|
|
|
Poslao: 30 Jun 2013 10:27
|
rip
- argus

- Anti Malware Fighter
Rank 2
- Pridružio: 27 Apr 2008
- Poruke: 9160
- Gde živiš: Prokuplje
|
Obrisi ostatke AVG-a
[Link mogu videti samo ulogovani korisnici]
============ Next ==============
Preuzmi FRST - (Farbar Recovery Scan Tool) i sacuvaj ga na Desktop
Napomena: Potrebno je preuzeti onu verziju koja je kompatibilna sa tvojim sistemom.
Dvoklikom pokreni FRST;
Kada se alat startuje, klikni Yes na disclaimer.
Klikni na dugme Scan;
Alat ce kreirati izvestaj (FRST.txt) u isti direktorijum gde je i FRST.exe sacuvan.
Iskopiraj sadrzaj tog loga u poruku.
Alat bi takodje pri prvom pokretanju trebao da kreira i dodatni izvestaj (Addition.txt). Taj izvestaj okaci u poruku koristeci opciju "Prikaci file".
|
|
|
|
|
|
|
Poslao: 30 Jun 2013 11:29
|
offline
- Killer7

- Super građanin
- Pridružio: 12 Jul 2012
- Poruke: 1023
|
Uradio sam AVG removal evo izvestaja:
Aditional
[Link mogu videti samo ulogovani korisnici]
FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 29-06-2013 01
Ran by Slavko Radic (administrator) on 30-06-2013 11:25:04
Running from C:\Documents and Settings\Slavko Radic\My Documents\Downloads
Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
(PowerISO Computing, Inc.) C:\Program Files\PowerISO\PWRISOVM.EXE
(PixArt Imaging Incorporation) C:\WINDOWS\PixArt\PAC7302\Monitor.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE [180224 2010-04-12] (PowerISO Computing, Inc.)
HKLM\...\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [PAC7302_Monitor] C:\WINDOWS\PixArt\PAC7302\Monitor.exe [323584 2007-12-10] (PixArt Imaging Incorporation)
HKLM\...\Run: [RTHDCPL] RTHDCPL.EXE [x]
HKLM\...\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup [13670504 2010-03-16] (NVIDIA Corporation)
HKLM\...\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit [110696 2010-03-16] (NVIDIA Corporation)
HKLM\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2255184 2013-05-15] (LogMeIn Inc.)
HKLM\...\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&src={referrer:source?}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: {17492023-C23A-453E-A040-C7C580BBF700} [Link mogu videti samo ulogovani korisnici]
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici]
Handler: ipp - No CLSID Value -
Handler: msdaipp - No CLSID Value -
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Slavko Radic\Application Data\Mozilla\Firefox\Profiles\bgy97gij.default
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: torntv - C:\Documents and Settings\Slavko Radic\Application Data\Mozilla\Firefox\Profiles\bgy97gij.default\Extensions\torntv@torntv.com.xpi
FF HKLM\...\Firefox\Extensions: [fbphotozoom@installdaddy.com] C:\Program Files\fbphotozoom\fbphotozoom13.xpi
Chrome:
=======
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\27.0.1453.116\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U15) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_6_602_171.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.150.3) - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
========================== Services (Whitelisted) =================
R2 gzserv; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [50816 2013-06-29] (Bitdefender)
R2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1435984 2013-05-15] (LogMeIn Inc.)
S4 PuranDefrag; C:\WINDOWS\system32\PuranDefragS.exe [260992 2013-01-17] (Puran Software)
S4 HidServ; %SystemRoot%\System32\hidserv.dll [x]
R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf" [x]
==================== Drivers (Whitelisted) ====================
R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
S3 Ambfilt; C:\Windows\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
R1 AmdK8; C:\Windows\System32\DRIVERS\AmdK8.sys [36864 2006-07-01] (Advanced Micro Devices)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [633344 2013-05-15] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [486536 2013-05-15] (BitDefender)
R1 bdftdif; C:\Program Files\Bitdefender\Antivirus Free Edition\bdftdif.sys [148600 2013-05-15] (Bitdefender SRL)
R1 bdselfpr; C:\Program Files\Bitdefender\Antivirus Free Edition\bdselfpr.sys [134136 2012-10-02] (BitDefender LLC)
S3 CCDECODE; C:\Windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
R3 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [164952 2013-05-15] (BitDefender LLC)
R3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
R3 HDAudBus; C:\Windows\System32\DRIVERS\HDAudBus.sys [144384 2008-04-13] (Windows (R) Server 2003 DDK provider)
R3 HSFHWBS2; C:\Windows\System32\DRIVERS\HSFBS2S2.sys [220032 2004-08-04] (Conexant Systems, Inc.)
R3 HSF_DP; C:\Windows\System32\DRIVERS\HSFDPSP2.sys [1041536 2004-08-04] (Conexant Systems, Inc.)
R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO32.SYS [21664 2013-02-23] (REALiX(tm))
S3 Monfilt; C:\Windows\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
S3 NABTSFEC; C:\Windows\System32\DRIVERS\NABTSFEC.sys [85248 2008-04-14] (Microsoft Corporation)
S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
S0 nvata; C:\Windows\System32\DRIVERS\nvata.sys [105344 2006-08-14] (NVIDIA Corporation)
R0 nvgts; C:\Windows\System32\DRIVERS\nvgts.sys [168040 2010-04-09] (NVIDIA Corporation)
R3 PAC7302; C:\Windows\System32\DRIVERS\PAC7302.SYS [461824 2009-04-28] (PixArt Imaging Inc.)
S3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2004-08-04] (Realtek Semiconductor Corporation)
S3 SLIP; C:\Windows\System32\DRIVERS\SLIP.sys [11136 2008-04-14] (Microsoft Corporation)
S3 streamip; C:\Windows\System32\DRIVERS\StreamIP.sys [15232 2008-04-14] (Microsoft Corporation)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [343456 2012-10-31] (BitDefender S.R.L.)
R3 winachsf; C:\Windows\System32\DRIVERS\HSFCXTS2.sys [685056 2004-08-04] (Conexant Systems, Inc.)
S3 WSTCODEC; C:\Windows\System32\DRIVERS\WSTCODEC.SYS [19200 2008-04-14] (Microsoft Corporation)
S4 Abiosdsk; No ImagePath
S4 abp480n5; No ImagePath
S4 adpu160m; No ImagePath
S4 Aha154x; No ImagePath
S4 aic78u2; No ImagePath
S4 aic78xx; No ImagePath
S4 AliIde; No ImagePath
S4 amsint; No ImagePath
S4 asc; No ImagePath
S4 asc3350p; No ImagePath
S4 asc3550; No ImagePath
S4 Atdisk; No ImagePath
S4 cd20xrnt; No ImagePath
S1 Changer; No ImagePath
S4 CmdIde; No ImagePath
S4 Cpqarray; No ImagePath
U4 dac2w2k; No ImagePath
S4 dac960nt; No ImagePath
S4 dpti2o; No ImagePath
S3 GGSAFERDriver; \??\C:\Program Files\Garena Plus\Room\safedrv.sys [x]
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [x]
S4 hpn; No ImagePath
S1 i2omgmt; No ImagePath
S4 i2omp; No ImagePath
S4 ini910u; No ImagePath
S4 IntelIde; No ImagePath
S1 lbrtfdc; No ImagePath
S4 mraid35x; No ImagePath
S3 NTACCESS; \??\E:\NTACCESS.sys [x]
S1 PCIDump; No ImagePath
S3 PDCOMP; No ImagePath
S3 PDFRAME; No ImagePath
S3 PDRELI; No ImagePath
S3 PDRFRAME; No ImagePath
S4 perc2; No ImagePath
S4 perc2hib; No ImagePath
S4 ql1080; No ImagePath
S4 Ql10wnt; No ImagePath
S4 ql12160; No ImagePath
S4 ql1240; No ImagePath
S4 ql1280; No ImagePath
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [x]
S4 Simbad; No ImagePath
S4 Sparrow; No ImagePath
S4 symc810; No ImagePath
S4 symc8xx; No ImagePath
S4 sym_hi; No ImagePath
S4 sym_u3; No ImagePath
S4 TosIde; No ImagePath
S4 ultra; No ImagePath
S4 ViaIde; No ImagePath
S3 WDICA; No ImagePath
U1 WS2IFSL;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-06-30 11:26 - 2013-06-30 11:26 - 00355744 ____A (BitDefender S.R.L.) C:\Windows\System32\Drivers\trufos.sys
2013-06-30 11:23 - 2013-06-30 11:23 - 00000000 ____D C:\FRST
2013-06-30 09:13 - 2013-06-30 09:13 - 00011577 ____A C:\Documents and Settings\Slavko Radic\Desktop\attach.txt
2013-06-30 09:13 - 2013-06-30 09:13 - 00008759 ____A C:\Documents and Settings\Slavko Radic\Desktop\dds.txt
2013-06-29 23:22 - 2013-06-29 23:21 - 00263592 ____A (Oracle Corporation) C:\Windows\System32\javaws.exe
2013-06-29 23:22 - 2013-06-29 23:21 - 00175016 ____A (Oracle Corporation) C:\Windows\System32\javaw.exe
2013-06-29 23:22 - 2013-06-29 23:21 - 00175016 ____A (Oracle Corporation) C:\Windows\System32\java.exe
2013-06-29 23:22 - 2013-06-29 23:21 - 00144896 ____A (Oracle Corporation) C:\Windows\System32\javacpl.cpl
2013-06-29 23:22 - 2013-06-29 23:21 - 00094632 ____A (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge.dll
2013-06-29 23:21 - 2013-06-29 23:21 - 00000000 ____D C:\Program Files\Java
2013-06-29 19:48 - 2013-06-29 23:12 - 00000000 ____D C:\Program Files\Puran Defrag
2013-06-29 19:48 - 2013-06-29 19:48 - 00000740 ____A C:\Documents and Settings\Slavko Radic\Desktop\Puran Defrag.lnk
2013-06-29 19:48 - 2013-01-17 16:24 - 01136512 ____A (Puran Software) C:\Windows\System32\PuranFD.exe
2013-06-29 19:48 - 2013-01-17 16:23 - 00260992 ____A (Puran Software) C:\Windows\System32\PuranDefragS.exe
2013-06-29 19:48 - 2013-01-17 16:23 - 00257408 ____A (Puran Software) C:\Windows\System32\PuranDC.exe
2013-06-29 19:48 - 2013-01-17 16:23 - 00109952 ____A (Puran Software) C:\Windows\System32\PuranDefragBT.exe
2013-06-29 19:48 - 2012-12-13 12:09 - 00219520 ____A (Puran Software) C:\Windows\System32\PuranDefrag.dll
2013-06-29 19:36 - 2013-06-29 23:59 - 00000000 ____D C:\Documents and Settings\Slavko Radic\My Documents\Command and Conquer Generals Zero Hour Data
2013-06-29 19:21 - 2013-06-29 19:21 - 00000353 ____A C:\Documents and Settings\All Users\Desktop\Command & Conquer Generals Zero Hour .lnk
2013-06-29 19:05 - 2013-06-29 19:05 - 00000349 ____A C:\Documents and Settings\All Users\Desktop\Command & Conquer Generals.lnk
2013-06-29 14:48 - 2013-06-29 14:53 - 00002755 ____A C:\AdwCleaner[S2].txt
2013-06-29 14:47 - 2013-06-29 14:48 - 00002536 ____A C:\AdwCleaner[R2].txt
2013-06-18 22:35 - 2013-06-18 22:35 - 00000000 __HDC C:\Windows\$NtUninstallKB2839229$
2013-06-18 22:29 - 2013-06-18 22:31 - 00010979 ____A C:\Windows\KB2838727-IE8.log
2013-06-18 22:02 - 2013-06-18 22:35 - 00013847 ____A C:\Windows\KB2839229.log
2013-06-02 18:51 - 2013-06-30 11:20 - 00000000 ____D C:\Documents and Settings\Slavko Radic\Local Settings\Application Data\LogMeIn Hamachi
2013-06-02 18:51 - 2013-06-30 11:20 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\Application Data\LogMeIn Hamachi
2013-06-02 18:50 - 2013-06-02 18:50 - 00000685 ____A C:\Documents and Settings\All Users\Desktop\LogMeIn Hamachi.lnk
2013-06-02 18:50 - 2013-06-02 18:50 - 00000000 ____D C:\Program Files\LogMeIn Hamachi
==================== One Month Modified Files and Folders ========
2013-06-30 11:26 - 2013-06-30 11:26 - 00355744 ____A (BitDefender S.R.L.) C:\Windows\System32\Drivers\trufos.sys
2013-06-30 11:23 - 2013-06-30 11:23 - 00000000 ____D C:\FRST
2013-06-30 11:21 - 2012-03-01 19:24 - 01449781 ____A C:\Windows\WindowsUpdate.log
2013-06-30 11:20 - 2013-06-02 18:51 - 00000000 ____D C:\Documents and Settings\Slavko Radic\Local Settings\Application Data\LogMeIn Hamachi
2013-06-30 11:20 - 2013-06-02 18:51 - 00000000 ____D C:\Documents and Settings\LocalService\Local Settings\Application Data\LogMeIn Hamachi
2013-06-30 11:20 - 2012-03-01 20:17 - 00000159 ____A C:\Windows\wiadebug.log
2013-06-30 11:20 - 2012-03-01 20:17 - 00000049 ____A C:\Windows\wiaservc.log
2013-06-30 11:20 - 2010-03-16 04:37 - 00276951 ____A C:\Windows\System32\NvApps.xml
2013-06-30 11:19 - 2012-07-19 13:00 - 00000894 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-06-30 11:19 - 2012-03-01 19:30 - 00000062 __ASH C:\Documents and Settings\Slavko Radic\Local Settings\desktop.ini
2013-06-30 11:19 - 2012-03-01 19:29 - 00000062 __ASH C:\Documents and Settings\LocalService\Local Settings\desktop.ini
2013-06-30 11:19 - 2012-03-01 19:29 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-06-30 11:19 - 2012-03-01 19:28 - 00000062 __ASH C:\Documents and Settings\NetworkService\Local Settings\desktop.ini
2013-06-30 11:17 - 2013-03-07 00:47 - 00998830 ____A C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-57989841-606747145-839522115-1003-0.dat
2013-06-30 11:17 - 2013-03-05 23:55 - 00145390 ____A C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
2013-06-30 11:17 - 2012-03-01 19:29 - 00032620 ____A C:\Windows\SchedLgU.Txt
2013-06-30 11:06 - 2012-04-13 16:30 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-06-30 10:32 - 2012-07-19 13:00 - 00000898 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-06-30 09:13 - 2013-06-30 09:13 - 00011577 ____A C:\Documents and Settings\Slavko Radic\Desktop\attach.txt
2013-06-30 09:13 - 2013-06-30 09:13 - 00008759 ____A C:\Documents and Settings\Slavko Radic\Desktop\dds.txt
2013-06-29 23:59 - 2013-06-29 19:36 - 00000000 ____D C:\Documents and Settings\Slavko Radic\My Documents\Command and Conquer Generals Zero Hour Data
2013-06-29 23:21 - 2013-06-29 23:22 - 00263592 ____A (Oracle Corporation) C:\Windows\System32\javaws.exe
2013-06-29 23:21 - 2013-06-29 23:22 - 00175016 ____A (Oracle Corporation) C:\Windows\System32\javaw.exe
2013-06-29 23:21 - 2013-06-29 23:22 - 00175016 ____A (Oracle Corporation) C:\Windows\System32\java.exe
2013-06-29 23:21 - 2013-06-29 23:22 - 00144896 ____A (Oracle Corporation) C:\Windows\System32\javacpl.cpl
2013-06-29 23:21 - 2013-06-29 23:22 - 00094632 ____A (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge.dll
2013-06-29 23:21 - 2013-06-29 23:21 - 00000000 ____D C:\Program Files\Java
2013-06-29 23:21 - 2012-08-02 12:18 - 00867240 ____A (Oracle Corporation) C:\Windows\System32\npdeployJava1.dll
2013-06-29 23:21 - 2012-03-01 19:45 - 00789416 ____A (Oracle Corporation) C:\Windows\System32\deployJava1.dll
2013-06-29 23:12 - 2013-06-29 19:48 - 00000000 ____D C:\Program Files\Puran Defrag
2013-06-29 23:10 - 2012-03-01 20:14 - 00142832 ____A C:\Windows\System32\FNTCACHE.DAT
2013-06-29 19:48 - 2013-06-29 19:48 - 00000740 ____A C:\Documents and Settings\Slavko Radic\Desktop\Puran Defrag.lnk
2013-06-29 19:29 - 2012-04-27 21:48 - 00001434 ____A C:\Windows\eReg.dat
2013-06-29 19:29 - 2012-03-01 19:36 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-06-29 19:21 - 2013-06-29 19:21 - 00000353 ____A C:\Documents and Settings\All Users\Desktop\Command & Conquer Generals Zero Hour .lnk
2013-06-29 19:05 - 2013-06-29 19:05 - 00000349 ____A C:\Documents and Settings\All Users\Desktop\Command & Conquer Generals.lnk
2013-06-29 19:02 - 2012-07-12 14:09 - 00000000 ____D C:\Documents and Settings\Slavko Radic\Application Data\uTorrent
2013-06-29 14:53 - 2013-06-29 14:48 - 00002755 ____A C:\AdwCleaner[S2].txt
2013-06-29 14:48 - 2013-06-29 14:47 - 00002536 ____A C:\AdwCleaner[R2].txt
2013-06-29 14:32 - 2012-03-01 20:06 - 00025704 ____A C:\Documents and Settings\Slavko Radic\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2013-06-29 11:12 - 2004-08-04 14:00 - 00002206 ____A C:\Windows\System32\wpa.dbl
2013-06-19 16:07 - 2012-04-13 16:30 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe
2013-06-19 16:07 - 2012-03-01 19:49 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl
2013-06-18 22:35 - 2013-06-18 22:35 - 00000000 __HDC C:\Windows\$NtUninstallKB2839229$
2013-06-18 22:35 - 2013-06-18 22:02 - 00013847 ____A C:\Windows\KB2839229.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00721678 ____A C:\Windows\iis6.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00680114 ____A C:\Windows\FaxSetup.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00309369 ____A C:\Windows\tsoc.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00223228 ____A C:\Windows\comsetup.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00205626 ____A C:\Windows\msmqinst.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00135023 ____A C:\Windows\ntdtcsetup.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00118804 ____A C:\Windows\netfxocm.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00047261 ____A C:\Windows\MedCtrOC.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00037097 ____A C:\Windows\ocmsn.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00034366 ____A C:\Windows\tabletoc.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00033834 ____A C:\Windows\msgsocm.log
2013-06-18 22:35 - 2012-12-01 12:57 - 00001374 ____A C:\Windows\imsins.log
2013-06-18 22:35 - 2012-12-01 12:56 - 00325029 ____A C:\Windows\ocgen.log
2013-06-18 22:35 - 2012-07-28 16:58 - 00692959 ____A C:\Windows\setupapi.log
2013-06-18 22:32 - 2012-05-26 06:49 - 73381792 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-06-18 22:31 - 2013-06-18 22:29 - 00010979 ____A C:\Windows\KB2838727-IE8.log
2013-06-18 22:31 - 2013-01-19 22:34 - 00167334 ____A C:\Windows\updspapi.log
2013-06-18 22:31 - 2012-12-01 12:57 - 00001374 ____A C:\Windows\imsins.BAK
2013-06-02 18:50 - 2013-06-02 18:50 - 00000685 ____A C:\Documents and Settings\All Users\Desktop\LogMeIn Hamachi.lnk
2013-06-02 18:50 - 2013-06-02 18:50 - 00000000 ____D C:\Program Files\LogMeIn Hamachi
2013-06-01 13:18 - 2012-09-17 18:02 - 00000583 ____A C:\Windows\CoD.INI
2013-05-31 18:41 - 2012-03-01 20:13 - 00000223 ___SH C:\boot.ini
2013-05-31 18:41 - 2004-08-04 14:00 - 00000852 ____A C:\Windows\win.ini
2013-05-31 18:41 - 2004-08-04 14:00 - 00000227 ____A C:\Windows\system.ini
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== End Of Log ============================
|
|
|
|
|
|
|
|
|
Poslao: 30 Jun 2013 13:07
|
offline
- Killer7

- Super građanin
- Pridružio: 12 Jul 2012
- Poruke: 1023
|
Napisano: 30 Jun 2013 13:06
Probao sam ovaj program DelFix. Kada je zavrsio pojavio se notepad ali moj antivirus je blokirao process tog programa mogu ga unblock ali nisam siguran da to uradim .
Ako ti treba Notepad izvestaj javi.
Dopuna: 30 Jun 2013 13:07
I hvala na pomoci
|
|
|
|
|
|
|
Poslao: 30 Jun 2013 14:30
|
rip
- argus

- Anti Malware Fighter
Rank 2
- Pridružio: 27 Apr 2008
- Poruke: 9160
- Gde živiš: Prokuplje
|
Iskljuci Antivirus pa ponovo odradi sa Dellfix i ne zaboravi da ponovo ukljucis AV.
|
|
|
|
|
|