Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL logfile created on: 9.9.2014. 17:06:31 - Run 1
- OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Ljubo\Desktop
- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
- Internet Explorer (Version = 8.0.7600.16385)
- Locale: 0000041a | Country: Hrvatska | Language: HRV | Date Format: d.M.yyyy.
- 2,00 Gb Total Physical Memory | 1,27 Gb Available Physical Memory | 63,51% Memory free
- 4,00 Gb Paging File | 2,95 Gb Available in Paging File | 73,85% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
- Drive C: | 156,15 Gb Total Space | 127,44 Gb Free Space | 81,61% Space Free | Partition Type: NTFS
- Drive D: | 309,51 Gb Total Space | 309,03 Gb Free Space | 99,84% Space Free | Partition Type: NTFS
- Computer Name: LJUBO-PC | User Name: Ljubo | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: Current user | Quick Scan
- Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Processes (SafeList) ==========[/color]
- PRC - [2014.09.09 17:05:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Ljubo\Desktop\OTL.exe
- PRC - [2014.08.30 04:49:43 | 000,852,808 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
- PRC - [2014.08.11 14:51:00 | 003,244,048 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgidsagent.exe
- PRC - [2014.08.11 14:42:36 | 000,838,160 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgnsx.exe
- PRC - [2014.08.11 14:42:34 | 005,187,088 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgui.exe
- PRC - [2014.08.11 14:41:40 | 000,657,936 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgemcx.exe
- PRC - [2014.08.11 14:36:28 | 000,289,328 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgwdsvc.exe
- PRC - [2014.03.20 14:44:26 | 001,952,568 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe
- PRC - [2014.03.20 14:44:24 | 001,773,368 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe
- PRC - [2014.03.04 14:34:44 | 001,821,128 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
- PRC - [2014.03.04 14:34:44 | 000,943,048 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
- PRC - [2014.03.04 13:32:56 | 000,411,936 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
- PRC - [2014.02.05 11:32:47 | 002,234,144 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
- PRC - [2014.02.05 11:32:34 | 001,593,632 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
- PRC - [2014.02.05 11:32:31 | 015,904,544 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
- PRC - [2013.12.21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
- PRC - [2012.12.19 08:42:10 | 000,241,152 | ---- | M] (Pixart Imaging Inc) -- C:\Windows\System32\TiltWheelMouse.exe
- PRC - [2009.07.14 03:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
- PRC - [2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
- PRC - [2009.07.14 03:14:15 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
- PRC - [2003.05.27 15:50:38 | 000,040,960 | ---- | M] (Zenographics) -- C:\Windows\System32\ZSTATUS.EXE
- [color=#E56717]========== Modules (No Company Name) ==========[/color]
- MOD - [2014.08.30 04:49:41 | 000,331,592 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\37.0.2062.103\ppGoogleNaClPluginChrome.dll
- MOD - [2014.08.30 04:49:38 | 008,577,864 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\37.0.2062.103\pdf.dll
- MOD - [2014.08.30 04:49:33 | 001,098,056 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\37.0.2062.103\libglesv2.dll
- MOD - [2014.08.30 04:49:31 | 000,174,408 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\37.0.2062.103\libegl.dll
- MOD - [2014.08.30 04:49:30 | 001,660,232 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\37.0.2062.103\ffmpegsumo.dll
- [color=#E56717]========== Services (SafeList) ==========[/color]
- SRV - [2014.09.08 23:14:22 | 000,262,320 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
- SRV - [2014.08.11 14:51:00 | 003,244,048 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2014\avgidsagent.exe -- (AVGIDSAgent)
- SRV - [2014.08.11 14:36:28 | 000,289,328 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2014\avgwdsvc.exe -- (avgwd)
- SRV - [2014.07.17 07:42:17 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
- SRV - [2014.03.20 14:44:24 | 001,773,368 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc)
- SRV - [2014.03.04 13:32:56 | 000,411,936 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
- SRV - [2014.02.05 11:32:34 | 001,593,632 | ---- | M] (NVIDIA Corporation) [Auto | Start_Pending] -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService)
- SRV - [2014.02.05 11:32:31 | 015,904,544 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)
- SRV - [2013.12.21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
- SRV - [2009.07.14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
- SRV - [2009.07.14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
- SRV - [2009.07.14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
- [color=#E56717]========== Driver Services (SafeList) ==========[/color]
- DRV - [2014.06.30 12:43:12 | 000,121,624 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgdiskx.sys -- (Avgdiskx)
- DRV - [2014.06.17 16:22:02 | 000,188,696 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86)
- DRV - [2014.06.17 16:21:22 | 000,197,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix)
- DRV - [2014.06.17 16:18:00 | 000,241,944 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avglogx.sys -- (Avglogx)
- DRV - [2014.06.17 16:17:58 | 000,147,736 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgidshx.sys -- (AVGIDSHX)
- DRV - [2014.06.17 16:06:40 | 000,199,960 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgidsdriverx.sys -- (AVGIDSDriver)
- DRV - [2014.06.17 16:06:24 | 000,098,584 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Stopped] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86)
- DRV - [2014.06.17 16:06:22 | 000,027,416 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgrkx86.sys -- (Avgrkx86)
- DRV - [2014.06.17 16:06:20 | 000,021,272 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgidsshimx.sys -- (AVGIDSShim)
- DRV - [2014.03.20 23:03:40 | 010,523,480 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
- DRV - [2014.03.20 23:03:38 | 000,162,592 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA)
- DRV - [2014.02.10 12:06:30 | 000,012,320 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv)
- DRV - [2013.12.27 20:42:24 | 000,034,080 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvvad32v.sys -- (nvvad_WaveExtensible)
- DRV - [2012.12.19 08:42:08 | 000,005,120 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\t_mouse.sys -- (t_mouse.sys)
- DRV - [2009.07.14 03:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
- DRV - [2009.07.14 03:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
- DRV - [2009.07.14 03:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
- DRV - [2009.07.14 01:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
- DRV - [2009.07.14 01:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
- DRV - [2009.07.14 01:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
- DRV - [2009.07.14 00:02:52 | 000,043,008 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Rtnicxp.sys -- (RTL8023xp)
- DRV - [2009.07.14 00:02:47 | 000,050,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C)
- [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
- [color=#E56717]========== Internet Explorer ==========[/color]
- IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
- IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.search.ask.com/?tpid=SGT-V7&o=APN11004&pf=V7&trgb=CR&p2=%5EB3Q%5EYYYYYY%5EYY%5EHR&gct=hp&apn_ptnrs=%5EB3Q&apn_dtid=%5EYYYYYY%5EYY%5EHR&apn_dbr=cr_34.0.1847.116&apn_uid=A45AB645-9861-405C-ABD2-3279A78230C1&itbv=12.10.6.5030&doi=2014-04-25&psv=
- IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
- IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = hr
- IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 52 0F D7 F9 B6 59 CF 01 [binary data]
- IE - HKCU\..\URLSearchHook: {D8278076-BC68-4484-9233-6E7F1628B56C} - No CLSID value found
- IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
- IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- [color=#E56717]========== FireFox ==========[/color]
- FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:31.0
- FF - user.js - File not found
- FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_179.dll ()
- FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
- FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
- FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
- FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
- FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 31.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 31.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
- [2014.09.01 16:28:56 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Ljubo\AppData\Roaming\mozilla\Extensions
- [2014.09.01 16:40:10 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Ljubo\AppData\Roaming\mozilla\Firefox\Profiles\d4y819gn.default\extensions
- [2014.09.01 16:21:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\browser\extensions
- [2014.09.01 16:21:34 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- [color=#E56717]========== Chrome ==========[/color]
- CHR - default_search_provider: (Enabled)
- CHR - default_search_provider: search_url =
- CHR - default_search_provider: suggest_url =
- CHR - homepage: http://google.hr/
- CHR - plugin: Error reading preferences file
- CHR - Extension: Google NovÄŤanik = C:\Users\Ljubo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
- O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
- O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL (Microsoft Corporation)
- O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
- O4 - HKLM..\Run: [MouseDriver] C:\Windows\System32\TiltWheelMouse.exe (Pixart Imaging Inc)
- O4 - HKLM..\Run: [NvBackend] C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
- O4 - HKLM..\Run: [ShadowPlay] C:\Windows\System32\nvspcap.dll (NVIDIA Corporation)
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
- O8 - Extra context menu item: I&zvezi u Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 File not found
- O9 - Extra Button: Pošalji u OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
- O9 - Extra 'Tools' menuitem : Po&šalji u OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll (Microsoft Corporation)
- O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
- O13 - gopher Prefix: missing
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{695A6DA5-A3E9-4535-AD3A-AB3A66A43056}: DhcpNameServer = 192.168.1.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FA3D21C9-BC91-4940-AB87-553D6B763DD7}: DhcpNameServer = 192.168.1.1
- O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL (Microsoft Corporation)
- O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
- O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
- O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL (Microsoft Corporation)
- O32 - HKLM CDRom: AutoRun - 1
- O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
- O34 - HKLM BootExecute: (autocheck autochk *)
- O35 - HKLM\..comfile [open] -- "%1" %*
- O35 - HKLM\..exefile [open] -- "%1" %*
- O37 - HKLM\...com [@ = comfile] -- "%1" %*
- O37 - HKLM\...exe [@ = exefile] -- "%1" %*
- O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
- O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
- O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
- NetSvcs: FastUserSwitchingCompatibility - File not found
- NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
- NetSvcs: Nla - File not found
- NetSvcs: Ntmssvc - File not found
- NetSvcs: NWCWorkstation - File not found
- NetSvcs: Nwsapagent - File not found
- NetSvcs: SRService - File not found
- NetSvcs: WmdmPmSp - File not found
- NetSvcs: LogonHours - File not found
- NetSvcs: PCAudit - File not found
- NetSvcs: helpsvc - File not found
- NetSvcs: uploadmgr - File not found
- Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
- Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
- CREATERESTOREPOINT
- Restore point Set: OTL Restore Point
- [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
- [2014.09.09 17:04:52 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Ljubo\Desktop\OTL.exe
- [2014.09.08 09:42:31 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\AppData\Local\Avg
- [2014.09.07 21:33:31 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\AppData\Roaming\Macromedia
- [2014.09.07 21:33:31 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\AppData\Local\Macromedia
- [2014.09.07 21:33:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
- [2014.09.06 18:34:16 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\Desktop\Nova mapa
- [2014.09.01 16:37:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Puran Defrag
- [2014.09.01 16:37:42 | 000,000,000 | ---D | C] -- C:\Program Files\Puran Defrag
- [2014.09.01 16:35:49 | 002,757,592 | ---- | C] (Puran Software ) -- C:\Users\Ljubo\Desktop\PuranDefragSetup.exe
- [2014.09.01 16:22:16 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\AppData\Roaming\Mozilla
- [2014.09.01 16:22:16 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\AppData\Local\Mozilla
- [2014.09.01 16:21:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
- [2014.09.01 16:21:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
- [2014.09.01 16:20:44 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
- [2014.09.01 10:55:33 | 000,000,000 | -HSD | C] -- C:\found.002
- [2014.08.31 07:44:50 | 000,000,000 | -HSD | C] -- C:\found.001
- [2014.08.29 20:13:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Avg_Update_0814av
- [2014.08.22 17:30:33 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\AppData\Roaming\WinRAR
- [2014.08.21 10:41:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Avg_Update_0614a
- [2014.08.19 20:32:36 | 000,110,296 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
- [2014.08.19 20:32:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
- [2014.08.19 20:32:00 | 000,074,456 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys
- [2014.08.19 20:32:00 | 000,051,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys
- [2014.08.19 20:32:00 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
- [2014.08.19 20:32:00 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
- [2014.08.19 20:32:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
- [2014.08.19 20:25:25 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\AppData\Roaming\AVG2014
- [2014.08.19 20:23:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
- [2014.08.19 20:23:14 | 000,000,000 | -H-D | C] -- C:\$AVG
- [2014.08.19 20:23:14 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2014
- [2014.08.19 20:22:30 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
- [2014.08.19 20:19:55 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\AppData\Local\MFAData
- [2014.08.19 20:19:55 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
- [2014.08.19 20:19:55 | 000,000,000 | ---D | C] -- C:\Users\Ljubo\AppData\Local\Avg2014
- [2014.08.19 20:17:59 | 000,000,000 | ---D | C] -- C:\Windows\pss
- [2014.08.18 16:07:39 | 000,000,000 | -HSD | C] -- C:\found.000
- [2014.08.11 11:37:16 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
- [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
- [2014.09.09 17:05:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Ljubo\Desktop\OTL.exe
- [2014.09.09 16:35:00 | 000,000,934 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
- [2014.09.09 16:25:31 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
- [2014.09.09 07:55:10 | 000,110,296 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys
- [2014.09.09 07:35:02 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
- [2014.09.08 22:34:36 | 000,016,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- [2014.09.08 22:34:25 | 000,016,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- [2014.09.08 22:25:15 | 1609,891,840 | -HS- | M] () -- C:\hiberfil.sys
- [2014.09.06 20:34:03 | 000,002,187 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
- [2014.09.06 18:27:08 | 000,000,000 | ---- | M] () -- C:\Users\Ljubo\AppData\Local\{0564ABFE-7F36-4886-96DF-220BF17FAFEF}
- [2014.09.01 17:07:55 | 000,001,023 | ---- | M] () -- C:\Users\Ljubo\Desktop\Puran Defrag.lnk
- [2014.09.01 16:36:57 | 002,757,592 | ---- | M] (Puran Software ) -- C:\Users\Ljubo\Desktop\PuranDefragSetup.exe
- [2014.09.01 16:21:36 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
- [2014.09.01 16:13:45 | 000,244,320 | ---- | M] () -- C:\Users\Ljubo\Desktop\Firefox Setup Stub 31.0.exe
- [2014.08.30 20:30:24 | 000,651,450 | ---- | M] () -- C:\Windows\System32\perfh009.dat
- [2014.08.30 20:30:24 | 000,120,382 | ---- | M] () -- C:\Windows\System32\perfc009.dat
- [2014.08.29 20:13:03 | 000,000,320 | ---- | M] () -- C:\Windows\tasks\0814avUpdateInfo.job
- [2014.08.21 10:41:28 | 000,000,314 | ---- | M] () -- C:\Windows\tasks\0614aUpdateInfo.job
- [2014.08.19 20:32:05 | 000,001,060 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
- [2014.08.19 20:23:55 | 000,000,935 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2014.lnk
- [2014.08.19 19:56:08 | 017,289,856 | ---- | M] () -- C:\mbam-setup-2.0.2.1012.exe
- [2014.08.18 16:07:58 | 000,013,600 | ---- | M] () -- C:\bootsqm.dat
- [color=#E56717]========== Files Created - No Company Name ==========[/color]
- [2014.09.06 18:27:08 | 000,000,000 | ---- | C] () -- C:\Users\Ljubo\AppData\Local\{0564ABFE-7F36-4886-96DF-220BF17FAFEF}
- [2014.09.01 17:07:55 | 000,001,023 | ---- | C] () -- C:\Users\Ljubo\Desktop\Puran Defrag.lnk
- [2014.09.01 16:21:36 | 000,001,117 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
- [2014.09.01 16:21:36 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
- [2014.09.01 16:13:45 | 000,244,320 | ---- | C] () -- C:\Users\Ljubo\Desktop\Firefox Setup Stub 31.0.exe
- [2014.08.29 20:13:03 | 000,000,320 | ---- | C] () -- C:\Windows\tasks\0814avUpdateInfo.job
- [2014.08.21 10:41:28 | 000,000,314 | ---- | C] () -- C:\Windows\tasks\0614aUpdateInfo.job
- [2014.08.19 20:32:05 | 000,001,060 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
- [2014.08.19 20:23:55 | 000,000,935 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2014.lnk
- [2014.08.19 19:55:43 | 017,289,856 | ---- | C] () -- C:\mbam-setup-2.0.2.1012.exe
- [2014.08.18 16:07:58 | 000,013,600 | ---- | C] () -- C:\bootsqm.dat
- [2012.12.19 08:42:08 | 000,005,120 | ---- | C] () -- C:\Windows\System32\drivers\t_mouse.sys
- [color=#E56717]========== ZeroAccess Check ==========[/color]
- [2009.07.14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
- [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- "" = %SystemRoot%\system32\shell32.dll -- [2009.07.14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
- "" = %systemroot%\system32\wbem\fastprox.dll -- [2009.07.14 03:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
- "" = %systemroot%\system32\wbem\wbemess.dll -- [2009.07.14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Both
- [color=#E56717]========== LOP Check ==========[/color]
- [2014.04.16 23:20:36 | 000,000,000 | ---D | M] -- C:\Users\Ljubo\AppData\Roaming\Ashampoo
- [2014.08.19 20:25:25 | 000,000,000 | ---D | M] -- C:\Users\Ljubo\AppData\Roaming\AVG2014
- [2014.04.16 23:18:17 | 000,000,000 | ---D | M] -- C:\Users\Ljubo\AppData\Roaming\BSplayer
- [2014.04.16 23:15:21 | 000,000,000 | ---D | M] -- C:\Users\Ljubo\AppData\Roaming\BSplayer Pro
- [2014.06.23 19:31:10 | 000,000,000 | ---D | M] -- C:\Users\Ljubo\AppData\Roaming\Dropbox
- [2014.06.23 19:31:10 | 000,000,000 | ---D | M] -- C:\Users\Ljubo\AppData\Roaming\DropboxMaster
- [2014.04.28 16:43:27 | 000,000,000 | ---D | M] -- C:\Users\Ljubo\AppData\Roaming\rmi
- [2014.08.19 20:23:54 | 000,000,000 | ---D | M] -- C:\Users\Ljubo\AppData\Roaming\TuneUp Software
- [2014.06.05 16:11:26 | 000,000,000 | ---D | M] -- C:\Users\Ljubo\AppData\Roaming\VS Revo Group
- [color=#E56717]========== Purity Check ==========[/color]
- [color=#E56717]========== Custom Scans ==========[/color]
- [color=#A23BEC]< %SYSTEMDRIVE%\*.* >[/color]
- [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
- [2014.08.18 16:07:58 | 000,013,600 | ---- | M] () -- C:\bootsqm.dat
- [2009.06.10 23:42:20 | 000,000,010 | ---- | M] () -- C:\config.sys
- [2014.09.08 22:25:15 | 1609,891,840 | -HS- | M] () -- C:\hiberfil.sys
- [2014.08.19 19:56:08 | 017,289,856 | ---- | M] () -- C:\mbam-setup-2.0.2.1012.exe
- [2014.09.08 22:25:15 | 2146,525,184 | -HS- | M] () -- C:\pagefile.sys
- [color=#A23BEC]< %systemroot%\Fonts\*.com >[/color]
- [2009.07.14 06:52:25 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
- [2009.07.14 06:52:25 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
- [2009.07.14 06:52:25 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
- [2009.07.14 06:52:25 | 000,043,318 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont
- [color=#A23BEC]< %systemroot%\Fonts\*.dll >[/color]
- [color=#A23BEC]< %systemroot%\Fonts\*.ini >[/color]
- [2009.06.10 23:31:19 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini
- [color=#A23BEC]< %systemroot%\Fonts\*.ini2 >[/color]
- [color=#A23BEC]< %systemroot%\Fonts\*.exe >[/color]
- [color=#A23BEC]< %systemroot%\system32\spool\prtprocs\w32x86\*.* >[/color]
- [2003.05.27 15:50:38 | 000,049,152 | ---- | M] (Zenographics, Inc.) -- C:\Windows\system32\spool\prtprocs\w32x86\IMFPRINT.DLL
- [2009.07.14 03:15:35 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spool\prtprocs\w32x86\jnwppr.dll
- [2006.10.26 19:56:12 | 000,033,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spool\prtprocs\w32x86\msonpppr.dll
- [2009.07.14 03:16:19 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spool\prtprocs\w32x86\winprint.dll
- [color=#A23BEC]< %systemroot%\REPAIR\*.bak1 >[/color]
- [color=#A23BEC]< %systemroot%\REPAIR\*.ini >[/color]
- [color=#A23BEC]< %systemroot%\system32\*.jpg >[/color]
- [color=#A23BEC]< %systemroot%\*.jpg >[/color]
- [color=#A23BEC]< %systemroot%\*.png >[/color]
- [color=#A23BEC]< %systemroot%\*.scr >[/color]
- [color=#A23BEC]< %systemroot%\*._sy >[/color]
- [color=#A23BEC]< %APPDATA%\Adobe\Update\*.* >[/color]
- [color=#A23BEC]< %ALLUSERSPROFILE%\Favorites\*.* >[/color]
- [color=#A23BEC]< %APPDATA%\Microsoft\*.* >[/color]
- [color=#A23BEC]< %PROGRAMFILES%\*.* >[/color]
- [2009.07.14 06:41:57 | 000,000,174 | -HS- | M] () -- C:\Program Files\desktop.ini
- [color=#A23BEC]< %APPDATA%\Update\*.* >[/color]
- [color=#A23BEC]< %systemroot%\*. /mp /s >[/color]
- [color=#A23BEC]< %systemroot%\System32\config\*.sav >[/color]
- [color=#A23BEC]< %PROGRAMFILES%\bak. /s >[/color]
- [color=#A23BEC]< %systemroot%\system32\bak. /s >[/color]
- [color=#A23BEC]< %ALLUSERSPROFILE%\Start Menu\*.lnk /x >[/color]
- [color=#A23BEC]< %systemroot%\system32\config\systemprofile\*.dat /x >[/color]
- [color=#A23BEC]< %systemroot%\*.config >[/color]
- [color=#A23BEC]< %systemroot%\system32\*.db >[/color]
- [color=#A23BEC]< %APPDATA%\Microsoft\Internet Explorer\Quick Launch\*.lnk /x >[/color]
- [2014.04.16 23:00:59 | 000,000,221 | -HS- | M] () -- C:\Users\Ljubo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini
- [color=#A23BEC]< %USERPROFILE%\Desktop\*.exe >[/color]
- [2014.09.01 16:13:45 | 000,244,320 | ---- | M] () -- C:\Users\Ljubo\Desktop\Firefox Setup Stub 31.0.exe
- [2014.09.09 17:05:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Ljubo\Desktop\OTL.exe
- [2014.09.01 16:36:57 | 002,757,592 | ---- | M] (Puran Software ) -- C:\Users\Ljubo\Desktop\PuranDefragSetup.exe
- [color=#A23BEC]< %PROGRAMFILES%\Common Files\*.* >[/color]
- [color=#A23BEC]< %systemroot%\*.src >[/color]
- [color=#A23BEC]< %systemroot%\install\*.* >[/color]
- [color=#A23BEC]< %systemroot%\system32\DLL\*.* >[/color]
- [color=#A23BEC]< %systemroot%\system32\HelpFiles\*.* >[/color]
- [color=#A23BEC]< %systemroot%\system32\rundll\*.* >[/color]
- [color=#A23BEC]< %systemroot%\winn32\*.* >[/color]
- [color=#A23BEC]< %systemroot%\Java\*.* >[/color]
- [color=#A23BEC]< %systemroot%\system32\test\*.* >[/color]
- [color=#A23BEC]< %systemroot%\system32\Rundll32\*.* >[/color]
- [color=#A23BEC]< %systemroot%\AppPatch\Custom\*.* >[/color]
- [color=#A23BEC]< %APPDATA%\Roaming\Microsoft\Windows\Recent\*.lnk /x >[/color]
- [color=#A23BEC]< %PROGRAMFILES%\PC-Doctor\Downloads\*.* >[/color]
- [color=#A23BEC]< %PROGRAMFILES%\Internet Explorer\*.tmp >[/color]
- [color=#A23BEC]< %PROGRAMFILES%\Internet Explorer\*.dat >[/color]
- [color=#A23BEC]< %USERPROFILE%\My Documents\*.exe >[/color]
- [color=#A23BEC]< %USERPROFILE%\*.exe >[/color]
- [color=#A23BEC]< %systemroot%\ADDINS\*.* >[/color]
- [2009.06.10 23:20:04 | 000,000,802 | ---- | M] () -- C:\Windows\ADDINS\FXSEXT.ecf
- [color=#A23BEC]< %systemroot%\assembly\*.bak2 >[/color]
- [color=#A23BEC]< %systemroot%\Config\*.* >[/color]
- [color=#A23BEC]< %systemroot%\REPAIR\*.bak2 >[/color]
- [color=#A23BEC]< %systemroot%\SECURITY\Database\*.sdb /x >[/color]
- [color=#A23BEC]< %systemroot%\SYSTEM\*.bak2 >[/color]
- [color=#A23BEC]< %systemroot%\Web\*.bak2 >[/color]
- [color=#A23BEC]< %systemroot%\Driver Cache\*.* >[/color]
- [color=#A23BEC]< %PROGRAMFILES%\Mozilla Firefox\0*.exe >[/color]
- [color=#A23BEC]< %ProgramFiles%\Microsoft Common\*.* >[/color]
- [color=#A23BEC]< %ProgramFiles%\TinyProxy. >[/color]
- [color=#A23BEC]< %USERPROFILE%\Favorites\*.url /x >[/color]
- [2014.04.16 22:48:59 | 000,000,402 | -HS- | M] () -- C:\Users\Ljubo\Favorites\desktop.ini
- [color=#A23BEC]< %systemroot%\System32\Wbem\*.exe >[/color]
- [2009.07.14 03:14:24 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wbem\mofcomp.exe
- [2009.07.14 03:14:35 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wbem\scrcons.exe
- [2009.07.14 03:14:43 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wbem\unsecapp.exe
- [2009.07.14 03:14:44 | 000,174,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wbem\wbemtest.exe
- [2009.07.14 03:14:45 | 000,078,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wbem\WinMgmt.exe
- [2009.07.14 03:14:46 | 000,115,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wbem\WMIADAP.exe
- [2009.07.14 03:14:46 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wbem\WmiApSrv.exe
- [2009.07.14 03:14:46 | 000,395,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wbem\WMIC.exe
- [2009.07.14 03:14:47 | 000,254,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wbem\WmiPrvSE.exe
- [color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >[/color]
- [color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >[/color]
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2014-04-16 21:49:30
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement