Molim za proveru

Molim za proveru

offline
  • Pridružio: 15 Feb 2011
  • Poruke: 110

Imam problem sa racunarom,skidao sam neki torrent i posle skidanja torrent fajla OS mi izbacuje poruku da mi Windows nije validan,plus kad god odem na net iskace mi neka omiga. Evo logova ispod
mycity.rs/must-login.png

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-01-2015 01
Ran by Cone RRRS (administrator) on CONERRRS-PC on 26-01-2015 21:54:06
Running from C:\Users\Cone RRRS\Downloads
Loaded Profiles: Cone RRRS (Available profiles: Cone RRRS)
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 10 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices) C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(XTab system) C:\Program Files (x86)\XTab\ProtectService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(SkypEmoticons) C:\Users\Cone RRRS\AppData\Roaming\SkypEmoticons\SE.exe
(BitTorrent Inc.) C:\Users\Cone RRRS\AppData\Roaming\uTorrent\uTorrent.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(SearchProtect) C:\Program Files (x86)\XTab\CmdShell.exe
(XTab system) C:\Program Files (x86)\XTab\HPNotify.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11545192 2010-11-02] (Realtek Semiconductor)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-01-12] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [74752 2012-06-28] (Nullsoft, Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation)
HKU\S-1-5-21-3834046284-3586275490-656266415-1000\...\Run: [RGSC] => C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
HKU\S-1-5-21-3834046284-3586275490-656266415-1000\...\Run: [GameXN GO] => "C:\ProgramData\GameXN\GameXNGO.exe" /startup
HKU\S-1-5-21-3834046284-3586275490-656266415-1000\...\Run: [LiveSupport] => "C:\Program Files (x86)\LiveSupport\LiveSupport.exe" /noshow /log
HKU\S-1-5-21-3834046284-3586275490-656266415-1000\...\Run: [SE] => C:\Users\Cone RRRS\AppData\Roaming\SkypEmoticons\SE.exe [5679008 2014-04-04] (SkypEmoticons)
HKU\S-1-5-21-3834046284-3586275490-656266415-1000\...\Run: [uTorrent] => C:\Users\Cone RRRS\AppData\Roaming\uTorrent\uTorrent.exe [1377872 2015-01-22] (BitTorrent Inc.)
AppInit_DLLs: c:\progra~3\bitguard\271832~1.68\{c16c1~1\loader.dll => c:\progra~3\bitguard\271832~1.68\{c16c1~1\loader.dll File Not Found
AppInit_DLLs: c:\progra~3\bitguard\271769~1.27\{c16c1~1\loader.dll => c:\progra~3\bitguard\271769~1.27\{c16c1~1\loader.dll File Not Found
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = isearch.omiga-plus.com/?type=hppp&ts=14.....4025840258
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = isearch.omiga-plus.com/?type=hppp&ts=14.....4025840258
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = isearch.omiga-plus.com/?type=hppp&ts=14.....4025840258
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = isearch.omiga-plus.com/?type=hppp&ts=14.....4025840258
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
HKU\S-1-5-21-3834046284-3586275490-656266415-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = google.com/ie
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe isearch.omiga-plus.com/?type=sc&ts=1422.....4025840258
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
SearchScopes: HKLM-x32 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = websearch.searchbomb.info/?l=1&q={searchTerms}&pid=1616&r=2013/11/26&hid=4726840991620686924&lg=EN&cc=RS&unqvl=42
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> URL search.conduit.com/Results.aspx?gd=&cti.....1B5&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> SuggestionsURL_JSON suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {EFE913F3-3893-4A82-AE7F-1FF96C86CC9D} URL = isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll No File
BHO: TornPlusTV_version1.11 -> {11111111-1111-1111-1111-110711001101} -> C:\Program Files (x86)\TornPlusTV_version1.11\TornPlusTV_version1.11-bho64.dll No File
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll (Thinknice Co. Limited)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3834046284-3586275490-656266415-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Cone RRRS\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

Chrome:
=======
CHR Profile: C:\Users\Cone RRRS\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google ) - C:\Users\Cone RRRS\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-31]
CHR HKLM-x32\...\Chrome\Extension: [acfoobbgoakpihljnfedbcfaipcdlfhk] - No Path
CHR HKLM-x32\...\Chrome\Extension: [bicnnkjibmphdeigoodpjlcklcnaobdj] - No Path
CHR HKLM-x32\...\Chrome\Extension: [hbcennhacfaagdopikcegfcobcadeocj] - C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx [2013-10-14]
CHR HKLM-x32\...\Chrome\Extension: [icdlfehblmklkikfigmjhbmmpmkmpooj] - C:\Program Files (x86)\Common Files\Spigot\GC\ErrorAssistant_1.3.crx [2013-12-27]
CHR HKLM-x32\...\Chrome\Extension: [mhkaekfpcppmmioggniknbnbdbcigpkk] - C:\Users\Cone RRRS\AppData\Local\Slick Savings\coupons.crx [2014-03-26]
CHR HKLM-x32\...\Chrome\Extension: [pfndaklgolladniicklehhancnlgocpp] - C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx [2012-11-22]
StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe isearch.omiga-plus.com/?type=sc&ts=1422.....4025840258

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2011-01-12] (Advanced Micro Devices, Inc.) [File not signed]
R2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-08-09] (Broadcom Corporation.)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-01-25] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-01-25] (globalUpdate) [File not signed]
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158896 2015-01-16] (XTab system)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [170712 2013-08-09] (Broadcom Corporation.)
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S0 oem-drv64; system32\DRIVERS\oem-drv64.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-26 21:54 - 2015-01-26 21:54 - 00015959 _____ () C:\Users\Cone RRRS\Downloads\FRST.txt
2015-01-26 21:53 - 2015-01-26 21:54 - 00000000 ____D () C:\FRST
2015-01-26 21:53 - 2015-01-26 21:53 - 02129920 _____ (Farbar) C:\Users\Cone RRRS\Desktop\FRST64.exe
2015-01-25 16:11 - 2015-01-25 20:06 - 00000000 ____D () C:\ProgramData\MFAData
2015-01-25 16:11 - 2015-01-25 16:11 - 00000000 ____D () C:\Users\Cone RRRS\AppData\Local\MFAData
2015-01-25 15:42 - 2015-01-25 15:42 - 00000000 ____D () C:\Users\Cone RRRS\AppData\Local\VS Revo Group
2015-01-25 15:42 - 2015-01-25 15:42 - 00000000 ____D () C:\ProgramData\VS Revo Group
2015-01-25 15:09 - 2015-01-25 15:09 - 00003260 _____ () C:\Windows\System32\Tasks\Trojan Killer
2015-01-25 15:09 - 2015-01-25 15:09 - 00000000 ____D () C:\ProgramData\GridinSoft
2015-01-25 15:02 - 2015-01-25 15:06 - 10801480 _____ (VS Revo Group ) C:\Users\Cone RRRS\Downloads\RevoUninProSetup.exe
2015-01-25 14:37 - 2015-01-25 14:37 - 03026176 _____ (GridinSoft) C:\Users\Cone RRRS\Downloads\TrojanKillerInstallerST.exe
2015-01-25 13:58 - 2015-01-25 19:15 - 00000000 ____D () C:\Users\Cone RRRS\Downloads\The Hooligan Factory (2014) [1080p]
2015-01-25 13:57 - 2015-01-25 13:57 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-01-25 13:56 - 2015-01-25 13:57 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-01-25 13:54 - 2015-01-25 19:16 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-01-25 13:52 - 2015-01-26 21:40 - 00003478 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-1.job
2015-01-25 13:52 - 2015-01-26 21:40 - 00002456 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-5_user.job
2015-01-25 13:52 - 2015-01-26 21:40 - 00002456 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-5.job
2015-01-25 13:52 - 2015-01-26 21:40 - 00002120 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-2.job
2015-01-25 13:52 - 2015-01-25 13:52 - 00006508 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-1
2015-01-25 13:52 - 2015-01-25 13:52 - 00005486 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-5
2015-01-25 13:52 - 2015-01-25 13:52 - 00005150 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-2
2015-01-25 13:51 - 2015-01-26 21:51 - 00005872 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-6.job
2015-01-25 13:51 - 2015-01-26 21:51 - 00002122 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-10_user.job
2015-01-25 13:51 - 2015-01-26 21:40 - 00005528 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-7.job
2015-01-25 13:51 - 2015-01-26 21:40 - 00001702 _____ () C:\Windows\Tasks\MTTLMVPX.job
2015-01-25 13:51 - 2015-01-26 21:40 - 00000912 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-01-25 13:51 - 2015-01-25 19:56 - 00000916 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-01-25 13:51 - 2015-01-25 19:05 - 00000000 ____D () C:\Users\Cone RRRS\Downloads\The Guvnors (2014) [1080p]
2015-01-25 13:51 - 2015-01-25 16:32 - 00000000 ____D () C:\Program Files (x86)\95c6cfb0-0855-4302-b912-9e59efe30596
2015-01-25 13:51 - 2015-01-25 13:51 - 00008900 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-6
2015-01-25 13:51 - 2015-01-25 13:51 - 00008558 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-7
2015-01-25 13:51 - 2015-01-25 13:51 - 00004742 _____ () C:\Windows\System32\Tasks\MTTLMVPX
2015-01-25 13:51 - 2015-01-25 13:51 - 00003914 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-01-25 13:51 - 2015-01-25 13:51 - 00003660 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-01-24 21:32 - 2015-01-24 21:33 - 23236288 _____ (Popcorn Official) C:\Users\Cone RRRS\Downloads\Popcorn-Time-0.3.7.1-Setup.exe
2015-01-24 21:29 - 2015-01-24 21:29 - 00025883 _____ () C:\Users\Cone RRRS\Downloads\26653-la_mujer_de_mi_hermano.zip
2015-01-24 21:25 - 2015-01-24 21:25 - 00025379 _____ () C:\Users\Cone RRRS\Downloads\casa.de.mi.padre.(2012).scc.1cd.(4613431).zip
2015-01-24 21:16 - 2015-01-24 21:16 - 00000022 _____ () C:\Users\Cone RRRS\Downloads\__rzi_0.529
2015-01-24 21:16 - 2015-01-24 21:16 - 00000022 _____ () C:\Users\Cone RRRS\Downloads\__rzi_0.410
2015-01-24 21:15 - 2015-01-24 21:15 - 00000022 _____ () C:\Users\Cone RRRS\Downloads\__rzi_0.975
2015-01-24 21:11 - 2015-01-24 21:11 - 00024061 _____ () C:\Users\Cone RRRS\Downloads\29682d9ab612541ce6f5e0d78c174e7b8c71849d.zip
2015-01-22 01:30 - 2015-01-24 20:59 - 00000000 ____D () C:\Users\Cone RRRS\Downloads\casa de mi padre
2015-01-21 23:56 - 2015-01-21 23:57 - 00000000 ____D () C:\Users\Cone RRRS\Downloads\What We Do in the Shadows (2014) [1080p]
2015-01-21 23:54 - 2015-01-21 23:54 - 00013665 _____ () C:\Users\Cone RRRS\Downloads\[limetorrents.cc]What.We.Do.in.the.Shadows..2014..1080p.BrRip.x264.-.YIFY.torrent
2015-01-21 19:05 - 2015-01-21 19:05 - 00028816 _____ () C:\Users\Cone RRRS\Downloads\[limetorrents.cc]Casa.De.Mi.Padre.[DVDrip][XViD][Espanol][Spanish].torrent
2015-01-21 19:02 - 2015-01-22 01:28 - 00000000 ____D () C:\Users\Cone RRRS\Downloads\The Equalizer (2014)
2015-01-21 19:01 - 2015-01-21 19:01 - 00010721 _____ () C:\Users\Cone RRRS\Downloads\[limetorrents.cc]The.Equalizer..2014..720p.BrRip.x264.-.YIFY.torrent
2015-01-15 23:17 - 2015-01-25 16:04 - 00000000 ____D () C:\Users\Cone RRRS\Desktop\slike
2015-01-14 22:49 - 2015-01-14 23:32 - 00000000 ____D () C:\Users\Cone RRRS\Downloads\Lucy (2014)
2015-01-14 22:48 - 2015-01-14 22:48 - 00007627 _____ () C:\Users\Cone RRRS\Downloads\Lucy.2014.720p.BRRip.x264-YIFY-[rarbg.com].torrent
2015-01-11 17:50 - 2015-01-11 17:50 - 00001137 _____ () C:\Users\Public\Desktop\Pes 2015 Selector.lnk
2015-01-11 17:50 - 2015-01-11 17:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PES 2015 Patch Tuga Vicio v0.4
2015-01-11 17:48 - 2015-01-11 17:48 - 147673195 _____ (Tuga Vicio) C:\Users\Cone RRRS\Downloads\PES 2015 Patch Tuga Vicio v0.4.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-26 21:52 - 2013-06-03 21:13 - 00000000 ____D () C:\Users\Cone RRRS\AppData\Roaming\uTorrent
2015-01-26 21:47 - 2013-06-04 10:11 - 00003954 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{BBC416AC-4ECE-456E-BAB2-281748517C71}
2015-01-26 21:46 - 2013-09-25 18:07 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-26 21:43 - 2013-06-04 05:16 - 01522528 _____ () C:\Windows\WindowsUpdate.log
2015-01-26 21:40 - 2014-12-14 01:00 - 00007020 _____ () C:\Windows\setupact.log
2015-01-26 21:40 - 2013-06-03 20:54 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-26 21:40 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-25 23:10 - 2009-07-14 05:45 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-25 23:10 - 2009-07-14 05:45 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-25 22:22 - 2013-06-03 20:54 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-25 22:01 - 2014-03-29 10:00 - 00000000 ____D () C:\Program Files (x86)\Cs 1.6 install
2015-01-25 20:45 - 2010-11-21 04:47 - 00072438 _____ () C:\Windows\PFRO.log
2015-01-25 20:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-01-25 18:35 - 2014-01-08 01:03 - 00000000 ____D () C:\Users\Cone RRRS\AppData\Roaming\SexGameDevil
2015-01-25 16:34 - 2013-11-26 20:58 - 00000000 ____D () C:\ProgramData\VAudiox
2015-01-25 16:33 - 2014-12-15 01:15 - 00000000 ____D () C:\Program Files (x86)\Pro Evolution Soccer 2015
2015-01-25 16:33 - 2013-11-26 20:59 - 00000000 ____D () C:\Program Files (x86)\SearchNewTab
2015-01-25 16:33 - 2013-11-26 20:58 - 00000000 ____D () C:\Program Files (x86)\VAudiox
2015-01-25 16:33 - 2013-06-04 11:21 - 00000000 ____D () C:\ProgramData\cconatinuaeeteosavve
2015-01-25 16:19 - 2013-06-03 21:16 - 00000000 ____D () C:\Users\Cone RRRS\AppData\Roaming\Skype
2015-01-25 16:16 - 2014-03-26 03:49 - 00000000 ____D () C:\Users\Cone RRRS\AppData\Roaming\TuneUp Software
2015-01-25 13:54 - 2013-06-03 20:56 - 00002405 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-01-25 13:54 - 2013-06-03 20:27 - 00001633 _____ () C:\Users\Cone RRRS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-25 13:51 - 2014-08-02 00:21 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-01-24 21:46 - 2013-09-25 18:07 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-01-24 21:46 - 2013-06-03 23:08 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-01-24 21:46 - 2013-06-03 23:08 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-01-23 18:25 - 2013-06-03 20:47 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2015-01-04 14:44 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-31 14:44 - 2013-06-19 13:43 - 00000000 ____D () C:\Users\Cone RRRS\Desktop\mp3

==================== Files in the root of some directories =======

2013-11-26 21:11 - 2013-11-26 21:11 - 0000323 _____ () C:\Users\Cone RRRS\AppData\Roaming\LiveSupport.exe_log.txt
2014-09-01 09:18 - 2014-09-01 09:18 - 0001248 _____ () C:\Users\Cone RRRS\AppData\Roaming\MTTLMVPX
2013-11-26 21:11 - 2013-11-26 21:16 - 0000092 _____ () C:\Users\Cone RRRS\AppData\Roaming\regsvr32.exe_log.txt
2014-06-19 18:03 - 2014-06-19 18:03 - 0000024 _____ () C:\Users\Cone RRRS\AppData\Roaming\temp.ini

Some content of TEMP:
====================
C:\Users\Cone RRRS\AppData\Local\Temp\Runner2.exe
C:\Users\Cone RRRS\AppData\Local\Temp\Runner4.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


nointegritychecks: ==> Integrity Checks is disabled <===== ATTENTION!


LastRegBack: 2015-01-25 23:07

==================== End Of Log ============================

mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Pozdrav,



1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

closeprocesses:
C:\Program Files (x86)\XTab
HKU\S-1-5-21-3834046284-3586275490-656266415-1000\...\Run: [LiveSupport] => "C:\Program Files (x86)\LiveSupport\LiveSupport.exe" /noshow /log
C:\Program Files (x86)\LiveSupport
AppInit_DLLs: c:\progra~3\bitguard\271832~1.68\{c16c1~1\loader.dll => c:\progra~3\bitguard\271832~1.68\{c16c1~1\loader.dll File Not Found
AppInit_DLLs: c:\progra~3\bitguard\271769~1.27\{c16c1~1\loader.dll => c:\progra~3\bitguard\271769~1.27\{c16c1~1\loader.dll File Not Found
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hppp&ts=14.....4025840258
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hppp&ts=14.....4025840258
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hppp&ts=14.....4025840258
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hppp&ts=14.....4025840258
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
HKU\S-1-5-21-3834046284-3586275490-656266415-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=1422.....4025840258
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=.....258&q={searchTerms}
SearchScopes: HKLM-x32 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.searchbomb.info/?l=1&q={searchTerms}&pid=1616&r=2013/11/26&hid=4726840991620686924&lg=EN&cc=RS&unqvl=42
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> URL http://search.conduit.com/Results.aspx?gd=&cti.....1B5&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> SuggestionsURL_JSON http://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3834046284-3586275490-656266415-1000 -> {EFE913F3-3893-4A82-AE7F-1FF96C86CC9D} URL = http://isearch.omiga-plus.com/web/?utm_source=b&am.....ult&q={searchTerms}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll No File
BHO: TornPlusTV_version1.11 -> {11111111-1111-1111-1111-110711001101} -> C:\Program Files (x86)\TornPlusTV_version1.11\TornPlusTV_version1.11-bho64.dll No File
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll (Thinknice Co. Limited)
CHR HKLM-x32\...\Chrome\Extension: [acfoobbgoakpihljnfedbcfaipcdlfhk] - No Path
C:\Program Files (x86)\TornPlusTV_version1.11
CHR HKLM-x32\...\Chrome\Extension: [bicnnkjibmphdeigoodpjlcklcnaobdj] - No Path
CHR HKLM-x32\...\Chrome\Extension: [hbcennhacfaagdopikcegfcobcadeocj] - C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx [2013-10-14]
CHR HKLM-x32\...\Chrome\Extension: [icdlfehblmklkikfigmjhbmmpmkmpooj] - C:\Program Files (x86)\Common Files\Spigot\GC\ErrorAssistant_1.3.crx [2013-12-27]
CHR HKLM-x32\...\Chrome\Extension: [mhkaekfpcppmmioggniknbnbdbcigpkk] - C:\Users\Cone RRRS\AppData\Local\Slick Savings\coupons.crx [2014-03-26]
CHR HKLM-x32\...\Chrome\Extension: [pfndaklgolladniicklehhancnlgocpp] - C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx [2012-11-22]
StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://isearch.omiga-plus.com/?type=sc&ts=1422.....4025840258
C:\Program Files (x86)\Common Files\Spigot
:\Users\Cone RRRS\AppData\Local\Slick Savings
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-01-25] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-01-25] (globalUpdate) [File not signed]
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158896 2015-01-16] (XTab system)
C:\Program Files (x86)\globalUpdate
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S0 oem-drv64; system32\DRIVERS\oem-drv64.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
2015-01-25 13:57 - 2015-01-25 13:57 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-01-25 13:56 - 2015-01-25 13:57 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-01-25 13:54 - 2015-01-25 19:16 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-01-25 13:52 - 2015-01-26 21:40 - 00003478 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-1.job
2015-01-25 13:52 - 2015-01-26 21:40 - 00002456 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-5_user.job
2015-01-25 13:52 - 2015-01-26 21:40 - 00002456 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-5.job
2015-01-25 13:52 - 2015-01-26 21:40 - 00002120 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-2.job
2015-01-25 13:52 - 2015-01-25 13:52 - 00006508 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-1
2015-01-25 13:52 - 2015-01-25 13:52 - 00005486 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-5
2015-01-25 13:52 - 2015-01-25 13:52 - 00005150 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-2
2015-01-25 13:51 - 2015-01-26 21:51 - 00005872 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-6.job
2015-01-25 13:51 - 2015-01-26 21:51 - 00002122 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-10_user.job
2015-01-25 13:51 - 2015-01-26 21:40 - 00005528 _____ () C:\Windows\Tasks\34178b26-0de4-4b0f-a48d-950884502234-7.job
2015-01-25 13:51 - 2015-01-26 21:40 - 00001702 _____ () C:\Windows\Tasks\MTTLMVPX.job
2015-01-25 13:51 - 2015-01-26 21:40 - 00000912 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-01-25 13:51 - 2015-01-25 19:56 - 00000916 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-01-25 13:51 - 2015-01-25 19:05 - 00000000 ____D () C:\Users\Cone RRRS\Downloads\The Guvnors (2014) [1080p]
2015-01-25 13:51 - 2015-01-25 16:32 - 00000000 ____D () C:\Program Files (x86)\95c6cfb0-0855-4302-b912-9e59efe30596
2015-01-25 13:51 - 2015-01-25 13:51 - 00008900 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-6
2015-01-25 13:51 - 2015-01-25 13:51 - 00008558 _____ () C:\Windows\System32\Tasks\34178b26-0de4-4b0f-a48d-950884502234-7
2015-01-25 13:51 - 2015-01-25 13:51 - 00004742 _____ () C:\Windows\System32\Tasks\MTTLMVPX
2015-01-25 13:51 - 2015-01-25 13:51 - 00003914 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-01-25 13:51 - 2015-01-25 13:51 - 00003660 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2013-11-26 21:11 - 2013-11-26 21:11 - 0000323 _____ () C:\Users\Cone RRRS\AppData\Roaming\LiveSupport.exe_log.txt
2014-09-01 09:18 - 2014-09-01 09:18 - 0001248 _____ () C:\Users\Cone RRRS\AppData\Roaming\MTTLMVPX
2013-11-26 21:11 - 2013-11-26 21:16 - 0000092 _____ () C:\Users\Cone RRRS\AppData\Roaming\regsvr32.exe_log.txt
2014-06-19 18:03 - 2014-06-19 18:03 - 0000024 _____ () C:\Users\Cone RRRS\AppData\Roaming\temp.ini
emptytemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.




Skeniranje sa AdwCleaner

Preuzmi AdwCleaner i sacuvaj ga na Desktop.

Pokreni alat i sacekaj da se izvrši ažuriranje.
Prihvati Terms of use tako što ceš kliknuti na I Agree.
Klikni Scan i sacekaj da se skeniranje završi.
Kada je gotovo, klikni Clean.
Pojavice se poruka da ce svi programi biti zaustavljeni nakon što klikneš OK, tako da ako imaš nešto da sacuvaš, sada je vreme da to uradiš.
Pojaviše se još dve poruke gde je potrebno kliknuti OK. Racunar ce se restartovati.
Nakon restarta, otvorice se izveštaj, ciji sadržaj možeš kopirati u sledecu poruku.

Napomena: Izveštaji ce biti sacuvani na tvoju sistemsku particiju, obicno je to folder C:\AdwCleaner

offline
  • Pridružio: 15 Feb 2011
  • Poruke: 110

mycity.rs/must-login.png

mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Odlicno. Kako se racunar sada ponasa?

offline
  • Pridružio: 15 Feb 2011
  • Poruke: 110

Koliko vidim sad je sve super. Omiga je nestala. Onaj deo oko licence za windows je tu,to cu loaderom da sredim...
Kako da pobrisem ove pregramcice sto smo instalirali?

Puno hvala za pomoc.

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Poslednji korak ce pobrisati sve koriscene programe. Drago mi je da sam bio od pomoci. Pozdrav Smile


Preuzmi "Xplode"-ov DelFix i sačuvaj ga na Desktop

Dvoklikom pokreni program.

Štikliraj sledeće opcije:
Remove disinfection tools
Purge System Restore
Reset system settings


Klikni na dugme "Run" i pričekaj da program završi rad.
Alat ce ukloniti sve koriscene alate u ovoj temi...
Kada alat završi, otvoriće izvestaj u notepadu.
Napomena: Izvestaj ce takodje biti sacuvan na C:\DelFix.txt

Nije potrebno dostavljati izvestaj.

offline
  • Pridružio: 15 Feb 2011
  • Poruke: 110

Hvala veliko, jes jednom! Pozdrav

Ko je trenutno na forumu
 

Ukupno su 848 korisnika na forumu :: 40 registrovanih, 6 sakrivenih i 802 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., alkatraz080, amaterSRB, arsa, bato, Brot, Buzdovan, DENIRO, DH, Dimitrise93, dukikan, Dusan Medojevic, ikan, JOntra, Kaneda, Kruger, Krusarac, kybonacci, leptirleptir, lukac, Mercury, milimoj, milosrdni94, nebojsag, NoOneEver Dreams, ObelixSRB, pedja.st, Polemarchoi, Profica, renoje2, rovac, ruso, Snorks, spektorsky, Toni, Van, Vlada1389, voja64, Wisdomseeker, zixmix