|
Poslao: 07 Feb 2014 07:37
|
offline
- kraJo
- Novi MyCity građanin
- Pridružio: 28 Feb 2012
- Poruke: 19
|
Pozdrav!
Potrebna mi je pomoć pošto sam nešto zeznuo.Naime, htio sam skinuti nekakav program, nešto kao video acelerator da pokušam ubrzadi gledanje videa sa neta tj da mi ne sjecka u google chrome.Kad sam skinuo ne mogu više pokrenuti Firefox.Izbrisao sam taj program i opet ništa, deinstalirao sam Firefox pa ponovo instalirao i opet ništa.
Kad kliknem na ikonicu Firefox svaki put mi izbaci prozor sa natpisom:
firefox.exe - Application Error The application failed to initialize properly (0xc0000005).Click on OK to terminate application.
Hvala!
|
|
|
|
|
|
|
Poslao: 07 Feb 2014 07:38
|
offline
- TwinHeadedEagle

- Anti Malware Fighter
Rank 2
- Pridružio: 09 Avg 2011
- Poruke: 15879
- Gde živiš: Beograd
|
Pozdrav,
Da bi ti pomogli, moras dostaviti izvestaje na pregled. Uputstvo ces pronaci u ovoj temi
[Link mogu videti samo ulogovani korisnici]
|
|
|
|
|
|
|
Poslao: 07 Feb 2014 17:11
|
offline
- kraJo
- Novi MyCity građanin
- Pridružio: 28 Feb 2012
- Poruke: 19
|
Napisano: 07 Feb 2014 7:45
Ok, danas ću detaljno sve napraviti kad budem slobodan.
Dopuna: 07 Feb 2014 17:06
Pozdrav!
Potrebna mi je pomoć pošto sam nešto zeznuo.Naime, htio sam skinuti nekakav program, nešto kao video acelerator da pokušam ubrzadi gledanje videa sa neta tj da mi ne sjecka u google chrome.Kad sam skinuo ne mogu više pokrenuti Firefox.Izbrisao sam taj program i opet ništa, deinstalirao sam Firefox pa ponovo instalirao i opet ništa.
Kad kliknem na ikonicu Firefox svaki put mi izbaci prozor sa natpisom:
firefox.exe - Application Error The application failed to initialize properly (0xc0000005).Click on OK to terminate application.
Internet konecija mi je aDSL 3,5 MB
Hvala!
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 7.0.6000.16705 BrowserJavaVersion: 10.51.2
Run by Ljubisa at 16:58:47 on 2014-02-07
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3071.2339 [GMT 1:00]
.
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: avast! Antivirus *Disabled*
.
============== Running Processes ================
.
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Comodo\Dragon\dragon_updater.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Common Files\SpeedBit\SBUpdate\sbu.exe
C:\Documents and Settings\All Users\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\system32\osk.exe
C:\WINDOWS\system32\MSSWCHX.EXE
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = [Link mogu videti samo ulogovani korisnici]
BHO: AcroIEHlprObj Class: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office14\GROOVEEX.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office\office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
TB: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [LifeCam] "c:\program files\microsoft lifecam\LifeExp.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
dRunOnce: [nltide_2] regsvr32 /s /n /i:U shell32
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~2\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{13EE81EF-D4BD-4A73-9088-91E21669D2E3} : DHCPNameServer = 192.168.1.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: igfxcui - igfxdev.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\wpdshserviceobj.dll
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office14\GROOVEEX.DLL
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\32.0.1700.107\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\ljubisa\application data\mozilla\firefox\profiles\rtf9iqn8.default\
FF - prefs.js: browser.search.defaulturl - [Link mogu videti samo ulogovani korisnici]
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - [Link mogu videti samo ulogovani korisnici]
FF - prefs.js: keyword.URL - [Link mogu videti samo ulogovani korisnici]
FF - plugin: c:\progra~1\micros~2\office14\NPAUTHZ.DLL
FF - plugin: c:\progra~1\micros~2\office14\NPSPWRAP.DLL
FF - plugin: c:\program files\google\update\1.3.22.3\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\dtplugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_12_0_0_43.dll
.
============= SERVICES / DRIVERS ===============
.
R0 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [2012-10-5 21576]
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-3-31 49376]
R0 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-3-31 177864]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-11-1 770344]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2011-11-1 369584]
R1 VD_FileDisk;VD_FileDisk;c:\windows\system32\drivers\vd_filedisk.sys [2011-1-26 24680]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2011-11-1 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-3-31 66336]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2011-11-1 46808]
R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [2012-3-13 21992]
R2 DragonUpdater;COMODO Dragon Update Service;c:\program files\comodo\dragon\dragon_updater.exe [2014-1-28 2135232]
R2 SBUpd;SpeedBit Update;c:\program files\common files\speedbit\sbupdate\sbu.exe [2014-1-29 1749112]
R2 Skype C2C Service;Skype C2C Service;c:\documents and settings\all users\application data\skype\toolbars\skype c2c service\c2c_service.exe [2012-12-13 3290896]
R3 SBUpdd;SpeedBit UpdateD;c:\program files\common files\speedbit\sbupdate\sbw.sys [2014-1-29 31640]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-2-29 158856]
.
=============== Created Last 30 ================
.
.
==================== Find3M ====================
.
2014-02-05 19:41:19 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-02-05 19:41:18 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-01-21 17:36:45 145408 ----a-w- c:\windows\system32\javacpl.cpl
.
============= FINISH: 16:59:18.98 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 11/1/2011 8:41:43 PM
System Uptime: 2/7/2014 7:20:57 AM (9 hours ago)
.
Motherboard: Hewlett-Packard | | 085Ch
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz | XU1 PROCESSOR | 2792/800mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 29 GiB total, 21.82 GiB free.
D: is CDROM ()
E: is CDROM ()
F: is FIXED (NTFS) - 269 GiB total, 267.907 GiB free.
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E96F-E325-11CE-BFC1-08002BE10318}
Description: PS/2 Compatible Mouse
Device ID: ACPI\PNP0F13\4&369939D9&0
Manufacturer: Microsoft
Name: PS/2 Compatible Mouse
PNP Device ID: ACPI\PNP0F13\4&369939D9&0
Service: i8042prt
.
Class GUID: {4D36E96B-E325-11CE-BFC1-08002BE10318}
Description: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Device ID: ACPI\PNP0303\4&369939D9&0
Manufacturer: (Standard keyboards)
Name: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
PNP Device ID: ACPI\PNP0303\4&369939D9&0
Service: i8042prt
.
==== System Restore Points ===================
.
RP735: 2/6/2014 7:41:16 PM - System Checkpoint
.
==== Installed Programs ======================
.
Adobe Flash Player 12 Plugin
Adobe Reader 7.0
avast! Free Antivirus
CCleaner
Codec Pack - All In 1 6.0.3.0
Comodo Dragon
CPUID CPU-Z 1.60
Google Chrome
Google Update Helper
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Windows XP (KB954550-v5)
Intel(R) Extreme Graphics 2 Driver
Java 7 Update 51
Java Auto Updater
Java(TM) 6 Update 45
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Corporation
Microsoft LifeCam
Microsoft Office Access MUI (English) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office Groove MUI (English) 2010
Microsoft Office InfoPath MUI (English) 2010
Microsoft Office OneNote MUI (English) 2010
Microsoft Office Outlook MUI (English) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office Word MUI (English) 2010
Microsoft Software Update for Web Folders (English) 14
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox 26.0 (x86 en-US)
Mozilla Maintenance Service
Nero 7 Micro v7.10.1.0
NVIDIA Drivers
Security Update for Windows Internet Explorer 7 (KB938127-v2)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows XP (KB941569)
Skype Click to Call
Skype™ 5.8
Speccy
SpeedFan (remove only)
Total Commander Ultima Prime 5.5.0.0
VLC media player 2.1.2
WebFldrs XP
WinRAR archiver
.
==== Event Viewer Messages From Past Week ========
.
2/3/2014 7:16:30 AM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: i8042prt
2/3/2014 11:48:16 PM, error: Dhcp [1002] - The IP address lease 192.168.1.2 for the Network Card with network address 000BCD718F64 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
.
==== End Of File ===========================
Dopuna: 07 Feb 2014 17:11
[quote="kraJo"]Napisano: 07 Feb 2014 7:45
Ok, danas ću detaljno sve napraviti kad budem slobodan.
Dopuna: 07 Feb 2014 17:06
Pozdrav!
Potrebna mi je pomoć pošto sam nešto zeznuo.Naime, htio sam skinuti nekakav program, nešto kao video acelerator da pokušam ubrzadi gledanje videa sa neta tj da mi ne sjecka u google chrome.Kad sam skinuo ne mogu više pokrenuti Firefox.Izbrisao sam taj program i opet ništa, deinstalirao sam Firefox pa ponovo instalirao i opet ništa.
Kad kliknem na ikonicu Firefox svaki put mi izbaci prozor sa natpisom:
firefox.exe - Application Error The application failed to initialize properly (0xc0000005).Click on OK to terminate application.
Internet konecija mi je aDSL 3,5 MB
Hvala!
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 7.0.6000.16705 BrowserJavaVersion: 10.51.2
Run by Ljubisa at 16:58:47 on 2014-02-07
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3071.2339 [GMT 1:00]
.
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: avast! Antivirus *Disabled*
.
============== Running Processes ================
.
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AVAST Software\Avast\avastUI.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Comodo\Dragon\dragon_updater.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Common Files\SpeedBit\SBUpdate\sbu.exe
C:\Documents and Settings\All Users\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\system32\osk.exe
C:\WINDOWS\system32\MSSWCHX.EXE
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\Program Files\Comodo\Dragon\dragon.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = [Link mogu videti samo ulogovani korisnici]
BHO: AcroIEHlprObj Class: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office14\GROOVEEX.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office\office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
TB: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [LifeCam] "c:\program files\microsoft lifecam\LifeExp.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
dRunOnce: [nltide_2] regsvr32 /s /n /i:U shell32
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~2\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{13EE81EF-D4BD-4A73-9088-91E21669D2E3} : DHCPNameServer = 192.168.1.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: igfxcui - igfxdev.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\wpdshserviceobj.dll
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office14\GROOVEEX.DLL
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\32.0.1700.107\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\ljubisa\application data\mozilla\firefox\profiles\rtf9iqn8.default\
FF - prefs.js: browser.search.defaulturl - [Link mogu videti samo ulogovani korisnici]
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - [Link mogu videti samo ulogovani korisnici]
FF - prefs.js: keyword.URL - [Link mogu videti samo ulogovani korisnici]
FF - plugin: c:\progra~1\micros~2\office14\NPAUTHZ.DLL
FF - plugin: c:\progra~1\micros~2\office14\NPSPWRAP.DLL
FF - plugin: c:\program files\google\update\1.3.22.3\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\dtplugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_12_0_0_43.dll
.
============= SERVICES / DRIVERS ===============
.
R0 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [2012-10-5 21576]
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-3-31 49376]
R0 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-3-31 177864]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-11-1 770344]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2011-11-1 369584]
R1 VD_FileDisk;VD_FileDisk;c:\windows\system32\drivers\vd_filedisk.sys [2011-1-26 24680]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2011-11-1 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-3-31 66336]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2011-11-1 46808]
R2 cpuz135;cpuz135;c:\windows\system32\drivers\cpuz135_x32.sys [2012-3-13 21992]
R2 DragonUpdater;COMODO Dragon Update Service;c:\program files\comodo\dragon\dragon_updater.exe [2014-1-28 2135232]
R2 SBUpd;SpeedBit Update;c:\program files\common files\speedbit\sbupdate\sbu.exe [2014-1-29 1749112]
R2 Skype C2C Service;Skype C2C Service;c:\documents and settings\all users\application data\skype\toolbars\skype c2c service\c2c_service.exe [2012-12-13 3290896]
R3 SBUpdd;SpeedBit UpdateD;c:\program files\common files\speedbit\sbupdate\sbw.sys [2014-1-29 31640]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-2-29 158856]
.
=============== Created Last 30 ================
.
.
==================== Find3M ====================
.
2014-02-05 19:41:19 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-02-05 19:41:18 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-01-21 17:36:45 145408 ----a-w- c:\windows\system32\javacpl.cpl
.
============= FINISH: 16:59:18.98 =======
.
[Link mogu videti samo ulogovani korisnici]
|
|
|
|
|
|
|
|
|
Poslao: 07 Feb 2014 18:09
|
offline
- kraJo
- Novi MyCity građanin
- Pridružio: 28 Feb 2012
- Poruke: 19
|
Svaka čast!
Radi Imaš piće...kako to uspijeva, nevjerovatna stvar (bar za mene)
Šta sad treba da obrišem nepotrebno?
|
|
|
|
|
|
|
Poslao: 07 Feb 2014 18:11
|
offline
- TwinHeadedEagle

- Anti Malware Fighter
Rank 2
- Pridružio: 09 Avg 2011
- Poruke: 15879
- Gde živiš: Beograd
|
Dostavi mi izvestaj po uputstvu pa cemo nastaviti dalje sta je potrebno.
|
|
|
|
|
|
|
Poslao: 07 Feb 2014 18:12
|
offline
- kraJo
- Novi MyCity građanin
- Pridružio: 28 Feb 2012
- Poruke: 19
|
Zoek.exe v5.0.0.0 Updated 31-January-2014
Tool run by Ljubisa on Fri 02/07/2014 at 17:43:05.85.
Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: F:\My Documents\Downloads\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
2/7/2014 5:44:12 PM Zoek.exe System Restore Point Created Succesfully.
