Komp i sistem prolupali

1

Komp i sistem prolupali

offline
  • Pridružio: 18 Apr 2009
  • Poruke: 34

Napisano: 30 Maj 2015 16:39

Primetio sam da je sistem usporio.Prilikom dizanja sistema,gasenja,surfovanja netom, treba mu vise vremena za otvaranje stranica, i desava mi se da me kursor ne slusa. Takodje mi se cini da je i otvaranje nekih programa sporije nego sto je bilo ranije.Problem je poceo da se pojavljuje od prilike pre nekih 7 dana,probao sam da ga resim uz pomoc nod32 antivirus 8.Konekcija bezicni net 2mb

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 29-05-2015
Ran by SelenA (administrator) on SELENA-PC on 30-05-2015 16:36:13
Running from C:\Users\SelenA\Downloads
Loaded Profiles: SelenA (Available Profiles: SelenA)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: [Link mogu videti samo ulogovani korisnici]

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
() C:\ProgramData\DatacardService\HWDeviceService.exe
( ) C:\Windows\System32\lxdxcoms.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
() C:\ProgramData\Telenor Internet\OnlineUpdate\ouc.exe
() C:\Users\SelenA\AppData\Local\Viber\Viber.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\UI0Detect.exe
() C:\Windows\winsys.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
(Emsisoft Ltd) C:\Program Files\Emsisoft Anti-Malware\a2service.exe
(Emsisoft Ltd) C:\Program Files\Emsisoft Anti-Malware\a2guard.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5088456 2015-01-28] (ESET)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM\...\Run: [emsisoft anti-malware] => c:\program files\emsisoft anti-malware\a2guard.exe [4923832 2015-05-30] (Emsisoft Ltd)
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5529880 2015-03-13] (Piriform Ltd)
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [Viber] => C:\Users\SelenA\AppData\Local\Viber\Viber.exe [80036560 2015-05-25] ()
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [SysUtils] => C:\Windows\winsys.exe [2355712 2012-01-01] ()
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\MountPoints2: {6130e2d3-585a-11e4-b749-001167000000} - E:\AutoRun.exe
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = [Link mogu videti samo ulogovani korisnici]
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: BitComet Helper -> {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} -> C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll [2013-11-29] (BitComet)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-04-24] (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-24] (Oracle Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.88.1
Tcpip\..\Interfaces\{76B90091-229D-40A4-855A-62DDEB1F60D5}: [NameServer] 217.65.192.101 217.65.192.102
Tcpip\..\Interfaces\{7A6CE973-9C7B-4DD7-999E-758511D6B87D}: [NameServer] 217.65.192.101 217.65.192.102
Tcpip\..\Interfaces\{885484B4-9073-4A39-8494-B0D9C1C4AC13}: [NameServer] 217.65.192.101 217.65.192.102
Tcpip\..\Interfaces\{F6B3B155-C830-4D93-860B-4A639E27770B}: [NameServer] 217.65.192.101 217.65.192.102

FireFox:
========
FF ProfilePath: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default
FF Homepage: [Link mogu videti samo ulogovani korisnici]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-05-25] ()
FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-24] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-24] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npwachk.dll [2010-01-14] (Nullsoft, Inc.)
FF SearchPlugin: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\searchplugins\podnapisinet.xml [2015-03-19]
FF Extension: BitComet Video Downloader - C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} [2014-11-05]
FF Extension: Topface. Meeting is easy - C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\Extensions\jid1-XsAruLV1bBBn9Q@jetpack.xpi [2015-04-03]
FF Extension: Adblock Plus - C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-27]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-01]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

Chrome:
=======
CHR Profile: C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-29]
CHR Extension: (Google Docs) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-29]
CHR Extension: (Google Drive) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-29]
CHR Extension: (YouTube) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-29]
CHR Extension: (Google Search) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-29]
CHR Extension: (Google Sheets) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-29]
CHR Extension: (Bookmark Manager) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-29]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-05-29]
CHR Extension: (Google Wallet) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-29]
CHR Extension: (Gmail) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-29]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 a2AntiMalware; C:\Program Files\Emsisoft Anti-Malware\a2service.exe [5155576 2015-05-30] (Emsisoft Ltd)
S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2013-11-29] (www.BitComet.com)
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [1349576 2015-01-28] (ESET)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915600 2014-12-13] (NVIDIA Corporation)
R2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe [271712 2011-03-14] ()
R2 lxdx_device; C:\Windows\system32\lxdxcoms.exe [589824 2009-10-16] ( ) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-13] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18186896 2014-12-13] (NVIDIA Corporation)
S2 Telenor Internet. RunOuc; C:\Program Files\Telenor Internet\UpdateDog\ouc.exe [655712 2011-12-23] ()
S3 UsbCS; C:\Program Files\3DSP\BluetoothWLAN_usb\Utilities\UsbCS.exe [90112 2009-12-15] (3DSP corporation) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2014-06-17] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 androidusb; C:\Windows\System32\Drivers\wsadb.sys [34792 2015-05-11] (Google Inc)
R0 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [20104 2010-04-06] (IVT Corporation.)
S3 btnetBUs; C:\Windows\System32\Drivers\btnetBus.sys [25864 2010-04-06] ()
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [193464 2015-01-30] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [135808 2015-01-30] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [123424 2015-01-30] (ESET)
R1 epp32; C:\Windows\System32\DRIVERS\epp32.sys [111368 2015-03-24] (Emsisoft GmbH)
S3 huawei_cdcacm; C:\Windows\System32\DRIVERS\ew_jucdcacm.sys [89856 2011-09-09] (Huawei Technologies Co., Ltd.)
S3 huawei_ext_ctrl; C:\Windows\System32\DRIVERS\ew_juextctrl.sys [26624 2011-09-09] (Huawei Technologies Co., Ltd.)
S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [190976 2011-12-02] (Huawei Technologies Co., Ltd.)
S3 IvtBtBUs; C:\Windows\System32\Drivers\IvtBtBus.sys [23048 2010-04-06] (IVT Corporation.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18576 2014-12-13] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [32912 2014-11-22] (NVIDIA Corporation)
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 btaudio; system32\drivers\btaudio.sys [X]
S3 BTCOM; system32\DRIVERS\btcomport.sys [X]
S3 BTCOMBUS; System32\Drivers\btcombus.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 BTKRNL; system32\DRIVERS\btkrnl.sys [X]
S3 BTWDNDIS; system32\DRIVERS\btwdndis.sys [X]
S3 BTWUSB; System32\Drivers\btwusb.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-30 16:36 - 2015-05-30 16:36 - 00014509 _____ () C:\Users\SelenA\Downloads\FRST.txt
2015-05-30 16:34 - 2015-05-30 16:34 - 00001419 _____ () C:\Users\SelenA\Desktop\FRST - Shortcut.lnk
2015-05-30 16:13 - 2015-05-30 16:15 - 00025463 _____ () C:\Users\SelenA\Downloads\Addition.txt
2015-05-30 16:10 - 2015-05-30 16:36 - 00000000 ____D () C:\FRST
2015-05-30 16:10 - 2015-05-30 16:10 - 01147392 _____ (Farbar) C:\Users\SelenA\Downloads\FRST.exe
2015-05-30 15:02 - 2015-05-30 15:02 - 00000000 ____D () C:\ProgramData\Emsisoft
2015-05-30 14:37 - 2015-05-30 15:53 - 00000000 ____D () C:\Program Files\Emsisoft Anti-Malware
2015-05-30 14:37 - 2015-05-30 14:37 - 00001053 _____ () C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk
2015-05-30 14:37 - 2015-05-30 14:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emsisoft Anti-Malware
2015-05-30 14:37 - 2015-03-24 00:17 - 00111368 _____ (Emsisoft GmbH) C:\Windows\system32\Drivers\epp32.sys
2015-05-30 14:19 - 2015-05-30 14:24 - 159485920 _____ (Emsisoft Ltd. ) C:\Users\SelenA\Downloads\EmsisoftAntiMalwareSetup.exe
2015-05-30 14:17 - 2015-05-30 14:18 - 22132648 _____ (SUPERAntiSpyware) C:\Users\SelenA\Downloads\SUPERAntiSpyware.exe
2015-05-30 12:59 - 2015-05-30 12:59 - 04127410 _____ () C:\Users\SelenA\Downloads\com.wifi.ifre.krc.lcdgbau_vhmniungw.SOFTSTRIBE.com.apk
2015-05-30 12:59 - 2015-05-30 12:59 - 03638359 _____ () C:\Users\SelenA\Downloads\com.yasolution.hackwifiprank.SOFTSTRIBE.com.apk
2015-05-30 12:58 - 2015-05-30 12:59 - 08606768 _____ () C:\Users\SelenA\Downloads\com.digifunstudios.wifipassfinder.SOFTSTRIBE.com.apk
2015-05-30 12:57 - 2015-05-30 12:58 - 04118654 _____ () C:\Users\SelenA\Downloads\com.wifi.ifre.krc.softstribe.com.apk
2015-05-30 12:27 - 2015-05-30 12:27 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Curiolab
2015-05-30 12:11 - 2015-05-30 12:12 - 02670160 _____ (www.PerfectUninstaller.com ) C:\Users\SelenA\Downloads\PerfectUninstaller_Setup.exe
2015-05-30 11:29 - 2015-05-30 11:29 - 00000000 ____D () C:\Users\SelenA\Desktop\007_Spy_Software_v3.87
2015-05-30 09:09 - 2015-05-30 12:36 - 06655386 _____ () C:\Windows\winsys.dat
2015-05-30 09:04 - 2012-01-01 16:24 - 02355712 _____ () C:\Windows\winsys.exe
2015-05-30 09:04 - 2011-10-11 22:18 - 01198080 _____ (The OpenSSL Project, [Link mogu videti samo ulogovani korisnici]) C:\Windows\libeay32.dll
2015-05-30 09:04 - 2011-10-11 22:18 - 00303104 _____ (The OpenSSL Project, [Link mogu videti samo ulogovani korisnici]) C:\Windows\ssleay32.dll
2015-05-29 14:42 - 2015-05-29 14:42 - 00000079 _____ () C:\Windows\wininit.ini
2015-05-28 19:22 - 2015-05-28 19:21 - 00450771 ____R () C:\Windows\system32\Drivers\etc\hosts.20150528-192214.backup
2015-05-28 19:21 - 2015-05-28 18:55 - 00450771 ____R () C:\Windows\system32\Drivers\etc\hosts.20150528-192135.backup
2015-05-28 18:55 - 2009-06-10 23:39 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20150528-185549.backup
2015-05-27 15:32 - 2015-05-27 15:32 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Kingosoft
2015-05-19 20:57 - 2015-05-24 09:55 - 00000000 ____D () C:\Users\SelenA\Desktop\vuk 2
2015-05-17 20:52 - 2015-05-17 20:59 - 00000000 ____D () C:\Users\SelenA\Desktop\Tomanija
2015-05-15 23:23 - 2015-05-15 23:23 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-05-13 19:00 - 2015-05-13 19:00 - 02449920 _____ () C:\Users\SelenA\Documents\Clip 1.avi
2015-05-12 19:21 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2015-05-12 19:20 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2015-05-12 19:15 - 2015-05-12 19:15 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Echobit
2015-05-12 19:15 - 2015-05-12 19:15 - 00000000 ____D () C:\ProgramData\Echobit
2015-05-11 01:12 - 2015-05-11 01:12 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_wsadb_01009.Wdf
2015-05-11 01:11 - 2015-05-11 01:11 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf
2015-05-11 01:09 - 2015-05-11 01:09 - 00851176 _____ (Microsoft Corporation) C:\Windows\system32\WinUSBCoInstaller2.dll
2015-05-11 01:09 - 2015-05-11 01:09 - 00034792 _____ (Google Inc) C:\Windows\system32\Drivers\wsadb.sys
2015-05-11 01:08 - 2015-05-11 01:08 - 00080184 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2015-05-10 21:06 - 2015-05-10 21:06 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Wondershare
2015-05-10 21:06 - 2015-05-10 21:06 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Wondershare
2015-05-10 21:06 - 2015-05-10 21:06 - 00000000 ____D () C:\Program Files\Common Files\Wondershare
2015-05-10 21:04 - 2015-05-10 21:06 - 00000000 ____D () C:\Users\Public\Documents\Wondershare
2015-05-10 21:00 - 2015-05-27 15:57 - 00000000 ____D () C:\Users\SelenA\.android
2015-05-10 21:00 - 2015-05-21 20:57 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Coolmuster
2015-05-05 18:57 - 2015-05-05 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB PC Camera (SN9C102)
2015-05-05 18:57 - 2015-05-05 18:57 - 00000000 ____D () C:\Program Files\Common Files\snpstd
2015-05-05 18:57 - 2006-05-03 15:40 - 00390784 _____ () C:\Windows\system32\Drivers\snpstd.sys
2015-05-05 18:57 - 2005-10-19 19:22 - 00036864 _____ ( ) C:\Windows\system32\dsnpstd.ax
2015-05-05 18:57 - 2005-10-11 13:54 - 00339968 _____ () C:\Windows\vsnpstd.exe
2015-05-05 18:57 - 2005-04-20 17:34 - 00061440 _____ ( ) C:\Windows\system32\rsnpstd.dll
2015-05-05 18:57 - 2005-04-20 17:16 - 00036864 _____ ( ) C:\Windows\system32\vsnpstd.dll
2015-05-05 18:57 - 2005-02-01 19:29 - 00020480 _____ () C:\Windows\usnpstd.exe
2015-05-05 18:57 - 2004-02-16 13:59 - 00061440 _____ ( ) C:\Windows\system32\csnpstd.dll
2015-05-05 18:57 - 2003-01-17 17:35 - 00013023 _____ () C:\Windows\snpstd.src
2015-05-05 18:57 - 2003-01-17 17:34 - 00015541 _____ () C:\Windows\snpstd.ini
2015-05-05 18:57 - 2002-07-03 11:44 - 00053248 _____ (Microsoft Corporation) C:\Windows\amcap.exe
2015-05-05 15:11 - 2015-05-05 15:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2015-05-05 15:11 - 2015-05-05 15:11 - 00000000 ____D () C:\ProgramData\ESET
2015-05-05 08:10 - 2015-05-05 08:10 - 00000000 ____D () C:\Program Files\VideoLAN
2015-05-05 07:43 - 2015-05-05 08:04 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\iSpy
2015-05-04 22:20 - 2014-05-14 18:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-05-04 22:20 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-05-04 22:20 - 2014-05-14 18:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-05-04 22:20 - 2014-05-14 18:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-05-04 22:20 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-05-04 22:20 - 2014-05-14 18:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-05-04 22:20 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-05-04 22:20 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-05-04 22:20 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-05-04 22:01 - 2015-05-13 19:00 - 00000728 _____ () C:\Users\SelenA\Documents\Default.sfvidcap
2015-05-04 22:01 - 2015-05-04 22:02 - 06964736 _____ () C:\Users\SelenA\Documents\Clip 0.avi
2015-05-04 21:57 - 2015-05-04 21:57 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Publish Providers
2015-05-04 21:56 - 2015-05-04 21:56 - 00002628 _____ () C:\Users\SelenA\Documents\Register Vegas Pro.htm
2015-05-04 21:49 - 2015-05-04 21:49 - 00001038 _____ () C:\Users\Public\Desktop\Vegas Pro 11.0.lnk
2015-05-04 21:49 - 2015-05-04 21:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-05-04 21:48 - 2015-05-04 21:48 - 00000000 ____D () C:\ProgramData\Sony
2015-05-04 21:48 - 2015-05-04 21:48 - 00000000 ____D () C:\Program Files\Sony
2015-05-04 20:58 - 2015-05-04 21:48 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Sony
2015-05-04 20:57 - 2015-05-04 21:57 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Sony
2015-05-04 20:44 - 2015-05-04 20:44 - 00001251 _____ () C:\Users\SelenA\Desktop\Movie Maker.lnk
2015-05-04 20:43 - 2015-05-04 20:43 - 00001320 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2015-05-04 20:43 - 2015-05-04 20:43 - 00001251 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2015-05-04 20:42 - 2015-05-04 20:42 - 00000000 ____D () C:\Program Files\Windows Live
2015-05-04 20:42 - 2015-05-04 20:42 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-05-04 20:41 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2015-05-04 20:41 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2015-05-04 20:41 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2015-05-04 20:41 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2015-05-04 20:40 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2015-05-04 20:39 - 2015-05-08 09:29 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Windows Live
2015-05-04 20:39 - 2015-05-04 20:39 - 00000000 ____D () C:\Program Files\Common Files\Windows Live
2015-05-03 12:24 - 2015-05-03 20:08 - 00000000 ____D () C:\Users\SelenA\Documents\Free YouTube Downloader
2015-05-03 12:23 - 2015-05-03 12:23 - 00002233 _____ () C:\Users\Public\Desktop\Free YouTube Downloader.lnk
2015-05-03 12:23 - 2015-02-15 21:01 - 01296896 _____ (Clever Components) C:\Windows\system32\clmultidx7.ocx

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-30 15:58 - 2014-10-19 21:02 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-30 08:40 - 2009-07-14 06:34 - 00026576 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-30 08:40 - 2009-07-14 06:34 - 00026576 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-30 08:33 - 2014-12-19 20:50 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\ViberPC
2015-05-30 08:32 - 2014-10-19 21:25 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-30 08:32 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-29 21:15 - 2014-11-05 23:47 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\BitComet
2015-05-29 14:46 - 2014-12-19 20:46 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Viber
2015-05-29 14:45 - 2014-12-19 20:50 - 00001002 _____ () C:\Users\SelenA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber.lnk
2015-05-29 14:45 - 2014-12-19 20:50 - 00000994 _____ () C:\Users\SelenA\Desktop\Viber.lnk
2015-05-29 14:40 - 2015-01-20 18:18 - 00000000 ____D () C:\Program Files\Google
2015-05-29 13:48 - 2015-01-20 18:18 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Google
2015-05-29 11:12 - 2014-10-20 12:37 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\.minecraft
2015-05-28 09:09 - 2010-11-20 23:01 - 00006166 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-27 18:56 - 2015-02-12 15:24 - 00000000 ___RD () C:\Program Files\Skype
2015-05-25 08:35 - 2014-10-19 21:01 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Adobe
2015-05-25 08:33 - 2014-10-19 21:02 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-05-25 08:33 - 2014-10-19 21:02 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-05-24 09:50 - 2015-01-04 14:49 - 00376488 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-23 11:46 - 2015-01-04 19:51 - 00096672 _____ () C:\Users\SelenA\AppData\Local\GDIPFONTCACHEV1.DAT
2015-05-19 08:12 - 2009-07-14 06:53 - 00032628 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-18 19:22 - 2015-02-12 15:24 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Skype
2015-05-18 18:51 - 2014-12-08 19:26 - 00000000 ____D () C:\Users\SelenA\Desktop\Gimp
2015-05-16 18:14 - 2014-10-19 08:01 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-05-14 19:28 - 2015-04-15 13:01 - 00000000 ____D () C:\Users\SelenA\Documents\Bandicam
2015-05-14 18:44 - 2015-02-12 15:23 - 00000000 ____D () C:\ProgramData\Skype
2015-05-14 00:07 - 2015-02-21 14:03 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-05-10 21:00 - 2014-10-19 07:54 - 00000000 ____D () C:\Users\SelenA
2015-05-05 21:44 - 2014-10-19 07:54 - 00000000 ____D () C:\Users\SelenA\AppData\Local\VirtualStore
2015-05-05 18:57 - 2014-10-19 21:34 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-05-05 18:57 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\twain_32
2015-05-05 18:52 - 2014-10-19 21:33 - 00000000 ___HD () C:\Program Files\Temp
2015-05-05 11:03 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-05-04 21:40 - 2014-12-02 12:01 - 00000000 ____D () C:\Fraps
2015-05-04 20:41 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-05-03 20:09 - 2014-11-02 22:50 - 00000000 ____D () C:\Users\SelenA\Documents\Quick YouTube Downloader
2015-05-03 12:23 - 2014-10-20 12:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quick YouTube Downloader

==================== Files in the root of some directories =======

2015-03-28 17:55 - 2015-03-28 17:55 - 0000218 _____ () C:\Users\SelenA\AppData\Local\recently-used.xbel
2014-10-29 22:44 - 2014-10-29 22:44 - 0007602 _____ () C:\Users\SelenA\AppData\Local\Resmon.ResmonCfg
2015-02-26 18:43 - 2015-02-26 18:43 - 0000252 _____ () C:\ProgramData\FastPics.log
2015-02-26 20:51 - 2015-02-26 20:51 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-24 11:59

==================== End of log ============================

Dopuna: 30 Maj 2015 16:39

[Link mogu videti samo ulogovani korisnici]



offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8630
  • Gde živiš: Novi Beograd

Pozdrav,

I, da li je Nod nesto nasao?



offline
  • Pridružio: 18 Apr 2009
  • Poruke: 34

Nod nije nista nasao

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8630
  • Gde živiš: Novi Beograd

Zipu/Raruj mi sledeci fajl:

C:\Windows\winsys.exe

posalji mi ga preko sledeceg linka:

[Link mogu videti samo ulogovani korisnici]

offline
  • Pridružio: 18 Apr 2009
  • Poruke: 34

Poslato winrar file

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8630
  • Gde živiš: Novi Beograd

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

CreateRestorePoint:
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 btaudio; system32\drivers\btaudio.sys [X]
S3 BTCOM; system32\DRIVERS\btcomport.sys [X]
S3 BTCOMBUS; System32\Drivers\btcombus.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 BTKRNL; system32\DRIVERS\btkrnl.sys [X]
S3 BTWDNDIS; system32\DRIVERS\btwdndis.sys [X]
S3 BTWUSB; System32\Drivers\btwusb.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [SysUtils] => C:\Windows\winsys.exe [2355712 2012-01-01] ()
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\MountPoints2: {6130e2d3-585a-11e4-b749-001167000000} - E:\AutoRun.exe
C:\Windows\winsys.exe
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-01]
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • Pridružio: 18 Apr 2009
  • Poruke: 34

Fix result of Farbar Recovery Scan Tool (x86) Version: 29-05-2015
Ran by SelenA at 2015-05-30 21:59:16 Run:1
Running from C:\Users\SelenA\Downloads
Loaded Profiles: SelenA (Available Profiles: SelenA)
Boot Mode: Normal

==============================================

fixlist content:
*****************
CreateRestorePoint:
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 btaudio; system32\drivers\btaudio.sys [X]
S3 BTCOM; system32\DRIVERS\btcomport.sys [X]
S3 BTCOMBUS; System32\Drivers\btcombus.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 BTKRNL; system32\DRIVERS\btkrnl.sys [X]
S3 BTWDNDIS; system32\DRIVERS\btwdndis.sys [X]
S3 BTWUSB; System32\Drivers\btwusb.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [SysUtils] => C:\Windows\winsys.exe [2355712 2012-01-01] ()
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\MountPoints2: {6130e2d3-585a-11e4-b749-001167000000} - E:\AutoRun.exe
C:\Windows\winsys.exe
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-01]
EmptyTemp:
*****************

Restore point was successfully created.
BT => Service Removed successfully.
btaudio => Service Removed successfully.
BTCOM => Service Removed successfully.
BTCOMBUS => Service Removed successfully.
Btcsrusb => Service Removed successfully.
BTKRNL => Service Removed successfully.
BTWDNDIS => Service Removed successfully.
BTWUSB => Service Removed successfully.
pccsmcfd => Service Removed successfully.
VGPU => Service Removed successfully.
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\Software\Microsoft\Windows\CurrentVersion\Run\\SysUtils => value Removed successfully.
"HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6130e2d3-585a-11e4-b749-001167000000}" => key Removed successfully.
HKCR\CLSID\{6130e2d3-585a-11e4-b749-001167000000} => key not found.
C:\Windows\winsys.exe => Moved successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully.
C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi => Moved successfully.
EmptyTemp: => Removed 475.5 MB temporary data.


The system needed a reboot.

==== End of Fixlog 22:00:14 ====

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8630
  • Gde živiš: Novi Beograd

Preuzmi smeenk-ov zoek.zip ili zoek.rar () sa ovog ili ovog linka i sačuvaj ga na Desktop.

Raspakuj arhivu u neki folder (uputstvo), a zatim:

zatvori browser i ostale pokrenute programe;
privremeno deaktiviraj zaštitni softver ( ukoliko je to potrebno ) Uputstvo ;
dvoklikom pokreni zoek na ikonicu programa ;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sledeći tekst:

 
autoclean;
emptyclsid;
emptyfolderscheck;delete
emptyalltemp;


Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.

offline
  • Pridružio: 18 Apr 2009
  • Poruke: 34

Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by SelenA on Sat 05/30/2015 at 22:27:56.77.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\SelenA\Downloads\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

5/30/2015 10:28:45 PM Zoek.exe System Restore Point Created Successfully.

==== Empty Folders Check ======================

C:\PROGRA~2\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} deleted successfully
C:\Users\SelenA\AppData\Roaming\Publish Providers deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~2\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} not found
C:\Users\SelenA\.android deleted
C:\Program Files\Common Files\Wondershare deleted
C:\autoexec.tmp deleted
C:\DelFix.tmp deleted
C:\lxdx.tmp deleted
C:\Users\SelenA\AppData\Roaming\Wondershare deleted
C:\PROGRA~2\UpdaterLog.txt deleted
C:\PROGRA~2\Lavasoft\Web Companion deleted
C:\Users\SelenA\AppData\Local\Wondershare deleted
C:\Windows\wininit.ini deleted
C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\jetpack deleted
C:\Users\Public\Desktop\Free YouTube Downloader.lnk deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default
user_pref("browser.startup.homepage", "www.google.com");

==== Firefox Extensions ======================

ProfilePath: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default
- BitComet - %ProfilePath%\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
- Topface. Meeting is easy - %ProfilePath%\extensions\jid1-XsAruLV1bBBn9Q@jetpack.xpi
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default
DC26A2A219E08DE10320E8B7D5433690 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
E42650C972D21F334EB0D3264941DCD7 - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
C454432F43C61767873DA91885759471 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll - NVIDIA 3D VISION
954FAB833273DCBC3254E95D2AAF0C46 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll - NVIDIA 3D Vision
F0E80E561C3F715DB01ACCC97B72463A - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Photo Gallery
D31C4608FDCD9CEB756F45E91DCF64F8 - C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll - Java(TM) Platform SE 8 U45
66F9ADD8A2335EF9870AFDA4F35F492B - C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 8.0.450.14
2E661988463BCFA1B95D4DAAB9B0B6FA - C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll - Shockwave Flash


==== Chromium Look ======================

Bookmark Manager - SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik
Chrome Hotword Shared Module - SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper deleted successfully

==== Empty IE Cache ======================

C:\Users\SelenA\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\SelenA\AppData\Local\Mozilla\Firefox\Profiles\ek8i7pbk.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\SelenA\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=86 folders=40 8276650 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\SelenA\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\SelenA\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted

==== EOF on Sat 05/30/2015 at 22:38:44.10 ======================

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8630
  • Gde živiš: Novi Beograd

Kakvo je sad stanje?

Ko je trenutno na forumu
 

Ukupno su 1534 korisnika na forumu :: 108 registrovanih, 6 sakrivenih i 1420 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 6018 - dana 19 Dec 2025 13:41

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: -Max-, 10x10.9, 252., _Rade, aleksandar11332, alke12, Ba4e, bambulic, bbrasnjo3, Betty25, bobrothers, Bubimir, BWG, Cavendish, darkkran, Darko8, DeerHunter, djonsule, djuradj, Doc, Dogma21, doktor097, dragan_mig31, Dragon Order, drimer, dunavzed, Dvogled, Dzuki, Ercomero, eulereix, Fliper, foka106, gajasvi, Giskard, Hans Gajger, ivan_8282, jeen yuhs, Jelly4183, Jeremiah, Jester, JK, Joksss, Kajzer Soze, Kalu128338, Kenanjoz, Kibice, klepesina, knutveliki, Komanca, komenski, krasta, Kubovac, kybonacci, laurusri, Leteća Krofna, ljuba, MarijaC84, matejman, Mcdado, Mickey91, MIKI63, mikidragi, milenko crazy north, Milos ZA, mir, MiroslavD, mnn2, moldway, Neutral-M, neutrino, nobutado, Papadubi, Parker, pavle_pzs, pein, Pekman, Pero, Pero Petković, Povratak1912, predragc, proka89, radovanstojkov023, raf87, Remarqe, RILE-NS, Samo gledam, sasa87, Sevatar, Siti2, snikolic, sportyesorno, Srki98, Srle993, stegonosa, StepskiVuk, Tas011, VBoss, Veless, vensla, vidra boy, vidra1, virked, VX1, WELJKO, XBMC, Zastava, Zoran1959, Zrcalo