Racunar je prespor

1

Racunar je prespor

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

Kao sto i sam naslov kaze, racunar se jedva pokrece.. Otvara mi se gomila prozora kada udjem na neki link na bilo kom sajtu na internetu, sistem kad se digne, moram cekati 5-10 minuta da se osposbi za rad, a kasnije samo zakoci i nece nista, samo restart i tako u krug.. I ovu temu otvaram pola sata vec..

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:26-11-2015
Ran by Zeljka (administrator) on ZELJKA-PC (26-11-2015 23:54:59)
Running from C:\Users\Zeljka\Desktop
Loaded Profiles: Zeljka (Available Profiles: Zeljka & UpdatusUser & Guest)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2219184 2011-05-27] (ESET)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12017368 2013-10-24] (Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6133520 2015-11-06] (AVAST Software)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [221184 2010-11-20] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-10-26] (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{56E726EF-EC4F-400B-B7B7-8DCA389E30AF}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-08-04] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-26] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-04] (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default
FF Homepage: hxxps://www.google.rs/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-11] ()
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-04] (Oracle Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Extension: Youtube Converter MP3 - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\extensions\{a3a5c777-f583-4fef-9380-ab4add1bc2a5}.xpi [2015-10-09]
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-10-26] [not signed]
FF Extension: firefoxonlineconvertcom - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\Extensions\firefox@online-convert.com [2015-10-28] [not signed]
FF Extension: Adblock Plus - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-26]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2015-10-26] [not signed]
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\prefs.js [2015-10-28] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\cfg [2015-10-28] <==== ATTENTION

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-10-26]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-10-26]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-10-26] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [109008 2015-10-26] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3219136 2015-10-26] (Avast Software)
S3 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [33584 2011-05-27] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [810144 2011-05-27] (ESET)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5613328 2015-07-29] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24016 2015-10-26] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [26096 2015-10-26] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [76000 2015-10-26] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [275856 2015-10-26] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-10-26] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49776 2015-10-26] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [794952 2015-11-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [435464 2015-11-06] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [115640 2015-10-26] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208664 2015-10-26] (AVAST Software)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [137144 2010-12-21] (ESET)
R2 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [115008 2010-12-21] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [95384 2010-12-21] (ESET)
R0 ngvss; C:\Windows\system32\Drivers\ngvss.sys [107984 2015-10-26] (AVAST Software)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-10-26] (Avast Software)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-26 23:54 - 2015-11-26 23:55 - 00008935 _____ C:\Users\Zeljka\Desktop\FRST.txt
2015-11-26 23:54 - 2015-11-26 23:54 - 01719808 _____ (Farbar) C:\Users\Zeljka\Desktop\FRST.exe
2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 ____D C:\FRST
2015-11-26 23:52 - 2015-11-26 23:52 - 02348544 _____ (Farbar) C:\Users\Zeljka\Desktop\FRST64.exe
2015-11-23 23:16 - 2015-11-03 18:46 - 02386944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-11-12 22:20 - 2015-11-12 22:20 - 00011119 _____ C:\Users\Guest\Desktop\~WRD0000.tmp
2015-11-11 16:00 - 2015-10-20 01:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-11-11 16:00 - 2015-10-20 01:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-11-11 16:00 - 2015-10-20 01:52 - 00138176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-11-11 16:00 - 2015-10-20 01:52 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-11 16:00 - 2015-10-20 01:48 - 01308160 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-11-11 16:00 - 2015-10-20 01:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-11-11 16:00 - 2015-10-20 01:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-11-11 16:00 - 2015-10-20 01:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-11-11 16:00 - 2015-10-20 01:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-11-11 16:00 - 2015-10-20 01:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-11 16:00 - 2015-10-20 01:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-11-11 16:00 - 2015-10-20 01:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-11 16:00 - 2015-10-20 01:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-11-11 16:00 - 2015-10-20 00:29 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-11 16:00 - 2015-10-20 00:28 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-11 16:00 - 2015-10-20 00:28 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-11 16:00 - 2015-10-13 17:31 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-11-11 16:00 - 2015-10-13 17:31 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-11-11 15:57 - 2015-11-05 03:12 - 01267712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 11031552 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 06035968 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 02088448 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00389120 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00195072 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-11-11 15:57 - 2015-11-05 03:11 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-11-11 15:57 - 2015-11-05 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\corpol.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-11-11 15:57 - 2015-11-05 03:10 - 01466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-11-11 15:57 - 2015-11-05 02:37 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-11-11 15:57 - 2015-11-05 02:22 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-11-11 15:57 - 2015-10-13 05:50 - 00712640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-11-11 15:57 - 2015-09-23 14:09 - 00371920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-11-11 15:57 - 2015-09-23 14:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-11-11 15:34 - 2015-10-01 18:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-11-11 15:34 - 2015-10-01 18:50 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 02955776 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 02061824 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-11-11 15:31 - 2015-10-20 18:45 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-11-11 15:31 - 2015-10-20 18:45 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-11-11 15:31 - 2015-10-20 18:45 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-11-11 15:31 - 2015-10-20 18:45 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-11-07 22:32 - 2015-11-08 16:06 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-11-07 20:35 - 2015-11-07 20:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Mozilla
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Mozilla
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Macromedia
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Adobe
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Local\Macromedia
2015-11-07 20:34 - 2015-11-07 20:34 - 00000000 ____D C:\Users\Guest\AppData\Roaming\AVAST Software
2015-11-07 20:33 - 2015-11-11 18:53 - 00000000 ____D C:\Users\Guest
2015-11-07 20:33 - 2015-11-07 20:33 - 00000020 ___SH C:\Users\Guest\ntuser.ini
2015-11-07 20:33 - 2015-11-07 20:33 - 00000000 _SHDL C:\Users\Guest\My Documents
2015-11-07 20:33 - 2009-07-14 08:48 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Media Center Programs
2015-11-01 15:22 - 2015-11-02 23:02 - 00000000 ____D C:\AdwCleaner
2015-11-01 15:22 - 2015-11-01 15:22 - 01694208 _____ C:\Users\Zeljka\Desktop\adwcleaner_5.015.exe
2015-10-27 15:44 - 2015-10-27 15:44 - 00001128 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-10-27 15:44 - 2015-10-27 15:44 - 00001116 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-10-27 00:08 - 2015-10-27 00:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-10-27 00:08 - 2015-10-27 00:08 - 00000000 ____D C:\Program Files\Common Files\Skype
2015-10-27 00:07 - 2015-10-27 00:08 - 00000000 ___RD C:\Program Files\Skype

