girl_interrupted

Write-protection? Как да я премахна?

    2 мнения в тази тема


    Тъй като не видях нищо подобно, реших да направя тема. Но като се поразрових повече в нета, видях, че има доста хора с подобен проблем. Случката е следната: дадох си МП3 на една приятелка и като ми я върна всички файлове вътре бяха write-protected. Какво означава това? Не мога да качвам нито да трия от MP3. Много ще бъда благодарна ако се обърне внимание и някой ми даде насоки какво да правя.

    Сподели този отговор


    Линк към този отговор
    Сподели в други сайтове

    Регистрирайте се или влезете в профила си за да коментирате

    Трябва да имате регистрация за да може да коментирате това

    Регистрирайте се

    Създайте нова регистрация в нашия форум. Лесно е!


    Нова регистрация

    Вход

    Имате регистрация? Влезте от тук.


    Вход

    • Подобни теми

      • от Johny_Knoxvile
        Здравейте,
        лаптопчето е малко старо,но върши работа,поне вършеше докато не се напълни с боклуци и уиндоуса се скапа.
        Модела е ASUS K50IJ,има я опцията в BIOS за бутване от USB,eстествено е и  зададено като приоритет да е първо и до тук.
        Използвах няколко флашки,няколко Windows 7 копия,пробвах във всичките USB-портове,не иска и не иска да се стартира от флашката .На настолното PC всеки запис тръгва от раз,на лаптопа не.Може ли някой да помогне?
      • от Kuncavia
        Здравейте, 

        Тези дни се появи нов криптовирус (link)  и като при всяка масова атака, някой капацитет в офиса, вземе че се нахендри. За съжаление, meilа e стигнал до 10% от служебните пощи. Попаднах на него, още преди два дни, като една колежка ме пита, да го отварям ли това. Казах и да ми го препрати. Служебната ми поща се отваря от gmail а не от Outlook и съответно, от gmail като има вирус ми казват, че съобщението е оставено на сървъра. Казах и да го изтрие и предупредих колегите, ако срещнат подобен мейл, да не го отварят. Е да ама, в счетоводството са решили да го отворят, а там е още по-голяма греда, тъй кат всички по-важни транзакции, минават от там. 

        Да дойдем на въпроса, някой запознат ли е какво точно прави гадината, тъй като от прочетеното из новинарските сайтове, не ми стана много ясно. Съответно, някакъв вариант да се разкара или направо да се преинсталира? Може ли да стигне до всички по локалната мрежа? 
         
        Поздрави, 
      • от Bbt_sm
        Здравейте! Изтрих файл от флашката си. Някой може ли да ми каже мога ли и как да възстановя изтрит файл от флашка?
      • от Gangosa
        Добър ден имам упорит проблем с хрома . До сега чистих с adwcleaner не се маха реших ,че е сериозно .
        Променям първа страница да е www.google.bg затварям браузъра отварям го и вече е
        http://proekt-armata-igra.ru/search.com/index.html ето логовете :
        Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-01-2017
        Ran by Gangosan (administrator) on GANGOSAN-PC (08-01-2017 15:56:33)
        Running from C:\Users\Gangosan\Desktop
        Loaded Profiles: Gangosan (Available Profiles: Gangosan)
        Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
        Internet Explorer Version 11 (Default browser: Chrome)
        Boot Mode: Normal
        Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
        ==================== Processes (Whitelisted) =================
        (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
        (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
        (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\ZCfgSvc7.exe
        (Microsoft Corporation) C:\Windows\System32\wlanext.exe
        (AeroAdmin Inc.) D:\Program\AeroAdmin PRO.exe
        (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgfwsa.exe
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
        (AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe
        (AeroAdmin Inc.) D:\Program\AeroAdmin PRO.exe
        (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
        () C:\Program Files (x86)\Localphone Ltd\Localphone\Localphone_mod.exe
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
        (Softros Systems, Inc.) C:\Program Files\Softros Systems\Process Blocker\Process Blocker.exe
        (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
        () C:\Program Files (x86)\iCareFone\TenorShareService.exe
        (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
        (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
        (Microsoft Corporation) C:\Windows\System32\alg.exe
        (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
        (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
        (Intel Corporation) C:\Windows\System32\igfxtray.exe
        (Intel Corporation) C:\Windows\System32\hkcmd.exe
        (Intel Corporation) C:\Windows\System32\igfxpers.exe
        (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
        (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
        (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
        (AntGROUP) C:\Program Files (x86)\Ant Download Manager\antMR.exe
        (AntGROUP) C:\Program Files (x86)\Ant Download Manager\AntDM.exe
        (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
        (Viber Media S.à r.l.) C:\Users\Gangosan\AppData\Local\Viber\Viber.exe
        (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
        (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
        (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
        (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
        (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
        (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
        (IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
        (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
        (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
        (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\dfsvc.exe
        (mozilla.org) C:\Program Files (x86)\SeaMonkey\seamonkey.exe
        (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
        (Microsoft Corporation) C:\Windows\System32\cmd.exe
        (AntGROUP) C:\Program Files (x86)\Ant Download Manager\antCH\antCH.exe
        ==================== Registry (Whitelisted) ====================
        (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
        HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11786344 2011-03-28] (Realtek Semiconductor)
        HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2207848 2011-03-21] (Realtek Semiconductor)
        HKLM\...\Run: [IntelPROSet] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-05-02] (Intel(R) Corporation)
        HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-05-02] (Intel(R) Corporation)
        HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-11-01] (Apple Inc.)
        HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation)
        HKLM-x32\...\Run: [Dolby Advanced Audio v2] => c:\dolby pcee4\pcee4.exe [506712 2011-02-03] (Dolby Laboratories Inc.)
        HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
        HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
        HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
        Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
        HKLM\...\Policies\Explorer: [NoFavoritesMenu] 0
        HKLM\...\Policies\Explorer: [NoRecentDocsMenu] 0
        HKLM\...\Policies\Explorer: [NoNetworkConnections] 0
        HKLM\...\Policies\Explorer: [NoSMMyDocs] 0
        HKLM\...\Policies\Explorer: [NoSMMyPictures] 0
        HKLM\...\Policies\Explorer: [NoStartMenuMyMusic] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Run: [Google Update] => C:\Users\Gangosan\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateCore.exe [601752 2016-12-16] (Google Inc.)
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Run: [GUDelayStartup] => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [43984 2016-07-08] (Glarysoft Ltd)
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Run: [MTELocker] => C:\Program Files\Encrypt4all Software\ADL Pro Edition\ADL.exe [663552 2016-10-29] (Encrypt4all Software 2004-2016)
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Run: [antMR] => C:\Program Files (x86)\Ant Download Manager\antMR.exe [132608 2016-09-25] (AntGROUP)
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Run: [AntDM] => C:\Program Files (x86)\Ant Download Manager\AntDM.exe [6358528 2016-11-12] (AntGROUP)
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Run: [Viber] => C:\Users\Gangosan\AppData\Local\Viber\Viber.exe [41548368 2017-01-03] (Viber Media S.à r.l.)
