Usporeni rad računara i kako ukloniti xxclone.exe

2

Usporeni rad računara i kako ukloniti xxclone.exe

offline
  • Pridružio: 30 Jul 2009
  • Poruke: 233

Evo konacno je zavrsio posle 4 sata:

Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by Mi Ringeri on uto 26.05.2015 at 17:24:31,96.
Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Mi Ringeri\Desktop\Zoek\zoek\zoek.pif [Scan all users] [Script inserted]

==== System Restore Info ======================

26.5.2015 17:28:40 Zoek.exe System Restore Point Created Successfully.

==== Empty Folders Check ======================

C:\Program Files\BSR Screen Recorder 6 deleted successfully
C:\Program Files\Elaborate Bytes deleted successfully
C:\Program Files\LucasArts deleted successfully
C:\Program Files\Realtek Sound Manager deleted successfully
C:\Program Files\SlySoft deleted successfully
C:\Program Files\Sony Ericsson deleted successfully
C:\PROGRA~2\360SD deleted successfully
C:\PROGRA~2\IDM deleted successfully
C:\PROGRA~2\Malwarebytes' Anti-Malware (portable) deleted successfully
C:\PROGRA~2\PlotSoft deleted successfully
C:\PROGRA~2\Sony Ericsson deleted successfully
C:\PROGRA~2\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} deleted successfully
C:\PROGRA~2\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} deleted successfully
C:\Users\Mi Ringeri\AppData\Roaming\DMCache deleted successfully
C:\Users\Mi Ringeri\AppData\Roaming\IrfanView deleted successfully
C:\Users\Mi Ringeri\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\Mi Ringeri\AppData\Roaming\PhotoScape deleted successfully
C:\Users\Mi Ringeri\AppData\Roaming\Windows Live Writer deleted successfully
C:\Users\Default\AppData\Local\Bulents deleted successfully
C:\Users\Mi Ringeri\AppData\Local\Bulents deleted successfully
C:\Users\Mi Ringeri\AppData\Local\cache deleted successfully
C:\Users\Mi Ringeri\AppData\Local\calibre-cache deleted successfully
C:\Users\Mi Ringeri\AppData\Local\CRE deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{18DF081C-E8AD-4283-A596-FA578C2EBDC3} deleted successfully
HKEY_USERS\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} deleted successfully
HKEY_USERS\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15B851AF-A4B9-43EF-97D3-28E1B4A5DB9B} deleted successfully
HKEY_USERS\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{16DD43DA-43FF-46D1-8BC2-C14C0D1CD824} deleted successfully
HKEY_USERS\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1902485B-CE75-42C1-BA2D-57E660793D9A} deleted successfully
HKEY_USERS\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{817644C3-82CC-4927-B97D-CE57CFC9B342} deleted successfully
HKEY_USERS\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0DACC63-037F-46EE-AC02-E4C7B0FBFEB4} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0DACC63-037F-46EE-AC02-E4C7B0FBFEB4} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{2A541AE1-5BF6-4665-A8A3-CFA9672E4291} deleted successfully

==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\Program Files\BSR Screen Recorder 6 not found
C:\Program Files\Elaborate Bytes not found
C:\Program Files\LucasArts not found
C:\Program Files\Realtek Sound Manager not found
C:\Program Files\SlySoft not found
C:\Program Files\Sony Ericsson not found
C:\PROGRA~2\Malwarebytes' Anti-Malware (portable) not found
C:\PROGRA~2\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} not found
C:\PROGRA~2\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} not found
C:\Program Files\AvRack deleted
C:\Program Files\stinger deleted
C:\Users\Mi Ringeri\AppData\Roaming\calibre deleted
C:\Users\Mi Ringeri\AppData\LocalLow\{EE60127F-3C64-DEC4-0971-1D411F432E2C} deleted
C:\Users\Mi Ringeri\.android deleted
C:\Program Files\Common Files\DVDVideoSoft\bin deleted
C:\Program Files\Common Files\Wondershare deleted
C:\Speak Text.exe deleted
C:\wifv.exe deleted
C:\Windows\system32\config\systemprofile\AppData\Roaming\Hotspot Shield deleted
C:\PROGRA~2\InstallMate deleted
C:\Users\Mi Ringeri\AppData\Local\Wondershare deleted
C:\Users\Mi Ringeri\AppData\Local\CrashRpt deleted
C:\Windows\wininit.ini deleted
C:\Windows\system32\config\systemprofile\Searches deleted
C:\Windows\system32\GroupPolicy\Machine deleted
C:\Windows\system32\GroupPolicy\User deleted
C:\Windows\system32\GroupPolicy\gpt.ini deleted
C:\Windows\System32\SET3EE4.tmp deleted
C:\Windows\System32\SET3FDF.tmp deleted
C:\Windows\System32\SET4241.tmp deleted
C:\Windows\System32\SET493B.tmp deleted
C:\Windows\System32\SET4CA8.tmp deleted
C:\Windows\System32\SET4F88.tmp deleted
C:\Windows\System32\SET58A1.tmp deleted
C:\Windows\System32\SET5A38.tmp deleted
C:\Windows\System32\SET653B.tmp deleted
C:\Windows\System32\Hotspot Shield deleted
C:\Windows\System32\searchplugins deleted
C:\Windows\System32\Extensions deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"WebProtection@360safe.com"="C:\Program Files\360\Total Security\safemon\webprotection_firefox" [15.04.2015 00:33]

==== Firefox Extensions ======================

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- Skype Click to Call - %AppDir%\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\Mi Ringeri\AppData\Roaming\Mozilla\Firefox\Profiles\r92vs7r7.default-1432219189258
8355BD2CD6CD108FB1318AA3D1085CA0 - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll - Adobe Acrobat
C2D756C95D5AE3D030E7D394B9C771B9 - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
D2377C9458EFEB094E38B8C874AA214C - C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll - Google Update
073A22FDCDAFD513DAD0D972BD2DF76E - c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll - Silverlight Plug-In
5B4DA1113F240C3F06FFF9D52761528B - C:\Program Files\Google\Picasa3\npPicasa3.dll - Picasa
2E661988463BCFA1B95D4DAAB9B0B6FA - C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll - Shockwave Flash
4956E5429BB59E1994F15498E993B90B - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll - Foxit Reader Plugin for Mozilla
6D23BB87BCF88731959BF79082D442E6 - c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrlui.dll - Microsoft® Silverlight


==== Chromium Look ======================

Google Chrome Version: 42.0.2311.90

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[14.07.2014 19:22]

WOT - Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp
Avast SafePrice - Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Bookmark Manager - Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik

==== Chromium Startpages ======================

C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.google.com",
"startup_urls": [ "http://www.google.com/" ]

C:\Users\Mi Ringeri\AppData\Roaming\Opera Software\Opera Stable\Preferences
"startup_urls": [ "http://www.google.com/" ],


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Search Bar"="http://www.bing.com"
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
@="http://www.google.com/search?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com/ie"
"Default_Search_URL"="http://www.google.com/ie"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="about:newtab"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{04ABB6DC-533B-4048-AFD1-3CE81FBC7BE8} Google Url="https://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
{7CFE7811-F725-4278-936B-4A33F602DCAE} Google Url="Not_Found"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-228915504-2982361301-1765509949-1000\Software\Microsoft\Internet Explorer\SearchScopes\{7CFE7811-F725-4278-936B-4A33F602DCAE} deleted successfully

==== Deleting CLSID Registry Values ======================


==== shortcuts on Users Desktops ======================

C:\Users\Mi Ringeri\Desktop\DESKTOP - Shortcut.lnk - C:\DESKTOP
C:\Users\Mi Ringeri\Desktop\Downloads.lnk - C:\Users\Mi Ringeri\Downloads
C:\Users\Mi Ringeri\Desktop\IsoBuster.lnk - C:\Program Files\Smart Projects\IsoBuster\IsoBuster.exe
C:\Users\Mi Ringeri\Desktop\Local Disk (C) - Shortcut.lnk - C:\
C:\Users\Mi Ringeri\Desktop\podaci (D) - Shortcut.lnk - D:\

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\360 Total Security.lnk - C:\Program Files\360\Total Security\QHSafeMain.exe
C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe
C:\Users\Public\Desktop\CopySafe PDF Reader.lnk - C:\Program Files\CopySafe PDF Reader\CSPDFreader.exe
C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Users\Public\Desktop\TP-LINK Wireless Configuration Utility.lnk - C:\Program Files\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
C:\Users\Public\Desktop\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe
C:\Users\Public\Desktop\xxclone.exe.lnk - C:\Windows\System32\xxclone.exe

==== shortcuts in Users Start Menu ======================

C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileCleaner\Uninstall FileCleaner.lnk - C:\Windows\system32\msiexec.exe /x {FB09AEE5-344D-4D57-9E95-AC03A75E3D3A}
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Spider-Man 2™.lnk -
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Ultimate Spider-man™.lnk -
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled\ATnotes.lnk - C:\Program Files\ATnotes\ATnotes.exe

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk - C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}\SC_Reader.ico
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote Sticky Notes.lnk - C:\Windows\Installer\{4FC3ACD7-105C-42E2-9A48-4FFF58C76D19}\_48F7029975F04D758D5A5C2DF4CC8337.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk - C:\Program Files\TeamViewer\TeamViewer.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center\360 Total Security\360 Total Security.lnk - C:\Program Files\360\Total Security\QHSafeMain.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center\360 Total Security\Uninstall.lnk - C:\Program Files\360\Total Security\Uninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\Help.lnk - C:\Program Files\Smart Projects\IsoBuster\Help\IsoBuster.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\IsoBuster Online.lnk - C:\Program Files\Smart Projects\IsoBuster\Online\IsoBuster Online.html
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\IsoBuster.lnk - C:\Program Files\Smart Projects\IsoBuster\IsoBuster.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\Order Now.lnk - C:\Program Files\Smart Projects\IsoBuster\Online\Order Now.html
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster\Uninstall IsoBuster.lnk - C:\Program Files\Smart Projects\IsoBuster\Uninst\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Uninstall Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes Anti-Malware\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk - C:\Program Files\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files\Microsoft Silverlight\5.1.40416.0\Silverlight.Configuration.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled\Who Is On My Wifi.lnk - C:\Program Files\IO3O LLC\Who Is On My Wifi\mywifi.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Alternate Start.lnk - C:\Program Files\SUPERAntiSpyware\RUNSAS.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Free Edition.lnk - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Help.lnk - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Registration-Activation.lnk - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe /register
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk - C:\Program Files\VideoLAN\VLC\Documentation.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk - C:\Program Files\VideoLAN\VLC\NEWS.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk - C:\Program Files\VideoLAN\VLC\VideoLAN Website.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe --reset-config --reset-plugins-cache vlc://quit
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe -Iskins
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk - C:\Program Files\VideoLAN\VLC\vlc.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Who Is On My Wifi\Stop Application.lnk - C:\Program Files\IO3O LLC\Who Is On My Wifi\StopApp.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Who Is On My Wifi\Uninstall Who Is On My Wifi.lnk - C:\Program Files\IO3O LLC\Who Is On My Wifi\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Who Is On My Wifi\Who Is On My Wifi.lnk - C:\Program Files\IO3O LLC\Who Is On My Wifi\mywifi.exe

==== shortcuts in Quick Launch ======================

C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\BitTorrent Sync.lnk - C:\Program Files\BitTorrent Sync\BTSync.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Foxit Reader.lnk - C:\Program Files\Foxit Software\Foxit Reader\Foxit Reader.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\IsoBuster.lnk - C:\Program Files\Smart Projects\IsoBuster\IsoBuster.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Magic Photo Editor.lnk - C:\Program Files\Magic Photo Editor\MagicPhoto.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk - C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE /recycle
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Nero Express.lnk - C:\Program Files\Nero\Nero Burning ROM\nero.exe /w
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoScape.lnk - C:\Program Files\PhotoScape\PhotoScape.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Photoshine.lnk - C:\Program Files\Photoshine\photoshine.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Picasa 3.lnk - C:\Program Files\Google\Picasa3\Picasa3.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk - C:\Users\Mi Ringeri\AppData\Roaming\uTorrent\uTorrent.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\5d696d521de238c3\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe --profile-directory=Default
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Calculator.lnk - C:\Windows\system32\calc.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\displayswitch.lnk - C:\Windows\system32\displayswitch.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Microsoft Office Excel 2007.lnk - C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Microsoft Office Word 2007.lnk - C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Nero Express.lnk - C:\Program Files\Nero\Nero Burning ROM\nero.exe /w
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Start Unlocker Assistant.lnk - C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Mi Ringeri\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Softonic for Windows deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent deleted successfully

==== Empty IE Cache ======================

C:\Users\Mi Ringeri\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Mi Ringeri\AppData\Local\Mozilla\Firefox\Profiles\r92vs7r7.default-1432219189258\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Mi Ringeri\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\Mi Ringeri\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=195 folders=76 38750016 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Mi Ringeri\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\MIRING~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied
C:\RECYCLER successfully emptied

==== EOF on uto 26.05.2015 at 21:19:52,73 ======================

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Oteglo se bas. Very Happy

Kakvo je sad stanje?

offline
  • Pridružio: 30 Jul 2009
  • Poruke: 233

Bolje je znacajno, sta je bio problem tolikom usporavanju?

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Ostaci nekih starih infekcija, ono sto su verovatno pokupili antivirusi.

Sledeća procedura će implementirati završno čišćenje.



Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.

Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;
Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.

Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Ukoliko neki alat ili izveštaj nije uklonjen, slobodno ih obriši ručno.


Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)
- Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
- DelFix briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

offline
  • Pridružio: 30 Jul 2009
  • Poruke: 233

Kako da uklonim ovaj xxclone.exe?

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

To je koliko razumem program za pravljenje bootabilnog DVD-a, USB-a? Daj sliku problema?

offline
  • Pridružio: 30 Jul 2009
  • Poruke: 233

Napisano: 26 Maj 2015 22:16

Mislim da je koriscen zbog neke igrice i sada ne znam odakle da ga deinstaliram posto ga nema u Programs and Features


Dopuna: 26 Maj 2015 22:18

A ja bukvalista: daj sliku problema - oma okacim sliku

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Probaj ovako:

Start>Run>pa kopiraj C:\WINDOWS\SYSTEM32\xxclone.exe /uninst i onda OK.

offline
  • Pridružio: 30 Jul 2009
  • Poruke: 233

Napisano: 26 Maj 2015 22:31

Probala, napise da je uspesno deinstaliran ali jos uvek je tu


Dopuna: 26 Maj 2015 22:33

Da li je potreban restart?

Dopuna: 26 Maj 2015 23:19

Nestao je posle restarta. Hvaaalllaaaa za intervenciju - pacijent se oporavio. Hvala na strpljenju i resenju. Pozdrav

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

OK. Ne zaboravi ovo:

helen1 ::Ostaci nekih starih infekcija, ono sto su verovatno pokupili antivirusi.

Sledeća procedura će implementirati završno čišćenje.



Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.

Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;
Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.

Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Ukoliko neki alat ili izveštaj nije uklonjen, slobodno ih obriši ručno.


Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)
- Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
- DelFix briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

Ko je trenutno na forumu
 

Ukupno su 853 korisnika na forumu :: 16 registrovanih, 4 sakrivenih i 833 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: bbogdan, Buzdovan, cenejac111, croato, Dimitrise93, HrcAk47, MB120mm, mrav pesadinac, operniki, Panter, Petar35, S1Mk3, S2M, StefanNBG90, Sumadija34, yrraf