Advertisement
Guest User

Untitled

a guest
Aug 9th, 2015
230
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 36.00 KB | None | 0 0
  1. OTL logfile created on: 9.8.2015. 10:17:20 - Run 1
  2. OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Mirso\Desktop
  3. 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
  4. Internet Explorer (Version = 8.0.7601.17514)
  5. Locale: 0000041a | Country: Hrvatska | Language: HRV | Date Format: d.M.yyyy.
  6.  
  7. 4,00 Gb Total Physical Memory | 2,57 Gb Available Physical Memory | 64,36% Memory free
  8. 8,00 Gb Paging File | 6,39 Gb Available in Paging File | 79,96% Paging File free
  9. Paging file location(s): ?:\pagefile.sys [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
  12. Drive C: | 97,56 Gb Total Space | 36,11 Gb Free Space | 37,01% Space Free | Partition Type: NTFS
  13. Drive D: | 51,39 Gb Total Space | 18,96 Gb Free Space | 36,89% Space Free | Partition Type: NTFS
  14.  
  15. Computer Name: MIRSAD | User Name: Mirso | Logged in as Administrator.
  16. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
  17. Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
  18.  
  19. [color=#E56717]========== Processes (SafeList) ==========[/color]
  20.  
  21. PRC - [2015.08.09 10:16:20 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Mirso\Desktop\OTL.exe
  22. PRC - [2015.08.08 22:19:00 | 003,423,920 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_209.exe
  23. PRC - [2015.08.07 16:07:03 | 000,377,000 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  24. PRC - [2015.03.13 21:41:47 | 001,706,128 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
  25. PRC - [2013.03.14 22:07:46 | 000,383,264 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
  26. PRC - [2010.10.22 03:00:00 | 000,376,832 | ---- | M] (AVM Berlin) -- C:\Program Files (x86)\avmwlanstick\WlanNetService.exe
  27. PRC - [2010.02.08 14:48:18 | 000,192,000 | ---- | M] () -- C:\Program Files (x86)\GIGABYTE\GHOST(6980)\GHOSTOPEN.exe
  28.  
  29.  
  30. [color=#E56717]========== Modules (No Company Name) ==========[/color]
  31.  
  32. MOD - [2015.08.08 22:18:59 | 017,448,624 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll
  33. MOD - [2010.02.08 14:48:18 | 000,192,000 | ---- | M] () -- C:\Program Files (x86)\GIGABYTE\GHOST(6980)\GHOSTOPEN.exe
  34.  
  35.  
  36. [color=#E56717]========== Services (SafeList) ==========[/color]
  37.  
  38. SRV:[b]64bit:[/b] - [2015.03.13 21:41:47 | 021,833,360 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)
  39. SRV:[b]64bit:[/b] - [2014.11.21 04:12:40 | 000,244,736 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
  40. SRV:[b]64bit:[/b] - [2014.04.09 15:13:48 | 000,289,256 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe -- (McComponentHostService)
  41. SRV:[b]64bit:[/b] - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
  42. SRV - [2015.08.08 22:19:00 | 000,268,976 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
  43. SRV - [2015.08.07 16:07:02 | 000,148,136 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
  44. SRV - [2015.03.13 21:41:47 | 001,706,128 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService)
  45. SRV - [2014.11.25 21:43:51 | 000,053,832 | ---- | M] (Just Develop It) [Auto | Running] -- C:\Program Files (x86)\MyPC Backup\BackupStack.exe -- (BackupStack)
  46. SRV - [2014.04.12 00:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
  47. SRV - [2013.03.14 22:07:46 | 000,383,264 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
  48. SRV - [2010.10.22 03:00:00 | 000,376,832 | ---- | M] (AVM Berlin) [Auto | Running] -- C:\Program Files (x86)\avmwlanstick\WlanNetService.exe -- (AVM WLAN Connection Service)
  49. SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
  50.  
  51.  
