Advertisement
Guest User

Untitled

a guest
Mar 29th, 2014
2,025
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 44.06 KB | None | 0 0
  1. Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014
  2. Ran by w7 at 2014-03-29 13:40:10
  3. Running from C:\Users\w7\Downloads
  4. Boot Mode: Normal
  5. ==========================================================
  6.  
  7.  
  8. ==================== Security Center ========================
  9.  
  10. AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
  11. AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  12. AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
  13.  
  14. ==================== Installed Programs ======================
  15.  
  16. 2007 Microsoft Office Suite Service Pack 2 (SP2) (x32 Version: - Microsoft) Hidden
  17. 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
  18. ACDSee Pro 3 (HKLM-x32\...\{1B280FAF-AE10-4E31-A41A-DB3917D651DC}) (Version: 3.0.355 - ACD Systems International Inc.)
  19. Adobe Reader XI (11.0.06) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
  20. AMD Catalyst Install Manager (HKLM\...\{AC2AAFF8-6719-A420-AB9F-7E5F5E6CA46A}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.)
  21. Atheros Bluetooth Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.4.0.110 - Atheros)
  22. avast! Free Antivirus (HKLM-x32\...\avast) (Version: 9.0.2016 - Avast Software)
  23. Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 15.0.7.2 - Broadcom Corporation)
  24. BS.Player PRO (HKLM-x32\...\BSPlayerp) (Version: 2.53.1034 - Webteh, d.o.o.)
  25. Catalyst Control Center InstallProxy (x32 Version: 2012.0611.1251.21046 - Advanced Micro Devices, Inc.) Hidden
  26. CCleaner (HKLM\...\CCleaner) (Version: 3.20 - Piriform)
  27. Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.48.0 - Conexant)
  28. CyberLink PowerDVD (HKLM-x32\...\CyberLink PowerDVD) (Version: - )
  29. D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
  30. Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.154 - Google Inc.)
  31. Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden
  32. Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.2.1410 - Intel Corporation)
  33. Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.18.10.3006 - Intel Corporation)
  34. Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
  35. Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation)
  36. Java 7 Update 13 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417013FF}) (Version: 7.0.130 - Oracle)
  37. Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  38. Malwarebytes Anti-Malware version 2.00.0.1000 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.00.0.1000 - Malwarebytes Corporation)
  39. Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
  40. Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
  41. Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
  42. Microsoft Office Access MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  43. Microsoft Office Access Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  44. Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
  45. Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
  46. Microsoft Office Excel MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  47. Microsoft Office Groove MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  48. Microsoft Office Groove Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  49. Microsoft Office InfoPath MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  50. Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  51. Microsoft Office OneNote MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  52. Microsoft Office Outlook MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  53. Microsoft Office PowerPoint MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  54. Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  55. Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  56. Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  57. Microsoft Office Proofing (English) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
  58. Microsoft Office Publisher MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  59. Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  60. Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  61. Microsoft Office Shared MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  62. Microsoft Office Shared Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  63. Microsoft Office Word MUI (English) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
  64. Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation)
  65. Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
  66. Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
  67. Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
  68. Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
  69. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
  70. Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
  71. Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
  72. Mozilla Firefox 20.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 20.0 (x86 en-US)) (Version: 20.0 - Mozilla)
  73. Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 20.0 - Mozilla)
  74. MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
  75. MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
  76. NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation)
  77. Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.23.623.2010 - Realtek)
  78. Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
  79. Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.29018 - Realtek Semiconductor Corp.)
  80. Realtek WLAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4fed-B2B9-173001290E16}) (Version: 2.00.0013 - REALTEK Semiconductor Corp.)
  81. Skype™ 6.1 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.1.129 - Skype Technologies S.A.)
  82. TeamViewer 8 (HKLM-x32\...\TeamViewer 8) (Version: 8.0.22298 - TeamViewer)
  83. Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871) (Version: 1 - Microsoft Corporation)
  84. Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2473228) (Version: 1 - Microsoft Corporation)
  85. Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523) (Version: 1 - Microsoft Corporation)
  86. Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217) (Version: 1 - Microsoft Corporation)
  87. Winamp (HKLM-x32\...\Winamp) (Version: 5.601 - Nullsoft, Inc)
  88. Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  89. Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
  90. Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  91. Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden
  92. Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  93. Windows Live Language Selector (Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
  94. Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  95. Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  96. Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  97. Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  98. Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  99. Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  100. Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
  101. Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  102. Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  103. Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  104. Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden
  105. Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  106. Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
  107. WinRAR archiver (HKLM\...\WinRAR archiver) (Version: - )
  108. WinZip 15.0 (HKLM-x32\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240C0}) (Version: 15.0.9334 - WinZip Computing, S.L. )
  109.  
  110. ==================== Restore Points =========================
  111.  
  112. 29-03-2014 08:26:28 Scheduled Checkpoint
  113.  
  114. ==================== Hosts content: ==========================
  115.  
  116. 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
  117.  
  118. ==================== Scheduled Tasks (whitelisted) =============
  119.  
  120. Task: {1B70276C-C0BB-4CB7-BFB2-21AE786B4C19} - System32\Tasks\{BB872FAC-72FF-4E3A-BE98-8F3D09DEDFC9} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2013-01-08] (Skype Technologies S.A.)
  121. Task: {2A4C3787-47A3-41B0-96AA-DEFCE0A6D55C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-03] (Google Inc.)
  122. Task: {2EC21D08-9159-411B-9DB1-690C049BF252} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-03-28] (AVAST Software)
  123. Task: {4DCBC5AB-0593-4257-BFFA-E7DB6542AEE0} - System32\Tasks\{618608D7-4D63-457F-845A-918419725293} => Iexplore.exe http://ui.skype.com/ui/0/5.10.60.116/en/go/help.faq.installer?LastError=1618
  124. Task: {55FFAF8A-26D2-49E4-BB56-4F69A79DF669} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-06-22] (Piriform Ltd)
  125. Task: {618F97E0-A538-4D75-AD0E-E4F490F43A11} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-03] (Google Inc.)
  126. Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
  127. Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
  128.  
  129. ==================== Loaded Modules (whitelisted) =============
  130.  
  131. 2010-12-07 11:59 - 2010-03-15 11:28 - 00166400 _____ () C:\Program Files\WinRAR\rarext.dll
  132. 2014-03-28 22:24 - 2014-03-28 22:24 - 02189312 _____ () C:\Program Files\AVAST Software\Avast\defs\14032801\algo.dll
  133. 2014-03-29 13:33 - 2014-03-29 13:33 - 02189312 _____ () C:\Program Files\AVAST Software\Avast\defs\14032900\algo.dll
  134. 2014-03-28 16:29 - 2014-03-28 16:29 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
  135. 2014-03-15 18:40 - 2014-03-15 01:50 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\chrome_elf.dll
  136. 2014-03-15 18:40 - 2014-03-15 01:50 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\libglesv2.dll
  137. 2014-03-15 18:40 - 2014-03-15 01:50 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\libegl.dll
  138. 2014-03-15 18:40 - 2014-03-15 01:50 - 04061000 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\pdf.dll
  139. 2014-03-15 18:40 - 2014-03-15 01:50 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\ppGoogleNaClPluginChrome.dll
  140. 2014-03-15 18:40 - 2014-03-15 01:50 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\ffmpegsumo.dll
  141. 2012-11-02 10:07 - 2012-02-08 09:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
  142. 2014-03-15 18:40 - 2014-03-15 01:50 - 13637448 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\PepperFlash\pepflashplayer.dll
  143.  
  144. ==================== Alternate Data Streams (whitelisted) =========
  145.  
  146.  
  147. ==================== Safe Mode (whitelisted) ===================
  148.  
  149.  
  150. ==================== Disabled items from MSCONFIG ==============
  151.  
  152. MSCONFIG\Services: !SASCORE => 2
  153. MSCONFIG\Services: AdobeARMservice => 2
  154. MSCONFIG\Services: AMD External Events Utility => 2
  155. MSCONFIG\Services: AMD FUEL Service => 2
  156. MSCONFIG\Services: MozillaMaintenance => 3
  157. MSCONFIG\Services: PanService => 2
  158. MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
  159. MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe
  160. MSCONFIG\startupreg: NvMediaCenter => RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
  161. MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe
  162. MSCONFIG\startupreg: RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /SF3
  163. MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
  164. MSCONFIG\startupreg: TBHostSupport => "C:\Windows\SysWOW64\Rundll32.exe" "C:\Users\w7\AppData\Local\TBHostSupport\TBHostSupport_0.dll",DLLRunTBHostSupportPlugin
  165.  
  166. ==================== Faulty Device Manager Devices =============
  167.  
  168.  
  169. ==================== Event log errors: =========================
  170.  
  171. Application errors:
  172. ==================
  173. Error: (03/28/2014 10:23:00 PM) (Source: Windows Search Service) (User: )
  174. Description: The index cannot be initialized.
  175.  
  176.  
  177. Details:
  178. The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)
  179.  
  180. Error: (03/28/2014 10:23:00 PM) (Source: Windows Search Service) (User: )
  181. Description: The application cannot be initialized.
  182.  
  183. Context: Windows Application
  184.  
  185.  
  186. Details:
  187. The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)
  188.  
  189. Error: (03/28/2014 10:23:00 PM) (Source: Windows Search Service) (User: )
  190. Description: The gatherer object cannot be initialized.
  191.  
  192. Context: Windows Application, SystemIndex Catalog
  193.  
  194.  
  195. Details:
  196. The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)
  197.  
  198. Error: (03/28/2014 10:23:00 PM) (Source: Windows Search Service) (User: )
  199. Description: The plug-in in <Search.TripoliIndexer> cannot be initialized.
  200.  
  201. Context: Windows Application, SystemIndex Catalog
  202.  
  203.  
  204. Details:
  205. Element not found. (HRESULT : 0x80070490) (0x80070490)
  206.  
  207. Error: (03/28/2014 10:22:59 PM) (Source: Windows Search Service) (User: )
  208. Description: The plug-in in <Search.JetPropStore> cannot be initialized.
  209.  
  210. Context: Windows Application, SystemIndex Catalog
  211.  
  212.  
  213. Details:
  214. The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)
  215.  
  216. Error: (03/28/2014 10:22:58 PM) (Source: Windows Search Service) (User: )
  217. Description: The Windows Search Service cannot load the property store information.
  218.  
  219. Context: Windows Application, SystemIndex Catalog
  220.  
  221.  
  222. Details:
  223. The content index database is corrupt. (HRESULT : 0xc0041800) (0xc0041800)
  224.  
  225. Error: (03/28/2014 10:22:58 PM) (Source: Windows Search Service) (User: )
  226. Description: The Windows Search Service is being stopped because there is a problem with the indexer: The catalog is corrupt.
  227.  
  228.  
  229. Details:
  230. The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)
  231.  
  232. Error: (03/28/2014 10:22:58 PM) (Source: Windows Search Service) (User: )
  233. Description: The search service has detected corrupted data files in the index {id=4700}. The service will attempt to automatically correct this problem by rebuilding the index.
  234.  
  235.  
  236. Details:
  237. The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)
  238.  
  239. Error: (03/28/2014 10:22:57 PM) (Source: Windows Search Service) (User: )
  240. Description: The Windows Search Service cannot open the Jet property store.
  241.  
  242.  
  243. Details:
  244. 0x%08x (0xc0041800 - The content index database is corrupt. (HRESULT : 0xc0041800))
  245.  
  246. Error: (03/28/2014 10:22:57 PM) (Source: ESENT) (User: )
  247. Description: Windows (2500) Windows: Error -1811 occurred while opening logfile C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS000ED.log.
  248.  
  249.  
  250. System errors:
  251. =============
  252. Error: (03/29/2014 09:23:46 AM) (Source: volsnap) (User: )
  253. Description: The shadow copies of volume C: were aborted because of an IO failure on volume C:.
  254.  
  255. Error: (03/29/2014 09:23:16 AM) (Source: atapi) (User: )
  256. Description: The driver detected a controller error on \Device\Ide\IdePort0.
  257.  
  258. Error: (03/29/2014 09:23:16 AM) (Source: atapi) (User: )
  259. Description: The driver detected a controller error on \Device\Ide\IdePort0.
  260.  
  261. Error: (03/29/2014 09:23:16 AM) (Source: atapi) (User: )
  262. Description: The driver detected a controller error on \Device\Ide\IdePort0.
  263.  
  264. Error: (03/29/2014 09:23:16 AM) (Source: atapi) (User: )
  265. Description: The driver detected a controller error on \Device\Ide\IdePort0.
  266.  
  267. Error: (03/29/2014 09:23:16 AM) (Source: atapi) (User: )
  268. Description: The driver detected a controller error on \Device\Ide\IdePort0.
  269.  
  270. Error: (03/29/2014 09:23:16 AM) (Source: atapi) (User: )
  271. Description: The driver detected a controller error on \Device\Ide\IdePort0.
  272.  
  273. Error: (03/29/2014 09:23:16 AM) (Source: atapi) (User: )
  274. Description: The driver detected a controller error on \Device\Ide\IdePort0.
  275.  
  276. Error: (03/29/2014 07:17:26 AM) (Source: Microsoft-Windows-WHEA-Logger) (User: NT AUTHORITY)
  277. Description: A fatal hardware error has occurred.
  278.  
  279. Component: AMD Northbridge
  280. Error Source: 3
  281. Error Type: 11
  282. Processor ID: 0
  283.  
  284. The details view of this entry contains further information.
  285.  
  286. Error: (03/28/2014 10:23:33 PM) (Source: Service Control Manager) (User: )
  287. Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error:
  288. %%1056
  289.  
  290.  
  291. Microsoft Office Sessions:
  292. =========================
  293.  
  294. CodeIntegrity Errors:
  295. ===================================
  296. Date: 2014-03-28 21:33:52.582
  297. Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
  298.  
  299. Date: 2014-03-28 21:33:05.479
  300. Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
  301.  
  302. Date: 2014-03-28 16:46:39.204
  303. Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
  304.  
  305. Date: 2014-03-28 16:42:44.694
  306. Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
  307.  
  308. Date: 2014-03-28 16:41:58.791
  309. Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
  310.  
  311. Date: 2014-03-28 16:40:52.863
  312. Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
  313.  
  314. Date: 2014-03-28 16:40:48.154
  315. Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
  316.  
  317. Date: 2013-12-15 22:12:45.303
  318. Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
  319.  
  320. Date: 2013-12-15 22:12:44.308
  321. Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.
  322.  
  323. Date: 2011-04-02 16:17:04.742
  324. Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\usbehci.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
  325.  
  326.  
  327. ==================== Memory info ===========================
  328.  
  329. Percentage of memory in use: 69%
  330. Total physical RAM: 1791.11 MB
  331. Available physical RAM: 549.53 MB
  332. Total Pagefile: 3582.23 MB
  333. Available Pagefile: 1697.99 MB
  334. Total Virtual: 8192 MB
  335. Available Virtual: 8191.82 MB
  336.  
  337. ==================== Drives ================================
  338.  
  339. Drive c: () (Fixed) (Total:162.34 GB) (Free:104.14 GB) NTFS
  340. Drive d: () (Fixed) (Total:135.16 GB) (Free:134.85 GB) NTFS
  341.  
  342.  
  343. Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
  344. Ran by w7 (administrator) on W7-PC on 29-03-2014 13:37:21
  345. Running from C:\Users\w7\Downloads
  346. Windows 7 Ultimate Service Pack 1 (X64) OS Language: English(US)
  347. Internet Explorer Version 10
  348. Boot Mode: Normal
  349.  
  350. The only official download link for FRST:
  351. Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
  352. Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
  353. Download link from any site other than Bleeping Computer is unpermitted or outdated.
  354. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  355.  
  356. ==================== Processes (Whitelisted) =================
  357.  
  358. (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
  359. (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
  360. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
  361. (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
  362. (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
  363. (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
  364. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
  365. (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
  366. (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
  367. (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
  368. (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
  369. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  370. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  371. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  372. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  373. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  374. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
  375. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  376. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  377.  
  378.  
  379. ==================== Registry (Whitelisted) ==================
  380.  
  381. HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
  382. HKLM\...\Run: [NvCplDaemon] - C:\Windows\system32\NvCpl.dll [15960096 2009-01-29] (NVIDIA Corporation)
  383. HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
  384. HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3854640 2014-03-28] (AVAST Software)
  385. Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
  386.  
  387. ==================== Internet (Whitelisted) ====================
  388.  
  389. HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ba/
  390. HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
  391. HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x6E4F4E14C4BECB01
  392. HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
  393. BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
  394. BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
  395. BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
  396. BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
  397. BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
  398. BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
  399. BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
  400. BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
  401. Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
  402. Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
  403. Tcpip\Parameters: [DhcpNameServer] 217.23.207.3 217.23.192.14
  404.  
  405. FireFox:
  406. ========
  407. FF ProfilePath: C:\Users\w7\AppData\Roaming\Mozilla\Firefox\Profiles\7ebpw71m.default
  408. FF user.js: detected! => C:\Users\w7\AppData\Roaming\Mozilla\Firefox\Profiles\7ebpw71m.default\user.js
  409. FF Plugin: @java.com/DTPlugin,version=10.13.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
  410. FF Plugin: @java.com/JavaPlugin,version=10.13.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
  411. FF Plugin: @microsoft.com/GENUINE - disabled No File
  412. FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
  413. FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
  414. FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
  415. FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
  416. FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
  417. FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
  418. FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
  419. FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
  420. FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
  421. FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
  422. FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
  423. FF Extension: Feedback - C:\Users\w7\AppData\Roaming\Mozilla\Firefox\Profiles\7ebpw71m.default\Extensions\testpilot@labs.mozilla.com.xpi [2012-05-07]
  424. FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
  425. FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
  426. FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-03]
  427. FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
  428.  
  429. Chrome:
  430. =======
  431. CHR Extension: (Google Docs) - C:\Users\w7\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-10-03]
  432. CHR Extension: (Google disk) - C:\Users\w7\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-10-03]
  433. CHR Extension: (YouTube) - C:\Users\w7\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-10-03]
  434. CHR Extension: (uTorrentControl_v6) - C:\Users\w7\AppData\Local\Google\Chrome\User Data\Default\Extensions\cflheckfmhopnialghigdlggahiomebp [2013-11-09]
  435. CHR Extension: (Google pretraživanje) - C:\Users\w7\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-10-03]
  436. CHR Extension: (Google Novčanik) - C:\Users\w7\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-03]
  437. CHR Extension: (Gmail) - C:\Users\w7\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-10-03]
  438. CHR HKCU\...\Chrome\Extension: [cflheckfmhopnialghigdlggahiomebp] - C:\Users\w7\AppData\Local\CRE\cflheckfmhopnialghigdlggahiomebp.crx [2013-10-21]
  439. CHR HKLM-x32\...\Chrome\Extension: [cflheckfmhopnialghigdlggahiomebp] - C:\Users\w7\AppData\Local\CRE\cflheckfmhopnialghigdlggahiomebp.crx [2013-10-21]
  440.  
  441. ==================== Services (Whitelisted) =================
  442.  
  443. R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-03-28] (AVAST Software)
  444. R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-08] (Intel Corporation)
  445. S4 MBAMScheduler; D:\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-03-05] (Malwarebytes Corporation)
  446. S2 MBAMService; D:\Malwarebytes Anti-Malware\mbamservice.exe [857912 2014-03-05] (Malwarebytes Corporation)
  447. R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2011-11-29] (Atheros)
  448. S4 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe /launchService [X]
  449.  
  450. ==================== Drivers (Whitelisted) ====================
  451.  
  452. R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-03-28] (AVAST Software)
  453. R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-03-28] (AVAST Software)
  454. R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-03-28] ()
  455. R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-03-28] (AVAST Software)
  456. R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-03-28] (AVAST Software)
  457. R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [84816 2014-03-28] (AVAST Software)
  458. R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208928 2014-03-28] ()
  459. R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [59440 2013-01-10] (ESET)
  460. S3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46016 2012-09-26] ()
  461. S3 L1C; C:\Windows\System32\DRIVERS\L1C60x64.sys [76912 2011-03-23] (Atheros Communications, Inc.)
  462. R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-03-05] (Malwarebytes Corporation)
  463. S3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [262248 2012-04-12] (Realtek Semiconductor Corp.)
  464. S1 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
  465. S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
  466. S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
  467. S3 VGPU; System32\drivers\rdvgkmd.sys [X]
  468.  
  469. ==================== NetSvcs (Whitelisted) ===================
  470.  
  471.  
  472. ==================== One Month Created Files and Folders ========
  473.  
  474. 2014-03-29 13:37 - 2014-03-29 13:38 - 00011119 _____ () C:\Users\w7\Downloads\FRST.txt
  475. 2014-03-29 13:36 - 2014-03-29 13:37 - 00000000 ____D () C:\FRST
  476. 2014-03-29 13:34 - 2014-03-29 13:35 - 02157056 _____ (Farbar) C:\Users\w7\Downloads\FRST64.exe
  477. 2014-03-28 22:22 - 2014-03-29 07:16 - 00000168 _____ () C:\Windows\setupact.log
  478. 2014-03-28 22:22 - 2014-03-28 22:22 - 00282960 _____ () C:\Windows\Minidump\032814-24398-01.dmp
  479. 2014-03-28 22:22 - 2014-03-28 22:22 - 00000000 _____ () C:\Windows\setuperr.log
  480. 2014-03-28 22:21 - 2014-03-29 06:57 - 00002274 _____ () C:\Windows\PFRO.log
  481. 2014-03-28 22:21 - 2014-03-28 22:21 - 356039275 _____ () C:\Windows\MEMORY.DMP
  482. 2014-03-28 20:08 - 2014-03-28 20:09 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
  483. 2014-03-28 20:07 - 2014-03-28 20:07 - 00000613 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
  484. 2014-03-28 20:07 - 2014-03-28 20:07 - 00000000 ____D () C:\ProgramData\Malwarebytes
  485. 2014-03-28 20:07 - 2014-03-05 09:26 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
  486. 2014-03-28 20:07 - 2014-03-05 09:26 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
  487. 2014-03-28 20:07 - 2014-03-05 09:26 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
  488. 2014-03-28 20:04 - 2014-03-28 20:06 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\w7\Downloads\mbam-setup-2.0.0.1000.exe
  489. 2014-03-28 18:02 - 2014-03-28 18:02 - 00000000 ____D () C:\Users\w7\AppData\Roaming\AVAST Software
  490. 2014-03-28 16:29 - 2014-03-28 16:29 - 00084816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
  491. 2014-03-28 16:29 - 2014-03-28 16:29 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
  492. 2014-03-27 23:34 - 2014-03-27 23:34 - 01819786 _____ () C:\Users\w7\Downloads\slajdovi_mm1 (2).zip
  493. 2014-03-27 23:34 - 2014-03-27 23:34 - 01267824 _____ () C:\Users\w7\Downloads\vezbe_mm1 (2).zip
  494. 2014-03-27 23:32 - 2014-03-27 23:33 - 00502919 _____ () C:\Users\w7\Downloads\M1-Ideo (3).7z
  495. 2014-03-27 23:30 - 2014-03-27 23:30 - 00061440 _____ () C:\Users\w7\Downloads\Domaci_12_A456b.xls
  496. 2014-03-27 23:27 - 2014-03-27 23:27 - 00502919 _____ () C:\Users\w7\Downloads\M1-Ideo (2).7z
  497. 2014-03-27 23:24 - 2014-03-27 23:25 - 00205824 _____ () C:\Users\w7\Downloads\PrezentacijaDMS.ppt
  498. 2014-03-27 23:24 - 2014-03-27 23:24 - 00086247 _____ () C:\Users\w7\Downloads\domaci.exe
  499. 2014-03-26 17:23 - 2014-03-26 17:24 - 01819786 _____ () C:\Users\w7\Downloads\slajdovi_mm1 (1).zip
  500. 2014-03-26 17:23 - 2014-03-26 17:24 - 01267824 _____ () C:\Users\w7\Downloads\vezbe_mm1 (1).zip
  501. 2014-03-26 00:48 - 2014-03-26 00:48 - 00459344 _____ () C:\Users\w7\Downloads\MA1_test_drugi_deo.zip
  502. 2014-03-23 12:45 - 2014-03-23 12:45 - 00502919 _____ () C:\Users\w7\Downloads\M1-Ideo.7z
  503. 2014-03-23 12:45 - 2014-03-23 12:45 - 00502919 _____ () C:\Users\w7\Downloads\M1-Ideo (1).7z
  504. 2014-03-23 12:45 - 2014-03-23 12:45 - 00255803 _____ () C:\Users\w7\Downloads\D1P.rar
  505. 2014-03-23 12:43 - 2014-03-23 12:43 - 01267824 _____ () C:\Users\w7\Downloads\vezbe_mm1.zip
  506. 2014-03-23 12:40 - 2014-03-23 12:40 - 01819786 _____ () C:\Users\w7\Downloads\slajdovi_mm1.zip
  507. 2014-03-23 12:25 - 2014-03-23 12:25 - 00290606 _____ () C:\Users\w7\Downloads\spiskovi-2013.rar
  508. 2014-03-23 12:24 - 2014-03-23 12:24 - 03285172 _____ () C:\Users\w7\Downloads\PK.rar
  509. 2014-03-19 23:33 - 2014-03-28 22:22 - 00000000 ____D () C:\Windows\Minidump
  510. 2014-03-19 14:39 - 2014-03-19 14:39 - 04947968 _____ () C:\Users\w7\Downloads\00222_20140303_Prva_sedmica_2012.ppt
  511. 2014-03-19 14:34 - 2014-03-19 14:35 - 02445110 _____ () C:\Users\w7\Downloads\OM14-P1.pptx
  512.  
  513. ==================== One Month Modified Files and Folders =======
  514.  
  515. 2014-03-29 13:38 - 2014-03-29 13:37 - 00011119 _____ () C:\Users\w7\Downloads\FRST.txt
  516. 2014-03-29 13:37 - 2014-03-29 13:36 - 00000000 ____D () C:\FRST
  517. 2014-03-29 13:35 - 2014-03-29 13:34 - 02157056 _____ (Farbar) C:\Users\w7\Downloads\FRST64.exe
  518. 2014-03-29 13:33 - 2013-10-03 21:52 - 00000890 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
  519. 2014-03-29 13:33 - 2012-11-02 10:56 - 01277228 _____ () C:\Windows\WindowsUpdate.log
  520. 2014-03-29 07:55 - 2009-07-14 05:45 - 00010208 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
  521. 2014-03-29 07:55 - 2009-07-14 05:45 - 00010208 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
  522. 2014-03-29 07:17 - 2013-10-03 21:52 - 00000886 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
  523. 2014-03-29 07:17 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
  524. 2014-03-29 07:16 - 2014-03-28 22:22 - 00000168 _____ () C:\Windows\setupact.log
  525. 2014-03-29 06:57 - 2014-03-28 22:21 - 00002274 _____ () C:\Windows\PFRO.log
  526. 2014-03-28 22:24 - 2013-10-03 22:42 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
  527. 2014-03-28 22:22 - 2014-03-28 22:22 - 00282960 _____ () C:\Windows\Minidump\032814-24398-01.dmp
  528. 2014-03-28 22:22 - 2014-03-28 22:22 - 00000000 _____ () C:\Windows\setuperr.log
  529. 2014-03-28 22:22 - 2014-03-19 23:33 - 00000000 ____D () C:\Windows\Minidump
  530. 2014-03-28 22:21 - 2014-03-28 22:21 - 356039275 _____ () C:\Windows\MEMORY.DMP
  531. 2014-03-28 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
  532. 2014-03-28 22:02 - 2010-12-07 12:17 - 00000000 ____D () C:\Users\w7\AppData\Roaming\Skype
  533. 2014-03-28 20:09 - 2014-03-28 20:08 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
  534. 2014-03-28 20:07 - 2014-03-28 20:07 - 00000613 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
  535. 2014-03-28 20:07 - 2014-03-28 20:07 - 00000000 ____D () C:\ProgramData\Malwarebytes
  536. 2014-03-28 20:06 - 2014-03-28 20:04 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\w7\Downloads\mbam-setup-2.0.0.1000.exe
  537. 2014-03-28 19:48 - 2013-09-04 12:16 - 00000000 ____D () C:\Users\w7\AppData\Local\CrashDumps
  538. 2014-03-28 19:01 - 2010-12-07 11:44 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
  539. 2014-03-28 18:45 - 2010-12-07 11:21 - 00000000 ____D () C:\Program Files (x86)\The KMPlayer
  540. 2014-03-28 18:02 - 2014-03-28 18:02 - 00000000 ____D () C:\Users\w7\AppData\Roaming\AVAST Software
  541. 2014-03-28 16:29 - 2014-03-28 16:29 - 00084816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
  542. 2014-03-28 16:29 - 2014-03-28 16:29 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
  543. 2014-03-28 16:29 - 2013-10-03 22:42 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
  544. 2014-03-28 16:29 - 2013-10-03 22:42 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
  545. 2014-03-28 16:29 - 2013-10-03 22:42 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
  546. 2014-03-28 16:29 - 2013-10-03 22:42 - 00208928 _____ () C:\Windows\system32\Drivers\aswVmm.sys
  547. 2014-03-28 16:29 - 2013-10-03 22:42 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
  548. 2014-03-28 16:29 - 2013-10-03 22:42 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
  549. 2014-03-28 16:29 - 2013-10-03 22:42 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
  550. 2014-03-28 16:29 - 2013-10-03 22:42 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
  551. 2014-03-28 16:25 - 2013-10-03 22:39 - 00000000 ____D () C:\ProgramData\AVAST Software
  552. 2014-03-28 16:24 - 2013-10-03 22:42 - 00000000 _____ () C:\Windows\SysWOW64\config.nt
  553. 2014-03-27 23:34 - 2014-03-27 23:34 - 01819786 _____ () C:\Users\w7\Downloads\slajdovi_mm1 (2).zip
  554. 2014-03-27 23:34 - 2014-03-27 23:34 - 01267824 _____ () C:\Users\w7\Downloads\vezbe_mm1 (2).zip
  555. 2014-03-27 23:33 - 2014-03-27 23:32 - 00502919 _____ () C:\Users\w7\Downloads\M1-Ideo (3).7z
  556. 2014-03-27 23:30 - 2014-03-27 23:30 - 00061440 _____ () C:\Users\w7\Downloads\Domaci_12_A456b.xls
  557. 2014-03-27 23:27 - 2014-03-27 23:27 - 00502919 _____ () C:\Users\w7\Downloads\M1-Ideo (2).7z
  558. 2014-03-27 23:25 - 2014-03-27 23:24 - 00205824 _____ () C:\Users\w7\Downloads\PrezentacijaDMS.ppt
  559. 2014-03-27 23:24 - 2014-03-27 23:24 - 00086247 _____ () C:\Users\w7\Downloads\domaci.exe
  560. 2014-03-26 21:29 - 2013-08-29 12:03 - 00520192 _____ () C:\Users\w7\Documents\bbbbbbbbbbb.accdb
  561. 2014-03-26 17:24 - 2014-03-26 17:23 - 01819786 _____ () C:\Users\w7\Downloads\slajdovi_mm1 (1).zip
  562. 2014-03-26 17:24 - 2014-03-26 17:23 - 01267824 _____ () C:\Users\w7\Downloads\vezbe_mm1 (1).zip
  563. 2014-03-26 00:48 - 2014-03-26 00:48 - 00459344 _____ () C:\Users\w7\Downloads\MA1_test_drugi_deo.zip
  564. 2014-03-23 12:45 - 2014-03-23 12:45 - 00502919 _____ () C:\Users\w7\Downloads\M1-Ideo.7z
  565. 2014-03-23 12:45 - 2014-03-23 12:45 - 00502919 _____ () C:\Users\w7\Downloads\M1-Ideo (1).7z
  566. 2014-03-23 12:45 - 2014-03-23 12:45 - 00255803 _____ () C:\Users\w7\Downloads\D1P.rar
  567. 2014-03-23 12:43 - 2014-03-23 12:43 - 01267824 _____ () C:\Users\w7\Downloads\vezbe_mm1.zip
  568. 2014-03-23 12:40 - 2014-03-23 12:40 - 01819786 _____ () C:\Users\w7\Downloads\slajdovi_mm1.zip
  569. 2014-03-23 12:25 - 2014-03-23 12:25 - 00290606 _____ () C:\Users\w7\Downloads\spiskovi-2013.rar
  570. 2014-03-23 12:24 - 2014-03-23 12:24 - 03285172 _____ () C:\Users\w7\Downloads\PK.rar
  571. 2014-03-19 14:39 - 2014-03-19 14:39 - 04947968 _____ () C:\Users\w7\Downloads\00222_20140303_Prva_sedmica_2012.ppt
  572. 2014-03-19 14:35 - 2014-03-19 14:34 - 02445110 _____ () C:\Users\w7\Downloads\OM14-P1.pptx
  573. 2014-03-15 18:41 - 2013-10-03 22:00 - 00002179 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
  574. 2014-03-13 07:12 - 2009-07-14 06:08 - 00032614 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
  575. 2014-03-06 16:23 - 2014-02-12 00:24 - 00000000 ____D () C:\Users\w7\AppData\Local\Microsoft Games
  576. 2014-03-05 09:26 - 2014-03-28 20:07 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
  577. 2014-03-05 09:26 - 2014-03-28 20:07 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
  578. 2014-03-05 09:26 - 2014-03-28 20:07 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
  579.  
  580. Some content of TEMP:
  581. ====================
  582. C:\Users\w7\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp65c8bx.dll
  583.  
  584.  
  585. ==================== Bamital & volsnap Check =================
  586.  
  587. C:\Windows\System32\winlogon.exe => MD5 is legit
  588. C:\Windows\System32\wininit.exe => MD5 is legit
  589. C:\Windows\SysWOW64\wininit.exe => MD5 is legit
  590. C:\Windows\explorer.exe => MD5 is legit
  591. C:\Windows\SysWOW64\explorer.exe => MD5 is legit
  592. C:\Windows\System32\svchost.exe => MD5 is legit
  593. C:\Windows\SysWOW64\svchost.exe => MD5 is legit
  594. C:\Windows\System32\services.exe => MD5 is legit
  595. C:\Windows\System32\User32.dll => MD5 is legit
  596. C:\Windows\SysWOW64\User32.dll => MD5 is legit
  597. C:\Windows\System32\userinit.exe => MD5 is legit
  598. C:\Windows\SysWOW64\userinit.exe => MD5 is legit
  599. C:\Windows\System32\rpcss.dll => MD5 is legit
  600. C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement