Claro se uglavio-napravio haos u računaru

1

Claro se uglavio-napravio haos u računaru

offline
  • Milan
  • penzioner
  • Pridružio: 20 Jul 2012
  • Poruke: 222

Poštovani prijatelji evo o čemu se radi: hteo sam da instaliram progra PDF, da bih mogao u njega da pakujem ono što hoću da pošaljm nekome, na Googlu sam pronašao traženu stvar, normalno for free, tamo se redovno ulogovao i, moram priznati, mojom nepažnjom nisam odčekirao one stavke gde mi se lepo navodi da želim da mi Claro bude osnovni pretraživač. Moja greška i brzina, e, to me je koštalo i nerava i uludo potrošenog vremena. Sada se taj Claro svugde pojavljuje, a nemogu da ga otkačim. I ne samo to, u toku jučerašnjeg popodneva odmah se odrazilo i na brzinu rada računara, iako sam prešao na novog provajdera "TotalNet", gde je brzina protoka do 5MB. Nije mi bilo jasno kako se tako loše i sporo ponaša, iako je merenjem pokazivao da je brzina, moglo bi se reći u granici do 5MB. Prilikom skidanja programa, antivirus program nije mi prikazao ništa što bi ukazivalo na prisustvo virusa. Neznam da li još nešto treba, a sada ću preći na meni najteži deo, obzirom na moje skromno znanje, da po jasnim uputstvima prenesem ovde sve tržene podatke. Pa da krenem. Mislim da sam odradio prvi korak, a sad ako nešto ne valja, upozorićete me-čitam ja, čitam, samo nemam iskustva da to što piše i u praksi odradim. Evo, ovako-prvi korak

_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.7601.17514
Run by korisnik at 0:50:49 on 2012-12-17
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.2012.968 [GMT 1:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\system32\atieclxx.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe
C:\Program Files\CyberLink\Shared Files\brs.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\DealBulldog Toolbar Toolbar\TbHelper2.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
C:\Windows\system32\SearchProtocolHost.exe

ako je ovo dobro, idem dalje....


UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Ultimate
Boot Device: \Device\HarddiskVolume1
Install Date: 18.9.2012 15:49:30
System Uptime: 16.12.2012 18:42:15 (6 hours ago)
.
Motherboard: Gigabyte Technology Co., Ltd. | | P61-S3
Processor: Intel(R) Celeron(R) CPU G550 @ 2.60GHz | Intel(R) Celeron(R) CPU G550 @ 2.60GHz | 2600/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 98 GiB total, 76,241 GiB free.
D: is FIXED (NTFS) - 135 GiB total, 134,966 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP67: 30.11.2012 21:47:42 - Scheduled Checkpoint
RP68: 5.12.2012 23:12:53 - Installed Image Resizer Powertoy for Windows XP
RP69: 5.12.2012 23:15:46 - Removed Image Resizer Powertoy for Windows XP
RP70: 8.12.2012 17:54:40 - Installed LibreOffice 3.6
RP71: 15.12.2012 23:49:26 - Scheduled Checkpoint
RP72: 16.12.2012 18:08:57 - Removed Claro Chrome Toolbar
.
==== Installed Programs ======================
.
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader X (10.1.4)
AMD Accelerated Video Transcoding
AMD APP SDK Runtime
AMD Catalyst Install Manager
AMD Drag and Drop Transcoding
AMD Media Foundation Decoders
avast! Free Antivirus
Catalyst Control Center
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-utility
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCleaner
CDBurnerXP
CyberLink PowerDVD 8
D3DX10
DealBulldog Toolbar Toolbar
GameHouse Games Collection: Digby's Donuts
GameHouse Games Collection: Diner Dash
GameHouse Games Collection: Feeding Frenzy
GameHouse Games Collection: Fiber Twig
GameHouse Games Collection: Five Card Deluxe
GameHouse Games Collection: Flip Words
GameHouse Games Collection: Gutterball
GameHouse Games Collection: Incadia
GameHouse Games Collection: Incredible Ink
GameHouse Games Collection: Insaniquarium Deluxe
GameHouse Games Collection: Inspector Parker
GameHouse Games Collection: Invadazoid
GameHouse Games Collection: Magic Ball 2
GameHouse Games Collection: Magic Vines
GameHouse Games Collection: Mah Jong Adventures
GameHouse Games Collection: Phlinx To Go
GameHouse Games Collection: Poker Superstars
GameHouse Games Collection: Puzzle Inlay
GameHouse Games Collection: Splash
GameHouse Games Collection: Spring Sprang Sprung
GameHouse Games Collection: Super 5-Line Slots
GameHouse Games Collection: Super Blackjack!
GameHouse Games Collection: Super Collapse!
GameHouse Games Collection: Super GameHouse Solitaire Vol. 3
GameHouse Games Collection: Super Gem Drop
GameHouse Games Collection: Super Glinx!
GameHouse Games Collection: Super Letter Linker
GameHouse Games Collection: Super Mah Jong Solitaire
Google Chrome
Google Toolbar for Internet Explorer
Google Update Helper
HP PrecisionScan LTX
Intel(R) TV Wizard
LibreOffice 3.6
Microsoft Application Error Reporting
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
Microsoft_VC100_CRT_SP1_x86
Mozilla Firefox 17.0.1 (x86 sr)
Mozilla Maintenance Service
MSVC80_x86_v2
MSVC90_x86
MSVCRT
Nero Burning ROM 10
Nero BurningROM 10 Help (CHM)
Nero BurnRights 10
Nero BurnRights 10 Help (CHM)
Nero Control Center 10
Nero ControlCenter 10 Help (CHM)
Nero Core Components 10
Nero Update
Nokia Connectivity Cable Driver
Nokia Suite
PC Connectivity Solution
PDF Creator
Realtek Ethernet Controller Driver
Realtek HDMI Audio Driver for ATI
Realtek High Definition Audio Driver
Skype Toolbars
Skype™ 5.10
Speccy
VLC media player 1.1.7
Winamp
Winamp Detector Plug-in
Windows Driver Package - Nokia pccsmcfd “LegacyDriver” (05/31/2012 7.1.2.0)
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Messenger
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
WinRAR archiver
.
==== End Of File ===========================

izgleda da nešto nisam dobro odradio, pa ću ponoviti

_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.7601.17514
Run by korisnik at 0:50:49 on 2012-12-17
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.2012.968 [GMT 1:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\system32\atieclxx.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe
C:\Program Files\CyberLink\Shared Files\brs.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\Program Files\DealBulldog Toolbar Toolbar\TbHelper2.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_5_502_135.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.rs/
mStart Page = hxxp://www.bigseekpro.com/pdfcreator/{3A1D4CED-9593-42D9-9A3D-EB5A1A6E6442}
uURLSearchHooks: ToolbarURLSearchHook Class: {CA3EB689-8F09-4026-AA10-B9534C691CE0} - c:\program files\dealbulldog toolbar toolbar\tbhelper.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Skype Plug-In: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.7.7529.1424\swg.dll
BHO: SMTTB2009 Class: {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - c:\program files\dealbulldog toolbar toolbar\tbcore3.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: DealBulldog Toolbar Toolbar: {338B4DFE-2E2C-4338-9E41-E176D497299E} - c:\program files\dealbulldog toolbar toolbar\tbcore3.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: DealBulldog Toolbar Toolbar: {338B4DFE-2E2C-4338-9E41-E176D497299E} - c:\program files\dealbulldog toolbar toolbar\tbcore3.dll
uRun: [NokiaSuite.exe] c:\program files\nokia\nokia suite\NokiaSuite.exe -tray
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [RemoteControl8] "c:\program files\cyberlink\powerdvd8\PDVD8Serv.exe"
mRun: [PDVD8LanguageShortcut] "c:\program files\cyberlink\powerdvd8\language\Language.exe"
mRun: [BDRegion] c:\program files\cyberlink\shared files\brs.exe
mRun: [RtHDVCpl] c:\program files\realtek\audio\hda\RtHDVCpl.exe -s
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "c:\program files\amd avt\bin\kdbsync.exe" aml
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
StartupFolder: c:\users\korisnik\appdata\roaming\micros~1\windows\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{DECFDF59-6CDD-42A2-8B93-3711C1B46DCD} : DHCPNameServer = 192.168.1.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
AppInit_DLLs= c:\progra~2\browse~1\25986~1.67\{c16c1~1\browse~1.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\korisnik\appdata\roaming\mozilla\firefox\profiles\3ttrazsi.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.claro-search.com/?affID=117423&tt=5012_8&babsrc=HP_ss&mntrId=7846ce46000000000000902b3464edbb
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\update\1.3.21.123\npGoogleUpdate3.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.50401.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll
FF - plugin: c:\program files\nokia\nokia suite\npNokiaSuiteEnabler.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_3_300_271.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_5_502_135.dll
FF - ExtSQL: 2012-11-02 03:23; {64161300-e22b-11db-8314-0800200c9a66}; c:\users\korisnik\appdata\roaming\mozilla\firefox\profiles\3ttrazsi.default\extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi
FF - ExtSQL: 2012-12-16 16:58; {75656794-AB59-4712-BFBC-5D816D56F3BC}; c:\users\korisnik\appdata\roaming\mozilla\firefox\profiles\3ttrazsi.default\extensions\{75656794-AB59-4712-BFBC-5D816D56F3BC}
.
---- FIREFOX POLICIES ----
FF - user.js: extensions.claro.tlbrSrchUrl -
FF - user.js: extensions.claro.id - 7846ce46000000000000902b3464edbb
FF - user.js: extensions.claro.appId - {C3110516-8EFC-49D6-8B72-69354F332062}
FF - user.js: extensions.claro.instlDay - 15690
FF - user.js: extensions.claro.vrsn - 1.8.3.10
FF - user.js: extensions.claro.vrsni - 1.8.3.10
FF - user.js: extensions.claro_i.vrsnTs - 1.8.3.1016:55:56
FF - user.js: extensions.claro.prtnrId - claro
FF - user.js: extensions.claro.prdct - claro
FF - user.js: extensions.claro.aflt - babsst
FF - user.js: extensions.claro_i.smplGrp - none
FF - user.js: extensions.claro.tlbrId - base
FF - user.js: extensions.claro.instlRef - sst
FF - user.js: extensions.claro.dfltLng - en
FF - user.js: extensions.claro.excTlbr - false
FF - user.js: extensions.claro.admin - false
.
============= SERVICES / DRIVERS ===============
.
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2012-9-18 721000]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2012-9-18 353688]
R2 {FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};{FE4C91E7-22C2-4D0C-9F6B-82F1B7742054};c:\program files\cyberlink\powerdvd8\000.fcl [2008-6-27 61424]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-4-6 217600]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2012-9-18 21256]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-9-18 57656]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2012-9-18 44808]
R2 NAUpdate;Nero Update;c:\program files\nero\update\NASvc.exe [2010-5-4 503080]
R3 MEI;Intel(R) Management Engine Interface ;c:\windows\system32\drivers\HECI.sys [2010-10-19 41088]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2012-9-18 490088]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-7-13 160944]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 62464]
S3 GVTDrv;GVTDrv;c:\windows\system32\drivers\GVTDrv.sys [2012-9-18 24944]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files\intel\intel(r) integrated clock controller service\ICCProxy.exe [2012-9-18 160256]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2012-6-11 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2012-6-11 8576]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver;c:\windows\system32\drivers\Synth3dVsc.sys [2010-11-21 77184]
S3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2010-11-21 25600]
S3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 tsusbhub;Remote Deskotop USB Hub;c:\windows\system32\drivers\tsusbhub.sys [2010-11-21 112640]
SUnknown TsUsbFlt;TsUsbFlt; [x]
.
=============== Created Last 30 ================
.
2012-12-16 15:58:40 -------- d-----w- c:\program files\GPLGS
2012-12-16 15:58:39 86016 ----a-w- c:\windows\system32\custmon32.dll
2012-12-16 15:58:38 -------- d-----w- c:\program files\PDF Creator
2012-12-16 15:58:30 -------- d-----w- c:\program files\DealBulldog Toolbar Toolbar
2012-12-16 15:55:44 -------- d-----w- c:\users\korisnik\appdata\roaming\Babylon
2012-12-16 15:55:44 -------- d-----w- c:\programdata\Babylon
2012-12-05 22:15:54 -------- d-----w- c:\windows\system32\appmgmt
2012-12-05 22:10:45 -------- d-----w- c:\windows\Downloaded Installations
2012-12-05 14:02:53 -------- d-----w- c:\programdata\Telenor Internet
2012-12-05 14:02:36 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
2012-12-05 14:02:36 1112288 ----a-w- c:\windows\system32\drivers\WdfCoInstaller01007.dll
2012-12-05 14:01:39 -------- d-----w- c:\programdata\DatacardService
2012-11-27 21:59:29 -------- d-----w- c:\users\korisnik\appdata\roaming\Canneverbe Limited
2012-11-27 21:59:29 -------- d-----w- c:\programdata\Canneverbe Limited
2012-11-25 22:33:35 -------- d-----w- c:\program files\Speccy
2012-11-25 22:25:15 -------- d-----w- c:\users\korisnik\appdata\roaming\Systweak
2012-11-25 22:25:13 15544 ----a-w- c:\windows\system32\roboot.exe
2012-11-23 12:04:49 -------- d-----w- c:\users\korisnik\appdata\roaming\Incredible Ink
.
==================== Find3M ====================
.
2012-12-15 19:01:41 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-12-15 19:01:41 697272 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-09-21 20:53:26 1080 ----a-w- c:\windows\AUTOLNCH.REG
2012-09-18 15:06:03 0 ----a-w- c:\windows\ativpsrm.bin
2012-09-18 14:02:16 24944 ----a-w- c:\windows\system32\drivers\GVTDrv.sys
2012-09-18 14:02:03 17488 ----a-w- c:\windows\gdrv.sys
2012-09-18 13:54:58 409088 ----a-w- c:\windows\system32\systemcpl.dll
2012-09-18 13:54:58 13824 ----a-w- c:\windows\system32\slwga.dll
.
============= FINISH: 0:51:01,64 ===============






hajde da vidim da li uopšte ja nešto bar imalo dobro radim, ako nije problem.


https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Pozdrav.

Deinstaliraj DealBulldog Toolbar Toolbar

Otvori Firefox klik na Tools > Add ons > Extensions, obrisi Claro > restartuj Firefox.


Preuzmi "Xplode"-ov AdwCleaner i sacuvaj ga na Desktop
Dvoklikom pokreni program i klikni na dugme [Search] .
Kada program zavrsi analizu otvorice notepad sa izvestajem. Zatvori taj notepad.

Klikni na dugme [Delete] i pricekaj da program zavrsi.
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok

Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S1].txt

offline
  • Milan
  • penzioner
  • Pridružio: 20 Jul 2012
  • Poruke: 222

Napisano: 17 Dec 2012 18:49

Idem odmah da probam, mada mi malo pravi problem to što mi je W7 na srpskom, pa dok se snadjem. No, valda ću uspeti, i hvala na brzom odgovoru.

Dopuna: 17 Dec 2012 19:08

Nema ga u ekstenziji, evo slike




Dopuna: 17 Dec 2012 19:10

U tome i jeste stvar, što ga nigde nemogu pronaći-neznam gde mu čuči bilo kakav podatak u računaru.

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Moze, moze, pokreni AdwCleaner, gore je uputstvo Smile

offline
  • Milan
  • penzioner
  • Pridružio: 20 Jul 2012
  • Poruke: 222

aha, onda da preskočim ovo i da odmah pokrenem adw cleaner?

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Da, ali prvo deinstaliraj onaj toolbar.

Procitaj ponovo moju prvu poruku ako treba.

offline
  • Milan
  • penzioner
  • Pridružio: 20 Jul 2012
  • Poruke: 222

Napisano: 17 Dec 2012 19:19

da, da, to sam uradio, nema problema, nego me je ovo malo prikočilo. ok, idem onda ovo da odradim.

Dopuna: 17 Dec 2012 19:34

evo ga taj notepad što sam dobio, računar se restartovao i nakon toga sam dobio ovaj, ja mislim da je notepad, ili kako li se već zove.

aner v2.101 - Logfile created 12/17/2012 at 19:27:54
# Updated 16/12/2012 by Xplode
# Operating system : Windows 7 Ultimate Service Pack 1 (32 bits)
# User : korisnik - USER-PC
# Boot Mode : Normal
# Running from : C:\Users\korisnik\Downloads\adwcleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

File Deleted : C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\Users\korisnik\AppData\LocalLow\Claro LTD
Folder Deleted : C:\Users\korisnik\AppData\LocalLow\Toolbar4
Folder Deleted : C:\Users\korisnik\AppData\Roaming\Babylon

***** [Registry] *****

Key Deleted : HKCU\Software\Claro LTD
Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{96BD48DD-741B-41AE-AC4A-AFF96BA00F7E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9E131A93-EED7-4BEB-B015-A0ADB30B5646}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{000F18F2-09EB-4A59-82B2-5AE4184C39C3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{338B4DFE-2E2C-4338-9E41-E176D497299E}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9E131A93-EED7-4BEB-B015-A0ADB30B5646}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.7601.17514

Replaced : [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.bigseekpro.com/pdfcreator/{3A1D4CED-9593-42D9-9A3D-EB5A1A6E6442} --> hxxp://www.google.com

-\\ Mozilla Firefox v17.0.1 (sr)

Profile name : default
File : C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\3ttrazsi.default\prefs.js

C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\3ttrazsi.default\user.js ... Deleted !

Deleted : user_pref("browser.startup.homepage", "hxxp://www.claro-search.com/?affID=117423&tt=5012_8&babsrc=HP[...]
Deleted : user_pref("extensions.BabylonToolbar_i.newTab", true);
Deleted : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://www.claro-search.com/?affID=117423&tt=501[...]
Deleted : user_pref("extensions.claro.admin", false);
Deleted : user_pref("extensions.claro.aflt", "babsst");
Deleted : user_pref("extensions.claro.appId", "{C3110516-8EFC-49D6-8B72-69354F332062}");
Deleted : user_pref("extensions.claro.dfltLng", "en");
Deleted : user_pref("extensions.claro.excTlbr", false);
Deleted : user_pref("extensions.claro.id", "7846ce46000000000000902b3464edbb");
Deleted : user_pref("extensions.claro.instlDay", "15690");
Deleted : user_pref("extensions.claro.instlRef", "sst");
Deleted : user_pref("extensions.claro.prdct", "claro");
Deleted : user_pref("extensions.claro.prtnrId", "claro");
Deleted : user_pref("extensions.claro.tlbrId", "base");
Deleted : user_pref("extensions.claro.tlbrSrchUrl", "");
Deleted : user_pref("extensions.claro.vrsn", "1.8.3.10");
Deleted : user_pref("extensions.claro.vrsni", "1.8.3.10");
Deleted : user_pref("extensions.claro_i.smplGrp", "none");
Deleted : user_pref("extensions.claro_i.vrsnTs", "1.8.3.1016:55:56");
Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.homepage", "hxxp://home.mywebsearch.com/index.jh[...]

-\\ Google Chrome v23.0.1271.97

File : C:\Users\korisnik\AppData\Local\Google\Chrome\User Data\Default\Preferences

Deleted [l.8] : homepage = "hxxp://www.claro-search.com/?affID=117423&tt=5012_8&babsrc=HP_ss&mntrId=7846ce460[...]
Deleted [l.12] : urls_to_restore_on_startup = [ "hxxp://www.claro-search.com/?affID=117423&tt=5012_8&babsrc[...]
Deleted [l.40] : icon_url = "hxxp://www.claro-search.com/favicon.ico",
Deleted [l.43] : keyword = "claro-search.com",
Deleted [l.46] : search_url = "hxxp://www.claro-search.com/?q={searchTerms}&affID=117423&tt=5012_8&babsrc=SP_s[...]
Deleted [l.1493] : homepage = "hxxp://www.claro-search.com/?affID=117423&tt=5012_8&babsrc=HP_ss&mntrId=7846ce460000[...]
Deleted [l.1950] : urls_to_restore_on_startup = [ "hxxp://www.claro-search.com/?affID=117423&tt=5012_8&babsrc=HP[...]

-\\ Opera v [Unable to get version]

File : C:\Users\korisnik\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [5993 octets] - [17/12/2012 19:20:37]
AdwCleaner[R2].txt - [6053 octets] - [17/12/2012 19:24:10]
AdwCleaner[S1].txt - [5768 octets] - [17/12/2012 19:27:54]

########## EOF - C:\AdwCleaner[S1].txt - [5828 octets] ##########

usput rečeno, izgleda da je nakon aktiviranja ovog programa nestao famozni Claro, mmmm....mu sad ću da proverim na ostale pretraživače.

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Pokreni ponovo AdwCleaner i klikni na tab Uninstall



Preuzmi TFC (Temp File Cleaner) i sacuvaj ga na Desktop.
Dvoklikom pokreni program i klikni na dugme Start da bi dozvolio programu da otpocne skeniranje.
Kada program zavrsi skeniranje,mozda ce zatraziti da restartujes racunar. Dozvoli mu.

Napomena: Kada zavrsis sa ciscenjem temp fajlova,program mozes obrisati ili ga sacuvati za kasniju upotrebu.


To bi bilo sve, pozdrav.

offline
  • Milan
  • penzioner
  • Pridružio: 20 Jul 2012
  • Poruke: 222

Napisano: 17 Dec 2012 19:39

ali se desilo nešto, prilikom restartovanja, nestao mi je onaj logo sa AdwCleanerom, nisam završio posao do kraja kako si mi rekao, ona bubica je jednosavno nestala.

Dopuna: 17 Dec 2012 19:41

u medjuvremenu je stigla ova tvoja poruka, sada sam video, ok

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

To nije trebalo da se desi, gde ti je bila ikonica na desktopu ili?

U svakom slucaju to nece da ti pravi nikakve probleme.

Ko je trenutno na forumu
 

Ukupno su 548 korisnika na forumu :: 8 registrovanih, 1 sakriven i 539 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: bigfoot, cikadeda, goxin, milenko crazy north, MilosKop, saputnik plavetnila, yuklll, zlaya011