Blokira prilikom kucanja

1

Blokira prilikom kucanja

offline
  • Pridružio: 26 Mar 2011
  • Poruke: 221

Notebook Asus,win 7 ,sp 1,vec nekoliko dana prilikom kucanja zablokira a ono sto sam otkucao nakon deblokade posle par sek ispise ali obrnut redosled slova,ovu poruku pisem vec 10 min
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 9.0.8112.16446 BrowserJavaVersion: 10.25.2
Run by Spirit at 18:57:59 on 2013-08-31
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.1014.361 [GMT 2:00]
.
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Win\lsass.exe
C:\Windows\system32\igfxsrvc.exe
C:\Users\Spirit\AppData\Local\Facebook\Update\FacebookUpdate.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k secsvcs
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.delta-search.com/?affID=119520&tt=190313_wo3&babsrc=HP_ss&mntrId=80C4485D60288A96
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office14\GROOVEEX.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office\office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
TB: DAEMON Tools Toolbar: {32099AAC-C132-4136-9E9A-4E364A424E17} - c:\program files\daemon tools toolbar\DTToolbar.dll
TB: DAEMON Tools Toolbar: {32099AAC-C132-4136-9E9A-4E364A424E17} - c:\program files\daemon tools toolbar\DTToolbar.dll
TB: <No Name>: {ae07101b-46d4-4a98-af68-0333ea26e113} - LocalServer32 - <no file>
uRun: [Facebook Update] "c:\users\spirit\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [BCSSync] "c:\program files\microsoft office\office14\BCSSync.exe" /DelayServices
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [run32] c:\win\lsass.exe
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~2\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{04D7A40D-20BD-4CC0-9A2C-63771A254996} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{4A129ED2-7E48-442D-A615-018F385F0443} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{4A129ED2-7E48-442D-A615-018F385F0443}\847453230336 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{4A129ED2-7E48-442D-A615-018F385F0443}\960586F6E656 : DHCPNameServer = 217.65.192.102 217.65.192.101
TCP: Interfaces\{4A129ED2-7E48-442D-A615-018F385F0443}\D4E2D4026594255535 : DHCPNameServer = 192.168.1.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: igfxcui - igfxdev.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office14\GROOVEEX.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\spirit\appdata\roaming\mozilla\firefox\profiles\108tqggc.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - hxxp://www.google.rs/
FF - plugin: c:\progra~1\micros~2\office14\NPAUTHZ.DLL
FF - plugin: c:\progra~1\micros~2\office14\NPSPWRAP.DLL
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\sony\media go\npmediago.dll
FF - plugin: c:\program files\sony\playstation network downloader\nppsndl.dll
FF - plugin: c:\program files\virtual earth 3d\npVE3D.dll
FF - plugin: c:\users\spirit\appdata\local\facebook\video\skype\npFacebookVideoCalling.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_8_800_94.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
.
---- FIREFOX POLICIES ----
FF - user.js: extensions.autoDisableScopes - 0
FF - user.js: extensions.shownSelectionUI - true
FF - user.js: extensions.delta.tlbrSrchUrl -
FF - user.js: extensions.delta.id - 80c4b171000000000000485d60288a96
FF - user.js: extensions.delta.appId - {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
FF - user.js: extensions.delta.instlDay - 15789
FF - user.js: extensions.delta.vrsn - 1.8.10.0
FF - user.js: extensions.delta.vrsni - 1.8.10.0
FF - user.js: extensions.delta.vrsnTs - 1.8.10.015:09:22
FF - user.js: extensions.delta.prtnrId - delta
FF - user.js: extensions.delta.prdct - delta
FF - user.js: extensions.delta.aflt - babsst
FF - user.js: extensions.delta.smplGrp - none
FF - user.js: extensions.delta.tlbrId - base
FF - user.js: extensions.delta.instlRef - sst
FF - user.js: extensions.delta.dfltLng - en
FF - user.js: extensions.delta.excTlbr - false
FF - user.js: extensions.delta.admin - false
FF - user.js: extensions.delta.autoRvrt - false
FF - user.js: extensions.delta.rvrt - false
FF - user.js: extensions.delta.newTab - false
.
============= SERVICES / DRIVERS ===============
.
R2 Skype C2C Service;Skype C2C Service;c:\programdata\skype\toolbars\skype c2c service\c2c_service.exe [2013-8-14 3291008]
R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20);c:\windows\system32\drivers\L1C62x86.sys [2009-6-10 50688]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-6-21 162408]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 62464]
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2013-6-8 12400]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 Revoflt;Revoflt;c:\windows\system32\drivers\revoflt.sys [2012-6-25 27192]
S3 Sony PC Companion;Sony PC Companion;c:\program files\sony\sony pc companion\PCCService.exe [2012-8-18 155824]
S3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\Synth3dVsc.sys [2010-11-21 77184]
S3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2010-11-21 25600]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [2010-11-21 112640]
.
=============== Created Last 30 ================
.
2013-08-19 11:57:19 -------- d-sh--r- C:\Win
.
==================== Find3M ====================
.
2013-08-21 19:54:43 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-08-21 19:54:43 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-07-09 14:12:21 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-07-09 14:12:20 867240 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-07-09 14:12:20 789416 ----a-w- c:\windows\system32\deployJava1.dll
2013-06-08 16:45:48 25200 ----a-w- c:\windows\system32\drivers\ggsemc.sys
2013-06-08 16:45:48 12400 ----a-w- c:\windows\system32\drivers\ggflt.sys
.
============= FINISH: 18:59:03,76 ===============

https://www.mycity.rs/must-login.png

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Preuzmite program GMER sa donjeg linka na Desktop:


GMER download
Kliknite dati link;
Kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati file, odaberite Desktop i kliknite Save.



Dvoklikom pokrenite GMER.
Sačekajte da se završi uvodno skeniranje - ukoliko se pojavi bilo kakav upit, kliknite No;

kliknite Scan i sačekajte da skeniranje bude završeno;

kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer1);

kliknite desnim tasterom u prozor programa Gmer i odaberite Options > 3rd party - kliknite Scan;

po završetku skeniranja kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer2);

kliknite taster >>> i odaberite Autostart karticu;

po završetku kratkotrajnog skeniranja, kliknite Copy;

otvorite Notepad i u njega postavite kopirani tekst - izveštaj sačuvajte na Desktop (pod nazivom Gmer3);


Slikoviti prikaz postupka

Priložite sva tri izveštaja uz poruku korišćenjem opcije Prikači fajl.





Ivance95 (AMF Tim)

offline
  • Pridružio: 26 Mar 2011
  • Poruke: 221

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Arrow Preuzmi FRST - (Farbar Recovery Scan Tool) i sacuvaj ga na Desktop

Napomena: Potrebno je preuzeti onu verziju koja je kompatibilna sa tvojim sistemom.


Dvoklikom pokreni FRST;
Kada se alat startuje, klikni Yes na disclaimer.
Klikni na dugme Scan;
Alat ce kreirati izvestaj (FRST.txt) u isti direktorijum gde je i FRST.exe sacuvan.
Iskopiraj sadrzaj tog loga u poruku.
Alat bi takodje pri prvom pokretanju trebao da kreira i dodatni izvestaj (Addition.txt). Taj izvestaj okaci u poruku koristeci opciju "Prikaci file".



Ivance95 (AMF Tim)

offline
  • Pridružio: 26 Mar 2011
  • Poruke: 221

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 31-08-2013 04
Ran by Spirit at 2013-08-31 21:58:17
Running from C:\Users\Spirit\Desktop
Boot Mode: Normal
==========================================================


==================== Installed Programs =======================

µTorrent (Version: 3.1.3)
Adobe Flash Player 11 ActiveX (Version: 11.8.800.94)
Adobe Flash Player 11 Plugin (Version: 11.8.800.94)
Adobe Reader X (10.1.7) (Version: 10.1.7)
AIMP3 (Version: v3.00.861 Beta 1)
Bing Maps 3D (Version: 4.0.903.16005)
BS.Player PRO (Version: 2.62.1068)
CCleaner (Version: 3.00)
DAEMON Tools Toolbar (Version: 1.1.2.0185)
Facebook Video Calling 1.2.0.287 (Version: 1.2.287)
GIMP 2.8.4 (Version: 2.8.4)
Intel(R) Graphics Media Accelerator Driver (Version: 8.14.10.2230)
Java 7 Update 25 (Version: 7.0.250)
Java Auto Updater (Version: 2.1.9.5)
Media Go (Version: 2.2.223)
Media Go Video Playback Engine 1.92.163.06140 (Version: 1.92.163.06140)
Microsoft Office Access MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Groove MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office InfoPath MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.4763.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.4763.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.4763.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.4763.1000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (Version: 10.0.30319)
Mozilla Firefox 23.0.1 (x86 en-US) (Version: 23.0.1)
Mozilla Maintenance Service (Version: 23.0.1)
Picasa 3 (Version: 3.9)
PlayStation(R)Network Downloader (Version: 2.07.00849)
PlayStation(R)Store (Version: 4.9.4.14625)
Revo Uninstaller Pro 2.4.1 (Version: 2.4.1)
Skype Click to Call (Version: 6.11.13348)
Skype™ 6.6 (Version: 6.6.106)
Sony Ericsson Update Engine (Version: 2.13.9.201308081522)
Sony PC Companion 2.10.165 (Version: 2.10.165)
WinRAR 4.10 beta 1 (32-bit) (Version: 4.10.1)


==================== Restore Points =========================

26-08-2013 16:37:43 Scheduled Checkpoint
30-08-2013 23:33:41 Sony PC Companion
30-08-2013 23:48:53 Uninstalled Sony Ericsson Drivers
30-08-2013 23:49:17 Installed Sony Ericsson Drivers

==================== Hosts content: ==========================

2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {24F6D4BB-39A4-4A38-B671-418932432353} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2141049039-665917825-2387359653-1000Core => C:\Users\Spirit\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-04-10] (Facebook Inc.)
Task: {27DB4DF6-E857-4FBB-B89D-34DF5857A3F3} - System32\Tasks\Adobe online update program => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {5F0E6A52-EAB7-4801-9675-65FDF20D3094} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation)
Task: {8B5B26F9-074D-46C3-A101-3847A3F55DD7} - System32\Tasks\{BA4F1079-6572-41C0-8A6E-F423D50192CC} => c:\program files\mozilla firefox\firefox.exe [2013-08-21] (Mozilla Corporation)
Task: {DAAC95FC-0E6F-4A84-86F3-36C36AD88C69} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-21] (Adobe Systems Incorporated)
Task: {ED10B010-0549-4C28-A63F-E396678DB7CC} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2141049039-665917825-2387359653-1000UA => C:\Users\Spirit\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-04-10] (Facebook Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2141049039-665917825-2387359653-1000Core.job => C:\Users\Spirit\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2141049039-665917825-2387359653-1000UA.job => C:\Users\Spirit\AppData\Local\Facebook\Update\FacebookUpdate.exe

==================== Loaded Modules (whitelisted) =============

2010-10-25 04:08 - 2010-10-25 04:08 - 00536576 _____ (Intel Corporation) C:\Windows\system32\igdumdx32.dll
2010-10-25 04:10 - 2010-10-25 04:10 - 03829760 _____ (Intel Corporation) C:\Windows\system32\igdumd32.dll
2010-03-25 10:25 - 2010-03-25 10:25 - 04222864 _____ (Microsoft Corporation) C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
2012-08-18 16:43 - 2012-08-18 16:43 - 00159048 _____ (Microsoft Corporation) C:\Windows\WinSxS\x86_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.6161_none_51cd0a7abbe4e19b\ATL90.DLL
2010-01-30 02:41 - 2010-01-30 02:41 - 04254560 _____ () C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE14\Cultures\office.odf
2010-03-24 21:17 - 2010-03-24 21:17 - 08794464 _____ () C:\PROGRA~1\MICROS~2\Office14\1033\GrooveIntlResource.dll
2009-07-14 01:22 - 2009-07-14 03:15 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\fdproxy.dll
2010-10-25 03:54 - 2010-10-25 03:54 - 00199680 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2010-10-25 03:53 - 2010-10-25 03:53 - 00094208 _____ (Intel Corporation) C:\Windows\system32\hccutils.DLL
2010-10-25 03:53 - 2010-10-25 03:53 - 00051712 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2010-10-25 03:53 - 2010-10-25 03:53 - 00275968 _____ (Intel Corporation) C:\Windows\system32\igfxrENU.lrc
2012-06-25 08:58 - 2011-10-03 21:39 - 00166400 _____ () C:\Program Files\WinRAR\rarext.dll
2010-11-20 23:29 - 2010-11-20 23:29 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2010-10-25 03:53 - 2010-10-25 03:53 - 05702656 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2010-11-20 23:29 - 2010-11-20 23:29 - 00410624 _____ (Microsoft Corporation) C:\Windows\System32\systemcpl.dll
2009-07-14 01:18 - 2009-07-14 03:16 - 00012800 _____ (Microsoft Corporation) C:\Windows\System32\WINBRAND.dll
2010-11-20 23:29 - 2010-11-20 23:29 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\SPPC.DLL
2010-10-25 03:53 - 2010-10-25 03:53 - 00094208 _____ (Intel Corporation) C:\Windows\System32\hccutils.DLL
2009-07-14 01:56 - 2009-07-14 03:16 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\peerdist.dll
2012-06-24 23:03 - 2012-06-24 23:03 - 01800192 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2010-10-25 03:53 - 2010-10-25 03:53 - 00218112 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2013-04-10 22:29 - 2013-04-10 22:29 - 00686960 ____T (Facebook Inc.) C:\Users\Spirit\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll
2010-11-20 23:29 - 2010-11-20 23:29 - 00209920 _____ (Microsoft Corporation) C:\Windows\System32\mstask.dll
2013-08-21 21:37 - 2013-08-21 21:37 - 03551640 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2010-11-20 23:29 - 2010-11-20 23:29 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2009-07-14 02:07 - 2009-07-14 03:15 - 00079872 _____ (Microsoft Corporation) C:\Windows\System32\mp3dmod.dll
2009-07-14 01:53 - 2009-07-14 03:15 - 00462848 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll

==================== Alternate Data Streams (whitelisted) ==========


==================== Faulty Device Manager Devices =============

Name: SBRE
Description: SBRE
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: SBRE
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (08/31/2013 03:43:55 PM) (Source: Application Error) (User: )
Description: Faulting application name: firefox.exe, version: 23.0.1.4974, time stamp: 0x520bc252
Faulting module name: xul.dll, version: 23.0.1.4974, time stamp: 0x520bc166
Exception code: 0xc0000005
Fault offset: 0x0017af08
Faulting process id: 0xaac
Faulting application start time: 0xfirefox.exe0
Faulting application path: firefox.exe1
Faulting module path: firefox.exe2
Report Id: firefox.exe3

Error: (08/31/2013 03:43:42 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/31/2013 10:12:40 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/31/2013 02:58:01 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/30/2013 07:56:14 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/30/2013 04:29:37 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/30/2013 00:33:47 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/30/2013 09:07:45 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/29/2013 08:12:06 PM) (Source: Application Error) (User: )
Description: Faulting application name: firefox.exe, version: 23.0.1.4974, time stamp: 0x520bc252
Faulting module name: xul.dll, version: 23.0.1.4974, time stamp: 0x520bc166
Exception code: 0xc0000005
Fault offset: 0x0017af08
Faulting process id: 0xa54
Faulting application start time: 0xfirefox.exe0
Faulting application path: firefox.exe1
Faulting module path: firefox.exe2
Report Id: firefox.exe3

Error: (08/29/2013 08:02:30 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (08/31/2013 03:42:14 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SBRE

Error: (08/31/2013 02:18:51 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service.

Error: (08/31/2013 10:11:13 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SBRE

Error: (08/31/2013 02:56:43 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SBRE

Error: (08/30/2013 07:54:46 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SBRE

Error: (08/30/2013 04:28:11 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SBRE

Error: (08/30/2013 00:32:19 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SBRE

Error: (08/30/2013 09:06:18 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SBRE

Error: (08/29/2013 08:01:00 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SBRE

Error: (08/29/2013 07:08:50 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
SBRE


Microsoft Office Sessions:
=========================
Error: (08/31/2013 03:43:55 PM) (Source: Application Error)(User: )
Description: firefox.exe23.0.1.4974520bc252xul.dll23.0.1.4974520bc166c00000050017af08aac01cea64febea0da2C:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dll60e06735-1243-11e3-8962-bcaec51997ab

Error: (08/31/2013 03:43:42 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/31/2013 10:12:40 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/31/2013 02:58:01 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/30/2013 07:56:14 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/30/2013 04:29:37 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/30/2013 00:33:47 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/30/2013 09:07:45 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/29/2013 08:12:06 PM) (Source: Application Error)(User: )
Description: firefox.exe23.0.1.4974520bc252xul.dll23.0.1.4974520bc166c00000050017af08a5401cea4e231f33350C:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dll8307438b-10d6-11e3-857e-bcaec51997ab

Error: (08/29/2013 08:02:30 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


==================== Memory info ===========================

Percentage of memory in use: 69%
Total physical RAM: 1014.18 MB
Available physical RAM: 304.46 MB
Total Pagefile: 2264.42 MB
Available Pagefile: 1250.73 MB
Total Virtual: 2047.88 MB
Available Virtual: 1904.99 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:41.53 GB) (Free:8.94 GB) NTFS
Drive d: () (Fixed) (Total:107.42 GB) (Free:65.68 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: 0DAFEED1)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=42 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=107 GB) - (Type=07 NTFS)

==================== End Of Log ============================
https://www.mycity.rs/must-login.png

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Nisi postavio FRST.txt, već samo Addition.txt.

offline
  • Pridružio: 26 Mar 2011
  • Poruke: 221

Prilikom pokretanja Farbar Recovery Scan Too pojavilo se Yes na disclaimer medjutim odjednom se aktivirao deamontools ali kao da sam otvorio explorer i onda je nestao ceo FRST,skinuo sam ga opet,i pokrenuo ali mi nije trazio Yes na disclaimer i nafravo je samo FRIS ne i Adittion,moram napomenuti da evo kao sad,sve radi normalno,mislim na moj problem o kucanju,ali vec malo kasnije ili veceras desava se isto
https://www.mycity.rs/must-login.png


Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-09-2013
Ran by Spirit (administrator) on COOLERMASTER on 01-09-2013 09:35:38
Running from C:\Users\Spirit\Desktop
Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
() C:\Win\lsass.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) \\?\C:\Windows\system32\wbem\WMIADAP.EXE

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM\...\Run: [run32] - C:\Win\lsass.exe [551669 2013-08-07] ()
HKCU\...\Run: [Facebook Update] - C:\Users\Spirit\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-04-10] (Facebook Inc.)
MountPoints2: {38903879-a5f8-11e2-8367-bcaec51997ab} - E:\AutoRun.exe
MountPoints2: {38903888-a5f8-11e2-8367-bcaec51997ab} - E:\AutoRun.exe
MountPoints2: {b6c940d7-f948-11e2-b60d-bcaec51997ab} - E:\autorun.exe

==================== Internet (Whitelisted) ====================

ProxyEnable: Internet Explorer proxy is enabled.
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=119520&tt=1.....5D60288A96
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
SearchScopes: HKCU - DefaultScope {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchTerms}&affID=119520&tt=190313_wo3&babsrc=SP_ss&mntrId=80C4485D60288A96
SearchScopes: HKCU - {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File
Toolbar: HKCU -DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Spirit\AppData\Roaming\Mozilla\Firefox\Profiles\108tqggc.default
FF user.js: detected! => C:\Users\Spirit\AppData\Roaming\Mozilla\Firefox\Profiles\108tqggc.default\user.js
FF DefaultSearchEngine: Yahoo
FF SelectedSearchEngine: Yahoo
FF Homepage: hxxp://www.google.rs/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/VirtualEarth3D,version=4.0 - C:\Program Files\Virtual Earth 3D\ ()
FF Plugin: @playstation.com/PsndlCheck,version=1.00 - C:\Program Files\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.)
FF Plugin: @SonyCreativeSoftware.com/Media Go,version=1.0 - C:\Program Files\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Spirit\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF SearchPlugin: C:\Users\Spirit\AppData\Roaming\Mozilla\Firefox\Profiles\108tqggc.default\searchplugins\delta.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\McSiteAdvisor.xml
FF Extension: Blue Fox - C:\Users\Spirit\AppData\Roaming\Mozilla\Firefox\Profiles\108tqggc.default\Extensions\{241aae70-0022-11de-87af-0800200c9a66}
FF Extension: DownloadHelper - C:\Users\Spirit\AppData\Roaming\Mozilla\Firefox\Profiles\108tqggc.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
FF Extension: ffe_ff3aeroff4 - C:\Users\Spirit\AppData\Roaming\Mozilla\Firefox\Profiles\108tqggc.default\Extensions\ffe_ff3aeroff4@game-point.net.xpi
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

========================== Services (Whitelisted) =================

R2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3291008 2013-08-14] (Skype Technologies S.A.)
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software)

==================== Drivers (Whitelisted) ====================

R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [697328 2012-06-25] ()
S3 taphss; C:\Windows\System32\DRIVERS\taphss.sys [32768 2012-03-26] (AnchorFree Inc)
U3 a2s6pt5b; C:\Windows\System32\Drivers\a2s6pt5b.sys [0 ] (Microsoft Corporation)
S3 ewusbmbb; system32\DRIVERS\ewusbwwan.sys [x]
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [x]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [x]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x]
S1 SBRE; \??\C:\Windows\system32\drivers\SBREdrv.sys [x]
S3 VGPU; System32\drivers\rdvgkmd.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-08-31 21:56 - 2013-08-31 21:56 - 00000000 ____D C:\FRST
2013-08-31 21:24 - 2013-08-31 23:09 - 00000000 ____D C:\Users\Spirit\Downloads\Despicable Me (2010)
2013-08-31 21:23 - 2013-08-31 21:24 - 00000000 ____D C:\Users\Spirit\Downloads\Despicable Me 2 2013 720p TS XviD MP3 MiLLENiUM
2013-08-31 19:58 - 2013-08-31 19:58 - 00377856 _____ C:\Users\Spirit\Desktop\ch25lb17.exe
2013-08-31 17:49 - 2013-08-31 17:50 - 00000000 ____D C:\Users\Spirit\Desktop\New folder
2013-08-31 15:49 - 2013-08-31 15:49 - 00000000 ____D C:\Users\Spirit\Desktop\2013.Q1 8.3NTQ EU (fbl. fda, fpa, fsp, hnr, poi)
2013-08-31 10:31 - 2013-08-31 10:32 - 00000000 ____D C:\Users\Spirit\Desktop\dem
2013-08-31 10:24 - 2013-08-31 10:30 - 220919674 _____ C:\Users\Spirit\Desktop\dem.rar
2013-08-31 10:19 - 2013-07-05 02:20 - 00000000 ____D C:\Users\Spirit\Desktop\960x540 - februar 2013
2013-08-31 10:14 - 2013-08-31 10:18 - 111884803 _____ C:\Users\Spirit\Desktop\960x540 - februar 2013.rar
2013-08-31 02:56 - 2013-09-01 09:31 - 00003166 _____ C:\Windows\PFRO.log
2013-08-31 02:12 - 2013-08-31 02:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ggsemc_01009.Wdf
2013-08-31 02:12 - 2013-08-31 02:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ggflt_01009.Wdf
2013-08-31 01:32 - 2013-08-31 01:34 - 00013242 _____ C:\Windows\DPINST.LOG
2013-08-28 10:39 - 2013-09-01 09:31 - 00002090 _____ C:\Windows\setupact.log
2013-08-28 10:39 - 2013-08-28 10:39 - 00000000 _____ C:\Windows\setuperr.log
2013-08-21 21:37 - 2013-08-21 22:14 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-08-21 14:30 - 2013-08-21 14:30 - 00000000 _RSHD C:\Users\Spirit\Desktop\This Is 40 2012 DVD Screener Xvid UnKnOwN
2013-08-19 20:38 - 2013-08-19 20:58 - 00000000 _RSHD C:\Users\Spirit\Desktop\The Wolverine 2013 CAM XviD MP3 MiLLENiUM
2013-08-19 20:38 - 2013-08-19 20:38 - 00000000 _RSHD C:\Users\Spirit\Desktop\World War Z 2013 New Cam x264 SmY
2013-08-19 20:38 - 2013-08-19 20:38 - 00000000 _RSHD C:\Users\Spirit\Desktop\TITL
2013-08-19 13:57 - 2013-08-19 13:57 - 00000000 _RSHD C:\Win

==================== One Month Modified Files and Folders =======

2013-09-01 09:35 - 2013-09-01 09:35 - 01085571 _____ (Farbar) C:\Users\Spirit\Desktop\FRST.exe
2013-09-01 09:31 - 2013-08-31 02:56 - 00003166 _____ C:\Windows\PFRO.log
2013-09-01 09:31 - 2013-08-28 10:39 - 00002090 _____ C:\Windows\setupact.log
2013-09-01 09:31 - 2013-03-15 13:24 - 00016384 _____ C:\Windows\system32\Ikeext.etl
2013-09-01 09:31 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-31 23:25 - 2012-06-25 05:16 - 01979757 _____ C:\Windows\WindowsUpdate.log
2013-08-31 23:23 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\tracing
2013-08-31 23:09 - 2013-08-31 21:24 - 00000000 ____D C:\Users\Spirit\Downloads\Despicable Me (2010)
2013-08-31 23:01 - 2012-06-24 23:59 - 00000000 ____D C:\Users\Spirit\AppData\Roaming\uTorrent
2013-08-31 22:54 - 2012-08-18 16:43 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-31 22:34 - 2013-04-10 22:29 - 00000932 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2141049039-665917825-2387359653-1000UA.job
2013-08-31 22:34 - 2013-04-10 22:29 - 00000910 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2141049039-665917825-2387359653-1000Core.job
2013-08-31 22:00 - 2009-07-14 06:34 - 00027680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-31 22:00 - 2009-07-14 06:34 - 00027680 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-31 21:56 - 2013-08-31 21:56 - 00000000 ____D C:\FRST
2013-08-31 21:24 - 2013-08-31 21:23 - 00000000 ____D C:\Users\Spirit\Downloads\Despicable Me 2 2013 720p TS XviD MP3 MiLLENiUM
2013-08-31 21:16 - 2012-06-25 09:30 - 00000000 ____D C:\Users\Spirit\AppData\Roaming\AIMP3
2013-08-31 19:58 - 2013-08-31 19:58 - 00377856 _____ C:\Users\Spirit\Desktop\ch25lb17.exe
2013-08-31 17:50 - 2013-08-31 17:49 - 00000000 ____D C:\Users\Spirit\Desktop\New folder
2013-08-31 15:49 - 2013-08-31 15:49 - 00000000 ____D C:\Users\Spirit\Desktop\2013.Q1 8.3NTQ EU (fbl. fda, fpa, fsp, hnr, poi)
2013-08-31 10:32 - 2013-08-31 10:31 - 00000000 ____D C:\Users\Spirit\Desktop\dem
2013-08-31 10:30 - 2013-08-31 10:24 - 220919674 _____ C:\Users\Spirit\Desktop\dem.rar
2013-08-31 10:18 - 2013-08-31 10:14 - 111884803 _____ C:\Users\Spirit\Desktop\960x540 - februar 2013.rar
2013-08-31 02:12 - 2013-08-31 02:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ggsemc_01009.Wdf
2013-08-31 02:12 - 2013-08-31 02:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ggflt_01009.Wdf
2013-08-31 01:48 - 2013-06-08 18:44 - 00000000 ____D C:\ProgramData\Sony Ericsson
2013-08-31 01:48 - 2013-06-08 18:44 - 00000000 ____D C:\Program Files\Sony Ericsson
2013-08-31 01:34 - 2013-08-31 01:32 - 00013242 _____ C:\Windows\DPINST.LOG
2013-08-31 01:32 - 2012-08-18 16:34 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-08-30 22:25 - 2012-06-25 09:55 - 00000000 ____D C:\Users\Spirit\AppData\Roaming\Skype
2013-08-28 10:39 - 2013-08-28 10:39 - 00000000 _____ C:\Windows\setuperr.log
2013-08-22 13:24 - 2012-06-24 22:48 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-08-21 22:14 - 2013-08-21 21:37 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-08-21 22:14 - 2013-07-02 23:27 - 00000000 ____D C:\Program Files\Mozilla Firefox.bak
2013-08-21 21:54 - 2012-08-16 19:59 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-08-21 21:54 - 2012-08-16 19:59 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-08-21 16:47 - 2012-06-25 16:31 - 00000000 ____D C:\Users\Spirit\AppData\Roaming\BSplayer PRO
2013-08-21 14:30 - 2013-08-21 14:30 - 00000000 _RSHD C:\Users\Spirit\Desktop\This Is 40 2012 DVD Screener Xvid UnKnOwN
2013-08-20 14:05 - 2009-07-14 06:53 - 00032606 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-08-19 20:58 - 2013-08-19 20:38 - 00000000 _RSHD C:\Users\Spirit\Desktop\The Wolverine 2013 CAM XviD MP3 MiLLENiUM
2013-08-19 20:38 - 2013-08-19 20:38 - 00000000 _RSHD C:\Users\Spirit\Desktop\World War Z 2013 New Cam x264 SmY
2013-08-19 20:38 - 2013-08-19 20:38 - 00000000 _RSHD C:\Users\Spirit\Desktop\TITL
2013-08-19 13:58 - 2010-11-20 23:01 - 00713888 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-19 13:57 - 2013-08-19 13:57 - 00000000 _RSHD C:\Win
2013-08-18 12:30 - 2012-06-25 09:55 - 00000000 ___RD C:\Program Files\Skype
2013-08-18 12:30 - 2012-06-25 09:55 - 00000000 ____D C:\ProgramData\Skype
2013-08-02 14:57 - 2013-05-10 21:07 - 00000000 ___HD C:\Users\Spirit\Desktop\.picasaoriginals

Files to move or delete:
====================
C:\Users\Spirit\AppData\Local\Temp\Sony\Sony PC Companion\AutoUpdate\Sony PC Companion_2.10.165_NetStorage.exe

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-08-26 18:30

==================== End Of Log ============================

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Otvori Notepad i iskopiraj sledeći tekst koji se nalazi unutar osenčenog prostora.

HKLM\...\Run: [run32] - C:\Win\lsass.exe [551669 2013-08-07] ()
2013-08-19 13:57 - 2013-08-19 13:57 - 00000000 _RSHD C:\Win


U okviru Notepad-a klikni na File --> Save As
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se Notepad, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt).

Potrebno je da fixlog.txt kopiras na forum





Arrow Kakvo je stanje nakon ovoga? Da li još uvek imaš probleme sa tastaturom?



Ivance95 (AMF Tim)

offline
  • Pridružio: 26 Mar 2011
  • Poruke: 221

Napisano: 01 Sep 2013 12:50

ix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 01-09-2013
Ran by Spirit at 2013-09-01 12:49:07 Run:1
Running from C:\Users\Spirit\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
HKLM\...\Run: [run32] - C:\Win\lsass.exe [551669 2013-08-07] ()
2013-08-19 13:57 - 2013-08-19 13:57 - 00000000 _RSHD C:\Win
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\run32 => Value deleted successfully.
C:\Win => Moved successfully.

==== End of Fixlog ====
https://www.mycity.rs/must-login.png

Dopuna: 01 Sep 2013 12:53

Pa nemam pojma,kao sto sam napisao u prethodnoj poruci,ovo se ne desava non stop,recimo sada a i pre ovog posta sve je radilo ok,teko je bilo i juce i prekjuce...ali u toku dana od jednom pocnu problemi sa kucanjem,blokira kucanje a slova se nakon par sekundi sama ispisu ali naopakim redom,ok,praticu stanje pa ako se opet ponovi javljam,ovde,hvala

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Arrow To bi trebalo biti to, potrebno je da ispratiš još nekoliko koraka zbog provere.


Arrow Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Scan] i pricekaj da program zavrsi.
Klikni na dugme [Clean]
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S1].txt



Arrow Ponovo pokreni FRST i postavi mi svež izveštaj.




Ivance95 (AMF Tim)

Ko je trenutno na forumu
 

Ukupno su 731 korisnika na forumu :: 0 registrovanih, 1 sakriven i 730 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: Nema