINDOWS\System32\DRIVERS\hamachi.sys 833051C6C6C42117191935F734CFBD97
C:\WINDOWS\System32\DRIVERS\HDAudBus.sys 573C7D0A32852B48F3058CFD8026F511
C:\WINDOWS\System32\DRIVERS\hidusb.sys CCF82C5EC8A7326C3066DE870C06DAF1
C:\WINDOWS\System32\DRIVERS\HSFBS2S2.sys 970178E8E003EB1481293830069624B9
C:\WINDOWS\System32\DRIVERS\HSFDPSP2.sys EBB354438A4C5A3327FB97306260714A
C:\WINDOWS\System32\DRIVERS\HssDrv.sys 2F5474C309EA1F9B7A3C4CBD890EF257
C:\WINDOWS\System32\Drivers\HTTP.sys F80A415EF82CD06FFAF0D971528EAD38
C:\WINDOWS\System32\DRIVERS\i8042prt.sys 4A0B06AA8943C1E332520F7440C0AA30
C:\WINDOWS\System32\DRIVERS\imapi.sys 083A052659F5310DD8B6A6CB05EDCF8E
C:\WINDOWS\System32\drivers\RtkHDAud.sys 85637B414F8E386FB045B6A46119BE14
C:\WINDOWS\System32\drivers\ip6fw.sys 3BB22519A194418D5FEC05D800A19AD0
C:\WINDOWS\System32\DRIVERS\ipfltdrv.sys 731F22BA402EE4B62748ADAF6363C182
C:\WINDOWS\System32\DRIVERS\ipinip.sys B87AB476DCF76E72010632B5550955F5
C:\WINDOWS\System32\DRIVERS\ipnat.sys CC748EA12C6EFFDE940EE98098BF96BB
C:\WINDOWS\System32\DRIVERS\ipsec.sys 23C74D75E36E7158768DD63D92789A91
C:\WINDOWS\System32\DRIVERS\irenum.sys C93C9FF7B04D772627A3646D89F7BF89
C:\WINDOWS\System32\DRIVERS\isapnp.sys 05A299EC56E52649B1CF2FC52D20F2D7
C:\WINDOWS\System32\DRIVERS\kbdclass.sys 463C1EC80CD17420A542B7F36A36F128
C:\WINDOWS\System32\drivers\kmixer.sys 692BCF44383D056AED41B045A323D378
C:\WINDOWS\system32\Drivers\KSecDD.sys B467646C54CC746128904E1654C750C1
C:\WINDOWS\System32\DRIVERS\mdmxsdk.sys 195741AEE20369980796B557358CD774
C:\WINDOWS\system32\Drivers\mnmdd.sys 4AE068242760A1FB6E1A44BF4E16AFA6
C:\WINDOWS\system32\Drivers\Modem.sys DFCBAD3CEC1C5F964962AE10E0BCC8E1
C:\WINDOWS\System32\drivers\Monfilt.sys C7D9F9717916B34C1B00DD4834AF485C
C:\WINDOWS\System32\DRIVERS\mouclass.sys 35C9E97194C8CFB8430125F8DBC34D04
C:\WINDOWS\system32\Drivers\MountMgr.sys A80B9A0BAD1B73637DBCBBA7DF72D3FD
C:\WINDOWS\System32\DRIVERS\mrxdav.sys 11D42BB6206F33FBB3BA0288D3EF81BD
C:\WINDOWS\System32\DRIVERS\mrxsmb.sys 7D304A5EB4344EBEEAB53A2FE3FFB9F0
C:\WINDOWS\system32\Drivers\Msfs.sys C941EA2454BA8350021D774DAF0F1027
C:\WINDOWS\System32\drivers\MSKSSRV.sys D1575E71568F4D9E14CA56B7B0453BF1
C:\WINDOWS\System32\drivers\MSPCLOCK.sys 325BB26842FC7CCC1FCCE2C457317F3E
C:\WINDOWS\System32\drivers\MSPQM.sys BAD59648BA099DA4A17680B39730CB3D
C:\WINDOWS\System32\DRIVERS\mssmbios.sys AF5F4F3F14A8EA2C26DE30F7A1E17136
C:\WINDOWS\System32\drivers\MSTEE.sys E53736A9E30C45FA9E7B5EAC55056D1D
C:\WINDOWS\system32\Drivers\Mup.sys DE6A75F5C270E756C5508D94B6CF68F5
C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys 5B50F1B2A2ED47D560577B221DA734DB
C:\WINDOWS\system32\Drivers\NDIS.sys 1DF7F42665C94B825322FAE71721130D
C:\WINDOWS\System32\DRIVERS\NdisIP.sys 7FF1F1FD8609C149AA432F95A8163D97
C:\WINDOWS\System32\DRIVERS\ndistapi.sys 0109C4F3850DFBAB279542515386AE22
C:\WINDOWS\System32\DRIVERS\ndisuio.sys F927A4434C5028758A842943EF1A3849
C:\WINDOWS\System32\DRIVERS\ndiswan.sys EDC1531A49C80614B2CFDA43CA8659AB
C:\WINDOWS\system32\Drivers\NDProxy.sys 2F597BB467E05B1FE3830EABD821B8E0
C:\WINDOWS\System32\DRIVERS\netbios.sys 5D81CF9A2F1A3A756B66CF684911CDF0
C:\WINDOWS\System32\DRIVERS\netbt.sys 74B2B2F5BEA5E9A3DC021D685551BD3D
C:\WINDOWS\system32\Drivers\Npfs.sys 3182D64AE053D6FB034F44B6DEF8034A
C:\WINDOWS\system32\Drivers\Ntfs.sys 78A08DD6A8D65E697C18E1DB01C5CDCA
C:\WINDOWS\system32\Drivers\Null.sys 73C1E1F395918BC2C6DD67AF7591A3AD
C:\WINDOWS\System32\DRIVERS\nv4_mini.sys 7C56F3FD65B2BDB315CA3605A5392D7B
C:\WINDOWS\System32\DRIVERS\nvata.sys 947C4A0E7B25BCECC3B40F0F1070378B
C:\WINDOWS\System32\DRIVERS\nvgts.sys 52DCE3B30C9D61C8E20FE3C6DA4BDFB7
C:\WINDOWS\System32\DRIVERS\nwlnkflt.sys B305F3FAD35083837EF46A0BBCE2FC57
C:\WINDOWS\System32\DRIVERS\nwlnkfwd.sys C99B3415198D1AAB7227F2C88FD664B9
C:\WINDOWS\System32\DRIVERS\PAC7302.SYS AD66BC56DD6A030174C03395B3DC0720
C:\WINDOWS\System32\DRIVERS\parport.sys 5575FAF8F97CE5E713D108C2A58D7C7C
C:\WINDOWS\system32\Drivers\PartMgr.sys BEB3BA25197665D82EC7065B724171C6
C:\WINDOWS\system32\Drivers\ParVdm.sys 70E98B3FD8E963A6A46A2E6247E0BEA1
C:\WINDOWS\System32\DRIVERS\pci.sys A219903CCF74233761D92BEF471A07B1
C:\WINDOWS\System32\DRIVERS\pciide.sys CCF5F451BB1A5A2A522A76E670000FF0
C:\WINDOWS\system32\Drivers\Pcmcia.sys 9E89EF60E9EE05E3F2EEF2DA7397F1C1
C:\WINDOWS\System32\DRIVERS\raspptp.sys EFEEC01B1D3CF84F16DDD24D9D9D8F99
C:\WINDOWS\System32\DRIVERS\processr.sys A32BEBAF723557681BFC6BD93E98BD26
C:\WINDOWS\System32\DRIVERS\psched.sys 09298EC810B07E5D582CB3A3F9255424
C:\WINDOWS\System32\DRIVERS\ptilink.sys 80D317BD1C3DBC5D4FE7B1678C60CADD
C:\WINDOWS\System32\DRIVERS\rasacd.sys FE0D99D6F31E4FAD8159F690D68DED9C
C:\WINDOWS\System32\DRIVERS\rasl2tp.sys 11B4A627BC9614B885C4969BFA5FF8A6
C:\WINDOWS\System32\DRIVERS\raspppoe.sys 5BC962F2654137C9909C3D4603587DEE
C:\WINDOWS\System32\DRIVERS\raspti.sys FDBB1D60066FCFBB7452FD8F9829B242
C:\WINDOWS\System32\DRIVERS\rdbss.sys 7AD224AD1A1437FE28D89CF22B17780A
C:\WINDOWS\System32\DRIVERS\RDPCDD.sys 4912D5B403614CE99C28420F75353332
C:\WINDOWS\System32\DRIVERS\rdpdr.sys 15CABD0F7C00C47C70124907916AF3F1
C:\WINDOWS\system32\Drivers\RDPWD.sys 43AF5212BD8FB5BA6EED9754358BD8F7
C:\WINDOWS\System32\DRIVERS\redbook.sys F828DD7E1419B6653894A8F97A0094C5
C:\WINDOWS\System32\DRIVERS\Rtnicxp.sys 6DBD011D47EBD394A5EA7843B8AFA7EA
C:\WINDOWS\System32\DRIVERS\RTL8139.SYS D507C1400284176573224903819FFDA3
C:\WINDOWS\system32\Drivers\SCDEmu.sys 20B2751CD4C8F3FD989739CA661B9F30
C:\WINDOWS\System32\DRIVERS\secdrv.sys ==> MD5 is legit
C:\WINDOWS\System32\DRIVERS\serenum.sys 0F29512CCD6BEAD730039FB4BD2C85CE
C:\WINDOWS\System32\DRIVERS\serial.sys CCA207A8896D4C6A0C9CE29A4AE411A7
C:\WINDOWS\system32\Drivers\Sfloppy.sys 8E6B8C671615D126FDC553D1E2DE5562
C:\WINDOWS\System32\DRIVERS\SLIP.sys 866D538EBE33709A5C9F5C62B73B7D14
C:\WINDOWS\System32\drivers\splitter.sys AB8B92451ECB048A4D1DE7C3FFCB4A9F
C:\WINDOWS\System32\DRIVERS\sr.sys 76BB022C2FB6902FD5BDD4F78FC13A5D
C:\WINDOWS\System32\DRIVERS\srv.sys 47DDFC2F003F7F9F0592C6874962A2E7
C:\WINDOWS\System32\DRIVERS\StreamIP.sys 77813007BA6265C4B6098187E6ED79D2
C:\WINDOWS\System32\DRIVERS\swenum.sys 3941D127AEF12E93ADDF6FE6EE027E0F
C:\WINDOWS\System32\drivers\swmidi.sys 8CE882BCC6CF8A62F2B2323D95CB3D01
C:\WINDOWS\System32\drivers\sysaudio.sys 8B83F3ED0F1688B4958F77CD6D2BF290
C:\WINDOWS\System32\DRIVERS\tcpip.sys 9AEFA14BD6B182D61E3119FA5F436D3D
C:\WINDOWS\system32\Drivers\TDPIPE.sys 6471A66807F5E104E4885F5B67349397
C:\WINDOWS\system32\Drivers\TDTCP.sys C56B6D0402371CF3700EB322EF3AAF61
C:\WINDOWS\System32\DRIVERS\termdd.sys 88155247177638048422893737429D9E
C:\WINDOWS\system32\Drivers\Udfs.sys 5787B80C2E3C5E2F56C2A233D91FA2C9
C:\WINDOWS\System32\DRIVERS\update.sys 402DDC88356B1BAC0EE3DD1580C76A31
C:\WINDOWS\System32\drivers\usbaudio.sys 65898A183FBF1D1F7759D5CCB364DCD4
C:\WINDOWS\System32\DRIVERS\usbccgp.sys 1B611611C28D2DF25BC057D79C6F13FC
C:\WINDOWS\System32\DRIVERS\usbehci.sys 4BAC8DF07F1D8434FC640E677A62204E
C:\WINDOWS\System32\DRIVERS\usbhub.sys 1AB3CDDE553B6E064D2E754EFE20285C
C:\WINDOWS\System32\DRIVERS\usbohci.sys 0DAECCE65366EA32B162F85F07C6753B
C:\WINDOWS\System32\drivers\usbser.sys 84C44D720655A8AA475E57A9E764D675
C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS A32426D9B14A089EAA1D922E0C5801A9
C:\WINDOWS\System32\drivers\vga.sys 0D3A8FAFCEACD8B7625CD549757A7DF1
C:\WINDOWS\system32\Drivers\VolSnap.sys 4C8FCB5CC53AAB716D810740FE59D025
C:\WINDOWS\System32\DRIVERS\wanarp.sys E20B95BAEDB550F32DD489265C1DA1F6
C:\WINDOWS\System32\Drivers\wdf01000.sys D918617B46457B9AC28027722E30F647
C:\WINDOWS\System32\drivers\wdmaud.sys 6768ACF64B18196494413695F0C3A00F
C:\WINDOWS\System32\DRIVERS\HSFCXTS2.sys 1225EBEA76AAC3C84DF6C54FE5E5D8BE
C:\WINDOWS\System32\Drivers\wpdusb.sys C1B3D9D75C3FB735F5FA3A5806ADED57
C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS C98B39829C2BBD34E454150633C62C78

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-28 19:25 - 2014-02-28 19:25 - 00000000 ____D () C:\FRST
2014-02-28 14:17 - 2014-02-28 14:17 - 00009879 _____ () C:\Documents and Settings\Slavko Radic\Desktop\attach.txt
2014-02-28 14:17 - 2014-02-28 14:17 - 00006599 _____ () C:\Documents and Settings\Slavko Radic\Desktop\dds.txt
2014-02-27 19:18 - 2014-02-27 19:18 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Start Menu\Programs\Counter-Strike 1.6
2014-02-23 11:40 - 2014-02-23 11:40 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\HD Tune Pro
2014-02-22 09:36 - 2014-02-22 09:36 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-02-22 09:36 - 2014-02-22 09:36 - 00000000 _____ () C:\WINDOWS\setupact.log
2014-02-22 09:35 - 2014-02-22 09:35 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Microsoft Games
2014-02-22 09:34 - 2014-02-22 09:42 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Games
2014-02-22 09:33 - 2014-02-27 20:08 - 00023161 _____ () C:\WINDOWS\setupapi.log
2014-02-20 19:02 - 2014-02-20 20:25 - 00000010 _____ () C:\Documents and Settings\Slavko Radic\Desktop\asas.txt
2014-02-20 08:38 - 2014-02-20 08:38 - 00142032 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-02-16 15:18 - 2014-02-16 15:18 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Trymedia
2014-02-15 12:13 - 2014-02-15 12:13 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Hotspot Shield
2014-02-15 09:40 - 2014-02-15 12:13 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-05 20:56 - 2014-02-05 20:56 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Apowersoft
2014-02-04 19:16 - 2014-02-04 19:16 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\LucasArts
2014-02-03 20:19 - 2014-02-20 16:48 - 00000436 _____ () C:\Documents and Settings\Slavko Radic\Desktop\µTorrent.lnk
2014-02-03 20:18 - 2014-02-27 18:43 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\uTorrent
2014-02-01 19:02 - 2014-02-03 19:35 - 00000283 _____ () C:\Documents and Settings\Slavko Radic\Desktop\New Text Document.txt
2014-02-01 18:58 - 2005-08-16 11:08 - 01533952 _____ () C:\Documents and Settings\Slavko Radic\Desktop\mhdd32ver4.6.iso
2014-02-01 12:51 - 2014-02-01 12:51 - 00284593 _____ () C:\Documents and Settings\Slavko Radic\Downloads\F-Zero.zip
2014-01-30 17:52 - 2014-01-30 18:31 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Desktop\Backup

==================== One Month Modified Files and Folders =======

2014-02-28 19:25 - 2014-02-28 19:25 - 00000000 ____D () C:\FRST
2014-02-28 19:06 - 2012-04-13 15:30 - 00000830 ____C () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-02-28 18:03 - 2012-03-01 18:24 - 01921471 ____C () C:\WINDOWS\WindowsUpdate.log
2014-02-28 14:17 - 2014-02-28 14:17 - 00009879 _____ () C:\Documents and Settings\Slavko Radic\Desktop\attach.txt
2014-02-28 14:17 - 2014-02-28 14:17 - 00006599 _____ () C:\Documents and Settings\Slavko Radic\Desktop\dds.txt
2014-02-28 10:28 - 2013-07-08 19:00 - 00000324 ____C () C:\WINDOWS\Tasks\YourFile DownloaderUpdate.job
2014-02-28 10:28 - 2012-03-01 19:17 - 00000159 ____C () C:\WINDOWS\wiadebug.log
2014-02-28 10:28 - 2012-03-01 19:17 - 00000049 ____C () C:\WINDOWS\wiaservc.log
2014-02-28 10:28 - 2012-03-01 18:29 - 00000006 ___HC () C:\WINDOWS\Tasks\SA.DAT
2014-02-27 22:46 - 2012-03-01 18:30 - 00000178 __SHC () C:\Documents and Settings\Slavko Radic\ntuser.ini
2014-02-27 22:46 - 2012-03-01 18:29 - 00032416 _____ () C:\WINDOWS\SchedLgU.Txt
2014-02-27 20:08 - 2014-02-22 09:33 - 00023161 _____ () C:\WINDOWS\setupapi.log
2014-02-27 19:21 - 2012-03-02 15:45 - 00000000 ___RD () C:\Documents and Settings\Slavko Radic\Desktop\igre
2014-02-27 19:18 - 2014-02-27 19:18 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Start Menu\Programs\Counter-Strike 1.6
2014-02-27 19:18 - 2012-03-01 19:15 - 00000000 ____D () C:\Program Files\Common Files\ODBC
2014-02-27 19:18 - 2004-08-04 13:00 - 00004224 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\beep.sys
2014-02-27 19:18 - 2004-08-04 13:00 - 00004224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\beep.sys
2014-02-27 18:43 - 2014-02-03 20:18 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\uTorrent
2014-02-27 17:56 - 2014-01-16 19:16 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Skype
2014-02-27 17:52 - 2012-04-18 19:49 - 00002265 ____C () C:\Documents and Settings\All Users\Desktop\Skype.lnk
2014-02-27 11:25 - 2004-08-04 13:00 - 00002206 ____C () C:\WINDOWS\system32\wpa.dbl
2014-02-23 11:40 - 2014-02-23 11:40 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\HD Tune Pro
2014-02-22 09:51 - 2014-01-05 15:12 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\My Documents\My Games
2014-02-22 09:42 - 2014-02-22 09:34 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Games
2014-02-22 09:36 - 2014-02-22 09:36 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-02-22 09:36 - 2014-02-22 09:36 - 00000000 _____ () C:\WINDOWS\setupact.log
2014-02-22 09:35 - 2014-02-22 09:35 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Microsoft Games
2014-02-22 09:34 - 2012-03-01 18:25 - 00316640 ____C () C:\WINDOWS\WMSysPr9.prx
2014-02-20 20:25 - 2014-02-20 19:02 - 00000010 _____ () C:\Documents and Settings\Slavko Radic\Desktop\asas.txt
2014-02-20 16:48 - 2014-02-03 20:19 - 00000436 _____ () C:\Documents and Settings\Slavko Radic\Desktop\µTorrent.lnk
2014-02-20 16:41 - 2012-03-01 18:36 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-02-20 08:38 - 2014-02-20 08:38 - 00142032 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-02-19 13:32 - 2012-03-05 21:52 - 00000000 __SHD () C:\Documents and Settings\Slavko Radic\UserData
2014-02-19 13:32 - 2012-03-01 18:30 - 00000000 ____D () C:\Documents and Settings\Slavko Radic
2014-02-16 15:18 - 2014-02-16 15:18 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Trymedia
2014-02-16 15:12 - 2012-03-01 18:23 - 00000000 ____D () C:\WINDOWS\system32\DirectX
2014-02-15 12:13 - 2014-02-15 12:13 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Hotspot Shield
2014-02-15 12:13 - 2014-02-15 09:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-14 21:29 - 2013-12-28 22:40 - 00000000 ___RD () C:\Documents and Settings\Slavko Radic\Desktop\Important
2014-02-13 12:07 - 2012-07-11 18:13 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2014-02-12 23:12 - 2012-03-01 19:15 - 00505754 ____C () C:\WINDOWS\system32\PerfStringBackup.INI
2014-02-12 23:10 - 2013-08-14 21:57 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-02-12 23:03 - 2012-05-26 05:49 - 85946576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-02-12 16:48 - 2012-03-30 13:36 - 00002515 ____C () C:\Documents and Settings\Slavko Radic\Desktop\Microsoft Office Word 2007.lnk
2014-02-06 03:54 - 2004-08-04 13:00 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-02-06 03:54 - 2004-08-04 13:00 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe
2014-02-06 00:26 - 2013-01-21 11:17 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll
2014-02-06 00:26 - 2013-01-20 09:04 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll
2014-02-06 00:26 - 2012-10-31 12:33 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll
2014-02-06 00:26 - 2012-10-31 12:33 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll
2014-02-06 00:26 - 2012-10-31 12:33 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll
2014-02-06 00:26 - 2010-04-16 17:09 - 06021120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll
2014-02-06 00:26 - 2010-04-16 17:09 - 01216000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll
2014-02-06 00:26 - 2010-04-16 17:09 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll
2014-02-06 00:26 - 2010-04-16 17:09 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll
2014-02-06 00:26 - 2009-03-08 14:09 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll
2014-02-06 00:26 - 2009-03-08 04:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-02-06 00:26 - 2009-03-08 04:34 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl
2014-02-06 00:26 - 2009-03-08 04:34 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll
2014-02-06 00:26 - 2009-03-08 04:34 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll
2014-02-06 00:26 - 2009-03-08 04:33 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll
2014-02-06 00:26 - 2009-03-08 04:33 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll
2014-02-06 00:26 - 2009-03-08 04:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-02-06 00:26 - 2009-03-08 04:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-02-06 00:26 - 2009-03-08 04:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 06021120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-02-06 00:26 - 2004-08-04 13:00 - 01216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll
2014-02-05 23:24 - 2004-08-04 13:00 - 00385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2014-02-05 21:13 - 2012-03-01 18:39 - 00016384 _____ () C:\Documents and Settings\Slavko Radic\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-02-05 20:56 - 2014-02-05 20:56 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Apowersoft
2014-02-04 19:16 - 2014-02-04 19:16 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\LucasArts
2014-02-03 19:40 - 2012-03-01 19:08 - 00000000 ____D () C:\WINDOWS\Help
2014-02-03 19:35 - 2014-02-01 19:02 - 00000283 _____ () C:\Documents and Settings\Slavko Radic\Desktop\New Text Document.txt
2014-02-01 22:10 - 2014-01-04 21:23 - 00000045 _____ () C:\WINDOWS\system32\initdebug.nfo
2014-02-01 12:51 - 2014-02-01 12:51 - 00284593 _____ () C:\Documents and Settings\Slavko Radic\Downloads\F-Zero.zip
2014-01-30 18:31 - 2014-01-30 17:52 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Desktop\Backup

Some content of TEMP:
====================
C:\Documents and Settings\Slavko Radic\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\Slavko Radic\Local Settings\Temp\wlstuhmd.exe


==================== Bamital & volsnap Check =================

C:\WINDOWS\explorer.exe => MD5 is legit
C:\WINDOWS\system32\winlogon.exe => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
C:\WINDOWS\system32\User32.dll => MD5 is legit
C:\WINDOWS\system32\userinit.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys => MD5 is legit

==================== End Of Log ============================

[Link mogu videti samo ulogovani korisnici]

Sta dalje?

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Napisano: 28 Feb 2014 19:40

Spakuj ovaj fajl u arhivu:

C:\Program Files\Common Files\ODBC\comp.exe

i upload-uj ga na:
[Link mogu videti samo ulogovani korisnici]

Ukoliko arhiva bude veća od 10MiB, okači je na [Link mogu videti samo ulogovani korisnici] a link pošalji privatnom porukom meni ili nekom od drugih članova AMF tima.

Dopuna: 28 Feb 2014 19:42

Da li opisani problem imaš od 26.2?

offline
  • Istrazivanje Windowsa
  • Pridružio: 12 Jul 2012
  • Poruke: 1023

Izvini ali taj falj ne mogu da pronadem Sad stavio sam i show hidden folder ali nista ne pokazuje ima samo jedan folder unutra pise ''Data sources'' ali je prazan.Kada kliknem na desni klik pa propertis pise da folder ima size od 16 MB ali nazalost ne znam sta toliko zauzima jer ne mogu da ga pronadem.

Da li imas neko drugo resenje? Sad

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Isključi Hide System files and folders u Folder Options. Ako je moguće odgovori mi na prethodno pitanje.

offline
  • Istrazivanje Windowsa
  • Pridružio: 12 Jul 2012
  • Poruke: 1023

Napisano: 28 Feb 2014 19:49

Uglavnom mislim da imam problem od tog datuma jer ponekad mi ne stane language bar pa ga moram ponovo staviti.

Dopuna: 28 Feb 2014 19:50

upravu si sad pokazuje taj falj evo sad cu ga okaciti.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Pa fino ti rekoh da staviš u arhivu. Cool
Zaražen ti je sistem infekcijom starom dvije godine jer nemaš AV instaliran. Razz


Arrow Korak 1

Otvori Notepad i iskopiraj sljedeći tekst koji se nalazi unutar Kod polja.

S2 RPCER; C:\Program Files\Common Files\ODBC\comp.exe [12801736 2006-03-28] (Microsoft Corporation)
Task: C:\WINDOWS\Tasks\YourFile DownloaderUpdate.job => C:\Program Files\YourFileDownloader\YourFileUpdater.exe <==== ATTENTION
C:\Program Files\YourFileDownloader


U okviru Notepad-a klikni na File --> Save As
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se Notepad, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt). Potrebno je da sadržaj fixlog.txt kopiraš na forum




Arrow Korak 2

Postavi mi novi FRST izvještaj (nemoj uključivati List BCD i Drivers MD5 koji sam prethodno tražio).



Question

Kakvo je sada stanje.

offline
  • Istrazivanje Windowsa
  • Pridružio: 12 Jul 2012
  • Poruke: 1023

Napisano: 28 Feb 2014 20:25

evo

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 27-02-2014 02
Ran by Slavko Radic at 2014-02-28 20:21:24 Run:1
Running from C:\Documents and Settings\Slavko Radic\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
S2 RPCER; C:\Program Files\Common Files\ODBC\comp.exe [12801736 2006-03-28] (Microsoft Corporation)
Task: C:\WINDOWS\Tasks\YourFile DownloaderUpdate.job => C:\Program Files\YourFileDownloader\YourFileUpdater.exe <==== ATTENTION
C:\Program Files\YourFileDownloader
*****************

RPCER => Service deleted successfully.
C:\WINDOWS\Tasks\YourFile DownloaderUpdate.job => Moved successfully.
"C:\Program Files\YourFileDownloader" => File/Directory not found.

==== End of Fixlog ====

evo novi:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-02-2014 02
Ran by Slavko Radic (administrator) on SLAVKO on 28-02-2014 20:23:13
Running from C:\Documents and Settings\Slavko Radic\Desktop
Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: [Link mogu videti samo ulogovani korisnici]
Download link for 64-Bit Version: [Link mogu videti samo ulogovani korisnici]
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: [Link mogu videti samo ulogovani korisnici]

==================== Processes (Whitelisted) =================

(PixArt Imaging Incorporation) C:\WINDOWS\PixArt\PAC7302\Monitor.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\IEXPLORE.EXE
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [PAC7302_Monitor] - C:\WINDOWS\PixArt\PAC7302\Monitor.exe [323584 2007-12-10] (PixArt Imaging Incorporation)
HKLM\...\Run: [NvCplDaemon] - C:\WINDOWS\system32\NvCpl.dll [15517472 2013-01-31] (NVIDIA Corporation)
HKLM\...\Run: [NvMediaCenter] - C:\WINDOWS\system32\NvMCTray.dll [108832 2013-01-31] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1982312 2013-01-31] ()
HKU\S-1-5-21-57989841-606747145-839522115-1003\...\RunOnce: [FlashPlayerUpdate] - C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_11_9_900_170_Plugin.exe [839560 2013-12-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-57989841-606747145-839522115-1003\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-57989841-606747145-839522115-1003\...\MountPoints2: F - F:\setup.exe /autorun

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [Link mogu videti samo ulogovani korisnici]
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: No Name - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File
Toolbar: HKLM - No Name - {10921475-03CE-4E04-90CE-E2E7EF20C814} - No File
Toolbar: HKCU - &Address - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
DPF: {17492023-C23A-453E-A040-C7C580BBF700} [Link mogu videti samo ulogovani korisnici]
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici]
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Slavko Radic\Application Data\Mozilla\Firefox\Profiles\ocykmfzx.default
FF Homepage: [Link mogu videti samo ulogovani korisnici]
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Adblock Plus Pop-up Addon - C:\Documents and Settings\Slavko Radic\Application Data\Mozilla\Firefox\Profiles\ocykmfzx.default\Extensions\adblockpopups@jessehakanen.net.xpi [2014-02-23]
FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files\Mozilla Firefox\extensions\afurladvisor@anchorfree.com [2014-02-15]

========================== Services (Whitelisted) =================

S4 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2013-10-08] (Oracle Corporation)

==================== Drivers (Whitelisted) ====================

R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R1 AmdK8; C:\WINDOWS\System32\DRIVERS\AmdK8.sys [36864 2006-07-01] (Advanced Micro Devices)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
R3 HSFHWBS2; C:\WINDOWS\System32\DRIVERS\HSFBS2S2.sys [220032 2004-08-03] (Conexant Systems, Inc.)
R3 HSF_DP; C:\WINDOWS\System32\DRIVERS\HSFDPSP2.sys [1041536 2004-08-03] (Conexant Systems, Inc.)
R3 HssDrv; C:\WINDOWS\System32\DRIVERS\HssDrv.sys [44744 2013-06-21] (AnchorFree Inc.)
S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R0 nvata; C:\WINDOWS\System32\DRIVERS\nvata.sys [105344 2006-08-14] (NVIDIA Corporation)
R0 nvgts; C:\WINDOWS\System32\DRIVERS\nvgts.sys [168040 2010-04-09] (NVIDIA Corporation)
S3 PAC7302; C:\WINDOWS\System32\DRIVERS\PAC7302.SYS [461824 2009-04-28] (PixArt Imaging Inc.)
S3 rtl8139; C:\WINDOWS\System32\DRIVERS\RTL8139.SYS [20992 2004-08-03] (Realtek Semiconductor Corporation)
R3 winachsf; C:\WINDOWS\System32\DRIVERS\HSFCXTS2.sys [685056 2004-08-03] (Conexant Systems, Inc.)
S4 IntelIde; No ImagePath
U5 Nsynas32; C:\Windows\System32\Drivers\Nsynas32.sys [17784 2001-04-09] (Syncrosoft Hard- und Software GmbH)
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation)
U1 WS2IFSL;
U3 mbr; \??\C:\DOCUME~1\SLAVKO~1\LOCALS~1\Temp\mbr.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-28 20:23 - 2014-02-28 20:23 - 00006962 _____ () C:\Documents and Settings\Slavko Radic\Desktop\FRST.txt
2014-02-28 20:20 - 2014-02-28 20:20 - 01143808 _____ (Farbar) C:\Documents and Settings\Slavko Radic\Desktop\FRST.exe
2014-02-28 20:19 - 2014-02-28 20:19 - 00000000 _____ () C:\Documents and Settings\Slavko Radic\Desktop\New Text Document (2).txt
2014-02-28 19:25 - 2014-02-28 20:21 - 00000000 ____D () C:\FRST
2014-02-27 19:18 - 2014-02-27 19:18 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Start Menu\Programs\Counter-Strike 1.6
2014-02-23 11:40 - 2014-02-23 11:40 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\HD Tune Pro
2014-02-22 09:36 - 2014-02-22 09:36 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-02-22 09:36 - 2014-02-22 09:36 - 00000000 _____ () C:\WINDOWS\setupact.log
2014-02-22 09:35 - 2014-02-22 09:35 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Microsoft Games
2014-02-22 09:34 - 2014-02-22 09:42 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Games
2014-02-22 09:33 - 2014-02-27 20:08 - 00023161 _____ () C:\WINDOWS\setupapi.log
2014-02-20 19:02 - 2014-02-20 20:25 - 00000010 _____ () C:\Documents and Settings\Slavko Radic\Desktop\asas.txt
2014-02-20 08:38 - 2014-02-20 08:38 - 00142032 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-02-16 15:18 - 2014-02-16 15:18 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Trymedia
2014-02-15 12:13 - 2014-02-15 12:13 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Hotspot Shield
2014-02-15 09:40 - 2014-02-15 12:13 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-05 20:56 - 2014-02-05 20:56 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Apowersoft
2014-02-04 19:16 - 2014-02-04 19:16 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\LucasArts
2014-02-03 20:19 - 2014-02-20 16:48 - 00000436 _____ () C:\Documents and Settings\Slavko Radic\Desktop\µTorrent.lnk
2014-02-03 20:18 - 2014-02-27 18:43 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\uTorrent
2014-02-01 19:02 - 2014-02-03 19:35 - 00000283 _____ () C:\Documents and Settings\Slavko Radic\Desktop\New Text Document.txt
2014-02-01 18:58 - 2005-08-16 11:08 - 01533952 _____ () C:\Documents and Settings\Slavko Radic\Desktop\mhdd32ver4.6.iso
2014-02-01 12:51 - 2014-02-01 12:51 - 00284593 _____ () C:\Documents and Settings\Slavko Radic\Downloads\F-Zero.zip
2014-01-30 17:52 - 2014-01-30 18:31 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Desktop\Backup

==================== One Month Modified Files and Folders =======

2014-02-28 20:23 - 2014-02-28 20:23 - 00006962 _____ () C:\Documents and Settings\Slavko Radic\Desktop\FRST.txt
2014-02-28 20:21 - 2014-02-28 19:25 - 00000000 ____D () C:\FRST
2014-02-28 20:20 - 2014-02-28 20:20 - 01143808 _____ (Farbar) C:\Documents and Settings\Slavko Radic\Desktop\FRST.exe
2014-02-28 20:19 - 2014-02-28 20:19 - 00000000 _____ () C:\Documents and Settings\Slavko Radic\Desktop\New Text Document (2).txt
2014-02-28 20:06 - 2012-04-13 15:30 - 00000830 ____C () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-02-28 19:56 - 2012-03-01 18:24 - 01925083 ____C () C:\WINDOWS\WindowsUpdate.log
2014-02-28 10:28 - 2012-03-01 19:17 - 00000159 ____C () C:\WINDOWS\wiadebug.log
2014-02-28 10:28 - 2012-03-01 19:17 - 00000049 ____C () C:\WINDOWS\wiaservc.log
2014-02-28 10:28 - 2012-03-01 18:29 - 00000006 ___HC () C:\WINDOWS\Tasks\SA.DAT
2014-02-27 22:46 - 2012-03-01 18:30 - 00000178 __SHC () C:\Documents and Settings\Slavko Radic\ntuser.ini
2014-02-27 22:46 - 2012-03-01 18:29 - 00032416 _____ () C:\WINDOWS\SchedLgU.Txt
2014-02-27 20:08 - 2014-02-22 09:33 - 00023161 _____ () C:\WINDOWS\setupapi.log
2014-02-27 19:21 - 2012-03-02 15:45 - 00000000 ___RD () C:\Documents and Settings\Slavko Radic\Desktop\igre
2014-02-27 19:18 - 2014-02-27 19:18 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Start Menu\Programs\Counter-Strike 1.6
2014-02-27 19:18 - 2012-03-01 19:15 - 00000000 ____D () C:\Program Files\Common Files\ODBC
2014-02-27 19:18 - 2004-08-04 13:00 - 00004224 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\beep.sys
2014-02-27 19:18 - 2004-08-04 13:00 - 00004224 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\beep.sys
2014-02-27 18:43 - 2014-02-03 20:18 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\uTorrent
2014-02-27 17:56 - 2014-01-16 19:16 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Skype
2014-02-27 17:52 - 2012-04-18 19:49 - 00002265 ____C () C:\Documents and Settings\All Users\Desktop\Skype.lnk
2014-02-27 11:25 - 2004-08-04 13:00 - 00002206 ____C () C:\WINDOWS\system32\wpa.dbl
2014-02-23 11:40 - 2014-02-23 11:40 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\HD Tune Pro
2014-02-22 09:51 - 2014-01-05 15:12 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\My Documents\My Games
2014-02-22 09:42 - 2014-02-22 09:34 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Games
2014-02-22 09:36 - 2014-02-22 09:36 - 00000000 _____ () C:\WINDOWS\setuperr.log
2014-02-22 09:36 - 2014-02-22 09:36 - 00000000 _____ () C:\WINDOWS\setupact.log
2014-02-22 09:35 - 2014-02-22 09:35 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Microsoft Games
2014-02-22 09:34 - 2012-03-01 18:25 - 00316640 ____C () C:\WINDOWS\WMSysPr9.prx
2014-02-20 20:25 - 2014-02-20 19:02 - 00000010 _____ () C:\Documents and Settings\Slavko Radic\Desktop\asas.txt
2014-02-20 16:48 - 2014-02-03 20:19 - 00000436 _____ () C:\Documents and Settings\Slavko Radic\Desktop\µTorrent.lnk
2014-02-20 16:41 - 2012-03-01 18:36 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-02-20 08:38 - 2014-02-20 08:38 - 00142032 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-02-19 13:32 - 2012-03-05 21:52 - 00000000 __SHD () C:\Documents and Settings\Slavko Radic\UserData
2014-02-19 13:32 - 2012-03-01 18:30 - 00000000 ____D () C:\Documents and Settings\Slavko Radic
2014-02-16 15:18 - 2014-02-16 15:18 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Trymedia
2014-02-16 15:12 - 2012-03-01 18:23 - 00000000 ____D () C:\WINDOWS\system32\DirectX
2014-02-15 12:13 - 2014-02-15 12:13 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Hotspot Shield
2014-02-15 12:13 - 2014-02-15 09:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-14 21:29 - 2013-12-28 22:40 - 00000000 ___RD () C:\Documents and Settings\Slavko Radic\Desktop\Important
2014-02-13 12:07 - 2012-07-11 18:13 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2014-02-12 23:12 - 2012-03-01 19:15 - 00505754 ____C () C:\WINDOWS\system32\PerfStringBackup.INI
2014-02-12 23:10 - 2013-08-14 21:57 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-02-12 23:03 - 2012-05-26 05:49 - 85946576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-02-12 16:48 - 2012-03-30 13:36 - 00002515 ____C () C:\Documents and Settings\Slavko Radic\Desktop\Microsoft Office Word 2007.lnk
2014-02-06 03:54 - 2004-08-04 13:00 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-02-06 03:54 - 2004-08-04 13:00 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe
2014-02-06 00:26 - 2013-01-21 11:17 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll
2014-02-06 00:26 - 2013-01-21 11:10 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll
2014-02-06 00:26 - 2013-01-20 09:04 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll
2014-02-06 00:26 - 2012-10-31 12:33 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll
2014-02-06 00:26 - 2012-10-31 12:33 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll
2014-02-06 00:26 - 2012-10-31 12:33 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll
2014-02-06 00:26 - 2010-04-16 17:09 - 06021120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll
2014-02-06 00:26 - 2010-04-16 17:09 - 01216000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll
2014-02-06 00:26 - 2010-04-16 17:09 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll
2014-02-06 00:26 - 2010-04-16 17:09 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll
2014-02-06 00:26 - 2009-03-08 14:09 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll
2014-02-06 00:26 - 2009-03-08 04:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-02-06 00:26 - 2009-03-08 04:34 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl
2014-02-06 00:26 - 2009-03-08 04:34 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll
2014-02-06 00:26 - 2009-03-08 04:34 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll
2014-02-06 00:26 - 2009-03-08 04:33 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll
2014-02-06 00:26 - 2009-03-08 04:33 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll
2014-02-06 00:26 - 2009-03-08 04:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-02-06 00:26 - 2009-03-08 04:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-02-06 00:26 - 2009-03-08 04:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 06021120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-02-06 00:26 - 2004-08-04 13:00 - 01216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-02-06 00:26 - 2004-08-04 13:00 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll
2014-02-05 23:24 - 2004-08-04 13:00 - 00385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2014-02-05 21:13 - 2012-03-01 18:39 - 00016384 _____ () C:\Documents and Settings\Slavko Radic\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-02-05 20:56 - 2014-02-05 20:56 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Application Data\Apowersoft
2014-02-04 19:16 - 2014-02-04 19:16 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\LucasArts
2014-02-03 19:40 - 2012-03-01 19:08 - 00000000 ____D () C:\WINDOWS\Help
2014-02-03 19:35 - 2014-02-01 19:02 - 00000283 _____ () C:\Documents and Settings\Slavko Radic\Desktop\New Text Document.txt
2014-02-01 22:10 - 2014-01-04 21:23 - 00000045 _____ () C:\WINDOWS\system32\initdebug.nfo
2014-02-01 12:51 - 2014-02-01 12:51 - 00284593 _____ () C:\Documents and Settings\Slavko Radic\Downloads\F-Zero.zip
2014-01-30 18:31 - 2014-01-30 17:52 - 00000000 ____D () C:\Documents and Settings\Slavko Radic\Desktop\Backup

==================== Bamital & volsnap Check =================

C:\WINDOWS\explorer.exe => MD5 is legit
C:\WINDOWS\system32\winlogon.exe => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
C:\WINDOWS\system32\User32.dll => MD5 is legit
C:\WINDOWS\system32\userinit.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys => MD5 is legit

==================== End Of Log ============================

Mogu reci da je stanje bolje vise ne izbacuje iz igara i vise nema onako da nesto bude sivo ili da nestane neki tab.Hvala druze sve najbolje! Very Happy

Dopuna: 28 Feb 2014 20:28

Starom 2 godine? Meni ne vredi AV jer onda koci komp neverovatno Very Happy

Dopuna: 28 Feb 2014 20:32

I izvini ako dosadujem mozes mi barem reci kakav je virus bio? Mislim da li je jak i sta je u stvari ometao na mom sistemu?

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Ništ posebno. Pokretao je Internet Explorer u pozadini koji ti je vjerovatno trebao prikazivati reklame, ali kako nije imao šta da prikaže (imao je kada je bio aktuelan) samo je igrama oduzimao fokus.

Da uradimo još ARK provjeru i to bi bilo to.

Preuzmite program GMER sa donjeg linka na Desktop:


GMER download
Kliknite dati link;
Kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati file, odaberite Desktop i kliknite Save.



Dvoklikom pokrenite GMER.
Sačekajte da se završi uvodno skeniranje - ukoliko se pojavi bilo kakav upit, kliknite No;

kliknite Scan i sačekajte da skeniranje bude završeno;

kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer1);

kliknite desnim tasterom u prozor programa Gmer i odaberite Options > 3rd party - kliknite Scan;

po završetku skeniranja kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer2);

kliknite taster >>> i odaberite Autostart karticu;

po završetku kratkotrajnog skeniranja, kliknite Copy;

otvorite Notepad i u njega postavite kopirani tekst - izveštaj sačuvajte na Desktop (pod nazivom Gmer3);


Slikoviti prikaz postupka

Priložite sva tri izveštaja uz poruku korišćenjem opcije Prikači fajl.

Ko je trenutno na forumu
 

Ukupno su 892 korisnika na forumu :: 13 registrovanih, 2 sakrivenih i 877 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 13297 - dana 20 Jan 2026 17:42

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: Bubili, cuvarkuca, famoso, Koridor, mir, opt1, PrincipL, Sevetar, shaja1, SOM, tachinni, Tila Painen, trutcina