Onemogucenost citanja sajtova

Onemogucenost citanja sajtova

offline
  • Pridružio: 02 Apr 2011
  • Poruke: 5

Bilo koji naslov da ukucam na Googe prvo treba dosta vremena danadje zadati pojam. Kad pronadje to sto se trazi otvori nekako na jedvite jade u pocinju da iskacu reklame, travijan ili mi omoguci citanje sajta na nekoliko minuta a onda blokira.Kao da mi zavrce stranice, izludjuje me i neznam sta da radim. Inace imam dobar lap top i brz internet. Na drugim racunarima u kuci nema nikakvih problema. Inace facebook ne koci niti bilo kakve druge funkcije lap topa



rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Pozdrav.

Procitaj ovo uputstvo.

[Link mogu videti samo ulogovani korisnici]



offline
  • Pridružio: 02 Apr 2011
  • Poruke: 5

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-05-2014
Ran by Lidija (administrator) on LIDIJA-PC on 31-05-2014 20:25:24
Running from C:\Users\Lidija\Desktop
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: [Link mogu videti samo ulogovani korisnici]
Download link for 64-Bit Version: [Link mogu videti samo ulogovani korisnici]
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: [Link mogu videti samo ulogovani korisnici]

==================== Processes (Whitelisted) =================

() C:\ProgramData\SafeSoft\WS-Booster\WS-Booster.exe
() C:\ProgramData\SuperbApp\SW-Booster\SW-Booster.exe
(Systweak) C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(BitTorrent, Inc.) C:\Program Files (x86)\BitTorrent Sync\BTSync.exe
(SkypEmoticons) C:\Users\Lidija\AppData\Roaming\SkypEmoticons\SE.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
( ) C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe
(Dassault Systčmes SolidWorks Corp.) C:\Program Files\SolidWorks Corp\SolidWorks\sldworks_fs.exe
(Dassault Systčmes SolidWorks Corp.) C:\Program Files (x86)\Common Files\SolidWorks Installation Manager\BackgroundDownloading\sldBgDwld.exe
() C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Program Files\PCDApp\dgen.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
() C:\Program Files (x86)\Surftastic\updateSurftastic.exe
() C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
() C:\Program Files (x86)\Surftastic\bin\Surftastic.PurBrowse64.exe
() C:\Program Files (x86)\Surftastic\bin\Surftastic.BrowserAdapter.exe
(Client Connect LTD) C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe
(Client Connect LTD) C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe
(Client Connect LTD) C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TUAutoUpdateCheck.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
(Microsoft Corporation) C:\Windows\splwow64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [415680 2012-02-06] (Autodesk, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31072 2008-10-25] (Microsoft Corporation)
HKLM-x32\...\Run: [mobilegeni daemon] => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [761024 2013-12-10] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] - rmdir /s /q "\SearchProtect"
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20473504 2013-10-02] (Skype Technologies S.A.)
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [Facebook Update] => C:\Users\Lidija\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-11-19] (Facebook Inc.)
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [uTorrent] => C:\Users\Lidija\AppData\Roaming\uTorrent\updates\3.4.1_31139.exe [1272400 2014-05-20] (BitTorrent Inc.)
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [BitTorrent Sync] => C:\Program Files (x86)\BitTorrent Sync\BTSync.exe [3015528 2014-05-04] (BitTorrent, Inc.)
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [BackgroundContainer] => "C:\Windows\SysWOW64\Rundll32.exe" "C:\Users\Lidija\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [NextLive] => C:\Windows\SysWOW64\rundll32.exe "C:\Users\Lidija\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [135160 2014-01-28] (PC Utilities Software Limited)
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [Driver Pro] => C:\Program Files (x86)\Driver Pro\DPLauncher.exe [820752 2013-12-25] (PC Utilities Software Limited)
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [se] => C:\Users\Lidija\AppData\Roaming\SkypEmoticons\SE.exe [5679008 2014-04-09] (SkypEmoticons)
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\MountPoints2: {1b95fd8e-b99f-11e3-a115-a45d36c1c004} - F:\Startme.exe
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll [202560 2014-05-14] (Client Connect LTD)
AppInit_DLLs: C:\PROGRA~2\WS-BOO~1\ASSIST~2.DLL => C:\Program Files (x86)\WS-Booster\Assistant_x64.dll [4184064 2014-02-24] ()
AppInit_DLLs: C:\PROGRA~2\SW-BOO~1\ASSIST~2.DLL => C:\Program Files (x86)\SW-Booster\Assistant_x64.dll [4210176 2014-04-09] ()
AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [171840 2014-05-14] (Client Connect LTD)
AppInit_DLLs-x32: c:\progra~2\ws-boo~1\assist~1.dll => C:\Program Files (x86)\WS-Booster\Assistant.dll [4154880 2014-02-24] ()
AppInit_DLLs-x32: c:\progra~2\sw-boo~1\assist~1.dll => C:\Program Files (x86)\SW-Booster\Assistant.dll [4296192 2014-04-09] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SolidWorks 2013 Fast Start.lnk