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-26 23:54 - 2009-07-14 03:37 - 00000000 ____D C:\Windows
2015-11-26 23:46 - 2015-08-04 11:56 - 00726316 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-26 23:46 - 2009-07-14 05:34 - 00022432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-26 23:46 - 2009-07-14 05:34 - 00022432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-26 23:46 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2015-11-26 23:38 - 2015-10-25 01:23 - 00001030 _____ C:\Windows\Tasks\VfkHIAHQSRbPL3HDC6OFnTNMYrm.job
2015-11-26 23:38 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-26 21:14 - 2015-08-04 13:45 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-11-24 21:37 - 2009-07-14 05:33 - 00335536 _____ C:\Windows\system32\FNTCACHE.DAT
2015-11-23 17:40 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\NDF
2015-11-13 08:51 - 2015-08-04 12:28 - 00000000 ____D C:\Windows\system32\MRT
2015-11-13 08:49 - 2015-08-04 12:28 - 143250520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-11-13 05:35 - 2009-07-14 08:49 - 00000000 ____D C:\Program Files\Windows Journal
2015-11-12 05:19 - 2015-08-04 19:16 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\uTorrent
2015-11-11 14:14 - 2015-08-04 13:45 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-11-11 14:14 - 2015-08-04 13:45 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-11-11 13:30 - 2015-09-27 12:35 - 00000000 ____D C:\Users\Zeljka\AppData\LocalLow\uTorrent
2015-11-08 16:06 - 2015-08-04 13:32 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-11-06 15:49 - 2015-10-26 14:56 - 00794952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-11-06 15:49 - 2015-10-26 14:56 - 00435464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2015-11-01 15:34 - 2015-08-04 12:46 - 00000000 ____D C:\Program Files\Google
2015-11-01 15:33 - 2015-08-04 12:42 - 00000000 ____D C:\Users\Zeljka\AppData\Local\Google
2015-10-31 21:32 - 2009-07-14 03:37 - 00000000 __RHD C:\Users\Public\Libraries
2015-10-31 21:19 - 2015-08-04 14:56 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\PhotoScape
2015-10-30 16:12 - 2009-07-14 05:53 - 00032606 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-10-30 14:16 - 2015-08-04 11:51 - 00000000 ____D C:\Users\Zeljka
2015-10-29 22:16 - 2015-08-18 13:59 - 00011264 ____H C:\Users\Zeljka\Desktop\photothumb.db
2015-10-27 01:08 - 2015-08-04 14:01 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\Skype
2015-10-27 00:08 - 2015-08-04 14:01 - 00000000 ____D C:\ProgramData\Skype

==================== Files in the root of some directories =======

2015-04-19 13:20 - 2015-04-19 13:20 - 0005872 _____ () C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm
2015-08-04 12:17 - 2015-08-04 12:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-25 13:55

==================== End of FRST.txt ============================


mycity.rs/must-login.png

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Zdravo,

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

CreateRestorePoint:
Task: C:\Windows\Tasks\VfkHIAHQSRbPL3HDC6OFnTNMYrm.job => C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm.exe <==== ATTENTION
Task: {4AF8FB9F-8CD8-4A4C-A6F4-C8D93123FAEE} - System32\Tasks\VfkHIAHQSRbPL3HDC6OFnTNMYrm => C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm.exe <==== ATTENTION
C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm.exe
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\prefs.js [2015-10-28] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\cfg [2015-10-28] <==== ATTENTION
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

------

Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Scan] i pricekaj da program zavrsi.
Klikni na dugme [Clean]
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S0].txt

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

vec posle prve radnje oseca se osvezenje u radu racunara.. Hvala!
*log je prikacen

mycity.rs/must-login.png

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Imas instalirana dva antivirusa na kompu.
Deinstaliraj ESET.

Pa mi ponovo postavi FRST i Addition log, sveze logove, postupak je kao prvi put.

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

Ovog puta mi nije izbacio addition log.. Evo rezultata

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:26-11-2015
Ran by Zeljka (administrator) on ZELJKA-PC (28-11-2015 00:03:12)
Running from C:\Users\Zeljka\Desktop
Loaded Profiles: Zeljka (Available Profiles: Zeljka & UpdatusUser & Guest)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12017368 2013-10-24] (Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6133520 2015-11-06] (AVAST Software)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [221184 2010-11-20] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-10-26] (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{56E726EF-EC4F-400B-B7B7-8DCA389E30AF}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-08-04] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-26] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-04] (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default
FF Homepage: hxxps://www.google.rs/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-11] ()
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-04] (Oracle Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-10-26] [not signed]
FF Extension: Youtube Converter MP3 - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\extensions\{a3a5c777-f583-4fef-9380-ab4add1bc2a5}.xpi [2015-11-27]
FF Extension: firefoxonlineconvertcom - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\Extensions\firefox@online-convert.com [2015-10-28] [not signed]
FF Extension: Adblock Plus - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-26]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-10-26]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-10-26]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-10-26] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [109008 2015-10-26] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3219136 2015-10-26] (Avast Software)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5613328 2015-07-29] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24016 2015-10-26] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [26096 2015-10-26] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [76000 2015-10-26] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [275856 2015-10-26] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-10-26] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49776 2015-10-26] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [794952 2015-11-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [435464 2015-11-06] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [115640 2015-10-26] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208664 2015-10-26] (AVAST Software)
R0 ngvss; C:\Windows\system32\Drivers\ngvss.sys [107984 2015-10-26] (AVAST Software)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-10-26] (Avast Software)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-27 23:48 - 2015-11-27 23:48 - 00000987 _____ C:\Users\Zeljka\Desktop\AdwCleaner[S1].txt
2015-11-27 23:36 - 2015-11-27 23:36 - 01733632 _____ C:\Users\Zeljka\Desktop\adwcleaner_5.022.exe
2015-11-27 23:31 - 2015-11-27 23:31 - 00001953 _____ C:\Users\Zeljka\Desktop\Fixlog.txt
2015-11-26 23:54 - 2015-11-28 00:03 - 00007813 _____ C:\Users\Zeljka\Desktop\FRST.txt
2015-11-26 23:54 - 2015-11-28 00:03 - 00000000 ____D C:\FRST
2015-11-26 23:54 - 2015-11-26 23:54 - 01719808 _____ (Farbar) C:\Users\Zeljka\Desktop\FRST.exe
2015-11-26 23:52 - 2015-11-26 23:52 - 02348544 _____ (Farbar) C:\Users\Zeljka\Desktop\FRST64.exe
2015-11-23 23:16 - 2015-11-03 18:46 - 02386944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-11-12 22:20 - 2015-11-12 22:20 - 00011119 _____ C:\Users\Guest\Desktop\~WRD0000.tmp
2015-11-11 16:00 - 2015-10-20 01:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-11-11 16:00 - 2015-10-20 01:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-11-11 16:00 - 2015-10-20 01:52 - 00138176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-11-11 16:00 - 2015-10-20 01:52 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-11 16:00 - 2015-10-20 01:48 - 01308160 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-11-11 16:00 - 2015-10-20 01:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-11-11 16:00 - 2015-10-20 01:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-11-11 16:00 - 2015-10-20 01:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-11-11 16:00 - 2015-10-20 01:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-11-11 16:00 - 2015-10-20 01:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-11 16:00 - 2015-10-20 01:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-11-11 16:00 - 2015-10-20 01:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-11 16:00 - 2015-10-20 01:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-11-11 16:00 - 2015-10-20 00:29 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-11 16:00 - 2015-10-20 00:28 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-11 16:00 - 2015-10-20 00:28 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-11 16:00 - 2015-10-13 17:31 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-11-11 16:00 - 2015-10-13 17:31 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-11-11 15:57 - 2015-11-05 03:12 - 01267712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 11031552 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 06035968 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 02088448 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00389120 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00195072 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-11-11 15:57 - 2015-11-05 03:11 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-11-11 15:57 - 2015-11-05 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\corpol.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-11-11 15:57 - 2015-11-05 03:10 - 01466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-11-11 15:57 - 2015-11-05 02:37 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-11-11 15:57 - 2015-11-05 02:22 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-11-11 15:57 - 2015-10-13 05:50 - 00712640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-11-11 15:57 - 2015-09-23 14:09 - 00371920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-11-11 15:57 - 2015-09-23 14:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-11-11 15:34 - 2015-10-01 18:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-11-11 15:34 - 2015-10-01 18:50 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 02955776 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 02061824 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-11-11 15:31 - 2015-10-20 18:45 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-11-11 15:31 - 2015-10-20 18:45 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-11-11 15:31 - 2015-10-20 18:45 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-11-11 15:31 - 2015-10-20 18:45 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-11-07 22:32 - 2015-11-27 23:31 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-11-07 20:35 - 2015-11-07 20:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Mozilla
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Mozilla
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Macromedia
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Adobe
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Local\Macromedia
2015-11-07 20:34 - 2015-11-07 20:34 - 00000000 ____D C:\Users\Guest\AppData\Roaming\AVAST Software
2015-11-07 20:33 - 2015-11-11 18:53 - 00000000 ____D C:\Users\Guest
2015-11-07 20:33 - 2015-11-07 20:33 - 00000020 ___SH C:\Users\Guest\ntuser.ini
2015-11-07 20:33 - 2015-11-07 20:33 - 00000000 _SHDL C:\Users\Guest\My Documents
2015-11-07 20:33 - 2009-07-14 08:48 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Media Center Programs
2015-11-01 15:22 - 2015-11-27 23:43 - 00000000 ____D C:\AdwCleaner

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-28 00:01 - 2009-07-14 03:37 - 00000000 ____D C:\Windows
2015-11-28 00:00 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2015-11-27 23:59 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-27 23:58 - 2015-08-04 12:57 - 00000000 ____D C:\Program Files\ESET
2015-11-27 23:53 - 2009-07-14 05:34 - 00022432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-27 23:53 - 2009-07-14 05:34 - 00022432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-27 23:40 - 2015-08-04 11:56 - 00726316 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-26 21:14 - 2015-08-04 13:45 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-11-24 21:37 - 2009-07-14 05:33 - 00335536 _____ C:\Windows\system32\FNTCACHE.DAT
2015-11-23 17:40 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\NDF
2015-11-13 08:51 - 2015-08-04 12:28 - 00000000 ____D C:\Windows\system32\MRT
2015-11-13 08:49 - 2015-08-04 12:28 - 143250520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-11-13 05:35 - 2009-07-14 08:49 - 00000000 ____D C:\Program Files\Windows Journal
2015-11-12 05:19 - 2015-08-04 19:16 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\uTorrent
2015-11-11 14:14 - 2015-08-04 13:45 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-11-11 14:14 - 2015-08-04 13:45 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-11-11 13:30 - 2015-09-27 12:35 - 00000000 ____D C:\Users\Zeljka\AppData\LocalLow\uTorrent
2015-11-08 16:06 - 2015-08-04 13:32 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-11-06 15:49 - 2015-10-26 14:56 - 00794952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-11-06 15:49 - 2015-10-26 14:56 - 00435464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2015-11-01 15:34 - 2015-08-04 12:46 - 00000000 ____D C:\Program Files\Google
2015-11-01 15:33 - 2015-08-04 12:42 - 00000000 ____D C:\Users\Zeljka\AppData\Local\Google
2015-10-31 21:32 - 2009-07-14 03:37 - 00000000 __RHD C:\Users\Public\Libraries
2015-10-31 21:19 - 2015-08-04 14:56 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\PhotoScape
2015-10-30 16:12 - 2009-07-14 05:53 - 00032606 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-10-30 14:16 - 2015-08-04 11:51 - 00000000 ____D C:\Users\Zeljka
2015-10-29 22:16 - 2015-08-18 13:59 - 00011264 ____H C:\Users\Zeljka\Desktop\photothumb.db

==================== Files in the root of some directories =======

2015-04-19 13:20 - 2015-04-19 13:20 - 0005872 _____ () C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm
2015-08-04 12:17 - 2015-08-04 12:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\Zeljka\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-25 13:55

==================== End of FRST.txt ============================

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

CreateRestorePoint:
File:C:\ProgramData\DP45977C.lfl
C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

Fix result of Farbar Recovery Scan Tool (x86) Version:26-11-2015
Ran by Zeljka (2015-11-28 09:12:51) Run:2
Running from C:\Users\Zeljka\Desktop
Loaded Profiles: Zeljka (Available Profiles: Zeljka & UpdatusUser & Guest)
Boot Mode: Normal

==============================================

fixlist content:
*****************
CreateRestorePoint:
File:C:\ProgramData\DP45977C.lfl
C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm
EmptyTemp:
*****************

Restore point was successfully created.

========================= File:C:\ProgramData\DP45977C.lfl ========================

File not signed
MD5:
Creation and modification date: 2015-08-04 - 2015-08-04
Size: 0000000
Attributes: ---AH
Company Name:
Internal Name:
Original Name:
Product:
Description:
File Version:
Product Version:
Copyright:

====== End of File: ======

C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm => moved successfully
EmptyTemp: => 13 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 09:13:27 ====

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Da li sada imas nekih problema?

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

Nema vise iskacucih prozorcica, mnogo brze ide restart, mnogo brze sve otvara i brze je spreman za rad.. Hvala! Ziveli

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Odlicno.

Sledeća procedura će implementirati završno čišćenje.



Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.

Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;
Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.

Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Ukoliko neki alat ili izveštaj nije uklonjen, slobodno ih obriši ručno.


Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)
- Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
- DelFix briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

Ko je trenutno na forumu
 

Ukupno su 892 korisnika na forumu :: 57 registrovanih, 9 sakrivenih i 826 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 357magnum, A.R.Chafee.Jr., BORUTUS, Bubimir, ceman, darios, djboj, djuradj, draganca, dushan, FOX, Georgius, goxin, ikan, Insan, JOntra, Još malo pa deda, Kaplar2, Karla, kybonacci, Lieutenant, LUDI, Marko Marković, mercedesamg, Metanoja, MilosKop, milutin134, Nemanja.M, nemkea71, nikoladim, oldtimer, opt1, pein, Prašinar, radoznao, raptorsi, Rema000, rodoljub, Rogan33, Sančo, Singidunumac, Sirius, Srle993, stegonosa, Stoilkovic, uruk, vathra, Vlada1389, Vlada78, Vladko, VP6919, wizzardone, wolf431, wolverined4, x9, zzapNDjuric99, |_MeD_|