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-1844237615-1677128483-1417001333-1003\Software\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SBUpd deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SBUpd deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SBUpdd deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\SBUpdd deleted successfully
==== FireFox Fix ======================
ProfilePath: C:\Documents and Settings\Ljubisa\Application Data\Mozilla\Firefox\Profiles\rtf9iqn8.default
user.js not found
---- Lines mindspark removed from prefs.js ----
user_pref("extensions.toolbar.mindspark._4zMembers_.hp.enabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.hp.lastGuardTime", -1114170372);
user_pref("extensions.toolbar.mindspark._4zMembers_.hp.numGuards", 1);
user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", "");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2013033023");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xdm073^YY^ba");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "pconverter");
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.installation.toolbarId", "526391D4-6E4D-49C3-B0B7-F34C12ED341E");
user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1364682775129");
user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", true);
user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001");
user_pref("extensions.toolbar.mindspark.hp.enabled", true);
user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "videodownloadconverter@mindspark.com");
user_pref("extensions.toolbar.mindspark.lastInstalled", "videodownloadconverter@mindspark.com");
---- Lines ask.com removed from prefs.js ----
user_pref("extensions.wrc.SearchRules.ask.com.url", "^http(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*");
---- Lines speedbit removed from prefs.js ----
user_pref("browser.search.defaulturl", "http://go.speedbit.com/search.aspx?s=E22b&q=");
user_pref("browser.startup.homepage_override_url", "http://go.speedbit.com/?s=E22b");
---- FireFox user.js and prefs.js backups ----
prefs_20140207_0553_.backup
==== Deleting Files \ Folders ======================
c:\program files\common files\speedbit deleted
C:\Documents and Settings\All Users\Application Data\SpeedBit deleted
C:\WINDOWS\SET3.tmp deleted
C:\WINDOWS\SET4.tmp deleted
C:\WINDOWS\SET8.tmp deleted
C:\WINDOWS\~DF1EF6.tmp deleted
C:\WINDOWS\~DF63F2.tmp deleted
C:\WINDOWS\~DF8CC1.tmp deleted
C:\WINDOWS\system32\roboot.exe deleted
C:\Documents and Settings\Ljubisa\Application Data\Mozilla\Firefox\Profiles\rtf9iqn8.default\Invalidprefs.js deleted
"C:\Documents and Settings\Ljubisa\Application Data\Mozilla\Firefox\Profiles\rtf9iqn8.default\searchplugins\speedbit.xml" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{20a82645-c095-46ed-80e3-08825760534b}"="C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension" [03/30/2013 07:11 PM]
==== Firefox Extensions ======================
ProfilePath: C:\Documents and Settings\Ljubisa\Application Data\Mozilla\Firefox\Profiles\rtf9iqn8.default
- avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
- Flagfox - %ProfilePath%\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
- [Link mogu videti samo ulogovani korisnici] - %ProfilePath%\extensions\trident@trident.com.ua.xpi
- YouTube Auto Replay - %ProfilePath%\extensions\YouTubeAutoReplay@arikv.com.xpi
AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Documents and Settings\Ljubisa\Application Data\Mozilla\Firefox\Profiles\rtf9iqn8.default
A9191AE22A8F1287B5E2DF33E3A57253 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U51
9B10927CFD0F7AD39E40C0E34005B1AD - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.510.13
CBFE3156904AB2D1A097F5E74A6C62F3 - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
C36444D7301A8C881FC7296B092609C7 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll - Google Update
AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
28000D7EEB2FD95A36E1A7539F599C3B - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
5D41BCD19A3D90E4EBB58A6BFB79E4F7 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
8B6884E3E1E5F8ABA5FA0C6A2B13181D - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM
865250E2742E49C02B0C4307AB042478 - C:\Program Files\Adobe\Acrobat 7.0\Reader\browser\nppdf32.dll - Adobe Acrobat
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
fplhdcjmbpfkejbhngmlngaecbjmoimd - C:\Program Files\AVAST Software\Avast\AdBlocker\Chrome\avast-adblocker-chrome.crx[02/25/2013 09:09 AM]
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[12/13/2012 02:27 PM]
Angry Birds - Ljubisa\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj
Search on YouTube - Ljubisa\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bccnhhcaemojkekjficjgjbldobiffjk
Quickrr YouTube Search - Ljubisa\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fedffnakfddkfhhkccpehhckeldpfdgh
AdBlock - Ljubisa\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom
Quick Search for YouTube - Ljubisa\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gpbafppimimmedndofjgbcljjdmgogmc
Search on YouTube - Ljubisa\Local Settings\Application Data\COMODO\Dragon\User Data\Default\Extensions\bccnhhcaemojkekjficjgjbldobiffjk
Comodo Web Inspector - Ljubisa\Local Settings\Application Data\COMODO\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn
PrivDog - Ljubisa\Local Settings\Application Data\COMODO\Dragon\User Data\Default\Extensions\cmaiofennmphjldldcpphcechfnnohja
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.speedbit.com/?s=E22b"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://go.speedbit.com/tab/?s=E22b"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{7F4EFF06-7032-458e-AE16-1C1D8255C28A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A}] not found
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} @ieframe.dll,-12512 Url="http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC"
{483830EE-A4CD-4b71-B0A3-3D82E62A6909} Unknown Url="Not_Found"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-1844237615-1677128483-1417001333-1003\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Browser companion helper deleted successfully
==== Empty IE Cache ======================
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Ljubisa\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Cache found
==== Empty Chrome Cache ======================
C:\Documents and Settings\Ljubisa\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Documents and Settings\Ljubisa\Local Settings\Application Data\COMODO\Dragon\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=23 folders=3 6824595 bytes)
==== Empty Temp Folders ======================
C:\Documents and Settings\Default User\Local Settings\Temp emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temp emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temp emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\RECYCLER successfully emptied
==== Deleting Files / Folders ======================
"C:\Documents and Settings\Ljubisa\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
==== EOF on Fri 02/07/2014 at 18:00:21.68 ======================
|
|
|
|
|
|
|
|
|
Poslao: 07 Feb 2014 18:42
|
offline
- kraJo
- Novi MyCity građanin
- Pridružio: 28 Feb 2012
- Poruke: 19
|
Napisano: 07 Feb 2014 18:28
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-02-2014
Ran by Ljubisa (administrator) on NAME-2F83238793 on 07-02-2014 18:25:40
Running from F:\My Documents\Downloads
Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 7
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: [Link mogu videti samo ulogovani korisnici]
Download link for 64-Bit Version: [Link mogu videti samo ulogovani korisnici]
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: [Link mogu videti samo ulogovani korisnici]
==================== Processes (Whitelisted) ===================
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\WINDOWS\system32\osk.exe
() C:\Program Files\Comodo\Dragon\dragon_updater.exe
(Microsoft Corporation) C:\WINDOWS\system32\msswchx.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS32.exe
(Skype Technologies S.A.) C:\Documents and Settings\All Users\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Creative Technology Ltd.) C:\WINDOWS\system32\devldr32.exe
(Comodo) C:\Program Files\Comodo\Dragon\dragon.exe
(Comodo) C:\Program Files\Comodo\Dragon\dragon.exe
(Comodo) C:\Program Files\Comodo\Dragon\dragon.exe
(Comodo) C:\Program Files\Comodo\Dragon\dragon.exe
(Comodo) C:\Program Files\Comodo\Dragon\dragon.exe
(Comodo) C:\Program Files\Comodo\Dragon\dragon.exe
(Comodo) C:\Program Files\Comodo\Dragon\dragon.exe
(Comodo) C:\Program Files\Comodo\Dragon\dragon.exe
(Comodo) C:\Program Files\Comodo\Dragon\dragon.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [igfxhkcmd] - C:\WINDOWS\system32\hkcmd.exe [77824 2006-04-01] (Intel Corporation)
HKLM\...\Run: [igfxpers] - C:\WINDOWS\system32\igfxpers.exe [114688 2006-04-01] (Intel Corporation)
HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKLM\...\Run: [NvMediaCenter] - C:\WINDOWS\system32\NvMcTray.dll [86016 2009-09-27] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] - C:\WINDOWS\system32\NvCpl.dll [13918208 2009-09-27] (NVIDIA Corporation)
HKLM\...\Run: [LifeCam] - C:\Program Files\Microsoft LifeCam\LifeExp.exe [135536 2010-12-13] (Microsoft Corporation)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\.DEFAULT\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32
HKU\S-1-5-19\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32
HKU\S-1-5-20\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32
==================== Internet (Whitelisted) ====================
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
SearchScopes: HKLM - DefaultScope {7F4EFF06-7032-458e-AE16-1C1D8255C28A} URL =
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = [Link mogu videti samo ulogovani korisnici]{searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici]
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Ljubisa\Application Data\Mozilla\Firefox\Profiles\rtf9iqn8.default
FF NewTab: [Link mogu videti samo ulogovani korisnici]
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: [Link mogu videti samo ulogovani korisnici]
FF Keyword.URL: [Link mogu videti samo ulogovani korisnici]
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.1 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Extension: Flagfox - C:\Documents and Settings\Ljubisa\Application Data\Mozilla\Firefox\Profiles\rtf9iqn8.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} [2014-01-16]
FF Extension: [Link mogu videti samo ulogovani korisnici] - C:\Documents and Settings\Ljubisa\Application Data\Mozilla\Firefox\Profiles\rtf9iqn8.default\Extensions\trident@trident.com.ua.xpi [2012-03-04]
FF Extension: YouTube Auto Replay - C:\Documents and Settings\Ljubisa\Application Data\Mozilla\Firefox\Profiles\rtf9iqn8.default\Extensions\YouTubeAutoReplay@arikv.com.xpi [2013-05-12]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2011-11-01]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ []
========================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
R2 DragonUpdater; C:\Program Files\Comodo\Dragon\dragon_updater.exe [2135232 2014-01-28] ()
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-01-21] (Oracle Corporation)
R2 Skype C2C Service; C:\Documents and Settings\All Users\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3290896 2012-12-13] (Skype Technologies S.A.)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\WINDOWS\system32\Drivers\aswFsBlk.sys [29816 2013-08-30] (AVAST Software)
R0 aswKbd; C:\WINDOWS\system32\Drivers\aswKbd.sys [21576 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [66336 2013-08-30] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\Drivers\aswRdr.sys [49760 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49376 2013-08-30] ()
R1 aswSnx; C:\WINDOWS\system32\Drivers\aswSnx.sys [770344 2013-08-30] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\Drivers\aswSP.sys [369584 2013-08-30] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\Drivers\aswTdi.sys [56080 2013-08-30] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [177864 2013-08-30] ()
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation)
S3 ctljystk; C:\WINDOWS\System32\DRIVERS\ctljystk.sys [3712 2001-08-17] (Creative Technology Ltd.)
R3 emu10k; C:\WINDOWS\System32\drivers\emu10k1m.sys [283904 2001-08-17] (Creative Technology Ltd.)
R3 emu10k1; C:\WINDOWS\System32\drivers\ctlfacem.sys [6912 2001-08-17] (Creative Technology Ltd.)
S3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-14] (Microsoft Corporation)
R0 giveio; C:\WINDOWS\System32\giveio.sys [5248 1996-04-03] ()
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation)
R3 sfman; C:\WINDOWS\System32\drivers\sfmanm.sys [36480 2001-08-17] (Creative Technology Ltd.)
S3 SONYPVU1; C:\WINDOWS\System32\DRIVERS\SONYPVU1.SYS [7552 2001-08-17] (Sony Corporation)
R0 speedfan; C:\WINDOWS\System32\speedfan.sys [25240 2011-03-18] (Almico Software)
R1 VD_FileDisk; C:\WINDOWS\system32\Drivers\VD_FileDisk.sys [24680 2011-01-26] (CaptainFlint Software)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-07 18:24 - 2014-02-07 18:25 - 00000000 ____D () C:\FRST
2014-02-07 17:59 - 2014-02-07 17:42 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-02-07 17:44 - 2014-02-07 18:00 - 00012076 _____ () C:\zoek-results.log
2014-02-07 17:42 - 2014-02-07 17:54 - 00000000 ____D () C:\zoek_backup
2014-02-07 16:59 - 2014-02-07 16:59 - 00008565 _____ () C:\Documents and Settings\Ljubisa\Desktop\dds.txt
2014-02-07 16:59 - 2014-02-07 16:59 - 00003782 _____ () C:\Documents and Settings\Ljubisa\Desktop\attach.txt
2014-02-03 17:54 - 2014-02-03 17:54 - 00000787 _____ () C:\Documents and Settings\Ljubisa\Desktop\Comodo Dragon.lnk
2014-02-03 17:46 - 2014-02-03 22:03 - 00048392 _____ (COMODO CA Limited) C:\WINDOWS\system32\certsentry.dll
2014-02-03 17:46 - 2014-02-03 17:46 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Comodo
2014-02-03 17:45 - 2014-02-03 17:45 - 01700352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdiplus.dll
2014-02-03 17:45 - 2014-02-03 17:45 - 00000000 ____D () C:\Program Files\Comodo
2014-02-03 17:36 - 2014-02-07 13:39 - 00000426 ____H () C:\WINDOWS\Tasks\User_Feed_Synchronization-{78004A02-9840-473C-B643-79117867D5A7}.job
2014-02-03 17:29 - 2014-02-03 17:29 - 00000000 __SHD () C:\Documents and Settings\Ljubisa\IETldCache
2014-02-03 17:26 - 2008-08-29 23:13 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieencode.dll
2014-02-03 17:26 - 2008-08-29 23:13 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieencode.dll
2014-02-02 23:01 - 2014-02-05 07:16 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-02-02 23:01 - 2014-02-02 23:02 - 00000730 _____ () C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox.lnk
2014-02-02 23:01 - 2014-02-02 23:02 - 00000724 _____ () C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
2014-02-02 23:01 - 2014-02-02 23:02 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-02 20:47 - 2014-02-07 17:48 - 00000956 _____ () C:\WINDOWS\Tasks\SBW_UpdateTask_Time_333836353139373633352d3437415a556c2a3223346c41.job
2014-02-02 20:47 - 2014-02-02 20:47 - 00172032 _____ (Jin Hui E-mail: [Link mogu videti samo ulogovani korisnici] Web: [Link mogu videti samo ulogovani korisnici]) C:\WINDOWS\system32\AniGIF.ocx
2014-01-26 17:08 - 2014-01-26 17:08 - 00002265 _____ () C:\Documents and Settings\Ljubisa\Desktop\Skype.lnk
2014-01-26 17:08 - 2014-01-26 17:08 - 00001464 _____ () C:\Documents and Settings\Ljubisa\Desktop\Brisanje memorije.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00002265 _____ () C:\Documents and Settings\Ljubisa\Desktop\Skype (2).lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00001788 _____ () C:\Documents and Settings\Ljubisa\Desktop\Microsoft LifeCam.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00001689 _____ () C:\Documents and Settings\Ljubisa\Desktop\avast! Free Antivirus.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00001141 _____ () C:\Documents and Settings\Ljubisa\Desktop\Screamer Radio.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000719 _____ () C:\Documents and Settings\Ljubisa\Desktop\VLC media player.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000717 _____ () C:\Documents and Settings\Ljubisa\Desktop\CPUID CPU-Z.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000682 _____ () C:\Documents and Settings\Ljubisa\Desktop\SpeedFan.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000654 _____ () C:\Documents and Settings\Ljubisa\Desktop\Speccy.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000642 _____ () C:\Documents and Settings\Ljubisa\Desktop\TC UP.lnk
2014-01-26 17:06 - 2014-01-26 17:06 - 00001813 _____ () C:\Documents and Settings\Ljubisa\Desktop\Google Chrome.lnk
2014-01-26 17:06 - 2014-01-26 17:06 - 00000228 _____ () C:\Documents and Settings\Ljubisa\Desktop\NVIDIA Control Panel.lnk
2014-01-21 18:37 - 2014-01-21 18:36 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2014-01-21 18:36 - 2014-01-21 18:36 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2014-01-21 18:36 - 2014-01-21 18:36 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2014-01-21 18:36 - 2014-01-21 18:36 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-01-09 20:37 - 2014-01-09 20:37 - 00019703 _____ () C:\Documents and Settings\Ljubisa\Start Menu.rar
==================== One Month Modified Files and Folders =======
2014-02-07 18:25 - 2014-02-07 18:24 - 00000000 ____D () C:\FRST
2014-02-07 18:08 - 2011-12-10 23:50 - 00000888 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-07 18:06 - 2011-11-01 20:37 - 00470175 _____ () C:\WINDOWS\WindowsUpdate.log
2014-02-07 18:00 - 2014-02-07 17:44 - 00012076 _____ () C:\zoek-results.log
2014-02-07 18:00 - 2012-07-11 22:14 - 00000364 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-02-07 18:00 - 2012-01-22 13:07 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-02-07 18:00 - 2012-01-22 13:07 - 00000048 _____ () C:\WINDOWS\wiaservc.log
2014-02-07 18:00 - 2011-12-10 23:50 - 00000884 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-07 18:00 - 2011-11-01 20:44 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-02-07 18:00 - 2009-09-27 18:19 - 00254497 _____ () C:\WINDOWS\system32\NvApps.xml
2014-02-07 17:59 - 2011-11-01 20:44 - 00032604 _____ () C:\WINDOWS\SchedLgU.Txt
2014-02-07 17:54 - 2014-02-07 17:42 - 00000000 ____D () C:\zoek_backup
2014-02-07 17:48 - 2014-02-02 20:47 - 00000956 _____ () C:\WINDOWS\Tasks\SBW_UpdateTask_Time_333836353139373633352d3437415a556c2a3223346c41.job
2014-02-07 17:42 - 2014-02-07 17:59 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-02-07 17:41 - 2013-03-30 23:21 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-02-07 16:59 - 2014-02-07 16:59 - 00008565 _____ () C:\Documents and Settings\Ljubisa\Desktop\dds.txt
2014-02-07 16:59 - 2014-02-07 16:59 - 00003782 _____ () C:\Documents and Settings\Ljubisa\Desktop\attach.txt
2014-02-07 13:39 - 2014-02-03 17:36 - 00000426 ____H () C:\WINDOWS\Tasks\User_Feed_Synchronization-{78004A02-9840-473C-B643-79117867D5A7}.job
2014-02-07 13:19 - 2012-01-22 13:52 - 00000000 ____D () C:\Documents and Settings\Ljubisa\Application Data\Skype
2014-02-06 19:44 - 2011-11-01 20:46 - 00000000 ____D () C:\Documents and Settings\Ljubisa
2014-02-06 07:20 - 2001-08-23 14:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2014-02-05 20:41 - 2012-04-20 17:03 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-02-05 20:41 - 2011-11-01 23:16 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-02-05 07:16 - 2014-02-02 23:01 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-02-03 22:03 - 2014-02-03 17:46 - 00048392 _____ (COMODO CA Limited) C:\WINDOWS\system32\certsentry.dll
2014-02-03 18:26 - 2011-11-01 21:23 - 00000000 ____D () C:\WINDOWS\Media
2014-02-03 18:26 - 2011-11-01 21:23 - 00000000 ____D () C:\WINDOWS\Help
2014-02-03 17:54 - 2014-02-03 17:54 - 00000787 _____ () C:\Documents and Settings\Ljubisa\Desktop\Comodo Dragon.lnk
2014-02-03 17:46 - 2014-02-03 17:46 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Comodo
2014-02-03 17:45 - 2014-02-03 17:45 - 01700352 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdiplus.dll
2014-02-03 17:45 - 2014-02-03 17:45 - 00000000 ____D () C:\Program Files\Comodo
2014-02-03 17:29 - 2014-02-03 17:29 - 00000000 __SHD () C:\Documents and Settings\Ljubisa\IETldCache
2014-02-02 23:02 - 2014-02-02 23:01 - 00000730 _____ () C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox.lnk
2014-02-02 23:02 - 2014-02-02 23:01 - 00000724 _____ () C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
2014-02-02 23:02 - 2014-02-02 23:01 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-02-02 20:47 - 2014-02-02 20:47 - 00172032 _____ (Jin Hui E-mail: [Link mogu videti samo ulogovani korisnici] Web: [Link mogu videti samo ulogovani korisnici]) C:\WINDOWS\system32\AniGIF.ocx
2014-01-26 17:08 - 2014-01-26 17:08 - 00002265 _____ () C:\Documents and Settings\Ljubisa\Desktop\Skype.lnk
2014-01-26 17:08 - 2014-01-26 17:08 - 00001464 _____ () C:\Documents and Settings\Ljubisa\Desktop\Brisanje memorije.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00002265 _____ () C:\Documents and Settings\Ljubisa\Desktop\Skype (2).lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00001788 _____ () C:\Documents and Settings\Ljubisa\Desktop\Microsoft LifeCam.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00001689 _____ () C:\Documents and Settings\Ljubisa\Desktop\avast! Free Antivirus.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00001141 _____ () C:\Documents and Settings\Ljubisa\Desktop\Screamer Radio.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000719 _____ () C:\Documents and Settings\Ljubisa\Desktop\VLC media player.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000717 _____ () C:\Documents and Settings\Ljubisa\Desktop\CPUID CPU-Z.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000682 _____ () C:\Documents and Settings\Ljubisa\Desktop\SpeedFan.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000654 _____ () C:\Documents and Settings\Ljubisa\Desktop\Speccy.lnk
2014-01-26 17:07 - 2014-01-26 17:07 - 00000642 _____ () C:\Documents and Settings\Ljubisa\Desktop\TC UP.lnk
2014-01-26 17:06 - 2014-01-26 17:06 - 00001813 _____ () C:\Documents and Settings\Ljubisa\Desktop\Google Chrome.lnk
2014-01-26 17:06 - 2014-01-26 17:06 - 00000228 _____ () C:\Documents and Settings\Ljubisa\Desktop\NVIDIA Control Panel.lnk
2014-01-21 18:36 - 2014-01-21 18:37 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2014-01-21 18:36 - 2014-01-21 18:36 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2014-01-21 18:36 - 2014-01-21 18:36 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2014-01-21 18:36 - 2014-01-21 18:36 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2014-01-21 18:36 - 2012-02-29 19:14 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl
2014-01-21 18:36 - 2012-02-29 19:13 - 00000000 ____D () C:\Program Files\Java
2014-01-14 20:40 - 2013-11-19 23:35 - 00000000 ____D () C:\Documents and Settings\Ljubisa\Application Data\vlc
2014-01-09 20:37 - 2014-01-09 20:37 - 00019703 _____ () C:\Documents and Settings\Ljubisa\Start Menu.rar
==================== Bamital & volsnap Check =================
C:\WINDOWS\explorer.exe => MD5 is legit
C:\WINDOWS\system32\winlogon.exe => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
C:\WINDOWS\system32\User32.dll => MD5 is legit
C:\WINDOWS\system32\userinit.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll
[2008-04-14 01:42] - [2008-04-14 01:42] - 0399360 ____A (Microsoft Corporation) 2589fe6015a316c0f5d5112b4da7b509
ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected.
C:\WINDOWS\system32\Drivers\volsnap.sys => MD5 is legit
==================== End Of Log ============================
Dopuna: 07 Feb 2014 18:34
[Link mogu videti samo ulogovani korisnici]
Dopuna: 07 Feb 2014 18:42
aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2014-02-07 18:35:49
-----------------------------
18:35:49.546 OS Version: Windows 5.1.2600 Service Pack 3
18:35:49.546 Number of processors: 1 586 0x209
18:35:49.546 ComputerName: NAME-2F83238793 UserName: Ljubisa
18:35:50.453 Initialize success
18:35:50.906 AVAST engine defs: 14020700
18:36:25.968 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP3T0L0-10
18:36:25.968 Disk 0 Vendor: WDC_WD3200AAKX-221CA1 17.01H17 Size: 305245MB BusType: 3
18:36:26.046 Disk 0 MBR read successfully
18:36:26.046 Disk 0 MBR scan
18:36:26.046 Disk 0 Windows XP default MBR code
18:36:26.046 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 29996 MB offset 63
18:36:26.078 Disk 0 Partition - 00 0F Extended LBA 275238 MB offset 61432560
18:36:26.093 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 275238 MB offset 61432623
18:36:26.093 Disk 0 scanning sectors +625121280
18:36:26.171 Disk 0 scanning C:\WINDOWS\system32\drivers
18:36:32.750 Service scanning
18:36:46.343 Modules scanning
18:36:50.390 Disk 0 trace - called modules:
18:36:50.781 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys intelide.sys PCIIDEX.SYS
18:36:50.781 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a0d0ab8]
18:36:50.781 3 CLASSPNP.SYS[f7637fd7] -> nt!IofCallDriver -> \Device\00000063[0x8a1789e8]
18:36:50.781 5 ACPI.sys[f75ae620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP3T0L0-10[0x89f18d98]
18:36:50.921 AVAST engine scan C:\WINDOWS
18:36:52.078 AVAST engine scan C:\WINDOWS\system32
18:38:47.515 AVAST engine scan C:\WINDOWS\system32\drivers
18:38:56.656 AVAST engine scan C:\Documents and Settings\Ljubisa
18:40:07.343 AVAST engine scan C:\Documents and Settings\All Users
18:40:21.843 Scan finished successfully
18:40:55.000 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Ljubisa\Desktop\MBR.dat"
18:40:55.000 The log file has been saved successfully to "C:\Documents and Settings\Ljubisa\Desktop\aswMBR.txt"
|
|
|
|
|
|
|
Poslao: 07 Feb 2014 18:57
|
offline
- TwinHeadedEagle

- Anti Malware Fighter
Rank 2
- Pridružio: 09 Avg 2011
- Poruke: 15879
- Gde živiš: Beograd
|
Preuzmi i pokreni prikaceni fajl. Nakon sto ga pokrenes, otvorice ti se notepad. Kopiraj njegov sadrzaj ovde. Ako je prazan, ne treba...
[Link mogu videti samo ulogovani korisnici]
|
|
|
|
|
|