PROVERA

2

PROVERA

offline
  • Pridružio: 10 Dec 2015
  • Poruke: 11

Evo fixloga Smile

Fix result of Farbar Recovery Scan Tool (x64) Version:09-12-2015
Ran by Gojko (2015-12-11 14:55:54) Run:1
Running from C:\Users\Gojko\Desktop
Loaded Profiles: Gojko (Available Profiles: Gojko)
Boot Mode: Normal
==============================================

fixlist content:
*****************
createrestorepoint:
closeprocesses:
emptytemp:
Task: {F64F2C96-99A1-41DA-81EF-F3FF4AA825AA} - System32\Tasks\Techsmart Computer Service => C:\Program Files (x86)\Techsmart Computer\ittask.exe <==== ATTENTION
Task: {D96883F5-0D7B-4007-8CA4-BCFF0901A830} - System32\Tasks\Internet Checker => C:\Users\Gojko\AppData\Roaming\Internet Checker\Internet Checker.exe [2015-12-09] () <==== ATTENTION
C:\Users\Gojko\AppData\Roaming\Internet Checker
C:\Program Files (x86)\Techsmart Computer
AlternateDataStreams: C:\Windows\system32\Drivers\wgqsgpji.sys:changelist
AlternateDataStreams: C:\Windows\system32\Drivers\zeedujfb.sys:changelist
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
CHR DefaultSearchURL: Default -> hxxps://us.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_frmr_15_50_newdop¶m1=1¶m2=f%3D4%26b%3DChrome%26cc%3Dme%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1Qzu0CyEyDyEyEyEzzyEtCtCyCtBtB0CtA0EtN0D0Tzu0StCyEtAzztN1L2XzutAtFtCyEtFtDtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2SyD0Fzy0CtC0EyEyCtGtAtA0DtAtG0E0ByC0CtGyDtA0A0BtGyDtA0DtAtA0CtAyCtAyDtByC2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyDzztByB0F0AtD0CtG0ByE0E0AtGyE0A0AyBtGzytCzy0AtGzy0C0B0C0CyD0EtD0AtBtA0B2QtN0A0LzuyE%26cr%3D1347582360%26a%3Dwny_frmr_15_50_newdop%26os%3DWindows%2B8.1%2BEnterprise&p={searchTerms}
CHR DefaultSearchKeyword: Default -> search provided by yahoo.com
2015-12-09 07:22 - 2015-12-09 07:22 - 0000000 _____ () C:\Users\Gojko\AppData\Roaming\3603.tmp
2015-12-09 07:22 - 2015-12-09 07:22 - 0000000 _____ () C:\Users\Gojko\AppData\Roaming\D9F9.tmp
2015-12-09 07:22 - 2015-12-09 07:22 - 0017047 _____ () C:\Users\Gojko\AppData\Roaming\rp.dll
2015-12-10 01:17 - 2015-12-10 01:17 - 0000017 _____ () C:\Users\Gojko\AppData\Local\resmon.resmoncfg
*****************

Restore point was successfully created.
Processes closed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F64F2C96-99A1-41DA-81EF-F3FF4AA825AA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F64F2C96-99A1-41DA-81EF-F3FF4AA825AA}" => key removed successfully
C:\Windows\System32\Tasks\Techsmart Computer Service => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Techsmart Computer Service" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D96883F5-0D7B-4007-8CA4-BCFF0901A830}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D96883F5-0D7B-4007-8CA4-BCFF0901A830}" => key removed successfully
C:\Windows\System32\Tasks\Internet Checker => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Internet Checker" => key removed successfully
C:\Users\Gojko\AppData\Roaming\Internet Checker => moved successfully
"C:\Program Files (x86)\Techsmart Computer" => not found.
C:\Windows\system32\Drivers\wgqsgpji.sys => ":changelist" ADS removed successfully.
C:\Windows\system32\Drivers\zeedujfb.sys => ":changelist" ADS removed successfully.
"HKLM\SOFTWARE\Policies\Google" => key removed successfully
Chrome DefaultSearchURL => removed successfully
Chrome DefaultSearchKeyword => removed successfully
C:\Users\Gojko\AppData\Roaming\3603.tmp => moved successfully
C:\Users\Gojko\AppData\Roaming\D9F9.tmp => moved successfully
C:\Users\Gojko\AppData\Roaming\rp.dll => moved successfully
C:\Users\Gojko\AppData\Local\resmon.resmoncfg => moved successfully
EmptyTemp: => 1.9 GB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 14:57:18 ====

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

To bi bilo to Smile

Preuzmi "Xplode"-ov DelFix i sačuvaj ga na Desktop

Dvoklikom pokreni program.

Štikliraj sledeće opcije:
Remove disinfection tools
Purge System Restore
Reset system settings


Klikni na dugme "Run" i pričekaj da program završi rad.
Alat ce ukloniti sve koriscene alate u ovoj temi...
Kada alat završi, otvoriće izvestaj u notepadu.
Napomena: Izvestaj ce takodje biti sacuvan na C:\DelFix.txt

Nije potrebno dostavljati izvestaj.

Ko je trenutno na forumu
 

Ukupno su 790 korisnika na forumu :: 58 registrovanih, 6 sakrivenih i 726 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 357magnum, _Rade, A.R.Chafee.Jr., amaterSRB, Apok, awathorn, b_z_b, Ben Roj, ccoogg123, cenejac111, chica, crnogorac, ddjxxi, Dejan84, Denaya, Doca, dukajov, dulentse, elenemste, famoso, FOX, Futurama, Georgius, goxin, ivan1973, Joja, JOntra, kairos, kaptain, Konda, Kriglord, Krusarac, loon123, Lord Nem, menges, mercedesamg, mgolub, pera12345, perko91, Profica, Ripanjac, RJ, Sale.S, shaja1, SlaKoj, Srky Boy, stagezin, styg, Toni, trikomso, vathra, virked, Vlada1389, Vlajman1957, Voja1978, Zmaj001, |_MeD_|, Šraf