  52. [color=#E56717]========== Driver Services (SafeList) ==========[/color]
  53.  
  54. DRV:[b]64bit:[/b] - [2015.03.16 18:35:46 | 000,141,440 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp)
  55. DRV:[b]64bit:[/b] - [2015.03.13 21:41:47 | 000,038,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
  56. DRV:[b]64bit:[/b] - [2015.03.13 21:41:47 | 000,019,600 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms)
  57. DRV:[b]64bit:[/b] - [2014.11.21 04:40:00 | 018,959,360 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
  58. DRV:[b]64bit:[/b] - [2014.11.21 04:40:00 | 018,959,360 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
  59. DRV:[b]64bit:[/b] - [2014.11.21 04:08:54 | 000,589,312 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
  60. DRV:[b]64bit:[/b] - [2014.06.21 19:01:22 | 000,094,720 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
  61. DRV:[b]64bit:[/b] - [2012.12.19 07:41:52 | 000,194,488 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
  62. DRV:[b]64bit:[/b] - [2012.06.05 14:45:16 | 000,237,968 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService)
  63. DRV:[b]64bit:[/b] - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
  64. DRV:[b]64bit:[/b] - [2011.12.01 00:31:17 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
  65. DRV:[b]64bit:[/b] - [2011.12.01 00:31:17 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
  66. DRV:[b]64bit:[/b] - [2010.11.21 05:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
  67. DRV:[b]64bit:[/b] - [2010.11.21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
  68. DRV:[b]64bit:[/b] - [2010.11.21 05:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
  69. DRV:[b]64bit:[/b] - [2010.10.22 03:00:00 | 000,460,800 | ---- | M] (AVM GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fwlanusb.sys -- (FWLANUSB)
  70. DRV:[b]64bit:[/b] - [2010.10.22 03:00:00 | 000,014,120 | ---- | M] (AVM Berlin) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avmeject.sys -- (avmeject)
  71. DRV:[b]64bit:[/b] - [2009.11.25 22:06:02 | 001,276,928 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService)
  72. DRV:[b]64bit:[/b] - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
  73. DRV:[b]64bit:[/b] - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
  74. DRV:[b]64bit:[/b] - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
  75. DRV:[b]64bit:[/b] - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
  76. DRV:[b]64bit:[/b] - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
  77. DRV:[b]64bit:[/b] - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
  78. DRV:[b]64bit:[/b] - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
  79. DRV:[b]64bit:[/b] - [2009.03.02 00:05:32 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
  80. DRV:[b]64bit:[/b] - [2008.08.08 15:31:26 | 000,062,960 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\h648103.sys -- (h648103)
  81. DRV:[b]64bit:[/b] - [2008.08.08 15:31:22 | 000,065,776 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\h648101.sys -- (h648101)
  82. DRV:[b]64bit:[/b] - [2008.08.08 15:31:20 | 000,063,856 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\h647906.sys -- (h647906)
  83. DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
  84. DRV - [2008.08.08 15:31:18 | 000,043,192 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\hid8101.sys -- (hid8101)
  85. DRV - [2008.08.08 15:31:18 | 000,040,856 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\hid8103.sys -- (hid8103)
  86. DRV - [2008.08.08 15:31:16 | 000,041,272 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\hid7906.sys -- (hid7906)
  87.  
  88.  
  89. [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
  90.  
  91.  
  92. [color=#E56717]========== Internet Explorer ==========[/color]
  93.  
  94. IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
  95. IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
  96. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
  97. IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
  98. IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
  99.  
  100. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
  101. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = hr
  102. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 68 B7 10 57 D5 30 D0 01 [binary data]
  103. IE - HKCU\..\SearchScopes,DefaultScope = {0621284A-DB71-4AEB-B12B-C2820A7434AA}
  104. IE - HKCU\..\SearchScopes\{0621284A-DB71-4AEB-B12B-C2820A7434AA}: "URL" = https://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=407453&p={searchTerms}
  105. IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
  106. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  107.  
