Nepoznat problem!

1

Nepoznat problem!

offline
  • Pridružio: 09 Okt 2010
  • Poruke: 679
  • Gde živiš: Kragujevac

Pozdrav.
Unapred se izvinjavam na nestručnim objašnjenjima i izlaganju problema, pošto se slabo razumem u te stvari.
Dakle ovako. Danas je počelo da mi se dešava da kada god hoću da otvorim neki link, konkretno kada sam na forumu i kliknem na bilo koju temu, ambulantu recimo, na toolbar-u mi se ispred www.mycity.rs/Ambulanta/ pojavi http://www.ultrafiles.net/7cc02b3a/url/http:// i nikako ne mogu direktno pristupiti temi već prvo moram obrisati ovo što se pojavljuje.
Inače, sestričina je koristila komp, ali kaže da nije ništa preuzimala.

Izvršio sam i oporavak sistema, koristio i CCleaner, kao i AVG antivirus (nije pronašao ništa), ali se problem i dalje javlja. U početku sam pretpostavljao da je u pitanju Browser no to mi se dešava i na ostalim.

Još jednom se izvinjavam na ovakvom objašnjenju, kao i ako sam nešto izostavio. (Pratio sam upustvo)

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 11.0.9600.16428 BrowserJavaVersion: 10.51.2
Run by Zoran at 21:34:47 on 2014-01-25
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.2815.1225 [GMT 1:00]
.
AV: AVG Internet Security *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Internet Security *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: AVG Firewall *Enabled* {621CC794-9486-F902-D092-0484E8EA828B}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\nvvsvc.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\AVG\AVG9\avgfws9.exe
C:\Program Files\AVG\AVG9\avgam.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
C:\Program Files\AVG\AVG9\avgemc.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Program Files\AVG\AVG9\avgtray.exe
C:\Program Files\MCShield\MCShieldRTM.exe
C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Windows\system32\conhost.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\AUDIODG.EXE
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\vssvc.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k swprv
.
============== Pseudo HJT Report ===============
.
uSearch Page = hxxp://www.google.com
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
uURLSearchHooks: {124d001a-bdcb-472f-aa59-bbe7e4bc3204} - <orphaned>
uURLSearchHooks: {15BB261B-E6BD-4D21-BA28-5EBD82BD1499} - <orphaned>
dURLSearchHooks: {A3BC75A2-1F87-4686-AA43-5347D756017C} - <orphaned>
BHO: RealNetworks Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\program files\realnetworks\realdownloader\browserplugins\ie\rndlbrowserrecordplugin.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office14\GROOVEEX.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office\office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
TB: CaptureSaver: {5148AB7D-8868-4490-B6DA-F98368488582} - c:\program files\capturesaver\CaptureSaverIE.dll
uRun: [avgui.exe] c:\program files\avg\avg9\avgui.exe
uRun: [avgtray.exe] c:\program files\avg\avg9\avgtray.exe
uRun: [MCShield Monitor] c:\program files\mcshield\mcshieldrtm.exe
uRun: [Google+ Auto Backup] "c:\users\zoran\appdata\local\programs\google\google+ auto backup\Google+ Auto Backup.exe" /autostart
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [RTHDVCPL] "c:\program files\realtek\audio\hda\RtHDVCpl.exe" -s
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
mRunOnce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedb.....er=9.0.914
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\realpl~1.lnk - c:\program files\real\realplayer\rpds\bin\rpsystray.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:221
uPolicies-Explorer: NoLogoff = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: HideFastUserSwitching = dword:1
IE: Add to CaptureSaver - c:\program files\capturesaver\\AddFromIE.htm
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~2\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {3BD9DD3E-F9B6-45b9-9ED3-5E1980C2686F} - {5148AB7D-8868-4490-B6DA-F98368488582}
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{52ED7CE5-B51C-43CF-B0E5-1925D57A4751} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{D07EEE4E-3BF7-455E-AA43-01FE4669AF6C} : NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{D07EEE4E-3BF7-455E-AA43-01FE4669AF6C} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{D07EEE4E-3BF7-455E-AA43-01FE4669AF6C}\14E64627F696461405 : DHCPNameServer = 192.168.43.1
TCP: Interfaces\{D07EEE4E-3BF7-455E-AA43-01FE4669AF6C}\8474533303 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{D07EEE4E-3BF7-455E-AA43-01FE4669AF6C}\D6C61646A616 : NameServer = 8.26.56.26,156.154.70.22
TCP: Interfaces\{D07EEE4E-3BF7-455E-AA43-01FE4669AF6C}\D6C61646A616 : DHCPNameServer = 192.168.1.20
TCP: Interfaces\{EA4FED30-BCE1-4EBB-B363-923C587F085C} : DHCPNameServer = 192.168.42.129
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg9\avgpp.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office14\GROOVEEX.DLL
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\32.0.1700.76\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
IFEO: psi.exe - c:\program files\iobit\advanced systemcare 7\AutoReactivator.exe
IFEO: psia.exe - c:\program files\iobit\advanced systemcare 7\AutoReactivator.exe
IFEO: psi_tray.exe - c:\program files\iobit\advanced systemcare 7\AutoReactivator.exe
IFEO: sua.exe - c:\program files\iobit\advanced systemcare 7\AutoReactivator.exe
IFEO: uTorrent.exe - c:\program files\iobit\advanced systemcare 7\AutoReactivator.exe
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSErHrw7x;AVG9IDSErHr;c:\windows\system32\drivers\AVGIDSwx.sys [2012-9-9 25168]
R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\drivers\avgrkx86.sys [2012-9-9 52872]
R0 EUBAKUP;EUBAKUP;c:\windows\system32\drivers\eubakup.sys [2012-9-10 50312]
R0 EUBKMON;EUBKMON;c:\windows\system32\drivers\EUBKMON.sys [2012-9-10 44680]
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [2013-12-17 15672]
R1 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwd6x.sys [2012-9-9 24856]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2012-9-9 226016]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2012-9-9 29712]
R1 AvgTdiX;AVG Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2012-9-9 243152]
R1 EUDSKACS;EUDSKACS;c:\windows\system32\drivers\eudskacs.sys [2012-9-10 17032]
R1 EUFDDISK;EUFDDISK;c:\windows\system32\drivers\EuFdDisk.sys [2012-9-10 187016]
R1 networx;networx;c:\windows\system32\drivers\networx.sys [2012-12-22 52728]
R1 VD_FileDisk;VD_FileDisk;c:\windows\system32\drivers\vd_filedisk.sys [2006-1-13 15872]
R2 avg9emc;AVG E-mail Scanner;c:\program files\avg\avg9\avgemc.exe [2012-9-9 921952]
R2 avg9wd;AVG WatchDog;c:\program files\avg\avg9\avgwdsvc.exe [2012-9-9 308136]
R2 avgfws9;AVG Firewall;c:\program files\avg\avg9\avgfws9.exe [2012-9-9 2331544]
R2 AVGIDSAgent;AVG9IDSAgent;c:\program files\avg\avg9\identity protection\agent\bin\AVGIDSAgent.exe [2012-9-9 5897808]
R2 LiveUpdateSvc;LiveUpdate;c:\program files\iobit\liveupdate\LiveUpdate.exe [2013-12-17 2151200]
R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service;c:\program files\realnetworks\realdownloader\rndlresolversvc.exe [2013-12-14 39056]
R2 RealPlayer Cloud Service;RealPlayer Cloud Service;c:\program files\real\realplayer\rpds\bin\rpdsvc.exe [2014-1-25 1141336]
R2 RealPlayerUpdateSvc;RealPlayer Update Service;c:\program files\real\updateservice\RealPlayerUpdateSvc.exe [2013-12-16 23552]
R3 athrusb;TP-LINK Wireless LAN USB device driver;c:\windows\system32\drivers\athrusb.sys [2007-8-17 891392]
R3 AVGIDSDriverw7x;AVG9IDSDriver;c:\program files\avg\avg9\identity protection\agent\driver\platform_win7\AVGIDSDriver.sys [2012-9-9 122448]
R3 AVGIDSFilterw7x;AVG9IDSFilter;c:\program files\avg\avg9\identity protection\agent\driver\platform_win7\AVGIDSFilter.sys [2012-9-9 30288]
R3 AVGIDSShimw7x;AVG9IDSShim;c:\program files\avg\avg9\identity protection\agent\driver\platform_win7\AVGIDSShim.sys [2012-9-9 20560]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2013-11-18 243128]
R3 RRNetCapMP;RRNetCapMP;c:\windows\system32\drivers\rrnetcap.sys [2013-2-5 31848]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2013-12-17 680664]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 AndNetDiag;LGE AndroidNet USB Serial Port;c:\windows\system32\drivers\lgandnetdiag.sys [2012-7-3 23040]
S3 ANDNetModem;LGE AndroidNet USB Modem;c:\windows\system32\drivers\lgandnetmodem.sys [2012-7-3 27776]
S3 andnetndis;LGE AndroidNet NDIS Ethernet Adapter;c:\windows\system32\drivers\lgandnetndis.sys [2012-7-4 73728]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service;c:\program files\avg\avg9\toolbar\ToolbarBroker.exe [2012-9-9 167264]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 62464]
S3 EaseUS Agent;EaseUS Agent;c:\program files\easeus\todo backup\bin\Agent.exe [2012-9-12 61064]
S3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys [2013-2-11 14920]
S3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys [2013-2-11 9160]
S3 Guard Agent;Guard Agent;c:\program files\easeus\todo backup\bin\GuardAgent.exe [2012-9-12 23176]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\ieetwcollector.exe [2013-12-11 108032]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-2-2 21104]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2013-3-1 40776]
S3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [2012-9-10 15576]
S3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [2012-9-10 10200]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2013-3-17 14848]
S3 RRNetCap;RRNetCap Service;c:\windows\system32\drivers\rrnetcap.sys [2013-2-5 31848]
S3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\Synth3dVsc.sys [2010-11-21 77184]
S3 SystemExplorerHelpService;System Explorer Service;c:\program files\system explorer\service\SystemExplorerService.exe [2013-1-24 536208]
S3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2013-3-17 24064]
S3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2013-3-17 27136]
S3 VideoAcceleratorService;VideoAcceleratorService; [x]
S3 WatAdminSvc;Usluga tehnologije aktivacije operativnog sistema Windows;c:\windows\system32\wat\WatAdminSvc.exe [2012-9-9 1343400]
SUnknown TsUsbFlt;TsUsbFlt; [x]
SUnknown tsusbhub;tsusbhub; [x]
.
=============== Created Last 30 ================
.
2014-01-25 20:04:20 -------- d-----w- C:\FRST
2014-01-25 19:39:37 -------- d-----w- c:\users\zoran\appdata\roaming\RealNetworks
2014-01-25 19:39:11 -------- d-----w- c:\programdata\RealNetworks
2014-01-25 19:39:11 -------- d-----w- c:\program files\RealNetworks
2014-01-25 19:38:47 -------- d-----w- c:\program files\common files\xing shared
2014-01-25 19:38:19 505416 ----a-w- c:\windows\system32\msvcp71.dll
2014-01-25 19:38:19 353864 ----a-w- c:\windows\system32\msvcr71.dll
2014-01-25 19:22:11 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2014-01-25 19:16:32 -------- d-----w- c:\users\zoran\appdata\roaming\Qualys
2014-01-23 20:16:05 -------- d-----w- c:\users\zoran\appdata\roaming\.crossfire
2014-01-23 17:21:11 2349056 ----a-w- c:\windows\system32\win32k.sys
2014-01-23 17:21:07 240576 ----a-w- c:\windows\system32\drivers\netio.sys
2014-01-23 17:20:32 43520 ----a-w- c:\windows\system32\drivers\usbehci.sys
2014-01-23 17:20:32 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2014-01-23 17:20:31 76288 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2014-01-23 17:20:31 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2014-01-23 17:20:31 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2014-01-23 17:20:31 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2014-01-23 17:20:31 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2014-01-21 21:34:30 -------- d-----w- c:\users\zoran\.android
2014-01-21 21:34:24 -------- d-----w- c:\users\zoran\appdata\local\cache
2014-01-21 21:32:46 -------- d-----w- c:\program files\Plus-HD-4.9
2014-01-04 13:49:10 -------- d-----r- c:\users\zoran\Google ????
.
==================== Find3M ====================
.
2013-12-19 01:56:36 4558848 ----a-w- c:\windows\system32\GPhotos.scr
2013-12-17 22:11:26 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2013-12-17 21:40:00 77528 ----a-w- c:\windows\system32\RtNicProp32.dll
2013-12-17 21:40:00 680664 ----a-w- c:\windows\system32\drivers\Rt86win7.sys
2013-12-17 21:40:00 102104 ----a-w- c:\windows\system32\RTNUninst32.dll
2013-12-12 13:32:33 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-12-12 13:32:33 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-12-12 13:32:31 9293192 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe
2013-11-26 09:23:02 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2013-11-26 09:22:11 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2013-11-26 08:53:56 61952 ----a-w- c:\windows\system32\iesetup.dll
2013-11-26 08:52:26 51200 ----a-w- c:\windows\system32\ieetwproxystub.dll
2013-11-26 08:29:55 112128 ----a-w- c:\windows\system32\ieUnatt.exe
2013-11-26 08:29:52 108032 ----a-w- c:\windows\system32\ieetwcollector.exe
2013-11-26 08:28:16 553472 ----a-w- c:\windows\system32\jscript9diag.dll
2013-11-26 08:16:12 4243968 ----a-w- c:\windows\system32\jscript9.dll
2013-11-26 07:32:06 1928192 ----a-w- c:\windows\system32\inetcpl.cpl
2013-11-26 06:33:33 1820160 ----a-w- c:\windows\system32\wininet.dll
2013-11-23 18:26:20 417792 ----a-w- c:\windows\system32\WMPhoto.dll
2013-11-18 16:55:20 243128 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2013-11-12 02:07:29 2048 ----a-w- c:\windows\system32\tzres.dll
2013-10-30 02:19:52 301568 ----a-w- c:\windows\system32\msieftp.dll
.
============= FINISH: 21:34:57,05 ===============

https://www.mycity.rs/must-login.png

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Pozdrav,


Preuzmi Farbar-ov Farbar Recovery Scan Tool () sa ove adrese na Desktop:
Postoji 32bit. i 64bit.-na verzija. Potrebno je preuzeti verziju koja je kompatibilna sa tvojim sistemom.
Ako nisi siguran koja verzija se odnosi na tvoj sistem, preuzmi ih obe i pokreni. Samo jedan od njih će raditi na tvom sistemu, to će biti prava verzija.


dvoklikom pokreni program, kada se alat pokrene klikni Yes na disclaimer prozor;
pričekati koji trenutak dok alat proverava postoji li novija verzija;
klikni na dugme Scan;
po završetku skeniranja, alat će formirati izveštaj (FRST.txt) u isti direktorijum gde je FRST alat sačuvan;
iskopiraj sadržaj FRST.txt izveštaja u poruku;
po prvom pokretanju, alat bi trebao formirati i dodatni izveštaj (Addition.txt);
okači Addition.txt izveštaj uz poruku koristeći opciju Prikači fajl

offline
  • Pridružio: 09 Okt 2010
  • Poruke: 679
  • Gde živiš: Kragujevac

Napisano: 25 Jan 2014 23:35

Problem je, ne znam ni ja tačno kako, rešen.
Elem, čačkao sam nešto oko podešavanja Browsera, ubacivao neke dodatke i sada funkcioniše normalno. Ne znam šta je glavni razlog, ali nije ni bitno, važno je da sada šljaka. Smile

Izgleda da ipak nije do računara, ali me je bunilo to što su i Opera kao i Internet Explorer pokazivali isti problem. Sada ga nema ni tamo.
Tako ti je to kada se ič ne razumem u ove zavrzlame. Smile
Pozdrav.

Dopuna: 25 Jan 2014 23:43

#TwinHeadedEagle
Tek sad videh i tvoju poruku. Ne znam da li ipak da uradim ovo što si mi poslao ili da ne diram ništa?
U svakom slučaju veliko hvala. Ziveli

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Pa ako zelis proveru, ti uradi ovo...

offline
  • Pridružio: 09 Okt 2010
  • Poruke: 679
  • Gde živiš: Kragujevac

Napisano: 26 Jan 2014 0:27

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 25-01-2014 01
Ran by Zoran (administrator) on ZORAN-PC on 25-01-2014 23:40:08
Running from C:\Users\Zoran\Downloads
Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) ===================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgwdsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgfws9.exe
(IObit) C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
() C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
(RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
() C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgemc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgam.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgnsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgcsrvx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgcsrvx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgchsvx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgcsrvx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\Update\realsched.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\avgtray.exe
(MyCity) C:\Program Files\MCShield\MCShieldRTM.exe
(RealNetworks, Inc.) C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12017368 2013-12-17] (Realtek Semiconductor)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM\...\Run: [TkBellExe] - c:\program files\real\realplayer\Update\realsched.exe [296008 2014-01-25] (RealNetworks, Inc.)
HKLM\...\Runonce: [AvgUninstallURL] - cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedb.....er=9.0.914
HKCU\...\Run: [avgui.exe] - C:\Program Files\AVG\AVG9\avgui.exe [4109664 2012-09-10] (AVG Technologies CZ, s.r.o.)
HKCU\...\Run: [avgtray.exe] - C:\Program Files\AVG\AVG9\avgtray.exe [2077536 2012-09-10] (AVG Technologies CZ, s.r.o.)
HKCU\...\Run: [MCShield Monitor] - C:\Program Files\MCShield\mcshieldrtm.exe [607232 2013-02-10] (MyCity)
HKCU\...\Run: [Google+ Auto Backup] - C:\Users\Zoran\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe [3622864 2013-12-18] (Google Inc.)
HKCU\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKCU\...\Policies\Explorer: [NoLogoff] 1
MountPoints2: {055c1f6a-38e0-11e3-b6f9-eb6df76f35e2} - I:\LGAutoRun.exe
MountPoints2: {d31a578a-9574-11e2-9ab9-bb5ce4d239c9} - H:\setup.exe
IFEO\psi.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\psia.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\psi_tray.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\sua.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe
IFEO\uTorrent.exe: [Debugger] C:\Program Files\IObit\Advanced SystemCare 7\AutoReactivator.exe

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?ocid=U218DHP&pc=U218
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA0E5B798B28ECD01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
URLSearchHook: HKCU - (No Name) - {124d001a-bdcb-472f-aa59-bbe7e4bc3204} - No File
URLSearchHook: HKCU - (No Name) - {15BB261B-E6BD-4D21-BA28-5EBD82BD1499} - No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - 5A3D85F35FCF4B9F80966E20DF739545 URL = http://search.yahoo.com/search?fr=chr-greentree_ie.....=800236&p={searchTerms}
SearchScopes: HKCU - {276E022D-8D63-4CDE-A2D2-9475DEC81F5A} URL = http://blekko.com/ws/?source=5f97ddbe&tbp=rbox&u=b.....dbd8383&q={searchTerms}&r=220
BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - CaptureSaver - {5148AB7D-8868-4490-B6DA-F98368488582} - C:\Program Files\CaptureSaver\CaptureSaverIE.dll (www.capturesaver.com)
Toolbar: HKLM - No Name - {15BB261B-E6BD-4D21-BA28-5EBD82BD1499} - No File
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{D07EEE4E-3BF7-455E-AA43-01FE4669AF6C}: [NameServer]8.26.56.26,156.154.70.22

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_43.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=17.0.4.61 - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.7.0 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=1.7.0 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.7.0 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=17.0.4.61 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin: @realnetworks.com/npdlplugin;version=1 - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazon-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pogodakyu.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\vokabular.xml
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2014-01-25]
FF HKLM\...\Firefox\Extensions: [{10E4285F-D79B-4147-9447-81DFF109A394}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ []
FF HKCU\...\Firefox\Extensions: [CaptureSaver@goldgingko.com] - C:\Program Files\CaptureSaver\Firefox
FF Extension: No Name - C:\Program Files\CaptureSaver\Firefox [2013-03-19]

Chrome:
=======
CHR HomePage:
CHR Extension: (Entanglement Web App) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\aciahcmjmecflokailenpkdchphgkefd [2014-01-25]
CHR Extension: (Angry Birds) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2014-01-25]
CHR Extension: (Dr.Web Anti-Virus Link Checker) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\aleggpabliehgbeagmfhnodcijcmbonb [2014-01-25]
CHR Extension: (TV) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\beobeededemalmllhkmnkinmfembdimh [2014-01-25]
CHR Extension: (Turn Off the Lights) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2014-01-25]
CHR Extension: (100,000 Books - Wattpad) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgbiianmgbopnpohjfbkmdjmmdlndjfj [2014-01-25]
CHR Extension: (WOT) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2014-01-25]
CHR Extension: (The Latest Versions of Google Chrome) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\bibclkcoilbnbnppanidhimphmfbjaab [2014-01-25]
CHR Extension: (Поол) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\cedbddnnmhgnedpamoenmdkhnpnfbpjb [2014-01-25]
CHR Extension: (Adblock Plus) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-25]
CHR Extension: (Facebook Customizer (by Adblock Plus)) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm [2014-01-25]
CHR Extension: (*Split Screen*) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\eachfleknamlcepmplpdghagngjfjkin [2014-01-25]
CHR Extension: (Search All) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\eekjldapjblgadclklmgolijbagmdnfk [2014-01-25]
CHR Extension: (Google календар) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-01-25]
CHR Extension: (Box - 10GB of FREE storage) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl [2014-01-25]
CHR Extension: (Photo Zoom for Facebook) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi [2014-01-25]
CHR Extension: (DoNotTrackMe: Online Privacy Protection) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\epanfjkfahimkgomnigadpkobaefekcd [2014-01-25]
CHR Extension: (AVG Do Not Track) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\epojjbofkhffmihobdncmbhdocjljhpi [2014-01-25]
CHR Extension: (IQTELL) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmdccnpaoemhnnmekglmjlpeeochillh [2014-01-25]
CHR Extension: (AdBlock Premium) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2014-01-25]
CHR Extension: (AdBlock) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-01-25]
CHR Extension: (PDF Mergy) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgecghmkcdefnknohcimkoemhaofpoha [2014-01-25]
CHR Extension: (Задржи моја онемогућавања) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhnjdplhmcnkiecampfdgfjilccfpfoe [2014-01-25]
CHR Extension: (Спеед Тест) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlhbmnfdcklajeaeikfinieljfegamko [2014-01-25]
CHR Extension: (Pixlr Editor) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmaknaampgiegkcjlimdiidlhopknpk [2014-01-25]
CHR Extension: (RealPlayer Downloader) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2014-01-25]
CHR Extension: (Yahoo Mail Checker) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijbgodfidfimmjgeapafonbdkkkndpmp [2014-01-25]
CHR Extension: (Clearly) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj [2014-01-25]
CHR Extension: (Hotmail Checker) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkkhlmcnbdhoddgjhlgikcpmigdmlcmd [2014-01-25]
CHR Extension: (ИП адреса) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpnjjlbngpejmmhgcaagljaomgnginml [2014-01-25]
CHR Extension: (Siege Hero – Viking Vengeance) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfomhlbnciicmciejodphlggfbmhbbbo [2014-01-25]
CHR Extension: (Adblock Super) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\knebimhcckndhiglamoabbnifdkijidd [2014-01-25]
CHR Extension: (Wave Accounting) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\knpkfcpnjfbniadmfchjpcigfhookhaa [2014-01-25]
CHR Extension: (Evernote Web) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2014-01-25]
CHR Extension: (Internet Radio) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\lecjjjoofipmkgmmapgnedcnpkaaeikp [2014-01-25]
CHR Extension: (Secure Bookmarks) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\leocjgngiajhfiikjolfhcpiokgbinep [2014-01-25]
CHR Extension: (Numerics Calculator & Converter) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\liglcienpnkhdajdfmnpbgmpjglonipe [2014-01-25]
CHR Extension: (Poppit) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcbkbpnkkkipelfledbfocopglifcfmi [2014-01-25]
CHR Extension: (Google провера поште) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-01-25]
CHR Extension: (Сат) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjocghlclkpgheifflemilcnblodjohg [2014-01-25]
CHR Extension: (Ghostery) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2014-01-25]
CHR Extension: (Google Play Books) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmimngoggfoobjdlefbcabngfnmieonb [2014-01-25]
CHR Extension: (Similar Sites) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\necpbmbhhdiplmfhmjicabdeighkndkn [2014-01-25]
CHR Extension: (Google новчаник) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-25]
CHR Extension: (Adblock Pro) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2014-01-25]
CHR Extension: (Picasa) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\onlgmecjpnejhfeofkgbfgnmdlipdejb [2014-01-25]
CHR Extension: (Click&Clean App) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2014-01-25]
CHR Extension: (Psykopaint) - C:\Users\Zoran\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgjchkcfmigkkhedgjedmffdepgmpfil [2014-01-25]
CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-12-14]

========================== Services (Whitelisted) =================

S3 AVG Security Toolbar Service; C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe [167264 2011-11-10] ()
R2 avg9emc; C:\Program Files\AVG\AVG9\avgemc.exe [921952 2012-09-09] (AVG Technologies CZ, s.r.o.)
R2 avg9wd; C:\Program Files\AVG\AVG9\avgwdsvc.exe [308136 2012-09-10] (AVG Technologies CZ, s.r.o.)
R2 avgfws9; C:\Program Files\AVG\AVG9\avgfws9.exe [2331544 2012-09-09] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe [5897808 2012-09-09] (AVG Technologies CZ, s.r.o.)
S3 EaseUS Agent; C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe [61064 2011-12-22] (CHENGDU YIWO Tech Development Co., Ltd)
S3 Guard Agent; C:\Program Files\EaseUS\Todo Backup\bin\GuardAgent.exe [23176 2011-12-22] (CHENGDU YIWO Tech Development Co., Ltd)
R2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-10-25] (IObit)
R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-12-14] ()
R2 RealPlayer Cloud Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [1141336 2014-01-25] (RealNetworks, Inc.)
R2 RealPlayerUpdateSvc; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [23552 2013-12-16] ()
S3 SystemExplorerHelpService; C:\Program Files\System Explorer\service\SystemExplorerService.exe [536208 2012-03-01] (Mister Group)
S3 VideoAcceleratorService;

==================== Drivers (Whitelisted) ====================

S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag.sys [23040 2012-07-03] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem.sys [27776 2012-07-03] (LG Electronics Inc.)
S3 andnetndis; C:\Windows\System32\DRIVERS\lgandnetndis.sys [73728 2012-07-04] (LG Electronics Inc.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6x.sys [24856 2012-09-09] (AVG Technologies CZ, s.r.o.)
R3 AVGIDSDriverw7x; C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_WIN7\AVGIDSDriver.sys [122448 2012-09-09] (AVG Technologies CZ, s.r.o. )
R0 AVGIDSErHrw7x; C:\Windows\System32\Drivers\AVGIDSwx.sys [25168 2012-09-09] (AVG Technologies CZ, s.r.o. )
R3 AVGIDSFilterw7x; C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_WIN7\AVGIDSFilter.sys [30288 2012-09-09] (AVG Technologies CZ, s.r.o. )
R3 AVGIDSShimw7x; C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_WIN7\AVGIDSShim.sys [20560 2012-09-09] (AVG Technologies CZ, s.r.o. )
R1 AvgLdx86; C:\Windows\System32\Drivers\avgldx86.sys [226016 2013-01-16] (AVG Technologies CZ, s.r.o.)
R1 AvgMfx86; C:\Windows\System32\Drivers\avgmfx86.sys [29712 2012-09-09] (AVG Technologies CZ, s.r.o.)
R0 AvgRkx86; C:\Windows\System32\Drivers\avgrkx86.sys [52872 2012-09-09] (AVG Technologies CZ, s.r.o.)
R1 AvgTdiX; C:\Windows\System32\Drivers\avgtdix.sys [243152 2012-09-09] (AVG Technologies CZ, s.r.o.)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2013-11-18] (Disc Soft Ltd)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [14920 2012-12-21] ()
R0 EUBAKUP; C:\Windows\System32\drivers\eubakup.sys [50312 2011-12-22] (CHENGDU YIWO Tech Development Co., Ltd)
R0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [44680 2011-12-22] ()
R1 EUDSKACS; C:\Windows\system32\drivers\eudskacs.sys [17032 2011-12-22] (CHENGDU YIWO Tech Development Co., Ltd)
R1 EUFDDISK; C:\Windows\system32\drivers\EuFdDisk.sys [187016 2011-12-22] (CHENGDU YIWO Tech Development Co., Ltd)
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9160 2012-12-21] ()
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [21104 2012-12-14] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\mbamswissarmy.sys [40776 2013-12-17] (Malwarebytes Corporation)
R1 networx; C:\Windows\System32\drivers\networx.sys [52728 2012-11-26] (NetFilterSDK.com)
S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [15576 2012-08-20] ()
S3 pwdspio; C:\Windows\system32\pwdspio.sys [10200 2012-08-20] ()
S3 RRNetCap; C:\Windows\System32\DRIVERS\rrnetcap.sys [31848 2013-02-05] (RapidSolution Software AG)
R3 RRNetCapMP; C:\Windows\System32\DRIVERS\rrnetcap.sys [31848 2013-02-05] (RapidSolution Software AG)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [15672 2013-05-22] ()
R3 tbhsd; C:\Windows\System32\drivers\tbhsd.sys [39048 2013-02-05] (RapidSolution Software AG)
R1 VD_FileDisk; C:\Windows\System32\Drivers\VD_FileDisk.sys [15872 2006-01-13] (Flint Incorporation)
U3 DfSdkS;
S3 rootrepeal; No ImagePath
S3 VGPU; System32\drivers\rdvgkmd.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-25 23:39 - 2014-01-25 23:39 - 01222144 _____ (Farbar) C:\Users\Zoran\Downloads\FRST.exe
2014-01-25 23:00 - 2014-01-25 23:00 - 00000056 _____ C:\Windows\setupact.log
2014-01-25 23:00 - 2014-01-25 23:00 - 00000000 _____ C:\Windows\setuperr.log
2014-01-25 21:08 - 2014-01-25 21:35 - 00015199 _____ C:\Users\Zoran\Desktop\attach.txt
2014-01-25 21:08 - 2014-01-25 21:34 - 00018658 _____ C:\Users\Zoran\Desktop\dds.txt
2014-01-25 21:05 - 2014-01-25 21:06 - 00688992 ____R (Swearware) C:\Users\Zoran\Downloads\dds.scr
2014-01-25 21:05 - 2014-01-25 21:05 - 00027604 _____ C:\Users\Zoran\Downloads\Addition.txt
2014-01-25 21:04 - 2014-01-25 23:40 - 00024843 _____ C:\Users\Zoran\Downloads\FRST.txt
2014-01-25 21:04 - 2014-01-25 21:04 - 00000000 ____D C:\FRST
2014-01-25 20:57 - 2014-01-25 20:57 - 00004393 _____ C:\DelFix.txt
2014-01-25 20:47 - 2014-01-25 20:47 - 01236282 ____N C:\Users\Zoran\Downloads\adwcleaner.exe
2014-01-25 20:39 - 2014-01-25 20:39 - 00001016 _____ C:\Users\Public\Desktop\RealPlayer Cloud.lnk
2014-01-25 20:39 - 2014-01-25 20:39 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\RealNetworks
2014-01-25 20:39 - 2014-01-25 20:39 - 00000000 ____D C:\ProgramData\RealNetworks
2014-01-25 20:39 - 2014-01-25 20:39 - 00000000 ____D C:\Program Files\RealNetworks
2014-01-25 20:38 - 2014-01-25 20:38 - 00505416 _____ (Microsoft Corporation) C:\Windows\system32\msvcp71.dll
2014-01-25 20:38 - 2014-01-25 20:38 - 00353864 _____ (Microsoft Corporation) C:\Windows\system32\msvcr71.dll
2014-01-25 20:38 - 2014-01-25 20:38 - 00201800 _____ (RealNetworks, Inc.) C:\Windows\system32\rmoc3260.dll
2014-01-25 20:38 - 2014-01-25 20:38 - 00000000 ____D C:\Program Files\Common Files\xing shared
2014-01-25 20:32 - 2014-01-25 20:32 - 00870096 _____ (RealNetworks, Inc.) C:\Users\Zoran\Downloads\RealPlayerCloud.exe
2014-01-25 20:32 - 2014-01-25 20:32 - 00000988 _____ C:\Users\Public\Desktop\VLC media player.lnk
2014-01-25 20:29 - 2014-01-25 20:31 - 24097311 _____ C:\Users\Zoran\Downloads\vlc-2.1.2-win32.exe
2014-01-25 20:28 - 2014-01-25 20:28 - 00001775 _____ C:\Users\Public\Desktop\QuickTime Player.lnk
2014-01-25 20:27 - 2014-01-25 20:27 - 00000000 ____D C:\Program Files\Common Files\Apple
2014-01-25 20:27 - 2014-01-25 20:27 - 00000000 ____D C:\Program Files\Apple Software Update
2014-01-25 20:22 - 2014-01-25 20:27 - 41404760 _____ (Apple Inc.) C:\Users\Zoran\Downloads\QuickTimeInstaller.exe
2014-01-25 20:22 - 2014-01-25 20:22 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-01-25 20:22 - 2014-01-25 20:22 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-01-25 20:22 - 2014-01-25 20:22 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-01-25 20:22 - 2014-01-25 20:22 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-01-25 20:22 - 2014-01-25 20:22 - 00000000 ____D C:\Program Files\Common Files\Java
2014-01-25 20:19 - 2014-01-25 20:19 - 00921000 _____ (Oracle Corporation) C:\Users\Zoran\Downloads\chromeinstall-7u51.exe
2014-01-25 20:18 - 2014-01-25 20:18 - 00005163 _____ C:\Windows\system32\jupdate-1.7.0_51-b13.log
2014-01-25 20:16 - 2014-01-25 20:16 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\Qualys
2014-01-25 20:00 - 2014-01-25 20:00 - 00002167 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-25 19:58 - 2014-01-25 23:09 - 00000884 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-25 19:58 - 2014-01-25 23:00 - 00000880 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-23 21:16 - 2014-01-23 21:16 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\.crossfire
2014-01-23 18:21 - 2013-11-26 12:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-23 18:21 - 2013-11-26 11:10 - 02349056 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-23 18:20 - 2013-11-27 02:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-23 18:20 - 2013-11-27 02:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-23 18:20 - 2013-11-27 02:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-23 18:20 - 2013-11-27 02:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-23 18:20 - 2013-11-27 02:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-23 18:20 - 2013-11-27 02:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-23 18:20 - 2013-11-27 02:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-21 22:34 - 2014-01-23 18:05 - 00000420 _____ C:\Users\Zoran\daemonprocess.txt
2014-01-21 22:34 - 2014-01-21 22:34 - 00000000 ____D C:\Users\Zoran\AppData\Local\cache
2014-01-21 22:34 - 2014-01-21 22:34 - 00000000 ____D C:\Users\Zoran\.android
2014-01-21 22:32 - 2014-01-25 20:58 - 00000000 ____D C:\Program Files\Plus-HD-4.9
2014-01-15 23:39 - 2014-01-15 23:39 - 00000000 ____D C:\Users\Public\Recorded TV
2014-01-04 14:49 - 2014-01-25 16:24 - 00000000 ___RD C:\Users\Zoran\Google диск

==================== One Month Modified Files and Folders =======

2014-01-26 01:32 - 2013-12-20 21:26 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup
2014-01-26 01:32 - 2013-01-23 21:08 - 00000000 ____D C:\Program Files\Common Files\Adobe
2014-01-26 01:32 - 2013-01-16 22:32 - 00000000 ____D C:\Program Files\MCShield
2014-01-26 01:32 - 2012-12-07 18:05 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\vlc
2014-01-26 01:32 - 2012-10-22 17:08 - 00000000 ____D C:\Windows\MiniDump
2014-01-26 01:32 - 2012-09-16 13:15 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\AIMP3
2014-01-26 01:32 - 2012-09-16 13:15 - 00000000 ____D C:\Program Files\AIMP3
2014-01-26 01:32 - 2012-09-10 17:34 - 00000000 ____D C:\ProgramData\IObit
2014-01-26 01:32 - 2012-09-10 17:21 - 00000000 ____D C:\Program Files\CCleaner
2014-01-26 01:32 - 2012-09-09 19:07 - 00000000 ____D C:\Program Files\TC UP
2014-01-26 01:32 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\wfp
2014-01-26 01:32 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\registration
2014-01-26 01:31 - 2012-09-12 22:12 - 00000000 ___RD C:\Users\Public
2014-01-25 23:40 - 2014-01-25 21:04 - 00024843 _____ C:\Users\Zoran\Downloads\FRST.txt
2014-01-25 23:39 - 2014-01-25 23:39 - 01222144 _____ (Farbar) C:\Users\Zoran\Downloads\FRST.exe
2014-01-25 23:32 - 2012-09-13 16:05 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-25 23:32 - 2012-09-09 21:15 - 00000000 ____D C:\Windows\system32\Drivers\Avg
2014-01-25 23:09 - 2014-01-25 19:58 - 00000884 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-25 23:01 - 2013-01-16 22:32 - 00000000 ____D C:\ProgramData\MCShield
2014-01-25 23:00 - 2014-01-25 23:00 - 00000056 _____ C:\Windows\setupact.log
2014-01-25 23:00 - 2014-01-25 23:00 - 00000000 _____ C:\Windows\setuperr.log
2014-01-25 23:00 - 2014-01-25 19:58 - 00000880 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-25 23:00 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-25 22:59 - 2013-12-18 09:52 - 00915204 _____ C:\Windows\WindowsUpdate.log
2014-01-25 22:57 - 2012-09-10 23:19 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-01-25 22:57 - 2012-09-09 18:59 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-01-25 22:56 - 2012-09-12 21:29 - 00000000 ____D C:\Users\Zoran\AppData\Local\Adobe
2014-01-25 21:35 - 2014-01-25 21:08 - 00015199 _____ C:\Users\Zoran\Desktop\attach.txt
2014-01-25 21:34 - 2014-01-25 21:08 - 00018658 _____ C:\Users\Zoran\Desktop\dds.txt
2014-01-25 21:06 - 2014-01-25 21:05 - 00688992 ____R (Swearware) C:\Users\Zoran\Downloads\dds.scr
2014-01-25 21:05 - 2014-01-25 21:05 - 00027604 _____ C:\Users\Zoran\Downloads\Addition.txt
2014-01-25 21:04 - 2014-01-25 21:04 - 00000000 ____D C:\FRST
2014-01-25 21:00 - 2012-09-13 16:35 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\Apple Computer
2014-01-25 20:58 - 2014-01-21 22:32 - 00000000 ____D C:\Program Files\Plus-HD-4.9
2014-01-25 20:57 - 2014-01-25 20:57 - 00004393 _____ C:\DelFix.txt
2014-01-25 20:47 - 2014-01-25 20:47 - 01236282 ____N C:\Users\Zoran\Downloads\adwcleaner.exe
2014-01-25 20:39 - 2014-01-25 20:39 - 00001016 _____ C:\Users\Public\Desktop\RealPlayer Cloud.lnk
2014-01-25 20:39 - 2014-01-25 20:39 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\RealNetworks
2014-01-25 20:39 - 2014-01-25 20:39 - 00000000 ____D C:\ProgramData\RealNetworks
2014-01-25 20:39 - 2014-01-25 20:39 - 00000000 ____D C:\Program Files\RealNetworks
2014-01-25 20:39 - 2012-09-16 13:18 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\Real
2014-01-25 20:39 - 2012-09-16 13:18 - 00000000 ____D C:\Program Files\Real
2014-01-25 20:38 - 2014-01-25 20:38 - 00505416 _____ (Microsoft Corporation) C:\Windows\system32\msvcp71.dll
2014-01-25 20:38 - 2014-01-25 20:38 - 00353864 _____ (Microsoft Corporation) C:\Windows\system32\msvcr71.dll
2014-01-25 20:38 - 2014-01-25 20:38 - 00201800 _____ (RealNetworks, Inc.) C:\Windows\system32\rmoc3260.dll
2014-01-25 20:38 - 2014-01-25 20:38 - 00000000 ____D C:\Program Files\Common Files\xing shared
2014-01-25 20:38 - 2013-02-08 16:59 - 00278600 _____ (Progressive Networks) C:\Windows\system32\pncrt.dll
2014-01-25 20:38 - 2012-09-11 14:11 - 00000000 ____D C:\ProgramData\Real
2014-01-25 20:32 - 2014-01-25 20:32 - 00870096 _____ (RealNetworks, Inc.) C:\Users\Zoran\Downloads\RealPlayerCloud.exe
2014-01-25 20:32 - 2014-01-25 20:32 - 00000988 _____ C:\Users\Public\Desktop\VLC media player.lnk
2014-01-25 20:31 - 2014-01-25 20:29 - 24097311 _____ C:\Users\Zoran\Downloads\vlc-2.1.2-win32.exe
2014-01-25 20:28 - 2014-01-25 20:28 - 00001775 _____ C:\Users\Public\Desktop\QuickTime Player.lnk
2014-01-25 20:28 - 2013-01-14 18:38 - 00000000 ____D C:\Program Files\QuickTime
2014-01-25 20:27 - 2014-01-25 20:27 - 00000000 ____D C:\Program Files\Common Files\Apple
2014-01-25 20:27 - 2014-01-25 20:27 - 00000000 ____D C:\Program Files\Apple Software Update
2014-01-25 20:27 - 2014-01-25 20:22 - 41404760 _____ (Apple Inc.) C:\Users\Zoran\Downloads\QuickTimeInstaller.exe
2014-01-25 20:22 - 2014-01-25 20:22 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-01-25 20:22 - 2014-01-25 20:22 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-01-25 20:22 - 2014-01-25 20:22 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-01-25 20:22 - 2014-01-25 20:22 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2014-01-25 20:22 - 2014-01-25 20:22 - 00000000 ____D C:\Program Files\Common Files\Java
2014-01-25 20:22 - 2013-10-16 15:28 - 00000000 ____D C:\ProgramData\Oracle
2014-01-25 20:19 - 2014-01-25 20:19 - 00921000 _____ (Oracle Corporation) C:\Users\Zoran\Downloads\chromeinstall-7u51.exe
2014-01-25 20:18 - 2014-01-25 20:18 - 00005163 _____ C:\Windows\system32\jupdate-1.7.0_51-b13.log
2014-01-25 20:18 - 2012-09-09 21:08 - 00000000 ____D C:\Program Files\Java
2014-01-25 20:16 - 2014-01-25 20:16 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\Qualys
2014-01-25 20:00 - 2014-01-25 20:00 - 00002167 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-25 20:00 - 2012-09-09 19:18 - 00000000 ____D C:\Users\Zoran\AppData\Local\Google
2014-01-25 20:00 - 2012-09-09 19:18 - 00000000 ____D C:\Program Files\Google
2014-01-25 19:58 - 2012-09-09 19:38 - 00000000 ____D C:\Users\Zoran\AppData\Local\Deployment
2014-01-25 19:09 - 2012-09-14 20:51 - 00000000 ____D C:\Program Files\Wise
2014-01-25 19:03 - 2012-09-10 23:45 - 00000000 ____D C:\Program Files\VITSOFT
2014-01-25 19:02 - 2012-09-10 17:34 - 00000000 ____D C:\Program Files\IObit
2014-01-25 18:56 - 2012-11-25 23:45 - 00000000 ____D C:\Program Files\Secunia
2014-01-25 18:52 - 2013-02-02 11:31 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2014-01-25 18:50 - 2012-10-29 17:58 - 00000000 ____D C:\Program Files\Registry Washer
2014-01-25 18:45 - 2013-03-15 21:18 - 00000000 ____D C:\Program Files\MunSoft
2014-01-25 18:42 - 2013-01-24 18:54 - 00000000 ____D C:\Program Files\BlueSprig
2014-01-25 18:34 - 2012-09-10 21:19 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\GlarySoft
2014-01-25 18:32 - 2013-04-26 17:16 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\DVDVideoSoft
2014-01-25 18:28 - 2013-03-25 19:46 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\DAEMON Tools Lite
2014-01-25 18:28 - 2013-03-25 19:45 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2014-01-25 16:33 - 2012-09-09 18:29 - 00000000 ____D C:\Users\Zoran
2014-01-25 16:24 - 2014-01-04 14:49 - 00000000 ___RD C:\Users\Zoran\Google диск
2014-01-25 16:22 - 2012-09-09 19:21 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\Mozilla
2014-01-25 15:07 - 2013-01-16 22:32 - 00001010 _____ C:\Users\Public\Desktop\MCShield Real-Time Monitor.lnk
2014-01-24 17:33 - 2010-11-20 22:01 - 00778834 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-24 17:25 - 2009-07-14 05:33 - 00409120 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-23 21:32 - 2013-08-14 22:43 - 00000000 ____D C:\Windows\system32\MRT
2014-01-23 21:29 - 2013-02-25 17:00 - 83425928 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-23 21:16 - 2014-01-23 21:16 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\.crossfire
2014-01-23 18:25 - 2012-12-14 18:56 - 00000000 ____D C:\Program Files\Mozilla Firefox
2014-01-23 18:05 - 2014-01-21 22:34 - 00000420 _____ C:\Users\Zoran\daemonprocess.txt
2014-01-21 22:38 - 2009-07-14 05:34 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-21 22:38 - 2009-07-14 05:34 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-21 22:34 - 2014-01-21 22:34 - 00000000 ____D C:\Users\Zoran\AppData\Local\cache
2014-01-21 22:34 - 2014-01-21 22:34 - 00000000 ____D C:\Users\Zoran\.android
2014-01-15 23:39 - 2014-01-15 23:39 - 00000000 ____D C:\Users\Public\Recorded TV
2014-01-13 17:18 - 2012-09-09 19:19 - 00000000 ____D C:\Users\Zoran\AppData\Roaming\uTorrent
2014-01-03 22:39 - 2012-09-09 22:49 - 00000000 ____D C:\Users\Zoran\AppData\Local\Mozilla
2014-01-03 17:50 - 2013-08-24 19:03 - 00000182 _____ C:\Users\Zoran\AppData\Roaming\Safer-Networking.log

Some content of TEMP:
====================
C:\Users\Zoran\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2012-10-16 16:10

==================== End Of Log ============================
https://www.mycity.rs/must-login.png

Dopuna: 26 Jan 2014 12:23

Ipak sam pogrešio. Opera i Internet Explorer i dalje imaju onaj problem, sinoć sam, u trenuku, pomislio da se to rešilo. Tako da je verovatno jedan od dodataka sprečio problem na Chrome. Ono što znam to je da nije AdBlock pošto sam njih i ranije koristio.
I još jedan problem sam pronašao. Naime, opet da uzmem MyCity za primer, neće da pokaže video fajlove, i to ne samo ovde nego i na ostalim sajtovima kada treba da se pogleda neki video fajl, a kada odem direktno na Youtube onda je sve u redu. Tako nekako.

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:
HKCU\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKCU\...\Policies\Explorer: [NoLogoff] 1
MountPoints2: {055c1f6a-38e0-11e3-b6f9-eb6df76f35e2} - I:\LGAutoRun.exe
MountPoints2: {d31a578a-9574-11e2-9ab9-bb5ce4d239c9} - H:\setup.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - 5A3D85F35FCF4B9F80966E20DF739545 URL = http://search.yahoo.com/search?fr=chr-greentree_ie.....=800236&p={searchTerms}
SearchScopes: HKCU - {276E022D-8D63-4CDE-A2D2-9475DEC81F5A} URL = http://blekko.com/ws/?source=5f97ddbe&tbp=rbox&u=b.....dbd8383&q={searchTerms}&r=220
AlternateDataStreams: C:\ProgramData\TEMP:E36FE0BB
cmd: ipconfig /flushdns

2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.



Zatim



Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Scan] i pricekaj da program zavrsi.
Klikni na dugme [Clean]
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S1].txt

offline
  • Pridružio: 09 Okt 2010
  • Poruke: 679
  • Gde živiš: Kragujevac

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 25-01-2014 01
Ran by Zoran at 2014-01-26 12:37:59 Run:1
Running from C:\Users\Zoran\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
HKCU\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKCU\...\Policies\Explorer: [NoLogoff] 1
MountPoints2: {055c1f6a-38e0-11e3-b6f9-eb6df76f35e2} - I:\LGAutoRun.exe
MountPoints2: {d31a578a-9574-11e2-9ab9-bb5ce4d239c9} - H:\setup.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - 5A3D85F35FCF4B9F80966E20DF739545 URL = http://search.yahoo.com/search?fr=chr-greentree_ie.....=800236&p={searchTerms}
SearchScopes: HKCU - {276E022D-8D63-4CDE-A2D2-9475DEC81F5A} URL = http://blekko.com/ws/?source=5f97ddbe&tbp=rbox&u=b.....dbd8383&q={searchTerms}&r=220
AlternateDataStreams: C:\ProgramData\TEMP:E36FE0BB
cmd: ipconfig /flushdns
*****************

HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoLowDiskSpaceChecks => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoLogoff => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{055c1f6a-38e0-11e3-b6f9-eb6df76f35e2} => Key deleted successfully.
HKCR\CLSID\{055c1f6a-38e0-11e3-b6f9-eb6df76f35e2} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d31a578a-9574-11e2-9ab9-bb5ce4d239c9} => Key deleted successfully.
HKCR\CLSID\{d31a578a-9574-11e2-9ab9-bb5ce4d239c9} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\5A3D85F35FCF4B9F80966E20DF739545 => Key deleted successfully.
HKCR\Wow6432Node\CLSID\5A3D85F35FCF4B9F80966E20DF739545 => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{276E022D-8D63-4CDE-A2D2-9475DEC81F5A} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{276E022D-8D63-4CDE-A2D2-9475DEC81F5A} => Key not found.
C:\ProgramData\TEMP => ":E36FE0BB" ADS removed successfully.

========= ipconfig /flushdns =========


Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========


==== End of Fixlog ====
https://www.mycity.rs/must-login.png

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Kazi mi kakvo je sada stanje?

offline
  • Pridružio: 09 Okt 2010
  • Poruke: 679
  • Gde živiš: Kragujevac

I dalje ne mogu pristupiti video fajlovima sa nekog sajta. Tamo gde bi trebalo da budu je potpuna praznina.
Opera i Internet Explorer još uvek imaju onaj prvobitni problem.

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

To sto ne mozes da vidis video fajlove ne znaci bas nista. Mozda nije apdejtovan softver na tim sajtovima i slicno, tu ja ne mogu da ti pomognem.

Nejasan mi je tvoj problem, za Operu ne znam, nisam u dodiru sa tim pretrazivacem, ali probaj da resetujes podesavanja --> http://www.computerstepbystep.com/windows_7_opera.html

Za Internet Explorer takodje ne vidim nista sporno. Kada je instaliran ovaj Real Player, mozda da obrises njegove komponente, moguce da imaju neki vid agresivnog reklamiranja.

Da izvrsimo dodatnu proveru:



Preuzmi aswMBR i sacuvaj ga na Desktop.

Dvoklikom pokreni aswMBR.

Ukoliko dobijes sledecu poruku:
Would you like to download latest Avast! virus definitions?
Klikni na dugme Yes i pricekaj da se proces preuzimanja definicija zavrsi.


Proveri da je pod AV Scan: izabrana opcija QuickScan

Klikni na Scan.

Kada zavrsi skeniranje ( Scan finished successfully ) klikni Save log.
Sacuvaj aswMBR log na Desktop.
Sadrzaj tog loga iskopiraj u temi.




Zatim, ponovo pokreni FRST i dostavi svez izvestaj.

Ko je trenutno na forumu
 

Ukupno su 1148 korisnika na forumu :: 50 registrovanih, 6 sakrivenih i 1092 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., amaterSRB, Areal84, babaroga, Ben Roj, Bobrock1, crnitrn, dankisha, deLacy, delrey, DPera, draganca, dushan, FileFinder, FOX, galerija, goxin, Grah0, HrcAk47, ILGromovnik, Karla, kjkszpj, Koridor 11, ladro, Lieutenant, madza, Marko Marković, Metanoja, MrNo, ObelixSRB, Parker, pein, rasok, rodoljub, S1Mk3, Sirius, slonic_tonic, Srle993, Steeeefan, stegonosa, styg, Tores, Trpe Grozni, Valter071, vladulns, W123, wizzardone, wolf431, ZetaMan, 79693