JS:Iframe-DHY [Trj]

JS:Iframe-DHY [Trj]

offline
  • Arhitekta
  • Pridružio: 13 Okt 2009
  • Poruke: 79

Kompijuter mi strasno koci, kad otvaram mozilu moram da ceka, 1-2min. + moram da pokrenem vise puta. Tako skoro za sve, odziv posle klika misem je dosta dug. Kad otvorim mozilu AVAST anti virus javlja JS:Iframe-DHY [Trj] i ne mogu da ga izbrisem.
instalirao sam spy-boot za spayware, ali kad rekao da treba 300 minuta da zavrsi prekinuo sam.

FRST log :

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:01-06-2014 01
Ran by Roscinski dom (administrator) on SERBIA on 01-06-2014 17:16:40
Running from C:\Documents and Settings\Roscinski dom\Desktop
Platform: Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Atheros) C:\WINDOWS\system32\acs.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(LogMeIn, Inc.) C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
(NVIDIA) C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
() C:\Program Files\TP-LINK\TP-LINK Wireless Client Utility\TWCU.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\soundman.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [TWCU] => C:\Program Files\TP-LINK\TP-LINK Wireless Client Utility\TWCU.exe [561263 2010-05-21] ()
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation)
HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [13529088 2008-05-16] (NVIDIA Corporation)
HKLM\...\Run: [nwiz] => nwiz.exe /install
HKLM\...\Run: [SoundMan] => C:\WINDOWS\SOUNDMAN.EXE [577536 2007-04-16] (Realtek Semiconductor Corp.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3888648 2014-06-01] (AVAST Software)
HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKU\S-1-5-21-1060284298-261478967-1177238915-1003\...\MountPoints2: {4b7ade29-aaaa-11e3-b029-d9de8e8a09ae} - F:\Startme.exe

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - &Address - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Roscinski dom\Application Data\Mozilla\Firefox\Profiles\7hvioes4.default
FF Homepage: google.com
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw_1211151.dll (Adobe Systems, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @nokia.com/EnablerPlugin - C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazon-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-en-GB.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pogodakyu.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\vokabular.xml
FF Extension: Flash Player - C:\Documents and Settings\Roscinski dom\Application Data\Mozilla\Firefox\Profiles\7hvioes4.default\Extensions\uoyAdfHEWKLavbzHG@GvBVViwk5x6JiA7Rbk7S.com.xpi [2014-05-29]
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-06-01]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-06-01]

========================== Services (Whitelisted) =================

R2 ACS; C:\WINDOWS\system32\acs.exe [499796 2010-05-21] (Atheros)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-06-01] (AVAST Software)
R2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1682768 2014-05-13] (LogMeIn Inc.)
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-05-07] (Oracle Corporation)
R2 LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [375056 2014-04-15] (LogMeIn, Inc.)
R2 nTuneService; C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe [126976 2007-04-04] (NVIDIA)
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
S2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)

==================== Drivers (Whitelisted) ====================

R3 ALCXWDM; C:\WINDOWS\System32\drivers\ALCXWDM.SYS [4122368 2008-09-24] (Realtek Semiconductor Corp.)
R3 AR9271; C:\WINDOWS\System32\DRIVERS\athuw.sys [1714176 2010-01-05] (Atheros Communications, Inc.)
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-06-01] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2014-06-01] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [54832 2014-06-01] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-06-01] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [777488 2014-06-01] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [411680 2014-06-01] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57672 2014-06-01] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [180632 2014-06-01] ()
R1 dtsoftbus01; C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys [243128 2014-02-25] (Disc Soft Ltd)
R3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
R0 nvatabus; C:\WINDOWS\System32\DRIVERS\nvatabus.sys [100736 2006-05-01] (NVIDIA Corporation)
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [6912 2007-04-04] (NVidia Corp.)
R0 nv_agp; C:\WINDOWS\System32\DRIVERS\nv_agp.sys [21760 2004-04-27] (NVIDIA Corporation)
R3 WSIMD; C:\WINDOWS\System32\DRIVERS\wsimd.sys [58208 2010-05-21] (Atheros Communications, Inc.)
S4 IntelIde; No ImagePath
S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X]
U1 WS2IFSL;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-06-01 17:16 - 2014-06-01 17:16 - 00009542 _____ () C:\Documents and Settings\Roscinski dom\Desktop\FRST.txt
2014-06-01 17:16 - 2014-06-01 17:16 - 00000000 ____D () C:\FRST
2014-06-01 17:14 - 2014-06-01 17:14 - 01058304 _____ (Farbar) C:\Documents and Settings\Roscinski dom\Desktop\FRST.exe
2014-06-01 15:35 - 2014-06-01 15:36 - 00000644 _____ () C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job
2014-06-01 15:35 - 2014-06-01 15:36 - 00000446 _____ () C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job
2014-06-01 15:35 - 2014-06-01 15:35 - 00000616 _____ () C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job
2014-06-01 15:34 - 2014-06-01 15:34 - 00065536 _____ () C:\WINDOWS\system32\config\SpybotSD.evt
2014-06-01 15:34 - 2014-06-01 15:34 - 00001842 _____ () C:\Documents and Settings\All Users\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-06-01 15:34 - 2014-06-01 15:34 - 00001836 _____ () C:\Documents and Settings\All Users\Desktop\Spybot-S&D Start Center.lnk
2014-06-01 15:34 - 2014-06-01 15:34 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Spybot - Search & Destroy 2
2014-06-01 15:33 - 2014-06-01 17:06 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2014-06-01 15:33 - 2014-06-01 15:40 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-06-01 15:33 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean.exe
2014-06-01 02:46 - 2014-06-01 02:49 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Desktop\Virus Removal Instruction How to Remove JS Iframe-DHY [Trj], Help with Getting of JS Iframe-DHY [Trj] Permanently_подаци
2014-06-01 02:46 - 2014-06-01 02:46 - 00107149 _____ () C:\Documents and Settings\Roscinski dom\Desktop\Virus Removal Instruction How to Remove JS Iframe-DHY [Trj], Help with Getting of JS Iframe-DHY [Trj] Permanently.html
2014-06-01 02:23 - 2014-06-01 16:28 - 00000900 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-01 02:23 - 2014-06-01 15:20 - 00000896 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-01 02:23 - 2014-06-01 02:23 - 00000000 ____D () C:\Program Files\Google
2014-06-01 02:23 - 2014-06-01 02:23 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\Google
2014-06-01 02:20 - 2014-06-01 02:20 - 00000775 _____ () C:\Documents and Settings\Roscinski dom\Start Menu\BS.Player FREE.lnk
2014-06-01 02:20 - 2014-06-01 02:20 - 00000775 _____ () C:\Documents and Settings\Roscinski dom\Desktop\BS.Player FREE.lnk
2014-06-01 02:20 - 2014-06-01 02:20 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Start Menu\Programs\BS.Player
2014-06-01 02:17 - 2014-06-01 02:49 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Application Data\BSplayer
2014-06-01 02:17 - 2014-06-01 02:17 - 00000000 ____D () C:\Program Files\Webteh
2014-06-01 02:17 - 2014-06-01 02:17 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Application Data\BSplayer Pro
2014-06-01 02:07 - 2014-06-01 02:07 - 00001442 _____ () C:\WINDOWS\COM+.log
2014-06-01 02:04 - 2014-06-01 02:04 - 00159096 _____ () C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2014-06-01 02:01 - 2014-06-01 02:01 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer
2014-06-01 02:00 - 2014-06-01 02:00 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-06-01 02:00 - 2006-06-29 13:07 - 00014048 ____N (Microsoft Corporation) C:\WINDOWS\system32\spmsg2.dll
2014-06-01 01:55 - 2014-06-01 01:55 - 00000000 ____D () C:\WINDOWS\system32\URTTEMP
2014-06-01 01:25 - 2014-06-01 01:25 - 00000856 _____ () C:\Documents and Settings\Roscinski dom\Start Menu\µTorrent.lnk
2014-06-01 01:25 - 2014-06-01 01:25 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\APN
2014-06-01 01:24 - 2014-06-01 02:07 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Application Data\uTorrent
2014-06-01 00:53 - 2014-06-01 00:53 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\Temp
2014-06-01 00:40 - 2014-06-01 00:40 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Application Data\AVAST Software
2014-06-01 00:39 - 2014-06-01 00:39 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Avast
2014-06-01 00:37 - 2014-06-01 15:28 - 00000378 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-06-01 00:36 - 2014-06-01 00:38 - 00777488 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-06-01 00:36 - 2014-06-01 00:38 - 00411680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-06-01 00:36 - 2014-06-01 00:38 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswrdr.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00776976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys.1401575887937
2014-06-01 00:36 - 2014-06-01 00:36 - 00271264 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-06-01 00:36 - 2014-06-01 00:36 - 00180632 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswrdr.sys.1401575887937
2014-06-01 00:36 - 2014-06-01 00:36 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-06-01 00:36 - 2014-06-01 00:36 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-06-01 00:35 - 2014-06-01 00:35 - 00000000 ____D () C:\Program Files\AVAST Software
2014-06-01 00:07 - 2014-06-01 00:07 - 00000000 ____D () C:\Program Files\AtuZi
2014-06-01 00:07 - 2008-04-13 22:47 - 00083072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wdmaud.sys
2014-06-01 00:07 - 2008-04-13 22:47 - 00083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wdmaud.sys
2014-06-01 00:07 - 2008-04-13 22:15 - 00056576 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\swmidi.sys
2014-06-01 00:07 - 2008-04-13 22:15 - 00056576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swmidi.sys
2014-06-01 00:07 - 2008-04-13 22:15 - 00052864 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dmusic.sys
2014-06-01 00:07 - 2008-04-13 22:15 - 00052864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\DMusic.sys
2014-06-01 00:07 - 2008-04-13 22:15 - 00006272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\splitter.sys
2014-06-01 00:07 - 2008-04-13 22:15 - 00006272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\splitter.sys
2014-06-01 00:07 - 2006-08-01 15:02 - 00049152 _____ () C:\WINDOWS\system32\ChCfg.exe
2014-06-01 00:06 - 2014-06-01 00:06 - 00000000 ____D () C:\Program Files\Realtek AC97
2014-06-01 00:06 - 2008-09-24 10:40 - 04122368 ____R (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\alcxwdm.sys
2014-06-01 00:06 - 2008-04-14 03:42 - 00129536 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksproxy.ax
2014-06-01 00:06 - 2008-04-14 03:42 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2014-06-01 00:06 - 2008-04-14 03:41 - 00004096 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ksuser.dll
2014-06-01 00:06 - 2008-04-14 03:41 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksuser.dll
2014-06-01 00:06 - 2008-04-13 22:49 - 00146048 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\portcls.sys
2014-06-01 00:06 - 2008-04-13 22:49 - 00146048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2014-06-01 00:06 - 2008-04-13 22:45 - 00060800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\sysaudio.sys
2014-06-01 00:06 - 2008-04-13 22:45 - 00060800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sysaudio.sys
2014-06-01 00:06 - 2008-04-13 22:15 - 00172416 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\kmixer.sys
2014-06-01 00:06 - 2008-04-13 22:15 - 00172416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kmixer.sys
2014-06-01 00:06 - 2008-04-13 22:15 - 00060160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmk.sys
2014-06-01 00:06 - 2008-04-13 22:15 - 00060160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2014-06-01 00:06 - 2008-04-13 22:15 - 00002944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\drmkaud.sys
2014-06-01 00:06 - 2008-04-13 22:15 - 00002944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2014-06-01 00:06 - 2008-04-13 22:09 - 00007552 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mskssrv.sys
2014-06-01 00:06 - 2008-04-13 22:09 - 00007552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSKSSRV.sys
2014-06-01 00:06 - 2008-04-13 22:09 - 00005376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspclock.sys
2014-06-01 00:06 - 2008-04-13 22:09 - 00005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPCLOCK.sys
2014-06-01 00:06 - 2008-04-13 22:09 - 00004992 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mspqm.sys
2014-06-01 00:06 - 2008-04-13 22:09 - 00004992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MSPQM.sys
2014-06-01 00:06 - 2008-04-13 20:09 - 00142592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\aec.sys
2014-06-01 00:06 - 2008-04-13 20:09 - 00142592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\aec.sys
2014-06-01 00:06 - 2007-04-16 15:28 - 00577536 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\soundman.exe
2014-06-01 00:06 - 2006-12-08 15:20 - 10528768 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTLCPL.exe
2014-06-01 00:06 - 2006-11-17 05:40 - 18804736 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\alsndmgr.cpl
2014-06-01 00:06 - 2006-10-18 02:53 - 00147456 _____ () C:\WINDOWS\system32\RtlCPAPI.dll
2014-06-01 00:06 - 2002-02-05 13:54 - 00141016 _____ () C:\WINDOWS\system32\alsndmgr.wav
2014-06-01 00:05 - 2006-07-31 11:27 - 00217088 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\Alcrmv.exe
2014-06-01 00:05 - 2006-07-31 11:19 - 00315392 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\alcupd.exe
2014-05-31 02:52 - 2014-05-31 02:53 - 00000000 ____D () C:\WINDOWS\system32\Adobe
2014-05-31 02:48 - 2014-06-01 15:21 - 00186097 _____ () C:\WINDOWS\system32\nvapps.xml
2014-05-31 02:48 - 2014-05-31 02:48 - 00000000 ____D () C:\WINDOWS\nview
2014-05-31 02:48 - 2014-05-31 02:48 - 00000000 ____D () C:\NVIDIA
2014-05-31 02:48 - 2008-05-16 14:01 - 00446464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvudisp.exe
2014-05-31 02:48 - 2008-05-16 14:01 - 00018070 _____ () C:\WINDOWS\system32\nvdisp.nvu
2014-05-31 02:39 - 2014-05-31 02:39 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\NVIDIA
2014-05-31 02:32 - 2014-05-31 02:32 - 00003964 _____ () C:\WINDOWS\system32\jupdate-1.7.0_60-b19.log
2014-05-31 02:32 - 2014-05-31 02:32 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-05-31 02:32 - 2014-05-31 02:32 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Java
2014-05-31 02:32 - 2014-05-07 15:02 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-05-31 02:32 - 2014-05-07 14:59 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2014-05-31 02:32 - 2014-05-07 14:59 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2014-05-31 02:32 - 2014-05-07 14:58 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2014-05-31 02:32 - 2014-05-07 14:42 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2014-05-31 02:29 - 2014-06-01 01:01 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\Adobe
2014-05-31 01:04 - 2014-06-01 17:03 - 00000000 ____D () C:\Documents and Settings\LocalService\Local Settings\Application Data\LogMeIn Hamachi
2014-05-31 01:04 - 2014-06-01 16:30 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\LogMeIn Hamachi
2014-05-31 01:03 - 2014-05-31 01:03 - 00000685 _____ () C:\Documents and Settings\All Users\Desktop\LogMeIn Hamachi.lnk
2014-05-31 01:03 - 2014-05-31 01:03 - 00000000 ____D () C:\Program Files\LogMeIn Hamachi
2014-05-31 01:03 - 2014-05-31 01:03 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\LogMeIn Hamachi
2014-05-31 00:28 - 2014-05-31 00:28 - 00001619 _____ () C:\Documents and Settings\All Users\Desktop\Command & Conquer Generals Zero Hour .lnk
2014-05-30 23:37 - 2014-05-30 23:37 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\LogMeIn
2014-05-30 23:37 - 2014-05-30 23:37 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\LogMeIn
2014-05-30 16:06 - 2014-06-01 00:00 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\My Documents\Command and Conquer Generals Zero Hour Data
2014-05-30 15:58 - 2014-05-31 00:31 - 00000978 _____ () C:\WINDOWS\eReg.dat
2014-05-30 15:54 - 2014-05-31 00:28 - 00000000 ____D () C:\Program Files\EA Games
2014-05-30 15:54 - 2014-05-31 00:28 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\EA Games
2014-05-30 15:49 - 2014-05-30 15:49 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Desktop\generals-zh-v104_(zabranjeno)
2014-05-30 15:47 - 2014-05-30 15:49 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Desktop\Command and Conquer Generals - Zero Hour
2014-05-28 10:04 - 2014-05-28 10:14 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Desktop\Eco-style
2014-05-25 00:24 - 2014-05-25 00:35 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-05-10 10:53 - 2014-05-10 10:53 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-05-05 11:30 - 2014-06-01 02:38 - 00000000 ____D () C:\WINDOWS\system32\appmgmt
2014-05-05 10:17 - 2014-05-05 10:17 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\My Documents\Projekti Merosina
2014-05-05 10:17 - 2014-05-05 10:17 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\My Documents\Eko-kompleks-divcibare
2014-05-02 23:47 - 2014-05-02 23:47 - 00005537 _____ () C:\WINDOWS\KB2964358-IE8.log

==================== One Month Modified Files and Folders =======

2014-06-01 17:17 - 2014-02-24 17:58 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Temp
2014-06-01 17:16 - 2014-06-01 17:16 - 00009542 _____ () C:\Documents and Settings\Roscinski dom\Desktop\FRST.txt
2014-06-01 17:16 - 2014-06-01 17:16 - 00000000 ____D () C:\FRST
2014-06-01 17:14 - 2014-06-01 17:14 - 01058304 _____ (Farbar) C:\Documents and Settings\Roscinski dom\Desktop\FRST.exe
2014-06-01 17:14 - 2014-02-24 18:29 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\My Documents\Преузимања
2014-06-01 17:11 - 2014-03-13 15:52 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-06-01 17:06 - 2014-06-01 15:33 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2014-06-01 17:06 - 2014-02-24 17:52 - 01759014 _____ () C:\WINDOWS\WindowsUpdate.log
2014-06-01 17:03 - 2014-05-31 01:04 - 00000000 ____D () C:\Documents and Settings\LocalService\Local Settings\Application Data\LogMeIn Hamachi
2014-06-01 16:30 - 2014-05-31 01:04 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\LogMeIn Hamachi
2014-06-01 16:28 - 2014-06-01 02:23 - 00000900 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-01 15:40 - 2014-06-01 15:33 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-06-01 15:40 - 2014-02-24 17:57 - 00000000 __SHD () C:\Documents and Settings\LocalService
2014-06-01 15:36 - 2014-06-01 15:35 - 00000644 _____ () C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job
2014-06-01 15:36 - 2014-06-01 15:35 - 00000446 _____ () C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job
2014-06-01 15:35 - 2014-06-01 15:35 - 00000616 _____ () C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job
2014-06-01 15:34 - 2014-06-01 15:34 - 00065536 _____ () C:\WINDOWS\system32\config\SpybotSD.evt
2014-06-01 15:34 - 2014-06-01 15:34 - 00001842 _____ () C:\Documents and Settings\All Users\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-06-01 15:34 - 2014-06-01 15:34 - 00001836 _____ () C:\Documents and Settings\All Users\Desktop\Spybot-S&D Start Center.lnk
2014-06-01 15:34 - 2014-06-01 15:34 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Spybot - Search & Destroy 2
2014-06-01 15:28 - 2014-06-01 00:37 - 00000378 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-06-01 15:21 - 2014-05-31 02:48 - 00186097 _____ () C:\WINDOWS\system32\nvapps.xml
2014-06-01 15:20 - 2014-06-01 02:23 - 00000896 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-01 15:20 - 2014-02-24 18:46 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-06-01 15:20 - 2014-02-24 18:46 - 00000048 _____ () C:\WINDOWS\wiaservc.log
2014-06-01 15:20 - 2014-02-24 17:57 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-06-01 03:43 - 2014-02-24 17:57 - 00032600 _____ () C:\WINDOWS\SchedLgU.Txt
2014-06-01 03:42 - 2014-02-24 18:04 - 00393216 _____ () C:\WINDOWS\system32\config\ACS.evt
2014-06-01 03:42 - 2014-02-24 17:58 - 00000178 ___SH () C:\Documents and Settings\Roscinski dom\ntuser.ini
2014-06-01 03:22 - 2014-02-25 00:31 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2014-06-01 02:49 - 2014-06-01 02:46 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Desktop\Virus Removal Instruction How to Remove JS Iframe-DHY [Trj], Help with Getting of JS Iframe-DHY [Trj] Permanently_подаци
2014-06-01 02:49 - 2014-06-01 02:17 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Application Data\BSplayer
2014-06-01 02:46 - 2014-06-01 02:46 - 00107149 _____ () C:\Documents and Settings\Roscinski dom\Desktop\Virus Removal Instruction How to Remove JS Iframe-DHY [Trj], Help with Getting of JS Iframe-DHY [Trj] Permanently.html
2014-06-01 02:38 - 2014-05-05 11:30 - 00000000 ____D () C:\WINDOWS\system32\appmgmt
2014-06-01 02:38 - 2014-03-13 01:51 - 00022464 _____ () C:\WINDOWS\DPINST.LOG
2014-06-01 02:23 - 2014-06-01 02:23 - 00000000 ____D () C:\Program Files\Google
2014-06-01 02:23 - 2014-06-01 02:23 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\Google
2014-06-01 02:20 - 2014-06-01 02:20 - 00000775 _____ () C:\Documents and Settings\Roscinski dom\Start Menu\BS.Player FREE.lnk
2014-06-01 02:20 - 2014-06-01 02:20 - 00000775 _____ () C:\Documents and Settings\Roscinski dom\Desktop\BS.Player FREE.lnk
2014-06-01 02:20 - 2014-06-01 02:20 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Start Menu\Programs\BS.Player
2014-06-01 02:17 - 2014-06-01 02:17 - 00000000 ____D () C:\Program Files\Webteh
2014-06-01 02:17 - 2014-06-01 02:17 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Application Data\BSplayer Pro
2014-06-01 02:08 - 2014-02-24 18:43 - 00267008 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-06-01 02:07 - 2014-06-01 02:07 - 00001442 _____ () C:\WINDOWS\COM+.log
2014-06-01 02:07 - 2014-06-01 01:24 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Application Data\uTorrent
2014-06-01 02:05 - 2014-02-24 18:44 - 00522620 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-06-01 02:04 - 2014-06-01 02:04 - 00159096 _____ () C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2014-06-01 02:01 - 2014-06-01 02:01 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer
2014-06-01 02:00 - 2014-06-01 02:00 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-06-01 02:00 - 2014-02-24 18:38 - 00000000 ____D () C:\WINDOWS\system32\spool
2014-06-01 01:55 - 2014-06-01 01:55 - 00000000 ____D () C:\WINDOWS\system32\URTTEMP
2014-06-01 01:55 - 2014-02-24 17:50 - 00000000 ____D () C:\WINDOWS\Registration
2014-06-01 01:25 - 2014-06-01 01:25 - 00000856 _____ () C:\Documents and Settings\Roscinski dom\Start Menu\µTorrent.lnk
2014-06-01 01:25 - 2014-06-01 01:25 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\APN
2014-06-01 01:01 - 2014-05-31 02:29 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\Adobe
2014-06-01 00:53 - 2014-06-01 00:53 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\Temp
2014-06-01 00:51 - 2014-02-24 18:42 - 00000211 ___SH () C:\boot.ini
2014-06-01 00:51 - 2008-04-14 14:00 - 00000552 _____ () C:\WINDOWS\win.ini
2014-06-01 00:51 - 2008-04-14 14:00 - 00000227 _____ () C:\WINDOWS\system.ini
2014-06-01 00:40 - 2014-06-01 00:40 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Application Data\AVAST Software
2014-06-01 00:39 - 2014-06-01 00:39 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Avast
2014-06-01 00:38 - 2014-06-01 00:36 - 00777488 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-06-01 00:38 - 2014-06-01 00:36 - 00411680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-06-01 00:38 - 2014-06-01 00:36 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswrdr.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00776976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys.1401575887937
2014-06-01 00:36 - 2014-06-01 00:36 - 00271264 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-06-01 00:36 - 2014-06-01 00:36 - 00180632 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswrdr.sys.1401575887937
2014-06-01 00:36 - 2014-06-01 00:36 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-06-01 00:36 - 2014-06-01 00:36 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-06-01 00:36 - 2014-06-01 00:36 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-06-01 00:35 - 2014-06-01 00:35 - 00000000 ____D () C:\Program Files\AVAST Software
2014-06-01 00:32 - 2014-02-24 18:48 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\AVAST Software
2014-06-01 00:14 - 2014-02-24 18:43 - 00578026 _____ () C:\WINDOWS\setupapi.log
2014-06-01 00:10 - 2014-04-28 02:38 - 00068848 _____ () C:\Documents and Settings\LocalService\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2014-06-01 00:07 - 2014-06-01 00:07 - 00000000 ____D () C:\Program Files\AtuZi
2014-06-01 00:06 - 2014-06-01 00:06 - 00000000 ____D () C:\Program Files\Realtek AC97
2014-06-01 00:05 - 2014-02-24 18:02 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2014-06-01 00:00 - 2014-05-30 16:06 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\My Documents\Command and Conquer Generals Zero Hour Data
2014-05-31 02:53 - 2014-05-31 02:52 - 00000000 ____D () C:\WINDOWS\system32\Adobe
2014-05-31 02:48 - 2014-05-31 02:48 - 00000000 ____D () C:\WINDOWS\nview
2014-05-31 02:48 - 2014-05-31 02:48 - 00000000 ____D () C:\NVIDIA
2014-05-31 02:48 - 2014-03-15 18:23 - 00000000 ____D () C:\Program Files\Common Files\InstallShield
2014-05-31 02:48 - 2014-03-15 18:22 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups
2014-05-31 02:48 - 2014-02-24 18:38 - 00000000 ____D () C:\WINDOWS\Help
2014-05-31 02:39 - 2014-05-31 02:39 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\NVIDIA
2014-05-31 02:32 - 2014-05-31 02:32 - 00003964 _____ () C:\WINDOWS\system32\jupdate-1.7.0_60-b19.log
2014-05-31 02:32 - 2014-05-31 02:32 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-05-31 02:32 - 2014-05-31 02:32 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Java
2014-05-31 02:32 - 2014-02-24 18:57 - 00000000 ____D () C:\Program Files\Java
2014-05-31 02:29 - 2014-03-13 15:55 - 00000000 ____D () C:\Program Files\Common Files\Adobe AIR
2014-05-31 02:28 - 2014-02-24 18:39 - 00692400 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-05-31 02:28 - 2014-02-24 18:39 - 00070832 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-05-31 01:03 - 2014-05-31 01:03 - 00000685 _____ () C:\Documents and Settings\All Users\Desktop\LogMeIn Hamachi.lnk
2014-05-31 01:03 - 2014-05-31 01:03 - 00000000 ____D () C:\Program Files\LogMeIn Hamachi
2014-05-31 01:03 - 2014-05-31 01:03 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\LogMeIn Hamachi
2014-05-31 00:31 - 2014-05-30 15:58 - 00000978 _____ () C:\WINDOWS\eReg.dat
2014-05-31 00:28 - 2014-05-31 00:28 - 00001619 _____ () C:\Documents and Settings\All Users\Desktop\Command & Conquer Generals Zero Hour .lnk
2014-05-31 00:28 - 2014-05-30 15:54 - 00000000 ____D () C:\Program Files\EA Games
2014-05-31 00:28 - 2014-05-30 15:54 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\EA Games
2014-05-30 23:37 - 2014-05-30 23:37 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\LogMeIn
2014-05-30 23:37 - 2014-05-30 23:37 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\LogMeIn
2014-05-30 16:32 - 2014-02-24 18:48 - 00068848 _____ () C:\Documents and Settings\Roscinski dom\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2014-05-30 15:49 - 2014-05-30 15:49 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Desktop\generals-zh-v104_(zabranjeno)
2014-05-30 15:49 - 2014-05-30 15:47 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Desktop\Command and Conquer Generals - Zero Hour
2014-05-30 15:14 - 2008-04-14 14:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2014-05-28 10:14 - 2014-05-28 10:04 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\Desktop\Eco-style
2014-05-25 00:35 - 2014-05-25 00:24 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-05-25 00:16 - 2014-02-25 02:07 - 00002347 _____ () C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Reader XI.lnk
2014-05-25 00:16 - 2014-02-25 02:06 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-05-25 00:12 - 2014-04-29 01:11 - 17938608 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-05-14 12:25 - 2014-02-25 00:39 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Microsoft Help
2014-05-11 11:53 - 2014-02-24 18:24 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-05-10 10:53 - 2014-05-10 10:53 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-05-07 15:02 - 2014-05-31 02:32 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-05-07 14:59 - 2014-05-31 02:32 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2014-05-07 14:59 - 2014-05-31 02:32 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2014-05-07 14:58 - 2014-05-31 02:32 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2014-05-07 14:42 - 2014-05-31 02:32 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2014-05-05 10:17 - 2014-05-05 10:17 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\My Documents\Projekti Merosina
2014-05-05 10:17 - 2014-05-05 10:17 - 00000000 ____D () C:\Documents and Settings\Roscinski dom\My Documents\Eko-kompleks-divcibare
2014-05-05 10:12 - 2014-02-24 18:43 - 00176094 _____ () C:\WINDOWS\setupact.log
2014-05-04 17:14 - 2014-02-25 04:43 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-05-02 23:47 - 2014-05-02 23:47 - 00005537 _____ () C:\WINDOWS\KB2964358-IE8.log
2014-05-02 23:47 - 2014-02-25 04:47 - 00000000 ____D () C:\WINDOWS\ie8updates
2014-05-02 23:47 - 2014-02-25 04:00 - 00060446 _____ () C:\WINDOWS\updspapi.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00882069 _____ () C:\WINDOWS\iis6.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00790585 _____ () C:\WINDOWS\FaxSetup.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00520270 _____ () C:\WINDOWS\ocgen.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00366312 _____ () C:\WINDOWS\tsoc.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00272162 _____ () C:\WINDOWS\comsetup.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00245864 _____ () C:\WINDOWS\msmqinst.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00163377 _____ () C:\WINDOWS\ntdtcsetup.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00139248 _____ () C:\WINDOWS\netfxocm.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00055037 _____ () C:\WINDOWS\MedCtrOC.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00043635 _____ () C:\WINDOWS\ocmsn.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00040700 _____ () C:\WINDOWS\tabletoc.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00039805 _____ () C:\WINDOWS\msgsocm.log
2014-05-02 23:47 - 2014-02-24 18:44 - 00001355 _____ () C:\WINDOWS\imsins.log

Some content of TEMP:
====================
C:\Documents and Settings\Roscinski dom\Local Settings\Temp\ose00000.exe


==================== Bamital & volsnap Check =================

C:\WINDOWS\explorer.exe => MD5 is legit
C:\WINDOWS\system32\winlogon.exe => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
C:\WINDOWS\system32\User32.dll => MD5 is legit
C:\WINDOWS\system32\userinit.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\volsnap.sys => MD5 is legit

==================== End Of Log ============================



mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Otvori Notepad i iskopiraj sljedeći tekst koji se nalazi unutar Kod polja.

FF Extension: Flash Player - C:\Documents and Settings\Roscinski dom\Application Data\Mozilla\Firefox\Profiles\7hvioes4.default\Extensions\uoyAdfHEWKLavbzHG@GvBVViwk5x6JiA7Rbk7S.com.xpi [2014-05-29]


U okviru Notepad-a klikni na File --> Save As
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se Notepad, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt). Potrebno je da sadržaj fixlog.txt kopiraš na forum

offline
  • Arhitekta
  • Pridružio: 13 Okt 2009
  • Poruke: 79

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:01-06-2014 01
Ran by Roscinski dom at 2014-06-01 18:20:58 Run:1
Running from C:\Documents and Settings\Roscinski dom\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
FF Extension: Flash Player - C:\Documents and Settings\Roscinski dom\Application Data\Mozilla\Firefox\Profiles\7hvioes4.default\Extensions\uoyAdfHEWKLavbzHG@GvBVViwk5x6JiA7Rbk7S.com.xpi [2014-05-29]
*****************

C:\Documents and Settings\Roscinski dom\Application Data\Mozilla\Firefox\Profiles\7hvioes4.default\Extensions\uoyAdfHEWKLavbzHG@GvBVViwk5x6JiA7Rbk7S.com.xpi => Moved successfully.

==== End of Fixlog ====
mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Kakvo je sada stanje?


Arrow

Preuzmite program GMER sa donjeg linka na Desktop:


GMER download
Kliknite dati link;
Kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati file, odaberite Desktop i kliknite Save.



Dvoklikom pokrenite GMER.
Sačekajte da se završi uvodno skeniranje - ukoliko se pojavi bilo kakav upit, kliknite No;

kliknite Scan i sačekajte da skeniranje bude završeno;

kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer1);

kliknite desnim tasterom u prozor programa Gmer i odaberite Options > 3rd party - kliknite Scan;

po završetku skeniranja kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer2);

kliknite taster >>> i odaberite Autostart karticu;

po završetku kratkotrajnog skeniranja, kliknite Copy;

otvorite Notepad i u njega postavite kopirani tekst - izveštaj sačuvajte na Desktop (pod nazivom Gmer3);


Slikoviti prikaz postupka

Priložite sva tri izveštaja uz poruku korišćenjem opcije Prikači fajl.

offline
  • Arhitekta
  • Pridružio: 13 Okt 2009
  • Poruke: 79

Ne pojavljuje se vise virus, ali ne znam zbog cega mi you tube koci, kad pustim neki spot muzika se cuje ok, ali snimak mnogo koci i kasni -preskace . Flash,java ,shockwave su instalirani novije verzije. Sta da radim ? evo perdhodni logo sto ste trazili.
mycity.rs/must-login.png

mycity.rs/must-login.png

mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Sudeći po izvještajima koje si postavio, tvoj sistem je sada čist.

Ostaje ti još da uradiš sljedeće:


Arrow

Sledeća procedura će implementirati završno čišćenje.

Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.
Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;

Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.
Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)

Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
Alat briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.




Arrow

Preporučujem da za zaštitu USB memorijskih uređaja koristiš MCShield.
Nema nikakve veze sa antivirus-om tj. neće ometati njegov rad, a pokazao se kao jedan od najboljih vida zaštite od malware-a koji se prenosi putem USB mem. uređaja.


Home Page MCShield-a: http://www.mcshield.net
Više o MCShield-u možeš saznati u ovoj temi: http://www.mycity.rs/MyCity-Laboratorija/MCShield-v3.html
Facebook stranica MCShield-a: http://www.facebook.com/MCShield



Arrow

Što se tiče problema koje imaš sa YouTube videom, razlog prije svega leži u slaboj konfiguraciji. Koliko vidim u izvještaju imaš samo 768MiB radne memorije što je malo za današnje zathjeve browsera i web stranica. Ono što ti mogu preporučiti jeste da isprobaš neke od savjeta u ovoj temi:

http://www.mycity.rs/Internet-servisi/Resenje-Prob.....yer-a.html

offline
  • Arhitekta
  • Pridružio: 13 Okt 2009
  • Poruke: 79

Veliko postovanje , hvala vam !!!pozz

Ko je trenutno na forumu
 

Ukupno su 990 korisnika na forumu :: 25 registrovanih, 1 sakriven i 964 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., babaroga, bbogdan, Bubimir, Djole, hyla, indja, jackreacher011011, ksyyaj, ladro, laurusri, Lazarus, Marko Marković, marsovac 2, Milos82, Mixelotti, mrav pesadinac, nedeljkovici, nuke92, operniki, pavlo, RecA, Smiljke, yufighter, 125