Poslao: 11 Apr 2021 14:44
|
offline
- Pridružio: 01 Nov 2011
- Poruke: 89
|
Fix result of Farbar Recovery Scan Tool (x64) Version: 10-04-2021
Ran by Bojan (11-04-2021 15:42:33) Run:1
Running from C:\Users\Bojan\Desktop
Loaded Profiles: Bojan
Boot Mode: Normal
==============================================
fixlist content:
*****************
CreateRestorePoint:
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
Task: {8C200A54-6734-4960-886C-92F11E2F5C6A} - System32\Tasks\Firefox Default Browser Agent 3D4D5FCD8C06D67C => C:\Users\Bojan\AppData\Roaming\hahchfg.exe <==== ATTENTION
C:\Users\Bojan\AppData\Roaming\hahchfg.exe
C:\ProgramData\7210982.exe
C:\ProgramData\6710493.exe
C:\ProgramData\4484019.exe
C:\ProgramData\B29WDJHRPDAYVGMC3RYZM8I9E
C:\Program Files (x86)\94c45254-6d52-40cc-93fb-b69707383880
C:\Users\Bojan\AppData\Roaming\sPiAfuTGyyVOZKeaLf
C:\Users\Bojan\AppData\Roaming\llYHlSDJxbwekicZbE
C:\ProgramData\8498436.exe
C:\ProgramData\7154134.exe
C:\ProgramData\6683346.exe
C:\ProgramData\6555884.exe
C:\ProgramData\5428148.exe
C:\ProgramData\4427171.exe
C:\ProgramData\3828921.exe
C:\ProgramData\3171973.exe
C:\ProgramData\2973137.exe
C:\ProgramData\2472649.exe
C:\ProgramData\ZKISUAGEUH2YIKE7NNVZKXX9U
C:\ProgramData\FANIT80PXSYYDJ093DOCD490P
C:\ProgramData\F7OOZ3G9MDZEUVINQ56P783P2
C:\Users\Bojan\Documents\VlcpVideoV1.0.1
C:\Users\Bojan\AppData\Roaming\Mxmetamux
C:\Users\Bojan\AppData\Roaming\Programma configurater
*****************
Restore point was successfully created.
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8C200A54-6734-4960-886C-92F11E2F5C6A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8C200A54-6734-4960-886C-92F11E2F5C6A}" => removed successfully
C:\WINDOWS\System32\Tasks\Firefox Default Browser Agent 3D4D5FCD8C06D67C => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Firefox Default Browser Agent 3D4D5FCD8C06D67C" => removed successfully
"C:\Users\Bojan\AppData\Roaming\hahchfg.exe" => not found
C:\ProgramData\7210982.exe => moved successfully
C:\ProgramData\6710493.exe => moved successfully
C:\ProgramData\4484019.exe => moved successfully
C:\ProgramData\B29WDJHRPDAYVGMC3RYZM8I9E => moved successfully
C:\Program Files (x86)\94c45254-6d52-40cc-93fb-b69707383880 => moved successfully
C:\Users\Bojan\AppData\Roaming\sPiAfuTGyyVOZKeaLf => moved successfully
C:\Users\Bojan\AppData\Roaming\llYHlSDJxbwekicZbE => moved successfully
C:\ProgramData\8498436.exe => moved successfully
C:\ProgramData\7154134.exe => moved successfully
C:\ProgramData\6683346.exe => moved successfully
C:\ProgramData\6555884.exe => moved successfully
C:\ProgramData\5428148.exe => moved successfully
C:\ProgramData\4427171.exe => moved successfully
C:\ProgramData\3828921.exe => moved successfully
C:\ProgramData\3171973.exe => moved successfully
C:\ProgramData\2973137.exe => moved successfully
C:\ProgramData\2472649.exe => moved successfully
C:\ProgramData\ZKISUAGEUH2YIKE7NNVZKXX9U => moved successfully
C:\ProgramData\FANIT80PXSYYDJ093DOCD490P => moved successfully
C:\ProgramData\F7OOZ3G9MDZEUVINQ56P783P2 => moved successfully
C:\Users\Bojan\Documents\VlcpVideoV1.0.1 => moved successfully
C:\Users\Bojan\AppData\Roaming\Mxmetamux => moved successfully
C:\Users\Bojan\AppData\Roaming\Programma configurater => moved successfully
The system needed a reboot.
==== End of Fixlog 15:42:40 ====
|
|
|
|
|
Poslao: 11 Apr 2021 16:52
|
offline
- Pridružio: 01 Nov 2011
- Poruke: 89
|
Pa nemam pojma, za sada je sve dobro, ali vidim na instagramu npr da sam kao objavio neku fotografiju reklamu koju ne mogu da izbrišem, niti sam je ja postavio :S
Ovako to izgleda i objavljeno je danas pre 4h
|
|
|
|
Poslao: 11 Apr 2021 19:44
|
offline
- helen1
- Anti Malware Fighter
Rank 2
- Pridružio: 27 Avg 2005
- Poruke: 8616
- Gde živiš: Novi Beograd
|
I ovo se uputstvo malo ne slaze, ali ces se snaci.
Preuzmi AdwCleaner i sačuvaj ga na Desktop
Dvoklikom pokreni program.
U EULA prozoru klikni na I agree.
Klikni na dugme Scan i sačekaj da se završi skeniranje.
Klikni na dugme Quarantine i pričekaj da program završi.
Program će zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Continue kao potvrdu.
Pojavit će se poruka da računar treba restartovati. Klikni OK
Računar će se restartovati, a potom otvoriti Notepad (C:\Adwcleaner\AdwCleaner[C0].txt) sa izvještajem.
Sačuvaj taj izvještaj na Desktop i okači ga uz poruku koristeći opciju "Prikači fajl"
|
|
|
|
|
Poslao: 11 Apr 2021 20:34
|
offline
- helen1
- Anti Malware Fighter
Rank 2
- Pridružio: 27 Avg 2005
- Poruke: 8616
- Gde živiš: Novi Beograd
|
Isprati ponasanje kompa, pa mi javi stanje, mislim da bi trebalo da promenis i lozinke za drustvenim mrezama, mailu... Bilo je tu svacega.
|
|
|
|
Poslao: 11 Apr 2021 20:43
|
offline
- Pridružio: 01 Nov 2011
- Poruke: 89
|
Ispratiću, hvala ti na svemu.
Da li treba da deinstaliram ove programe ili jok?
|
|
|
|
Poslao: 11 Apr 2021 21:09
|
offline
- helen1
- Anti Malware Fighter
Rank 2
- Pridružio: 27 Avg 2005
- Poruke: 8616
- Gde živiš: Novi Beograd
|
Nemoj jos. Javi se sutra ako ima problema.
|
|
|
|
Poslao: 12 Apr 2021 14:15
|
offline
- Pridružio: 01 Nov 2011
- Poruke: 89
|
Sve je ok, ali primećujem na fejsu da sam postao član nekog AD acounta i nesto sam blokiran zbog neke sigurnosti.
Deluje da je za sada sve ostalo dobro
|
|
|
|
Poslao: 12 Apr 2021 18:38
|
offline
- helen1
- Anti Malware Fighter
Rank 2
- Pridružio: 27 Avg 2005
- Poruke: 8616
- Gde živiš: Novi Beograd
|
Verovatno je fejs primetio cudne aktivnosti sa tvog naloga. Promeni sifre. Ako budes imao problema, javi se.
|
|
|
|