  108. [color=#E56717]========== FireFox ==========[/color]
  109.  
  110. FF - prefs.js..browser.search.countryCode: "BA"
  111. FF - prefs.js..browser.search.region: "BA"
  112. FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:39.0.3
  113. FF - user.js - File not found
  114.  
  115. FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll File not found
  116. FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll ()
  117. FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1219160.dll (Adobe Systems, Inc.)
  118. FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.51.2: C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
  119. FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.51.2: C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll (Oracle Corporation)
  120. FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
  121. FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
  122. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)
  123. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)
  124.  
  125. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 39.0.3\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
  126. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 39.0.3\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
  127. FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{e4f94d1e-2f53-401e-8885-681602c0ddd8}: C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014.04.04 12:36:14 | 000,010,691 | ---- | M] ()
  128. FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 39.0.3\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
  129. FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 39.0.3\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
  130.  
  131. [2015.01.15 17:15:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mirso\AppData\Roaming\mozilla\Extensions
  132. [2015.08.07 16:06:58 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
  133. [2015.08.07 16:07:03 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
  134.  
  135. [color=#E56717]========== Chrome ==========[/color]
  136.  
  137. CHR - plugin: Error reading preferences file
  138. CHR - Extension: No name found = C:\Users\Mirso\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
  139. CHR - Extension: No name found = C:\Users\Mirso\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\
  140. CHR - Extension: No name found = C:\Users\Mirso\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.0_0\
  141. CHR - Extension: No name found = C:\Users\Mirso\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
  142. CHR - Extension: No name found = C:\Users\Mirso\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\
  143. CHR - Extension: No name found = C:\Users\Mirso\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
  144. CHR - Extension: No name found = C:\Users\Mirso\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.2.0_0\
  145. CHR - Extension: No name found = C:\Users\Mirso\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\
  146.  
  147. O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
  148. O2 - BHO: (MSS+ Identifier) - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
  149. O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\MICROS~1\Office12\GR469A~1.DLL (Microsoft Corporation)
  150. O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll (Oracle Corporation)
  151. O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll (Oracle Corporation)
  152. O4 - HKLM..\Run: [ghost] C:\Program Files (x86)\GIGABYTE\GHOST(6980)\ghostopen.exe ()
  153. O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
  154. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
  155. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
  156. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
  157. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
  158. O8:[b]64bit:[/b] - Extra context menu item: I&zvezi u Microsoft Excel - res://C:\Program Files (x86)\MICROS~1\Office12\EXCEL.EXE/3000 File not found
  159. O8 - Extra context menu item: I&zvezi u Microsoft Excel - res://C:\Program Files (x86)\MICROS~1\Office12\EXCEL.EXE/3000 File not found
  160. O9 - Extra Button: Pošalji u OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
  161. O9 - Extra 'Tools' menuitem : Po&šalji u OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
  162. O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files (x86)\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
  163. O13[b]64bit:[/b] - gopher Prefix: missing
  164. O13 - gopher Prefix: missing
  165. O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 87.250.97.250 208.67.222.222
  166. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6B678698-B2B7-4BB7-8A8A-79F02DD5C01E}: DhcpNameServer = 87.250.97.250 208.67.222.222
  167. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D626F9D2-BBBA-469F-9B4F-D5507196E086}: DhcpNameServer = 87.250.97.250 208.67.222.222
  168. O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS - No CLSID value found
  169. O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
  170. O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\MICROS~1\Office12\GRA32A~1.DLL (Microsoft Corporation)
  171. O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
  172. O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
  173. O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
  174. O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
  175. O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
  176. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
  177. O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\MICROS~1\Office12\GR469A~1.DLL (Microsoft Corporation)
  178. O32 - HKLM CDRom: AutoRun - 1
  179. O33 - MountPoints2\{7978e4a8-c5ad-11e4-ac67-0025224b10a3}\Shell - "" = AutoRun
  180. O33 - MountPoints2\{7978e4a8-c5ad-11e4-ac67-0025224b10a3}\Shell\AutoRun\command - "" = G:\pushinst.exe
  181. O34 - HKLM BootExecute: (autocheck autochk *)
  182. O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
  183. O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
  184. O35 - HKLM\..comfile [open] -- "%1" %*
  185. O35 - HKLM\..exefile [open] -- "%1" %*
  186. O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
  187. O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
  188. O37 - HKLM\...com [@ = comfile] -- "%1" %*
  189. O37 - HKLM\...exe [@ = exefile] -- "%1" %*
  190. O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
  191. O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
  192. O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
  193.  