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\system: [NoDispSettingsPage] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\system: [NoDispCPL] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\system: [NoDispScrSavPage] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\system: [NoDispBackgroundPage] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\system: [NoDispAppearancePage] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\system: [NoVisualStyleChoice] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\system: [NoColorChoice] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\system: [NoSizeChoice] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\system: [NoTrayContextMenu] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoAddPrinter] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoDeletePrinter] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoThemesTab] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoChangeAnimation] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoViewContextMenu] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoDFSTab] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoSecurityTab] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoHardwareTab] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoToolbarCustomize] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoBandCustomize] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoFileMenu] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoNetHood] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoSetFolders] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoStartMenuMyGames] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoSetTaskbar] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoCommonGroups] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoStartMenuNetworkPlaces] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoToolbarsOnTaskbar] 0
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Policies\Explorer: [NoSimpleStartMenu] 0
        HKU\S-1-5-18\...\Run: [] => 0
        HKLM\...\AppCertDlls: [ProcessBlocker] -> C:\Program Files\Softros Systems\Process Blocker\HelperLib.dll [114176 2015-07-23] (Softros Systems, inc.)
        HKLM\...\AppCertDlls: [ProcessBlocker86] -> C:\Program Files\Softros Systems\Process Blocker\HelperLib86.dll [95744 2015-07-23] (Softros Systems, inc.)
        ShellIconOverlayIdentifiers: [! IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} =>  -> No File
        Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-12-04]
        ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
        Startup: C:\Users\Gangosan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2015-03-15] ()
        Startup: C:\Users\Gangosan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ZenMate.bat [2017-01-08] ()
        BootExecute: autocheck autochk *  
        GroupPolicy: Restriction <======= ATTENTION
        ==================== Internet (Whitelisted) ====================
        (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
        ProxyServer: [S-1-5-21-1996132808-4018277664-1723909242-1000] => http=127.0.0.1:8555;https=127.0.0.1:8555
        Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
        Tcpip\..\Interfaces\{71426D83-D555-4D62-887F-397EC0699D4D}: [DhcpNameServer] 192.168.0.1
        Internet Explorer:
        ==================
        HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
        HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/?pc=AVBR
        SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
        SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
        SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
        BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2016-05-23] (IObit)
        BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-10-19] (Oracle Corporation)
        BHO: Ant Download Manager BHO -> {8ABC6AE5-74BD-4c73-BB34-44526792D2AE} -> C:\Program Files (x86)\Ant Download Manager\antIE\antIE64.dll [2016-10-20] (AntGROUP)
        BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
        BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-19] (Oracle Corporation)
        BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-19] (Oracle Corporation)
        BHO-x32: Ant Download Manager BHO -> {8ABC6AE5-74BD-4c73-BB34-44526792D2AE} -> C:\Program Files (x86)\Ant Download Manager\antIE\antIE.dll [2016-10-20] (AntGROUP)
        BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
        BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-19] (Oracle Corporation)
        DPF: HKLM-x32 {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} hxxp://quickscan.bitdefender.com/qsax/qsax.cab
        DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
        FireFox:
        ========
        FF DefaultProfile: ka0brvp7.default
        FF ProfilePath: C:\Users\Gangosan\AppData\Roaming\TomTom\HOME\Profiles\gcn8mbl0.default [2015-10-31]
        FF Extension: (Map status indicator) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [2015-10-31] [not signed]
        FF ProfilePath: C:\Users\Gangosan\AppData\Roaming\Mozilla\SeaMonkey\Profiles\ka0brvp7.default [2017-01-08]
        FF NetworkProxy: Mozilla\SeaMonkey\Profiles\ka0brvp7.default -> ftp", "89.208.212.2"
        FF NetworkProxy: Mozilla\SeaMonkey\Profiles\ka0brvp7.default -> ftp_port", 80
        FF NetworkProxy: Mozilla\SeaMonkey\Profiles\ka0brvp7.default -> http", "89.208.212.2"
        FF NetworkProxy: Mozilla\SeaMonkey\Profiles\ka0brvp7.default -> http_port", 80
        FF NetworkProxy: Mozilla\SeaMonkey\Profiles\ka0brvp7.default -> share_proxy_settings", true
        FF NetworkProxy: Mozilla\SeaMonkey\Profiles\ka0brvp7.default -> ssl", "89.208.212.2"
        FF NetworkProxy: Mozilla\SeaMonkey\Profiles\ka0brvp7.default -> ssl_port", 80
        FF Extension: (Ad-Aware Ad Block) - C:\Users\Gangosan\AppData\Roaming\Mozilla\SeaMonkey\Profiles\ka0brvp7.default\Extensions\AdBlockerLavaSoftFF@lavasoft.com.xpi [2017-01-08]
        FF Extension: (DOM Inspector) - C:\Users\Gangosan\AppData\Roaming\Mozilla\SeaMonkey\Profiles\ka0brvp7.default\Extensions\inspector@mozilla.org [2017-01-08]
        FF Extension: (Whois Lookup & Hosting & DNS & Site Flags Firefox) - C:\Users\Gangosan\AppData\Roaming\Mozilla\SeaMonkey\Profiles\ka0brvp7.default\Extensions\myipms@myip.ms [2017-01-08]
        FF Extension: (LastPass) - C:\Users\Gangosan\AppData\Roaming\Mozilla\SeaMonkey\Profiles\ka0brvp7.default\Extensions\support@lastpass.com [2017-01-08]
        FF Extension: (ChatZilla) - C:\Users\Gangosan\AppData\Roaming\Mozilla\SeaMonkey\Profiles\ka0brvp7.default\Extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2} [2017-01-08]
        FF ProfilePath: C:\Users\Gangosan\AppData\Roaming\Mozilla\Firefox\Profiles\96z07rpk.default [2017-01-07]
        FF Homepage: Mozilla\Firefox\Profiles\96z07rpk.default -> about:home
        FF Extension: (ZenMate Security, Privacy & Unblock VPN) - C:\Users\Gangosan\AppData\Roaming\Mozilla\Firefox\Profiles\96z07rpk.default\Extensions\firefox@zenmate.com.xpi [2016-10-04]
        FF Extension: (LavaFox V2) - C:\Users\Gangosan\AppData\Roaming\Mozilla\Firefox\Profiles\96z07rpk.default\Extensions\info@djzig.com [2016-12-03]
        FF Extension: (LastPass) - C:\Users\Gangosan\AppData\Roaming\Mozilla\Firefox\Profiles\96z07rpk.default\Extensions\support@lastpass.com [2017-01-07]
        FF Extension: (Nightly Tester Tools) - C:\Users\Gangosan\AppData\Roaming\Mozilla\Firefox\Profiles\96z07rpk.default\Extensions\{8620c15f-30dc-4dba-a131-7c5d20cf4a29}.xpi [2016-10-23]
        FF Extension: (Adblock Plus) - C:\Users\Gangosan\AppData\Roaming\Mozilla\Firefox\Profiles\96z07rpk.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-12-03]
        FF Extension: (Block site) - C:\Users\Gangosan\AppData\Roaming\Mozilla\Firefox\Profiles\96z07rpk.default\Extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc} [2017-01-06]
        FF Extension: (Bitdefender QuickScan) - C:\Users\Gangosan\AppData\Roaming\Mozilla\Firefox\Profiles\96z07rpk.default\Extensions\{e001c731-5e37-4538-a5cb-8168736a2360} [2016-10-04]
        FF Extension: (AntFF) - C:\Program Files (x86)\Ant Download Manager\antFF\antFF.xpi [2016-02-26]
        FF ProfilePath: C:\Users\Gangosan\AppData\Roaming\kompozer.net\KompoZer\Profiles\1stu6e8q.default [2015-08-16]
        FF HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\Firefox\Extensions: [antgroup@antdownloadmanager.com] - C:\Program Files (x86)\Ant Download Manager\antFF\antFF.xpi
        FF HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi => not found
        FF HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\...\SeaMonkey\Extensions: [antgroup@antdownloadmanager.com] - C:\Program Files (x86)\Ant Download Manager\antFF\antFF.xpi
        FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_189.dll [2016-12-16] ()
        FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-19] (Oracle Corporation)
        FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-19] (Oracle Corporation)
        FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
        FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_189.dll [2016-12-16] ()
        FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-19] (Oracle Corporation)
        FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-19] (Oracle Corporation)
        FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
        FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
        FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
        FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
        FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
        FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
        FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
        FF Plugin HKU\S-1-5-21-1996132808-4018277664-1723909242-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Gangosan\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
        FF Plugin HKU\S-1-5-21-1996132808-4018277664-1723909242-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Gangosan\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.)
        FF Plugin HKU\S-1-5-21-1996132808-4018277664-1723909242-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Gangosan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-07-14] (Unity Technologies ApS)
        FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2016-10-29]
        Chrome:
        =======
        CHR DefaultProfile: Default
        CHR HomePage: Default -> hxxp://www.google.com/
        CHR StartupUrls: Default -> "hxxps://www.google.bg/"
        CHR Profile: C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default [2017-01-08]
        CHR Extension: (Adblock Plus) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-10-30]
        CHR Extension: (AntDM Integration Extension) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\efglbgfnmenhnnflfpbnbldgmldnmifb [2016-12-06]
        CHR Extension: (Byrd IRC client) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\endimfdcgfnlmoankhocnkhgohmoecoi [2016-10-13]
        CHR Extension: (SSLTrust SSL Certificate Store) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fappknnhhggcjmeljjbjmibmhoninmem [2015-09-03]
        CHR Extension: (ZenMate VPN - Best Cyber Security & Unblock) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2016-11-10]
        CHR Extension: (Cloud SWF, Flash Player with Drive) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffhhaadihgfcgmlefioblaahpnglnkbk [2015-12-16]
        CHR Extension: (Glowtxt) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkcilhknnakepbgkpmhhebooffgefidk [2016-10-30]
        CHR Extension: (Google Документи офлайн) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-06]
        CHR Extension: (LastPass: Free Password Manager) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2016-12-06]
        CHR Extension: (VoiceNote II - Speech to text) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfknjgplnkgjihghcidajejfmldhibfm [2016-02-16]
        CHR Extension: (Zalmos SSL Web Proxy for Free) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\idefjamndcpplnamdlbodoebjgkpdmpn [2015-10-05]
        CHR Extension: (Lunapic Photo Editor) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifimmnanlabnljjnaegjmgnelmdmjabn [2015-09-03]
        CHR Extension: (Antivirus Online Scanner) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\jckjbdbomnmbollkecaianifkigmgbjj [2016-10-30]
        CHR Extension: (Online PDF Tools) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\jddfpnmfhodaljeelokfceepbeapgbdn [2015-09-03]
        CHR Extension: (IP адрес) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpnjjlbngpejmmhgcaagljaomgnginml [2016-08-27]
        CHR Extension: (Local SWF Player) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmbckedabpbgjagmkgcejooabcdnone [2016-03-13]
        CHR Extension: (Cloud9) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbdmccoknlfggadpfkmcpnamfnbkmkcp [2016-03-19]
        CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-03]
        CHR Extension: (ScriptSafe) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiigbmnaadbkfbmpbfijlflahbdbdgdf [2016-12-29]
        CHR Extension: (Как да използвате Skype уеб) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pabhdemifmkppnfkgfjifmimajhofcbh [2016-06-15]
        CHR Extension: (Weather Underground) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjejbgheonogbpfkkjigbmahaljipoej [2015-09-03]
        CHR Extension: (Gmail) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-31]
        CHR Extension: (Chrome Media Router) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-17]
        CHR Profile: C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Guest Profile [2016-09-02]
        CHR Profile: C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1 [2016-12-17]
        CHR Extension: (Google Презентации) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-30]
        CHR Extension: (Google Документи) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-30]
        CHR Extension: (Google Диск) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-30]
        CHR Extension: (YouTube) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-30]
        CHR Extension: (Google Търсене) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-30]
        CHR Extension: (Bitdefender Wallet) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fabcmochhfpldjekobfaaggijgohadih [2016-01-30]
        CHR Extension: (Електронни таблици от Google) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-30]
        CHR Extension: (Google Документи офлайн) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-01-30]
        CHR Extension: (IDM Integration Module) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-01-30]
        CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-01-30]
        CHR Extension: (Gmail) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-30]
        CHR Profile: C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile [2016-09-02]
        CHR Extension: (Google Презентации) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-07]
        CHR Extension: (Google Документи) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-07]
        CHR Extension: (Google Диск) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-07]
        CHR Extension: (YouTube) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-07]
        CHR Extension: (Google Търсене) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-07]
        CHR Extension: (Електронни таблици от Google) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-07]
        CHR Extension: (Bookmark Manager) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-06-07]
        CHR Extension: (IDM Integration Module) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2015-06-07]
        CHR Extension: (Google Wallet) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-07]
        CHR Extension: (Gmail) - C:\Users\Gangosan\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-07]
        CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
        CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
        CHR HKU\S-1-5-21-1996132808-4018277664-1723909242-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efglbgfnmenhnnflfpbnbldgmldnmifb] - C:\Program Files (x86)\Ant Download Manager\antCH\antCH.crx [2016-12-06]
        CHR HKLM-x32\...\Chrome\Extension: [fabcmochhfpldjekobfaaggijgohadih] - hxxps://clients2.google.com/service/update2/crx
        ==================== Services (Whitelisted) ====================
        (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
        R2 AeroadminService; D:\Program\AeroAdmin PRO.exe [2609432 2016-11-18] (AeroAdmin Inc.)
        R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.)
        S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [971160 2016-12-15] (AVG Technologies CZ, s.r.o.)
        R2 avgfws; C:\Program Files (x86)\AVG\Av\avgfwsa.exe [1824184 2016-12-15] (AVG Technologies CZ, s.r.o.)
        R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5337600 2016-12-15] (AVG Technologies CZ, s.r.o.)
        R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-06] (AVG Technologies CZ, s.r.o.)
        R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [725976 2016-12-15] (AVG Technologies CZ, s.r.o.)
        R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [29912 2015-09-15] (AOMEI Tech Co., Ltd.) [File not signed]
        S3 HideMyIpSRV; C:\Program Files (x86)\Hide My IP 6\HideMyIpSRV.exe [4375792 2015-10-07] (Hide My IP)
        S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [3046688 2016-07-29] (IObit)
        R2 LocalphoneWinService; C:\Program Files (x86)\Localphone Ltd\Localphone\Localphone_mod.exe [1046016 2013-08-22] () [File not signed]
        S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-05-02] ()
        R2 Process Blocker; C:\Program Files\Softros Systems\Process Blocker\Process Blocker.exe [2198352 2015-07-23] (Softros Systems, Inc.)
        R2 TenorShareService; C:\Program Files (x86)\iCareFone\TenorShareService.exe [657848 2016-07-29] ()
        S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
        R2 ZcfgSvc7; C:\Program Files\Intel\WiFi\bin\ZCfgSvc7.exe [1000208 2011-05-02] (Intel(R) Corporation)
        S2 HssWd; no ImagePath
        ===================== Drivers (Whitelisted) ======================
        (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
        R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [30648 2015-02-25] () [File not signed]
        R2 ammntdrv; C:\Windows\system32\ammntdrv.sys [151480 2015-02-25] () [File not signed]
        S3 ampa; C:\Windows\system32\ampa.sys [17008 2013-12-18] () [File not signed]
        S3 ampa; C:\Windows\SysWOW64\ampa.sys [17008 2013-12-18] () [File not signed]
        R2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [17848 2015-02-25] () [File not signed]
        R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
        R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [73992 2016-10-23] (AVG Technologies CZ, s.r.o.)
        R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [312576 2016-11-04] (AVG Technologies CZ, s.r.o.)
        R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [267008 2016-10-05] (AVG Technologies CZ, s.r.o.)
        R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [298240 2016-11-30] (AVG Technologies CZ, s.r.o.)
        R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
        R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [254208 2016-09-26] (AVG Technologies CZ, s.r.o.)
        R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
        R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [299264 2016-07-27] (AVG Technologies CZ, s.r.o.)
        R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.)
        S3 BazisPortableCDBus; C:\Windows\System32\drivers\BazisPortableCDBus.sys [283480 2015-10-09] (Sysprogs OU)
        R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2015-07-16] (DT Soft Ltd)
        R1 ElRawDisk; C:\Windows\system32\drivers\ElRawDsk.sys [30752 2013-12-03] (EldoS Corporation)
        S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] ()
        S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [15968 2014-11-18] ()
        R2 GdmWmPrt; C:\Windows\System32\DRIVERS\gdmwmprt.sys [32768 2009-08-17] (GCT Semiconductor, Inc.)
        R2 GdmWmPrt; C:\Windows\SysWOW64\DRIVERS\gdmwmprt.sys [32768 2009-08-17] (GCT Semiconductor, Inc.)
        R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20160 2015-06-16] (Glarysoft Ltd)
        R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [44744 2014-05-17] (AnchorFree Inc.)
        R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-03-28] (REALiX(tm))
        R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2014-04-24] (Intel Corporation)
        S3 MDA_NTDRV; C:\Windows\system32\MDA_NTDRV.sys [47104 2016-05-20] ()
        R3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0102.sys [38432 2016-01-27] (SoftEther Corporation)
        S3 ptun0901; C:\Windows\System32\DRIVERS\ptun0901.sys [27136 2015-01-26] (The OpenVPN Project)
        R1 RawDisk3; C:\Windows\system32\drivers\rawdsk3.sys [32568 2015-07-24] (EldoS Corporation)
        S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [12400 2016-08-31] (Macrovision Europe Ltd) [File not signed]
        S3 SEE; C:\Windows\System32\drivers\see.sys [50208 2016-01-27] (SoftEther Corporation)
        S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42064 2016-05-27] (Anchorfree Inc.)
        S3 b06bdrv; \SystemRoot\system32\drivers\bxvbda.sys [X]
        S3 BTATH_BUS; system32\DRIVERS\btath_bus.sys [X]
        U3 DfSdkS; no ImagePath
        S3 EuGdiDrv; \??\C:\Windows\system32\EuGdiDrv.sys [X]
        S0 MBAMSwissArmy; system32\drivers\MBAMSwissArmy.sys [X]
        S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
        S3 VGPU; System32\drivers\rdvgkmd.sys [X]
        ==================== NetSvcs (Whitelisted) ===================
        (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

        ==================== One Month Created files and folders ========
        (If an entry is included in the fixlist, the file/folder will be moved.)
        2017-01-08 15:56 - 2017-01-08 15:57 - 00035145 _____ C:\Users\Gangosan\Desktop\FRST.txt
        2017-01-08 15:55 - 2017-01-08 15:56 - 00000000 ____D C:\FRST
        2017-01-08 15:55 - 2017-01-08 15:55 - 02419200 _____ (Farbar) C:\Users\Gangosan\Desktop\FRST64.exe
        2017-01-08 15:03 - 2017-01-08 15:46 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ZenGuard GmbH
        2017-01-08 15:03 - 2017-01-08 15:03 - 00000000 ____D C:\Users\Gangosan\AppData\Local\SquirrelTemp
        2017-01-08 15:02 - 2017-01-08 15:02 - 04017168 _____ (ZenGuard GmbH) C:\Users\Gangosan\Desktop\setup.exe
        2017-01-08 00:07 - 2017-01-08 00:07 - 00001986 _____ C:\Users\Public\Desktop\SeaMonkey.lnk
        2017-01-08 00:07 - 2017-01-08 00:07 - 00000000 ____D C:\Program Files (x86)\SeaMonkey
        2017-01-07 23:46 - 2017-01-07 23:46 - 00000925 _____ C:\Users\Gangosan\AppData\Roaming\Microsoft\Windows\Start Menu\Viber.lnk
        2017-01-07 23:46 - 2017-01-07 23:46 - 00000923 _____ C:\Users\Gangosan\Desktop\Viber.lnk
        2017-01-07 23:46 - 2017-01-07 23:46 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber
        2017-01-07 23:46 - 2017-01-07 23:46 - 00000000 ____D C:\Users\Gangosan\AppData\Local\Viber
        2017-01-07 23:46 - 2017-01-07 23:46 - 00000000 ____D C:\Users\Gangosan\AppData\Local\Package Cache
        2017-01-07 23:44 - 2017-01-07 23:45 - 68087360 _____ (Viber Media Inc.) C:\Users\Gangosan\Desktop\ViberSetup.exe
        2017-01-07 23:39 - 2017-01-07 23:39 - 00000000 ____D C:\Users\Gangosan\Tracing
        2017-01-07 23:14 - 2017-01-07 23:14 - 00000000 ____D C:\Users\Public\Downloads\Norton
        2017-01-07 22:59 - 2017-01-07 23:14 - 00000000 ____D C:\ProgramData\Norton
        2017-01-07 22:59 - 2017-01-07 22:59 - 00000000 ____D C:\ProgramData\NortonInstaller
        2017-01-06 23:43 - 2017-01-07 22:58 - 00000000 ____D C:\Users\Gangosan\AppData\LocalLow\Mozilla
        2017-01-02 23:22 - 2017-01-02 23:22 - 00029296 _____ C:\Users\Gangosan\Downloads\79cc2d834946e3bf672f48d62fa13ca3.html
        2017-01-02 14:33 - 2017-01-02 14:33 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
        2017-01-02 14:33 - 2017-01-02 14:33 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
        2017-01-01 13:31 - 2017-01-01 13:31 - 00062528 _____ C:\Users\Gangosan\Documents\invoice.pdf
        2016-12-31 13:43 - 2016-12-31 13:43 - 00102809 _____ C:\Users\Gangosan\Desktop\One.com Annual Invoice - emo-upholstery.co.uk.eml
        2016-12-31 13:40 - 2016-12-31 13:40 - 00062528 _____ C:\Users\Gangosan\Desktop\17131863.pdf
        2016-12-29 21:07 - 2016-12-29 21:07 - 00000822 ____N C:\Users\Public\Desktop\CCleaner.lnk
        2016-12-29 20:49 - 2016-12-29 20:49 - 00003073 ____N C:\Users\Gangosan\Desktop\ASUS PC Diagnostics.lnk
        2016-12-29 20:49 - 2016-12-29 20:49 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS
        2016-12-29 20:49 - 2016-12-29 20:49 - 00000000 ____D C:\Program Files (x86)\ASUS
        2016-12-17 21:09 - 2017-01-07 00:32 - 00002204 ____R C:\Users\Public\Desktop\Gооglе Сhrоmе.lnk
        2016-12-17 17:45 - 2016-12-18 12:57 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\QTranslate
        2016-12-17 17:45 - 2016-12-17 17:45 - 00001035 ____N C:\Users\Gangosan\Desktop\QTranslate.lnk
        2016-12-17 17:45 - 2016-12-17 17:45 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QTranslate
        2016-12-17 17:45 - 2016-12-17 17:45 - 00000000 ____D C:\Program Files (x86)\QTranslate
        2016-12-17 17:30 - 2016-12-29 19:37 - 00000000 ____D C:\Program Files\Malwarebytes
        2016-12-17 17:30 - 2016-12-17 17:30 - 51969976 _____ (Malwarebytes ) C:\Users\Gangosan\Desktop\malwarebytes_3.0.exe
        2016-12-17 17:14 - 2016-12-17 17:14 - 03977168 _____ C:\Users\Gangosan\Desktop\adwcleaner_6.041.exe
        2016-12-09 00:40 - 2016-12-09 00:40 - 00001408 ____N C:\Users\Public\Desktop\AceThinker Screen Grabber Pro.lnk
        2016-12-09 00:40 - 2016-12-09 00:40 - 00000000 ____D C:\Users\Gangosan\Documents\AceThinker
        2016-12-09 00:40 - 2016-12-09 00:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AceThinker
        2016-12-09 00:40 - 2016-12-09 00:40 - 00000000 ____D C:\Program Files (x86)\AceThinker
        ==================== One Month Modified files and folders ========
        (If an entry is included in the fixlist, the file/folder will be moved.)
        2017-01-08 15:55 - 2015-04-29 17:58 - 00000000 ____D C:\Users\Gangosan\AppData\LocalLow\LastPass
        2017-01-08 15:47 - 2014-09-07 10:06 - 00000000 ____D C:\Users\Gangosan\AppData\Local\Deployment
        2017-01-08 15:47 - 2009-07-14 04:45 - 00026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
        2017-01-08 15:47 - 2009-07-14 04:45 - 00026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
        2017-01-08 15:42 - 2015-07-06 10:58 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
        2017-01-08 15:41 - 2015-06-01 17:18 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\ViberPC
        2017-01-08 15:39 - 2009-07-14 05:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
        2017-01-08 15:31 - 2014-09-07 12:13 - 00000000 ____D C:\Users\Gangosan
        2017-01-08 15:19 - 2016-11-22 12:30 - 00000000 ____D C:\ProgramData\MFAData
        2017-01-08 15:16 - 2016-11-22 12:28 - 00003590 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
        2017-01-08 15:01 - 2014-09-07 09:57 - 00003950 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{91287D26-26EB-4B28-92DC-BD5F0F30A1C5}
        2017-01-08 14:53 - 2014-09-26 19:12 - 00000000 ____D C:\ProgramData\ProductData
        2017-01-08 00:09 - 2016-07-23 19:04 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\Skype
        2017-01-07 23:57 - 2015-02-06 21:48 - 00000000 ____D C:\Users\Gangosan\AppData\Local\CrashDumps
        2017-01-07 23:16 - 2015-06-04 21:55 - 00000000 ____D C:\Program Files\Java
        2017-01-07 23:09 - 2014-11-29 19:10 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\Mozilla
        2017-01-07 22:58 - 2015-08-25 20:33 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\QuickScan
        2017-01-07 22:50 - 2014-09-26 18:59 - 00000000 ____D C:\ProgramData\Ashampoo
        2017-01-07 22:49 - 2014-09-26 18:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
        2017-01-07 22:49 - 2014-09-26 18:59 - 00000000 ____D C:\Program Files (x86)\Ashampoo
        2017-01-07 00:33 - 2016-12-08 00:19 - 00000000 ____D C:\Users\Gangosan\Compressed
        2017-01-07 00:32 - 2016-10-21 11:47 - 00002216 ____R C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gооglе Сhrоmе.lnk
        2017-01-07 00:32 - 2016-10-13 01:22 - 00001865 ____R C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Моzillа Firеfох.lnk
        2017-01-07 00:32 - 2016-09-02 00:09 - 00000000 ____D C:\Program Files\Mozilla Firefox
        2017-01-07 00:32 - 2014-09-07 12:13 - 00002048 ____R C:\Users\Gangosan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Intеrnеt Ехplоrеr.lnk
        2017-01-07 00:32 - 2014-09-07 12:13 - 00002048 ____R C:\Users\Gangosan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Intеrnеt Ехplоrеr (64-bit).lnk
        2017-01-06 11:52 - 2016-08-31 10:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
        2017-01-04 10:54 - 2009-07-14 05:13 - 00781790 _____ C:\Windows\system32\PerfStringBackup.INI
        2017-01-04 10:54 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\inf
        2017-01-03 13:27 - 2015-03-30 13:46 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\vlc
        2017-01-03 13:25 - 2016-12-06 01:17 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\AntDM
        2017-01-02 14:33 - 2016-11-22 12:32 - 00000936 ____N C:\Users\Public\Desktop\AVG Protection.lnk
        2017-01-02 14:33 - 2016-11-22 12:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
        2017-01-02 14:31 - 2016-11-22 12:26 - 00000000 ____D C:\Users\Gangosan\AppData\Local\Avg
        2016-12-29 19:37 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\system32\config\TxR
        2016-12-18 12:57 - 2014-09-07 10:14 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\uTorrent
        2016-12-18 11:02 - 2014-09-07 12:13 - 00000000 ____D C:\Users\Gangosan\AppData\Local\Microsoft
        2016-12-18 10:38 - 2014-12-03 16:21 - 00000000 ____D C:\ProgramData\Malwarebytes
        2016-12-18 10:16 - 2014-12-03 19:44 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\TeamViewer
        2016-12-17 17:35 - 2009-07-14 03:20 - 00000000 ____D C:\Windows\SysWOW64\drivers
        2016-12-17 17:21 - 2014-09-07 22:05 - 00000000 ____D C:\Windows\Prefetch
        2016-12-17 12:01 - 2016-11-12 16:58 - 00000000 ____D C:\Users\Gangosan\AppData\Local\Apps\2.0
        2016-12-16 21:42 - 2015-07-06 10:58 - 00807000 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
        2016-12-16 21:42 - 2015-07-06 10:58 - 00144984 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
        2016-12-16 21:42 - 2015-07-06 10:58 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
        2016-12-16 21:42 - 2015-04-29 18:01 - 00000000 ____D C:\Windows\SysWOW64\Macromed
        2016-12-16 21:42 - 2015-04-29 18:01 - 00000000 ____D C:\Windows\system32\Macromed
        2016-12-16 21:06 - 2015-06-05 16:34 - 00003614 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1996132808-4018277664-1723909242-1000UA
        2016-12-16 21:06 - 2015-06-05 16:34 - 00003342 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1996132808-4018277664-1723909242-1000Core
        2016-12-16 20:53 - 2016-10-21 11:46 - 00003202 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
        2016-12-16 20:53 - 2014-09-07 10:06 - 00003330 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
        2016-12-09 00:40 - 2015-06-05 10:22 - 00000000 ____D C:\Users\Gangosan\AppData\Roaming\Apowersoft
        ==================== Files in the root of some directories =======
        2014-09-26 18:59 - 2015-01-18 21:20 - 0001211 _____ () C:\Users\Gangosan\AppData\Roaming\Ashampoo Gadge It event.log
        2015-12-26 13:43 - 2016-01-01 21:04 - 0000696 _____ () C:\Users\Gangosan\AppData\Roaming\burnaware.ini
        2016-06-08 09:31 - 2016-06-08 09:31 - 0125000 _____ (TechApplet LLC) C:\Users\Gangosan\AppData\Roaming\USB Lock.exe
        2015-10-19 21:18 - 2015-10-19 21:18 - 0011883 _____ () C:\Users\Gangosan\AppData\Local\HWVendorDetection.log
        2014-09-26 18:53 - 2015-01-18 21:25 - 0000912 _____ () C:\Users\Gangosan\AppData\Local\mcset.cfg
        2015-06-03 21:51 - 2015-12-02 01:42 - 0000600 _____ () C:\Users\Gangosan\AppData\Local\PUTTY.RND
        2014-11-30 00:21 - 2015-06-19 07:46 - 0007597 _____ () C:\Users\Gangosan\AppData\Local\Resmon.ResmonCfg
        2015-08-25 20:37 - 2015-08-25 20:37 - 0486342 _____ () C:\ProgramData\1440534830.bdinstall.bin
        ==================== Bamital & volsnap ======================
        (There is no automatic fix for files that do not pass verification.)
        C:\Windows\system32\winlogon.exe => File is digitally signed
        C:\Windows\system32\wininit.exe => File is digitally signed
        C:\Windows\SysWOW64\wininit.exe => File is digitally signed
        C:\Windows\explorer.exe => File is digitally signed
        C:\Windows\SysWOW64\explorer.exe => File is digitally signed
        C:\Windows\system32\svchost.exe => File is digitally signed
        C:\Windows\SysWOW64\svchost.exe => File is digitally signed
        C:\Windows\system32\services.exe => File is digitally signed
        C:\Windows\system32\User32.dll => File is digitally signed
        C:\Windows\SysWOW64\User32.dll => File is digitally signed
        C:\Windows\system32\userinit.exe => File is digitally signed
        C:\Windows\SysWOW64\userinit.exe => File is digitally signed
        C:\Windows\system32\rpcss.dll => File is digitally signed
        C:\Windows\system32\dnsapi.dll => File is digitally signed
        C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
        C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
        LastRegBack: 2017-01-03 00:10
        ==================== End of FRST.txt ============================
        Addition.txt
      • от dzaabo
        Здравейте .
        Имам въпрос .
        Възможно ли е да се направи Вирус който да скапе системата на човек , който иска да проникне във компютъра ви ?
        В смисъл ...Някой се опитва да те хакне ...И получава вирус  който да му съсипе компа на нападателя ! Тази тема не е дискутирана тук ...Или поне не я намерих ...
        Просто ми е интересно .едва ли имам какво да дам на някой от компа си на някой Освен да ми вземе пощата
        Но ! Все пак може ли да се измисли подобно нещо ?
        Даже като се замисля ...Това ще е по ефикасно от всякакви антивирусни програми ...Някой се опитва да ти навреди ..И тогава се активира вируса и го скапва
        Май мноо филми гледам а ?
    • Разглеждащи в момента   0 потребители

      Няма регистрирани потребители разглеждащи тази страница.

    • Дарение