Премини към съдържанието
Форумът в приложение

По-лесно сърфиране. Научи повече.

Kaldata.com - Форуми

Приложение на форума на цял екран с push известия, значки и други.

За да инсталирате това приложение на iOS и iPadOS
  1. Докоснете Иконата за споделяне в Safari
  2. Превъртете менюто и докоснете Добавяне към началния екран.
  3. Докоснете Добавяне в горния десен ъгъл.
За да инсталирате това приложение на Android
  1. Докоснете менюто с 3 точки (⋮) в горния десен ъгъл на браузъра.
  2. Докоснете Добавяне към началния екран или Инсталиране на приложение.
  3. Потвърдете, като докоснете Инсталиране.

Добре дошли!

Добре дошли в нашите форуми, пълни с полезна информация. Имате проблем с компютъра или телефона си? Публикувайте нова тема и ще намерите решение на всичките си проблеми. Общувайте свободно и открийте безброй нови приятели.

Моля, регистрирайте се за да публикувате тема и да получите пълен достъп до всички функции.

 

Гаден вирус може би?

Featured Replies

Здравейте,от седмица mozzilla и chrome са ужасно бавни,забиват..Днес в task m. видях че chrome exe. 32 се изпълнява 6 пъти едновременно.Не съм много навътре в нещата,това нормално ли е? След скан с Security Essentials y Malwarebytes не съобщава за никакви нередности   # AdwCleaner v2.303 - Logfile created 06/13/2013 at 23:58:47 # Updated 08/06/2013 by Xplode # Operating system : Windows 7 Ultimate Service Pack 1 (64 bits) # User : Zdravomir - ZDRAVOMIR-PC # Boot Mode : Normal # Running from : C:UsersZdravomirDownloadsadwcleaner.exe # Option [Delete] ***** [services] ***** ***** [Files / Folders] ***** Folder Deleted : C:ProgramDataboost_interprocess Folder Deleted : C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultStumbleUpon ***** [Registry] ***** Key Deleted : HKCUSoftwareAPN PIP Key Deleted : HKCUSoftwareConduit Key Deleted : HKCUSoftwarePIP Key Deleted : HKLMSOFTWAREClassesAppID{4D076AB4-7562-427A-B5D2-BD96E19DEE56} Key Deleted : HKLMSOFTWAREClassesAppIDsecman.DLL Key Deleted : HKLMSOFTWAREClassesTypeLib{11549FE4-7C5A-4C17-9FC3-56FC5162A994} Key Deleted : HKLMSoftwarePIP Key Deleted : HKLMSOFTWAREWow6432NodeClassesCLSID{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Key Deleted : HKLMSOFTWAREWow6432NodeClassesCLSID{826D7151-8D99-434B-8540-082B8C2AE556} Key Deleted : HKLMSOFTWAREWow6432NodeClassesInterface{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Key Deleted : HKLMSOFTWAREClassesInterface{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} ***** [internet Browsers] ***** - Internet Explorer v9.0.8112.16490 [OK] Registry is clean. - Mozilla Firefox v21.0 (es-ES) File : C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultprefs.js C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultuser.js ... Deleted ! Deleted : user_pref("aol_toolbar.surf.date", "2"); Deleted : user_pref("aol_toolbar.surf.lastDate", "20"); Deleted : user_pref("aol_toolbar.surf.lastMonth", "10"); Deleted : user_pref("aol_toolbar.surf.lastYear", "2012"); Deleted : user_pref("aol_toolbar.surf.month", "2"); Deleted : user_pref("aol_toolbar.surf.prevMonth", "0"); Deleted : user_pref("aol_toolbar.surf.total", "2"); Deleted : user_pref("aol_toolbar.surf.week", "2"); Deleted : user_pref("aol_toolbar.surf.year", "2"); - Google Chrome v27.0.1453.110 File : C:UsersZdravomirAppDataLocalGoogleChromeUser DataDefaultPreferences [OK] File is clean. ************************* AdwCleaner[s1].txt - [2294 octets] - [13/06/2013 23:58:47] ########## EOF - C:AdwCleaner[s1].txt - [2354 octets] ##########

Посети раздела за вируси и следвай стъпките там, за да могат HJT Team да ти помогнат. Ето линк към темата.

  • Автор

Посети раздела за вируси и следвай стъпките там, за да могат HJT Team да ти помогнат. Ето линк към темата.

Благодаря

DDS (Ver_2011-09-30.01) - NTFS_AMD64

Internet Explorer: 9.0.8112.16421

Run by Zdravomir at 12:13:48 on 2013-06-14

Microsoft Windows 7 Ultimate 6.1.7601.1.1251.359.1033.18.3071.1335 [GMT 2:00]

.

AV: Microsoft Security Essentials *Enabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}

SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Microsoft Security Essentials *Enabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}

.

============== Running Processes ===============

.

C:Windowssystem32wininit.exe

C:Windowssystem32lsm.exe

C:Windowssystem32svchost.exe -k DcomLaunch

C:Windowssystem32svchost.exe -k RPCSS

C:Program FilesMicrosoft Security ClientMsMpEng.exe

C:Windowssystem32atiesrxx.exe

C:WindowsSystem32svchost.exe -k LocalServiceNetworkRestricted

C:WindowsSystem32svchost.exe -k LocalSystemNetworkRestricted

C:Windowssystem32svchost.exe -k LocalService

C:Windowssystem32svchost.exe -k netsvcs

C:Windowssystem32atieclxx.exe

C:Windowssystem32svchost.exe -k NetworkService

C:Windowssystem32Dwm.exe

C:Program Files (x86)ASUSATK PackageATK HotkeyASLDRSrv.exe

C:WindowsExplorer.EXE

C:Program Files (x86)ASUSATK PackageATKGFNEXGFNEXSrv.exe

C:WindowsSystem32spoolsv.exe

C:Windowssystem32taskhost.exe

C:Windowssystem32svchost.exe -k LocalServiceNoNetwork

C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe

C:Program Files (x86)ASUSATK PackageATK HotkeyHControl.exe

C:Windowssystem32taskeng.exe

C:Program Files (x86)ASUSATK PackageATKOSD2ATKOSD2.exe

C:Program Files (x86)Common FilesAppleMobile Device SupportAppleMobileDeviceService.exe

C:Program Files (x86)ASUSATK PackageATK HotkeyATKOSD.exe

C:Program FilesBonjourmDNSResponder.exe

C:Program Files (x86)Malwarebytes' Anti-Malwarembamscheduler.exe

C:Program Files (x86)ASUSATK PackageATK HotkeyWDC.exe

C:Program FilesMicrosoft Security Clientmsseces.exe

C:Program Files (x86)Malwarebytes' Anti-Malwarembamservice.exe

C:Program Files (x86)Malwarebytes' Anti-Malwarembamgui.exe

C:Program FilesSynapticsSynTPSynTPEnh.exe

C:Windowssystem32svchost.exe -k imgsvc

C:Program Files (x86)ASUSATK PackageATK MediaDMedia.exe

C:Program Files (x86)ASUSATK PackageATK HotkeyHControlUser.exe

C:Program Files (x86)Elaborate BytesVirtualCloneDriveVCDDaemon.exe

C:Program Files (x86)ATI TechnologiesATI.ACECore-StaticMOM.exe

C:Program Files (x86)ATI TechnologiesATI.ACECore-StaticCCC.exe

C:Windowssystem32SearchIndexer.exe

C:Program FilesiPodbiniPodService.exe

C:Program FilesMicrosoft Security ClientNisSrv.exe

C:WindowsMicrosoft.NetFramework64v3.0WPFPresentationFontCache.exe

C:Program FilesSynapticsSynTPSynTPHelper.exe

C:Program Files (x86)RealtekRealtek USB 2.0 Card ReaderRIconMan.exe

C:Windowssystem32svchost.exe -k LocalServiceAndNoImpersonation

C:Windowssystem32taskmgr.exe

C:Program Files (x86)Mozilla Firefoxfirefox.exe

C:Windowssystem32NOTEPAD.EXE

C:Program Files (x86)Mozilla Firefoxplugin-container.exe

C:WindowsSysWOW64MacromedFlashFlashPlayerPlugin_11_7_700_224.exe

C:WindowsSysWOW64MacromedFlashFlashPlayerPlugin_11_7_700_224.exe

C:Windowssystem32SearchProtocolHost.exe

C:Windowssystem32SearchFilterHost.exe

C:Windowssystem32conhost.exe

C:Windowssystem32wbemwmiprvse.exe

C:WindowsSystem32cscript.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxp://www.google.es/

uRun: [spotify Web Helper] "C:UsersZdravomirAppDataRoamingSpotifyDataSpotifyWebHelper.exe"

mRun: [ATKOSD2] C:Program Files (x86)ASUSATK PackageATKOSD2ATKOSD2.exe

mRun: [ATKMEDIA] C:Program Files (x86)ASUSATK PackageATK MediaDMedia.exe

mRun: [HControlUser] C:Program Files (x86)ASUSATK PackageATK HotkeyHControlUser.exe

mRun: [APSDaemon] "C:Program Files (x86)Common FilesAppleApple Application SupportAPSDaemon.exe"

mRun: [Adobe ARM] "C:Program Files (x86)Common FilesAdobeARM1.0AdobeARM.exe"

mRun: [VirtualCloneDrive] "C:Program Files (x86)Elaborate BytesVirtualCloneDriveVCDDaemon.exe" /s

mRun: [switchBoard] C:Program Files (x86)Common FilesAdobeSwitchBoardSwitchBoard.exe

mRun: [AdobeCS6ServiceManager] "C:Program Files (x86)Common FilesAdobeCS6ServiceManagerCS6ServiceManager.exe" -launchedbylogin

mRun: [startCCC] "C:Program Files (x86)ATI TechnologiesATI.ACECore-StaticCLIStart.exe" MSRun

mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:Program Files (x86)AMD AVTbinkdbsync.exe" aml

mRun: [iTunesHelper] "C:Program Files (x86)iTunesiTunesHelper.exe"

uPolicies-Explorer: NoDrives = dword:0

mPolicies-Explorer: NoDrives = dword:0

mPolicies-System: ConsentPromptBehaviorAdmin = dword:5

mPolicies-System: ConsentPromptBehaviorUser = dword:3

mPolicies-System: EnableUIADesktopToggle = dword:0

DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

TCP: NameServer =

TCP: Interfaces{856647FC-DBFD-44C3-8FE3-79748AA954D1} : DHCPNameServer =

TCP: Interfaces{856647FC-DBFD-44C3-8FE3-79748AA954D1}A544251465B4F4 : DHCPNameServer =

SSODL: WebCheck - <orphaned>

mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:Program Files (x86)GoogleChromeApplication27.0.1453.110Installerchrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome

x64-Run: [MSC] "C:Program FilesMicrosoft Security Clientmsseces.exe" -hide -runkey

x64-Run: [synTPEnh] C:Program Files (x86)SynapticsSynTPSynTPEnh.exe

x64-Run: [AdobeAAMUpdater-1.0] "C:Program Files (x86)Common FilesAdobeOOBEPDAppUWAUpdaterStartupUtility.exe"

x64-SSODL: WebCheck - <orphaned>

.

================= FIREFOX ===================

.

FF - ProfilePath - C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.default

FF - plugin: C:Program Files (x86)AdobeReader 10.0ReaderAIRnppdf32.dll

FF - plugin: C:Program Files (x86)GoogleUpdate1.3.21.145npGoogleUpdate3.dll

FF - plugin: C:UsersZdravomirAppDataLocalGoogleUpdate1.3.21.145npGoogleUpdate3.dll

FF - plugin: C:UsersZdravomirAppDataRoamingMozillapluginsnpgoogletalk.dll

FF - plugin: C:UsersZdravomirAppDataRoamingMozillapluginsnpgtpo3dautoplugin.dll

FF - plugin: C:UsersZdravomirAppDataRoamingMozillapluginsnpo1d.dll

FF - plugin: C:WindowsSysWOW64MacromedFlashNPSWF32_11_7_700_224.dll

FF - plugin: C:WindowsSysWOW64npDeployJava1.dll

FF - plugin: C:WindowsSysWOW64npmproxy.dll

.

============= SERVICES / DRIVERS ===============

.

R0 MpFilter;Microsoft Malware Protection Driver;C:WindowsSystem32driversMpFilter.sys [2013-1-20 230320]

R0 PxHlpa64;PxHlpa64;C:WindowsSystem32driversPxHlpa64.sys [2012-6-9 56208]

R1 vwififlt;Virtual WiFi Filter Driver;C:WindowsSystem32driversvwififlt.sys [2009-7-14 59904]

R2 AdobeARMservice;Adobe Acrobat Update Service;C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe [2013-5-10 65640]

R2 AMD External Events Utility;AMD External Events Utility;C:WindowsSystem32atiesrxx.exe [2012-7-4 238080]

R2 ASMMAP64;ASMMAP64;C:Program Files (x86)ASUSATK PackageATKGFNEXASMMAP64.sys [2009-7-2 15416]

R2 IconMan_R;IconMan_R;C:Program Files (x86)RealtekRealtek USB 2.0 Card ReaderRIconMan.exe [2013-4-11 2464400]

R2 MBAMScheduler;MBAMScheduler;C:Program Files (x86)Malwarebytes' Anti-Malwarembamscheduler.exe [2013-3-3 418376]

R2 MBAMService;MBAMService;C:Program Files (x86)Malwarebytes' Anti-Malwarembamservice.exe [2013-3-3 701512]

R2 NisDrv;Microsoft Network Inspection System;C:WindowsSystem32driversNisDrvWFP.sys [2012-3-20 130008]

R3 amdkmdag;amdkmdag;C:WindowsSystem32driversatikmdag.sys [2012-7-4 11922944]

R3 amdkmdap;amdkmdap;C:WindowsSystem32driversatikmpag.sys [2012-7-4 359936]

R3 MBAMProtector;MBAMProtector;C:WindowsSystem32driversmbam.sys [2012-8-12 25928]

R3 NisSrv;Microsoft Network Inspection;C:Program FilesMicrosoft Security ClientNisSrv.exe [2013-1-27 379360]

R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:WindowsSystem32driversRtsUStor.sys [2013-4-11 243712]

R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;C:WindowsSystem32driversSiSG664.sys [2009-6-10 56832]

R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:WindowsSystem32driversvwifimp.sys [2009-7-14 17920]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:WindowsMicrosoft.NETFrameworkv4.0.30319mscorsvw.exe [2010-3-18 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:WindowsMicrosoft.NETFramework64v4.0.30319mscorsvw.exe [2010-3-18 138576]

S2 gupdate;Google Update Service (gupdate);C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [2013-3-3 116648]

S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:WindowsSysWOW64MacromedFlashFlashPlayerUpdateService.exe [2012-5-25 256904]

S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;C:WindowsSystem32driversssadadb.sys [2012-10-2 36328]

S3 dmvsc;dmvsc;C:WindowsSystem32driversdmvsc.sys [2010-11-21 71168]

S3 DrvAgent64;DrvAgent64;C:WindowsSysWOW64driversDrvAgent64.SYS [2013-5-29 21712]

S3 gupdatem;Google Update Service (gupdatem);C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [2013-3-3 116648]

S3 MozillaMaintenance;Mozilla Maintenance Service;C:Program Files (x86)Mozilla Maintenance Servicemaintenanceservice.exe [2013-3-3 117144]

S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:WindowsSystem32driversrdpvideominiport.sys [2010-11-21 20992]

S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);C:WindowsSystem32driversssadbus.sys [2012-10-2 157672]

S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);C:WindowsSystem32driversssadmdfl.sys [2012-10-2 16872]

S3 ssadmdm;SAMSUNG Android USB Modem Drivers;C:WindowsSystem32driversssadmdm.sys [2012-10-2 177640]

S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);C:WindowsSystem32driversssadserd.sys [2012-10-2 146920]

S3 SwitchBoard;SwitchBoard;C:Program Files (x86)Common FilesAdobeSwitchBoardSwitchBoard.exe [2010-2-19 517096]

S3 Synth3dVsc;Synth3dVsc;C:WindowsSystem32driversSynth3dVsc.sys [2010-11-21 88960]

S3 terminpt;Microsoft Remote Desktop Input Driver;C:WindowsSystem32driversterminpt.sys [2010-11-21 34816]

S3 TsUsbFlt;TsUsbFlt;C:WindowsSystem32driversTsUsbFlt.sys [2010-11-21 59392]

S3 TsUsbGD;Remote Desktop Generic USB Device;C:WindowsSystem32driversTsUsbGD.sys [2010-11-21 31232]

S3 tsusbhub;tsusbhub;C:WindowsSystem32driverstsusbhub.sys [2010-11-21 117248]

S3 USBAAPL64;Apple Mobile USB Driver;C:WindowsSystem32driversusbaapl64.sys [2012-12-13 54784]

S3 WatAdminSvc;Windows Activation Technologies Service;C:WindowsSystem32WatWatAdminSvc.exe [2012-5-26 1255736]

.

=============== File Associations ===============

.

FileExt: .txt: UltraEdit.txt - HKCR*Shell="C:Program Files (x86)K-Lite Codec PackToolsMediaInfo.exe" "%1" [userChoice] [default=MediaInfo - 'Open' doesn't exist]

FileExt: .ini: UltraEdit.ini - HKCR*Shell="C:Program Files (x86)K-Lite Codec PackToolsMediaInfo.exe" "%1" [userChoice] [default=MediaInfo - 'Open' doesn't exist]

FileExt: .js: UltraEdit.js - HKCR*Shell="C:Program Files (x86)K-Lite Codec PackToolsMediaInfo.exe" "%1" [userChoice] [default=MediaInfo - 'Open' doesn't exist]

.

=============== Created Last 30 ================

.

2013-06-14 09:38:24  76232  ----a-w-  C:ProgramDataMicrosoftMicrosoft AntimalwareDefinition Updates{4E9D335F-2B9D-44AA-961E-B67146764189}offreg.dll

2013-06-14 05:35:19  9460464  ----a-w-  C:ProgramDataMicrosoftMicrosoft AntimalwareDefinition Updates{4E9D335F-2B9D-44AA-961E-B67146764189}mpengine.dll

2013-06-14 00:30:00  --------  d-sh--w-  C:$RECYCLE.BIN

2013-06-12 15:39:33  9460464  ----a-w-  C:ProgramDataMicrosoftMicrosoft AntimalwareDefinition UpdatesBackupmpengine.dll

2013-06-12 13:10:28  1910632  ----a-w-  C:WindowsSystem32driverstcpip.sys

2013-06-12 13:10:19  751104  ----a-w-  C:WindowsSystem32win32spl.dll

2013-06-12 13:10:19  492544  ----a-w-  C:WindowsSysWow64win32spl.dll

2013-06-12 13:10:03  30720  ----a-w-  C:WindowsSystem32cryptdlg.dll

2013-06-12 13:10:03  24576  ----a-w-  C:WindowsSysWow64cryptdlg.dll

2013-05-29 09:34:30  21712  ----a-w-  C:WindowsSysWow64driversDrvAgent64.SYS

2013-05-29 09:30:34  --------  d-----w-  C:Program Files (x86)Lavalys

2013-05-29 08:44:15  983400  ----a-w-  C:WindowsSystem32driversdxgkrnl.sys

2013-05-29 08:44:15  265064  ----a-w-  C:WindowsSystem32driversdxgmms1.sys

2013-05-29 08:44:14  144384  ----a-w-  C:WindowsSystem32cdd.dll

2013-05-29 08:43:48  1930752  ----a-w-  C:WindowsSystem32authui.dll

2013-05-29 08:43:47  70144  ----a-w-  C:WindowsSystem32appinfo.dll

2013-05-29 08:43:47  1796096  ----a-w-  C:WindowsSysWow64authui.dll

2013-05-29 08:43:47  111448  ----a-w-  C:WindowsSystem32consent.exe

2013-05-29 08:43:08  48640  ----a-w-  C:WindowsSystem32wwanprotdim.dll

2013-05-29 08:43:08  230400  ----a-w-  C:WindowsSystem32wwansvc.dll

2013-05-29 08:43:06  1656680  ----a-w-  C:WindowsSystem32driversntfs.sys

2013-05-29 08:43:01  3153920  ----a-w-  C:WindowsSystem32win32k.sys

2013-05-28 22:32:56  --------  d-----w-  C:UsersZdravomirAppDataLocalSDEditor3

2013-05-28 22:31:37  --------  d-----w-  C:ProgramDataCanon_Inc_IC

2013-05-28 19:22:39  --------  d-----w-  C:found.000

2013-05-28 18:36:00  --------  d-----w-  C:Program Files (x86)Siemens

2013-05-28 18:34:15  63488  ----a-w-  C:Program Files (x86)Common FilesInstallShieldProfessionalRunTime1100Intel32ISBEW64.exe

2013-05-28 18:34:15  32768  ----a-w-  C:Program Files (x86)Common FilesInstallShieldProfessionalRunTimeObjectps.dll

2013-05-28 18:34:14  69714  ----a-w-  C:Program Files (x86)Common FilesInstallShieldProfessionalRunTime1100Intel32ctor.dll

2013-05-28 18:34:14  274432  ----a-w-  C:Program Files (x86)Common FilesInstallShieldProfessionalRunTime1100Intel32iscript.dll

2013-05-28 18:34:14  184320  ----a-w-  C:Program Files (x86)Common FilesInstallShieldProfessionalRunTime1100Intel32iuser.dll

2013-05-28 18:34:13  753664  ----a-w-  C:Program Files (x86)Common FilesInstallShieldProfessionalRunTime1100Intel32iKernel.dll

2013-05-28 18:34:13  5632  ----a-w-  C:Program Files (x86)Common FilesInstallShieldProfessionalRunTime1100Intel32DotNetInstaller.exe

2013-05-28 18:34:10  200836  ----a-w-  C:Program Files (x86)Common FilesInstallShieldProfessionalRunTime1100Intel32iGdi.dll

2013-05-28 18:34:09  331908  ----a-w-  C:Program Files (x86)Common FilesInstallShieldProfessionalRunTime1100Intel32setup.dll

2013-05-21 17:38:43  --------  d-----w-  C:UsersZdravomiraeat

2013-05-21 10:49:37  964552  ------w-  C:ProgramDataMicrosoftMicrosoft AntimalwareDefinition Updates{FE460369-D2C4-4453-AB55-AAEF6EF85246}gapaengine.dll

2013-05-20 14:35:29  262552  ----a-w-  C:Program Files (x86)Mozilla Firefoxbrowsercomponentsbrowsercomps.dll

2013-05-19 15:56:27  33240  ----a-w-  C:WindowsSystem32driversGEARAspiWDM.sys

2013-05-19 15:54:45  --------  d-----w-  C:Program FilesiPod

2013-05-19 15:54:44  --------  d-----w-  C:ProgramData34BE82C4-E596-4e99-A191-52C6199EBF69

2013-05-19 15:54:44  --------  d-----w-  C:Program FilesiTunes

2013-05-19 15:54:44  --------  d-----w-  C:Program Files (x86)iTunes

2013-05-19 15:53:00  --------  d-----w-  C:Program FilesBonjour

2013-05-19 15:53:00  --------  d-----w-  C:Program Files (x86)Bonjour

.

==================== Find3M  ====================

.

2013-06-11 19:46:23  71048  ----a-w-  C:WindowsSysWow64FlashPlayerCPLApp.cpl

2013-06-11 19:46:23  692104  ----a-w-  C:WindowsSysWow64FlashPlayerApp.exe

2013-05-17 03:09:56  2312704  ----a-w-  C:WindowsSystem32jscript9.dll

2013-05-17 03:02:29  1392128  ----a-w-  C:WindowsSystem32wininet.dll

2013-05-17 03:01:13  1494528  ----a-w-  C:WindowsSystem32inetcpl.cpl

2013-05-17 02:56:09  173056  ----a-w-  C:WindowsSystem32ieUnatt.exe

2013-05-17 02:56:00  599040  ----a-w-  C:WindowsSystem32vbscript.dll

2013-05-17 02:51:27  2382848  ----a-w-  C:WindowsSystem32mshtml.tlb

2013-05-16 22:39:39  1800704  ----a-w-  C:WindowsSysWow64jscript9.dll

2013-05-16 22:28:26  1129472  ----a-w-  C:WindowsSysWow64wininet.dll

2013-05-16 22:27:30  1427968  ----a-w-  C:WindowsSysWow64inetcpl.cpl

2013-05-16 22:21:37  142848  ----a-w-  C:WindowsSysWow64ieUnatt.exe

2013-05-16 22:20:30  420864  ----a-w-  C:WindowsSysWow64vbscript.dll

2013-05-16 22:16:57  2382848  ----a-w-  C:WindowsSysWow64mshtml.tlb

2013-05-13 05:51:01  184320  ----a-w-  C:WindowsSystem32cryptsvc.dll

2013-05-13 05:51:00  1464320  ----a-w-  C:WindowsSystem32crypt32.dll

2013-05-13 05:51:00  139776  ----a-w-  C:WindowsSystem32cryptnet.dll

2013-05-13 05:50:40  52224  ----a-w-  C:WindowsSystem32certenc.dll

2013-05-13 04:45:55  140288  ----a-w-  C:WindowsSysWow64cryptsvc.dll

2013-05-13 04:45:55  1160192  ----a-w-  C:WindowsSysWow64crypt32.dll

2013-05-13 04:45:55  103936  ----a-w-  C:WindowsSysWow64cryptnet.dll

2013-05-13 03:43:55  1192448  ----a-w-  C:WindowsSystem32certutil.exe

2013-05-13 03:08:10  903168  ----a-w-  C:WindowsSysWow64certutil.exe

2013-05-13 03:08:06  43008  ----a-w-  C:WindowsSysWow64certenc.dll

2013-05-02 15:29:56  278800  ------w-  C:WindowsSystem32MpSigStub.exe

2013-04-25 23:30:32  1505280  ----a-w-  C:WindowsSysWow64d3d11.dll

2013-04-17 07:02:06  1230336  ----a-w-  C:WindowsSysWow64WindowsCodecs.dll

2013-04-17 06:24:46  1424384  ----a-w-  C:WindowsSystem32WindowsCodecs.dll

2013-04-13 05:49:23  135168  ----a-w-  C:WindowsapppatchAppPatch64AcXtrnal.dll

2013-04-13 05:49:19  350208  ----a-w-  C:WindowsapppatchAppPatch64AcLayers.dll

2013-04-13 05:49:19  308736  ----a-w-  C:WindowsapppatchAppPatch64AcGenral.dll

2013-04-13 05:49:19  111104  ----a-w-  C:WindowsapppatchAppPatch64acspecfc.dll

2013-04-13 04:45:16  474624  ----a-w-  C:WindowsapppatchAcSpecfc.dll

2013-04-13 04:45:15  2176512  ----a-w-  C:WindowsapppatchAcGenral.dll

2013-04-06 08:36:34  861088  ----a-w-  C:WindowsSysWow64npDeployJava1.dll

2013-04-06 08:36:34  782240  ----a-w-  C:WindowsSysWow64deployJava1.dll

2013-04-04 12:50:32  25928  ----a-w-  C:WindowsSystem32driversmbam.sys

2013-03-31 22:52:16  1887232  ----a-w-  C:WindowsSystem32d3d11.dll

2013-03-19 06:04:06  5550424  ----a-w-  C:WindowsSystem32ntoskrnl.exe

2013-03-19 05:46:56  43520  ----a-w-  C:WindowsSystem32csrsrv.dll

2013-03-19 05:04:13  3968856  ----a-w-  C:WindowsSysWow64ntkrnlpa.exe

2013-03-19 05:04:10  3913560  ----a-w-  C:WindowsSysWow64ntoskrnl.exe

2013-03-19 04:47:50  6656  ----a-w-  C:WindowsSysWow64apisetschema.dll

2013-03-19 03:06:33  112640  ----a-w-  C:WindowsSystem32smss.exe

.

============= FINISH: 12:14:35.24 ===============

 

Редактирано от zdravomir (преглед на промените)

Здравейте, съжалявам за забавянето. Нека да проверим за какво става дума, затова:

[*]Изтеглете тази специална версия на RKill.exe и го запазете на вашия десктоп.

[*]Стартирате програмата с двоен клик върху файла и изчакайте търпеливо.

[*]След приключване на проверката ще се генерира лог файл с извършените процедури.

[*]Прикачете лог файла в следващия си пост.

  • Автор

Здравейте, съжалявам за забавянето. Нека да проверим за какво става дума, затова:

[*]Изтеглете тази специална версия на RKill.exe и го запазете на вашия десктоп.

[*]Стартирате програмата с двоен клик върху файла и изчакайте търпеливо.

[*]След приключване на проверката ще се генерира лог файл с извършените процедури.

[*]Прикачете лог файла в следващия си пост.

 

Ще излезе че нямам вируси и подобни ,май проблемът е другаде,като цяло компа ми е адски бавен,всичко забива от няколко дни.

Ето и лог файла:

Rkill 2.5.4 by Lawrence Abrams (Grinler)

http://www.bleepingcomputer.com/

Copyright 2008-2013 BleepingComputer.com

More Information about Rkill can be found at this link:

 http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 06/15/2013 08:06:56 PM in x64 mode.

Windows Version: Windows 7 Ultimate Service Pack 1

Checking for Windows services to stop:

 * No malware services found to stop.

Checking for processes to terminate:

 * No malware processes found to kill.

Checking Registry for malware related settings:

 * No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

 * No issues found.

Checking Windows Service Integrity:

 * No issues found.

Searching for Missing Digital Signatures:

 * No issues found.

Checking HOSTS File:

 * HOSTS file entries found:

  127.0.0.1  localhost

Program finished at: 06/15/2013 08:08:44 PM

Execution time: 0 hours(s), 1 minute(s), and 48 seconds(s)

О.К. Нека да проверим малко по-детайлно нещата със софтуера, има време и за хардуера. Следва:

  • [*]Изтеглете
Farbar Recovery Scan Tool и го запазете на десктопа. [*]Стартирайте файла FRST.exe. [*]Програмата ще се стартира. Натиснете YES за да се съгласите с лицензионното споразумение. [*]Сложете всички отметки. [*]Натиснете бутона SCAN. [*]Ще се създадат два лог файл с името - FRST.txt и Addition.txt на десктопа. [*]Прикачете лог файловете в следващия си коментар.

  • Автор

 

О.К. Нека да проверим малко по-детайлно нещата със софтуера, има време и за хардуера. Следва:

[*]Изтеглете Farbar Recovery Scan Tool и го запазете на десктопа.

[*]Стартирайте файла FRST.exe.

[*]Програмата ще се стартира. Натиснете YES за да се съгласите с лицензионното споразумение.

[*]Сложете всички отметки.

[*]Натиснете бутона SCAN.

[*]Ще се създадат два лог файл с името - FRST.txt и Addition.txt на десктопа.

[*]Прикачете лог файловете в следващия си коментар.

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-06-2013

Ran by Zdravomir (administrator) on 15-06-2013 20:33:04

Running from C:UsersZdravomirDesktop

Windows 7 Ultimate Service Pack 1 (X64) OS Language: English(US)

Internet Explorer Version 9

Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:Windowssystem32atiesrxx.exe

(AMD) C:Windowssystem32atieclxx.exe

(ASUS) C:Program Files (x86)ASUSATK PackageATK HotkeyASLDRSrv.exe

(ASUS) C:Program Files (x86)ASUSATK PackageATKGFNEXGFNEXSrv.exe

(Apple Inc.) C:Program FilesBonjourmDNSResponder.exe

(ASUS) C:Program Files (x86)ASUSATK PackageATK HotkeyHControl.exe

(Malwarebytes Corporation) C:Program Files (x86)Malwarebytes' Anti-Malwarembamscheduler.exe

(ASUS) C:Program Files (x86)ASUSATK PackageATKOSD2ATKOSD2.exe

(Microsoft Corporation) C:Program FilesMicrosoft Security Clientmsseces.exe

(Synaptics Incorporated) C:Program FilesSynapticsSynTPSynTPEnh.exe

(Malwarebytes Corporation) C:Program Files (x86)Malwarebytes' Anti-Malwarembamservice.exe

(Skype Technologies S.A.) C:ProgramDataSkypeToolbarsSkype C2C Servicec2c_service.exe

(ASUS) C:Program Files (x86)ASUSATK PackageATK HotkeyATKOSD.exe

(ASUS) C:Program Files (x86)ASUSATK PackageATK HotkeyWDC.exe

(Malwarebytes Corporation) C:Program Files (x86)Malwarebytes' Anti-Malwarembamgui.exe

(ASUS) C:Program Files (x86)ASUSATK PackageATK MediaDMedia.exe

(ASUS) C:Program Files (x86)ASUSATK PackageATK HotkeyHControlUser.exe

(Microsoft Corporation) C:Program FilesMicrosoft Security ClientNisSrv.exe

(Synaptics Incorporated) C:Program FilesSynapticsSynTPSynTPHelper.exe

(Mozilla Corporation) C:Program Files (x86)Mozilla Firefoxfirefox.exe

(Realsil Microelectronics Inc.) C:Program Files (x86)RealtekRealtek USB 2.0 Card ReaderRIconMan.exe

(Skype Technologies S.A.) C:Program Files (x86)SkypePhoneSkype.exe

==================== Registry (Whitelisted) ==================

HKLM...Run: [MSC] "C:Program FilesMicrosoft Security Clientmsseces.exe" -hide -runkey [1281512 2013-01-27] (Microsoft Corporation)

HKLM...Run: [synTPEnh] %ProgramFiles%SynapticsSynTPSynTPEnh.exe [2785064 2011-05-05] (Synaptics Incorporated)

HKCU...Run: [AtiTrayTools] "C:Program Files (x86)Ray AdamsATI Tray Toolsatitray.exe" [929792 2011-10-29] (Ray Adams)

HKLM-x32...Run: [ATKOSD2] C:Program Files (x86)ASUSATK PackageATKOSD2ATKOSD2.exe [5732992 2010-08-17] (ASUS)

HKLM-x32...Run: [ATKMEDIA] C:Program Files (x86)ASUSATK PackageATK MediaDMedia.exe [170624 2010-10-07] (ASUS)

HKLM-x32...Run: [HControlUser] C:Program Files (x86)ASUSATK PackageATK HotkeyHControlUser.exe [105016 2009-06-19] (ASUS)

HKLM-x32...Run: [Adobe ARM] "C:Program Files (x86)Common FilesAdobeARM1.0AdobeARM.exe" [958576 2013-04-04] (Adobe Systems Incorporated)

HKLM-x32...Run: [switchBoard] C:Program Files (x86)Common FilesAdobeSwitchBoardSwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)

HKLM-x32...Run: [AdobeCS6ServiceManager] "C:Program Files (x86)Common FilesAdobeCS6ServiceManagerCS6ServiceManager.exe" -launchedbylogin [1073312 2012-03-09] (Adobe Systems Incorporated)

==================== Internet (Whitelisted) ====================

HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.es/

HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

SearchScopes: HKCU - {65DCF973-6039-48AC-AC55-F793C26C54BF} URL = http://search.aol.com/aol/search?s_it=tb50winamp&q={searchTerms}

BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:Program Files (x86)SkypeToolbarsInternet Explorer x64skypeieplugin.dll (Skype Technologies S.A.)

BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:Program Files (x86)SkypeToolbarsInternet Explorerskypeieplugin.dll (Skype Technologies S.A.)

Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:Program Files (x86)SkypeToolbarsInternet Explorer x64skypeieplugin.dll (Skype Technologies S.A.)

Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:Program Files (x86)SkypeToolbarsInternet Explorerskypeieplugin.dll (Skype Technologies S.A.)

Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:PROGRA~2COMMON~1SkypeSKYPE4~1.DLL (Skype Technologies)

Hosts: 127.0.0.1  localhost

TcpipParameters: [DhcpNameServer] 192.168.1.1

FireFox:

========

FF ProfilePath: C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.default

FF Plugin: @adobe.com/FlashPlayer - C:Windowssystem32MacromedFlashNPSWF64_11_7_700_224.dll ()

FF Plugin: @microsoft.com/GENUINE - disabled No File

FF Plugin-x32: @adobe.com/FlashPlayer - C:WindowsSysWOW64MacromedFlashNPSWF32_11_7_700_224.dll ()

FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:Program Files (x86)iTunesMozilla Pluginsnpitunes.dll ()

FF Plugin-x32: @java.com/DTPlugin,version=10.17.2 - C:WindowsSysWOW64npDeployJava1.dll (Oracle Corporation)

FF Plugin-x32: @microsoft.com/GENUINE - disabled No File

FF Plugin-x32: @videolan.org/vlc,version=2.0.5 - C:Program Files (x86)VideoLANVLCnpvlc.dll (VideoLAN)

FF Plugin-x32: Adobe Reader - C:Program Files (x86)AdobeReader 10.0ReaderAIRnppdf32.dll (Adobe Systems Inc.)

FF Extension: Diccionario de Espanol/Espana - C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultExtensionses-es@dictionaries.addons.mozilla.org

FF Extension: FoxyProxy Basic - C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultExtensionsfoxyproxy@eric.h.jung

FF Extension: jid0-MXvUXM1npF7yTcY3bpZVht72AR4 - C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultExtensionsjid0-MXvUXM1npF7yTcY3bpZVht72AR4@jetpack.xpi

FF Extension: kaldata-news-ff-extension - C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultExtensionskaldata-news-ff-extension@kaldata.com.xpi

FF Extension: pinterest-addon - C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultExtensionspinterest-addon@felixfung.ca.xpi

FF Extension: No Name - C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultExtensions{AE93811A-5C9A-4d34-8462-F7B864FC4696}.xpi

FF Extension: No Name - C:UsersZdravomirAppDataRoamingMozillaFirefoxProfilesuqavbo2k.defaultExtensions{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

Chrome:

=======

CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}

CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}

CHR Plugin: (Shockwave Flash) - C:Program Files (x86)GoogleChromeApplication27.0.1453.110PepperFlashpepflashplayer.dll No File

CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer

CHR Plugin: (Native Client) - C:Program Files (x86)GoogleChromeApplication27.0.1453.110ppGoogleNaClPluginChrome.dll No File

CHR Plugin: (Chrome PDF Viewer) - C:Program Files (x86)GoogleChromeApplication27.0.1453.110pdf.dll No File

CHR Plugin: (Adobe Acrobat) - C:Program Files (x86)AdobeReader 10.0ReaderBrowsernppdf32.dll (Adobe Systems Inc.)

CHR Plugin: (QuickTime Plug-in 7.7.2) - C:Program Files (x86)QuickTimepluginsnpqtplugin.dll (Apple Inc.)

CHR Plugin: (QuickTime Plug-in 7.7.2) - C:Program Files (x86)QuickTimepluginsnpqtplugin2.dll (Apple Inc.)

CHR Plugin: (QuickTime Plug-in 7.7.2) - C:Program Files (x86)QuickTimepluginsnpqtplugin3.dll (Apple Inc.)

CHR Plugin: (QuickTime Plug-in 7.7.2) - C:Program Files (x86)QuickTimepluginsnpqtplugin4.dll (Apple Inc.)

CHR Plugin: (QuickTime Plug-in 7.7.2) - C:Program Files (x86)QuickTimepluginsnpqtplugin5.dll (Apple Inc.)

CHR Plugin: (QuickTime Plug-in 7.7.2) - C:Program Files (x86)QuickTimepluginsnpqtplugin6.dll (Apple Inc.)

CHR Plugin: (QuickTime Plug-in 7.7.2) - C:Program Files (x86)QuickTimepluginsnpqtplugin7.dll (Apple Inc.)

CHR Plugin: (Google Talk Plugin) - C:UsersZdravomirAppDataRoamingMozillapluginsnpgoogletalk.dll (Google)

CHR Plugin: (Google Talk Plugin Video Accelerator) - C:UsersZdravomirAppDataRoamingMozillapluginsnpgtpo3dautoplugin.dll ()

CHR Plugin: (Google Talk Plugin Video Renderer) - C:UsersZdravomirAppDataRoamingMozillapluginsnpo1d.dll (Google)

CHR Plugin: (Google Update) - C:Program Files (x86)GoogleUpdate1.3.21.135npGoogleUpdate3.dll No File

CHR Plugin: (Java Platform SE 7 U15) - C:Program Files (x86)Javajre7binplugin2npjp2.dll No File

CHR Plugin: (VLC Web Plugin) - C:Program Files (x86)VideoLANVLCnpvlc.dll (VideoLAN)

CHR Plugin: (Shockwave Flash) - C:WindowsSysWOW64MacromedFlashNPSWF32_11_6_602_171.dll No File

CHR Plugin: (Java Deployment Toolkit 7.0.150.3) - C:WindowsSysWOW64npDeployJava1.dll (Oracle Corporation)

CHR Extension: (Google Docs) - C:UsersZdravomirAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake0.5_0

CHR Extension: (Google Drive) - C:UsersZdravomirAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf6.3_0

CHR Extension: (Weather (extension)) - C:UsersZdravomirAppDataLocalGoogleChromeUser DataDefaultExtensionsbeapnbfmjmjhhfpaoajfhjbbfnnlfpnc0.9.0.7_0

CHR Extension: (YouTube) - C:UsersZdravomirAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo4.2.6_0

CHR Extension: (Adblock Plus) - C:UsersZdravomirAppDataLocalGoogleChromeUser DataDefaultExtensionscfhdojbkjhnklbpkdaibdccddilifddb1.4.1_0

CHR Extension: (Google Search) - C:UsersZdravomirAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf0.0.0.20_0

CHR Extension: (Dnevnik.bg) - C:UsersZdravomirAppDataLocalGoogleChromeUser DataDefaultExtensionsfgpgbimpbapjogkgkgmdkcdimopnnljb0.3_0

CHR Extension: (Gmail) - C:UsersZdravomirAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia7_0

==================== Services (Whitelisted) =================

R2 IconMan_R; C:Program Files (x86)RealtekRealtek USB 2.0 Card ReaderRIconMan.exe [2464400 2012-09-07] (Realsil Microelectronics Inc.)

R2 MBAMScheduler; C:Program Files (x86)Malwarebytes' Anti-Malwarembamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)

R2 MBAMService; C:Program Files (x86)Malwarebytes' Anti-Malwarembamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)

R2 MsMpSvc; C:Program FilesMicrosoft Security ClientMsMpEng.exe [22056 2013-01-27] (Microsoft Corporation)

R3 NisSrv; C:Program FilesMicrosoft Security ClientNisSrv.exe [379360 2013-01-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

R3 MBAMProtector; C:Windowssystem32driversmbam.sys [25928 2013-04-04] (Malwarebytes Corporation)

R3 MBAMProtector; C:Windowssystem32driversmbam.sys [25928 2013-04-04] (Malwarebytes Corporation)

R0 MpFilter; C:WindowsSystem32DRIVERSMpFilter.sys [230320 2013-01-20] (Microsoft Corporation)

R2 NisDrv; C:WindowsSystem32DRIVERSNisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation)

S3 Serial; C:Windowssystem32driversserial.sys [94208 2009-07-14] (Brother Industries Ltd.)

R3 smserial; C:WindowsSystem32DRIVERSSmSerl64.sys [1227776 2009-06-10] (Motorola Inc.)

R3 SNP2UVC; C:WindowsSystem32DRIVERSsnp2uvc.sys [1799680 2009-07-18] ()

S3 catchme; ??C:ComboFixcatchme.sys [x]

S3 dgderdrv; System32driversdgderdrv.sys [x]

S3 IntcAzAudAddService; system32driversRTKVHD64.sys [x]

S3 sscdbus; system32DRIVERSsscdbus.sys [x]

S3 sscdmdfl; system32DRIVERSsscdmdfl.sys [x]

S3 sscdmdm; system32DRIVERSsscdmdm.sys [x]

S3 VGPU; System32driversrdvgkmd.sys [x]

========================== Drivers MD5 =======================

C:Windowssystem32drivers1394ohci.sys ==> MD5 is legit

C:WindowsSystem32driversACPI.sys ==> MD5 is legit

C:Windowssystem32driversacpipmi.sys ==> MD5 is legit

C:Windowssystem32driversadp94xx.sys ==> MD5 is legit

C:Windowssystem32driversadpahci.sys ==> MD5 is legit

C:Windowssystem32driversadpu320.sys ==> MD5 is legit

C:Windowssystem32driversafd.sys 1C7857B62DE5994A75B054A9FD4C3825

C:Windowssystem32driversagp440.sys ==> MD5 is legit

C:Windowssystem32driversaliide.sys ==> MD5 is legit

C:Windowssystem32driversamdide.sys ==> MD5 is legit

C:Windowssystem32driversamdk8.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSatipmdag.sys 9337B5FABC03CA44CD355F700DA9B25B

C:WindowsSystem32DRIVERSatikmpag.sys 560688A447E7A87F43774A2FF23A3E52

C:Windowssystem32driversamdppm.sys ==> MD5 is legit

C:Windowssystem32driversamdsata.sys D4121AE6D0C0E7E13AA221AA57EF2D49

C:Windowssystem32driversamdsbs.sys ==> MD5 is legit

C:WindowsSystem32driversamdxata.sys 540DAF1CEA6094886D72126FD7C33048

C:WindowsSystem32Driversssadadb.sys 4DE0D5D747A73797C95A97DCCE5018B5

C:Windowssystem32driversappid.sys ==> MD5 is legit

C:Windowssystem32driversarc.sys ==> MD5 is legit

C:Windowssystem32driversarcsas.sys ==> MD5 is legit

C:Program Files (x86)ASUSATK PackageATKGFNEXASMMAP64.sys 4C016FD76ED5C05E84CA8CAB77993961

C:Program Files (x86)ASUSATK PackageATKGFNEXASMMAP64.sys 4C016FD76ED5C05E84CA8CAB77993961

C:WindowsSystem32DRIVERSasyncmac.sys ==> MD5 is legit

C:WindowsSystem32driversatapi.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSathrx.sys 6C572A50FB2BF1F70281FEB67188A486

C:WindowsSystem32DRIVERSatikmdag.sys 9337B5FABC03CA44CD355F700DA9B25B

C:Windowssystem32driversbxvbda.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSb57nd60a.sys ==> MD5 is legit

C:WindowsSystem32DriversBeep.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSblbdrive.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSbowser.sys ==> MD5 is legit

C:Windowssystem32driversBrFiltLo.sys ==> MD5 is legit

C:Windowssystem32driversBrFiltUp.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSbridge.sys 5C2F352A4E961D72518261257AAE204B

C:WindowsSystem32DriversBrserid.sys ==> MD5 is legit

C:WindowsSystem32DriversBrSerWdm.sys ==> MD5 is legit

C:WindowsSystem32DriversBrUsbMdm.sys ==> MD5 is legit

C:WindowsSystem32DriversBrUsbSer.sys ==> MD5 is legit

C:Windowssystem32driversbthmodem.sys ==> MD5 is legit

C:WindowsSystem32DRIVERScdfs.sys ==> MD5 is legit

C:WindowsSystem32DRIVERScdrom.sys ==> MD5 is legit

C:Windowssystem32driverscirclass.sys ==> MD5 is legit

C:WindowsSystem32CLFS.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSCmBatt.sys ==> MD5 is legit

C:Windowssystem32driverscmdide.sys ==> MD5 is legit

C:WindowsSystem32Driverscng.sys 9AC4F97C2D3E93367E2148EA940CD2CD

C:WindowsSystem32DRIVERScompbatt.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSCompositeBus.sys ==> MD5 is legit

C:Windowssystem32driverscrcdisk.sys ==> MD5 is legit

C:WindowsSystem32driverscsc.sys ==> MD5 is legit

C:WindowsSystem32Driversdfsc.sys ==> MD5 is legit

C:WindowsSystem32driversdiscache.sys ==> MD5 is legit

C:WindowsSystem32driversdisk.sys ==> MD5 is legit

C:Windowssystem32driversdmvsc.sys 5DB085A8A6600BE6401F2B24EECB5415

C:WindowsSystem32driversdrmkaud.sys ==> MD5 is legit

C:WindowsSysWOW64DriversDrvAgent64.SYS 1ED08A6264C5C92099D6D1DAE5E8F530

C:WindowsSysWOW64DriversDrvAgent64.SYS 1ED08A6264C5C92099D6D1DAE5E8F530

C:WindowsSystem32driversdxgkrnl.sys AF2E16242AA723F68F461B6EAE2EAD3D

C:Windowssystem32driversevbda.sys ==> MD5 is legit

C:WindowsSystem32DriversElbyCDIO.sys A05FC7ECA0966EBB70E4D17B855A853B

C:Windowssystem32driverselxstor.sys ==> MD5 is legit

C:Windowssystem32driverserrdev.sys ==> MD5 is legit

C:WindowsSystem32Driversexfat.sys ==> MD5 is legit

C:WindowsSystem32Driversfastfat.sys ==> MD5 is legit

C:Windowssystem32driversfdc.sys ==> MD5 is legit

C:WindowsSystem32driversfileinfo.sys ==> MD5 is legit

C:WindowsSystem32driversfiletrace.sys ==> MD5 is legit

C:Windowssystem32driversflpydisk.sys ==> MD5 is legit

C:WindowsSystem32driversfltmgr.sys ==> MD5 is legit

C:WindowsSystem32driversFsDepends.sys ==> MD5 is legit

C:WindowsSystem32DriversFs_Rec.sys 6BD9295CC032DD3077C671FCCF579A7B

C:WindowsSystem32DRIVERSfvevol.sys 8F6322049018354F45F05A2FD2D4E5E0

C:Windowssystem32driversgagp30kx.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSGEARAspiWDM.sys 8E98D21EE06192492A5671A6144D092F

C:Windowssystem32drivershcw85cir.sys ==> MD5 is legit

C:WindowsSystem32driversHdAudio.sys 975761C778E33CD22498059B91E7373A

C:WindowsSystem32DRIVERSHDAudBus.sys ==> MD5 is legit

C:Windowssystem32driversHidBatt.sys ==> MD5 is legit

C:Windowssystem32drivershidbth.sys ==> MD5 is legit

C:Windowssystem32drivershidir.sys ==> MD5 is legit

C:WindowsSystem32DRIVERShidusb.sys ==> MD5 is legit

C:Windowssystem32driversHpSAMD.sys ==> MD5 is legit

C:WindowsSystem32driversHTTP.sys ==> MD5 is legit

C:WindowsSystem32drivershwpolicy.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSi8042prt.sys ==> MD5 is legit

C:Windowssystem32driversiaStorV.sys AAAF44DB3BD0B9D1FB6969B23ECC8366

C:Windowssystem32driversiirsp.sys ==> MD5 is legit

C:Windowssystem32driversintelide.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSintelppm.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSipfltdrv.sys ==> MD5 is legit

C:Windowssystem32driversIPMIDrv.sys ==> MD5 is legit

C:WindowsSystem32driversipnat.sys ==> MD5 is legit

C:WindowsSystem32driversirenum.sys ==> MD5 is legit

C:Windowssystem32driversisapnp.sys ==> MD5 is legit

C:Windowssystem32driversmsiscsi.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSkbdclass.sys ==> MD5 is legit

C:Windowssystem32driverskbdhid.sys ==> MD5 is legit

C:WindowsSystem32Driversksecdd.sys 97A7070AEA4C058B6418519E869A63B4

C:WindowsSystem32Driversksecpkg.sys 26C43A7C2862447EC59DEDA188D1DA07

C:Windowssystem32driversksthunk.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSlltdio.sys ==> MD5 is legit

C:Windowssystem32driverslsi_fc.sys ==> MD5 is legit

C:Windowssystem32driverslsi_sas.sys ==> MD5 is legit

C:Windowssystem32driverslsi_sas2.sys ==> MD5 is legit

C:Windowssystem32driverslsi_scsi.sys ==> MD5 is legit

C:Windowssystem32driversluafv.sys ==> MD5 is legit

C:Windowssystem32driversmbam.sys 0BB97D43299910CBFBA59C461B99B910

C:Windowssystem32driversmbam.sys 0BB97D43299910CBFBA59C461B99B910

C:Windowssystem32driversmegasas.sys ==> MD5 is legit

C:Windowssystem32driversMegaSR.sys ==> MD5 is legit

C:WindowsSystem32driversmodem.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSmonitor.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSmouclass.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSmouhid.sys ==> MD5 is legit

C:WindowsSystem32driversmountmgr.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSMpFilter.sys F8A10560B35C66F9DE212F03DAD5BFA7

C:Windowssystem32driversmpio.sys ==> MD5 is legit

C:WindowsSystem32driversmpsdrv.sys ==> MD5 is legit

C:Windowssystem32driversmrxdav.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSmrxsmb.sys A5D9106A73DC88564C825D317CAC68AC

C:WindowsSystem32DRIVERSmrxsmb10.sys D711B3C1D5F42C0C2415687BE09FC163

C:WindowsSystem32DRIVERSmrxsmb20.sys 9423E9D355C8D303E76B8CFBD8A5C30C

C:Windowssystem32driversmsahci.sys ==> MD5 is legit

C:Windowssystem32driversmsdsm.sys ==> MD5 is legit

C:WindowsSystem32DriversMsfs.sys ==> MD5 is legit

C:WindowsSystem32driversmshidkmdf.sys ==> MD5 is legit

C:WindowsSystem32driversmsisadrv.sys ==> MD5 is legit

C:WindowsSystem32driversMSKSSRV.sys ==> MD5 is legit

C:WindowsSystem32driversMSPCLOCK.sys ==> MD5 is legit

C:WindowsSystem32driversMSPQM.sys ==> MD5 is legit

C:WindowsSystem32DriversMsRPC.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSmssmbios.sys ==> MD5 is legit

C:WindowsSystem32driversMSTEE.sys ==> MD5 is legit

C:Windowssystem32driversMTConfig.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSATK64AMD.sys 032D35C996F21D19A205A7C8F0B76F3C

C:WindowsSystem32Driversmup.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSnwifi.sys ==> MD5 is legit

C:WindowsSystem32driversndis.sys 760E38053BF56E501D562B70AD796B88

C:WindowsSystem32DRIVERSndiscap.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSndistapi.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSndisuio.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSndiswan.sys ==> MD5 is legit

C:WindowsSystem32DriversNDProxy.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSnetbios.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSnetbt.sys ==> MD5 is legit

C:Windowssystem32driversnfrd960.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSNisDrvWFP.sys 162100E0BC8377710F9D170631921C03

C:WindowsSystem32DriversNpfs.sys ==> MD5 is legit

C:WindowsSystem32driversnsiproxy.sys ==> MD5 is legit

C:WindowsSystem32DriversNtfs.sys B98F8C6E31CD07B2E6F71F7F648E38C0

C:WindowsSystem32DriversNull.sys ==> MD5 is legit

C:Windowssystem32driversnvraid.sys 0A92CB65770442ED0DC44834632F66AD

C:Windowssystem32driversnvstor.sys DAB0E87525C10052BF65F06152F37E4A

C:Windowssystem32driversnv_agp.sys ==> MD5 is legit

C:Windowssystem32driversohci1394.sys ==> MD5 is legit

C:Windowssystem32driversparport.sys ==> MD5 is legit

C:WindowsSystem32driverspartmgr.sys E9766131EEADE40A27DC27D2D68FBA9C

C:WindowsSystem32driverspci.sys ==> MD5 is legit

C:WindowsSystem32driverspciide.sys ==> MD5 is legit

C:Windowssystem32driverspcmcia.sys ==> MD5 is legit

C:WindowsSystem32driverspcw.sys ==> MD5 is legit

C:WindowsSystem32driverspeauth.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSraspptp.sys ==> MD5 is legit

C:Windowssystem32driversprocessr.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSpacer.sys ==> MD5 is legit

C:WindowsSystem32DriversPxHlpa64.sys BC08F7F3C53CBEE68670ED1314E290FD

C:Windowssystem32driversql2300.sys ==> MD5 is legit

C:Windowssystem32driversql40xx.sys ==> MD5 is legit

C:Windowssystem32driversqwavedrv.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSrasacd.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSAgileVpn.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSrasl2tp.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSraspppoe.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSrassstp.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSrdbss.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSrdpbus.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSRDPCDD.sys ==> MD5 is legit

C:WindowsSystem32driversrdpdr.sys ==> MD5 is legit

C:WindowsSystem32driversrdpencdd.sys ==> MD5 is legit

C:WindowsSystem32driversrdprefmp.sys ==> MD5 is legit

C:WindowsSystem32driversrdpvideominiport.sys ==> MD5 is legit

C:WindowsSystem32DriversRDPWD.sys E61608AA35E98999AF9AAEEEA6114B0A

C:WindowsSystem32driversrdyboost.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSrspndr.sys ==> MD5 is legit

C:WindowsSystem32DriversRtsUStor.sys FC009873CBC12CC6D7045D803D8E8CD3

C:Windowssystem32driversvms3cap.sys ==> MD5 is legit

C:Windowssystem32driverssbp2port.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSscfilter.sys ==> MD5 is legit

C:WindowsSystem32Driverssecdrv.sys ==> MD5 is legit

C:Windowssystem32driversserenum.sys ==> MD5 is legit

C:Windowssystem32driversserial.sys ==> MD5 is legit

C:Windowssystem32driverssermouse.sys ==> MD5 is legit

C:Windowssystem32driverssffdisk.sys ==> MD5 is legit

C:Windowssystem32driverssffp_mmc.sys ==> MD5 is legit

C:Windowssystem32driverssffp_sd.sys ==> MD5 is legit

C:Windowssystem32driverssfloppy.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSSiSG664.sys 1BC348CF6BAA90EC8E533EF6E6A69933

C:Windowssystem32driversSiSRaid2.sys ==> MD5 is legit

C:Windowssystem32driverssisraid4.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSsmb.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSSmSerl64.sys 7AE8BCA90539ECBDE87AC45BA1436BE3

C:WindowsSystem32DRIVERSsnp2uvc.sys A415C67B40DFB903ACCC1D40FBEE3269

C:WindowsSysWow64speedfan.sys 12583AF6CBE0050651EAF2723B3AD7B3

C:WindowsSysWow64speedfan.sys 12583AF6CBE0050651EAF2723B3AD7B3

C:WindowsSystem32DRIVERSsrv.sys 441FBA48BFF01FDB9D5969EBC1838F0B

C:WindowsSystem32DRIVERSsrv2.sys B4ADEBBF5E3677CCE9651E0F01F7CC28

C:WindowsSystem32DRIVERSsrvnet.sys 27E461F0BE5BFF5FC737328F749538C3

C:WindowsSystem32DRIVERSssadbus.sys 8F8324ED1DE63FFC7B1A02CD2D963C72

C:WindowsSystem32DRIVERSssadmdfl.sys 58221EFCB74167B73667F0024C661CE0

C:WindowsSystem32DRIVERSssadmdm.sys 4DA7C71BFAC5AD71255B7E4CAB980163

C:WindowsSystem32DRIVERSssadserd.sys D33D1BD3EC0E766211A234F56A12726D

C:Windowssystem32driversstexstor.sys ==> MD5 is legit

C:WindowsSystem32driversvmstorfl.sys ==> MD5 is legit

C:Windowssystem32driversstorvsc.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSswenum.sys ==> MD5 is legit

C:WindowsSystem32driverssynth3dvsc.sys C3A39C4079305480972D29C44B868C78

C:WindowsSystem32DRIVERSSynTP.sys 7E8902F9929A5D9FFD0F545332CE0F10

C:WindowsSystem32driverstcpip.sys 9849EA3843A2ADBDD1497E97A85D8CAE

C:WindowsSystem32DRIVERStcpip.sys 9849EA3843A2ADBDD1497E97A85D8CAE

C:WindowsSystem32driverstcpipreg.sys 1B16D0BD9841794A6E0CDE0CEF744ABC

C:WindowsSystem32driverstdpipe.sys ==> MD5 is legit

C:WindowsSystem32driverstdtcp.sys 51C5ECEB1CDEE2468A1748BE550CFBC8

C:WindowsSystem32DRIVERStdx.sys ==> MD5 is legit

C:WindowsSystem32DRIVERStermdd.sys ==> MD5 is legit

C:Windowssystem32driversterminpt.sys 2B5BDFF688EC9871D7EC5837833374E9

C:WindowsSystem32DRIVERStssecsrv.sys ==> MD5 is legit

C:WindowsSystem32driverstsusbflt.sys ==> MD5 is legit

C:Windowssystem32driversTsUsbGD.sys 9CC2CCAE8A84820EAECB886D477CBCB8

C:WindowsSystem32driverstsusbhub.sys E1748D04AE40118B62BC18AC86032192

C:WindowsSystem32DRIVERStunnel.sys ==> MD5 is legit

C:Windowssystem32driversuagp35.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSudfs.sys ==> MD5 is legit

C:Windowssystem32driversuliagpkx.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSumbus.sys ==> MD5 is legit

C:Windowssystem32driversumpass.sys ==> MD5 is legit

C:WindowsSystem32Driversusbaapl64.sys C9E9D59C0099A9FF51697E9306A44240

C:WindowsSystem32DRIVERSusbccgp.sys 6F1A3157A1C89435352CEB543CDB359C

C:Windowssystem32driversusbcir.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSusbehci.sys C025055FE7B87701EB042095DF1A2D7B

C:WindowsSystem32DRIVERSusbhub.sys 287C6C9410B111B68B52CA298F7B8C24

C:WindowsSystem32DRIVERSusbohci.sys 9840FC418B4CBD632D3D0A667A725C31

C:WindowsSystem32DRIVERSusbprint.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSusbscan.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSUSBSTOR.SYS FED648B01349A3C8395A5169DB5FB7D6

C:Windowssystem32driversusbuhci.sys 62069A34518BCF9C1FD9E74B3F6DB7CD

C:WindowsSystem32Driversusbvideo.sys 454800C2BC7F3927CE030141EE4F4C50

C:WindowsSystem32DRIVERSVClone.sys FD911873C0BB6945FA38C16E9A2B58F9

C:WindowsSystem32driversvdrvroot.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSvgapnp.sys ==> MD5 is legit

C:WindowsSystem32driversvga.sys ==> MD5 is legit

C:Windowssystem32driversvhdmp.sys ==> MD5 is legit

C:Windowssystem32driversviaide.sys ==> MD5 is legit

C:Windowssystem32driversvmbus.sys ==> MD5 is legit

C:Windowssystem32driversVMBusHID.sys ==> MD5 is legit

C:WindowsSystem32driversvolmgr.sys ==> MD5 is legit

C:WindowsSystem32driversvolmgrx.sys ==> MD5 is legit

C:WindowsSystem32driversvolsnap.sys ==> MD5 is legit

C:Windowssystem32driversvsmraid.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSvwifibus.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSvwififlt.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSvwifimp.sys ==> MD5 is legit

C:Windowssystem32driverswacompen.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSwanarp.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSwanarp.sys ==> MD5 is legit

C:Windowssystem32driverswd.sys ==> MD5 is legit

C:WindowsSystem32driversWdf01000.sys 442783E2CB0DA19873B7A63833FF4CB4

C:WindowsSystem32DRIVERSwfplwf.sys ==> MD5 is legit

C:WindowsSystem32driverswimmount.sys ==> MD5 is legit

C:WindowsSysWow64driverswimmount.sys ==> MD5 is legit

C:WindowsSystem32DRIVERSWinUsb.sys FE88B288356E7B47B74B13372ADD906D

C:Windowssystem32driverswmiacpi.sys ==> MD5 is legit

C:Windowssystem32driversws2ifsl.sys ==> MD5 is legit

C:WindowsSystem32driversWudfPf.sys AB886378EEB55C6C75B4F2D14B6C869F

C:WindowsSystem32DRIVERSWUDFRd.sys DDA4CAF29D8C0A297F886BFE561E6659

==================== NetSvcs (Whitelisted) ===================

==================== One Month Created Files and Folders ========

2013-06-15 20:32 - 2013-06-15 20:32 - 00000000 ____D C:FRST

2013-06-15 20:31 - 2013-06-15 20:32 - 01920546 ____A (Farbar) C:UsersZdravomirDesktopFRST64.exe

2013-06-15 20:06 - 2013-06-15 20:08 - 00002102 ____A C:UsersZdravomirDesktopRkill.txt

2013-06-15 20:04 - 2013-06-15 20:05 - 01816704 ____A (Bleeping Computer, LLC) C:UsersZdravomirDesktoprkill.exe

2013-06-15 20:01 - 2013-06-15 20:06 - 194466664 ____A (AMD Inc.) C:UsersZdravomirDownloadsamd_catalyst_13.4_legacy_beta_vista_win7_win8.exe

2013-06-15 19:56 - 2013-06-15 19:56 - 02523386 ____A C:UsersZdravomirDesktopddd.nfo

2013-06-15 19:44 - 2013-06-15 19:44 - 00000348 ____A C:WindowsPFRO.log

2013-06-15 02:34 - 2013-06-15 19:45 - 00000112 ____A C:Windowssetupact.log

2013-06-15 02:34 - 2013-06-15 02:34 - 00274792 ____A C:WindowsMinidump061513-28470-01.dmp

2013-06-15 02:34 - 2013-06-15 02:34 - 00000000 ____A C:Windowssetuperr.log

2013-06-14 17:56 - 2013-06-14 17:57 - 00000000 ___RD C:Program Files (x86)Skype

2013-06-14 17:56 - 2013-06-14 17:56 - 00002515 ____A C:UsersPublicDesktopSkype.lnk

2013-06-14 17:55 - 2013-06-14 17:55 - 01491560 ____A (Skype Technologies S.A.) C:UsersZdravomirDownloadsSkypeSetup.exe

2013-06-14 17:17 - 2013-06-14 17:46 - 00000000 ____D C:UsersZdravomirDocumentsCalibre Library

2013-06-14 17:17 - 2013-06-14 17:24 - 00000000 ____D C:UsersZdravomirAppDataRoamingcalibre

2013-06-14 17:16 - 2013-06-14 17:16 - 00000920 ____A C:UsersPublicDesktopcalibre - E-book management.lnk

2013-06-14 17:16 - 2013-06-14 17:16 - 00000000 ____D C:Program Files (x86)Calibre2

2013-06-14 17:13 - 2013-06-14 17:15 - 52056576 ____A C:UsersZdravomirDownloadscalibre-0.9.35.msi

2013-06-14 16:20 - 2013-06-14 16:20 - 01011712 ____A () C:UsersZdravomirDownloadseizo-test.exe

2013-06-14 15:50 - 2013-06-14 15:54 - 00000000 ____D C:Program Files (x86)Monitor Calibration Wizard

2013-06-14 15:50 - 2013-06-14 15:50 - 00000007 ____A C:WindowsINI2=No

2013-06-14 15:50 - 2013-06-14 15:50 - 00000007 ____A C:WindowsINI1=No

2013-06-14 15:46 - 2013-06-14 15:46 - 00789605 ____A C:UsersZdravomirDownloadsmcw10.exe

2013-06-14 15:21 - 2013-06-14 15:21 - 00000000 ____D C:UsersZdravomirAppDataRoamingatitray

2013-06-14 15:21 - 2013-06-14 15:21 - 00000000 ____D C:Program Files (x86)Ray Adams

2013-06-14 15:16 - 2013-06-14 15:16 - 02132399 ____A (Ray Adams) C:UsersZdravomirDownloadsattsetup.exe

2013-06-14 15:13 - 2013-06-14 15:13 - 00692104 ____A (Adobe Systems Incorporated) C:WindowsSysWOW64FlashPlayerApp.exe

2013-06-14 15:13 - 2013-06-14 15:13 - 00071048 ____A (Adobe Systems Incorporated) C:WindowsSysWOW64FlashPlayerCPLApp.cpl

2013-06-14 14:18 - 2013-06-14 14:19 - 00028149 ____A C:UsersZdravomirDownloadsResult.txt

2013-06-14 14:16 - 2013-06-14 14:16 - 00760723 ____A (Farbar) C:UsersZdravomirDownloadsMiniToolBox.exe

2013-06-14 13:53 - 2013-06-14 13:53 - 00791040 ____A C:UsersZdravomirDesktopRogueKillerX64.exe

2013-06-14 13:52 - 2013-06-14 14:09 - 00000000 ____D C:UsersZdravomirDesktopRK_Quarantine

2013-06-14 13:48 - 2013-06-14 13:49 - 00907264 ____A C:UsersZdravomirDownloadsRogueKiller.exe

2013-06-14 13:30 - 2013-06-07 21:14 - 00000081 ____A C:UsersZdravomirDownloadstest.bat

2013-06-14 13:10 - 2013-06-14 13:11 - 00000190 ____A C:UsersZdravomirDownloadstest.zip

2013-06-14 12:48 - 2013-06-14 12:49 - 20896392 ____A (Microsoft Corporation) C:UsersZdravomirDownloadswindows-kb890830-x64-v5.1.exe

2013-06-14 12:13 - 2013-06-14 12:13 - 00492146 ___RA (Swearware) C:UsersZdravomirDesktopdds.exe

2013-06-14 00:51 - 2013-06-14 01:18 - 00000000 ____D C:Windowserdnt

2013-06-13 23:58 - 2013-06-13 23:59 - 00002421 ____A C:AdwCleaner[s1].txt

2013-06-13 23:56 - 2013-06-13 23:57 - 00648201 ____A C:UsersZdravomirDesktopadwcleaner.exe

2013-06-13 03:12 - 2013-05-17 06:05 - 17824768 ____A (Microsoft Corporation) C:WindowsSystem32mshtml.dll

2013-06-13 03:12 - 2013-05-17 05:27 - 10926080 ____A (Microsoft Corporation) C:WindowsSystem32ieframe.dll

2013-06-13 03:12 - 2013-05-17 05:09 - 02312704 ____A (Microsoft Corporation) C:WindowsSystem32jscript9.dll

2013-06-13 03:12 - 2013-05-17 05:02 - 01392128 ____A (Microsoft Corporation) C:WindowsSystem32wininet.dll

2013-06-13 03:12 - 2013-05-17 05:02 - 01346560 ____A (Microsoft Corporation) C:WindowsSystem32urlmon.dll

2013-06-13 03:12 - 2013-05-17 05:01 - 01494528 ____A (Microsoft Corporation) C:WindowsSystem32inetcpl.cpl

2013-06-13 03:12 - 2013-05-17 05:00 - 00237056 ____A (Microsoft Corporation) C:WindowsSystem32url.dll

2013-06-13 03:12 - 2013-05-17 04:58 - 00085504 ____A (Microsoft Corporation) C:WindowsSystem32jsproxy.dll

2013-06-13 03:12 - 2013-05-17 04:56 - 00599040 ____A (Microsoft Corporation) C:WindowsSystem32vbscript.dll

2013-06-13 03:12 - 2013-05-17 04:56 - 00173056 ____A (Microsoft Corporation) C:WindowsSystem32ieUnatt.exe

2013-06-13 03:12 - 2013-05-17 04:55 - 00816640 ____A (Microsoft Corporation) C:WindowsSystem32jscript.dll

2013-06-13 03:12 - 2013-05-17 04:54 - 00729088 ____A (Microsoft Corporation) C:WindowsSystem32msfeeds.dll

2013-06-13 03:12 - 2013-05-17 04:53 - 02147840 ____A (Microsoft Corporation) C:WindowsSystem32iertutil.dll

2013-06-13 03:12 - 2013-05-17 04:51 - 02382848 ____A (Microsoft Corporation) C:WindowsSystem32mshtml.tlb

2013-06-13 03:12 - 2013-05-17 04:51 - 00096768 ____A (Microsoft Corporation) C:WindowsSystem32mshtmled.dll

2013-06-13 03:12 - 2013-05-17 04:46 - 00248320 ____A (Microsoft Corporation) C:WindowsSystem32ieui.dll

2013-06-13 03:12 - 2013-05-17 01:08 - 12329984 ____A (Microsoft Corporation) C:WindowsSysWOW64mshtml.dll

2013-06-13 03:12 - 2013-05-17 00:49 - 09738752 ____A (Microsoft Corporation) C:WindowsSysWOW64ieframe.dll

2013-06-13 03:12 - 2013-05-17 00:39 - 01800704 ____A (Microsoft Corporation) C:WindowsSysWOW64jscript9.dll

2013-06-13 03:12 - 2013-05-17 00:28 - 01129472 ____A (Microsoft Corporation) C:WindowsSysWOW64wininet.dll

2013-06-13 03:12 - 2013-05-17 00:28 - 01104384 ____A (Microsoft Corporation) C:WindowsSysWOW64urlmon.dll

2013-06-13 03:12 - 2013-05-17 00:27 - 01427968 ____A (Microsoft Corporation) C:WindowsSysWOW64inetcpl.cpl

2013-06-13 03:12 - 2013-05-17 00:26 - 00231936 ____A (Microsoft Corporation) C:WindowsSysWOW64url.dll

2013-06-13 03:12 - 2013-05-17 00:23 - 00065024 ____A (Microsoft Corporation) C:WindowsSysWOW64jsproxy.dll

2013-06-13 03:12 - 2013-05-17 00:21 - 00717824 ____A (Microsoft Corporation) C:WindowsSysWOW64jscript.dll

2013-06-13 03:12 - 2013-05-17 00:21 - 00142848 ____A (Microsoft Corporation) C:WindowsSysWOW64ieUnatt.exe

2013-06-13 03:12 - 2013-05-17 00:20 - 00420864 ____A (Microsoft Corporation) C:WindowsSysWOW64vbscript.dll

2013-06-13 03:12 - 2013-05-17 00:19 - 00607744 ____A (Microsoft Corporation) C:WindowsSysWOW64msfeeds.dll

2013-06-13 03:12 - 2013-05-17 00:17 - 01796096 ____A (Microsoft Corporation) C:WindowsSysWOW64iertutil.dll

2013-06-13 03:12 - 2013-05-17 00:17 - 00073216 ____A (Microsoft Corporation) C:WindowsSysWOW64mshtmled.dll

2013-06-13 03:12 - 2013-05-17 00:16 - 02382848 ____A (Microsoft Corporation) C:WindowsSysWOW64mshtml.tlb

2013-06-13 03:12 - 2013-05-17 00:12 - 00176640 ____A (Microsoft Corporation) C:WindowsSysWOW64ieui.dll

2013-06-12 15:10 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:WindowsSystem32cryptdlg.dll

2013-06-12 15:10 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:WindowsSysWOW64cryptdlg.dll

2013-06-12 15:10 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:WindowsSystem32Driverstcpip.sys

2013-06-12 15:10 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:WindowsSystem32win32spl.dll

2013-06-12 15:10 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:WindowsSysWOW64win32spl.dll

2013-06-12 15:09 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:WindowsSystem32crypt32.dll

2013-06-12 15:09 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:WindowsSystem32cryptsvc.dll

2013-06-12 15:09 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:WindowsSystem32cryptnet.dll

2013-06-12 15:09 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:WindowsSystem32certenc.dll

2013-06-12 15:09 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:WindowsSysWOW64crypt32.dll

2013-06-12 15:09 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:WindowsSysWOW64cryptsvc.dll

2013-06-12 15:09 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:WindowsSysWOW64cryptnet.dll

2013-06-12 15:09 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:WindowsSystem32certutil.exe

2013-06-12 15:09 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:WindowsSysWOW64certutil.exe

2013-06-12 15:09 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:WindowsSysWOW64certenc.dll

2013-06-12 15:09 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:WindowsSysWOW64d3d11.dll

2013-06-12 15:09 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:WindowsSysWOW64WindowsCodecs.dll

2013-06-12 15:09 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:WindowsSystem32WindowsCodecs.dll

2013-06-12 15:09 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:WindowsSystem32d3d11.dll

2013-06-02 23:15 - 2013-06-02 23:15 - 00000926 ____A C:UsersPublicDesktopPhotoLooks LooksBuilder.lnk

2013-06-01 11:14 - 2013-06-15 19:42 - 01977906 ____A C:WindowsWindowsUpdate.log

2013-05-31 18:48 - 2013-05-31 18:48 - 00431017 ____A C:UsersZdravomirDownloadsbatmanghelidj1.zip

2013-05-31 12:54 - 2013-05-31 12:54 - 00102130 ____A C:UsersZdravomirDownloadsservef zdravko 10.09.do

2013-05-29 11:38 - 2013-05-29 11:38 - 00856570 ____A C:UsersZdravomirDownloads7592vQ6.zip

2013-05-29 11:34 - 2013-05-29 11:34 - 00021712 ____A (Phoenix Technologies) C:WindowsSysWOW64DriversDrvAgent64.SYS

2013-05-29 11:30 - 2013-05-29 11:30 - 00001086 ____A C:UsersZdravomirDesktopEVEREST Ultimate Edition.lnk

2013-05-29 11:30 - 2013-05-29 11:30 - 00000000 ____D C:Program Files (x86)Lavalys

2013-05-29 10:44 - 2013-04-10 08:01 - 00983400 ____A (Microsoft Corporation) C:WindowsSystem32Driversdxgkrnl.sys

2013-05-29 10:44 - 2013-04-10 08:01 - 00265064 ____A (Microsoft Corporation) C:WindowsSystem32Driversdxgmms1.sys

2013-05-29 10:44 - 2011-02-03 13:25 - 00144384 ____A (Microsoft Corporation) C:WindowsSystem32cdd.dll

2013-05-29 10:43 - 2013-04-12 16:45 - 01656680 ____A (Microsoft Corporation) C:WindowsSystem32Driversntfs.sys

2013-05-29 10:43 - 2013-04-10 05:30 - 03153920 ____A (Microsoft Corporation) C:WindowsSystem32win32k.sys

2013-05-29 10:43 - 2013-03-19 07:53 - 00230400 ____A (Microsoft Corporation) C:WindowsSystem32wwansvc.dll

2013-05-29 10:43 - 2013-03-19 07:53 - 00048640 ____A (Microsoft Corporation) C:WindowsSystem32wwanprotdim.dll

2013-05-29 10:43 - 2013-02-27 08:02 - 00111448 ____A (Microsoft Corporation) C:WindowsSystem32consent.exe

2013-05-29 10:43 - 2013-02-27 07:52 - 14172672 ____A (Microsoft Corporation) C:WindowsSystem32shell32.dll

2013-05-29 10:43 - 2013-02-27 07:52 - 00197120 ____A (Microsoft Corporation) C:WindowsSystem32shdocvw.dll

2013-05-29 10:43 - 2013-02-27 07:48 - 01930752 ____A (Microsoft Corporation) C:WindowsSystem32authui.dll

2013-05-29 10:43 - 2013-02-27 07:47 - 00070144 ____A (Microsoft Corporation) C:WindowsSystem32appinfo.dll

2013-05-29 10:43 - 2013-02-27 06:55 - 12872704 ____A (Microsoft Corporation) C:WindowsSysWOW64shell32.dll

2013-05-29 10:43 - 2013-02-27 06:55 - 00180224 ____A (Microsoft Corporation) C:WindowsSysWOW64shdocvw.dll

2013-05-29 10:43 - 2013-02-27 06:49 - 01796096 ____A (Microsoft Corporation) C:WindowsSysWOW64authui.dll

2013-05-29 00:34 - 2013-05-29 00:34 - 00805650 ____A C:UsersZdravomirDesktopDICOMDIR-Text.txt

2013-05-29 00:32 - 2013-05-29 00:36 - 00000000 ____D C:UsersZdravomirAppDataLocalSDEditor3

2013-05-29 00:32 - 2013-05-29 00:32 - 00000000 ____D C:UsersZdravomirDocumentsSante Transfer Vault

2013-05-29 00:32 - 2013-05-29 00:32 - 00000000 ____D C:UsersZdravomirDocumentsSante Local Store DB

2013-05-29 00:31 - 2013-05-29 00:31 - 00000000 ____D C:ProgramDataCanon_Inc_IC

2013-05-29 00:30 - 2013-05-29 00:30 - 00000000 ____D C:UsersZdravomirDownloadssdeditor3

2013-05-29 00:29 - 2013-05-29 00:29 - 18134643 ____A C:UsersZdravomirDownloadssdeditor3.zip

2013-05-28 21:22 - 2013-05-28 21:22 - 00000000 ____D C:found.000

2013-05-28 20:51 - 2013-05-28 20:51 - 18830076 ____A C:UsersZdravomirDownloadswetransfer-c5bd1c(3).zip

2013-05-28 20:50 - 2013-05-28 20:50 - 18830076 ____A C:UsersZdravomirDownloadswetransfer-c5bd1c(2).zip

2013-05-28 20:36 - 2013-05-28 20:36 - 00001878 ____A C:UsersPublicDesktopfastView.lnk

2013-05-28 20:36 - 2013-05-28 20:36 - 00000000 ____D C:Program Files (x86)Siemens

2013-05-28 20:30 - 2013-05-28 20:30 - 00000000 ____D C:UsersZdravomirDownloadswetransfer-c5bd1c(1)

2013-05-28 20:29 - 2013-05-28 20:30 - 18830076 ____A C:UsersZdravomirDownloadswetransfer-c5bd1c(1).zip

2013-05-28 20:20 - 2013-05-29 00:52 - 00000000 ____D C:UsersZdravomirDownloadswetransfer-c5bd1c

2013-05-28 20:19 - 2013-05-28 20:19 - 18830076 ____A C:UsersZdravomirDownloadswetransfer-c5bd1c.zip

2013-05-26 01:57 - 2013-05-27 12:35 - 00000000 ____D C:Program FilesRecuva

2013-05-26 01:57 - 2013-05-26 01:57 - 00001658 ____A C:UsersPublicDesktopRecuva.lnk

2013-05-24 20:23 - 2013-05-13 04:10 - 00000000 ____D C:UsersZdravomirDownloadsTor Browser

2013-05-24 14:32 - 2013-05-24 14:32 - 08759296 ____A C:UsersZdravomirDownloadsVideoGetting.mpeg

2013-05-21 19:40 - 2013-05-21 19:40 - 00050578 ____A C:UsersZdravomirDownloadsDABOTEWBPD2W(1)

2013-05-21 19:38 - 2013-05-21 19:38 - 00000000 ____D C:UsersZdravomiraeat

2013-05-21 19:23 - 2013-05-21 19:23 - 00050578 ____A C:UsersZdravomirDownloadsDABOTEWBPD2W

2013-05-19 17:56 - 2012-08-21 13:01 - 00033240 ____A (GEAR Software Inc.) C:WindowsSystem32DriversGEARAspiWDM.sys

2013-05-19 17:54 - 2013-05-19 17:56 - 00000000 ____D C:ProgramData34BE82C4-E596-4e99-A191-52C6199EBF69

2013-05-19 17:54 - 2013-05-19 17:56 - 00000000 ____D C:Program FilesiTunes

2013-05-19 17:54 - 2013-05-19 17:56 - 00000000 ____D C:Program Files (x86)iTunes

2013-05-19 17:54 - 2013-05-19 17:54 - 00000000 ____D C:Program FilesiPod

2013-05-19 17:53 - 2013-05-19 17:53 - 00000000 ____D C:Program FilesCommon FilesApple

2013-05-19 17:53 - 2013-05-19 17:53 - 00000000 ____D C:Program FilesBonjour

2013-05-19 17:53 - 2013-05-19 17:53 - 00000000 ____D C:Program Files (x86)Bonjour

==================== One Month Modified Files and Folders =======

2013-06-15 20:32 - 2013-06-15 20:32 - 00000000 ____D C:FRST

2013-06-15 20:32 - 2013-06-15 20:31 - 01920546 ____A (Farbar) C:UsersZdravomirDesktopFRST64.exe

2013-06-15 20:30 - 2012-05-25 20:18 - 00000000 ____D C:UsersZdravomirAppDataRoamingSkype

2013-06-15 20:08 - 2013-06-15 20:06 - 00002102 ____A C:UsersZdravomirDesktopRkill.txt

2013-06-15 20:06 - 2013-06-15 20:01 - 194466664 ____A (AMD Inc.) C:UsersZdravomirDownloadsamd_catalyst_13.4_legacy_beta_vista_win7_win8.exe

2013-06-15 20:05 - 2013-06-15 20:04 - 01816704 ____A (Bleeping Computer, LLC) C:UsersZdravomirDesktoprkill.exe

2013-06-15 19:56 - 2013-06-15 19:56 - 02523386 ____A C:UsersZdravomirDesktopddd.nfo

2013-06-15 19:56 - 2009-07-14 06:45 - 00021472 ___AH C:WindowsSystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

2013-06-15 19:56 - 2009-07-14 06:45 - 00021472 ___AH C:WindowsSystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

2013-06-15 19:53 - 2013-06-01 11:14 - 01977906 ____A C:WindowsWindowsUpdate.log

2013-06-15 19:45 - 2013-06-15 02:34 - 00000112 ____A C:Windowssetupact.log

2013-06-15 19:45 - 2009-07-14 07:08 - 00000006 ___AH C:WindowsTasksSA.DAT

2013-06-15 19:44 - 2013-06-15 19:44 - 00000348 ____A C:WindowsPFRO.log

2013-06-15 19:36 - 2012-11-23 18:32 - 00000924 ____A C:WindowsTasksGoogleUpdateTaskUserS-1-5-21-1925472022-3896777319-2779321895-1000UA.job

2013-06-15 11:35 - 2012-11-23 18:32 - 00000872 ____A C:WindowsTasksGoogleUpdateTaskUserS-1-5-21-1925472022-3896777319-2779321895-1000Core.job

2013-06-15 02:34 - 2013-06-15 02:34 - 00274792 ____A C:WindowsMinidump061513-28470-01.dmp

2013-06-15 02:34 - 2013-06-15 02:34 - 00000000 ____A C:Windowssetuperr.log

2013-06-15 02:34 - 2012-10-16 23:02 - 00000000 ____D C:WindowsMinidump

2013-06-15 02:01 - 2012-05-25 21:58 - 00000000 ____D C:UsersZdravomirAppDataLocalAdobe

2013-06-14 23:38 - 2012-05-25 19:43 - 00000000 ____D C:UsersZdravomirAppDataRoaminguTorrent

2013-06-14 17:57 - 2013-06-14 17:56 - 00000000 ___RD C:Program Files (x86)Skype

2013-06-14 17:57 - 2013-03-08 10:26 - 00000000 ____D C:Program Files (x86)Mozilla Firefox

2013-06-14 17:57 - 2012-05-25 21:42 - 00000000 ____D C:ProgramDataSkype

2013-06-14 17:56 - 2013-06-14 17:56 - 00002515 ____A C:UsersPublicDesktopSkype.lnk

2013-06-14 17:55 - 2013-06-14 17:55 - 01491560 ____A (Skype Technologies S.A.) C:UsersZdravomirDownloadsSkypeSetup.exe

2013-06-14 17:46 - 2013-06-14 17:17 - 00000000 ____D C:UsersZdravomirDocumentsCalibre Library

2013-06-14 17:24 - 2013-06-14 17:17 - 00000000 ____D C:UsersZdravomirAppDataRoamingcalibre

2013-06-14 17:16 - 2013-06-14 17:16 - 00000920 ____A C:UsersPublicDesktopcalibre - E-book management.lnk

2013-06-14 17:16 - 2013-06-14 17:16 - 00000000 ____D C:Program Files (x86)Calibre2

2013-06-14 17:15 - 2013-06-14 17:13 - 52056576 ____A C:UsersZdravomirDownloadscalibre-0.9.35.msi

2013-06-14 16:20 - 2013-06-14 16:20 - 01011712 ____A () C:UsersZdravomirDownloadseizo-test.exe

2013-06-14 15:54 - 2013-06-14 15:50 - 00000000 ____D C:Program Files (x86)Monitor Calibration Wizard

2013-06-14 15:50 - 2013-06-14 15:50 - 00000007 ____A C:WindowsINI2=No

2013-06-14 15:50 - 2013-06-14 15:50 - 00000007 ____A C:WindowsINI1=No

2013-06-14 15:46 - 2013-06-14 15:46 - 00789605 ____A C:UsersZdravomirDownloadsmcw10.exe

2013-06-14 15:24 - 2012-12-10 14:49 - 00000000 ____D C:ProgramDataAMD

2013-06-14 15:21 - 2013-06-14 15:21 - 00000000 ____D C:UsersZdravomirAppDataRoamingatitray

2013-06-14 15:21 - 2013-06-14 15:21 - 00000000 ____D C:Program Files (x86)Ray Adams

2013-06-14 15:16 - 2013-06-14 15:16 - 02132399 ____A (Ray Adams) C:UsersZdravomirDownloadsattsetup.exe

2013-06-14 15:13 - 2013-06-14 15:13 - 00692104 ____A (Adobe Systems Incorporated) C:WindowsSysWOW64FlashPlayerApp.exe

2013-06-14 15:13 - 2013-06-14 15:13 - 00071048 ____A (Adobe Systems Incorporated) C:WindowsSysWOW64FlashPlayerCPLApp.cpl

2013-06-14 14:58 - 2012-08-22 20:08 - 00000000 ____D C:Program Files (x86)Google

2013-06-14 14:19 - 2013-06-14 14:18 - 00028149 ____A C:UsersZdravomirDownloadsResult.txt

2013-06-14 14:16 - 2013-06-14 14:16 - 00760723 ____A (Farbar) C:UsersZdravomirDownloadsMiniToolBox.exe

2013-06-14 14:09 - 2013-06-14 13:52 - 00000000 ____D C:UsersZdravomirDesktopRK_Quarantine

2013-06-14 13:53 - 2013-06-14 13:53 - 00791040 ____A C:UsersZdravomirDesktopRogueKillerX64.exe

2013-06-14 13:49 - 2013-06-14 13:48 - 00907264 ____A C:UsersZdravomirDownloadsRogueKiller.exe

2013-06-14 13:11 - 2013-06-14 13:10 - 00000190 ____A C:UsersZdravomirDownloadstest.zip

2013-06-14 12:49 - 2013-06-14 12:48 - 20896392 ____A (Microsoft Corporation) C:UsersZdravomirDownloadswindows-kb890830-x64-v5.1.exe

2013-06-14 12:13 - 2013-06-14 12:13 - 00492146 ___RA (Swearware) C:UsersZdravomirDesktopdds.exe

2013-06-14 01:23 - 2009-07-14 05:20 - 00000000 __RHD C:usersDefault

2013-06-14 01:18 - 2013-06-14 00:51 - 00000000 ____D C:Windowserdnt

2013-06-14 01:17 - 2009-07-14 04:34 - 00000215 ____A C:Windowssystem.ini

2013-06-13 23:59 - 2013-06-13 23:58 - 00002421 ____A C:AdwCleaner[s1].txt

2013-06-13 23:57 - 2013-06-13 23:56 - 00648201 ____A C:UsersZdravomirDesktopadwcleaner.exe

2013-06-13 22:35 - 2013-01-13 03:18 - 00000000 ____D C:UsersZdravomirAppDataRoamingvlc

2013-06-13 22:32 - 2009-07-14 07:13 - 00726444 ____A C:WindowsSystem32PerfStringBackup.INI

2013-06-13 04:04 - 2009-07-14 05:20 - 00000000 ____D C:Windowsrescache

2013-06-13 03:34 - 2012-09-10 13:11 - 00000000 ____D C:UsersZdravomir.umplayer

2013-06-13 03:29 - 2009-07-14 05:20 - 00000000 ____D C:WindowsSysWOW64bg-BG

2013-06-13 03:29 - 2009-07-14 05:20 - 00000000 ____D C:WindowsSystem32bg-BG

2013-06-10 12:59 - 2012-05-25 19:43 - 00000000 ____D C:Program Files (x86)uTorrent

2013-06-07 21:14 - 2013-06-14 13:30 - 00000081 ____A C:UsersZdravomirDownloadstest.bat

2013-06-07 09:23 - 2012-05-25 19:41 - 00000000 ____D C:UsersZdravomirAppDataRoamingMozilla

2013-06-05 16:38 - 2013-03-28 23:32 - 00000000 ____D C:UsersZdravomirAppDataLocalSpotify

2013-06-05 16:38 - 2013-03-28 23:31 - 00000000 ____D C:UsersZdravomirAppDataRoamingSpotify

2013-06-03 18:16 - 2012-07-04 11:38 - 75898224 ____A (Microsoft Corporation) C:WindowsSystem32MRT.exe

2013-06-02 23:15 - 2013-06-02 23:15 - 00000926 ____A C:UsersPublicDesktopPhotoLooks LooksBuilder.lnk

2013-06-02 23:15 - 2012-08-13 21:37 - 00000000 ____D C:Program Files (x86)LooksBuilder

2013-06-02 23:15 - 2012-05-25 21:39 - 00000000 ____D C:Program Files (x86)Adobe

2013-06-02 23:15 - 2012-05-25 20:44 - 00000000 ___HD C:Program Files (x86)InstallShield Installation Information

2013-06-02 22:43 - 2012-05-28 14:41 - 00000000 ____D C:UsersZdravomirAppDataLocalDownloaded Installations

2013-06-01 11:33 - 2012-08-11 18:50 - 00000000 ____D C:Program Files (x86)Winamp

2013-05-31 18:48 - 2013-05-31 18:48 - 00431017 ____A C:UsersZdravomirDownloadsbatmanghelidj1.zip

2013-05-31 12:54 - 2013-05-31 12:54 - 00102130 ____A C:UsersZdravomirDownloadsservef zdravko 10.09.do

2013-05-31 03:24 - 2009-07-14 06:45 - 04919264 ____A C:WindowsSystem32FNTCACHE.DAT

2013-05-30 17:08 - 2012-07-18 23:32 - 00001456 ____A C:UsersZdravomirAppDataLocalAdobe Save for Web 13.0 Prefs

2013-05-30 16:54 - 2012-05-28 14:46 - 00000000 ____D C:UsersZdravomirAppDataLocalLooksBuilder

2013-05-29 11:38 - 2013-05-29 11:38 - 00856570 ____A C:UsersZdravomirDownloads7592vQ6.zip

2013-05-29 11:34 - 2013-05-29 11:34 - 00021712 ____A (Phoenix Technologies) C:WindowsSysWOW64DriversDrvAgent64.SYS

2013-05-29 11:30 - 2013-05-29 11:30 - 00001086 ____A C:UsersZdravomirDesktopEVEREST Ultimate Edition.lnk

2013-05-29 11:30 - 2013-05-29 11:30 - 00000000 ____D C:Program Files (x86)Lavalys

2013-05-29 11:20 - 2012-12-08 18:36 - 00000000 ____D C:Program Files (x86)SpeedFan

2013-05-29 00:52 - 2013-05-28 20:20 - 00000000 ____D C:UsersZdravomirDownloadswetransfer-c5bd1c

2013-05-29 00:36 - 2013-05-29 00:32 - 00000000 ____D C:UsersZdravomirAppDataLocalSDEditor3

2013-05-29 00:34 - 2013-05-29 00:34 - 00805650 ____A C:UsersZdravomirDesktopDICOMDIR-Text.txt

2013-05-29 00:32 - 2013-05-29 00:32 - 00000000 ____D C:UsersZdravomirDocumentsSante Transfer Vault

2013-05-29 00:32 - 2013-05-29 00:32 - 00000000 ____D C:UsersZdravomirDocumentsSante Local Store DB

2013-05-29 00:31 - 2013-05-29 00:31 - 00000000 ____D C:ProgramDataCanon_Inc_IC

2013-05-29 00:30 - 2013-05-29 00:30 - 00000000 ____D C:UsersZdravomirDownloadssdeditor3

2013-05-29 00:29 - 2013-05-29 00:29 - 18134643 ____A C:UsersZdravomirDownloadssdeditor3.zip

2013-05-28 21:22 - 2013-05-28 21:22 - 00000000 ____D C:found.000

2013-05-28 20:51 - 2013-05-28 20:51 - 18830076 ____A C:UsersZdravomirDownloadswetransfer-c5bd1c(3).zip

2013-05-28 20:50 - 2013-05-28 20:50 - 18830076 ____A C:UsersZdravomirDownloadswetransfer-c5bd1c(2).zip

2013-05-28 20:36 - 2013-05-28 20:36 - 00001878 ____A C:UsersPublicDesktopfastView.lnk

2013-05-28 20:36 - 2013-05-28 20:36 - 00000000 ____D C:Program Files (x86)Siemens

2013-05-28 20:30 - 2013-05-28 20:30 - 00000000 ____D C:UsersZdravomirDownloadswetransfer-c5bd1c(1)

2013-05-28 20:30 - 2013-05-28 20:29 - 18830076 ____A C:UsersZdravomirDownloadswetransfer-c5bd1c(1).zip

2013-05-28 20:19 - 2013-05-28 20:19 - 18830076 ____A C:UsersZdravomirDownloadswetransfer-c5bd1c.zip

2013-05-27 12:35 - 2013-05-26 01:57 - 00000000 ____D C:Program FilesRecuva

2013-05-26 02:42 - 2012-05-25 18:50 - 00000000 ____D C:usersZdravomir

2013-05-26 02:05 - 2013-04-10 19:54 - 00000000 ____D C:UsersZdravomirDesktopcv y carta

2013-05-26 01:57 - 2013-05-26 01:57 - 00001658 ____A C:UsersPublicDesktopRecuva.lnk

2013-05-24 14:34 - 2012-05-25 19:48 - 00000000 ____D C:UsersZdravomirAppDataRoamingAdobe

2013-05-24 14:32 - 2013-05-24 14:32 - 08759296 ____A C:UsersZdravomirDownloadsVideoGetting.mpeg

2013-05-22 13:35 - 2012-05-25 19:40 - 00000000 ____D C:Program Files (x86)Mozilla Maintenance Service

2013-05-21 19:40 - 2013-05-21 19:40 - 00050578 ____A C:UsersZdravomirDownloadsDABOTEWBPD2W(1)

2013-05-21 19:38 - 2013-05-21 19:38 - 00000000 ____D C:UsersZdravomiraeat

2013-05-21 19:23 - 2013-05-21 19:23 - 00050578 ____A C:UsersZdravomirDownloadsDABOTEWBPD2W

2013-05-19 18:28 - 2012-05-26 09:41 - 00000000 ____D C:UsersZdravomirAppDataRoamingApple Computer

2013-05-19 17:56 - 2013-05-19 17:54 - 00000000 ____D C:ProgramData34BE82C4-E596-4e99-A191-52C6199EBF69

2013-05-19 17:56 - 2013-05-19 17:54 - 00000000 ____D C:Program FilesiTunes

2013-05-19 17:56 - 2013-05-19 17:54 - 00000000 ____D C:Program Files (x86)iTunes

2013-05-19 17:56 - 2012-10-05 18:26 - 00000000 ____D C:UsersZdravomirAppDataLocalApple Computer

2013-05-19 17:54 - 2013-05-19 17:54 - 00000000 ____D C:Program FilesiPod

2013-05-19 17:54 - 2012-05-25 21:16 - 00000000 ____D C:ProgramDataApple Computer

2013-05-19 17:53 - 2013-05-19 17:53 - 00000000 ____D C:Program FilesCommon FilesApple

2013-05-19 17:53 - 2013-05-19 17:53 - 00000000 ____D C:Program FilesBonjour

2013-05-19 17:53 - 2013-05-19 17:53 - 00000000 ____D C:Program Files (x86)Bonjour

2013-05-19 17:53 - 2012-05-25 21:15 - 00000000 ____D C:ProgramDataApple

2013-05-17 06:05 - 2013-06-13 03:12 - 17824768 ____A (Microsoft Corporation) C:WindowsSystem32mshtml.dll

2013-05-17 05:27 - 2013-06-13 03:12 - 10926080 ____A (Microsoft Corporation) C:WindowsSystem32ieframe.dll

2013-05-17 05:09 - 2013-06-13 03:12 - 02312704 ____A (Microsoft Corporation) C:WindowsSystem32jscript9.dll

2013-05-17 05:02 - 2013-06-13 03:12 - 01392128 ____A (Microsoft Corporation) C:WindowsSystem32wininet.dll

2013-05-17 05:02 - 2013-06-13 03:12 - 01346560 ____A (Microsoft Corporation) C:WindowsSystem32urlmon.dll

2013-05-17 05:01 - 2013-06-13 03:12 - 01494528 ____A (Microsoft Corporation) C:WindowsSystem32inetcpl.cpl

2013-05-17 05:00 - 2013-06-13 03:12 - 00237056 ____A (Microsoft Corporation) C:WindowsSystem32url.dll

2013-05-17 04:58 - 2013-06-13 03:12 - 00085504 ____A (Microsoft Corporation) C:WindowsSystem32jsproxy.dll

2013-05-17 04:56 - 2013-06-13 03:12 - 00599040 ____A (Microsoft Corporation) C:WindowsSystem32vbscript.dll

2013-05-17 04:56 - 2013-06-13 03:12 - 00173056 ____A (Microsoft Corporation) C:WindowsSystem32ieUnatt.exe

2013-05-17 04:55 - 2013-06-13 03:12 - 00816640 ____A (Microsoft Corporation) C:WindowsSystem32jscript.dll

2013-05-17 04:54 - 2013-06-13 03:12 - 00729088 ____A (Microsoft Corporation) C:WindowsSystem32msfeeds.dll

2013-05-17 04:53 - 2013-06-13 03:12 - 02147840 ____A (Microsoft Corporation) C:WindowsSystem32iertutil.dll

2013-05-17 04:51 - 2013-06-13 03:12 - 02382848 ____A (Microsoft Corporation) C:WindowsSystem32mshtml.tlb

2013-05-17 04:51 - 2013-06-13 03:12 - 00096768 ____A (Microsoft Corporation) C:WindowsSystem32mshtmled.dll

2013-05-17 04:46 - 2013-06-13 03:12 - 00248320 ____A (Microsoft Corporation) C:WindowsSystem32ieui.dll

2013-05-17 01:08 - 2013-06-13 03:12 - 12329984 ____A (Microsoft Corporation) C:WindowsSysWOW64mshtml.dll

2013-05-17 00:49 - 2013-06-13 03:12 - 09738752 ____A (Microsoft Corporation) C:WindowsSysWOW64ieframe.dll

2013-05-17 00:39 - 2013-06-13 03:12 - 01800704 ____A (Microsoft Corporation) C:WindowsSysWOW64jscript9.dll

2013-05-17 00:28 - 2013-06-13 03:12 - 01129472 ____A (Microsoft Corporation) C:WindowsSysWOW64wininet.dll

2013-05-17 00:28 - 2013-06-13 03:12 - 01104384 ____A (Microsoft Corporation) C:WindowsSysWOW64urlmon.dll

2013-05-17 00:27 - 2013-06-13 03:12 - 01427968 ____A (Microsoft Corporation) C:WindowsSysWOW64inetcpl.cpl

2013-05-17 00:26 - 2013-06-13 03:12 - 00231936 ____A (Microsoft Corporation) C:WindowsSysWOW64url.dll

2013-05-17 00:23 - 2013-06-13 03:12 - 00065024 ____A (Microsoft Corporation) C:WindowsSysWOW64jsproxy.dll

2013-05-17 00:21 - 2013-06-13 03:12 - 00717824 ____A (Microsoft Corporation) C:WindowsSysWOW64jscript.dll

2013-05-17 00:21 - 2013-06-13 03:12 - 00142848 ____A (Microsoft Corporation) C:WindowsSysWOW64ieUnatt.exe

2013-05-17 00:20 - 2013-06-13 03:12 - 00420864 ____A (Microsoft Corporation) C:WindowsSysWOW64vbscript.dll

2013-05-17 00:19 - 2013-06-13 03:12 - 00607744 ____A (Microsoft Corporation) C:WindowsSysWOW64msfeeds.dll

2013-05-17 00:17 - 2013-06-13 03:12 - 01796096 ____A (Microsoft Corporation) C:WindowsSysWOW64iertutil.dll

2013-05-17 00:17 - 2013-06-13 03:12 - 00073216 ____A (Microsoft Corporation) C:WindowsSysWOW64mshtmled.dll

2013-05-17 00:16 - 2013-06-13 03:12 - 02382848 ____A (Microsoft Corporation) C:WindowsSysWOW64mshtml.tlb

2013-05-17 00:12 - 2013-06-13 03:12 - 00176640 ____A (Microsoft Corporation) C:WindowsSysWOW64ieui.dll

==================== Bamital & volsnap Check =================

C:WindowsSystem32winlogon.exe => MD5 is legit

C:WindowsSystem32wininit.exe => MD5 is legit

C:WindowsSysWOW64wininit.exe => MD5 is legit

C:Windowsexplorer.exe => MD5 is legit

C:WindowsSysWOW64explorer.exe => MD5 is legit

C:WindowsSystem32svchost.exe => MD5 is legit

C:WindowsSysWOW64svchost.exe => MD5 is legit

C:WindowsSystem32services.exe => MD5 is legit

C:WindowsSystem32User32.dll => MD5 is legit

C:WindowsSysWOW64User32.dll => MD5 is legit

C:WindowsSystem32userinit.exe => MD5 is legit

C:WindowsSysWOW64userinit.exe => MD5 is legit

C:WindowsSystem32Driversvolsnap.sys => MD5 is legit

==================== BCD ================================

Windows Boot Manager

--------------------

identifier   {bootmgr}

device   partition=C:

description Windows Boot Manager

locale   en-US

inherit {globalsettings}

default {current}

resumeobject   {ef2e97bf-a6db-11e1-8a83-df70d09a0a30}

displayorder   {current}

toolsdisplayorder {memdiag}

timeout 30

Windows Boot Loader

-------------------

identifier   {current}

device   partition=C:

path   Windowssystem32winload.exe

description Windows 7

locale   en-US

inherit {bootloadersettings}

recoverysequence   {ef2e97c1-a6db-11e1-8a83-df70d09a0a30}

recoveryenabled Yes

osdevice   partition=C:

systemroot   Windows

resumeobject   {ef2e97bf-a6db-11e1-8a83-df70d09a0a30}

nx   OptIn

Windows Boot Loader

-------------------

identifier   {ef2e97c1-a6db-11e1-8a83-df70d09a0a30}

device   ramdisk=[C:]Recoveryef2e97c1-a6db-11e1-8a83-df70d09a0a30Winre.wim,{ef2e97c2-a6db-11e1-8a83-df70d09a0a30}

path   windowssystem32winload.exe

description Windows Recovery Environment

inherit {bootloadersettings}

osdevice   ramdisk=[C:]Recoveryef2e97c1-a6db-11e1-8a83-df70d09a0a30Winre.wim,{ef2e97c2-a6db-11e1-8a83-df70d09a0a30}

systemroot   windows

nx   OptIn

winpe Yes

Resume from Hibernate

---------------------

identifier   {ef2e97bf-a6db-11e1-8a83-df70d09a0a30}

device   partition=C:

path   Windowssystem32winresume.exe

description Windows Resume Application

locale   en-US

inherit {resumeloadersettings}

filedevice   partition=C:

filepath   hiberfil.sys

debugoptionenabled   No

Windows Memory Tester

---------------------

identifier   {memdiag}

device   partition=C:

path   bootmemtest.exe

description Windows Memory Diagnostic

locale   en-US

inherit {globalsettings}

badmemoryaccess Yes

EMS Settings

------------

identifier   {emssettings}

bootems Yes

Debugger Settings

-----------------

identifier   {dbgsettings}

debugtype Serial

debugport 1

baudrate   115200

RAM Defects

-----------

identifier   {badmemory}

Global Settings

---------------

identifier   {globalsettings}

inherit {dbgsettings}

  {emssettings}

  {badmemory}

Boot Loader Settings

--------------------

identifier   {bootloadersettings}

inherit {globalsettings}

  {hypervisorsettings}

Hypervisor Settings

-------------------

identifier   {hypervisorsettings}

hypervisordebugtype Serial

hypervisordebugport 1

hypervisorbaudrate   115200

Resume Loader Settings

----------------------

identifier   {resumeloadersettings}

inherit {globalsettings}

Device options

--------------

identifier   {ef2e97c2-a6db-11e1-8a83-df70d09a0a30}

description Ramdisk Options

ramdisksdidevice   partition=C:

ramdisksdipath   Recoveryef2e97c1-a6db-11e1-8a83-df70d09a0a30boot.sdi

LastRegBack: 2013-06-13 03:52

==================== End Of Log ============================

 

 

 

 

 

Addition

 Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-06-2013

Ran by Zdravomir at 2013-06-15 20:34:36 Run:

Running from C:UsersZdravomirDesktop

Boot Mode: Normal

==========================================================

==================== Installed Programs =======================

µTorrent (Version: 3.1.3)

7-Zip 9.20 (x64 edition) (Version: 9.20.00.0)

Adobe AIR (Version: 3.3.0.3670)

Adobe Creative Suite 6 Production Premium (Version: 6)

Adobe Download Assistant (Version: 1.2)

Adobe Flash Player 11 Plugin (Version: 11.7.700.224)

Adobe Help Manager (Version: 4.0.244)

Adobe Photoshop Lightroom 4 64-bit (Version: 4.0.1)

Adobe Reader X (10.1.7) - Espanol (Version: 10.1.7)

Adobe Story (Version: 1.0.571)

AMD Catalyst Install Manager (Version: 8.0.877.0)

Apple Application Support (Version: 2.3.4)

Apple Mobile Device Support (Version: 6.1.0.13)

Apple Software Update (Version: 2.1.3.127)

ATK Package (Version: 1.0.0010)

AviSynth 2.5

bl (Version: 1.0.0)

Bonjour (Version: 3.0.0.10)

calibre (Version: 0.9.35)

Canon RAW Codec (Version: 1.8.0.68)

Catalyst Control Center InstallProxy (Version: 2012.1116.1515.27190)

CCleaner (Version: 3.19)

CoreAVC Professional Edition (remove only)

Daum PotPlayer 1.5.31934 x64 Edition

Desinstalar impresora EPSON SX125 Series

DriverAgent by eSupport.com

DriverNavigator eSK 1.00 (Version: 1.00)

DSLR Remote Pro (Version: v2.3.1.1)

EPSON Scan

EVEREST Ultimate Edition v5.50 (Version: 5.50)

Football Manager 2012

Google Talk Plugin (Version: 4.0.1.13525)

iTunes (Version: 11.0.3.42)

JetBoost (Version: 2.0.0)

K-Lite Mega Codec Pack 8.7.0 (Version: 8.7.0)

Magic Bullet Suite 32-bit (Version: 11.4.3)

Magic Bullet Suite 64-bit (Version: 11.4.0)

Malwarebytes Anti-Malware versiуn 1.75.0.1300 (Version: 1.75.0.1300)

Microsoft .NET Framework 4 Client Profile (Version: 4.0.30320)

Microsoft Security Client (Version: 4.2.0223.1)

Microsoft Security Essentials (Version: 4.2.223.1)

Microsoft VC9 runtime libraries (Version: 2.0.0)

Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)

Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)

Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (Version: 9.0.30411)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)

Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)

Microsoft WSE 3.0 Runtime (Version: 3.0.5305.0)

Microsoft_VC80_ATL_x86 (Version: 8.0.50727.4053)

Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053)

Microsoft_VC80_CRT_x86 (Version: 8.0.50727.4053)

Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053)

Microsoft_VC80_MFC_x86 (Version: 8.0.50727.4053)

Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053)

Microsoft_VC80_MFCLOC_x86 (Version: 8.0.50727.4053)

Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053)

Microsoft_VC90_ATL_x86 (Version: 1.00.0000)

Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000)

Microsoft_VC90_CRT_x86 (Version: 1.00.0000)

Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000)

Microsoft_VC90_MFC_x86 (Version: 1.00.0000)

Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000)

Microsoft_VC90_MFCLOC_x86 (Version: 1.00.0000)

Microsoft_VC90_MFCLOC_x86_x64 (Version: 1.00.0000)

Monitor Calibration Wizard 1.0

Mozilla Firefox 21.0 (x86 es-ES) (Version: 21.0)

Mozilla Maintenance Service (Version: 21.0)

Nero

OpenOffice.org 3.4 (Version: 3.4.9590)

PDF Settings CS6 (Version: 11.0)

ph (Version: 1.0.0)

PxMergeModule (Version: 1.00.0000)

QuickTime (Version: 7.72.80.56)

Ray Adams ATI Tray Tools

Realtek USB 2.0 Card Reader (Version: 6.2.8400.30143)

Recuva (Version: 1.44)

Samsung Kies (Version: 2.3.3.12085_7)

SAMSUNG USB Driver for Mobile Phones (Version: 1.5.9.0)

Skype Click to Call (Version: 6.9.12585)

Skype™ 6.5 (Version: 6.5.158)

SpeedFan (remove only)

Spotify (Version: 0.9.0.133.gd18ed589)

Synaptics Pointing Device Driver (Version: 15.3.6.0)

syngo fastView (Version: VX57L38)

System Requirements Lab CYRI (Version: 4.5.1.0)

The Photographer's Ephemeris (Version: 1.1.1)

Twixtor 5, After Effects-compatible plugin set

UMPlayer 0.98 [P4] (Version: 0.98)

Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)

Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)

Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)

USB 2.0 UVC 1.3M WebCam

VirtualCloneDrive

VLC media player 2.0.5 (Version: 2.0.5)

==================== Restore Points  =========================

14-06-2013 15:15:31 Installed calibre

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:

==================

Error: (06/15/2013 07:46:17 PM) (Source: WinMgmt) (User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/15/2013 10:12:56 AM) (Source: Bonjour Service) (User: )

Description: Task Scheduling Error: m->NextScheduledSPRetry 26436881

Error: (06/15/2013 10:12:56 AM) (Source: Bonjour Service) (User: )

Description: Task Scheduling Error: m->NextScheduledEvent 26436881

Error: (06/15/2013 10:12:56 AM) (Source: Bonjour Service) (User: )

Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/15/2013 02:36:04 AM) (Source: WinMgmt) (User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/14/2013 11:49:25 PM) (Source: Application Hang) (User: )

Description: The program iexplore.exe version 9.0.8112.16490 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: e7c

Start Time: 01ce6948d4c369fc

Termination Time: 19

Application Path: C:Program Files (x86)Internet Exploreriexplore.exe

Report Id:

Error: (06/14/2013 03:28:49 PM) (Source: WinMgmt) (User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/14/2013 03:08:50 PM) (Source: Application Error) (User: )

Description: Faulting application name: FlashPlayerPlugin_11_7_700_224.exe, version: 11.7.700.224, time stamp: 0x51a67447

Faulting module name: FlashPlayerPlugin_11_7_700_224.exe, version: 11.7.700.224, time stamp: 0x51a67447

Exception code: 0xc0000005

Fault offset: 0x0002bf67

Faulting process id: 0xbf4

Faulting application start time: 0xFlashPlayerPlugin_11_7_700_224.exe0

Faulting application path: FlashPlayerPlugin_11_7_700_224.exe1

Faulting module path: FlashPlayerPlugin_11_7_700_224.exe2

Report Id: FlashPlayerPlugin_11_7_700_224.exe3

Error: (06/14/2013 09:37:37 AM) (Source: WinMgmt) (User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/14/2013 02:33:10 AM) (Source: Bonjour Service) (User: )

Description: Task Scheduling Error: m->NextScheduledSPRetry 109216

System errors:

=============

Error: (06/15/2013 10:13:32 AM) (Source: cdrom) (User: )

Description: The device, DeviceCdRom0, is not ready for access yet.

Error: (06/15/2013 10:13:21 AM) (Source: cdrom) (User: )

Description: The device, DeviceCdRom0, is not ready for access yet.

Error: (06/15/2013 02:34:39 AM) (Source: BugCheck) (User: )

Description: 0x000000d1 (0x00000000cff3002b, 0x0000000000000002, 0x0000000000000008, 0x00000000cff3002b)C:WindowsMEMORY.DMP061513-28470-01

Error: (06/15/2013 02:34:39 AM) (Source: EventLog) (User: )

Description: The previous system shutdown at 2:20:22 AM on ?6/?15/?2013 was unexpected.

Error: (06/14/2013 03:30:56 PM) (Source: Service Control Manager) (User: )

Description: The atitray service failed to start due to the following error:

%%577

Error: (06/14/2013 09:35:13 AM) (Source: Service Control Manager) (User: )

Description: The Internet Connection Sharing (ICS) service hung on starting.

Error: (06/14/2013 09:32:15 AM) (Source: EventLog) (User: )

Description: The previous system shutdown at 9:30:09 AM on ?6/?14/?2013 was unexpected.

Error: (06/14/2013 07:33:29 AM) (Source: cdrom) (User: )

Description: The device, DeviceCdRom0, is not ready for access yet.

Error: (06/14/2013 01:16:36 AM) (Source: Service Control Manager) (User: )

Description: The PEVSystemStart service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.

Error: (06/14/2013 01:15:29 AM) (Source: Application Popup) (User: )

Description: ??C:ComboFixcatchme.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

Microsoft Office Sessions:

=========================

Error: (06/15/2013 07:46:17 PM) (Source: WinMgmt)(User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/15/2013 10:12:56 AM) (Source: Bonjour Service)(User: )

Description: Task Scheduling Error: m->NextScheduledSPRetry 26436881

Error: (06/15/2013 10:12:56 AM) (Source: Bonjour Service)(User: )

Description: Task Scheduling Error: m->NextScheduledEvent 26436881

Error: (06/15/2013 10:12:56 AM) (Source: Bonjour Service)(User: )

Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/15/2013 02:36:04 AM) (Source: WinMgmt)(User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/14/2013 11:49:25 PM) (Source: Application Hang)(User: )

Description: iexplore.exe9.0.8112.16490e7c01ce6948d4c369fc19C:Program Files (x86)Internet Exploreriexplore.exe

Error: (06/14/2013 03:28:49 PM) (Source: WinMgmt)(User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/14/2013 03:08:50 PM) (Source: Application Error)(User: )

Description: FlashPlayerPlugin_11_7_700_224.exe11.7.700.22451a67447FlashPlayerPlugin_11_7_700_224.exe11.7.700.22451a67447c00000050002bf67bf401ce68e6a60cfddcC:WindowsSysWOW64MacromedFlashFlashPlayerPlugin_11_7_700_224.exeC:WindowsSysWOW64MacromedFlashFlashPlayerPlugin_11_7_700_224.exe8d95b990-d4f3-11e2-bf8c-002215b0cb7b

Error: (06/14/2013 09:37:37 AM) (Source: WinMgmt)(User: )

Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/14/2013 02:33:10 AM) (Source: Bonjour Service)(User: )

Description: Task Scheduling Error: m->NextScheduledSPRetry 109216

CodeIntegrity Errors:

===================================

  Date: 2013-06-14 15:30:56.936

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1Program Files (x86)Ray AdamsATI Tray Toolsatitray64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-06-14 15:30:56.874

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1Program Files (x86)Ray AdamsATI Tray Toolsatitray64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-06-14 01:15:29.025

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1ComboFixcatchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-06-14 01:15:28.962

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1ComboFixcatchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-04-17 00:17:47.514

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1WindowsSystem32driversathrx.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-04-17 00:17:47.296

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1WindowsSystem32driversathrx.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-04-17 00:14:59.285

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1WindowsSystem32driversathrx.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-04-17 00:14:59.207

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1WindowsSystem32driversathrx.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-04-17 00:14:50.978

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1WindowsSystem32driversathrx.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-04-17 00:14:50.898

  Description: Windows is unable to verify the image integrity of the file DeviceHarddiskVolume1WindowsSystem32driversathrx.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

Percentage of memory in use: 45%

Total physical RAM: 3071.27 MB

Available physical RAM: 1668.13 MB

Total Pagefile: 6140.73 MB

Available Pagefile: 4556.83 MB

Total Virtual: 8192 MB

Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:58.22 GB) (Free:8.07 GB) NTFS (Disk=0 Partition=1) ==>[Drive with boot components (obtained from BCD)]

Drive e: (New Volume) (Fixed) (Total:407.54 GB) (Free:172.99 GB) NTFS (Disk=0 Partition=2)

==================== MBR & Partition Table ==================

========================================================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 6E697373)

Partition 1: (Active) - (Size=58 GB) - (Type=07 NTFS)

Partition 2: (Not Active) - (Size=408 GB) - (Type=07 NTFS)

==================== End Of Log ============================

:) Благодаря.

Използвали сте специализирани инструменти без инструкция. Затова изтеглете Delfix.exe и го стартирайте. Сложете отметка пред Remove disinfection tools и натиснете бутона Run. Инструментът ще се самоизтрие, след като приключи работата си.

 

След това изтеглете и стартирайте Microsoft Fix it 50688. Пишете, след като приключите.

 

 

 

  • Автор

Готово.Мисля че нещата вече изглеждат по-добре.Благодаря за което.

Ще направите ли обновяване на Java SE до версия 21? Ето тук има информация, виж JRE.

 

След това изтеглете JavaRa и я разархивирайте на десктопа.

 

Важно: Преди да започнете работа с JavaRa, затворете Internet Explorer!

  • [*]Кликнете два пъти върху
JavaRa.exe, за да стартирате програмата [*]От падащото меню, изберете English, после Select. [*]JavaRa ще се стартира. [*]За да премахнете по-старите версия от компютъра изберете опцията Remove Older Versions. [*]Посочете Yes, когато ви бъде зададен въпрос. [*]Когато JavaRa приключи успешно премахването на старите версии, ще получите съобщение, че лог файлът от извършената процедура е създаден. Прегледайте лога и се убедете, че старите версии на Java са премахнати. Няма нужда да публикувате лог от JavaRa.

  • Автор

 

Ще направите ли обновяване на Java SE до версия 21? Ето тук има информация, виж JRE.

 

След това изтеглете JavaRa и я разархивирайте на десктопа.

 

Важно: Преди да започнете работа с JavaRa, затворете Internet Explorer!

[*]Кликнете два пъти върху JavaRa.exe, за да стартирате програмата

[*]От падащото меню, изберете English, после Select.

[*]JavaRa ще се стартира.

[*]За да премахнете по-старите версия от компютъра изберете опцията Remove Older Versions.

[*]Посочете Yes, когато ви бъде зададен въпрос.

[*]Когато JavaRa приключи успешно премахването на старите версии, ще получите съобщение, че лог файлът от извършената процедура е създаден. Прегледайте лога и се убедете, че старите версии на Java са премахнати. Няма нужда да публикувате лог от JavaRa.

 

„Could not find JavaRa.def!"

Оставете JavaRA, можете да изтриете архива и програмата. Нека да проверим все пак с EOS:

1) Изтеглете: ESET Online Scanner
2) Стартирайте esetsmartinstaller_enu.exe
3) Сложете отметка на YES, I accept the Terms of Use и изберете Start
4) Скенерът ще започне да изтегля компонентите, които са му необходими.
5) Уверете се, че има отметки на следните редове, включително и тези от менюто Advanced Settings:

  • [*]
Scan archives [*]Scan for potentially unwanted applications [*]Scan for potentially unsafe applications [*]Enable Anti-Stealth technology

Уверете се че, Remove found threats няма отметка!

И накрая изберете Start

6) Скенерът ще започне да изтегля последните дефиниции.
7) След като сканирането завърши, изберете Finish.
8) Отворете папката C:Program FilesESETESET Online Scanner.

9) Публикувайте съдържанието на лога или го прикачете в следващия си коментар (виж опцията "прикачени файлове", когато публикувате коментар).

  • Автор

Никакви,предполагам че всичко тръгна зле след като инсталирах(деинсталирах)разни неща,които не биваше да пипам.

Благодаря ви за помощта.Лека вечер.

Всъщност,само Mozilla на моменти забива.

Може да опитаме да възстановим Windows с една програма, но само ако имате сериозни проблеми. Как забива Firefox? Спира да работи или блокира?

  • Автор

Може да опитаме да възстановим Windows с една програма, но само ако имате сериозни проблеми. Как забива Firefox? Спира да работи или блокира?

Блокира,най често not respond,след няколко секунди се оправя.На моменти става супербавен(докато пиша нещо например).Не съм ъпдейтвал Биос-а,не знам дали има връзка,но да кажа. :wink12:

  • Автор

Като отворите Device Manager има ли някакви въпросителни или липсващи драйвери?

Не,никакви.

Добре. Понеже има доста системни грешки, може би ще е най-добре ето това:

Изтеглете Windows Repair All in one (виж надписа Installer (5.30 MB)). Инсталирайте приложението и го стартирайте.

От стъпка 2 → стартирайте Check Disk
Публикувано изображение

От стъпка 3 → стартирайте SFC
Публикувано изображение

от стъпка 4 направете бекъп на системата натискайки Create (под System Restore) и backup (под Registry Backup).
Публикувано изображение

от Start Repairs натиснете Start и сложете отметкa пред Repair Windows Updates (оставете останалите по-подразбиране).
Публикувано изображение

Сложете отметка пред restart system when finished и натиснете Start.

 

Работата на програмата може да продължи дълго, имайте търпение. Пишете, когато приключите.

  • Автор

Добре. Понеже има доста системни грешки, може би ще е най-добре ето това:

Изтеглете Windows Repair All in one (виж надписа Installer (5.30 MB)). Инсталирайте приложението и го стартирайте.

От стъпка 2 → стартирайте Check Disk

Публикувано изображение

От стъпка 3 → стартирайте SFC

Публикувано изображение

от стъпка 4 направете бекъп на системата натискайки Create (под System Restore) и backup (под Registry Backup).

Публикувано изображение

от Start Repairs натиснете Start и сложете отметкa пред Repair Windows Updates (оставете останалите по-подразбиране).

Публикувано изображение

Сложете отметка пред restart system when finished и натиснете Start.

 

Работата на програмата може да продължи дълго, имайте търпение. Пишете, когато приключите.

Направих го,всъщност не отне много време.

Относно този лог,това нормално ли е?

Не успях да го кача в предния коментар.

windows_repair_hkey_local_machine_3_log.txt

Архивирана тема

Темата е твърде стара и е архивирана. Не можете да добавяте нови отговори в нея, но винаги можете да публикувате нова тема, в която да продължи дискусията. Регистрирайте се или влезте във вашия профил за да публикувате нова тема.

Разглеждащи това в момента 0

  • Няма регистрирани потребители разглеждащи тази страница.

Дарение

  • Подкрепи съществуването на форума - направи дарение
    32%
    Дарени 315 € от нужните 1 000 €

Бюлетин

Получавайте известие, когато има важна промяна или новина свързана с форума.

Профил

Навигация

Търсене

Търсене

Конфигуриране на push известия в браузъра

Chrome (Android)
  1. Докоснете иконата на катинар до адресната лента.
  2. Докоснете Разрешения → Известия.
  3. Променете предпочитанията си.
Chrome (Desktop)
  1. Кликнете върху иконата на катинар в адресната лента.
  2. Изберете Настройки на сайта.
  3. Намерете Известия и коригирайте предпочитанията си.