  194.  
  195. CREATERESTOREPOINT
  196. Restore point Set: OTL Restore Point
  197.  
  198. [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
  199.  
  200. [2015.08.09 10:16:18 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Mirso\Desktop\OTL.exe
  201. [2015.08.08 22:23:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
  202. [2015.08.08 22:23:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
  203. [2015.08.08 22:22:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
  204. [2015.08.08 22:22:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
  205. [2015.08.08 22:22:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
  206. [2015.08.08 22:22:02 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Adobe
  207. [2015.08.08 19:55:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
  208. [2015.08.08 19:53:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
  209. [2015.08.08 19:53:53 | 000,000,000 | ---D | C] -- C:\Users\Mirso\AppData\Local\Google
  210. [2015.08.07 16:06:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
  211. [2015.08.01 06:37:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE
  212. [2015.08.01 06:37:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GIGABYTE
  213. [2015.07.30 19:59:42 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
  214. [2015.07.30 19:30:33 | 000,000,000 | ---D | C] -- C:\Users\Mirso\AppData\Local\NVIDIA Corporation
  215. [2015.07.28 12:05:06 | 000,000,000 | ---D | C] -- C:\Users\Mirso\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
  216. [2015.07.28 12:05:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSI Afterburner
  217. [2015.07.28 11:40:26 | 000,000,000 | ---D | C] -- C:\Users\Mirso\AppData\Local\NVIDIA
  218. [2015.07.28 11:33:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
  219. [2015.07.28 11:33:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
  220. [2015.07.28 11:31:54 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
  221. [2015.07.15 22:03:34 | 000,000,000 | ---D | C] -- C:\Users\Mirso\Documents\KONAMI
  222. [12 C:\Users\Mirso\Documents\*.tmp files -> C:\Users\Mirso\Documents\*.tmp -> ]
  223. [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
  224.  
  225. [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
  226.  
  227. [2015.08.09 10:16:20 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Mirso\Desktop\OTL.exe
  228. [2015.08.09 10:12:08 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
  229. [2015.08.09 10:12:02 | 000,000,946 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
  230. [2015.08.09 10:12:02 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
  231. [2015.08.09 06:36:30 | 000,024,272 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
  232. [2015.08.09 06:36:30 | 000,024,272 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
  233. [2015.08.09 06:35:41 | 000,781,298 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
  234. [2015.08.09 06:35:41 | 000,653,526 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
  235. [2015.08.09 06:35:41 | 000,121,398 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
  236. [2015.08.09 06:29:13 | 000,000,942 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
  237. [2015.08.09 06:28:58 | 3220,504,576 | -HS- | M] () -- C:\hiberfil.sys
  238. [2015.08.08 19:55:55 | 000,002,265 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
  239. [2015.08.01 06:37:47 | 000,002,723 | ---- | M] () -- C:\Users\Public\Desktop\Ghost(6980).lnk
  240. [2015.07.28 21:47:48 | 007,293,968 | ---- | M] () -- C:\Users\Mirso\Desktop\Sjeti se smrti.mp3
  241. [2015.07.28 12:05:06 | 000,001,100 | ---- | M] () -- C:\Users\Mirso\Desktop\MSI Afterburner.lnk
  242. [2015.07.28 10:45:04 | 000,000,079 | ---- | M] () -- C:\Users\Mirso\Desktop\Huntersoft Free Download.url
  243. [12 C:\Users\Mirso\Documents\*.tmp files -> C:\Users\Mirso\Documents\*.tmp -> ]
  244. [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
  245.  
  246. [color=#E56717]========== Files Created - No Company Name ==========[/color]
  247.  
  248. [2015.08.08 19:55:55 | 000,002,265 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
  249. [2015.08.08 19:54:00 | 000,000,946 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
  250. [2015.08.08 19:53:59 | 000,000,942 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
  251. [2015.08.01 06:37:47 | 000,002,723 | ---- | C] () -- C:\Users\Public\Desktop\Ghost(6980).lnk
  252. [2015.07.30 19:59:12 | 003,065,455 | ---- | C] () -- C:\Windows\SysNative\nvcoproc.bin
  253. [2015.07.30 19:58:21 | 000,017,738 | ---- | C] () -- C:\Windows\SysNative\nvinfo.pb
  254. [2015.07.28 21:44:42 | 007,293,968 | ---- | C] () -- C:\Users\Mirso\Desktop\Sjeti se smrti.mp3
  255. [2015.07.28 12:05:06 | 000,001,100 | ---- | C] () -- C:\Users\Mirso\Desktop\MSI Afterburner.lnk
  256. [2015.03.01 14:34:03 | 000,000,000 | -HS- | C] () -- C:\Users\Mirso\AppData\Local\LumaEmu
  257. [2015.01.15 17:43:34 | 000,765,280 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
  258. [2015.01.15 12:54:31 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
  259. [2014.11.21 04:33:08 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
  260. [2014.11.21 04:33:08 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
  261. [2014.11.20 21:35:00 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
  262.  
  263. [color=#E56717]========== ZeroAccess Check ==========[/color]
  264.  
  265. [2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
  266.  
  267. [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
  268.  
  269. [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
  270.  
  271. [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
  272.  
  273. [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
  274.  
  275. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
  276. "" = C:\Windows\SysNative\shell32.dll -- [2010.11.21 05:23:55 | 014,174,208 | ---- | M] (Microsoft Corporation)
  277. "ThreadingModel" = Apartment
  278.  
  279. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
  280. "" = %SystemRoot%\system32\shell32.dll -- [2010.11.21 05:24:02 | 012,872,192 | ---- | M] (Microsoft Corporation)
  281. "ThreadingModel" = Apartment
  282.  
  283. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
  284. "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
  285. "ThreadingModel" = Free
  286.  
  287. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
  288. "" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
  289. "ThreadingModel" = Free
  290.  
  291. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
  292. "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
  293. "ThreadingModel" = Both
  294.  
  295. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
  296.  
  297. [color=#E56717]========== LOP Check ==========[/color]
  298.  
  299. [2015.08.04 14:13:13 | 000,000,000 | ---D | M] -- C:\Users\Mirso\AppData\Roaming\Foxit Software
  300. [2015.06.01 19:21:20 | 000,000,000 | ---D | M] -- C:\Users\Mirso\AppData\Roaming\library_dir
  301. [2015.01.15 17:17:35 | 000,000,000 | ---D | M] -- C:\Users\Mirso\AppData\Roaming\Opera Software
  302. [2015.08.02 16:50:17 | 000,000,000 | ---D | M] -- C:\Users\Mirso\AppData\Roaming\Raptr
  303. [2015.03.30 10:04:07 | 000,000,000 | ---D | M] -- C:\Users\Mirso\AppData\Roaming\TS3Client
  304. [2015.08.08 22:11:12 | 000,000,000 | ---D | M] -- C:\Users\Mirso\AppData\Roaming\uTorrent
  305.  
  306. [color=#E56717]========== Purity Check ==========[/color]
  307.  
  308.  
  309.  
  310. [color=#E56717]========== Custom Scans ==========[/color]
  311.  
  312. [color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]
  313.  
  314. [color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
  315. [2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
  316. [2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
  317. [2009.07.14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys
  318.  
  319. [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
  320. [2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
  321. [2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
  322. [2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
  323. [2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_3b457059383c66e6\atapi.sys
  324. [2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_3be7afc0514717fa\atapi.sys
  325.  
  326. [color=#A23BEC]< MD5 for: CNGAUDIT.DLL >[/color]
  327. [2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
  328. [2009.07.14 03:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
  329. [2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
  330. [2009.07.14 03:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll
  331.  
  332. [color=#A23BEC]< MD5 for: IASTORV.SYS >[/color]
  333. [2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_668286aa35d55928\iaStorV.sys
  334. [2010.11.21 05:23:47 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys
  335. [2011.12.01 00:31:17 | 000,410,496 | ---- | M] (Intel Corporation) MD5=5B3DE7208E5000D5B451B9D290D2579C -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_0d714416b7c182d5\iaStorV.sys
  336. [2011.12.01 00:31:17 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\drivers\iaStorV.sys
  337. [2011.12.01 00:31:17 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_0bcee2057afcc090\iaStorV.sys
  338. [2011.12.01 00:31:17 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_0cf9793d9e95787b\iaStorV.sys
  339.  
  340. [color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color]
  341. [2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SysNative\netlogon.dll
  342. [2010.11.21 05:24:01 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll
  343. [2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SysWOW64\netlogon.dll
  344. [2010.11.21 05:24:09 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll
  345.  
  346. [color=#A23BEC]< MD5 for: NVSTOR.SYS >[/color]
  347. [2011.12.01 00:31:17 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=D23C7E8566DA2B8A7C0DBBB761D54888 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvstor.sys
  348. [2011.12.01 00:31:17 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\drivers\nvstor.sys
  349. [2011.12.01 00:31:17 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvstor.sys
  350. [2011.12.01 00:31:17 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvstor.sys
  351. [2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvstor.sys
  352. [2010.11.21 05:23:47 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys
  353.  
  354. [color=#A23BEC]< MD5 for: SCECLI.DLL >[/color]
  355. [2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
  356. [2010.11.21 05:23:54 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
  357. [2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
  358. [2010.11.21 05:24:32 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
  359.  
  360. [color=#A23BEC]< %systemroot%\*. /mp /s >[/color]
  361.  
  362. [color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color]
  363.  
  364. [color=#E56717]========== Files - Unicode (All) ==========[/color]
  365. [2015.04.06 05:00:42 | 054,394,506 | ---- | M] ()(C:\Users\Mirso\Documents\Ebu Bekr es-Sidik r.a. - prvi halifa ??.mp3) -- C:\Users\Mirso\Documents\Ebu Bekr es-Sidik r.a. - prvi halifa ᴴᴰ.mp3
  366. [2015.04.06 04:59:36 | 054,394,506 | ---- | C] ()(C:\Users\Mirso\Documents\Ebu Bekr es-Sidik r.a. - prvi halifa ??.mp3) -- C:\Users\Mirso\Documents\Ebu Bekr es-Sidik r.a. - prvi halifa ᴴᴰ.mp3
  367. [2015.04.06 04:59:19 | 201,886,264 | ---- | M] ()(C:\Users\Mirso\Documents\Ebu Bekr es-Sidik r.a. - prvi halifa ??.mp4) -- C:\Users\Mirso\Documents\Ebu Bekr es-Sidik r.a. - prvi halifa ᴴᴰ.mp4
  368. [2015.04.06 04:58:55 | 201,886,264 | ---- | C] ()(C:\Users\Mirso\Documents\Ebu Bekr es-Sidik r.a. - prvi halifa ??.mp4) -- C:\Users\Mirso\Documents\Ebu Bekr es-Sidik r.a. - prvi halifa ᴴᴰ.mp4
  369.  
  370. < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement