laptop mi sporo radi, koci pro itvaranju vise prozora

1

laptop mi sporo radi, koci pro itvaranju vise prozora

offline
  • Pridružio: 02 Sep 2014
  • Poruke: 29

Laptop koci, sta treba da radim?

offline
  • Osvjedodžbeni spretnik munjarstva
  • Pridružio: 04 Jul 2011
  • Poruke: 5424
  • Gde živiš: Beograd

Ispratiš uputstvo sa sledećeg linka: http://www.mycity.rs/Ambulanta/Kako-otvoriti-temu-u-Ambulanti.html

offline
  • Pridružio: 02 Sep 2014
  • Poruke: 29

mycity.rs/must-login.png

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:31-08-2014 02
Ran by gfg (administrator) on GFG-PC on 02-09-2014 09:19:58
Running from C:\Users\gfg\Downloads
Platform: Microsoft Windows 7 Ultimate (X86) OS Language: English (United States)
Internet Explorer Version 9
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Just Develop It) C:\Program Files\MyPC Backup\BackupStack.exe
(BitTorrent Inc.) C:\Users\gfg\AppData\Roaming\uTorrent\uTorrent.exe
(Live Soft Action S.R.L.) C:\Users\gfg\AppData\Roaming\GetnowUpdater\bin\GetNowUpdater.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(S p i g o t, I n c.) C:\Users\gfg\AppData\Roaming\Search Protection\SearchProtection.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(MagicISO, Inc.) C:\Program Files\MagicDisc\MagicDisc.exe
(MyPCBackup.com) C:\Program Files\MyPC Backup\MyPC Backup.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
() C:\Program Files\SmarterPower\updateSmarterPower.exe
() C:\Program Files\SmarterPower\bin\utilSmarterPower.exe
(Client Connect LTD) C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe
(Client Connect LTD) C:\Program Files\SearchProtect\SearchProtect\bin\cltmng.exe
(Client Connect LTD) C:\Program Files\SearchProtect\UI\bin\cltmngui.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
() C:\Program Files\SmarterPower\bin\SmarterPower.PurBrowse.exe
() C:\Program Files\SmarterPower\bin\SmarterPower.BrowserAdapter.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Mail.Ru) C:\Users\gfg\AppData\Local\Mail.ru\MailRuUpdater.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-08-10] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [GoobzoYouTubeAccelerator] => "C:\Program Files\YouTube Accelerator\YouTubeAccelerator.exe" /startup
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [SPDriver] => C:\Program Files\ShopperPro\JSDriver\1.37.0.486\jsdrv.exe
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [uTorrent] => C:\Users\gfg\AppData\Roaming\uTorrent\uTorrent.exe [1936720 2014-08-11] (BitTorrent Inc.)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [GetNowUpdater] => C:\Users\gfg\AppData\Roaming\GetnowUpdater\bin\GetNowUpdater.exe [3944064 2014-08-12] (Live Soft Action S.R.L.)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [21653096 2014-07-24] (Skype Technologies S.A.)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [SearchProtection] => C:\Users\gfg\AppData\Roaming\Search Protection\SearchProtection.EXE [1109352 2014-08-22] (S p i g o t, I n c.)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [eTranslator Update] => C:\Users\gfg\AppData\Roaming\eTranslator\eTranslator.exe [2895800 2014-09-01] ()
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [amigo] => C:\Users\gfg\AppData\Local\Amigo\Application\amigo.exe [1112096 2014-08-15] ()
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [MailRuUpdater] => C:\Users\gfg\AppData\Local\Mail.Ru\MailRuUpdater.exe [6204136 2014-08-20] (Mail.Ru)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\MountPoints2: {9650e1e1-1d91-11e4-96be-806e6f6e6963} - E:\setup.exe
AppInit_DLLs: C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [187352 2014-08-31] (Client Connect LTD)
Lsa: [Notification Packages] scecli c:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk
ShortcutTarget: MagicDisc.lnk -> C:\Program Files\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
Startup: C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
ShortcutTarget: MyPC Backup.lnk -> C:\Program Files\MyPC Backup\MyPC Backup.exe (MyPCBackup.com)
Startup: C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TorntvDownloader.lnk
ShortcutTarget: TorntvDownloader.lnk -> C:\Program Files\TornTV.com\Torntv Downloader.exe (No File)
HKLM\...\AppCertDlls: [x64] -> c:\program files\browser tab search by ask\safetynut\x64\safetycrt.dll
HKLM\...\AppCertDlls: [x86] -> c:\program files\browser tab search by ask\safetynut\safetycrt.dll

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = mail.ru/cnt/10445?gp=custom2
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = ru.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x9815DB8B13B3CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ru-RU
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = dts.search.ask.com/sr?src=ieb&gct=ds&am.....AG1&q={searchTerms}
SearchScopes: HKCU - DefaultScope {75D98E7A-8A68-43C1-9E50-4FF8E00A088A} URL = search.yahoo.com/search?fr=chr-greentree_i.....549&p={searchTerms}
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = trovi.com/Results.aspx?gd=&ctid=CT3.....426&q={searchTerms}&SSPV=
SearchScopes: HKCU - {75D98E7A-8A68-43C1-9E50-4FF8E00A088A} URL = search.yahoo.com/search?fr=chr-greentree_i.....549&p={searchTerms}
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = dts.search.ask.com/sr?src=ieb&gct=ds&am.....AG1&q={searchTerms}
SearchScopes: HKCU - {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = go.mail.ru/search?q={SearchTerms}&fr=ntg&gp=newcustom2
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO: SmarterPower -> {bd7c9b62-a7d9-4405-be51-7fd633f08791} -> C:\Program Files\SmarterPower\SmarterPowerbho.dll (SmarterPower)
BHO: YTAHelper -> {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} -> C:\ProgramData\YTAHelper\YTAHelper.dll No File
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.7 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.trovi.com/?gd=&ctid=CT3319598&octid=EB_ORIGINAL_CTID&ISID=M077D5F5A-83E0-4688-BFD8-2801683E44C8&SearchSource=55&CUI=&UM=6&UP=SPC512BE70-11DF-4AC0-96AD-95FDEE2C8426&SSPV=
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3319598&octid=EB_ORIGINAL_CTID&ISID=M077D5F5A-83E0-4688-BFD8-2801683E44C8&SearchSource=55&CUI=&UM=6&UP=SPC512BE70-11DF-4AC0-96AD-95FDEE2C8426&SSPV=", "hxxp://mail.ru/cnt/10445"
CHR NewTab: Default -> "chrome-extension://jdpojfnnakgdonajlfficnddjpccclmc/spent.html", "chrome-extension://lpnamokkgdjkpdhcobfnnggnpmghhddo/spent.html"
CHR DefaultSearchKeyword: Default -> yahoo.com search
CHR DefaultSearchProvider: Default -> Ask.com
CHR DefaultSearchURL: Default -> dts.search.ask.com/sr?src=crb&gct=ds&am.....AG1&q={searchTerms}
CHR DefaultSuggestURL: Default -> ff.search.yahoo.com/gossip?output=fxjson&command={searchTerms}
CHR CustomProfile: C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-08-08]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-08-08]
CHR Extension: (MapsGalaxy) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdpojfnnakgdonajlfficnddjpccclmc [2014-08-26]
CHR Extension: (Skype Click to Call) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-08-22]
CHR Extension: (OnlineMapFinder) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpnamokkgdjkpdhcobfnnggnpmghhddo [2014-08-26]
CHR Extension: (Google Wallet) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-08-08]
CHR Extension: (Extutil) - C:\Users\gfg\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B [2014-08-26]
CHR Extension: (Managera) - C:\Users\gfg\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42 [2014-08-26]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [294400 2011-07-05] (Advanced Micro Devices, Inc.) [File not signed]
R2 BackupStack; C:\Program Files\MyPC Backup\BackupStack.exe [36424 2014-08-14] (Just Develop It)
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 CltMngSvc; C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe [2998232 2014-08-31] (Client Connect LTD)
R2 Update SmarterPower; C:\Program Files\SmarterPower\updateSmarterPower.exe [323320 2014-09-01] ()
R2 Util SmarterPower; C:\Program Files\SmarterPower\bin\utilSmarterPower.exe [323320 2014-09-01] ()
S2 YouTubeAcceleratorService; C:\PROGRA~1\YOUTUB~1\YouTubeAcceleratorService.exe -start -scm [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 amd_sata; C:\Windows\System32\DRIVERS\amd_sata.sys [66688 2011-04-16] (Advanced Micro Devices)
R0 amd_xata; C:\Windows\System32\DRIVERS\amd_xata.sys [33408 2011-04-16] (Advanced Micro Devices)
S3 athur; C:\Windows\System32\DRIVERS\athur.sys [1570304 2013-06-28] (Atheros Communications, Inc.)
S3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [142632 2011-08-04] (Broadcom Corporation.)
S3 btwampfl; C:\Windows\system32\drivers\btwampfl.sys [525352 2011-08-04] (Broadcom Corporation.)
S3 BTWDPAN; C:\Windows\System32\DRIVERS\btwdpan.sys [76328 2011-08-04] (Broadcom Corporation.)
R3 mcdbus; C:\Windows\System32\DRIVERS\mcdbus.sys [116736 2009-02-24] (MagicISO, Inc.) [File not signed]
R1 {5eeb83d0-96ea-4249-942c-beead6847053}Gw; C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gw.sys [52376 2014-08-23] (StdLib)
S3 MSICDSetup; \??\E:\CDriver.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib.sys [X]
S2 SPDRIVER_1.37.0.486; \??\C:\Program Files\ShopperPro\JSDriver\1.37.0.486\jsdrv.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-02 09:19 - 2014-09-02 09:20 - 00015163 _____ () C:\Users\gfg\Downloads\FRST.txt
2014-09-02 09:19 - 2014-09-02 09:20 - 00000000 ____D () C:\FRST
2014-09-02 09:18 - 2014-09-02 09:20 - 01096704 _____ (Farbar) C:\Users\gfg\Downloads\FRST (1).exe
2014-09-02 09:18 - 2014-09-02 09:19 - 01096704 _____ (Farbar) C:\Users\gfg\Downloads\FRST.exe
2014-09-02 09:13 - 2014-09-02 09:13 - 00000000 ____H () C:\Users\gfg\Documents\Default.rdp
2014-09-02 09:11 - 2014-09-02 09:12 - 02104832 _____ (Farbar) C:\Users\gfg\Downloads\FRST64.exe
2014-09-01 12:21 - 2014-09-01 12:21 - 00002229 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Одноклассники.lnk
2014-09-01 12:21 - 2014-09-01 12:21 - 00002229 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Вконтакте.lnk
2014-09-01 12:21 - 2014-09-01 12:21 - 00000000 ____D () C:\Users\gfg\AppData\Local\MailRu
2014-09-01 12:20 - 2014-09-01 12:21 - 00000000 ____D () C:\Users\gfg\AppData\Local\Amigo
2014-09-01 12:20 - 2014-09-01 12:20 - 00002204 _____ () C:\Users\gfg\Desktop\Одноклассники.lnk
2014-09-01 12:20 - 2014-09-01 12:20 - 00002204 _____ () C:\Users\gfg\Desktop\Вконтакте.lnk
2014-09-01 12:20 - 2014-09-01 12:20 - 00002192 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amigo.lnk
2014-09-01 12:20 - 2014-09-01 12:20 - 00002167 _____ () C:\Users\gfg\Desktop\Amigo.lnk
2014-09-01 12:10 - 2014-09-02 03:58 - 00000000 ____D () C:\Users\gfg\AppData\Local\Mail.ru
2014-09-01 12:10 - 2014-09-01 12:15 - 00000174 _____ () C:\Users\gfg\Desktop\Искать в Интернете.url
2014-09-01 12:10 - 2014-09-01 12:10 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\eTranslator
2014-09-01 12:06 - 2014-09-01 17:27 - 1467860992 ____R () C:\Users\gfg\Downloads\T1pa.K0py.2014.D.CAMRip.1400MB.avi
2014-09-01 12:03 - 2014-09-01 12:05 - 00531456 _____ (Alexander Roshal) C:\Users\gfg\Downloads\tipa kopy let s be cops 2014 camrip skachat igry cherez torrent - skachat igry na psp.exe
2014-09-01 11:58 - 2014-09-01 19:05 - 2512693241 ____R () C:\Users\gfg\Downloads\The.Signal.2014.L2.WEBRip.720p.mkv
2014-09-01 11:55 - 2014-09-01 11:56 - 00531456 _____ (Alexander Roshal) C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp (1).exe
2014-09-01 11:55 - 2014-09-01 11:55 - 00531456 _____ (Alexander Roshal) C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp.exe
2014-09-01 07:26 - 2014-09-01 07:28 - 00000000 ____D () C:\Users\gfg\Downloads\B20032013
2014-09-01 07:21 - 2014-09-01 07:26 - 00000000 ____D () C:\Users\gfg\Downloads\Rihanna
2014-08-31 16:21 - 2014-08-31 16:21 - 00000000 ____D () C:\Users\gfg\Documents\Foxreal
2014-08-31 14:43 - 2014-08-31 14:43 - 00000000 ____D () C:\Users\gfg\Downloads\Dallas Cowboys Cheerleaders (1979) - YouTube_files
2014-08-31 14:42 - 2014-08-31 14:43 - 00442252 _____ () C:\Users\gfg\Downloads\Dallas Cowboys Cheerleaders (1979) - YouTube.htm
2014-08-31 07:09 - 2014-08-31 07:09 - 00000000 ____D () C:\Users\gfg\Desktop\New folder
2014-08-29 20:19 - 2013-06-28 14:49 - 01570304 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athur.sys
2014-08-29 20:19 - 2013-06-28 14:49 - 01570304 _____ (Atheros Communications, Inc.) C:\Windows\system32\athur.sys
2014-08-29 20:19 - 2013-06-28 14:49 - 00007514 _____ () C:\Windows\system32\athurext.cat
2014-08-29 07:34 - 2014-08-29 07:34 - 00034155 _____ () C:\Users\gfg\Downloads\Konobar (m ž) u Restoran Passerella u Bar - jobs4hotels.me.htm
2014-08-29 07:34 - 2014-08-29 07:34 - 00000000 ____D () C:\Users\gfg\Downloads\Konobar (m ž) u Restoran Passerella u Bar - jobs4hotels.me_files
2014-08-28 10:19 - 2014-08-28 10:19 - 00039769 _____ () C:\Users\gfg\Downloads\Assistant to Front Office Manager u Iberostar Bellevue Hotel u Budva - jobs4hotels.me.htm
2014-08-28 10:19 - 2014-08-28 10:19 - 00000000 ____D () C:\Users\gfg\Downloads\Assistant to Front Office Manager u Iberostar Bellevue Hotel u Budva - jobs4hotels.me_files
2014-08-28 10:07 - 2014-08-28 10:07 - 00053733 _____ () C:\Users\gfg\Downloads\Hospitality jobs u Budva - jobs4hotels.me.htm
2014-08-28 10:07 - 2014-08-28 10:07 - 00000000 ____D () C:\Users\gfg\Downloads\Hospitality jobs u Budva - jobs4hotels.me_files
2014-08-27 05:10 - 2014-08-27 05:11 - 00000294 _____ () C:\Users\gfg\Downloads\Modern+Don+Juan+FULL+PORN.url
2014-08-27 04:25 - 2014-08-27 04:26 - 735123456 _____ () C:\Users\gfg\Downloads\Friday.The.13th.Part.3.(1982).Deluxe.Edition.3D.DVDRip.XviD-Sporc.avi
2014-08-26 21:06 - 2014-08-26 21:06 - 00366212 _____ () C:\Users\gfg\Downloads\Up the Creek (1984) - YouTube.htm
2014-08-26 21:06 - 2014-08-26 21:06 - 00000000 ____D () C:\Users\gfg\Downloads\Up the Creek (1984) - YouTube_files
2014-08-26 18:24 - 2014-08-25 14:22 - 04439591 ____R () C:\Users\gfg\Desktop\09 - Stranger In Moscow (Tee's In-House Club Mix).ogg
2014-08-26 15:11 - 2014-08-26 15:13 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (2).exe
2014-08-26 15:09 - 2014-08-26 15:09 - 00019598 _____ () C:\Users\gfg\Downloads\cellphonespy.zip
2014-08-26 14:38 - 2014-08-26 14:38 - 01036872 _____ (Microsoft Corporation) C:\Users\gfg\Downloads\wdexpress_full.exe
2014-08-26 14:34 - 2014-08-26 14:34 - 00577728 _____ (Firseria.-.Installer · sl) C:\Users\gfg\Downloads\Microsoft Visual Studio Express.exe
2014-08-26 14:26 - 2014-08-26 14:28 - 10927016 _____ (Devart ) C:\Users\gfg\Downloads\sqlcomplete.exe
2014-08-26 13:14 - 2014-08-26 13:23 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\BitLord
2014-08-26 13:14 - 2014-08-26 13:14 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Python-Eggs
2014-08-26 13:10 - 2014-08-26 13:10 - 00000000 ____D () C:\Users\gfg\AppData\Local\SearchProtect
2014-08-26 13:09 - 2014-09-01 08:37 - 00000000 ____D () C:\Program Files\SearchProtect
2014-08-26 13:07 - 2014-08-26 13:07 - 00001969 _____ () C:\Users\gfg\Desktop\BitLord.lnk
2014-08-26 13:07 - 2014-08-26 13:07 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
2014-08-26 13:05 - 2014-08-26 13:05 - 00000000 ____D () C:\Users\gfg\Documents\BitLord
2014-08-26 13:03 - 2014-08-26 13:07 - 00000000 ____D () C:\Program Files\BitLord 2
2014-08-26 12:59 - 2014-08-26 13:00 - 00645296 _____ () C:\Users\gfg\Downloads\motionVFX - mSPY - BitLordInstaller.exe
2014-08-26 12:50 - 2014-08-26 13:00 - 111978832 _____ (Apple Inc.) C:\Users\gfg\Downloads\iTunesSetup.exe
2014-08-26 12:05 - 2014-06-04 16:45 - 191289627 _____ () C:\Users\gfg\Desktop\Michael Jackson Thriller Album + Download Links[3].wmv
2014-08-26 12:05 - 2014-06-04 16:32 - 573338811 _____ () C:\Users\gfg\Desktop\Michael Jackson Bad full album +Delete songs 1987 25.wmv
2014-08-26 12:05 - 2014-06-04 16:18 - 22168585 _____ () C:\Users\gfg\Desktop\Michael Jackson Another Part Of Me 06.wmv
2014-08-26 08:29 - 2014-08-26 08:30 - 00428840 _____ () C:\Users\gfg\Downloads\free_time_tracking_software_3_2_1_exe.exe
2014-08-26 08:27 - 2014-08-26 08:29 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (1).exe
2014-08-26 08:26 - 2014-08-26 08:27 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc.exe
2014-08-26 08:22 - 2014-08-26 08:22 - 00013164 _____ () C:\Users\gfg\Downloads\iPhone.Tips,.Tricks,.Apps.&.Hacks..-..Vol.13,.2014.torrent
2014-08-26 08:20 - 2014-08-26 08:20 - 00000397 _____ () C:\Users\gfg\Downloads\[TorrentDownloads.me]_FlexiSpy.torrent
2014-08-26 07:58 - 2014-08-26 07:58 - 00098304 _____ (Hewlett-Packard Company) C:\Users\gfg\Downloads\HPUSBDisk.exe
2014-08-26 07:58 - 2014-08-26 07:58 - 00098304 _____ (Hewlett-Packard Company) C:\Users\gfg\Downloads\HPUSBDisk (1).exe
2014-08-25 18:30 - 2014-08-25 18:30 - 00050879 _____ () C:\Users\gfg\Downloads\A Compilation Of Sluts Taking Ass To Mouth Cumshots Video.htm
2014-08-25 18:30 - 2014-08-25 18:30 - 00000000 ____D () C:\Users\gfg\Downloads\A Compilation Of Sluts Taking Ass To Mouth Cumshots Video_files
2014-08-25 14:10 - 2014-08-25 14:22 - 02193064 ____R () C:\Users\gfg\Desktop\03 - Melodie.ogg
2014-08-25 12:19 - 2014-08-25 13:37 - 00000000 ____D () C:\Users\gfg\Downloads\Michael Jackson Discography
2014-08-25 10:16 - 2014-08-23 18:22 - 00052376 _____ (StdLib) C:\Windows\system32\Drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gw.sys
2014-08-25 09:20 - 2014-08-25 09:20 - 00101522 _____ () C:\Users\gfg\Downloads\Shakira.Discography.1991-2014.torrent
2014-08-25 09:12 - 2014-08-25 09:12 - 28940764 _____ () C:\Users\gfg\Documents\ИРИНА БИЛЫК - TOГО КОГО [OFFICIAL AUDIO].mp4
2014-08-25 09:11 - 2014-08-26 05:38 - 00000000 ____D () C:\Program Files\MyPC Backup
2014-08-25 09:11 - 2014-08-25 09:12 - 00001045 _____ () C:\Users\gfg\Desktop\MyPC Backup.lnk
2014-08-25 09:11 - 2014-08-25 09:11 - 00001915 _____ () C:\Users\gfg\Desktop\Sync Folder.lnk
2014-08-25 09:11 - 2014-08-25 09:11 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
2014-08-25 09:09 - 2014-08-26 03:13 - 00000000 ____D () C:\Program Files\SmarterPower
2014-08-25 09:09 - 2014-08-25 09:09 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Search Protection
2014-08-25 09:07 - 2014-08-25 09:08 - 00000000 ____D () C:\ProgramData\YTD Video Downloader
2014-08-25 09:07 - 2014-08-25 09:07 - 00001247 _____ () C:\Users\Public\Desktop\YTD Video Downloader.lnk
2014-08-25 09:07 - 2014-08-25 09:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader
2014-08-25 09:07 - 2014-08-25 09:07 - 00000000 ____D () C:\Program Files\GreenTree Applications
2014-08-25 08:53 - 2014-08-25 08:53 - 00000000 ____D () C:\Users\gfg\Downloads\First Anal Quest - Irina (Teenage Ass Fucking At Its Best)
2014-08-25 08:52 - 2014-08-25 08:53 - 00000000 ____D () C:\Users\gfg\Downloads\Shakira
2014-08-23 15:32 - 2014-08-23 15:41 - 00448512 _____ (OldTimer Tools) C:\Users\gfg\Downloads\TFC.exe
2014-08-23 14:34 - 2014-08-23 14:34 - 00000000 ____D () C:\Users\gfg\Desktop\Turizam, Privatan Smestaj Budva, Crna Gora - Oglasi Balkan_files
2014-08-23 13:11 - 2014-08-23 13:11 - 00759473 _____ () C:\Users\gfg\Desktop\Vladimir Visnjic.htm
2014-08-23 13:11 - 2014-08-23 13:11 - 00000000 ____D () C:\Users\gfg\Desktop\Vladimir Visnjic_files
2014-08-23 13:03 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
2014-08-23 13:00 - 2014-08-23 13:04 - 00000000 ____D () C:\AdwCleaner
2014-08-23 12:59 - 2014-08-23 13:00 - 01364531 _____ () C:\Users\gfg\Downloads\AdwCleaner.exe
2014-08-22 16:50 - 2014-08-22 16:50 - 00010882 _____ () C:\Users\gfg\Desktop\download.htm
2014-08-22 16:43 - 2014-08-22 16:43 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-08-22 16:06 - 2014-08-22 16:06 - 00000000 ____D () C:\Users\gfg\AppData\Local\Skype
2014-08-22 16:05 - 2014-09-02 05:10 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Skype
2014-08-22 16:05 - 2014-08-22 16:44 - 00000000 ____D () C:\ProgramData\Skype
2014-08-22 16:05 - 2014-08-22 16:07 - 00000000 ___RD () C:\Program Files\Skype
2014-08-22 16:05 - 2014-08-22 16:05 - 00002503 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-08-22 16:05 - 2014-08-22 16:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-08-17 13:05 - 2014-08-17 13:05 - 00000000 ____D () C:\Program Files\Common Files\AVSMedia
2014-08-17 13:04 - 2014-08-17 13:04 - 00000000 ____D () C:\Program Files\AVS4YOU
2014-08-17 13:04 - 2011-06-23 13:26 - 01700352 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2014-08-17 13:04 - 2011-06-23 13:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\msxml3a.dll
2014-08-17 13:02 - 2014-08-17 13:02 - 00001157 _____ () C:\Users\gfg\Desktop\Any Video Converter.lnk
2014-08-17 13:02 - 2014-08-17 13:02 - 00000000 ____D () C:\Users\gfg\Documents\Any Video Converter
2014-08-17 13:02 - 2014-08-17 13:02 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\AnvSoft
2014-08-17 13:02 - 2014-08-17 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft
2014-08-17 13:02 - 2014-08-17 13:02 - 00000000 ____D () C:\Program Files\AnvSoft
2014-08-15 03:11 - 2014-08-15 03:11 - 01277665 _____ () C:\Users\gfg\Downloads\TL-WN722NC_V1_Win7_Beta (1).zip
2014-08-15 03:10 - 2014-08-15 03:11 - 01277665 _____ () C:\Users\gfg\Downloads\TL-WN722NC_V1_Win7_Beta.zip
2014-08-15 03:09 - 2014-08-15 03:11 - 13206671 _____ () C:\Users\gfg\Downloads\TL-WN722NC_V1_131113.zip
2014-08-15 03:04 - 2014-08-15 03:05 - 00623152 _____ () C:\Users\gfg\Downloads\setup.exe
2014-08-14 16:04 - 2014-08-14 20:56 - 784559679 ____R () C:\Users\gfg\Downloads\Иллюзионист,2006.mkv
2014-08-14 16:02 - 2014-08-14 16:02 - 00015634 _____ () C:\Users\gfg\Downloads\[rutor.org]-331181.torrent
2014-08-14 15:51 - 2014-08-14 15:51 - 00030377 _____ () C:\Users\gfg\Downloads\[rutor.org]-2408 (2).torrent
2014-08-14 15:51 - 2014-08-14 15:51 - 00030377 _____ () C:\Users\gfg\Downloads\[rutor.org]-2408 (1).torrent
2014-08-14 15:45 - 2014-08-14 16:03 - 1567034498 _____ () C:\Users\gfg\Downloads\Illjuzionist.2006.RUS.DVDRip.XviD.AC3.-HQ-ViDEO.avi
2014-08-14 15:41 - 2014-08-14 15:42 - 00030377 _____ () C:\Users\gfg\Downloads\[rutor.org]-2408.torrent
2014-08-14 14:59 - 2014-08-14 14:59 - 00336784 _____ () C:\Windows\Minidump\081414-55302-01.dmp
2014-08-14 14:59 - 2014-08-14 14:59 - 00000000 ____D () C:\Windows\Minidump
2014-08-14 14:58 - 2014-08-14 14:58 - 248554455 _____ () C:\Windows\MEMORY.DMP
2014-08-14 12:43 - 2014-08-14 13:37 - 177642320 _____ (NVIDIA Corporation) C:\Users\gfg\Downloads\340.43-desktop-win8-win7-winvista-32bit-english-beta.exe
2014-08-14 12:21 - 2014-08-15 01:12 - 2201217024 ____R () C:\Users\gfg\Downloads\Transformers.Age.of.Extinction.2014.Dt.TS.PROPER.2100MB.avi
2014-08-14 12:18 - 2014-08-14 12:18 - 00011035 _____ () C:\Users\gfg\Downloads\[rutor.org]-367993.torrent
2014-08-14 12:02 - 2014-08-14 12:02 - 00021921 _____ () C:\Users\gfg\Downloads\22949-theillusionist (1).zip
2014-08-14 12:02 - 2014-08-14 12:02 - 00020013 _____ () C:\Users\gfg\Downloads\21711-theillusionist_ser.zip
2014-08-14 12:01 - 2014-08-14 12:01 - 00021921 _____ () C:\Users\gfg\Downloads\22949-theillusionist.zip
2014-08-14 12:00 - 2014-08-14 12:00 - 00025257 _____ () C:\Users\gfg\Downloads\23022-theillusionist_dvdrip_alliance.zip
2014-08-14 11:59 - 2014-08-14 11:59 - 00022573 _____ () C:\Users\gfg\Downloads\50509-the_illusionist__2006__axxo_25fps_sr.zip
2014-08-14 11:59 - 2014-08-14 11:59 - 00020131 _____ () C:\Users\gfg\Downloads\33661-the_illusionist__2006_axxo.zip
2014-08-14 11:58 - 2014-08-14 11:58 - 00021993 _____ () C:\Users\gfg\Downloads\62064-The.Illusionist.2006.720p.HDTV.MULTi.x264-NBS (1).zip
2014-08-14 11:57 - 2014-08-14 11:57 - 00021993 _____ () C:\Users\gfg\Downloads\62064-The.Illusionist.2006.720p.HDTV.MULTi.x264-NBS.zip
2014-08-14 11:57 - 2014-08-14 11:57 - 00020370 _____ () C:\Users\gfg\Downloads\119622-TheIllusionist_2006_.rar
2014-08-14 11:56 - 2014-08-14 11:56 - 00026313 _____ () C:\Users\gfg\Downloads\186571-theillusionist_2006_.zip
2014-08-14 11:51 - 2014-08-14 15:42 - 1557374976 _____ () C:\Users\gfg\Downloads\The.Illusionist.2006_HDRip__[scarabey.org].avi
2014-08-14 11:50 - 2014-08-14 11:50 - 00015497 _____ () C:\Users\gfg\Downloads\[rutor.org]-303558.torrent
2014-08-14 11:48 - 2014-08-14 11:48 - 00014631 _____ () C:\Users\gfg\Downloads\[rutor.org]-476.torrent
2014-08-14 10:00 - 2014-08-21 15:35 - 00000000 ____D () C:\MSI
2014-08-14 09:29 - 2014-08-14 09:29 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-08-14 09:29 - 2014-08-14 09:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-08-14 07:18 - 2014-08-14 07:18 - 00000000 ____D () C:\Users\gfg\.android
2014-08-14 07:16 - 2014-08-14 07:16 - 00000973 _____ () C:\Users\gfg\Desktop\GetNowUpdater.lnk
2014-08-14 07:16 - 2014-08-14 07:16 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\GetnowUpdater
2014-08-14 07:15 - 2014-08-14 08:50 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\MSI FM2-A55M-E33 user guide
2014-08-14 07:15 - 2014-08-14 07:15 - 00000000 ____D () C:\Users\gfg\AppData\Local\GetNowUpdater
2014-08-14 07:15 - 2014-08-14 07:15 - 00000000 ____D () C:\Users\gfg\AppData\Local\GetnowUninstall
2014-08-14 05:52 - 2014-08-14 05:53 - 00680920 _____ (Live Soft Action S. R. L. ) C:\Users\gfg\Downloads\MSI FM2-A55M-E33 user guide provided through pdfretriever.com.exe
2014-08-13 08:09 - 2014-08-13 08:47 - 286844616 _____ (NVIDIA Corporation) C:\Users\gfg\Downloads\340.52-desktop-win8-win7-winvista-64bit-english-whql.exe
2014-08-13 03:58 - 2014-08-06 18:35 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-08-13 03:58 - 2014-08-06 18:32 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-08-13 03:51 - 2014-08-13 08:33 - 3534818188 ____R () C:\Users\gfg\Downloads\Windows 8.1 Pro (64bit).rar
2014-08-12 08:38 - 2014-08-12 08:48 - 165288848 _____ () C:\Users\gfg\Downloads\Serbsko-russkii-slovar_Programma.zip
2014-08-12 08:29 - 2014-08-12 08:37 - 242241536 _____ () C:\Users\gfg\Downloads\Markovich_Serbski-yazyk-Uchebnik.zip
2014-08-12 08:15 - 2014-08-12 08:25 - 242537748 _____ () C:\Users\gfg\Downloads\Trofimkina_Serbski-yazyk_Nachalnyi-kurs.zip
2014-08-12 08:07 - 2014-08-12 08:12 - 134822069 _____ () C:\Users\gfg\Downloads\Metod-Zamyatkina_Serbskii-yazyk.zip
2014-08-12 08:04 - 2014-08-12 08:07 - 78840607 _____ () C:\Users\gfg\Downloads\Prosvirina_Serbski-s-nulya.zip
2014-08-12 08:01 - 2014-08-12 08:01 - 00687910 _____ () C:\Users\gfg\Downloads\Ivanova_Serbskii-yazyk-dlya-nachinayushchikh.zip
2014-08-12 08:01 - 2014-08-12 08:01 - 00000000 ____D () C:\Users\gfg\AppData\Local\Adobe
2014-08-12 07:23 - 2014-08-12 07:23 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Ashampoo
2014-08-11 15:30 - 2014-08-11 15:30 - 01745984 _____ () C:\Users\gfg\Downloads\wrar511b1.exe
2014-08-11 15:19 - 2014-08-11 19:38 - 3741728768 ____R () C:\Users\gfg\Downloads\Windows 7 Ultimate.iso
2014-08-11 14:17 - 2014-08-11 14:45 - 704055157 ____R () C:\Users\gfg\Downloads\Windows XP Professional SP3 x86 - Black Edition 2014.7.13.zip
2014-08-11 14:17 - 2014-08-11 14:17 - 00000000 __RSH () C:\MSDOS.SYS
2014-08-11 14:17 - 2014-08-11 14:17 - 00000000 __RSH () C:\IO.SYS
2014-08-11 14:16 - 2014-08-11 14:16 - 00000811 _____ () C:\Users\gfg\Desktop\µTorrent.lnk
2014-08-11 14:16 - 2014-08-11 14:16 - 00000791 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-08-11 07:27 - 2014-08-11 07:29 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r725-n-bc.exe
2014-08-10 20:10 - 2014-08-23 13:04 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
2014-08-10 20:10 - 2014-08-10 20:10 - 00002058 _____ () C:\Users\gfg\Desktop\AppsHat.lnk
2014-08-10 20:05 - 2014-08-23 09:13 - 00000000 ____D () C:\ProgramData\TEMP
2014-08-10 20:05 - 2014-08-10 20:05 - 00227048 _____ () C:\Users\gfg\Downloads\FLVPlayer_downloader-N7bZtceeu.exe
2014-08-10 20:05 - 2014-08-10 20:05 - 00172032 _____ (Jin Hui E-mail: jinhui@jcomsoft.com Web: jcomsoft.com) C:\Windows\system32\AniGIF.ocx
2014-08-10 20:05 - 2014-08-10 20:05 - 00000000 ____D () C:\Users\Public\Documents\GOOBZO
2014-08-10 20:04 - 2014-08-23 13:04 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player
2014-08-10 20:04 - 2014-08-14 07:17 - 00000000 ____D () C:\Users\gfg\AppData\Local\CrashRpt
2014-08-10 20:04 - 2014-08-10 20:04 - 00002087 _____ () C:\Users\gfg\Desktop\FLV Player.lnk
2014-08-10 20:03 - 2014-08-10 20:04 - 00227056 _____ () C:\Users\gfg\Downloads\FLVPlayer_downloader-N22eeLUDX.exe
2014-08-10 19:53 - 2014-08-10 19:53 - 01936720 _____ (BitTorrent Inc.) C:\Users\gfg\Downloads\uTorrent.exe
2014-08-10 19:45 - 2014-08-23 13:04 - 00000000 ____D () C:\Program Files\WebSpades
2014-08-10 18:49 - 2014-08-10 18:49 - 00000000 ____D () C:\Users\gfg\AppData\Local\4253
2014-08-10 18:46 - 2014-08-10 18:46 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\DownloadManager
2014-08-10 18:44 - 2014-08-10 19:07 - 00000000 ____D () C:\Users\gfg\Downloads\Eurythmics Greatest Hits 2014 HD Sound Special Edition
2014-08-10 18:29 - 2014-08-10 22:07 - 00000000 ____D () C:\Users\gfg\Downloads\George Michael + Wham - The Collection (1983 - 2006) (MP3-EAC-320kBs)
2014-08-10 18:20 - 2014-08-13 10:17 - 00000000 ____D () C:\Users\gfg\Downloads\Lady Gaga - That Hits [Brrr]
2014-08-10 18:17 - 2014-08-11 04:01 - 00000000 ____D () C:\Users\gfg\Downloads\Bananarama - The very best of - 2001 [MP3 @ 320] (oan)
2014-08-09 12:19 - 2014-09-01 19:45 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\vlc
2014-08-09 12:19 - 2014-08-10 20:33 - 00001024 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-08-09 12:19 - 2014-08-10 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-08-09 12:19 - 2014-08-09 12:19 - 00000000 ____D () C:\Program Files\VideoLAN
2014-08-09 12:04 - 2014-08-09 12:18 - 24743106 _____ () C:\Users\gfg\Downloads\vlc-2.1.5-win32.exe
2014-08-09 09:26 - 2014-08-09 09:26 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-08-09 09:26 - 2014-08-09 09:26 - 00001989 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-08-09 09:26 - 2014-08-09 09:26 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-08-09 09:26 - 2014-08-09 09:26 - 00000000 ____D () C:\Program Files\Adobe
2014-08-09 09:25 - 2014-08-09 11:54 - 00000000 ____D () C:\ProgramData\Adobe
2014-08-09 05:37 - 2014-08-09 05:38 - 01057672 _____ (Adobe) C:\Users\gfg\Downloads\install_reader11_en_mssa_aaa_aih.exe
2014-08-09 05:29 - 2014-08-09 05:29 - 00001087 _____ () C:\Users\Public\Desktop\Fast Picture Viewer.lnk
2014-08-09 05:29 - 2014-08-09 05:29 - 00000000 ____D () C:\Windows\WICCodecs
2014-08-09 05:29 - 2014-08-09 05:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastPictureViewer
2014-08-09 05:29 - 2014-08-09 05:29 - 00000000 ____D () C:\ProgramData\FastPictureViewer
2014-08-09 05:29 - 2014-08-09 05:29 - 00000000 ____D () C:\Program Files\FastPictureViewer
2014-08-09 04:55 - 2014-08-09 04:55 - 00000376 _____ () C:\Windows\ODBC.INI
2014-08-09 04:55 - 2003-06-20 12:00 - 00024816 _____ (Microsoft Corporation) C:\Windows\system32\mdimon.dll
2014-08-09 04:54 - 2014-08-09 04:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-08-09 04:54 - 2014-08-09 04:54 - 00000000 ____D () C:\Program Files\Microsoft ActiveSync
2014-08-09 04:53 - 2014-08-09 04:53 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-08-09 04:52 - 2014-08-09 04:53 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-08-09 04:52 - 2014-08-09 04:52 - 00000000 ____D () C:\Windows\PCHEALTH
2014-08-09 04:52 - 2014-08-09 04:52 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-08-08 16:26 - 2014-08-14 09:29 - 00000000 ____D () C:\Program Files\WinRAR
2014-08-08 16:26 - 2014-08-08 16:26 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\WinRAR
2014-08-08 16:25 - 2014-08-08 16:26 - 01798384 _____ () C:\Users\gfg\Downloads\wrar511b1cro.exe
2014-08-08 15:28 - 2014-09-02 09:21 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\uTorrent
2014-08-08 14:07 - 2014-08-08 14:09 - 25685128 _____ (Microsoft Corporation) C:\Users\gfg\Downloads\wordview_en-us.exe
2014-08-08 13:52 - 2012-07-06 12:31 - 00393216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2014-08-08 13:52 - 2011-04-27 20:29 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2014-08-08 13:52 - 2011-03-24 20:06 - 00284160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-08-08 13:52 - 2011-03-24 20:06 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-08-08 13:52 - 2011-03-24 20:06 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-08-08 13:52 - 2011-03-24 20:06 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-08-08 13:52 - 2011-03-24 20:06 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-08-08 13:52 - 2011-03-24 20:06 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-08-08 13:52 - 2011-03-24 20:06 - 00005888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-08-08 13:52 - 2011-03-10 22:44 - 00146304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-08-08 13:52 - 2011-03-10 22:44 - 00143744 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2014-08-08 13:52 - 2011-03-10 22:44 - 00117120 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2014-08-08 13:52 - 2011-03-10 22:43 - 00332160 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2014-08-08 13:52 - 2011-03-10 22:43 - 00080256 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2014-08-08 13:52 - 2011-03-10 22:43 - 00022400 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2014-08-08 13:52 - 2011-03-10 22:39 - 01686016 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2014-08-08 13:52 - 2011-03-10 22:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2014-08-08 13:52 - 2011-03-10 21:08 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-08-08 13:47 - 2014-08-29 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK
2014-08-08 13:45 - 2014-08-12 07:32 - 00000000 ____D () C:\ProgramData\TP-LINK
2014-08-08 12:06 - 2014-08-10 19:07 - 00000000 ___RD () C:\Users\gfg\Dropbox
2014-08-08 11:56 - 2014-08-08 11:57 - 00323696 _____ (Dropbox, Inc.) C:\Users\gfg\Downloads\DropboxInstaller (1).exe
2014-08-08 10:27 - 2014-08-08 10:27 - 00000000 ____D () C:\Users\gfg\aTubeCatcher
2014-08-08 10:24 - 2014-08-08 10:24 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Foxreal
2014-08-08 07:36 - 2014-09-02 08:46 - 00000880 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-08 07:36 - 2014-09-02 08:01 - 00000876 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-08 07:36 - 2014-09-01 12:21 - 00002129 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-08-08 07:36 - 2014-08-08 07:37 - 00000000 ____D () C:\Users\gfg\AppData\Local\Google
2014-08-08 07:36 - 2014-08-08 07:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-08-08 07:36 - 2014-08-08 07:36 - 00000000 ____D () C:\Program Files\Google
2014-08-08 07:07 - 2014-08-08 09:57 - 92422477 _____ () C:\Users\gfg\Downloads\3227682.mp4
2014-08-08 06:52 - 2011-04-28 19:57 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2014-08-08 06:52 - 2011-04-28 19:57 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2014-08-08 06:52 - 2011-04-28 19:57 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2014-08-08 06:39 - 2012-12-16 07:25 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-08-08 06:39 - 2012-12-16 07:25 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-08-08 06:38 - 2009-09-09 22:52 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-08-08 06:13 - 2014-08-13 10:42 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-08-08 03:23 - 2012-07-25 20:39 - 00526952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-08-08 03:23 - 2012-07-25 20:39 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-08-08 03:23 - 2012-07-25 19:46 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-08-08 03:23 - 2012-06-02 07:34 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-08-08 03:21 - 2012-07-25 20:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-08-08 03:21 - 2012-07-25 20:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-08-08 03:21 - 2012-07-25 20:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-08-08 03:21 - 2012-07-25 20:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-08-08 03:21 - 2012-07-25 20:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-08-08 03:21 - 2012-07-25 19:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-08-08 03:21 - 2012-07-25 19:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-08-08 03:21 - 2012-06-02 07:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-08-08 03:17 - 2012-02-29 22:53 - 00019312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2014-08-08 03:17 - 2012-02-29 22:45 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-08-08 03:17 - 2012-02-29 22:40 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 12353024 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 09711616 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-08-08 03:16 - 2014-08-08 03:16 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-08-08 03:16 - 2014-08-08 03:16 - 01810432 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-08-08 03:16 - 2014-08-08 03:16 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00434176 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-08-08 03:16 - 2014-08-08 03:16 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00353584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-08-08 03:16 - 2014-08-08 03:16 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-08-08 03:13 - 2014-08-08 03:17 - 00003840 _____ () C:\Windows\IE9_main.log
2014-08-08 03:03 - 2010-03-03 20:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2014-08-08 03:02 - 2010-09-13 23:07 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2014-08-08 02:41 - 2014-09-02 06:08 - 00000000 ____D () C:\Program Files\Opera
2014-08-08 02:41 - 2014-08-08 02:41 - 00001093 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-08-08 02:41 - 2014-08-08 02:41 - 00001093 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-08-08 02:41 - 2014-08-08 02:41 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Opera Software
2014-08-08 02:41 - 2014-08-08 02:41 - 00000000 ____D () C:\Users\gfg\AppData\Local\Opera Software
2014-08-08 01:18 - 2012-05-13 21:37 - 00768512 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-08-08 01:18 - 2012-01-04 02:03 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2014-08-08 01:18 - 2010-10-15 21:41 - 00101760 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-08-08 01:18 - 2010-08-20 22:36 - 00738816 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2014-08-08 01:17 - 2013-04-12 06:58 - 01210728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-08-08 01:17 - 2013-02-12 06:51 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2014-08-08 01:17 - 2012-11-22 02:33 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-08-08 01:17 - 2011-04-24 19:35 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-08-08 01:17 - 2010-06-28 22:02 - 01413632 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2014-08-08 01:16 - 2013-02-28 20:11 - 02345984 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-08 01:16 - 2012-11-01 21:48 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2014-08-08 01:16 - 2012-08-24 10:10 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-08-08 01:16 - 2011-11-16 22:41 - 01288984 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-08-08 01:16 - 2011-06-15 21:35 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2014-08-08 01:16 - 2011-02-17 22:33 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2014-08-08 01:16 - 2010-08-20 22:32 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2014-08-08 01:12 - 2013-03-18 22:06 - 03958120 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2014-08-08 01:12 - 2013-03-18 22:06 - 03902312 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-08-08 01:12 - 2013-03-18 21:54 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-08-08 01:12 - 2013-03-18 19:50 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-08-08 01:12 - 2013-01-23 21:51 - 00195816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2014-08-08 01:12 - 2012-11-08 21:49 - 00492032 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-08-08 01:12 - 2011-03-02 22:29 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-08-08 01:12 - 2011-03-02 22:29 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-08-08 01:12 - 2011-03-02 22:27 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2014-08-08 01:10 - 2010-07-28 23:30 - 00197632 _____ (Intel(R) Corporation) C:\Windows\system32\ir32_32.dll
2014-08-08 01:10 - 2010-07-28 23:30 - 00082944 _____ (Radius Inc.) C:\Windows\system32\iccvid.dll
2014-08-08 01:10 - 2009-10-30 22:45 - 02614272 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-08-08 01:10 - 2009-10-27 23:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-08-08 01:09 - 2012-06-01 21:45 - 01157632 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-08-08 01:09 - 2012-06-01 21:45 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-08-08 01:09 - 2012-06-01 21:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-08-08 01:09 - 2010-08-25 21:39 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2014-08-08 01:08 - 2012-04-27 20:19 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-08-08 01:08 - 2012-01-02 22:44 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2014-08-08 01:08 - 2011-08-16 21:26 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2014-08-08 01:08 - 2011-08-16 21:22 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2014-08-08 01:08 - 2011-08-16 21:22 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2014-08-08 01:08 - 2011-08-16 21:22 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2014-08-08 01:08 - 2011-08-16 21:22 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2014-08-08 01:08 - 2011-05-24 03:35 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2014-08-08 01:08 - 2010-11-01 21:41 - 00351232 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2014-08-08 01:08 - 2010-11-01 21:40 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2014-08-08 01:08 - 2010-11-01 21:40 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2014-08-08 01:08 - 2010-11-01 21:39 - 00749056 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2014-08-08 01:08 - 2010-11-01 21:34 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2014-08-08 01:08 - 2010-11-01 21:34 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2014-08-08 01:08 - 2010-08-03 23:17 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2014-08-08 01:08 - 2009-08-28 23:57 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2014-08-08 01:07 - 2013-02-12 08:13 - 02691072 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-08-08 01:07 - 2013-02-12 08:07 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2014-08-08 01:07 - 2013-02-12 06:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-08-08 01:07 - 2012-06-05 22:09 - 01236992 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-08-08 01:07 - 2012-06-01 21:51 - 00134000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-08-08 01:07 - 2012-06-01 21:51 - 00067440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-08-08 01:07 - 2012-06-01 21:50 - 00369336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-08-08 01:07 - 2012-06-01 21:48 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-08-08 01:07 - 2011-08-26 21:43 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-08-08 01:07 - 2011-08-26 21:43 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2014-08-08 01:07 - 2011-07-08 19:26 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-08-08 01:07 - 2011-05-03 19:43 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-08-08 01:07 - 2011-05-03 19:43 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-08-08 01:07 - 2010-10-15 21:34 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2014-08-08 01:07 - 2010-06-18 23:23 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2014-08-08 01:06 - 2014-09-02 09:20 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-08 01:06 - 2014-08-10 20:10 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-08-08 01:06 - 2014-08-10 20:10 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-08-08 01:06 - 2014-08-09 10:25 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Adobe
2014-08-08 01:06 - 2014-08-08 01:06 - 00000000 ____D () C:\Windows\system32\Macromed
2014-08-08 01:06 - 2014-08-08 01:06 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Macromedia
2014-08-08 01:06 - 2013-01-03 21:55 - 01287528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-08-08 01:06 - 2013-01-03 21:55 - 00187240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-08-08 01:06 - 2012-11-01 21:50 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-08-08 01:06 - 2011-05-02 21:50 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-08-08 01:06 - 2011-04-26 19:33 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2014-08-08 01:06 - 2010-08-30 21:32 - 00954752 _____ (Microsoft Corporation) C:\Windows\system32\mfc40.dll
2014-08-08 01:06 - 2010-08-30 21:32 - 00954288 _____ (Microsoft Corporation) C:\Windows\system32\mfc40u.dll
2014-08-08 01:06 - 2010-08-20 22:33 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-08-08 01:06 - 2010-03-05 00:42 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2014-08-08 01:06 - 2009-09-03 00:04 - 01320960 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2014-08-08 01:06 - 2009-08-19 00:20 - 00507568 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-08-08 01:06 - 2009-08-19 00:20 - 00442920 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-08-08 01:05 - 2012-11-29 16:21 - 00420032 _____ () C:\Windows\system32\locale.nls
2014-08-08 01:05 - 2011-11-19 07:06 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-08-08 01:05 - 2011-05-03 21:53 - 01553920 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2014-08-08 01:05 - 2011-05-03 21:52 - 01401856 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2014-08-08 01:05 - 2011-05-03 21:52 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2014-08-08 01:05 - 2011-05-03 21:52 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2014-08-08 01:05 - 2011-05-03 21:52 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2014-08-08 01:05 - 2011-05-03 21:52 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2014-08-08 01:05 - 2011-05-03 21:52 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2014-08-08 01:05 - 2011-05-03 21:52 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2014-08-08 01:05 - 2011-05-03 21:52 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2014-08-08 01:05 - 2010-08-31 21:29 - 11406848 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-08-08 01:05 - 2010-08-31 21:23 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-08-08 01:04 - 2012-07-04 14:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2014-08-08 01:04 - 2012-07-04 14:23 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2014-08-08 01:04 - 2012-07-04 14:23 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2014-08-08 01:04 - 2012-05-05 00:44 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2014-08-08 01:04 - 2011-10-14 22:48 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2014-08-08 01:04 - 2011-03-12 04:31 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-08-08 01:04 - 2011-02-23 22:32 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-08-08 01:04 - 2011-02-11 22:30 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2014-08-08 01:04 - 2010-12-22 22:28 - 00850432 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2014-08-08 01:04 - 2010-12-22 22:28 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2014-08-08 01:04 - 2010-12-22 22:24 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2014-08-08 01:04 - 2009-12-19 02:02 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\avifil32.dll
2014-08-08 01:04 - 2009-12-19 02:02 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\mciavi32.dll
2014-08-08 01:04 - 2009-12-19 02:02 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2014-08-08 01:04 - 2009-12-19 02:02 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2014-08-08 01:04 - 2009-12-19 02:02 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2014-08-08 01:04 - 2009-12-19 02:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2014-08-08 01:04 - 2009-12-19 02:02 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2014-08-08 01:04 - 2009-12-08 04:32 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2014-08-08 01:04 - 2009-10-19 07:10 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-08-08 01:03 - 2012-08-10 16:54 - 00541184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-08-08 01:03 - 2012-08-02 10:05 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-08-08 01:03 - 2012-04-07 04:34 - 02342400 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-08-08 01:03 - 2011-10-25 21:28 - 01328640 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-08-08 01:03 - 2011-10-25 21:28 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-08-08 01:03 - 2010-12-17 22:26 - 01034240 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-08-08 01:02 - 2012-12-06 22:04 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2014-08-08 01:02 - 2012-12-06 21:57 - 02576384 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2014-08-08 01:02 - 2012-12-06 20:21 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2014-08-08 01:02 - 2012-12-06 20:21 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2014-08-08 01:02 - 2012-11-19 22:10 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-08-08 01:02 - 2012-09-25 14:55 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2014-08-08 01:02 - 2012-05-01 21:52 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-08-08 01:02 - 2012-04-25 21:48 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-08-08 01:02 - 2012-04-25 21:48 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2014-08-08 01:02 - 2012-04-25 21:43 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2014-08-08 01:02 - 2012-03-17 00:20 - 00056688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2014-08-08 01:02 - 2011-12-16 00:59 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2014-08-08 01:02 - 2011-11-16 22:39 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-08-08 01:02 - 2011-11-16 22:39 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-08-08 01:02 - 2011-11-16 22:39 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-08-08 01:02 - 2011-11-16 22:39 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-08-08 01:02 - 2011-11-16 22:38 - 01037312 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-08-08 01:02 - 2011-11-16 22:36 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-08-08 01:02 - 2011-06-15 02:04 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll
2014-08-08 01:02 - 2011-06-15 02:04 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2014-08-08 01:02 - 2011-06-15 02:04 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2014-08-08 01:02 - 2011-06-15 02:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2014-08-08 01:02 - 2011-06-15 02:04 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2014-08-08 01:02 - 2010-11-01 21:36 - 00801792 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-08-08 01:02 - 2010-08-26 22:46 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2014-08-08 01:02 - 2010-05-23 03:15 - 01619456 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-08-08 01:02 - 2010-05-23 03:11 - 03181568 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-08-08 01:01 - 2012-06-08 21:46 - 12868608 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-08-08 01:01 - 2012-03-02 22:40 - 01170944 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-08-08 01:01 - 2012-03-02 22:40 - 01074176 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-08-08 01:01 - 2012-03-02 22:40 - 00739840 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-08-08 01:01 - 2012-03-02 22:40 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-08-08 01:01 - 2012-03-02 22:40 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-08-08 01:01 - 2011-04-22 12:36 - 00026496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-08-08 01:01 - 2011-04-08 22:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-08-08 01:01 - 2011-03-10 22:40 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2014-08-08 01:01 - 2011-03-10 22:40 - 01137664 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2014-08-08 01:01 - 2011-02-22 22:05 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-08-08 01:01 - 2010-12-20 22:38 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2014-08-08 01:01 - 2010-12-20 22:38 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2014-08-08 01:01 - 2010-12-20 22:38 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2014-08-08 01:01 - 2010-12-20 22:38 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2014-08-08 01:01 - 2010-12-20 22:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2014-08-08 01:01 - 2010-12-20 22:38 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2014-08-08 01:01 - 2010-12-20 22:34 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-08-08 01:01 - 2010-11-01 21:41 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2014-08-08 01:01 - 2010-06-25 22:14 - 01495040 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2014-08-08 01:01 - 2010-05-23 03:11 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2014-08-08 01:01 - 2010-05-04 23:46 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2014-08-08 01:01 - 2010-01-18 16:29 - 00369152 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-08-08 01:01 - 2010-01-18 16:29 - 00365568 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-08-08 01:01 - 2010-01-18 16:29 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-08-08 01:01 - 2010-01-18 16:29 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-08-08 01:01 - 2010-01-18 16:28 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-08-08 01:01 - 2010-01-18 16:28 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-08-08 01:01 - 2010-01-18 16:28 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-08-08 01:01 - 2010-01-18 16:28 - 00277504 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-08-08 01:00 - 2012-11-08 21:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-08-08 00:58 - 2013-01-03 21:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-08-08 00:58 - 2013-01-03 21:46 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-08-08 00:58 - 2013-01-03 21:46 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 21:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 19:59 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-08-08 00:58 - 2013-01-03 19:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 19:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 19:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-08-08 00:58 - 2013-01-03 19:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-08-08 00:58 - 2011-02-02 22:45 - 00219008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-08-08 00:58 - 2010-11-01 21:46 - 00728448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-08-08 00:58 - 2010-11-01 21:23 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-08-07 17:00 - 2014-08-05 09:20 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-08-07 16:54 - 2012-02-14 22:44 - 00826368 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-08-07 16:54 - 2012-02-14 21:22 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-08-07 16:54 - 2010-01-08 23:52 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2014-08-07 16:48 - 2014-08-07 16:48 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\ATI
2014-08-07 16:48 - 2014-08-07 16:48 - 00000000 ____D () C:\Users\gfg\AppData\Local\ATI
2014-08-07 16:48 - 2014-08-07 16:48 - 00000000 ____D () C:\Users\gfg\AppData\Local\AMD
2014-08-07 16:48 - 2014-08-07 16:48 - 00000000 ____D () C:\ProgramData\ATI
2014-08-07 16:44 - 2014-08-07 16:44 - 00000000 _____ () C:\Windows\ativpsrm.bin
2014-08-07 16:42 - 2012-06-02 15:19 - 01933848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-08-07 16:42 - 2012-06-02 15:19 - 00577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-08-07 16:42 - 2012-06-02 15:19 - 00171904 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-08-07 16:42 - 2012-06-02 15:19 - 00053784 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-08-07 16:42 - 2012-06-02 15:19 - 00045080 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-08-07 16:42 - 2012-06-02 15:19 - 00035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-08-07 16:42 - 2012-06-02 15:12 - 02422272 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-08-07 16:42 - 2012-06-02 15:12 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-08-07 16:42 - 2012-06-02 15:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-08-07 16:38 - 2014-08-07 16:38 - 00001541 _____ () C:\Bluetooth.log
2014-08-07 16:38 - 2014-08-07 16:38 - 00000000 ____D () C:\Program Files\Cisco
2014-08-07 16:36 - 2014-08-07 16:36 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-08-07 16:36 - 2014-08-07 16:36 - 00000000 ____D () C:\Program Files\AMD APP
2014-08-07 16:36 - 2014-08-07 16:35 - 04256320 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL6.SYS
2014-08-07 16:36 - 2014-08-07 16:35 - 03928064 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv.dll
2014-08-07 16:36 - 2014-08-07 16:35 - 03616768 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui.dll
2014-08-07 16:36 - 2014-08-07 16:35 - 00091448 _____ (Broadcom Corporation) C:\Windows\system32\bcmwlcoi.dll
2014-08-07 16:36 - 2014-08-07 16:35 - 00006656 _____ () C:\Windows\system32\bcmwlrc.dll
2014-08-07 16:36 - 2010-12-16 11:06 - 00037504 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2014-08-07 16:35 - 2014-08-07 16:35 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\InstallShield
2014-08-07 16:34 - 2014-08-07 16:34 - 00000000 ____D () C:\ProgramData\AMD
2014-08-07 16:34 - 2010-02-18 09:18 - 00037944 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdiox86.sys
2014-08-07 16:33 - 2014-08-07 16:35 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-08-07 16:33 - 2014-08-07 16:33 - 00000000 ____D () C:\Program Files\ATI
2014-08-07 16:32 - 2014-08-07 16:33 - 00000000 ____D () C:\Program Files\AMD High-Definition Graphics Driver
2014-08-07 13:19 - 2009-11-25 12:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-08-07 13:19 - 2009-11-25 12:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2014-08-07 13:19 - 2009-11-25 12:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2014-08-07 13:19 - 2009-11-25 12:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2014-08-07 13:19 - 2009-11-25 12:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2014-08-07 13:16 - 2011-08-04 19:19 - 00148520 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwavdt.sys
2014-08-07 13:16 - 2011-08-04 19:19 - 00140328 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwaudio.sys
2014-08-07 13:16 - 2011-08-04 19:19 - 00033832 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwl2cap.sys
2014-08-07 13:16 - 2011-08-04 19:19 - 00018728 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwrchid.sys
2014-08-07 13:05 - 2014-09-02 02:55 - 00011814 _____ () C:\Windows\PFRO.log
2014-08-07 13:04 - 2014-08-07 13:04 - 00002066 _____ () C:\Users\Public\Desktop\Video Search.lnk
2014-08-07 13:04 - 2014-08-07 13:04 - 00001144 _____ () C:\Users\Public\Desktop\aTube Catcher.lnk
2014-08-07 13:03 - 2014-08-07 13:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2014-08-07 13:03 - 2014-08-07 13:03 - 00000000 ____D () C:\Program Files\DsNET Corp
2014-08-07 13:02 - 2014-08-07 13:02 - 00001239 _____ () C:\Users\Public\Desktop\Foxreal YouTube FLV Downloader Pro.lnk
2014-08-07 13:02 - 2014-08-07 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxreal
2014-08-07 13:01 - 2014-08-07 13:01 - 00001275 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-08-07 13:01 - 2014-08-07 13:01 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\Users\gfg\AppData\Local\ashampoo
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\Program Files\Foxreal
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\Program Files\Ashampoo
2014-08-07 13:01 - 2009-10-27 19:31 - 03982240 _____ (Adobe Systems, Inc.) C:\Windows\system32\Flash10d.ocx
2014-08-07 12:59 - 2014-08-07 16:38 - 00000086 _____ () C:\setup.log
2014-08-07 12:59 - 2014-08-07 12:59 - 00000000 ____D () C:\ProgramData\Atheros
2014-08-07 12:56 - 2014-08-07 16:36 - 00000000 ____D () C:\Program Files\Broadcom
2014-08-07 12:56 - 2014-08-07 12:56 - 00000000 ____D () C:\Users\gfg\Documents\Bluetooth Exchange Folder
2014-08-07 12:56 - 2014-08-07 12:56 - 00000000 ____D () C:\Users\gfg\AppData\Local\Broadcom
2014-08-07 12:56 - 2011-08-04 19:19 - 00525352 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwampfl.sys
2014-08-07 12:55 - 2014-08-29 20:19 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-08-07 12:55 - 2014-08-07 16:40 - 00000000 ____D () C:\Program Files\Realtek
2014-08-07 12:55 - 2014-08-07 12:55 - 00000000 ____D () C:\Users\Malisa\Desktop\sp52420&524211
2014-08-07 12:55 - 2014-08-07 12:55 - 00000000 ____D () C:\Users\Malisa
2014-08-07 12:55 - 2011-03-05 00:16 - 00348776 _____ (Realtek ) C:\Windows\system32\Drivers\Rt86win7.sys
2014-08-07 12:55 - 2011-03-05 00:16 - 00100896 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst32.dll
2014-08-07 12:55 - 2011-03-05 00:16 - 00080416 _____ () C:\Windows\system32\RtNicProp32.dll
2014-08-07 12:54 - 2011-08-04 19:19 - 00020008 _____ (Broadcom Corporation.) C:\Windows\system32\btwcoins.dll
2014-08-07 12:53 - 2014-08-07 12:53 - 00000923 _____ () C:\Users\gfg\Desktop\MagicDisc.lnk
2014-08-07 12:53 - 2014-08-07 12:53 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
2014-08-07 12:53 - 2014-08-07 12:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
2014-08-07 12:53 - 2011-08-04 19:19 - 00142632 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\bcbtums.sys
2014-08-07 12:53 - 2011-08-04 19:19 - 00076328 _____ (Broadcom Corporation.) C:\Windows\system32\Drivers\btwdpan.sys
2014-08-07 12:53 - 2011-08-04 19:19 - 00039566 _____ () C:\Windows\system32\Drivers\BCM20702A1_001.002.014.0136.0168.hex
2014-08-07 12:52 - 2014-08-07 12:53 - 00000000 ____D () C:\Program Files\MagicDisc
2014-08-07 12:52 - 2014-08-07 12:52 - 00000000 ____D () C:\Program Files\WIDCOMM
2014-08-07 12:52 - 2009-02-24 18:42 - 00116736 _____ (MagicISO, Inc.) C:\Windows\system32\Drivers\mcdbus.sys
2014-08-07 12:51 - 2014-05-27 11:51 - 01677440 _____ (Skype Technologies S.A.) C:\Users\gfg\Desktop\SkypeSetup.exe
2014-08-06 14:11 - 2014-08-06 14:23 - 00000000 ____D () C:\Users\gfg\AppData\Local\Microsoft Games
2014-08-06 14:07 - 2014-08-07 18:01 - 00001091 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2014-08-06 14:07 - 2014-08-07 18:01 - 00001067 _____ () C:\Users\Public\Desktop\GOM Player.lnk
2014-08-06 14:07 - 2014-08-06 14:07 - 00000000 ____D () C:\Users\gfg\Documents\GomPlayer
2014-08-06 14:07 - 2014-08-06 14:07 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\GRETECH
2014-08-06 14:07 - 2014-08-06 14:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
2014-08-06 14:07 - 2014-08-06 14:07 - 00000000 ____D () C:\Program Files\GRETECH
2014-08-06 13:39 - 2014-08-17 13:16 - 00088264 _____ () C:\Users\gfg\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-06 13:39 - 2014-08-06 13:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-08-06 11:46 - 2014-08-06 10:53 - 00000000 ____D () C:\Windows\Panther
2014-08-06 11:03 - 2014-09-02 03:02 - 00720082 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-08-06 10:53 - 2014-08-29 18:51 - 00000000 ____D () C:\Users\gfg\AppData\Local\VirtualStore
2014-08-06 10:53 - 2014-08-14 07:18 - 00000000 ____D () C:\Users\gfg
2014-08-06 10:53 - 2014-08-08 06:18 - 00001413 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-06 10:53 - 2014-08-06 10:53 - 00000020 ___SH () C:\Users\gfg\ntuser.ini
2014-08-06 10:53 - 2014-08-06 10:53 - 00000000 __SHD () C:\Recovery
2014-08-06 10:53 - 2009-07-13 21:42 - 00000000 ___RD () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-08-06 10:53 - 2009-07-13 21:37 - 00000000 ___RD () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-08-06 10:50 - 2014-08-06 10:50 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-08-06 10:50 - 2014-08-06 10:50 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-08-06 10:49 - 2014-09-02 09:08 - 01255940 _____ () C:\Windows\WindowsUpdate.log
2014-08-06 10:47 - 2014-08-06 10:49 - 00001313 _____ () C:\Windows\TSSysprep.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-02 09:21 - 2014-08-08 15:28 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\uTorrent
2014-09-02 09:20 - 2014-09-02 09:19 - 00015163 _____ () C:\Users\gfg\Downloads\FRST.txt
2014-09-02 09:20 - 2014-09-02 09:19 - 00000000 ____D () C:\FRST
2014-09-02 09:20 - 2014-09-02 09:18 - 01096704 _____ (Farbar) C:\Users\gfg\Downloads\FRST (1).exe
2014-09-02 09:20 - 2014-08-08 01:06 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-02 09:19 - 2014-09-02 09:18 - 01096704 _____ (Farbar) C:\Users\gfg\Downloads\FRST.exe
2014-09-02 09:13 - 2014-09-02 09:13 - 00000000 ____H () C:\Users\gfg\Documents\Default.rdp
2014-09-02 09:12 - 2014-09-02 09:11 - 02104832 _____ (Farbar) C:\Users\gfg\Downloads\FRST64.exe
2014-09-02 09:08 - 2014-08-06 10:49 - 01255940 _____ () C:\Windows\WindowsUpdate.log
2014-09-02 09:07 - 2009-07-13 21:34 - 00013120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-02 09:07 - 2009-07-13 21:34 - 00013120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-02 08:46 - 2014-08-08 07:36 - 00000880 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-02 08:01 - 2014-08-08 07:36 - 00000876 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-02 06:08 - 2014-08-08 02:41 - 00000000 ____D () C:\Program Files\Opera
2014-09-02 05:10 - 2014-08-22 16:05 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Skype
2014-09-02 03:58 - 2014-09-01 12:10 - 00000000 ____D () C:\Users\gfg\AppData\Local\Mail.ru
2014-09-02 03:02 - 2014-08-06 11:03 - 00720082 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-02 03:02 - 2009-07-13 19:04 - 00000601 _____ () C:\Windows\win.ini
2014-09-02 02:59 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-09-02 02:56 - 2009-07-13 21:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-02 02:56 - 2009-07-13 21:39 - 00025191 _____ () C:\Windows\setupact.log
2014-09-02 02:55 - 2014-08-07 13:05 - 00011814 _____ () C:\Windows\PFRO.log
2014-09-01 19:45 - 2014-08-09 12:19 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\vlc
2014-09-01 19:05 - 2014-09-01 11:58 - 2512693241 ____R () C:\Users\gfg\Downloads\The.Signal.2014.L2.WEBRip.720p.mkv
2014-09-01 17:27 - 2014-09-01 12:06 - 1467860992 ____R () C:\Users\gfg\Downloads\T1pa.K0py.2014.D.CAMRip.1400MB.avi
2014-09-01 12:21 - 2014-09-01 12:21 - 00002229 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Одноклассники.lnk
2014-09-01 12:21 - 2014-09-01 12:21 - 00002229 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Вконтакте.lnk
2014-09-01 12:21 - 2014-09-01 12:21 - 00000000 ____D () C:\Users\gfg\AppData\Local\MailRu
2014-09-01 12:21 - 2014-09-01 12:20 - 00000000 ____D () C:\Users\gfg\AppData\Local\Amigo
2014-09-01 12:21 - 2014-08-08 07:36 - 00002129 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-09-01 12:20 - 2014-09-01 12:20 - 00002204 _____ () C:\Users\gfg\Desktop\Одноклассники.lnk
2014-09-01 12:20 - 2014-09-01 12:20 - 00002204 _____ () C:\Users\gfg\Desktop\Вконтакте.lnk
2014-09-01 12:20 - 2014-09-01 12:20 - 00002192 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amigo.lnk
2014-09-01 12:20 - 2014-09-01 12:20 - 00002167 _____ () C:\Users\gfg\Desktop\Amigo.lnk
2014-09-01 12:15 - 2014-09-01 12:10 - 00000174 _____ () C:\Users\gfg\Desktop\Искать в Интернете.url
2014-09-01 12:10 - 2014-09-01 12:10 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\eTranslator
2014-09-01 12:05 - 2014-09-01 12:03 - 00531456 _____ (Alexander Roshal) C:\Users\gfg\Downloads\tipa kopy let s be cops 2014 camrip skachat igry cherez torrent - skachat igry na psp.exe
2014-09-01 11:56 - 2014-09-01 11:55 - 00531456 _____ (Alexander Roshal) C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp (1).exe
2014-09-01 11:55 - 2014-09-01 11:55 - 00531456 _____ (Alexander Roshal) C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp.exe
2014-09-01 08:37 - 2014-08-26 13:09 - 00000000 ____D () C:\Program Files\SearchProtect
2014-09-01 07:28 - 2014-09-01 07:26 - 00000000 ____D () C:\Users\gfg\Downloads\B20032013
2014-09-01 07:26 - 2014-09-01 07:21 - 00000000 ____D () C:\Users\gfg\Downloads\Rihanna
2014-08-31 16:21 - 2014-08-31 16:21 - 00000000 ____D () C:\Users\gfg\Documents\Foxreal
2014-08-31 14:43 - 2014-08-31 14:43 - 00000000 ____D () C:\Users\gfg\Downloads\Dallas Cowboys Cheerleaders (1979) - YouTube_files
2014-08-31 14:43 - 2014-08-31 14:42 - 00442252 _____ () C:\Users\gfg\Downloads\Dallas Cowboys Cheerleaders (1979) - YouTube.htm
2014-08-31 07:09 - 2014-08-31 07:09 - 00000000 ____D () C:\Users\gfg\Desktop\New folder
2014-08-29 20:19 - 2014-08-08 13:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK
2014-08-29 20:19 - 2014-08-07 12:55 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-08-29 18:51 - 2014-08-06 10:53 - 00000000 ____D () C:\Users\gfg\AppData\Local\VirtualStore
2014-08-29 07:34 - 2014-08-29 07:34 - 00034155 _____ () C:\Users\gfg\Downloads\Konobar (m ž) u Restoran Passerella u Bar - jobs4hotels.me.htm
2014-08-29 07:34 - 2014-08-29 07:34 - 00000000 ____D () C:\Users\gfg\Downloads\Konobar (m ž) u Restoran Passerella u Bar - jobs4hotels.me_files
2014-08-28 10:19 - 2014-08-28 10:19 - 00039769 _____ () C:\Users\gfg\Downloads\Assistant to Front Office Manager u Iberostar Bellevue Hotel u Budva - jobs4hotels.me.htm
2014-08-28 10:19 - 2014-08-28 10:19 - 00000000 ____D () C:\Users\gfg\Downloads\Assistant to Front Office Manager u Iberostar Bellevue Hotel u Budva - jobs4hotels.me_files
2014-08-28 10:07 - 2014-08-28 10:07 - 00053733 _____ () C:\Users\gfg\Downloads\Hospitality jobs u Budva - jobs4hotels.me.htm
2014-08-28 10:07 - 2014-08-28 10:07 - 00000000 ____D () C:\Users\gfg\Downloads\Hospitality jobs u Budva - jobs4hotels.me_files
2014-08-27 05:11 - 2014-08-27 05:10 - 00000294 _____ () C:\Users\gfg\Downloads\Modern+Don+Juan+FULL+PORN.url
2014-08-27 04:26 - 2014-08-27 04:25 - 735123456 _____ () C:\Users\gfg\Downloads\Friday.The.13th.Part.3.(1982).Deluxe.Edition.3D.DVDRip.XviD-Sporc.avi
2014-08-26 21:06 - 2014-08-26 21:06 - 00366212 _____ () C:\Users\gfg\Downloads\Up the Creek (1984) - YouTube.htm
2014-08-26 21:06 - 2014-08-26 21:06 - 00000000 ____D () C:\Users\gfg\Downloads\Up the Creek (1984) - YouTube_files
2014-08-26 15:13 - 2014-08-26 15:11 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (2).exe
2014-08-26 15:09 - 2014-08-26 15:09 - 00019598 _____ () C:\Users\gfg\Downloads\cellphonespy.zip
2014-08-26 14:38 - 2014-08-26 14:38 - 01036872 _____ (Microsoft Corporation) C:\Users\gfg\Downloads\wdexpress_full.exe
2014-08-26 14:34 - 2014-08-26 14:34 - 00577728 _____ (Firseria.-.Installer · sl) C:\Users\gfg\Downloads\Microsoft Visual Studio Express.exe
2014-08-26 14:28 - 2014-08-26 14:26 - 10927016 _____ (Devart ) C:\Users\gfg\Downloads\sqlcomplete.exe
2014-08-26 13:23 - 2014-08-26 13:14 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\BitLord
2014-08-26 13:14 - 2014-08-26 13:14 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Python-Eggs
2014-08-26 13:10 - 2014-08-26 13:10 - 00000000 ____D () C:\Users\gfg\AppData\Local\SearchProtect
2014-08-26 13:07 - 2014-08-26 13:07 - 00001969 _____ () C:\Users\gfg\Desktop\BitLord.lnk
2014-08-26 13:07 - 2014-08-26 13:07 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
2014-08-26 13:07 - 2014-08-26 13:03 - 00000000 ____D () C:\Program Files\BitLord 2
2014-08-26 13:05 - 2014-08-26 13:05 - 00000000 ____D () C:\Users\gfg\Documents\BitLord
2014-08-26 13:00 - 2014-08-26 12:59 - 00645296 _____ () C:\Users\gfg\Downloads\motionVFX - mSPY - BitLordInstaller.exe
2014-08-26 13:00 - 2014-08-26 12:50 - 111978832 _____ (Apple Inc.) C:\Users\gfg\Downloads\iTunesSetup.exe
2014-08-26 08:30 - 2014-08-26 08:29 - 00428840 _____ () C:\Users\gfg\Downloads\free_time_tracking_software_3_2_1_exe.exe
2014-08-26 08:29 - 2014-08-26 08:27 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (1).exe
2014-08-26 08:27 - 2014-08-26 08:26 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc.exe
2014-08-26 08:22 - 2014-08-26 08:22 - 00013164 _____ () C:\Users\gfg\Downloads\iPhone.Tips,.Tricks,.Apps.&.Hacks..-..Vol.13,.2014.torrent
2014-08-26 08:20 - 2014-08-26 08:20 - 00000397 _____ () C:\Users\gfg\Downloads\[TorrentDownloads.me]_FlexiSpy.torrent
2014-08-26 07:58 - 2014-08-26 07:58 - 00098304 _____ (Hewlett-Packard Company) C:\Users\gfg\Downloads\HPUSBDisk.exe
2014-08-26 07:58 - 2014-08-26 07:58 - 00098304 _____ (Hewlett-Packard Company) C:\Users\gfg\Downloads\HPUSBDisk (1).exe
2014-08-26 05:38 - 2014-08-25 09:11 - 00000000 ____D () C:\Program Files\MyPC Backup
2014-08-26 03:13 - 2014-08-25 09:09 - 00000000 ____D () C:\Program Files\SmarterPower
2014-08-25 18:30 - 2014-08-25 18:30 - 00050879 _____ () C:\Users\gfg\Downloads\A Compilation Of Sluts Taking Ass To Mouth Cumshots Video.htm
2014-08-25 18:30 - 2014-08-25 18:30 - 00000000 ____D () C:\Users\gfg\Downloads\A Compilation Of Sluts Taking Ass To Mouth Cumshots Video_files
2014-08-25 14:22 - 2014-08-26 18:24 - 04439591 ____R () C:\Users\gfg\Desktop\09 - Stranger In Moscow (Tee's In-House Club Mix).ogg
2014-08-25 14:22 - 2014-08-25 14:10 - 02193064 ____R () C:\Users\gfg\Desktop\03 - Melodie.ogg
2014-08-25 13:37 - 2014-08-25 12:19 - 00000000 ____D () C:\Users\gfg\Downloads\Michael Jackson Discography
2014-08-25 09:20 - 2014-08-25 09:20 - 00101522 _____ () C:\Users\gfg\Downloads\Shakira.Discography.1991-2014.torrent
2014-08-25 09:12 - 2014-08-25 09:12 - 28940764 _____ () C:\Users\gfg\Documents\ИРИНА БИЛЫК - TOГО КОГО [OFFICIAL AUDIO].mp4
2014-08-25 09:12 - 2014-08-25 09:11 - 00001045 _____ () C:\Users\gfg\Desktop\MyPC Backup.lnk
2014-08-25 09:11 - 2014-08-25 09:11 - 00001915 _____ () C:\Users\gfg\Desktop\Sync Folder.lnk
2014-08-25 09:11 - 2014-08-25 09:11 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
2014-08-25 09:09 - 2014-08-25 09:09 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Search Protection
2014-08-25 09:08 - 2014-08-25 09:07 - 00000000 ____D () C:\ProgramData\YTD Video Downloader
2014-08-25 09:07 - 2014-08-25 09:07 - 00001247 _____ () C:\Users\Public\Desktop\YTD Video Downloader.lnk
2014-08-25 09:07 - 2014-08-25 09:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader
2014-08-25 09:07 - 2014-08-25 09:07 - 00000000 ____D () C:\Program Files\GreenTree Applications
2014-08-25 08:53 - 2014-08-25 08:53 - 00000000 ____D () C:\Users\gfg\Downloads\First Anal Quest - Irina (Teenage Ass Fucking At Its Best)
2014-08-25 08:53 - 2014-08-25 08:52 - 00000000 ____D () C:\Users\gfg\Downloads\Shakira
2014-08-23 18:22 - 2014-08-25 10:16 - 00052376 _____ (StdLib) C:\Windows\system32\Drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gw.sys
2014-08-23 15:41 - 2014-08-23 15:32 - 00448512 _____ (OldTimer Tools) C:\Users\gfg\Downloads\TFC.exe
2014-08-23 14:34 - 2014-08-23 14:34 - 00000000 ____D () C:\Users\gfg\Desktop\Turizam, Privatan Smestaj Budva, Crna Gora - Oglasi Balkan_files
2014-08-23 13:11 - 2014-08-23 13:11 - 00759473 _____ () C:\Users\gfg\Desktop\Vladimir Visnjic.htm
2014-08-23 13:11 - 2014-08-23 13:11 - 00000000 ____D () C:\Users\gfg\Desktop\Vladimir Visnjic_files
2014-08-23 13:04 - 2014-08-23 13:00 - 00000000 ____D () C:\AdwCleaner
2014-08-23 13:04 - 2014-08-10 20:10 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
2014-08-23 13:04 - 2014-08-10 20:04 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player
2014-08-23 13:04 - 2014-08-10 19:45 - 00000000 ____D () C:\Program Files\WebSpades
2014-08-23 13:00 - 2014-08-23 12:59 - 01364531 _____ () C:\Users\gfg\Downloads\AdwCleaner.exe
2014-08-23 09:13 - 2014-08-10 20:05 - 00000000 ____D () C:\ProgramData\TEMP
2014-08-22 16:50 - 2014-08-22 16:50 - 00010882 _____ () C:\Users\gfg\Desktop\download.htm
2014-08-22 16:48 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2014-08-22 16:44 - 2014-08-22 16:05 - 00000000 ____D () C:\ProgramData\Skype
2014-08-22 16:43 - 2014-08-22 16:43 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-08-22 16:07 - 2014-08-22 16:05 - 00000000 ___RD () C:\Program Files\Skype
2014-08-22 16:06 - 2014-08-22 16:06 - 00000000 ____D () C:\Users\gfg\AppData\Local\Skype
2014-08-22 16:05 - 2014-08-22 16:05 - 00002503 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-08-22 16:05 - 2014-08-22 16:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-08-21 15:35 - 2014-08-14 10:00 - 00000000 ____D () C:\MSI
2014-08-17 13:16 - 2014-08-06 13:39 - 00088264 _____ () C:\Users\gfg\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-17 13:16 - 2009-07-13 21:33 - 00357848 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-17 13:05 - 2014-08-17 13:05 - 00000000 ____D () C:\Program Files\Common Files\AVSMedia
2014-08-17 13:04 - 2014-08-17 13:04 - 00000000 ____D () C:\Program Files\AVS4YOU
2014-08-17 13:02 - 2014-08-17 13:02 - 00001157 _____ () C:\Users\gfg\Desktop\Any Video Converter.lnk
2014-08-17 13:02 - 2014-08-17 13:02 - 00000000 ____D () C:\Users\gfg\Documents\Any Video Converter
2014-08-17 13:02 - 2014-08-17 13:02 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\AnvSoft
2014-08-17 13:02 - 2014-08-17 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft
2014-08-17 13:02 - 2014-08-17 13:02 - 00000000 ____D () C:\Program Files\AnvSoft
2014-08-15 03:11 - 2014-08-15 03:11 - 01277665 _____ () C:\Users\gfg\Downloads\TL-WN722NC_V1_Win7_Beta (1).zip
2014-08-15 03:11 - 2014-08-15 03:10 - 01277665 _____ () C:\Users\gfg\Downloads\TL-WN722NC_V1_Win7_Beta.zip
2014-08-15 03:11 - 2014-08-15 03:09 - 13206671 _____ () C:\Users\gfg\Downloads\TL-WN722NC_V1_131113.zip
2014-08-15 03:05 - 2014-08-15 03:04 - 00623152 _____ () C:\Users\gfg\Downloads\setup.exe
2014-08-15 01:12 - 2014-08-14 12:21 - 2201217024 ____R () C:\Users\gfg\Downloads\Transformers.Age.of.Extinction.2014.Dt.TS.PROPER.2100MB.avi
2014-08-14 20:56 - 2014-08-14 16:04 - 784559679 ____R () C:\Users\gfg\Downloads\Иллюзионист,2006.mkv
2014-08-14 16:03 - 2014-08-14 15:45 - 1567034498 _____ () C:\Users\gfg\Downloads\Illjuzionist.2006.RUS.DVDRip.XviD.AC3.-HQ-ViDEO.avi
2014-08-14 16:02 - 2014-08-14 16:02 - 00015634 _____ () C:\Users\gfg\Downloads\[rutor.org]-331181.torrent
2014-08-14 15:51 - 2014-08-14 15:51 - 00030377 _____ () C:\Users\gfg\Downloads\[rutor.org]-2408 (2).torrent
2014-08-14 15:51 - 2014-08-14 15:51 - 00030377 _____ () C:\Users\gfg\Downloads\[rutor.org]-2408 (1).torrent
2014-08-14 15:42 - 2014-08-14 15:41 - 00030377 _____ () C:\Users\gfg\Downloads\[rutor.org]-2408.torrent
2014-08-14 15:42 - 2014-08-14 11:51 - 1557374976 _____ () C:\Users\gfg\Downloads\The.Illusionist.2006_HDRip__[scarabey.org].avi
2014-08-14 14:59 - 2014-08-14 14:59 - 00336784 _____ () C:\Windows\Minidump\081414-55302-01.dmp
2014-08-14 14:59 - 2014-08-14 14:59 - 00000000 ____D () C:\Windows\Minidump
2014-08-14 14:58 - 2014-08-14 14:58 - 248554455 _____ () C:\Windows\MEMORY.DMP
2014-08-14 13:37 - 2014-08-14 12:43 - 177642320 _____ (NVIDIA Corporation) C:\Users\gfg\Downloads\340.43-desktop-win8-win7-winvista-32bit-english-beta.exe
2014-08-14 12:18 - 2014-08-14 12:18 - 00011035 _____ () C:\Users\gfg\Downloads\[rutor.org]-367993.torrent
2014-08-14 12:02 - 2014-08-14 12:02 - 00021921 _____ () C:\Users\gfg\Downloads\22949-theillusionist (1).zip
2014-08-14 12:02 - 2014-08-14 12:02 - 00020013 _____ () C:\Users\gfg\Downloads\21711-theillusionist_ser.zip
2014-08-14 12:01 - 2014-08-14 12:01 - 00021921 _____ () C:\Users\gfg\Downloads\22949-theillusionist.zip
2014-08-14 12:00 - 2014-08-14 12:00 - 00025257 _____ () C:\Users\gfg\Downloads\23022-theillusionist_dvdrip_alliance.zip
2014-08-14 11:59 - 2014-08-14 11:59 - 00022573 _____ () C:\Users\gfg\Downloads\50509-the_illusionist__2006__axxo_25fps_sr.zip
2014-08-14 11:59 - 2014-08-14 11:59 - 00020131 _____ () C:\Users\gfg\Downloads\33661-the_illusionist__2006_axxo.zip
2014-08-14 11:58 - 2014-08-14 11:58 - 00021993 _____ () C:\Users\gfg\Downloads\62064-The.Illusionist.2006.720p.HDTV.MULTi.x264-NBS (1).zip
2014-08-14 11:57 - 2014-08-14 11:57 - 00021993 _____ () C:\Users\gfg\Downloads\62064-The.Illusionist.2006.720p.HDTV.MULTi.x264-NBS.zip
2014-08-14 11:57 - 2014-08-14 11:57 - 00020370 _____ () C:\Users\gfg\Downloads\119622-TheIllusionist_2006_.rar
2014-08-14 11:56 - 2014-08-14 11:56 - 00026313 _____ () C:\Users\gfg\Downloads\186571-theillusionist_2006_.zip
2014-08-14 11:50 - 2014-08-14 11:50 - 00015497 _____ () C:\Users\gfg\Downloads\[rutor.org]-303558.torrent
2014-08-14 11:48 - 2014-08-14 11:48 - 00014631 _____ () C:\Users\gfg\Downloads\[rutor.org]-476.torrent
2014-08-14 09:29 - 2014-08-14 09:29 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-08-14 09:29 - 2014-08-14 09:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-08-14 09:29 - 2014-08-08 16:26 - 00000000 ____D () C:\Program Files\WinRAR
2014-08-14 08:50 - 2014-08-14 07:15 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\MSI FM2-A55M-E33 user guide
2014-08-14 07:18 - 2014-08-14 07:18 - 00000000 ____D () C:\Users\gfg\.android
2014-08-14 07:18 - 2014-08-06 10:53 - 00000000 ____D () C:\Users\gfg
2014-08-14 07:17 - 2014-08-10 20:04 - 00000000 ____D () C:\Users\gfg\AppData\Local\CrashRpt
2014-08-14 07:16 - 2014-08-14 07:16 - 00000973 _____ () C:\Users\gfg\Desktop\GetNowUpdater.lnk
2014-08-14 07:16 - 2014-08-14 07:16 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\GetnowUpdater
2014-08-14 07:15 - 2014-08-14 07:15 - 00000000 ____D () C:\Users\gfg\AppData\Local\GetNowUpdater
2014-08-14 07:15 - 2014-08-14 07:15 - 00000000 ____D () C:\Users\gfg\AppData\Local\GetnowUninstall
2014-08-14 05:53 - 2014-08-14 05:52 - 00680920 _____ (Live Soft Action S. R. L. ) C:\Users\gfg\Downloads\MSI FM2-A55M-E33 user guide provided through pdfretriever.com.exe
2014-08-13 10:42 - 2014-08-08 06:13 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-08-13 10:17 - 2014-08-10 18:20 - 00000000 ____D () C:\Users\gfg\Downloads\Lady Gaga - That Hits [Brrr]
2014-08-13 08:47 - 2014-08-13 08:09 - 286844616 _____ (NVIDIA Corporation) C:\Users\gfg\Downloads\340.52-desktop-win8-win7-winvista-64bit-english-whql.exe
2014-08-13 08:33 - 2014-08-13 03:51 - 3534818188 ____R () C:\Users\gfg\Downloads\Windows 8.1 Pro (64bit).rar
2014-08-12 08:48 - 2014-08-12 08:38 - 165288848 _____ () C:\Users\gfg\Downloads\Serbsko-russkii-slovar_Programma.zip
2014-08-12 08:37 - 2014-08-12 08:29 - 242241536 _____ () C:\Users\gfg\Downloads\Markovich_Serbski-yazyk-Uchebnik.zip
2014-08-12 08:25 - 2014-08-12 08:15 - 242537748 _____ () C:\Users\gfg\Downloads\Trofimkina_Serbski-yazyk_Nachalnyi-kurs.zip
2014-08-12 08:12 - 2014-08-12 08:07 - 134822069 _____ () C:\Users\gfg\Downloads\Metod-Zamyatkina_Serbskii-yazyk.zip
2014-08-12 08:07 - 2014-08-12 08:04 - 78840607 _____ () C:\Users\gfg\Downloads\Prosvirina_Serbski-s-nulya.zip
2014-08-12 08:01 - 2014-08-12 08:01 - 00687910 _____ () C:\Users\gfg\Downloads\Ivanova_Serbskii-yazyk-dlya-nachinayushchikh.zip
2014-08-12 08:01 - 2014-08-12 08:01 - 00000000 ____D () C:\Users\gfg\AppData\Local\Adobe
2014-08-12 07:48 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-08-12 07:32 - 2014-08-08 13:45 - 00000000 ____D () C:\ProgramData\TP-LINK
2014-08-12 07:23 - 2014-08-12 07:23 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Ashampoo
2014-08-11 19:38 - 2014-08-11 15:19 - 3741728768 ____R () C:\Users\gfg\Downloads\Windows 7 Ultimate.iso
2014-08-11 15:30 - 2014-08-11 15:30 - 01745984 _____ () C:\Users\gfg\Downloads\wrar511b1.exe
2014-08-11 14:45 - 2014-08-11 14:17 - 704055157 ____R () C:\Users\gfg\Downloads\Windows XP Professional SP3 x86 - Black Edition 2014.7.13.zip
2014-08-11 14:17 - 2014-08-11 14:17 - 00000000 __RSH () C:\MSDOS.SYS
2014-08-11 14:17 - 2014-08-11 14:17 - 00000000 __RSH () C:\IO.SYS
2014-08-11 14:16 - 2014-08-11 14:16 - 00000811 _____ () C:\Users\gfg\Desktop\µTorrent.lnk
2014-08-11 14:16 - 2014-08-11 14:16 - 00000791 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-08-11 07:29 - 2014-08-11 07:27 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r725-n-bc.exe
2014-08-11 04:01 - 2014-08-10 18:17 - 00000000 ____D () C:\Users\gfg\Downloads\Bananarama - The very best of - 2001 [MP3 @ 320] (oan)
2014-08-10 22:07 - 2014-08-10 18:29 - 00000000 ____D () C:\Users\gfg\Downloads\George Michael + Wham - The Collection (1983 - 2006) (MP3-EAC-320kBs)
2014-08-10 20:33 - 2014-08-09 12:19 - 00001024 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-08-10 20:27 - 2014-08-09 12:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-08-10 20:10 - 2014-08-10 20:10 - 00002058 _____ () C:\Users\gfg\Desktop\AppsHat.lnk
2014-08-10 20:10 - 2014-08-08 01:06 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-08-10 20:10 - 2014-08-08 01:06 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-08-10 20:05 - 2014-08-10 20:05 - 00227048 _____ () C:\Users\gfg\Downloads\FLVPlayer_downloader-N7bZtceeu.exe
2014-08-10 20:05 - 2014-08-10 20:05 - 00172032 _____ (Jin Hui E-mail: jinhui@jcomsoft.com Web: jcomsoft.com) C:\Windows\system32\AniGIF.ocx
2014-08-10 20:05 - 2014-08-10 20:05 - 00000000 ____D () C:\Users\Public\Documents\GOOBZO
2014-08-10 20:04 - 2014-08-10 20:04 - 00002087 _____ () C:\Users\gfg\Desktop\FLV Player.lnk
2014-08-10 20:04 - 2014-08-10 20:03 - 00227056 _____ () C:\Users\gfg\Downloads\FLVPlayer_downloader-N22eeLUDX.exe
2014-08-10 19:53 - 2014-08-10 19:53 - 01936720 _____ (BitTorrent Inc.) C:\Users\gfg\Downloads\uTorrent.exe
2014-08-10 19:07 - 2014-08-10 18:44 - 00000000 ____D () C:\Users\gfg\Downloads\Eurythmics Greatest Hits 2014 HD Sound Special Edition
2014-08-10 19:07 - 2014-08-08 12:06 - 00000000 ___RD () C:\Users\gfg\Dropbox
2014-08-10 18:49 - 2014-08-10 18:49 - 00000000 ____D () C:\Users\gfg\AppData\Local\4253
2014-08-10 18:46 - 2014-08-10 18:46 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\DownloadManager
2014-08-09 12:19 - 2014-08-09 12:19 - 00000000 ____D () C:\Program Files\VideoLAN
2014-08-09 12:18 - 2014-08-09 12:04 - 24743106 _____ () C:\Users\gfg\Downloads\vlc-2.1.5-win32.exe
2014-08-09 11:54 - 2014-08-09 09:25 - 00000000 ____D () C:\ProgramData\Adobe
2014-08-09 10:25 - 2014-08-08 01:06 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Adobe
2014-08-09 09:26 - 2014-08-09 09:26 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-08-09 09:26 - 2014-08-09 09:26 - 00001989 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-08-09 09:26 - 2014-08-09 09:26 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-08-09 09:26 - 2014-08-09 09:26 - 00000000 ____D () C:\Program Files\Adobe
2014-08-09 05:38 - 2014-08-09 05:37 - 01057672 _____ (Adobe) C:\Users\gfg\Downloads\install_reader11_en_mssa_aaa_aih.exe
2014-08-09 05:29 - 2014-08-09 05:29 - 00001087 _____ () C:\Users\Public\Desktop\Fast Picture Viewer.lnk
2014-08-09 05:29 - 2014-08-09 05:29 - 00000000 ____D () C:\Windows\WICCodecs
2014-08-09 05:29 - 2014-08-09 05:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastPictureViewer
2014-08-09 05:29 - 2014-08-09 05:29 - 00000000 ____D () C:\ProgramData\FastPictureViewer
2014-08-09 05:29 - 2014-08-09 05:29 - 00000000 ____D () C:\Program Files\FastPictureViewer
2014-08-09 04:55 - 2014-08-09 04:55 - 00000376 _____ () C:\Windows\ODBC.INI
2014-08-09 04:54 - 2014-08-09 04:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-08-09 04:54 - 2014-08-09 04:54 - 00000000 ____D () C:\Program Files\Microsoft ActiveSync
2014-08-09 04:54 - 2009-07-14 00:49 - 00000000 ____D () C:\Windows\ShellNew
2014-08-09 04:54 - 2009-07-13 19:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-08-09 04:53 - 2014-08-09 04:53 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-08-09 04:53 - 2014-08-09 04:52 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-08-09 04:53 - 2009-07-13 19:37 - 00000000 ____D () C:\Program Files\Common Files\System
2014-08-09 04:52 - 2014-08-09 04:52 - 00000000 ____D () C:\Windows\PCHEALTH
2014-08-09 04:52 - 2014-08-09 04:52 - 00000000 ____D () C:\Program Files\Microsoft.NET
2014-08-08 16:26 - 2014-08-08 16:26 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\WinRAR
2014-08-08 16:26 - 2014-08-08 16:25 - 01798384 _____ () C:\Users\gfg\Downloads\wrar511b1cro.exe
2014-08-08 14:09 - 2014-08-08 14:07 - 25685128 _____ (Microsoft Corporation) C:\Users\gfg\Downloads\wordview_en-us.exe
2014-08-08 13:36 - 2009-07-14 00:50 - 00000000 ____D () C:\Program Files\Windows Journal
2014-08-08 11:57 - 2014-08-08 11:56 - 00323696 _____ (Dropbox, Inc.) C:\Users\gfg\Downloads\DropboxInstaller (1).exe
2014-08-08 10:27 - 2014-08-08 10:27 - 00000000 ____D () C:\Users\gfg\aTubeCatcher
2014-08-08 10:24 - 2014-08-08 10:24 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Foxreal
2014-08-08 09:57 - 2014-08-08 07:07 - 92422477 _____ () C:\Users\gfg\Downloads\3227682.mp4
2014-08-08 07:37 - 2014-08-08 07:36 - 00000000 ____D () C:\Users\gfg\AppData\Local\Google
2014-08-08 07:36 - 2014-08-08 07:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-08-08 07:36 - 2014-08-08 07:36 - 00000000 ____D () C:\Program Files\Google
2014-08-08 06:18 - 2014-08-06 10:53 - 00001413 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-08 03:17 - 2014-08-08 03:13 - 00003840 _____ () C:\Windows\IE9_main.log
2014-08-08 03:16 - 2014-08-08 03:16 - 12353024 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 09711616 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-08-08 03:16 - 2014-08-08 03:16 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-08-08 03:16 - 2014-08-08 03:16 - 01810432 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-08-08 03:16 - 2014-08-08 03:16 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00434176 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00421376 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-08-08 03:16 - 2014-08-08 03:16 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00353584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-08-08 03:16 - 2014-08-08 03:16 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-08-08 03:16 - 2014-08-08 03:16 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-08-08 03:16 - 2014-08-08 03:16 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-08-08 02:41 - 2014-08-08 02:41 - 00001093 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-08-08 02:41 - 2014-08-08 02:41 - 00001093 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-08-08 02:41 - 2014-08-08 02:41 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Opera Software
2014-08-08 02:41 - 2014-08-08 02:41 - 00000000 ____D () C:\Users\gfg\AppData\Local\Opera Software
2014-08-08 01:06 - 2014-08-08 01:06 - 00000000 ____D () C:\Windows\system32\Macromed
2014-08-08 01:06 - 2014-08-08 01:06 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Macromedia
2014-08-07 18:01 - 2014-08-06 14:07 - 00001091 _____ () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2014-08-07 18:01 - 2014-08-06 14:07 - 00001067 _____ () C:\Users\Public\Desktop\GOM Player.lnk
2014-08-07 16:48 - 2014-08-07 16:48 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\ATI
2014-08-07 16:48 - 2014-08-07 16:48 - 00000000 ____D () C:\Users\gfg\AppData\Local\ATI
2014-08-07 16:48 - 2014-08-07 16:48 - 00000000 ____D () C:\Users\gfg\AppData\Local\AMD
2014-08-07 16:48 - 2014-08-07 16:48 - 00000000 ____D () C:\ProgramData\ATI
2014-08-07 16:44 - 2014-08-07 16:44 - 00000000 _____ () C:\Windows\ativpsrm.bin
2014-08-07 16:40 - 2014-08-07 12:55 - 00000000 ____D () C:\Program Files\Realtek
2014-08-07 16:38 - 2014-08-07 16:38 - 00001541 _____ () C:\Bluetooth.log
2014-08-07 16:38 - 2014-08-07 16:38 - 00000000 ____D () C:\Program Files\Cisco
2014-08-07 16:38 - 2014-08-07 12:59 - 00000086 _____ () C:\setup.log
2014-08-07 16:36 - 2014-08-07 16:36 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-08-07 16:36 - 2014-08-07 16:36 - 00000000 ____D () C:\Program Files\AMD APP
2014-08-07 16:36 - 2014-08-07 12:56 - 00000000 ____D () C:\Program Files\Broadcom
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\zh-TW
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\zh-HK
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\zh-CN
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\tr-TR
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\th-TH
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\sv-SE
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\sl-SI
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\ru-RU
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\ro-RO
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\pt-PT
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\pt-BR
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\pl-PL
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\nl-NL
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\nb-NO
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\lv-LV
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\lt-LT
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\ko-KR
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\ja-JP
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\it-IT
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\hu-HU
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\hr-HR
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\he-IL
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\fr-FR
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\fi-FI
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\et-EE
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\el-GR
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\de-DE
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\bg-BG
2014-08-07 16:36 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\system32\ar-SA
2014-08-07 16:35 - 2014-08-07 16:36 - 04256320 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\BCMWL6.SYS
2014-08-07 16:35 - 2014-08-07 16:36 - 03928064 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvsrv.dll
2014-08-07 16:35 - 2014-08-07 16:36 - 03616768 _____ (Broadcom Corporation) C:\Windows\system32\bcmihvui.dll
2014-08-07 16:35 - 2014-08-07 16:36 - 00091448 _____ (Broadcom Corporation) C:\Windows\system32\bcmwlcoi.dll
2014-08-07 16:35 - 2014-08-07 16:36 - 00006656 _____ () C:\Windows\system32\bcmwlrc.dll
2014-08-07 16:35 - 2014-08-07 16:35 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\InstallShield
2014-08-07 16:35 - 2014-08-07 16:33 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-08-07 16:34 - 2014-08-07 16:34 - 00000000 ____D () C:\ProgramData\AMD
2014-08-07 16:33 - 2014-08-07 16:33 - 00000000 ____D () C:\Program Files\ATI
2014-08-07 16:33 - 2014-08-07 16:32 - 00000000 ____D () C:\Program Files\AMD High-Definition Graphics Driver
2014-08-07 13:22 - 2009-07-13 19:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-08-07 13:04 - 2014-08-07 13:04 - 00002066 _____ () C:\Users\Public\Desktop\Video Search.lnk
2014-08-07 13:04 - 2014-08-07 13:04 - 00001144 _____ () C:\Users\Public\Desktop\aTube Catcher.lnk
2014-08-07 13:03 - 2014-08-07 13:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2014-08-07 13:03 - 2014-08-07 13:03 - 00000000 ____D () C:\Program Files\DsNET Corp
2014-08-07 13:02 - 2014-08-07 13:02 - 00001239 _____ () C:\Users\Public\Desktop\Foxreal YouTube FLV Downloader Pro.lnk
2014-08-07 13:02 - 2014-08-07 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxreal
2014-08-07 13:01 - 2014-08-07 13:01 - 00001275 _____ () C:\Users\Public\Desktop\Ashampoo Burning Studio 6 FREE.lnk
2014-08-07 13:01 - 2014-08-07 13:01 - 00000214 _____ () C:\Users\Public\Desktop\Your Software Deals.url
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\Users\gfg\AppData\Local\ashampoo
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\Program Files\Foxreal
2014-08-07 13:01 - 2014-08-07 13:01 - 00000000 ____D () C:\Program Files\Ashampoo
2014-08-07 12:59 - 2014-08-07 12:59 - 00000000 ____D () C:\ProgramData\Atheros
2014-08-07 12:56 - 2014-08-07 12:56 - 00000000 ____D () C:\Users\gfg\Documents\Bluetooth Exchange Folder
2014-08-07 12:56 - 2014-08-07 12:56 - 00000000 ____D () C:\Users\gfg\AppData\Local\Broadcom
2014-08-07 12:55 - 2014-08-07 12:55 - 00000000 ____D () C:\Users\Malisa\Desktop\sp52420&524211
2014-08-07 12:55 - 2014-08-07 12:55 - 00000000 ____D () C:\Users\Malisa
2014-08-07 12:53 - 2014-08-07 12:53 - 00000923 _____ () C:\Users\gfg\Desktop\MagicDisc.lnk
2014-08-07 12:53 - 2014-08-07 12:53 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
2014-08-07 12:53 - 2014-08-07 12:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
2014-08-07 12:53 - 2014-08-07 12:52 - 00000000 ____D () C:\Program Files\MagicDisc
2014-08-07 12:52 - 2014-08-07 12:52 - 00000000 ____D () C:\Program Files\WIDCOMM
2014-08-07 12:52 - 2009-07-13 21:52 - 00000000 ____D () C:\Windows\system32\restore
2014-08-06 18:35 - 2014-08-13 03:58 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-08-06 18:32 - 2014-08-13 03:58 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-08-06 14:23 - 2014-08-06 14:11 - 00000000 ____D () C:\Users\gfg\AppData\Local\Microsoft Games
2014-08-06 14:07 - 2014-08-06 14:07 - 00000000 ____D () C:\Users\gfg\Documents\GomPlayer
2014-08-06 14:07 - 2014-08-06 14:07 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\GRETECH
2014-08-06 14:07 - 2014-08-06 14:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
2014-08-06 14:07 - 2014-08-06 14:07 - 00000000 ____D () C:\Program Files\GRETECH
2014-08-06 13:39 - 2014-08-06 13:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-08-06 11:45 - 2009-07-13 21:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-08-06 11:45 - 2009-07-13 21:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-08-06 10:53 - 2014-08-06 11:46 - 00000000 ____D () C:\Windows\Panther
2014-08-06 10:53 - 2014-08-06 10:53 - 00000020 ___SH () C:\Users\gfg\ntuser.ini
2014-08-06 10:53 - 2014-08-06 10:53 - 00000000 __SHD () C:\Recovery
2014-08-06 10:53 - 2009-07-13 19:37 - 00000000 ____D () C:\Windows\rescache
2014-08-06 10:50 - 2014-08-06 10:50 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-08-06 10:50 - 2014-08-06 10:50 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-08-06 10:50 - 2009-07-13 21:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-08-06 10:49 - 2014-08-06 10:47 - 00001313 _____ () C:\Windows\TSSysprep.log
2014-08-06 10:47 - 2009-07-14 00:49 - 00000000 ____D () C:\Windows\CSC
2014-08-06 10:47 - 2009-07-13 21:34 - 00001774 _____ () C:\Windows\DtcInstall.log
2014-08-05 09:20 - 2014-08-07 17:00 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe

Some content of TEMP:
====================
C:\Users\gfg\AppData\Local\Temp\appshat_generic.exe
C:\Users\gfg\AppData\Local\Temp\BackupSetup.exe
C:\Users\gfg\AppData\Local\Temp\Bundle.exe
C:\Users\gfg\AppData\Local\Temp\cabex.dll
C:\Users\gfg\AppData\Local\Temp\CloudBackup7839.exe
C:\Users\gfg\AppData\Local\Temp\devcon.exe
C:\Users\gfg\AppData\Local\Temp\DownloadManager.exe
C:\Users\gfg\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpu5ovw2.dll
C:\Users\gfg\AppData\Local\Temp\FLVPlayerSetup.exe
C:\Users\gfg\AppData\Local\Temp\ICReinstall_FreeYouTubeDownloaderIC (1).exe
C:\Users\gfg\AppData\Local\Temp\ins.exe
C:\Users\gfg\AppData\Local\Temp\LiveSupport_setup.exe
C:\Users\gfg\AppData\Local\Temp\MailRuUpdater.exe
C:\Users\gfg\AppData\Local\Temp\NSISPromotion.dll
C:\Users\gfg\AppData\Local\Temp\nsk7CAF.exe
C:\Users\gfg\AppData\Local\Temp\nso9E5A.exe
C:\Users\gfg\AppData\Local\Temp\nsuB6DB.exe
C:\Users\gfg\AppData\Local\Temp\nsz6019.exe
C:\Users\gfg\AppData\Local\Temp\OptimizerPro.exe
C:\Users\gfg\AppData\Local\Temp\PartnerInstaller_smtyc.exe
C:\Users\gfg\AppData\Local\Temp\Quarantine.exe
C:\Users\gfg\AppData\Local\Temp\setup.exe
C:\Users\gfg\AppData\Local\Temp\setup__1546.exe
C:\Users\gfg\AppData\Local\Temp\tmp619C.exe
C:\Users\gfg\AppData\Local\Temp\unelevate.exe
C:\Users\gfg\AppData\Local\Temp\utt1D60.tmp.exe
C:\Users\gfg\AppData\Local\Temp\vcredist_x86.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-08-17 16:22

==================== End Of Log ============================

offline
  • Osvjedodžbeni spretnik munjarstva
  • Pridružio: 04 Jul 2011
  • Poruke: 5424
  • Gde živiš: Beograd

Nedostaje ti još jedan log. Addition.txt

offline
  • Pridružio: 02 Sep 2014
  • Poruke: 29

Znam, probacu da okacim

mycity.rs/must-login.png

offline
  • Osvjedodžbeni spretnik munjarstva
  • Pridružio: 04 Jul 2011
  • Poruke: 5424
  • Gde živiš: Beograd

Korak 1

Arrow Idi u Start - Control Panel - Program and Features i deinstaliraj:
Browser Tab Search by Ask for Internet Explorer
etranslator
GetnowUpdater
Search Protect
Search Protection
Shopper-Pro
SmarterPower
YouTube Accelerator
YTD Video Downloader






Korak 2

Arrow
1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

(Live Soft Action S.R.L.) C:\Users\gfg\AppData\Roaming\GetnowUpdater\bin\GetNowUpdater.exe
(S p i g o t, I n c.) C:\Users\gfg\AppData\Roaming\Search Protection\SearchProtection.exe
() C:\Program Files\SmarterPower\updateSmarterPower.exe
() C:\Program Files\SmarterPower\bin\utilSmarterPower.exe
(Client Connect LTD) C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe
(Client Connect LTD) C:\Program Files\SearchProtect\SearchProtect\bin\cltmng.exe
(Client Connect LTD) C:\Program Files\SearchProtect\UI\bin\cltmngui.exe
() C:\Program Files\SmarterPower\bin\SmarterPower.PurBrowse.exe
() C:\Program Files\SmarterPower\bin\SmarterPower.BrowserAdapter.exe
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [GoobzoYouTubeAccelerator] => "C:\Program Files\YouTube Accelerator\YouTubeAccelerator.exe" /startup
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [SPDriver] => C:\Program Files\ShopperPro\JSDriver\1.37.0.486\jsdrv.exe
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [GetNowUpdater] => C:\Users\gfg\AppData\Roaming\GetnowUpdater\bin\GetNowUpdater.exe [3944064 2014-08-12] (Live Soft Action S.R.L.)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [SearchProtection] => C:\Users\gfg\AppData\Roaming\Search Protection\SearchProtection.EXE [1109352 2014-08-22] (S p i g o t, I n c.)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [eTranslator Update] => C:\Users\gfg\AppData\Roaming\eTranslator\eTranslator.exe [2895800 2014-09-01] ()
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [amigo] => C:\Users\gfg\AppData\Local\Amigo\Application\amigo.exe [1112096 2014-08-15] ()
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\MountPoints2: {9650e1e1-1d91-11e4-96be-806e6f6e6963} - E:\setup.exe
AppInit_DLLs: C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [187352 2014-08-31] (Client Connect LTD)
Startup: C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TorntvDownloader.lnk
ShortcutTarget: TorntvDownloader.lnk -> C:\Program Files\TornTV.com\Torntv Downloader.exe (No File)
HKLM\...\AppCertDlls: [x64] -> c:\program files\browser tab search by ask\safetynut\x64\safetycrt.dll
HKLM\...\AppCertDlls: [x86] -> c:\program files\browser tab search by ask\safetynut\safetycrt.dll
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mail.ru/cnt/10445?gp=custom2
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://ru.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x9815DB8B13B3CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ru-RU
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&am.....AG1&q={searchTerms}
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&ctid=CT3.....426&q={searchTerms}&SSPV=
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&am.....AG1&q={searchTerms}
SearchScopes: HKCU - {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = http://go.mail.ru/search?q={SearchTerms}&fr=ntg&gp=newcustom2
BHO: SmarterPower -> {bd7c9b62-a7d9-4405-be51-7fd633f08791} -> C:\Program Files\SmarterPower\SmarterPowerbho.dll (SmarterPower)
BHO: YTAHelper -> {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} -> C:\ProgramData\YTAHelper\YTAHelper.dll No File
CHR HomePage: Default -> hxxp://www.trovi.com/?gd=&ctid=CT3319598&octid=EB_ORIGINAL_CTID&ISID=M077D5F5A-83E0-4688-BFD8-2801683E44C8&SearchSource=55&CUI=&UM=6&UP=SPC512BE70-11DF-4AC0-96AD-95FDEE2C8426&SSPV=
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3319598&octid=EB_ORIGINAL_CTID&ISID=M077D5F5A-83E0-4688-BFD8-2801683E44C8&SearchSource=55&CUI=&UM=6&UP=SPC512BE70-11DF-4AC0-96AD-95FDEE2C8426&SSPV=", "hxxp://mail.ru/cnt/10445"
CHR NewTab: Default -> "chrome-extension://jdpojfnnakgdonajlfficnddjpccclmc/spent.html", "chrome-extension://lpnamokkgdjkpdhcobfnnggnpmghhddo/spent.html"
CHR DefaultSearchProvider: Default -> Ask.com
CHR DefaultSearchURL: Default -> http://dts.search.ask.com/sr?src=crb&gct=ds&am.....AG1&q={searchTerms}}
CHR Extension: (MapsGalaxy) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdpojfnnakgdonajlfficnddjpccclmc [2014-08-26]
CHR Extension: (OnlineMapFinder) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpnamokkgdjkpdhcobfnnggnpmghhddo [2014-08-26]
CHR Extension: (Extutil) - C:\Users\gfg\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B [2014-08-26]
CHR Extension: (Managera) - C:\Users\gfg\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42 [2014-08-26]
R2 Update SmarterPower; C:\Program Files\SmarterPower\updateSmarterPower.exe [323320 2014-09-01] ()
R2 Util SmarterPower; C:\Program Files\SmarterPower\bin\utilSmarterPower.exe [323320 2014-09-01] ()
S2 YouTubeAcceleratorService; C:\PROGRA~1\YOUTUB~1\YouTubeAcceleratorService.exe -start -scm [X]
R1 {5eeb83d0-96ea-4249-942c-beead6847053}Gw; C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gw.sys [52376 2014-08-23] (StdLib)
S2 SPDRIVER_1.37.0.486; \??\C:\Program Files\ShopperPro\JSDriver\1.37.0.486\jsdrv.sys [X]
2014-08-26 13:10 - 2014-08-26 13:10 - 00000000 ____D () C:\Users\gfg\AppData\Local\SearchProtect
2014-08-26 13:09 - 2014-09-01 08:37 - 00000000 ____D () C:\Program Files\SearchProtect
2014-08-26 08:27 - 2014-08-26 08:29 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (1).exe
2014-08-26 08:26 - 2014-08-26 08:27 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc.exe
2014-08-25 09:09 - 2014-08-26 03:13 - 00000000 ____D () C:\Program Files\SmarterPower
2014-08-25 09:09 - 2014-08-25 09:09 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Search Protection
2014-08-25 09:07 - 2014-08-25 09:08 - 00000000 ____D () C:\ProgramData\YTD Video Downloader
2014-08-25 09:07 - 2014-08-25 09:07 - 00001247 _____ () C:\Users\Public\Desktop\YTD Video Downloader.lnk
2014-08-25 09:07 - 2014-08-25 09:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader
2014-08-14 07:16 - 2014-08-14 07:16 - 00000973 _____ () C:\Users\gfg\Desktop\GetNowUpdater.lnk
2014-08-14 07:16 - 2014-08-14 07:16 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\GetnowUpdater
2014-08-14 07:15 - 2014-08-14 07:15 - 00000000 ____D () C:\Users\gfg\AppData\Local\GetNowUpdater
2014-08-14 07:15 - 2014-08-14 07:15 - 00000000 ____D () C:\Users\gfg\AppData\Local\GetnowUninstall
C:\Program Files\YouTube Accelerator
C:\Program Files\ShopperPro
C:\Users\gfg\AppData\Roaming\eTranslator
c:\program files\browser tab search by ask
C:\ProgramData\YTAHelper
Task: {3A38597B-3194-46B1-88A3-5C6C74875C9A} - System32\Tasks\YTAHelper => C:\Program Files\YTAHelper\YTAHelper.exe <==== ATTENTION
Task: {579C101D-F8CD-4A40-9179-2E3B374924C5} - System32\Tasks\YTAUpdate_logon => C:\PROGRA~1\YOUTUB~1\Updater.exe <==== ATTENTION
Task: {9F7DF12E-B82F-4C13-BF37-50876FE6D527} - System32\Tasks\SPBIW_UpdateTask_Time_333936383238393134392d5755326c785a5a5737414534 => Wscript.exe //B "C:\ProgramData\ShopperPro\spbihe.js" spbiu.exe /invoke /f:check_services /l:0
Task: {D7249D28-FCBF-4770-9BB1-770BC53F175C} - System32\Tasks\YTAUpdate => C:\PROGRA~1\YOUTUB~1\Updater.exe <==== ATTENTION
C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gw.sys
AlternateDataStreams: C:\ProgramData\TEMP:56E2E879
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.




Korak 3

Preuzmi smeenk-ov zoek.zip ili zoek.rar () sa ovog ili ovog linka i sačuvaj ga na Desktop.

Raspakuj arhivu u neki folder (uputstvo), a zatim:

zatvori browser i ostale pokrenute programe;
privremeno deaktiviraj zaštitni softver ( ukoliko je to potrebno ) Uputstvo ;
dvoklikom pokreni zoek na ikonicu programa ;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sledeći tekst:

quickscan;

Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.

offline
  • Nemanja Djukanovic
  • Pridružio: 18 Dec 2012
  • Poruke: 1755
  • Gde živiš: Niksic - Crna Gora

Napisano: 03 Sep 2014 5:10

Nece nes da mu se uloguje pa evo sa mog cu vam dati fixog
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:31-08-2014 02
Ran by gfg at 2014-09-02 19:13:40 Run:1
Running from C:\Users\gfg\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
(Live Soft Action S.R.L.) C:\Users\gfg\AppData\Roaming\GetnowUpdater\bin\GetNowUpdater.exe
(S p i g o t, I n c.) C:\Users\gfg\AppData\Roaming\Search Protection\SearchProtection.exe
() C:\Program Files\SmarterPower\updateSmarterPower.exe
() C:\Program Files\SmarterPower\bin\utilSmarterPower.exe
(Client Connect LTD) C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe
(Client Connect LTD) C:\Program Files\SearchProtect\SearchProtect\bin\cltmng.exe
(Client Connect LTD) C:\Program Files\SearchProtect\UI\bin\cltmngui.exe
() C:\Program Files\SmarterPower\bin\SmarterPower.PurBrowse.exe
() C:\Program Files\SmarterPower\bin\SmarterPower.BrowserAdapter.exe
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [GoobzoYouTubeAccelerator] => "C:\Program Files\YouTube Accelerator\YouTubeAccelerator.exe" /startup
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [SPDriver] => C:\Program Files\ShopperPro\JSDriver\1.37.0.486\jsdrv.exe
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [GetNowUpdater] => C:\Users\gfg\AppData\Roaming\GetnowUpdater\bin\GetNowUpdater.exe [3944064 2014-08-12] (Live Soft Action S.R.L.)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [SearchProtection] => C:\Users\gfg\AppData\Roaming\Search Protection\SearchProtection.EXE [1109352 2014-08-22] (S p i g o t, I n c.)
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [eTranslator Update] => C:\Users\gfg\AppData\Roaming\eTranslator\eTranslator.exe [2895800 2014-09-01] ()
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\Run: [amigo] => C:\Users\gfg\AppData\Local\Amigo\Application\amigo.exe [1112096 2014-08-15] ()
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\...\MountPoints2: {9650e1e1-1d91-11e4-96be-806e6f6e6963} - E:\setup.exe
AppInit_DLLs: C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => C:\Program Files\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [187352 2014-08-31] (Client Connect LTD)
Startup: C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TorntvDownloader.lnk
ShortcutTarget: TorntvDownloader.lnk -> C:\Program Files\TornTV.com\Torntv Downloader.exe (No File)
HKLM\...\AppCertDlls: [x64] -> c:\program files\browser tab search by ask\safetynut\x64\safetycrt.dll
HKLM\...\AppCertDlls: [x86] -> c:\program files\browser tab search by ask\safetynut\safetycrt.dll
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mail.ru/cnt/10445?gp=custom2
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://ru.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x9815DB8B13B3CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ru-RU
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&am.....AG1&q={searchTerms}
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&ctid=CT3.....426&q={searchTerms}&SSPV=
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&am.....AG1&q={searchTerms}
SearchScopes: HKCU - {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = http://go.mail.ru/search?q={SearchTerms}&fr=ntg&gp=newcustom2
BHO: SmarterPower -> {bd7c9b62-a7d9-4405-be51-7fd633f08791} -> C:\Program Files\SmarterPower\SmarterPowerbho.dll (SmarterPower)
BHO: YTAHelper -> {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} -> C:\ProgramData\YTAHelper\YTAHelper.dll No File
CHR HomePage: Default -> hxxp://www.trovi.com/?gd=&ctid=CT3319598&octid=EB_ORIGINAL_CTID&ISID=M077D5F5A-83E0-4688-BFD8-2801683E44C8&SearchSource=55&CUI=&UM=6&UP=SPC512BE70-11DF-4AC0-96AD-95FDEE2C8426&SSPV=
CHR StartupUrls: Default -> "hxxp://www.trovi.com/?gd=&ctid=CT3319598&octid=EB_ORIGINAL_CTID&ISID=M077D5F5A-83E0-4688-BFD8-2801683E44C8&SearchSource=55&CUI=&UM=6&UP=SPC512BE70-11DF-4AC0-96AD-95FDEE2C8426&SSPV=", "hxxp://mail.ru/cnt/10445"
CHR NewTab: Default -> "chrome-extension://jdpojfnnakgdonajlfficnddjpccclmc/spent.html", "chrome-extension://lpnamokkgdjkpdhcobfnnggnpmghhddo/spent.html"
CHR DefaultSearchProvider: Default -> Ask.com
CHR DefaultSearchURL: Default -> http://dts.search.ask.com/sr?src=crb&gct=ds&am.....AG1&q={searchTerms}}
CHR Extension: (MapsGalaxy) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdpojfnnakgdonajlfficnddjpccclmc [2014-08-26]
CHR Extension: (OnlineMapFinder) - C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpnamokkgdjkpdhcobfnnggnpmghhddo [2014-08-26]
CHR Extension: (Extutil) - C:\Users\gfg\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B [2014-08-26]
CHR Extension: (Managera) - C:\Users\gfg\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42 [2014-08-26]
R2 Update SmarterPower; C:\Program Files\SmarterPower\updateSmarterPower.exe [323320 2014-09-01] ()
R2 Util SmarterPower; C:\Program Files\SmarterPower\bin\utilSmarterPower.exe [323320 2014-09-01] ()
S2 YouTubeAcceleratorService; C:\PROGRA~1\YOUTUB~1\YouTubeAcceleratorService.exe -start -scm [X]
R1 {5eeb83d0-96ea-4249-942c-beead6847053}Gw; C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gw.sys [52376 2014-08-23] (StdLib)
S2 SPDRIVER_1.37.0.486; \??\C:\Program Files\ShopperPro\JSDriver\1.37.0.486\jsdrv.sys [X]
2014-08-26 13:10 - 2014-08-26 13:10 - 00000000 ____D () C:\Users\gfg\AppData\Local\SearchProtect
2014-08-26 13:09 - 2014-09-01 08:37 - 00000000 ____D () C:\Program Files\SearchProtect
2014-08-26 08:27 - 2014-08-26 08:29 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (1).exe
2014-08-26 08:26 - 2014-08-26 08:27 - 01922200 _____ (Bandoo Media Inc) C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc.exe
2014-08-25 09:09 - 2014-08-26 03:13 - 00000000 ____D () C:\Program Files\SmarterPower
2014-08-25 09:09 - 2014-08-25 09:09 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\Search Protection
2014-08-25 09:07 - 2014-08-25 09:08 - 00000000 ____D () C:\ProgramData\YTD Video Downloader
2014-08-25 09:07 - 2014-08-25 09:07 - 00001247 _____ () C:\Users\Public\Desktop\YTD Video Downloader.lnk
2014-08-25 09:07 - 2014-08-25 09:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader
2014-08-14 07:16 - 2014-08-14 07:16 - 00000973 _____ () C:\Users\gfg\Desktop\GetNowUpdater.lnk
2014-08-14 07:16 - 2014-08-14 07:16 - 00000000 ____D () C:\Users\gfg\AppData\Roaming\GetnowUpdater
2014-08-14 07:15 - 2014-08-14 07:15 - 00000000 ____D () C:\Users\gfg\AppData\Local\GetNowUpdater
2014-08-14 07:15 - 2014-08-14 07:15 - 00000000 ____D () C:\Users\gfg\AppData\Local\GetnowUninstall
C:\Program Files\YouTube Accelerator
C:\Program Files\ShopperPro
C:\Users\gfg\AppData\Roaming\eTranslator
c:\program files\browser tab search by ask
C:\ProgramData\YTAHelper
Task: {3A38597B-3194-46B1-88A3-5C6C74875C9A} - System32\Tasks\YTAHelper => C:\Program Files\YTAHelper\YTAHelper.exe <==== ATTENTION
Task: {579C101D-F8CD-4A40-9179-2E3B374924C5} - System32\Tasks\YTAUpdate_logon => C:\PROGRA~1\YOUTUB~1\Updater.exe <==== ATTENTION
Task: {9F7DF12E-B82F-4C13-BF37-50876FE6D527} - System32\Tasks\SPBIW_UpdateTask_Time_333936383238393134392d5755326c785a5a5737414534 => Wscript.exe //B "C:\ProgramData\ShopperPro\spbihe.js" spbiu.exe /invoke /f:check_services /l:0
Task: {D7249D28-FCBF-4770-9BB1-770BC53F175C} - System32\Tasks\YTAUpdate => C:\PROGRA~1\YOUTUB~1\Updater.exe <==== ATTENTION
C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gw.sys
AlternateDataStreams: C:\ProgramData\TEMP:56E2E879
EmptyTemp:
*****************

C:\Users\gfg\AppData\Roaming\GetnowUpdater\bin\GetNowUpdater.exe => No running process found
C:\Users\gfg\AppData\Roaming\Search Protection\SearchProtection.exe => No running process found
C:\Program Files\SmarterPower\updateSmarterPower.exe => No running process found
C:\Program Files\SmarterPower\bin\utilSmarterPower.exe => No running process found
C:\Program Files\SearchProtect\Main\bin\CltMngSvc.exe => No running process found
C:\Program Files\SearchProtect\SearchProtect\bin\cltmng.exe => No running process found
C:\Program Files\SearchProtect\UI\bin\cltmngui.exe => No running process found
C:\Program Files\SmarterPower\bin\SmarterPower.PurBrowse.exe => No running process found
C:\Program Files\SmarterPower\bin\SmarterPower.BrowserAdapter.exe => No running process found
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\Software\Microsoft\Windows\CurrentVersion\Run\\GoobzoYouTubeAccelerator => value deleted successfully.
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\Software\Microsoft\Windows\CurrentVersion\Run\\SPDriver => value deleted successfully.
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\Software\Microsoft\Windows\CurrentVersion\Run\\GetNowUpdater => Value not found.
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\Software\Microsoft\Windows\CurrentVersion\Run\\SearchProtection => Value not found.
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\Software\Microsoft\Windows\CurrentVersion\Run\\eTranslator Update => Value not found.
HKU\S-1-5-21-2215629605-2491008863-535191839-1000\Software\Microsoft\Windows\CurrentVersion\Run\\amigo => value deleted successfully.
"HKU\S-1-5-21-2215629605-2491008863-535191839-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9650e1e1-1d91-11e4-96be-806e6f6e6963}" => Key deleted successfully.
"HKCR\CLSID\{9650e1e1-1d91-11e4-96be-806e6f6e6963}" => Key not found.
"C:\PROGRA~1\SearchProtect\SearchProtect\bin\SPVC32Loader.dll" => Value Data not found.
C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TorntvDownloader.lnk => Moved successfully.
C:\Program Files\TornTV.com\Torntv Downloader.exe not found.
HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls\\x64 => value deleted successfully.
HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls\\x86 => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache AcceptLangs => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key deleted successfully.
"HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}" => Key deleted successfully.
"HKCR\CLSID\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key deleted successfully.
"HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}" => Key deleted successfully.
"HKCR\CLSID\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}" => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bd7c9b62-a7d9-4405-be51-7fd633f08791}" => Key not found.
"HKCR\CLSID\{bd7c9b62-a7d9-4405-be51-7fd633f08791}" => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}" => Key deleted successfully.
"HKCR\CLSID\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}" => Key deleted successfully.
Chrome HomePage deleted successfully.
Chrome StartupUrls deleted successfully.
Chrome NewTab deleted successfully.
CHR DefaultSearchProvider: Default -> Ask.com ==> The Chrome "Settings" can be used to fix the entry.
Chrome DefaultSearchURL deleted successfully.
C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdpojfnnakgdonajlfficnddjpccclmc => Moved successfully.
C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpnamokkgdjkpdhcobfnnggnpmghhddo => Moved successfully.
C:\Users\gfg\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B directory not found.
C:\Users\gfg\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42 directory not found.
Update SmarterPower => Service deleted successfully.
Util SmarterPower => Service deleted successfully.
YouTubeAcceleratorService => Service deleted successfully.
{5eeb83d0-96ea-4249-942c-beead6847053}Gw => Service stopped successfully.
{5eeb83d0-96ea-4249-942c-beead6847053}Gw => Service deleted successfully.
SPDRIVER_1.37.0.486 => Service deleted successfully.
"C:\Users\gfg\AppData\Local\SearchProtect" => File/Directory not found.
"C:\Program Files\SearchProtect" => File/Directory not found.
C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (1).exe => Moved successfully.
C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc.exe => Moved successfully.
C:\Program Files\SmarterPower => Moved successfully.
"C:\Users\gfg\AppData\Roaming\Search Protection" => File/Directory not found.
"C:\ProgramData\YTD Video Downloader" => File/Directory not found.
"C:\Users\Public\Desktop\YTD Video Downloader.lnk" => File/Directory not found.
"C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader" => File/Directory not found.
"C:\Users\gfg\Desktop\GetNowUpdater.lnk" => File/Directory not found.
"C:\Users\gfg\AppData\Roaming\GetnowUpdater" => File/Directory not found.
C:\Users\gfg\AppData\Local\GetNowUpdater => Moved successfully.
C:\Users\gfg\AppData\Local\GetnowUninstall => Moved successfully.
"C:\Program Files\YouTube Accelerator" => File/Directory not found.
"C:\Program Files\ShopperPro" => File/Directory not found.
C:\Users\gfg\AppData\Roaming\eTranslator => Moved successfully.
"c:\program files\browser tab search by ask" => File/Directory not found.
"C:\ProgramData\YTAHelper" => File/Directory not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3A38597B-3194-46B1-88A3-5C6C74875C9A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3A38597B-3194-46B1-88A3-5C6C74875C9A}" => Key deleted successfully.
C:\Windows\System32\Tasks\YTAHelper => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YTAHelper" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{579C101D-F8CD-4A40-9179-2E3B374924C5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{579C101D-F8CD-4A40-9179-2E3B374924C5}" => Key deleted successfully.
C:\Windows\System32\Tasks\YTAUpdate_logon => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YTAUpdate_logon" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9F7DF12E-B82F-4C13-BF37-50876FE6D527}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9F7DF12E-B82F-4C13-BF37-50876FE6D527}" => Key deleted successfully.
C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_333936383238393134392d5755326c785a5a5737414534 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SPBIW_UpdateTask_Time_333936383238393134392d5755326c785a5a5737414534" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D7249D28-FCBF-4770-9BB1-770BC53F175C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7249D28-FCBF-4770-9BB1-770BC53F175C}" => Key deleted successfully.
C:\Windows\System32\Tasks\YTAUpdate => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YTAUpdate" => Key deleted successfully.
C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gw.sys => Moved successfully.
C:\ProgramData\TEMP => ":56E2E879" ADS removed successfully.
EmptyTemp: => Removed 983.9 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

Dopuna: 03 Sep 2014 5:25

Zoek.exe v5.0.0.0 Updated 01-September-2014
Tool run by gfg on ??? 02.09.2014 at 20:10:41,84.
Microsoft Windows 7 Ultimate 6.1.7600 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\gfg\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

2.9.2014 20:12:24 Zoek.exe System Restore Point Created Succesfully.

==== Files Recently Created / Modified ======================

====== C:\Windows ====
2014-08-14 21:58:35 90F7DDBF5ADE8B41C24C4328824C7E5C 248554455 ----a-w- C:\Windows\MEMORY.DMP
2014-08-09 11:55:53 125283932B4C5E772B89EFB8F93351A6 376 ----a-w- C:\Windows\ODBC.INI
2014-08-08 08:10:29 2626FC9755BE22F805D3CFA0CE3EE727 2614272 ----a-w- C:\Windows\explorer.exe
2014-08-07 23:44:55 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\ativpsrm.bin
====== C:\Users\gfg\AppData\Local\Temp ====
====== Java Cache =====
====== C:\Windows\system32 =====
2014-08-23 20:03:13 0DC5AF80D059DEC792B665ED598C6567 536576 ----a-w- C:\Windows\System32\sqlite3.dll
====== C:\Windows\system32\drivers =====
2014-08-08 20:52:48 E4C436D914768CE965D5E659BA7EEBD8 43008 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2014-08-08 20:52:48 C31AE588E403042632DC796CF09E30B0 75776 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2014-08-08 20:52:48 BDCD7156EC37448F08633FD899823620 258560 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2014-08-08 20:52:48 3D0074A19D16A9944BE32EE1FFBBB554 284160 ----a-w- C:\Windows\System32\drivers\usbport.sys
2014-08-08 20:52:47 EB2D819A639015253C871CDA09D91D58 20480 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2014-08-08 20:52:47 675C1D745F68343F372897F761F999E3 5888 ----a-w- C:\Windows\System32\drivers\usbd.sys
2014-08-08 20:52:47 22480BF4E5A09192E5E30BA4DDE79FA4 24064 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2014-08-08 20:52:42 4520B63899E867F354EE012D34E11536 143744 ----a-w- C:\Windows\System32\drivers\nvstor.sys
2014-08-08 20:52:41 F1B0BED906F97E16F6D0C3629D2F21C6 117120 ----a-w- C:\Windows\System32\drivers\nvraid.sys
2014-08-08 20:52:40 869E67D66BE326A5A9159FBA8746FA70 22400 ----a-w- C:\Windows\System32\drivers\amdxata.sys
2014-08-08 20:52:40 71F1A494FEDF4B33C02C4A6A28D6D9E9 332160 ----a-w- C:\Windows\System32\drivers\iaStorV.sys
2014-08-08 20:52:40 32C8E15E6F1EF98949A96451D42CEC70 146304 ----a-w- C:\Windows\System32\drivers\storport.sys
2014-08-08 20:52:40 1C4287739A93594E57E2A9E6A3ED7353 75776 ----a-w- C:\Windows\System32\drivers\USBSTOR.SYS
2014-08-08 20:52:40 19CE906B4CDC11FC4FEF5745F33A63B6 80256 ----a-w- C:\Windows\System32\drivers\amdsata.sys
2014-08-08 20:52:32 80E6384BEEC03B8BD45EDEA29802D657 60416 ----a-w- C:\Windows\System32\drivers\BTHUSB.SYS
2014-08-08 20:52:32 04CEDA17A195924070B01174CB1F9AF8 393216 ----a-w- C:\Windows\System32\drivers\bthport.sys
2014-08-08 13:52:07 FF207D67700AA18242AAF985D3E7D8F4 114176 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2014-08-08 13:52:07 C4A027B8C0BD3FC0699F41FA5E9E0C87 311296 ----a-w- C:\Windows\System32\drivers\srv.sys
2014-08-08 13:52:07 414BB592CAD8A79649D01F9D94318FB3 309760 ----a-w- C:\Windows\System32\drivers\srv2.sys
2014-08-08 10:23:39 933222B19FF3E7EA5F65517EA1F7D57E 3 ----a-w- C:\Windows\System32\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-08-08 10:23:36 A840213F1ACDCC175B4D1D5AAEAC0D7A 526952 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys
2014-08-08 10:23:36 48704647CD2E9DAA2EB81BDE6D029EDB 47720 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys
2014-08-08 10:21:47 867C301E8B790040AE9CF6486E8041DF 155136 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys
2014-08-08 10:21:47 06E6F32C8D0A3F66D956F57B43A2E070 66560 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys
2014-08-08 10:21:45 933222B19FF3E7EA5F65517EA1F7D57E 3 ----a-w- C:\Windows\System32\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-08-08 10:17:57 500A9814FD9446A8126858A5A7F7D273 19312 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-08-08 10:03:36 9E79E2354301783D5E0D48411C2A7466 190976 ----a-w- C:\Windows\System32\drivers\ks.sys
2014-08-08 08:17:21 A8F59428E9F361C7AC42A94AC1560BC9 1210728 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2014-08-08 08:17:14 0DB7A48388D54D154EBEC120461A0FCD 338944 ----a-w- C:\Windows\System32\drivers\afd.sys
2014-08-08 08:17:01 A9645D3F7B14F6C8F4BFAC4FF81B4CBB 15872 ----a-w- C:\Windows\System32\drivers\usb8023.sys
2014-08-08 08:12:41 4732E596BB1C50D9F9188C5074EE7782 195816 ----a-w- C:\Windows\System32\drivers\fvevol.sys
2014-08-08 08:08:14 C5B8D47A4688DE9D335204EA757C2240 177152 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2014-08-08 08:07:45 DB5E008B3744DD60C8498CBBF2A1CFA6 369336 ----a-w- C:\Windows\System32\drivers\cng.sys
2014-08-08 08:07:44 52FC17C8589F11747D01D3CF592673D0 67440 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2014-08-08 08:07:44 3E5474B03568CFAB834DA3C38E8C9EFA 134000 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2014-08-08 08:07:38 F965C3AB2B2AE5C378F4562486E35051 222720 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2014-08-08 08:07:37 CA7570E42522E24324A12161DB14EC02 123392 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2014-08-08 08:07:37 25C38264A3C72594DD21D355D70D7A5D 96256 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2014-08-08 08:06:57 83D1ECEA8FAAE75604C0FA49AC7AD996 78336 ----a-w- C:\Windows\System32\drivers\dfsc.sys
2014-08-08 08:06:02 BBCEAEFF1FD72A026F827CBB2F4AA8AD 1287528 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2014-08-08 08:06:02 4EAF381B295658DEA460AFC9F95DD299 187240 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2014-08-08 08:02:18 66D3415C159741ADE7038A277EFFF99F 56688 ----a-w- C:\Windows\System32\drivers\partmgr.sys
2014-08-08 08:01:09 9A5C671B7FBAE4865149BB11F59B91B2 69632 ----a-w- C:\Windows\System32\drivers\bowser.sys
2014-08-08 08:01:00 C78EA24CE267EAA6BF67CAAEB11C0520 26496 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2014-08-08 07:58:47 1679A4669326CB1A67CC95658D273234 728448 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2014-08-08 07:58:46 CF519D46E5B8BDE8D7BA981BA9A174CD 219008 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2014-08-07 23:54:22 7156308896D34EA75A582F9A09E50C17 24064 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2014-08-07 23:36:18 08369F1FDD7C0D4287373D253D64D75E 37504 ----a-w- C:\Windows\System32\drivers\usbfilter.sys
2014-08-07 23:36:12 6D01B87DCE3FE241385D0D4473702BF5 4256320 ----a-w- C:\Windows\System32\drivers\BCMWL6.SYS
2014-08-07 23:34:54 FF258424F0B2EF25EB98F04EE386E6E3 37944 ----a-w- C:\Windows\System32\drivers\amdiox86.sys
2014-08-07 20:16:02 9A56B7B15ACE85B6E711445D19773A20 148520 ----a-w- C:\Windows\System32\drivers\btwavdt.sys
2014-08-07 20:16:02 56E6441AD2BE1BA9EF6E3757A4A71C82 18728 ----a-w- C:\Windows\System32\drivers\btwrchid.sys
2014-08-07 20:16:02 53F0EDC6FAF9CE6C5E53EE7EF8D411C0 33832 ----a-w- C:\Windows\System32\drivers\btwl2cap.sys
2014-08-07 20:16:02 3061375777DDEEA15F971FF2AD76616C 140328 ----a-w- C:\Windows\System32\drivers\btwaudio.sys
2014-08-07 19:56:21 3B782CB1E97E5735DE008A5B4DB3D541 525352 ----a-w- C:\Windows\System32\drivers\btwampfl.sys
2014-08-07 19:55:44 FB3CA58C5447432B8E10C0DF3D4D2A1B 348776 ----a-w- C:\Windows\System32\drivers\Rt86win7.sys
2014-08-07 19:53:59 753C3B4A5A003D53166DEC6C1DB10851 39566 ----a-w- C:\Windows\System32\drivers\BCM20702A1_001.002.014.0136.0168.hex
2014-08-07 19:53:57 4C0B3D7ED5B6057FD14895355E6F3F26 76328 ----a-w- C:\Windows\System32\drivers\btwdpan.sys
2014-08-07 19:53:56 03AD11EAAE33D10D7EE47E56CE645809 142632 ----a-w- C:\Windows\System32\drivers\bcbtums.sys
2014-08-07 19:52:46 8FD868E32459ECE2A1BB0169F513D31E 116736 ----a-w- C:\Windows\System32\drivers\mcdbus.sys
2014-08-06 20:39:04 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
====== C:\Windows\Tasks ======
2014-08-25 16:11:33 5F582D01A2BC11F6F52D27303AFB65D6 4006 ----a-w- C:\Windows\system32\Tasks\LaunchSignup
2014-08-08 14:36:23 8F346857655D35911D211204A0095AF6 880 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-08 14:36:23 32D0522123DFC35988877D608E09D0CF 3876 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2014-08-08 14:36:23 0FE6A4F0BDE891E43AEE0E5C8A13DF4B 876 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-08 14:36:23 004798E3C60FD7BE7B973E62F65725DA 3624 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2014-08-08 09:41:48 048FC723C9D757623001F4133BD4418C 3814 ----a-w- C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1407490904
2014-08-08 08:06:10 1733E4DCD2CED8C6B3C0FAD8D7892FC9 830 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-08 08:06:10 0229B4C1161BF49A980310D20C0F1E11 3768 ----a-w- C:\Windows\system32\Tasks\Adobe Flash Player Updater
====== C:\Windows\Temp ======
======= C:\Program Files =====
2014-09-03 02:03:50 -------- d-----w- C:\Program Files\TeamViewer
2014-08-26 20:03:58 -------- d-----w- C:\Program Files\BitLord 2
2014-08-25 16:11:17 -------- d-----w- C:\Program Files\MyPC Backup
2014-08-25 16:07:10 -------- d-----w- C:\Program Files\GreenTree Applications
2014-08-22 23:43:19 -------- d-----w- C:\Program Files\Common Files\Skype
2014-08-22 23:05:16 -------- d-----r- C:\Program Files\Skype
2014-08-17 20:05:02 -------- d-----w- C:\Program Files\Common Files\AVSMedia
2014-08-17 20:04:33 -------- d-----w- C:\Program Files\AVS4YOU
2014-08-17 20:02:20 -------- d-----w- C:\Program Files\AnvSoft
2014-08-11 02:45:21 -------- d-----w- C:\Program Files\WebSpades
2014-08-09 19:19:22 -------- d-----w- C:\Program Files\VideoLAN
2014-08-09 16:26:20 -------- d-----w- C:\Program Files\Common Files\Adobe
2014-08-09 16:26:20 -------- d-----w- C:\Program Files\Adobe
2014-08-09 12:29:40 -------- d-----w- C:\Program Files\FastPictureViewer
2014-08-09 11:54:02 -------- d-----w- C:\Program Files\Microsoft ActiveSync
2014-08-09 11:53:21 -------- d-----w- C:\Program Files\Common Files\DESIGNER
2014-08-09 11:52:59 -------- d-----w- C:\Program Files\Microsoft.NET
2014-08-09 11:52:59 -------- d-----w- C:\Program Files\Microsoft Office
2014-08-08 23:26:20 -------- d-----w- C:\Program Files\WinRAR
2014-08-08 14:36:07 -------- d-----w- C:\Program Files\Google
2014-08-08 09:41:44 -------- d-----w- C:\Program Files\Opera
2014-08-07 23:38:43 -------- d-----w- C:\Program Files\Cisco
2014-08-07 23:36:44 -------- d-----w- C:\Program Files\AMD APP
2014-08-07 23:33:45 -------- d-----w- C:\Program Files\ATI
2014-08-07 23:32:37 -------- d-----w- C:\Program Files\AMD High-Definition Graphics Driver
2014-08-07 20:03:48 -------- d-----w- C:\Program Files\DsNET Corp
2014-08-07 20:01:56 -------- d-----w- C:\Program Files\Foxreal
2014-08-07 20:01:19 -------- d-----w- C:\Program Files\Ashampoo
2014-08-07 19:56:32 -------- d-----w- C:\Program Files\Broadcom
2014-08-07 19:55:40 -------- d-----w- C:\Program Files\Realtek
2014-08-07 19:55:39 -------- d--h--w- C:\Program Files\InstallShield Installation Information
2014-08-07 19:52:59 -------- d-----w- C:\Program Files\WIDCOMM
2014-08-07 19:52:45 -------- d-----w- C:\Program Files\MagicDisc
2014-08-06 21:07:51 -------- d-----w- C:\Program Files\GRETECH
======= C: =====
2014-08-11 21:17:28 D41D8CD98F00B204E9800998ECF8427E 0 --sha-r- C:\MSDOS.SYS
2014-08-11 21:17:28 D41D8CD98F00B204E9800998ECF8427E 0 --sha-r- C:\IO.SYS
====== C:\Users\gfg\AppData\Roaming ======
2014-09-03 02:04:02 -------- d-----w- C:\Users\gfg\AppData\Roaming\TeamViewer
2014-09-01 19:21:04 -------- d-----w- C:\Users\gfg\AppData\Local\MailRu
2014-09-01 19:20:36 -------- d-----w- C:\Users\gfg\AppData\Local\Amigo
2014-09-01 19:10:16 -------- d-----w- C:\Users\gfg\AppData\Local\Mail.ru
2014-08-26 20:14:44 -------- d-----w- C:\Users\gfg\AppData\Roaming\Python-Eggs
2014-08-26 20:14:16 -------- d-----w- C:\Users\gfg\AppData\Roaming\BitLord
2014-08-26 20:07:44 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
2014-08-26 10:14:12 20003C903A7CEF367C7F540B3E440CF5 88264 ----a-w- C:\Windows\system32\config\systemprofile\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-25 16:11:17 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
2014-08-22 23:06:04 -------- d-----w- C:\Users\gfg\AppData\Local\Skype
2014-08-22 23:05:52 -------- d-----w- C:\Users\gfg\AppData\Roaming\Skype
2014-08-17 20:02:48 -------- d-----w- C:\Users\gfg\AppData\Roaming\AnvSoft
2014-08-14 16:29:53 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-08-14 14:15:17 -------- d-----w- C:\Users\gfg\AppData\Roaming\MSI FM2-A55M-E33 user guide
2014-08-12 15:01:36 -------- d-----w- C:\Users\gfg\AppData\Local\Adobe
2014-08-12 14:48:26 -------- d-----w- C:\Users\gfg\AppData\Local\Diagnostics
2014-08-12 14:23:08 -------- d-----w- C:\Users\gfg\AppData\Roaming\Ashampoo
2014-08-11 03:10:01 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
2014-08-11 03:04:55 -------- d-----w- C:\Users\gfg\AppData\Local\Installer
2014-08-11 03:04:39 -------- d-----w- C:\Users\gfg\AppData\Local\CrashRpt
2014-08-11 03:04:32 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player
2014-08-11 01:49:21 -------- d-----w- C:\Users\gfg\AppData\Local\4253
2014-08-11 01:46:43 -------- d-----w- C:\Users\gfg\AppData\Roaming\DownloadManager
2014-08-09 20:11:44 -------- d-----w- C:\Users\gfg\AppData\Locallow\Temp
2014-08-09 19:19:48 -------- d-----w- C:\Users\gfg\AppData\Roaming\vlc
2014-08-09 17:25:18 -------- d-----w- C:\Users\gfg\AppData\Locallow\Adobe
2014-08-08 23:26:38 -------- d-----w- C:\Users\gfg\AppData\Roaming\WinRAR
2014-08-08 22:28:24 -------- d-----w- C:\Users\gfg\AppData\Roaming\uTorrent
2014-08-08 17:24:26 -------- d-----w- C:\Users\gfg\AppData\Roaming\Foxreal
2014-08-08 14:41:47 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Local\Google
2014-08-08 14:36:21 -------- d-----w- C:\Users\gfg\AppData\Local\Google
2014-08-08 09:47:32 -------- d-s---w- C:\Windows\serviceprofiles\networkservice\AppData\Locallow\Microsoft
2014-08-08 09:41:55 -------- d-----w- C:\Users\gfg\AppData\Local\Opera Software
2014-08-08 09:41:54 -------- d-----w- C:\Users\gfg\AppData\Roaming\Opera Software
2014-08-08 08:06:15 -------- d-----w- C:\Users\gfg\AppData\Roaming\Adobe
2014-08-08 07:58:47 -------- d-s---w- C:\Windows\serviceprofiles\Localservice\AppData\Locallow\Microsoft
2014-08-08 01:31:22 A9F223B0D6A6FF6B78432CCEE94784B0 845760 ----a-w- C:\Windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat
2014-08-07 23:48:34 -------- d-----w- C:\Users\gfg\AppData\Local\AMD
2014-08-07 23:48:21 -------- d-----w- C:\Users\gfg\AppData\Roaming\ATI
2014-08-07 23:48:21 -------- d-----w- C:\Users\gfg\AppData\Local\ATI
2014-08-07 23:35:53 -------- d-----w- C:\Users\gfg\AppData\Roaming\InstallShield
2014-08-07 20:01:26 -------- d-----w- C:\Users\gfg\AppData\Local\ashampoo
2014-08-07 20:00:52 -------- d-----w- C:\Users\gfg\AppData\Local\Programs
2014-08-07 19:56:38 -------- d-----w- C:\Users\gfg\AppData\Local\Broadcom
2014-08-07 19:53:33 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
2014-08-06 21:11:25 -------- d-----w- C:\Users\gfg\AppData\Local\Microsoft Games
2014-08-06 21:08:17 -------- d-----w- C:\Users\gfg\AppData\Locallow\Microsoft
2014-08-06 21:07:59 -------- d-----w- C:\Users\gfg\AppData\Roaming\GRETECH
2014-08-06 20:39:12 282A80561EDB1F79BC467EC4B2CA215E 88264 ----a-w- C:\Users\gfg\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-06 17:53:55 -------- d-----r- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-08-06 17:53:55 -------- d-----r- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-08-06 17:53:45 -------- d-----w- C:\Users\gfg\AppData\Roaming\Identities
2014-08-06 17:53:21 -------- d-----w- C:\Users\gfg\AppData\Local\VirtualStore
2014-08-06 17:53:18 -------- d-s---w- C:\Users\gfg\AppData\Roaming\Microsoft
2014-08-06 17:53:18 -------- d---a-w- C:\Users\gfg\AppData\Local\Temp
2014-08-06 17:53:18 -------- d-----w- C:\Users\gfg\AppData\Roaming\Media Center Programs
2014-08-06 17:53:18 -------- d-----w- C:\Users\gfg\AppData\Local\Microsoft
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
====== C:\Users\gfg ======
2014-09-03 01:49:16 4ACFD76727F8173BF79F5E5F84BD81FF 6306360 ----a-w- C:\Users\gfg\Downloads\TeamViewer_Setup_sr.exe
2014-09-02 16:18:51 9C3E0D7CD0D7F88A6F7B473CBBF0A664 1096704 ----a-w- C:\Users\gfg\Desktop\FRST.exe
2014-09-01 19:03:18 DEB98D88DC1A5DD7DF99DBD37D1E976C 531456 ----a-w- C:\Users\gfg\Downloads\tipa kopy let s be cops 2014 camrip skachat igry cherez torrent - skachat igry na psp.exe
2014-09-01 18:55:49 3C61A80C5785EF0918161D774C9ADA6A 531456 ----a-w- C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp (1).exe
2014-09-01 18:55:18 3C61A80C5785EF0918161D774C9ADA6A 531456 ----a-w- C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp.exe
2014-08-26 22:11:01 875998794E2E8ACAF437DAEA50AAB19A 1922200 ----a-w- C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (2).exe
2014-08-26 21:38:24 B97FAD7462144C56C2637520457B71FA 1036872 ----a-w- C:\Users\gfg\Downloads\wdexpress_full.exe
2014-08-26 21:34:00 ED6078826969735EFD163D8DAEA231F0 577728 ----a-w- C:\Users\gfg\Downloads\Microsoft Visual Studio Express.exe
2014-08-26 21:26:37 33675367E71C1F866BC90506586936D6 10927016 ----a-w- C:\Users\gfg\Downloads\sqlcomplete.exe
2014-08-26 19:59:35 D81A566B9A79C1B6736B2F67110B96A0 645296 ----a-w- C:\Users\gfg\Downloads\motionVFX - mSPY - BitLordInstaller.exe
2014-08-26 19:50:55 FDC30A4C37B9522AEAC6276109178E26 111978832 ----a-w- C:\Users\gfg\Downloads\iTunesSetup.exe
2014-08-26 15:29:24 DEC62791755C5D5978ACEF09455CF60F 428840 ----a-w- C:\Users\gfg\Downloads\free_time_tracking_software_3_2_1_exe.exe
2014-08-26 14:58:55 C0DEE630F318AEEFD8F36875F67D9CFE 98304 ----a-w- C:\Users\gfg\Downloads\HPUSBDisk (1).exe
2014-08-26 14:58:25 C0DEE630F318AEEFD8F36875F67D9CFE 98304 ----a-w- C:\Users\gfg\Downloads\HPUSBDisk.exe
2014-08-23 22:32:41 788FCDDD88240A85039F7F561093B118 448512 ----a-w- C:\Users\gfg\Downloads\TFC.exe
2014-08-23 19:59:33 9DED4724D695CFB01960426DA011ABAE 1364531 ----a-w- C:\Users\gfg\Downloads\AdwCleaner.exe
2014-08-22 23:05:17 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-08-22 23:05:02 -------- d-----w- C:\ProgramData\Skype
2014-08-17 20:02:38 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft
2014-08-14 16:29:53 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-08-14 14:18:01 -------- d-----w- C:\Users\gfg\.android
2014-08-12 11:26:38 -------- d-----r- C:\Windows\system32\config\systemprofile\Searches
2014-08-11 03:05:49 -------- d---a-w- C:\ProgramData\TEMP
2014-08-09 19:19:30 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-08-09 16:25:39 -------- d-----w- C:\ProgramData\Adobe
2014-08-09 12:29:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastPictureViewer
2014-08-09 12:29:40 -------- d-----w- C:\ProgramData\FastPictureViewer
2014-08-09 11:54:13 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-08-08 20:47:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK
2014-08-08 20:45:00 -------- d-----w- C:\ProgramData\TP-LINK
2014-08-08 19:06:33 -------- d-----r- C:\Users\gfg\Dropbox
2014-08-08 17:27:41 -------- d-----w- C:\Users\gfg\aTubeCatcher
2014-08-08 14:36:47 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-08-07 23:48:21 -------- d-----w- C:\ProgramData\ATI
2014-08-07 23:34:59 -------- d-----w- C:\ProgramData\AMD
2014-08-07 20:03:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2014-08-07 20:02:02 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxreal
2014-08-07 20:01:24 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-08-07 20:01:24 -------- d-----w- C:\ProgramData\Ashampoo
2014-08-07 19:59:42 -------- d-----w- C:\ProgramData\Atheros
2014-08-07 19:55:05 -------- d-----w- C:\Users\Malisa\Desktop
2014-08-07 19:53:33 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
2014-08-06 21:07:56 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
2014-08-06 17:53:55 -------- d-----r- C:\Users\gfg\Searches
2014-08-06 17:53:42 -------- d-----r- C:\Users\gfg\Contacts
2014-08-06 17:53:18 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\gfg\ntuser.ini
2014-08-06 17:53:18 -------- d--h--w- C:\Users\gfg\AppData
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Videos
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Saved Games
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Pictures
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Music
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Links
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Favorites
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Downloads
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Documents
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Desktop

====== C: exe-files ==
2014-09-03 02:03:51 DC86FD3F45237F1D27B6D719B9E72E33 465488 ----a-w- C:\Program Files\TeamViewer\Version9\uninstall.exe
2014-09-03 02:03:51 ACEE9158976F3B9C32198CCD62D3513B 264512 ----a-w- C:\Program Files\TeamViewer\Version9\tv_x64.exe
2014-09-03 02:03:51 74E25070B7D39D01D4C9C8A5760C73BE 229696 ----a-w- C:\Program Files\TeamViewer\Version9\tv_w32.exe
2014-09-03 02:03:51 5CEF407E235885DB5421DF79C843F2DF 5052224 ----a-w- C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
2014-09-03 02:03:51 3CA262114956EC95780A25850FF0E413 4623680 ----a-w- C:\Program Files\TeamViewer\Version9\TeamViewer_Desktop.exe
2014-09-03 02:03:50 208270C9AD3E82F6ABAC870F950E5F0D 13246272 ----a-w- C:\Program Files\TeamViewer\Version9\TeamViewer.exe
2014-09-03 01:49:16 4ACFD76727F8173BF79F5E5F84BD81FF 6306360 ----a-w- C:\Users\gfg\Downloads\TeamViewer_Setup_sr.exe
2014-09-02 16:18:51 9C3E0D7CD0D7F88A6F7B473CBBF0A664 1096704 ----a-w- C:\Users\gfg\Desktop\FRST.exe
2014-09-02 13:08:41 79DFA08D63BD3091046F9085323B8A51 73336 ----a-w- C:\Program Files\Opera\24.0.1558.53\wow_helper.exe
2014-09-02 13:08:34 6F4498CFE5F00917CBA9300E1C613D0B 1372280 ----a-w- C:\Program Files\Opera\24.0.1558.53\opera_crashreporter.exe
2014-09-02 13:08:33 3FC9B9010CCB96B2B76BBEE0699DEA1B 3179128 ----a-w- C:\Program Files\Opera\24.0.1558.53\opera_autoupdate.exe
2014-09-02 13:08:30 881F98BFE33C2B9C67D75D0B87AA3D36 48077432 ----a-w- C:\Program Files\Opera\24.0.1558.53\opera.exe
2014-09-02 13:08:28 54216248BBF1A106BD1247E8647CB2A9 3537528 ----a-w- C:\Program Files\Opera\24.0.1558.53\installer.exe
2014-09-01 19:21:05 39DC2B7A667276603629849BE89DADEE 6204136 ----a-w- C:\Users\gfg\AppData\Local\Mail.ru\MailRuUpdater.exe
2014-09-01 19:21:04 8B143813E18791D4FC685169DA8012CA 6171168 ----a-w- C:\Users\gfg\AppData\Local\MailRu\MailRuUpdater.exe
2014-09-01 19:20:56 A0B24FDC95584A6B0964894F31FF2AD1 142368 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\ok.exe
2014-09-01 19:20:56 12DDD93A34E68EC4A13FD6E78DCB1CD5 167968 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\vk.exe
2014-09-01 19:20:55 D8A6F1077A47B8F946C13047988EF877 85024 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\chrome_frame_helper.exe
2014-09-01 19:20:55 D83E8015F017009522E9EE6D42E0ECEC 2151456 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\nacl64.exe
2014-09-01 19:20:55 8D631B971E7B2D7C753BEB1D7DCEEE3C 1248800 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\Installer\setup.exe
2014-09-01 19:20:55 820E8D9DA521AA9250ABC0613E068FF3 1112096 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\chrome.exe
2014-09-01 19:20:55 621A295D01904EF2BDBD462653A94DB6 1112096 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\amigo.exe
2014-09-01 19:20:55 20C79CF025B4AE82F8073D77A75B9605 1692192 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\delegate_execute.exe
2014-09-01 19:20:55 03BD0C86A70B5772A7CC78060F25B2B3 180256 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\chrome_launcher.exe
2014-09-01 19:15:12 AEA24FF6ADA75E0A4515B7D725932DBE 2779368 ----a-w- C:\Users\gfg\AppData\Local\Mail.ru\Sputnik\ptls\2GhwHjjsr39T.exe
2014-09-01 19:10:16 AEA24FF6ADA75E0A4515B7D725932DBE 2779368 ----a-w- C:\Users\gfg\AppData\Local\Mail.ru\Sputnik\ptls\dnHTwlAHIuN7.exe
2014-09-01 19:03:18 DEB98D88DC1A5DD7DF99DBD37D1E976C 531456 ----a-w- C:\Users\gfg\Downloads\tipa kopy let s be cops 2014 camrip skachat igry cherez torrent - skachat igry na psp.exe
2014-09-01 18:55:49 3C61A80C5785EF0918161D774C9ADA6A 531456 ----a-w- C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp (1).exe
2014-09-01 18:55:18 3C61A80C5785EF0918161D774C9ADA6A 531456 ----a-w- C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp.exe
2014-08-31 11:48:01 764A10F4CC8E03BBEC7F2BD0CAF158F0 766032 ----a-w- C:\Program Files\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\37.0.2062.102\37.0.2062.102_37.0.2062.94_chrome_updater.exe
=== C: other files ==
2014-08-30 03:19:14 14F8D278988BC02B9B4BF202B5BB1115 1570304 ----a-w- C:\Windows\System32\DriverStore\FileRepository\netathur.inf_x86_neutral_181c8f8519198cf0\athur.sys

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-2215629605-2491008863-535191839-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="C:\Users\gfg\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED"
"Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun"
"MailRuUpdater"="C:\Users\gfg\AppData\Local\Mail.Ru\MailRuUpdater.exe"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun"
"Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="C:\Users\gfg\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED"
"Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun"
"MailRuUpdater"="C:\Users\gfg\AppData\Local\Mail.Ru\MailRuUpdater.exe"

==== Startup Folders ======================

2014-08-07 19:53:33 959 ----a-w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk
2014-08-25 16:11:18 1055 ----a-w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
2014-08-07 19:53:12 836 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task]
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08.08.2014 07:36]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08.08.2014 07:36]

==== Other Scheduled Tasks ======================

"C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\LaunchSignup" [C:\Program Files\MyPC Backup\Signup Wizard.exe]
"C:\Windows\system32\tasks\Opera scheduled Autoupdate 1407490904" [C:\Program Files\Opera\launcher.exe]

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[14.07.2014 18:22]

Google Voice Search Hotword (Beta) - gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
Skype Click to Call - gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Google Wallet - gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

==== C:\zoek_backup content ======================

C:\zoek_backup (files=0 folders=0 0 bytes)

==== EOF on ??? 02.09.2014 at 20:19:02,75 ======================

Dopuna: 03 Sep 2014 5:29

evo iz C .... Ovaj gore mu se otvorio u notepad
Zoek.exe v5.0.0.0 Updated 01-September-2014
Tool run by gfg on ??? 02.09.2014 at 20:10:41,84.
Microsoft Windows 7 Ultimate 6.1.7600 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\gfg\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

2.9.2014 20:12:24 Zoek.exe System Restore Point Created Succesfully.

==== Files Recently Created / Modified ======================

====== C:\Windows ====
2014-08-14 21:58:35 90F7DDBF5ADE8B41C24C4328824C7E5C 248554455 ----a-w- C:\Windows\MEMORY.DMP
2014-08-09 11:55:53 125283932B4C5E772B89EFB8F93351A6 376 ----a-w- C:\Windows\ODBC.INI
2014-08-08 08:10:29 2626FC9755BE22F805D3CFA0CE3EE727 2614272 ----a-w- C:\Windows\explorer.exe
2014-08-07 23:44:55 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Windows\ativpsrm.bin
====== C:\Users\gfg\AppData\Local\Temp ====
====== Java Cache =====
====== C:\Windows\system32 =====
2014-08-23 20:03:13 0DC5AF80D059DEC792B665ED598C6567 536576 ----a-w- C:\Windows\System32\sqlite3.dll
====== C:\Windows\system32\drivers =====
2014-08-08 20:52:48 E4C436D914768CE965D5E659BA7EEBD8 43008 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2014-08-08 20:52:48 C31AE588E403042632DC796CF09E30B0 75776 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2014-08-08 20:52:48 BDCD7156EC37448F08633FD899823620 258560 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2014-08-08 20:52:48 3D0074A19D16A9944BE32EE1FFBBB554 284160 ----a-w- C:\Windows\System32\drivers\usbport.sys
2014-08-08 20:52:47 EB2D819A639015253C871CDA09D91D58 20480 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2014-08-08 20:52:47 675C1D745F68343F372897F761F999E3 5888 ----a-w- C:\Windows\System32\drivers\usbd.sys
2014-08-08 20:52:47 22480BF4E5A09192E5E30BA4DDE79FA4 24064 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2014-08-08 20:52:42 4520B63899E867F354EE012D34E11536 143744 ----a-w- C:\Windows\System32\drivers\nvstor.sys
2014-08-08 20:52:41 F1B0BED906F97E16F6D0C3629D2F21C6 117120 ----a-w- C:\Windows\System32\drivers\nvraid.sys
2014-08-08 20:52:40 869E67D66BE326A5A9159FBA8746FA70 22400 ----a-w- C:\Windows\System32\drivers\amdxata.sys
2014-08-08 20:52:40 71F1A494FEDF4B33C02C4A6A28D6D9E9 332160 ----a-w- C:\Windows\System32\drivers\iaStorV.sys
2014-08-08 20:52:40 32C8E15E6F1EF98949A96451D42CEC70 146304 ----a-w- C:\Windows\System32\drivers\storport.sys
2014-08-08 20:52:40 1C4287739A93594E57E2A9E6A3ED7353 75776 ----a-w- C:\Windows\System32\drivers\USBSTOR.SYS
2014-08-08 20:52:40 19CE906B4CDC11FC4FEF5745F33A63B6 80256 ----a-w- C:\Windows\System32\drivers\amdsata.sys
2014-08-08 20:52:32 80E6384BEEC03B8BD45EDEA29802D657 60416 ----a-w- C:\Windows\System32\drivers\BTHUSB.SYS
2014-08-08 20:52:32 04CEDA17A195924070B01174CB1F9AF8 393216 ----a-w- C:\Windows\System32\drivers\bthport.sys
2014-08-08 13:52:07 FF207D67700AA18242AAF985D3E7D8F4 114176 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2014-08-08 13:52:07 C4A027B8C0BD3FC0699F41FA5E9E0C87 311296 ----a-w- C:\Windows\System32\drivers\srv.sys
2014-08-08 13:52:07 414BB592CAD8A79649D01F9D94318FB3 309760 ----a-w- C:\Windows\System32\drivers\srv2.sys
2014-08-08 10:23:39 933222B19FF3E7EA5F65517EA1F7D57E 3 ----a-w- C:\Windows\System32\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-08-08 10:23:36 A840213F1ACDCC175B4D1D5AAEAC0D7A 526952 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys
2014-08-08 10:23:36 48704647CD2E9DAA2EB81BDE6D029EDB 47720 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys
2014-08-08 10:21:47 867C301E8B790040AE9CF6486E8041DF 155136 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys
2014-08-08 10:21:47 06E6F32C8D0A3F66D956F57B43A2E070 66560 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys
2014-08-08 10:21:45 933222B19FF3E7EA5F65517EA1F7D57E 3 ----a-w- C:\Windows\System32\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-08-08 10:17:57 500A9814FD9446A8126858A5A7F7D273 19312 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-08-08 10:03:36 9E79E2354301783D5E0D48411C2A7466 190976 ----a-w- C:\Windows\System32\drivers\ks.sys
2014-08-08 08:17:21 A8F59428E9F361C7AC42A94AC1560BC9 1210728 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2014-08-08 08:17:14 0DB7A48388D54D154EBEC120461A0FCD 338944 ----a-w- C:\Windows\System32\drivers\afd.sys
2014-08-08 08:17:01 A9645D3F7B14F6C8F4BFAC4FF81B4CBB 15872 ----a-w- C:\Windows\System32\drivers\usb8023.sys
2014-08-08 08:12:41 4732E596BB1C50D9F9188C5074EE7782 195816 ----a-w- C:\Windows\System32\drivers\fvevol.sys
2014-08-08 08:08:14 C5B8D47A4688DE9D335204EA757C2240 177152 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2014-08-08 08:07:45 DB5E008B3744DD60C8498CBBF2A1CFA6 369336 ----a-w- C:\Windows\System32\drivers\cng.sys
2014-08-08 08:07:44 52FC17C8589F11747D01D3CF592673D0 67440 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2014-08-08 08:07:44 3E5474B03568CFAB834DA3C38E8C9EFA 134000 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2014-08-08 08:07:38 F965C3AB2B2AE5C378F4562486E35051 222720 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2014-08-08 08:07:37 CA7570E42522E24324A12161DB14EC02 123392 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2014-08-08 08:07:37 25C38264A3C72594DD21D355D70D7A5D 96256 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2014-08-08 08:06:57 83D1ECEA8FAAE75604C0FA49AC7AD996 78336 ----a-w- C:\Windows\System32\drivers\dfsc.sys
2014-08-08 08:06:02 BBCEAEFF1FD72A026F827CBB2F4AA8AD 1287528 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2014-08-08 08:06:02 4EAF381B295658DEA460AFC9F95DD299 187240 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2014-08-08 08:02:18 66D3415C159741ADE7038A277EFFF99F 56688 ----a-w- C:\Windows\System32\drivers\partmgr.sys
2014-08-08 08:01:09 9A5C671B7FBAE4865149BB11F59B91B2 69632 ----a-w- C:\Windows\System32\drivers\bowser.sys
2014-08-08 08:01:00 C78EA24CE267EAA6BF67CAAEB11C0520 26496 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2014-08-08 07:58:47 1679A4669326CB1A67CC95658D273234 728448 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2014-08-08 07:58:46 CF519D46E5B8BDE8D7BA981BA9A174CD 219008 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2014-08-07 23:54:22 7156308896D34EA75A582F9A09E50C17 24064 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2014-08-07 23:36:18 08369F1FDD7C0D4287373D253D64D75E 37504 ----a-w- C:\Windows\System32\drivers\usbfilter.sys
2014-08-07 23:36:12 6D01B87DCE3FE241385D0D4473702BF5 4256320 ----a-w- C:\Windows\System32\drivers\BCMWL6.SYS
2014-08-07 23:34:54 FF258424F0B2EF25EB98F04EE386E6E3 37944 ----a-w- C:\Windows\System32\drivers\amdiox86.sys
2014-08-07 20:16:02 9A56B7B15ACE85B6E711445D19773A20 148520 ----a-w- C:\Windows\System32\drivers\btwavdt.sys
2014-08-07 20:16:02 56E6441AD2BE1BA9EF6E3757A4A71C82 18728 ----a-w- C:\Windows\System32\drivers\btwrchid.sys
2014-08-07 20:16:02 53F0EDC6FAF9CE6C5E53EE7EF8D411C0 33832 ----a-w- C:\Windows\System32\drivers\btwl2cap.sys
2014-08-07 20:16:02 3061375777DDEEA15F971FF2AD76616C 140328 ----a-w- C:\Windows\System32\drivers\btwaudio.sys
2014-08-07 19:56:21 3B782CB1E97E5735DE008A5B4DB3D541 525352 ----a-w- C:\Windows\System32\drivers\btwampfl.sys
2014-08-07 19:55:44 FB3CA58C5447432B8E10C0DF3D4D2A1B 348776 ----a-w- C:\Windows\System32\drivers\Rt86win7.sys
2014-08-07 19:53:59 753C3B4A5A003D53166DEC6C1DB10851 39566 ----a-w- C:\Windows\System32\drivers\BCM20702A1_001.002.014.0136.0168.hex
2014-08-07 19:53:57 4C0B3D7ED5B6057FD14895355E6F3F26 76328 ----a-w- C:\Windows\System32\drivers\btwdpan.sys
2014-08-07 19:53:56 03AD11EAAE33D10D7EE47E56CE645809 142632 ----a-w- C:\Windows\System32\drivers\bcbtums.sys
2014-08-07 19:52:46 8FD868E32459ECE2A1BB0169F513D31E 116736 ----a-w- C:\Windows\System32\drivers\mcdbus.sys
2014-08-06 20:39:04 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
====== C:\Windows\Tasks ======
2014-08-25 16:11:33 5F582D01A2BC11F6F52D27303AFB65D6 4006 ----a-w- C:\Windows\system32\Tasks\LaunchSignup
2014-08-08 14:36:23 8F346857655D35911D211204A0095AF6 880 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-08 14:36:23 32D0522123DFC35988877D608E09D0CF 3876 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2014-08-08 14:36:23 0FE6A4F0BDE891E43AEE0E5C8A13DF4B 876 ----a-w- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-08 14:36:23 004798E3C60FD7BE7B973E62F65725DA 3624 ----a-w- C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2014-08-08 09:41:48 048FC723C9D757623001F4133BD4418C 3814 ----a-w- C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1407490904
2014-08-08 08:06:10 1733E4DCD2CED8C6B3C0FAD8D7892FC9 830 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-08 08:06:10 0229B4C1161BF49A980310D20C0F1E11 3768 ----a-w- C:\Windows\system32\Tasks\Adobe Flash Player Updater
====== C:\Windows\Temp ======
======= C:\Program Files =====
2014-09-03 02:03:50 -------- d-----w- C:\Program Files\TeamViewer
2014-08-26 20:03:58 -------- d-----w- C:\Program Files\BitLord 2
2014-08-25 16:11:17 -------- d-----w- C:\Program Files\MyPC Backup
2014-08-25 16:07:10 -------- d-----w- C:\Program Files\GreenTree Applications
2014-08-22 23:43:19 -------- d-----w- C:\Program Files\Common Files\Skype
2014-08-22 23:05:16 -------- d-----r- C:\Program Files\Skype
2014-08-17 20:05:02 -------- d-----w- C:\Program Files\Common Files\AVSMedia
2014-08-17 20:04:33 -------- d-----w- C:\Program Files\AVS4YOU
2014-08-17 20:02:20 -------- d-----w- C:\Program Files\AnvSoft
2014-08-11 02:45:21 -------- d-----w- C:\Program Files\WebSpades
2014-08-09 19:19:22 -------- d-----w- C:\Program Files\VideoLAN
2014-08-09 16:26:20 -------- d-----w- C:\Program Files\Common Files\Adobe
2014-08-09 16:26:20 -------- d-----w- C:\Program Files\Adobe
2014-08-09 12:29:40 -------- d-----w- C:\Program Files\FastPictureViewer
2014-08-09 11:54:02 -------- d-----w- C:\Program Files\Microsoft ActiveSync
2014-08-09 11:53:21 -------- d-----w- C:\Program Files\Common Files\DESIGNER
2014-08-09 11:52:59 -------- d-----w- C:\Program Files\Microsoft.NET
2014-08-09 11:52:59 -------- d-----w- C:\Program Files\Microsoft Office
2014-08-08 23:26:20 -------- d-----w- C:\Program Files\WinRAR
2014-08-08 14:36:07 -------- d-----w- C:\Program Files\Google
2014-08-08 09:41:44 -------- d-----w- C:\Program Files\Opera
2014-08-07 23:38:43 -------- d-----w- C:\Program Files\Cisco
2014-08-07 23:36:44 -------- d-----w- C:\Program Files\AMD APP
2014-08-07 23:33:45 -------- d-----w- C:\Program Files\ATI
2014-08-07 23:32:37 -------- d-----w- C:\Program Files\AMD High-Definition Graphics Driver
2014-08-07 20:03:48 -------- d-----w- C:\Program Files\DsNET Corp
2014-08-07 20:01:56 -------- d-----w- C:\Program Files\Foxreal
2014-08-07 20:01:19 -------- d-----w- C:\Program Files\Ashampoo
2014-08-07 19:56:32 -------- d-----w- C:\Program Files\Broadcom
2014-08-07 19:55:40 -------- d-----w- C:\Program Files\Realtek
2014-08-07 19:55:39 -------- d--h--w- C:\Program Files\InstallShield Installation Information
2014-08-07 19:52:59 -------- d-----w- C:\Program Files\WIDCOMM
2014-08-07 19:52:45 -------- d-----w- C:\Program Files\MagicDisc
2014-08-06 21:07:51 -------- d-----w- C:\Program Files\GRETECH
======= C: =====
2014-08-11 21:17:28 D41D8CD98F00B204E9800998ECF8427E 0 --sha-r- C:\MSDOS.SYS
2014-08-11 21:17:28 D41D8CD98F00B204E9800998ECF8427E 0 --sha-r- C:\IO.SYS
====== C:\Users\gfg\AppData\Roaming ======
2014-09-03 02:04:02 -------- d-----w- C:\Users\gfg\AppData\Roaming\TeamViewer
2014-09-01 19:21:04 -------- d-----w- C:\Users\gfg\AppData\Local\MailRu
2014-09-01 19:20:36 -------- d-----w- C:\Users\gfg\AppData\Local\Amigo
2014-09-01 19:10:16 -------- d-----w- C:\Users\gfg\AppData\Local\Mail.ru
2014-08-26 20:14:44 -------- d-----w- C:\Users\gfg\AppData\Roaming\Python-Eggs
2014-08-26 20:14:16 -------- d-----w- C:\Users\gfg\AppData\Roaming\BitLord
2014-08-26 20:07:44 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
2014-08-26 10:14:12 20003C903A7CEF367C7F540B3E440CF5 88264 ----a-w- C:\Windows\system32\config\systemprofile\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-25 16:11:17 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
2014-08-22 23:06:04 -------- d-----w- C:\Users\gfg\AppData\Local\Skype
2014-08-22 23:05:52 -------- d-----w- C:\Users\gfg\AppData\Roaming\Skype
2014-08-17 20:02:48 -------- d-----w- C:\Users\gfg\AppData\Roaming\AnvSoft
2014-08-14 16:29:53 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-08-14 14:15:17 -------- d-----w- C:\Users\gfg\AppData\Roaming\MSI FM2-A55M-E33 user guide
2014-08-12 15:01:36 -------- d-----w- C:\Users\gfg\AppData\Local\Adobe
2014-08-12 14:48:26 -------- d-----w- C:\Users\gfg\AppData\Local\Diagnostics
2014-08-12 14:23:08 -------- d-----w- C:\Users\gfg\AppData\Roaming\Ashampoo
2014-08-11 03:10:01 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat
2014-08-11 03:04:55 -------- d-----w- C:\Users\gfg\AppData\Local\Installer
2014-08-11 03:04:39 -------- d-----w- C:\Users\gfg\AppData\Local\CrashRpt
2014-08-11 03:04:32 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player
2014-08-11 01:49:21 -------- d-----w- C:\Users\gfg\AppData\Local\4253
2014-08-11 01:46:43 -------- d-----w- C:\Users\gfg\AppData\Roaming\DownloadManager
2014-08-09 20:11:44 -------- d-----w- C:\Users\gfg\AppData\Locallow\Temp
2014-08-09 19:19:48 -------- d-----w- C:\Users\gfg\AppData\Roaming\vlc
2014-08-09 17:25:18 -------- d-----w- C:\Users\gfg\AppData\Locallow\Adobe
2014-08-08 23:26:38 -------- d-----w- C:\Users\gfg\AppData\Roaming\WinRAR
2014-08-08 22:28:24 -------- d-----w- C:\Users\gfg\AppData\Roaming\uTorrent
2014-08-08 17:24:26 -------- d-----w- C:\Users\gfg\AppData\Roaming\Foxreal
2014-08-08 14:41:47 -------- d-----w- C:\Windows\system32\config\systemprofile\AppData\Local\Google
2014-08-08 14:36:21 -------- d-----w- C:\Users\gfg\AppData\Local\Google
2014-08-08 09:47:32 -------- d-s---w- C:\Windows\serviceprofiles\networkservice\AppData\Locallow\Microsoft
2014-08-08 09:41:55 -------- d-----w- C:\Users\gfg\AppData\Local\Opera Software
2014-08-08 09:41:54 -------- d-----w- C:\Users\gfg\AppData\Roaming\Opera Software
2014-08-08 08:06:15 -------- d-----w- C:\Users\gfg\AppData\Roaming\Adobe
2014-08-08 07:58:47 -------- d-s---w- C:\Windows\serviceprofiles\Localservice\AppData\Locallow\Microsoft
2014-08-08 01:31:22 A9F223B0D6A6FF6B78432CCEE94784B0 845760 ----a-w- C:\Windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat
2014-08-07 23:48:34 -------- d-----w- C:\Users\gfg\AppData\Local\AMD
2014-08-07 23:48:21 -------- d-----w- C:\Users\gfg\AppData\Roaming\ATI
2014-08-07 23:48:21 -------- d-----w- C:\Users\gfg\AppData\Local\ATI
2014-08-07 23:35:53 -------- d-----w- C:\Users\gfg\AppData\Roaming\InstallShield
2014-08-07 20:01:26 -------- d-----w- C:\Users\gfg\AppData\Local\ashampoo
2014-08-07 20:00:52 -------- d-----w- C:\Users\gfg\AppData\Local\Programs
2014-08-07 19:56:38 -------- d-----w- C:\Users\gfg\AppData\Local\Broadcom
2014-08-07 19:53:33 -------- d-----w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
2014-08-06 21:11:25 -------- d-----w- C:\Users\gfg\AppData\Local\Microsoft Games
2014-08-06 21:08:17 -------- d-----w- C:\Users\gfg\AppData\Locallow\Microsoft
2014-08-06 21:07:59 -------- d-----w- C:\Users\gfg\AppData\Roaming\GRETECH
2014-08-06 20:39:12 282A80561EDB1F79BC467EC4B2CA215E 88264 ----a-w- C:\Users\gfg\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-06 17:53:55 -------- d-----r- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-08-06 17:53:55 -------- d-----r- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-08-06 17:53:45 -------- d-----w- C:\Users\gfg\AppData\Roaming\Identities
2014-08-06 17:53:21 -------- d-----w- C:\Users\gfg\AppData\Local\VirtualStore
2014-08-06 17:53:18 -------- d-s---w- C:\Users\gfg\AppData\Roaming\Microsoft
2014-08-06 17:53:18 -------- d---a-w- C:\Users\gfg\AppData\Local\Temp
2014-08-06 17:53:18 -------- d-----w- C:\Users\gfg\AppData\Roaming\Media Center Programs
2014-08-06 17:53:18 -------- d-----w- C:\Users\gfg\AppData\Local\Microsoft
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
====== C:\Users\gfg ======
2014-09-03 01:49:16 4ACFD76727F8173BF79F5E5F84BD81FF 6306360 ----a-w- C:\Users\gfg\Downloads\TeamViewer_Setup_sr.exe
2014-09-02 16:18:51 9C3E0D7CD0D7F88A6F7B473CBBF0A664 1096704 ----a-w- C:\Users\gfg\Desktop\FRST.exe
2014-09-01 19:03:18 DEB98D88DC1A5DD7DF99DBD37D1E976C 531456 ----a-w- C:\Users\gfg\Downloads\tipa kopy let s be cops 2014 camrip skachat igry cherez torrent - skachat igry na psp.exe
2014-09-01 18:55:49 3C61A80C5785EF0918161D774C9ADA6A 531456 ----a-w- C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp (1).exe
2014-09-01 18:55:18 3C61A80C5785EF0918161D774C9ADA6A 531456 ----a-w- C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp.exe
2014-08-26 22:11:01 875998794E2E8ACAF437DAEA50AAB19A 1922200 ----a-w- C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (2).exe
2014-08-26 21:38:24 B97FAD7462144C56C2637520457B71FA 1036872 ----a-w- C:\Users\gfg\Downloads\wdexpress_full.exe
2014-08-26 21:34:00 ED6078826969735EFD163D8DAEA231F0 577728 ----a-w- C:\Users\gfg\Downloads\Microsoft Visual Studio Express.exe
2014-08-26 21:26:37 33675367E71C1F866BC90506586936D6 10927016 ----a-w- C:\Users\gfg\Downloads\sqlcomplete.exe
2014-08-26 19:59:35 D81A566B9A79C1B6736B2F67110B96A0 645296 ----a-w- C:\Users\gfg\Downloads\motionVFX - mSPY - BitLordInstaller.exe
2014-08-26 19:50:55 FDC30A4C37B9522AEAC6276109178E26 111978832 ----a-w- C:\Users\gfg\Downloads\iTunesSetup.exe
2014-08-26 15:29:24 DEC62791755C5D5978ACEF09455CF60F 428840 ----a-w- C:\Users\gfg\Downloads\free_time_tracking_software_3_2_1_exe.exe
2014-08-26 14:58:55 C0DEE630F318AEEFD8F36875F67D9CFE 98304 ----a-w- C:\Users\gfg\Downloads\HPUSBDisk (1).exe
2014-08-26 14:58:25 C0DEE630F318AEEFD8F36875F67D9CFE 98304 ----a-w- C:\Users\gfg\Downloads\HPUSBDisk.exe
2014-08-23 22:32:41 788FCDDD88240A85039F7F561093B118 448512 ----a-w- C:\Users\gfg\Downloads\TFC.exe
2014-08-23 19:59:33 9DED4724D695CFB01960426DA011ABAE 1364531 ----a-w- C:\Users\gfg\Downloads\AdwCleaner.exe
2014-08-22 23:05:17 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-08-22 23:05:02 -------- d-----w- C:\ProgramData\Skype
2014-08-17 20:02:38 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft
2014-08-14 16:29:53 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-08-14 14:18:01 -------- d-----w- C:\Users\gfg\.android
2014-08-12 11:26:38 -------- d-----r- C:\Windows\system32\config\systemprofile\Searches
2014-08-11 03:05:49 -------- d---a-w- C:\ProgramData\TEMP
2014-08-09 19:19:30 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-08-09 16:25:39 -------- d-----w- C:\ProgramData\Adobe
2014-08-09 12:29:45 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastPictureViewer
2014-08-09 12:29:40 -------- d-----w- C:\ProgramData\FastPictureViewer
2014-08-09 11:54:13 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-08-08 20:47:11 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK
2014-08-08 20:45:00 -------- d-----w- C:\ProgramData\TP-LINK
2014-08-08 19:06:33 -------- d-----r- C:\Users\gfg\Dropbox
2014-08-08 17:27:41 -------- d-----w- C:\Users\gfg\aTubeCatcher
2014-08-08 14:36:47 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-08-07 23:48:21 -------- d-----w- C:\ProgramData\ATI
2014-08-07 23:34:59 -------- d-----w- C:\ProgramData\AMD
2014-08-07 20:03:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2014-08-07 20:02:02 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxreal
2014-08-07 20:01:24 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-08-07 20:01:24 -------- d-----w- C:\ProgramData\Ashampoo
2014-08-07 19:59:42 -------- d-----w- C:\ProgramData\Atheros
2014-08-07 19:55:05 -------- d-----w- C:\Users\Malisa\Desktop
2014-08-07 19:53:33 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
2014-08-06 21:07:56 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
2014-08-06 17:53:55 -------- d-----r- C:\Users\gfg\Searches
2014-08-06 17:53:42 -------- d-----r- C:\Users\gfg\Contacts
2014-08-06 17:53:18 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Users\gfg\ntuser.ini
2014-08-06 17:53:18 -------- d--h--w- C:\Users\gfg\AppData
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Videos
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Saved Games
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Pictures
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Music
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Links
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Favorites
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Downloads
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Documents
2014-08-06 17:53:18 -------- d-----r- C:\Users\gfg\Desktop

====== C: exe-files ==
2014-09-03 02:03:51 DC86FD3F45237F1D27B6D719B9E72E33 465488 ----a-w- C:\Program Files\TeamViewer\Version9\uninstall.exe
2014-09-03 02:03:51 ACEE9158976F3B9C32198CCD62D3513B 264512 ----a-w- C:\Program Files\TeamViewer\Version9\tv_x64.exe
2014-09-03 02:03:51 74E25070B7D39D01D4C9C8A5760C73BE 229696 ----a-w- C:\Program Files\TeamViewer\Version9\tv_w32.exe
2014-09-03 02:03:51 5CEF407E235885DB5421DF79C843F2DF 5052224 ----a-w- C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
2014-09-03 02:03:51 3CA262114956EC95780A25850FF0E413 4623680 ----a-w- C:\Program Files\TeamViewer\Version9\TeamViewer_Desktop.exe
2014-09-03 02:03:50 208270C9AD3E82F6ABAC870F950E5F0D 13246272 ----a-w- C:\Program Files\TeamViewer\Version9\TeamViewer.exe
2014-09-03 01:49:16 4ACFD76727F8173BF79F5E5F84BD81FF 6306360 ----a-w- C:\Users\gfg\Downloads\TeamViewer_Setup_sr.exe
2014-09-02 16:18:51 9C3E0D7CD0D7F88A6F7B473CBBF0A664 1096704 ----a-w- C:\Users\gfg\Desktop\FRST.exe
2014-09-02 13:08:41 79DFA08D63BD3091046F9085323B8A51 73336 ----a-w- C:\Program Files\Opera\24.0.1558.53\wow_helper.exe
2014-09-02 13:08:34 6F4498CFE5F00917CBA9300E1C613D0B 1372280 ----a-w- C:\Program Files\Opera\24.0.1558.53\opera_crashreporter.exe
2014-09-02 13:08:33 3FC9B9010CCB96B2B76BBEE0699DEA1B 3179128 ----a-w- C:\Program Files\Opera\24.0.1558.53\opera_autoupdate.exe
2014-09-02 13:08:30 881F98BFE33C2B9C67D75D0B87AA3D36 48077432 ----a-w- C:\Program Files\Opera\24.0.1558.53\opera.exe
2014-09-02 13:08:28 54216248BBF1A106BD1247E8647CB2A9 3537528 ----a-w- C:\Program Files\Opera\24.0.1558.53\installer.exe
2014-09-01 19:21:05 39DC2B7A667276603629849BE89DADEE 6204136 ----a-w- C:\Users\gfg\AppData\Local\Mail.ru\MailRuUpdater.exe
2014-09-01 19:21:04 8B143813E18791D4FC685169DA8012CA 6171168 ----a-w- C:\Users\gfg\AppData\Local\MailRu\MailRuUpdater.exe
2014-09-01 19:20:56 A0B24FDC95584A6B0964894F31FF2AD1 142368 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\ok.exe
2014-09-01 19:20:56 12DDD93A34E68EC4A13FD6E78DCB1CD5 167968 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\vk.exe
2014-09-01 19:20:55 D8A6F1077A47B8F946C13047988EF877 85024 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\chrome_frame_helper.exe
2014-09-01 19:20:55 D83E8015F017009522E9EE6D42E0ECEC 2151456 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\nacl64.exe
2014-09-01 19:20:55 8D631B971E7B2D7C753BEB1D7DCEEE3C 1248800 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\Installer\setup.exe
2014-09-01 19:20:55 820E8D9DA521AA9250ABC0613E068FF3 1112096 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\chrome.exe
2014-09-01 19:20:55 621A295D01904EF2BDBD462653A94DB6 1112096 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\amigo.exe
2014-09-01 19:20:55 20C79CF025B4AE82F8073D77A75B9605 1692192 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\delegate_execute.exe
2014-09-01 19:20:55 03BD0C86A70B5772A7CC78060F25B2B3 180256 ----a-w- C:\Users\gfg\AppData\Local\Amigo\Application\32.0.1705.153\chrome_launcher.exe
2014-09-01 19:15:12 AEA24FF6ADA75E0A4515B7D725932DBE 2779368 ----a-w- C:\Users\gfg\AppData\Local\Mail.ru\Sputnik\ptls\2GhwHjjsr39T.exe
2014-09-01 19:10:16 AEA24FF6ADA75E0A4515B7D725932DBE 2779368 ----a-w- C:\Users\gfg\AppData\Local\Mail.ru\Sputnik\ptls\dnHTwlAHIuN7.exe
2014-09-01 19:03:18 DEB98D88DC1A5DD7DF99DBD37D1E976C 531456 ----a-w- C:\Users\gfg\Downloads\tipa kopy let s be cops 2014 camrip skachat igry cherez torrent - skachat igry na psp.exe
2014-09-01 18:55:49 3C61A80C5785EF0918161D774C9ADA6A 531456 ----a-w- C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp (1).exe
2014-09-01 18:55:18 3C61A80C5785EF0918161D774C9ADA6A 531456 ----a-w- C:\Users\gfg\Downloads\signal the signal 2014 webrip 720p skachat igry cherez torrent - skachat igry na psp.exe
2014-08-31 11:48:01 764A10F4CC8E03BBEC7F2BD0CAF158F0 766032 ----a-w- C:\Program Files\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\37.0.2062.102\37.0.2062.102_37.0.2062.94_chrome_updater.exe
=== C: other files ==
2014-08-30 03:19:14 14F8D278988BC02B9B4BF202B5BB1115 1570304 ----a-w- C:\Windows\System32\DriverStore\FileRepository\netathur.inf_x86_neutral_181c8f8519198cf0\athur.sys

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-2215629605-2491008863-535191839-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="C:\Users\gfg\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED"
"Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun"
"MailRuUpdater"="C:\Users\gfg\AppData\Local\Mail.Ru\MailRuUpdater.exe"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSRun"
"Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="C:\Users\gfg\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED"
"Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun"
"MailRuUpdater"="C:\Users\gfg\AppData\Local\Mail.Ru\MailRuUpdater.exe"

==== Startup Folders ======================

2014-08-07 19:53:33 959 ----a-w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk
2014-08-25 16:11:18 1055 ----a-w- C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk
2014-08-07 19:53:12 836 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task]
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08.08.2014 07:36]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [08.08.2014 07:36]

==== Other Scheduled Tasks ======================

"C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\LaunchSignup" [C:\Program Files\MyPC Backup\Signup Wizard.exe]
"C:\Windows\system32\tasks\Opera scheduled Autoupdate 1407490904" [C:\Program Files\Opera\launcher.exe]

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[14.07.2014 18:22]

Google Voice Search Hotword (Beta) - gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
Skype Click to Call - gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Google Wallet - gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

==== C:\zoek_backup content ======================

C:\zoek_backup (files=0 folders=0 0 bytes)

==== EOF on ??? 02.09.2014 at 20:19:02,75 ======================

Dopuna: 03 Sep 2014 5:30

Pa ako je jedno te isto ... obrisite ovaj dolje post. , a meni se cini da jeste.

offline
  • Osvjedodžbeni spretnik munjarstva
  • Pridružio: 04 Jul 2011
  • Poruke: 5424
  • Gde živiš: Beograd

Arrow Ponovo pokreni zoek ;


zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;


U beli okvir prozora iskopiraj sledeći tekst:

autoclean;



Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.

offline
  • Nemanja Djukanovic
  • Pridružio: 18 Dec 2012
  • Poruke: 1755
  • Gde živiš: Niksic - Crna Gora

Nije mogao ranije da odgovori ... evo :

Zoek.exe v5.0.0.0 Updated 05-September-2014
Tool run by gfg on ??? 05.09.2014 at 0:32:46,11.
Microsoft Windows 7 Ultimate 6.1.7600 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\gfg\Desktop\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-09-03-031902.log 29606 bytes

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2215629605-2491008863-535191839-1000\Software\Microsoft\Internet Explorer\SearchScopes\{75D98E7A-8A68-43C1-9E50-4FF8E00A088A} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BackupStack deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BackupStack deleted successfully

==== Deleting Files \ Folders ======================

C:\Users\gfg\.android deleted
C:\Program Files\WebSpades deleted
C:\Users\gfg\AppData\Roaming\BitLord deleted
C:\Users\gfg\AppData\Local\Installer deleted
C:\Users\gfg\AppData\Local\CrashRpt deleted
C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup deleted
C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk deleted
C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AppsHat deleted
C:\Users\gfg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord deleted
C:\Users\Public\Documents\GOOBZO deleted
C:\Users\gfg\Downloads\iLividSetup-r1799-n-bc (2).exe deleted
C:\Users\gfg\Downloads\iLividSetup-r725-n-bc.exe deleted
C:\Windows\system32\Tasks\LaunchSignup deleted
C:\Windows\system32\config\systemprofile\Searches deleted
C:\Windows\System32\AniGIF.ocx deleted
C:\Users\gfg\Documents\BitLord deleted
C:\Users\Public\Desktop\Foxreal YouTube FLV Downloader Pro.lnk deleted
C:\Users\gfg\Desktop\Sync Folder.lnk deleted
C:\Users\gfg\Desktop\MyPC Backup.lnk deleted
"C:\Program Files\MyPC Backup\GetText.dll" deleted
"C:\Program Files\MyPC Backup\MPCBClient.dll" deleted
"C:\Program Files\MyPC Backup\MyPC Backup.exe" deleted
"C:\Program Files\MyPC Backup\ObjectListView.dll" deleted
"C:\Program Files\MyPC Backup\Shared Stack.dll" deleted
"C:\Program Files\MyPC Backup\x86\System.Data.SQLite.dll" deleted
"C:\Program Files\BitLord 2" deleted
"C:\Program Files\MyPC Backup" not deleted
"C:\Program Files\MyPC Backup\Database" not deleted
"C:\Program Files\MyPC Backup\x86" not deleted

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[14.07.2014 18:22]

Google Voice Search Hotword (Beta) - gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn
Skype Click to Call - gfg\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl

==== Chrome Fix ======================

C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully
C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage deleted successfully
C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_free.onlinemapfinder.com_0.localstorage deleted successfully
C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_onlinemapfinder.dl.tb.ask.com_0.localstorage deleted successfully
C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.peoplefinders.com_0.localstorage deleted successfully
C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.slutfinder.com_0.localstorage deleted successfully
C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.softonic.com_0.localstorage deleted successfully
C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.teentubesearch.com_0.localstorage deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{75D98E7A-8A68-43C1-9E50-4FF8E00A088A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{75D98E7A-8A68-43C1-9E50-4FF8E00A088A}] not found

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup deleted successfully

==== Empty IE Cache ======================

C:\Users\gfg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\gfg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\gfg\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache is not empty, a reboot is needed

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1530 folders=305 152297268 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\gfg\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\gfg\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\gfg\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Program Files\MyPC Backup" not found
"C:\Users\gfg\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\79HFB5DH\chaturbate.com" not found
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted

==== EOF on ??? 05.09.2014 at 1:01:45,16 ======================

offline
  • Osvjedodžbeni spretnik munjarstva
  • Pridružio: 04 Jul 2011
  • Poruke: 5424
  • Gde živiš: Beograd

Arrow Kakvo je sada stanje, da li koči i da li iskaču prozori?




Arrow Preuzmi Malwarebytes Anti-Rootkit (MBAR) sa sledeceg linka i sacuvaj ga na Desktop.

Dvoklikom pokreni MBAR () na ikonicu programa:
- Klikni OK na sledecem prozoru da bi dozvolio raspakivanje u zaseban mbar folder na desktop-u;
- mbar.exe ce biti startovan. Na nekim sistemima to moze da potraje nekoliko dodatnih sekundi, te pricekati pokretanje.;
- U uvodnom prozoru klikni dugme Next ukoliko si saglasan;



• Na 'Update Database' prozoru klik na dugme Update da bi preuzeo sveze definicije. Kada se ispise poruka 'Success: Database was successfully updated' klik na dugme Next;
• Pod sekcijom 'Scan Targets' proveri da su sve opcije stiklirane, te klikni na dugme Scan;

Obavestenje: sa nekim infekcijama moze se desiti da se prikaze neka od sledecih poruka:
- 'Could not load protection driver' => u tom slucaju klikni OK.
- 'Could not load DDA driver' => klikni Yes na to obavestenje da bi dozvolio ucitavanje nakon restarta. Dozvoli restart i nastavi sa ostatkom instrukcija posle restarta.





>> Ukoliko malware nije detektovan, klik na Exit dugme da zatvoris program. U sledecu poruku postavi mbar-log-year-month-day (sat-minuti-sekundi).txt i system-log.txt izveštaje.

>> Ukoliko su infekcija/e pronadjene, proveriti da li je obelezena opcija 'Create Restore Point' i klikni na dugme Cleanup! da bi uklonili pretnje.
- Procedura uklanjanje malware-a (scheduled) ce biti zakazana po restartu, bice prikazano obavestenje u pop-up prozoru. Klikni dugme Yes i sistem bi trebao da se restartuje i da zavrsi proceduru ciscenja.



Obavestenje! samo ukoliko je RootKit detektovan: - postaraj se da pokrenes fixdamage.exe alat koji se nalazi u mbar folderu, \Plugins\fixdamage.exe:
- Dvoklikom pokreni fixdamage, u crnom prozoru koji se otvori (command prompt) ukucaj Y (Y stoji za Yes) da bi nastavio izvrsenje, pricekati da alat odradi sve popravke ...
- Kada vidis poruku 'press any key to exit' popravka je kompletirana. Pritisnuti bilo koju tipku na tastaturi da bi se prozor zatvorio. Restartovati sistem.





Sledeci izvestaji ce biti formirani u mbar folderu.
1. mbar-log-year-month-day (hour-minute-second).txt
2. system-log.txt

Iskopiraj sadrzaj mbar log-a u poruku a system log okaci uz poruku koristeci opciju Prikači fajl.

Ko je trenutno na forumu
 

Ukupno su 557 korisnika na forumu :: 5 registrovanih, 0 sakrivenih i 552 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: ALBION101, ivan979, jaeger, Markogrozni, Tas011