ShortcutTarget: SolidWorks 2013 Fast Start.lnk -> C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe (Flexera Software, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SolidWorks Background Downloader.lnk
ShortcutTarget: SolidWorks Background Downloader.lnk -> C:\Program Files (x86)\Common Files\SolidWorks Installation Manager\BackgroundDownloading\sldBgDwld.exe (Dassault Systčmes SolidWorks Corp.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [Link mogu videti samo ulogovani korisnici]
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = [Link mogu videti samo ulogovani korisnici]
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xE646430C96E2CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = sr-rs
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = [Link mogu videti samo ulogovani korisnici]
URLSearchHook: HKLM-x32 - SweetTunes1 Toolbar - {f9d1c08c-2031-4e6c-ab51-50330ac2d988} - C:\Program Files (x86)\SweetTunes1\prxtbSwee.dll (Conduit Ltd.)
URLSearchHook: HKCU - SweetTunes1 Toolbar - {f9d1c08c-2031-4e6c-ab51-50330ac2d988} - C:\Program Files (x86)\SweetTunes1\prxtbSwee.dll (Conduit Ltd.)
SearchScopes: HKLM - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL =
SearchScopes: HKLM-x32 - DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&pid=1925&r=2014/04/09&hid=111269803069154502&lg=EN&cc=RS&unqvl=51
SearchScopes: HKLM-x32 - {979a125b-0627-4ab6-b991-aa07c72de72a} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&SearchSource=4&ctid=CT3309767&CUI=UN11379035163226023&UM=2
SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&pid=1925&r=2014/04/09&hid=111269803069154502&lg=EN&cc=RS&unqvl=51
SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&SearchSource=4&ctid=CT3282698&CUI=UN22185870101318841&UM=2&UP=SPD2C979A9-CE20-4B6B-BCC2-2E239918E31B&SSPV=
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&SearchSource=4&ctid=CT3282698&CUI=UN22185870101318841&UM=2&UP=SPD2C979A9-CE20-4B6B-BCC2-2E239918E31B&SSPV=
SearchScopes: HKCU - {89A40EDA-1074-4165-B581-61D6185918C2} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&SearchSource=4&ctid=CT3282698&CUI=UN22185870101318841&UM=2
SearchScopes: HKCU - {979a125b-0627-4ab6-b991-aa07c72de72a} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&SearchSource=4&ctid=CT3309767&CUI=UN11379035163226023&UM=2
SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&pid=1925&r=2014/04/09&hid=111269803069154502&lg=EN&cc=RS&unqvl=51
BHO: Search-NewTaab - {45F9F66A-1DDA-69B4-9DD6-A1E1814A6BE1} - C:\Program Files (x86)\Search-NewTaab\FBDRk.x64.dll ()
BHO: BitSaaver - {5B34802C-16BB-D950-E5AA-962999826538} - C:\ProgramData\BitSaaver\YfoqLZn.x64.dll ()
BHO: NetoCCoaupon - {5F6DB00A-501A-5D41-5CD6-9CCB2C1F947E} - C:\ProgramData\NetoCCoaupon\RBep.x64.dll ()
BHO: SNT - {7411A7BB-C3D6-C753-6174-A578D1594C2E} - C:\Program Files (x86)\SNT\cm2N72.x64.dll ()
BHO: saFeweb - {79FB67F5-BBEE-B07C-0F67-62B3BD46AB34} - C:\Program Files (x86)\saFeweb\RnK.x64.dll ()
BHO: Speed Test 125 - {D7A09A0B-D2E6-413F-9EBF-F8AD66839544} - C:\Program Files (x86)\Speed Test 125\ScriptHost64.dll (Speed Analysis)
BHO: ALluCheapPruIIce - {E224622D-65BA-A3A3-FBFE-DDF7F280E692} - C:\ProgramData\ALluCheapPruIIce\GdZleJR.x64.dll ()
BHO: YoutubeAdblocker - {EC41196C-DDFB-F486-D1BF-F68EA7AFB35D} - C:\Program Files (x86)\YoutubeAdblocker\Vw_sRy.x64.dll ()
BHO: wEbusavae - {F119C3F3-5129-BCF2-28A3-763A306544B3} - C:\Program Files (x86)\wEbusavae\Ew0.x64.dll ()
BHO-x32: Search-NewTaab - {45F9F66A-1DDA-69B4-9DD6-A1E1814A6BE1} - C:\Program Files (x86)\Search-NewTaab\FBDRk.dll ()
BHO-x32: flash-Enhancer - {5A60B6BB-FA81-4EFA-AB9C-A820E2143736} - C:\Program Files (x86)\AmiExt\flashEnhancer\ie\flashEnhancer.dll ()
BHO-x32: BitSaaver - {5B34802C-16BB-D950-E5AA-962999826538} - C:\ProgramData\BitSaaver\YfoqLZn.dll ()
BHO-x32: NetoCCoaupon - {5F6DB00A-501A-5D41-5CD6-9CCB2C1F947E} - C:\ProgramData\NetoCCoaupon\RBep.dll ()
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: SNT - {7411A7BB-C3D6-C753-6174-A578D1594C2E} - C:\Program Files (x86)\SNT\cm2N72.dll ()
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: saFeweb - {79FB67F5-BBEE-B07C-0F67-62B3BD46AB34} - C:\Program Files (x86)\saFeweb\RnK.dll ()
BHO-x32: Speed Test 125 - {D7A09A0B-D2E6-413F-9EBF-F8AD66839544} - C:\Program Files (x86)\Speed Test 125\ScriptHost.dll (Speed Analysis)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: ALluCheapPruIIce - {E224622D-65BA-A3A3-FBFE-DDF7F280E692} - C:\ProgramData\ALluCheapPruIIce\GdZleJR.dll ()
BHO-x32: Rich Media View - {e5d168f4-b980-4d91-a7c1-bdf4d82722a4} - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release80\ie\RichMediaViewV1release80.dll ()
BHO-x32: YoutubeAdblocker - {EC41196C-DDFB-F486-D1BF-F68EA7AFB35D} - C:\Program Files (x86)\YoutubeAdblocker\Vw_sRy.dll ()
BHO-x32: wEbusavae - {F119C3F3-5129-BCF2-28A3-763A306544B3} - C:\Program Files (x86)\wEbusavae\Ew0.dll ()
BHO-x32: SweetTunes1 Toolbar - {f9d1c08c-2031-4e6c-ab51-50330ac2d988} - C:\Program Files (x86)\SweetTunes1\prxtbSwee.dll (Conduit Ltd.)
Toolbar: HKLM-x32 - SweetTunes1 Toolbar - {f9d1c08c-2031-4e6c-ab51-50330ac2d988} - C:\Program Files (x86)\SweetTunes1\prxtbSwee.dll (Conduit Ltd.)
Toolbar: HKCU - No Name - {F9D1C08C-2031-4E6C-AB51-50330AC2D988} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 89.216.1.40 89.216.1.50

FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @lightspark.github.com/Lightspark;version=1 - C:\Program Files (x86)\Lightspark 0.5.3-git\nplightsparkplugin.dll ( )
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Lidija\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF HKLM-x32\...\Firefox\Extensions: [speedtest125@SpeedAnalysis] - C:\Users\Lidija\AppData\Roaming\Mozilla\Extensions\speedtest125@SpeedAnalysis
FF Extension: Speed Test 125 - C:\Users\Lidija\AppData\Roaming\Mozilla\Extensions\speedtest125@SpeedAnalysis [2013-12-24]
FF HKLM-x32\...\Firefox\Extensions: [ext@flashenhancer.com] - C:\Program Files (x86)\AmiExt\flashEnhancer\ff
FF Extension: flash-Enhancer - C:\Program Files (x86)\AmiExt\flashEnhancer\ff [2014-04-20]
FF HKLM-x32\...\Firefox\Extensions: [ext@RichMediaViewV1release80.net] - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release80\ff
FF Extension: Rich Media View - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release80\ff [2014-05-13]
FF HKCU\...\Firefox\Extensions: [speedtest125@SpeedAnalysis] - C:\Users\Lidija\AppData\Roaming\Mozilla\Extensions\speedtest125@SpeedAnalysis
FF Extension: Speed Test 125 - C:\Users\Lidija\AppData\Roaming\Mozilla\Extensions\speedtest125@SpeedAnalysis [2013-12-24]

Chrome:
=======
CHR HomePage: [Link mogu videti samo ulogovani korisnici]
CHR StartupUrls: "hxxp://websearch.amaizingsearches.info/?pid=1925&r=2014/04/09&hid=111269803069154502&lg=EN&cc=RS&unqvl=51"
CHR DefaultSearchKeyword: websearch
CHR DefaultSearchProvider: WebSearch
CHR DefaultSearchURL: [Link mogu videti samo ulogovani korisnici]{searchTerms}&pid=1925&r=2014/04/09&hid=111269803069154502&lg=EN&cc=RS&unqvl=51
CHR DefaultNewTabURL:
CHR Extension: (wwebsave) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahmidkcgcjbojngeaegpmiiphnaiaong [2014-02-24]
CHR Extension: (Search-NewTaab) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\ambcdhcgnjbkeacpmbakmjohfbohidnh [2014-02-24]
CHR Extension: (uTorrentControl_v6) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\cflheckfmhopnialghigdlggahiomebp [2013-12-06]
CHR Extension: (SNT) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkmjmbahdaphhdbkoffomomeicmfnmfm [2014-04-09]
CHR Extension: (Speed Test 125) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\foemoghaihkffjmolobemlhfnomgpiei [2013-12-24]
CHR Extension: (Allin1Convert) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcncagkkhfoombgbihckkccmkjemhohl [2014-02-24]
CHR Extension: (saFeweb) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiihdfnppfhilnmdbnfpjlpolnfklfop [2014-04-09]
CHR Extension: (Save Flash) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\lackfehpdclhclidcbbfcemcpolgdgnb [2014-02-24]
CHR Extension: (YoutubeAdblocker) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhheeclnefdiiinkfnmlcbmlnpnljbmg [2014-02-24]
CHR Extension: (OnlineMapFinder) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpnamokkgdjkpdhcobfnnggnpmghhddo [2014-02-24]
CHR Extension: (Google Wallet) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-24]
CHR Extension: (Rich Media View) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdgjhhmcklnmfmbejfidmkpiefdinaad [2014-05-13]
CHR Extension: (DIgiSSaVer) - C:\Users\Lidija\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkjkifebooedphhehkcggkipafkocohe [2014-04-06]
CHR HKCU\...\Chrome\Extension: [cflheckfmhopnialghigdlggahiomebp] - C:\Users\Lidija\AppData\Local\CRE\cflheckfmhopnialghigdlggahiomebp.crx [2013-11-21]
CHR HKLM-x32\...\Chrome\Extension: [cflheckfmhopnialghigdlggahiomebp] - C:\Users\Lidija\AppData\Local\CRE\cflheckfmhopnialghigdlggahiomebp.crx [2013-11-21]
CHR HKLM-x32\...\Chrome\Extension: [foemoghaihkffjmolobemlhfnomgpiei] - C:\Users\Lidija\AppData\Roaming\speedtest125\speedtest125.crx [2013-10-31]
CHR HKLM-x32\...\Chrome\Extension: [pdgjhhmcklnmfmbejfidmkpiefdinaad] - C:\Program Files (x86)\RichMediaViewV1\RichMediaViewV1release80\ch\RichMediaViewV1release80.crx [2014-05-13]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

R2 84ef8d51; C:\Program Files (x86)\WS-Booster\AssistantSvc.dll [181072 2014-02-24] ()
S2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] ()
R2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2496832 2014-05-14] (Client Connect LTD)
R2 d0e87c27; C:\Program Files (x86)\SW-Booster\AssistantSvc.dll [174928 2014-04-09] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
R2 mitsijm2013; C:\Program Files\Autodesk\Inventor 2013\Moldflow\bin\mitsijm.exe [339776 2012-01-30] ( )
S2 ProtectMonitor; C:\Program Files\PCDApp\StartHelp.exe [97007 2014-04-10] ()
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2100024 2013-08-29] (TuneUp Software)
R2 Update Surftastic; C:\Program Files (x86)\Surftastic\updateSurftastic.exe [317352 2014-05-31] ()
R2 Util Surftastic; C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe [317352 2014-05-31] ()

==================== Drivers (Whitelisted) ====================

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-12-24] (Disc Soft Ltd)
S3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [273040 2013-02-02] (Realtek Semiconductor Corp.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software)
R1 wStLibG64; C:\Windows\System32\drivers\wStLibG64.sys [61120 2014-04-20] (StdLib)
R1 {01531192-f7ef-415f-a549-cfdb11836731}w64; C:\Windows\System32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}w64.sys [61120 2014-04-24] (StdLib)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-05-31 20:25 - 2014-05-31 20:25 - 00022691 _____ () C:\Users\Lidija\Desktop\FRST.txt
2014-05-31 20:24 - 2014-05-31 20:24 - 02066944 _____ (Farbar) C:\Users\Lidija\Downloads\FRST64 (1).exe
2014-05-31 20:24 - 2014-05-31 20:24 - 00022618 _____ () C:\Users\Lidija\Downloads\FRST.txt
2014-05-31 20:23 - 2014-05-31 20:25 - 00000000 ____D () C:\FRST
2014-05-31 20:18 - 2014-05-31 20:19 - 02066944 _____ (Farbar) C:\Users\Lidija\Desktop\FRST64.exe
2014-05-27 10:02 - 2014-05-27 10:02 - 00942576 _____ () C:\Users\Lidija\Downloads\install-flashplayer (2).exe
2014-05-25 15:18 - 2014-05-25 15:18 - 00942568 _____ () C:\Users\Lidija\Downloads\install-flashplayer (1).exe
2014-05-25 08:45 - 2014-05-25 08:45 - 00942576 _____ () C:\Users\Lidija\Downloads\install-flashplayer.exe
2014-05-21 20:38 - 2014-05-21 20:38 - 00000000 ____D () C:\ProgramData\ALluCheapPruIIce
2014-05-21 20:18 - 2014-05-21 20:18 - 00000000 ____D () C:\ProgramData\NetoCCoaupon
2014-05-20 21:10 - 2013-02-21 13:27 - 01249920 _____ () C:\Users\Lidija\Desktop\sklop -kotor.bak
2014-05-20 20:02 - 2014-05-20 21:10 - 01548356 _____ () C:\Users\Lidija\Desktop\op.list.dwg
2014-05-16 09:43 - 2014-05-16 09:43 - 27215920 _____ (GrabCAD, Inc.) C:\Users\Lidija\Downloads\GrabCAD-Workbench-installer.exe
2014-05-13 23:38 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-13 23:38 - 2014-05-06 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-13 23:38 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-13 23:38 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-13 23:38 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-13 23:38 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-13 22:51 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-13 22:51 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-13 22:51 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-05-13 22:51 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-13 22:51 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-13 22:51 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-05-13 22:51 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-13 22:51 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-05-13 22:51 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-13 22:51 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-05-13 22:51 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-05-13 22:51 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-13 22:51 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-05-13 22:51 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-13 22:51 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-13 22:51 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-05-13 22:51 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-05-13 22:51 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-13 22:51 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-13 22:51 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-13 22:51 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-05-13 22:51 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-05-13 22:51 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-05-13 22:51 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-05-13 22:51 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-05-13 22:51 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-05-13 22:51 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-05-13 22:51 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-05-13 22:51 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-05-13 22:51 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-05-13 22:51 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-05-13 22:51 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-05-13 22:51 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-05-13 22:51 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-05-13 22:39 - 2014-05-13 22:39 - 00000464 __RSH () C:\ProgramData\ntuser.pol
2014-05-13 22:39 - 2014-05-13 22:39 - 00000000 ____D () C:\Program Files (x86)\RichMediaViewV1
2014-05-05 23:24 - 2014-05-14 14:54 - 00000000 ___SD () C:\Windows\system32\CompatTel

==================== One Month Modified Files and Folders =======

2014-05-31 20:26 - 2013-10-23 07:39 - 00000000 ____D () C:\Users\Lidija\AppData\Local\Temp
2014-05-31 20:25 - 2014-05-31 20:25 - 00022691 _____ () C:\Users\Lidija\Desktop\FRST.txt
2014-05-31 20:25 - 2014-05-31 20:23 - 00000000 ____D () C:\FRST
2014-05-31 20:24 - 2014-05-31 20:24 - 02066944 _____ (Farbar) C:\Users\Lidija\Downloads\FRST64 (1).exe
2014-05-31 20:24 - 2014-05-31 20:24 - 00022618 _____ () C:\Users\Lidija\Downloads\FRST.txt
2014-05-31 20:23 - 2013-10-23 06:35 - 02067131 _____ () C:\Windows\WindowsUpdate.log
2014-05-31 20:22 - 2013-12-06 13:24 - 00000000 ____D () C:\Users\Lidija\Desktop\PCPerformer-BitTorrent-c
2014-05-31 20:19 - 2014-05-31 20:18 - 02066944 _____ (Farbar) C:\Users\Lidija\Desktop\FRST64.exe
2014-05-31 20:13 - 2013-10-24 06:26 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-05-31 19:39 - 2013-10-24 06:23 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-05-31 19:16 - 2009-07-14 07:13 - 00778834 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-31 19:15 - 2013-12-24 12:35 - 00049616 _____ () C:\Users\Lidija\daemonprocess.txt
2014-05-31 18:31 - 2013-11-19 10:26 - 00000932 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-501525518-2819257411-2764561724-1000UA.job
2014-05-31 17:42 - 2014-04-20 21:22 - 00000342 _____ () C:\Windows\Tasks\AmiUpdXp.job
2014-05-31 17:29 - 2014-02-15 13:24 - 00003120 _____ () C:\Windows\System32\Tasks\Advanced System Protector_startup
2014-05-31 17:29 - 2009-07-14 04:34 - 00000580 _____ () C:\Windows\win.ini
2014-05-31 17:27 - 2013-12-24 12:35 - 00000000 ____D () C:\Users\Lidija\AppData\Roaming\newnext.me
2014-05-31 17:26 - 2014-04-09 12:11 - 00000450 ____H () C:\Windows\Tasks\SW-Booster-S-1095609242.job
2014-05-31 17:26 - 2014-02-24 10:52 - 00000438 ____H () C:\Windows\Tasks\WS-Booster-S-46480778.job
2014-05-31 17:26 - 2013-12-06 12:53 - 00000000 ____D () C:\Users\Lidija\AppData\Roaming\BitTorrent Sync
2014-05-31 17:26 - 2013-12-06 12:51 - 00000000 ____D () C:\Users\Lidija\AppData\Roaming\uTorrent
2014-05-31 17:26 - 2013-10-24 06:23 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-05-31 17:26 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-31 17:25 - 2010-11-21 05:47 - 00024750 _____ () C:\Windows\PFRO.log
2014-05-31 17:25 - 2009-07-14 06:51 - 00050013 _____ () C:\Windows\setupact.log
2014-05-27 20:53 - 2013-10-24 07:26 - 00000000 ____D () C:\Users\Lidija\AppData\Roaming\Skype
2014-05-27 10:02 - 2014-05-27 10:02 - 00942576 _____ () C:\Users\Lidija\Downloads\install-flashplayer (2).exe
2014-05-26 18:57 - 2009-07-14 06:45 - 00020832 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-26 18:57 - 2009-07-14 06:45 - 00020832 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-26 17:05 - 2013-11-19 10:26 - 00000910 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-501525518-2819257411-2764561724-1000Core.job
2014-05-25 15:18 - 2014-05-25 15:18 - 00942568 _____ () C:\Users\Lidija\Downloads\install-flashplayer (1).exe
2014-05-25 08:45 - 2014-05-25 08:45 - 00942576 _____ () C:\Users\Lidija\Downloads\install-flashplayer.exe
2014-05-22 02:11 - 2014-04-21 13:09 - 00000000 ____D () C:\Users\Lidija\AppData\Roaming\vlc
2014-05-21 20:39 - 2014-02-24 10:52 - 00000000 ____D () C:\ProgramData\1cf04d1e8fe80a5c
2014-05-21 20:38 - 2014-05-21 20:38 - 00000000 ____D () C:\ProgramData\ALluCheapPruIIce
2014-05-21 20:18 - 2014-05-21 20:18 - 00000000 ____D () C:\ProgramData\NetoCCoaupon
2014-05-20 21:10 - 2014-05-20 20:02 - 01548356 _____ () C:\Users\Lidija\Desktop\op.list.dwg
2014-05-20 20:05 - 2013-12-24 12:35 - 00000000 ____D () C:\Users\Lidija\AppData\Local\cache
2014-05-19 22:20 - 2013-12-24 12:34 - 00000000 ____D () C:\Program Files (x86)\SearchProtect
2014-05-16 12:34 - 2014-04-09 13:54 - 00000000 ____D () C:\Users\Lidija\AppData\Local\TempSWBackupDirectory
2014-05-16 10:44 - 2014-04-08 12:39 - 00000000 ____D () C:\Users\Lidija\AppData\Roaming\SolidWorks
2014-05-16 09:43 - 2014-05-16 09:43 - 27215920 _____ (GrabCAD, Inc.) C:\Users\Lidija\Downloads\GrabCAD-Workbench-installer.exe
2014-05-14 14:56 - 2013-10-23 07:39 - 00000000 ___RD () C:\Users\Lidija\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-14 14:56 - 2013-10-23 07:39 - 00000000 ___RD () C:\Users\Lidija\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-05-14 14:54 - 2014-05-05 23:24 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-14 14:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-05-13 22:40 - 2014-04-20 21:23 - 00000214 _____ () C:\extensions.ini
2014-05-13 22:39 - 2014-05-13 22:39 - 00000464 __RSH () C:\ProgramData\ntuser.pol
2014-05-13 22:39 - 2014-05-13 22:39 - 00000000 ____D () C:\Program Files (x86)\RichMediaViewV1
2014-05-13 22:39 - 2009-07-14 05:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-05-13 22:39 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-05-12 14:33 - 2009-07-14 07:08 - 00032574 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-05-09 08:14 - 2014-05-13 22:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-09 08:11 - 2014-05-13 22:51 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-06 06:40 - 2014-05-13 23:38 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-06 06:17 - 2014-05-13 23:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-06 05:25 - 2014-05-13 23:38 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-06 05:07 - 2014-05-13 23:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-06 05:00 - 2014-05-13 23:38 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-06 04:10 - 2014-05-13 23:38 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll

Some content of TEMP:
====================
C:\Users\Lidija\AppData\Local\Temp\applinstall.exe
C:\Users\Lidija\AppData\Local\Temp\SPSetup.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-12-10 19:37

==================== End Of Log ============================
[Link mogu videti samo ulogovani korisnici]

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Deinstaliraj WS-Booster.exe






Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Scan] i pricekaj da program zavrsi.
Klikni na dugme [Clean]
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S0].txt







Arrow


1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

Start
C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
C:\Program Files\PCDApp\dgen.exe
C:\Program Files (x86)\Surftastic\updateSurftastic.exe
C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe
C:\Program Files (x86)\Surftastic\bin\Surftastic.PurBrowse64.exe
C:\Program Files (x86)\Surftastic\bin\Surftastic.BrowserAdapter.exe
C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe
C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe
HKLM-x32\...\Run: [mobilegeni daemon] => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [761024 2013-12-10] ()
HKU\.DEFAULT\...\RunOnce: [SpUninstallDeleteDir] - rmdir /s /q "\SearchProtect"
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [BackgroundContainer] => "C:\Windows\SysWOW64\Rundll32.exe" "C:\Users\Lidija\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <===== ATTENTION
C:\Users\Lidija\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [NextLive] => C:\Windows\SysWOW64\rundll32.exe "C:\Users\Lidija\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
C:\Users\Lidija\AppData\Roaming\newnext.me
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [135160 2014-01-28] (PC Utilities Software Limited)
C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\Run: [Driver Pro] => C:\Program Files (x86)\Driver Pro\DPLauncher.exe [820752 2013-12-25] (PC Utilities Software Limited)
C:\Program Files (x86)\Driver Pro\DPLauncher.exe
HKU\S-1-5-21-501525518-2819257411-2764561724-1000\...\MountPoints2: {1b95fd8e-b99f-11e3-a115-a45d36c1c004} - F:\Startme.exe
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll [202560 2014-05-14] (Client Connect LTD)
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll
AppInit_DLLs: C:\PROGRA~2\WS-BOO~1\ASSIST~2.DLL => C:\Program Files (x86)\WS-Booster\Assistant_x64.dll [4184064 2014-02-24] ()
AppInit_DLLs: C:\PROGRA~2\SW-BOO~1\ASSIST~2.DLL => C:\Program Files (x86)\SW-Booster\Assistant_x64.dll [4210176 2014-04-09] ()
C:\Program Files (x86)\WS-Booster\Assistant_x64.dll
C:\Program Files (x86)\SW-Booster\Assistant_x64.dll
AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [171840 2014-05-14] (Client Connect LTD)
C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll
AppInit_DLLs-x32: c:\progra~2\ws-boo~1\assist~1.dll => C:\Program Files (x86)\WS-Booster\Assistant.dll [4154880 2014-02-24] ()
AppInit_DLLs-x32: c:\progra~2\sw-boo~1\assist~1.dll => C:\Program Files (x86)\SW-Booster\Assistant.dll [4296192 2014-04-09] ()
C:\Program Files (x86)\WS-Booster\Assistant.dll
C:\Program Files (x86)\SW-Booster\Assistant.dll
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
R2 84ef8d51; C:\Program Files (x86)\WS-Booster\AssistantSvc.dll [181072 2014-02-24] ()
C:\Program Files (x86)\WS-Booster\AssistantSvc.dll
R2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2496832 2014-05-14] (Client Connect LTD)
C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe
R2 d0e87c27; C:\Program Files (x86)\SW-Booster\AssistantSvc.dll [174928 2014-04-09] ()
C:\Program Files (x86)\SW-Booster\AssistantSvc.dll
S2 ProtectMonitor; C:\Program Files\PCDApp\StartHelp.exe [97007 2014-04-10] ()
C:\Program Files\PCDApp\StartHelp.exe
R2 Update Surftastic; C:\Program Files (x86)\Surftastic\updateSurftastic.exe [317352 2014-05-31] ()
R2 Util Surftastic; C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe [317352 2014-05-31] ()
C:\Program Files (x86)\Surftastic\updateSurftastic.exe
C:\Program Files (x86)\Surftastic\bin\utilSurftastic.exe
R1 {01531192-f7ef-415f-a549-cfdb11836731}w64; C:\Windows\System32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}w64.sys [61120 2014-04-24] (StdLib)
C:\Windows\System32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}w64.sys
C:\Users\Lidija\AppData\Local\Temp\applinstall.exe
C:\Users\Lidija\AppData\Local\Temp\SPSetup.exe
Protector\AdvancedSystemProtector.exe [2013-12-23] (Systweak) <==== ATTENTION
Task: {4BD65A05-A8A3-4F5A-BBF6-1638B0D7A744} - System32\Tasks\AmiUpdXp => C:\Users\Lidija\AppData\Local\41\a18467.exe [2014-04-20] () <==== ATTENTION
Task: {87BD8609-9C39-4E16-A2EA-3B5CF2209658} - System32\Tasks\BackgroundContainer Startup Task => Rundll32.exe "C:\Users\Lidija\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun <==== ATTENTION
Task: C:\Windows\Tasks\AmiUpdXp.job => C:\Users\Lidija\AppData\Local\41\a18467.exe <==== ATTENTION
Reboot:
End


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.








Arrow


Preuzmi instalaciju za Malwarebytes Anti-Malware (MBAM) ver.2.0 i instaliraj aplikaciju.
Dvoklik na mbam-setup.exe i prati uputstva za instalaciju. Instalacija je klasicna, "Next > I Agree . . > Next > Install" princip. Po zavrsenoj instalaciji, klikni Finish.
Napomena: 14 dana besplatna trail verzija je pre-selektovana. Mozes decekirati ovu opciju ako zelis.


- Po prvom pokretanju, MBAM ce zapoceti "Update" u nameri da preuzme najsvezije definicije.
Ili ... klik na 'Update Now >>' link ili dugme radi preuzimanja svezih definicija.

• Konfigurisati skener; Na 'Settings' tabu, Detection and Protection podesiti sledece opcije:
1. pod-tab Detection Options, cekirati kucicu za 'Scan for rootkits';
2. pod-tab Non-Malware Protection, za 'PUP detections', prostarati se da je selektovana 'Threat detections as malware' opcija.




• Izvrsiti 'Threat Scan';
Klik na Scan tab, zatim na 'Scan Now >>' da bi izvrsio skeniranje.
Ukoliko MBAM prijavi da je 'update' dostupan, klik na 'Update Now' a potom nastaviti do skeniranja.
Obavestenje: kod nekih teskih infekcija, moguce je dobiti sledecu poruku "Could not load DDA driver". U tom slucaju, klik Yes na tu poruku, dopustiti ucitavanje drajvera po restartu racunara, dozvoliti restart.
Potom, nastaviti sa ostatkom instrukcija.


• Po zavrsenom skeniranju, klik na Apply Action dugme ukoliko je pretnja detektovana. Sacekati da program zatrazi restart!
- Klik na Yes na poruku koja govori da ce se sistem restartovati.



• Postaviti izvestaj (export-ovati logfile) na uvid;
Ponovo pokrenuti MBAM, klik na History tab > Application Logs. Dvoklik na 'Scan Log' koji pokazuje vreme i datum upravo izvrsenog skeniranja.
1. U novom prozoru klik na 'Export' dugme, pa izabrati 'Text file (*.txt)';
2. Kada se pojavi Save File dialog, izabrati da se log sacuva na Desktop.
U tom istom prozoru, dole pod File name: upisi 'mbam' kao naziv izvestaja i klikni dugme Save.

- Po dobijenoj poruci ("Your file has been successfully exported") izvestaj koji si nazvao kao 'mbam' bice sacuvan na Desktop.




Arrow Okaci mbam.txt uz poruku koristeci opciju Prikači fajl.

Ko je trenutno na forumu
 

Ukupno su 1239 korisnika na forumu :: 151 registrovanih, 9 sakrivenih i 1079 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 15694 - dana 01 Feb 2026 12:23

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 037, 16.mabr, aleksandarbl, aramis s, asdfjklc, Aska, babaroga, baki011, Betty25, bokisha253, Boroš, Bozjidar87, Burovnyak, C-Gun, ccoogg123, celt, cemix, CHARLIE JA., Citalac, Crazzer, cuvarkuca, cvrle312, DaliborVukadinovic, Denaya, dexteroza, Dimitrije Paunovic, Dimitrise93, DjomlaHomer, Dragacevac, draganl, drimer, Drugard72, Drugsparrow, dule10savic, dusan.l, dushan, Dzuki, Electron, famoso, fokac, FOX, GeoM, Giskard, gorval, Great White, Griffon vulture, Grochow, Hardenberg, Heavy Jerk, IpMan, Ir, istina, Istman, Ivan Germanovic, JOntra, Kajzer Soze, Kalu128338, Kichma, kirucar, Koce, Kontrausluga, kovinacc, Kukuvaja, kuntakinte, kutija11, lacko, ladro, luka35, MagicniHerpes, Manjane, marsi, MarsRed, Md84, mikrimaus, MIKULENCE, Miler88, MILO-VAN, Milos82, Mićko, mocnijogurt, Moldovan, mrm, mrzimregistraciju, Naj-Turs, Nepopravljivi, nick79, NikMilitari, novator, oblivion, Oscar, Otto Grunf, paladin71, Panter, Papadubi, PC_Liu94, pein, Pekman, picknick, Polemarchoi, PoolbegD02, Povratak1912, proka1ng, proljece, promajauglavi, rambod, Ray1973, Remain, renvoi, Ripanjac, royst33, ruma, S-lash, S2M, Sase, Shinobi, shlauf, sickmouse, simazr, Singidunumac, Sirius, siwoti, skvara, Smiljkovich, Srki94, stagezin, stalja, stegonosa, steksi, Tas011, TheDictator, theNedjeljko, Timočka Divizija, Toper, trutcina, US_Rank_0, v0idmp3, v82, Vanderx, Vanja_03, veljko82, vlado_pg, volimpivuvolimrakiju, zdrebac, zemljanin, Zimbabwe, zlatkoa987, Zmaj Tolak, Zoca, zubri, zule2, 223223