PROVERA

2

PROVERA

offline
  • Pridružio: 10 Dec 2015
  • Poruke: 11

Evo fixloga Smile

Fix result of Farbar Recovery Scan Tool (x64) Version:09-12-2015
Ran by Gojko (2015-12-11 14:55:54) Run:1
Running from C:\Users\Gojko\Desktop
Loaded Profiles: Gojko (Available Profiles: Gojko)
Boot Mode: Normal
==============================================

fixlist content:
*****************
createrestorepoint:
closeprocesses:
emptytemp:
Task: {F64F2C96-99A1-41DA-81EF-F3FF4AA825AA} - System32\Tasks\Techsmart Computer Service => C:\Program Files (x86)\Techsmart Computer\ittask.exe <==== ATTENTION
Task: {D96883F5-0D7B-4007-8CA4-BCFF0901A830} - System32\Tasks\Internet Checker => C:\Users\Gojko\AppData\Roaming\Internet Checker\Internet Checker.exe [2015-12-09] () <==== ATTENTION
C:\Users\Gojko\AppData\Roaming\Internet Checker
C:\Program Files (x86)\Techsmart Computer
AlternateDataStreams: C:\Windows\system32\Drivers\wgqsgpji.sys:changelist
AlternateDataStreams: C:\Windows\system32\Drivers\zeedujfb.sys:changelist
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
CHR DefaultSearchURL: Default -> hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_frmr_15_50_newdop¶m1=1¶m2=f%3D4%26b%3DChrome%26cc%3Dme%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0CyEyDyEyEyEzzyEtCtCyCtBtB0CtA0EtN0D0Tzu0StCyEtAzztN1L2XzutAtFtCyEtFtDtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyD0Fzy0CtC0EyEyCtGtAtA0DtAtG0E0ByC0CtGyDtA0A0BtGyDtA0DtAtA0CtAyCtAyDtByC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyDzztByB0F0AtD0CtG0ByE0E0AtGyE0A0AyBtGzytCzy0AtGzy0C0B0C0CyD0EtD0AtBtA0B2QtN0A0LzuyE%26cr%3D1347582360%26a%3Dwny_frmr_15_50_newdop%26os%3DWindows%2B8.1%2BEnterprise&p={searchTerms}
CHR DefaultSearchKeyword: Default -> search provided by yahoo.com
2015-12-09 07:22 - 2015-12-09 07:22 - 0000000 _____ () C:\Users\Gojko\AppData\Roaming\3603.tmp
2015-12-09 07:22 - 2015-12-09 07:22 - 0000000 _____ () C:\Users\Gojko\AppData\Roaming\D9F9.tmp
2015-12-09 07:22 - 2015-12-09 07:22 - 0017047 _____ () C:\Users\Gojko\AppData\Roaming\rp.dll
2015-12-10 01:17 - 2015-12-10 01:17 - 0000017 _____ () C:\Users\Gojko\AppData\Local\resmon.resmoncfg
*****************

Restore point was successfully created.
Processes closed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F64F2C96-99A1-41DA-81EF-F3FF4AA825AA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F64F2C96-99A1-41DA-81EF-F3FF4AA825AA}" => key removed successfully
C:\Windows\System32\Tasks\Techsmart Computer Service => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Techsmart Computer Service" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D96883F5-0D7B-4007-8CA4-BCFF0901A830}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D96883F5-0D7B-4007-8CA4-BCFF0901A830}" => key removed successfully
C:\Windows\System32\Tasks\Internet Checker => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Internet Checker" => key removed successfully
C:\Users\Gojko\AppData\Roaming\Internet Checker => moved successfully
"C:\Program Files (x86)\Techsmart Computer" => not found.
C:\Windows\system32\Drivers\wgqsgpji.sys => ":changelist" ADS removed successfully.
C:\Windows\system32\Drivers\zeedujfb.sys => ":changelist" ADS removed successfully.
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
Chrome DefaultSearchURL => removed successfully
Chrome DefaultSearchKeyword => removed successfully
C:\Users\Gojko\AppData\Roaming\3603.tmp => moved successfully
C:\Users\Gojko\AppData\Roaming\D9F9.tmp => moved successfully
C:\Users\Gojko\AppData\Roaming\rp.dll => moved successfully
C:\Users\Gojko\AppData\Local\resmon.resmoncfg => moved successfully
EmptyTemp: => 1.9 GB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 14:57:18 ====

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

To bi bilo to Smile

Preuzmi "Xplode"-ov DelFix i sačuvaj ga na Desktop

Dvoklikom pokreni program.

Štikliraj sledeće opcije:
Remove disinfection tools
Purge System Restore
Reset system settings


Klikni na dugme "Run" i pričekaj da program završi rad.
Alat ce ukloniti sve koriscene alate u ovoj temi...
Kada alat završi, otvoriće izvestaj u notepadu.
Napomena: Izvestaj ce takodje biti sacuvan na C:\DelFix.txt

Nije potrebno dostavljati izvestaj.

Ko je trenutno na forumu
 

Ukupno su 780 korisnika na forumu :: 47 registrovanih, 4 sakrivenih i 729 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3028 - dana 22 Nov 2019 07:47

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., amaterSRB, Apok, arsa, babaroga, Bane san, bojanM84, Boris90, Crazzer, danilopu, Dimitrise93, dollar, Dragan1998, dragon986, Faki-Valjevo, Fisherman, FOX, Georgius, Giša, goxin, HrcAk47, Kaplar2, Konda, KUZMAR, Marko Marković, milijarder, Milos ZA, MiroslavD, MrNo, Njemac, nuke92, Oluj2.1, sabros, sakota79, shaja1, Skywhaler, sovanova95, Sr.Stat., stug, Toni, udbas, vlvl, voja64, vukdra, Webb, Zerajic, zziko