Racunar je prespor

1

Racunar je prespor

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

Kao sto i sam naslov kaze, racunar se jedva pokrece.. Otvara mi se gomila prozora kada udjem na neki link na bilo kom sajtu na internetu, sistem kad se digne, moram cekati 5-10 minuta da se osposbi za rad, a kasnije samo zakoci i nece nista, samo restart i tako u krug.. I ovu temu otvaram pola sata vec..

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:26-11-2015
Ran by Zeljka (administrator) on ZELJKA-PC (26-11-2015 23:54:59)
Running from C:\Users\Zeljka\Desktop
Loaded Profiles: Zeljka (Available Profiles: Zeljka & UpdatusUser & Guest)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2219184 2011-05-27] (ESET)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12017368 2013-10-24] (Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6133520 2015-11-06] (AVAST Software)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [221184 2010-11-20] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-10-26] (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{56E726EF-EC4F-400B-B7B7-8DCA389E30AF}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-08-04] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-26] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-04] (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default
FF Homepage: hxxps://www.google.rs/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-11] ()
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-04] (Oracle Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Extension: Youtube Converter MP3 - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\extensions\{a3a5c777-f583-4fef-9380-ab4add1bc2a5}.xpi [2015-10-09]
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-10-26] [not signed]
FF Extension: firefoxonlineconvertcom - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\Extensions\firefox@online-convert.com [2015-10-28] [not signed]
FF Extension: Adblock Plus - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-26]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2015-10-26] [not signed]
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\prefs.js [2015-10-28] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\cfg [2015-10-28] <==== ATTENTION

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-10-26]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-10-26]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-10-26] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [109008 2015-10-26] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3219136 2015-10-26] (Avast Software)
S3 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [33584 2011-05-27] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [810144 2011-05-27] (ESET)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5613328 2015-07-29] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24016 2015-10-26] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [26096 2015-10-26] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [76000 2015-10-26] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [275856 2015-10-26] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-10-26] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49776 2015-10-26] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [794952 2015-11-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [435464 2015-11-06] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [115640 2015-10-26] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208664 2015-10-26] (AVAST Software)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [137144 2010-12-21] (ESET)
R2 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [115008 2010-12-21] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [95384 2010-12-21] (ESET)
R0 ngvss; C:\Windows\system32\Drivers\ngvss.sys [107984 2015-10-26] (AVAST Software)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-10-26] (Avast Software)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-26 23:54 - 2015-11-26 23:55 - 00008935 _____ C:\Users\Zeljka\Desktop\FRST.txt
2015-11-26 23:54 - 2015-11-26 23:54 - 01719808 _____ (Farbar) C:\Users\Zeljka\Desktop\FRST.exe
2015-11-26 23:54 - 2015-11-26 23:54 - 00000000 ____D C:\FRST
2015-11-26 23:52 - 2015-11-26 23:52 - 02348544 _____ (Farbar) C:\Users\Zeljka\Desktop\FRST64.exe
2015-11-23 23:16 - 2015-11-03 18:46 - 02386944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-11-12 22:20 - 2015-11-12 22:20 - 00011119 _____ C:\Users\Guest\Desktop\~WRD0000.tmp
2015-11-11 16:00 - 2015-10-20 01:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-11-11 16:00 - 2015-10-20 01:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-11-11 16:00 - 2015-10-20 01:52 - 00138176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-11-11 16:00 - 2015-10-20 01:52 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-11 16:00 - 2015-10-20 01:48 - 01308160 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-11-11 16:00 - 2015-10-20 01:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-11-11 16:00 - 2015-10-20 01:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-11-11 16:00 - 2015-10-20 01:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-11-11 16:00 - 2015-10-20 01:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-11-11 16:00 - 2015-10-20 01:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-11 16:00 - 2015-10-20 01:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-11-11 16:00 - 2015-10-20 01:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-11 16:00 - 2015-10-20 01:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-11-11 16:00 - 2015-10-20 00:29 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-11 16:00 - 2015-10-20 00:28 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-11 16:00 - 2015-10-20 00:28 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-11 16:00 - 2015-10-13 17:31 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-11-11 16:00 - 2015-10-13 17:31 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-11-11 15:57 - 2015-11-05 03:12 - 01267712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 11031552 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 06035968 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 02088448 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00389120 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00195072 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-11-11 15:57 - 2015-11-05 03:11 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-11-11 15:57 - 2015-11-05 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\corpol.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-11-11 15:57 - 2015-11-05 03:10 - 01466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-11-11 15:57 - 2015-11-05 02:37 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-11-11 15:57 - 2015-11-05 02:22 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-11-11 15:57 - 2015-10-13 05:50 - 00712640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-11-11 15:57 - 2015-09-23 14:09 - 00371920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-11-11 15:57 - 2015-09-23 14:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-11-11 15:34 - 2015-10-01 18:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-11-11 15:34 - 2015-10-01 18:50 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 02955776 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 02061824 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-11-11 15:31 - 2015-10-20 18:45 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-11-11 15:31 - 2015-10-20 18:45 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-11-11 15:31 - 2015-10-20 18:45 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-11-11 15:31 - 2015-10-20 18:45 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-11-07 22:32 - 2015-11-08 16:06 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-11-07 20:35 - 2015-11-07 20:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Mozilla
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Mozilla
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Macromedia
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Adobe
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Local\Macromedia
2015-11-07 20:34 - 2015-11-07 20:34 - 00000000 ____D C:\Users\Guest\AppData\Roaming\AVAST Software
2015-11-07 20:33 - 2015-11-11 18:53 - 00000000 ____D C:\Users\Guest
2015-11-07 20:33 - 2015-11-07 20:33 - 00000020 ___SH C:\Users\Guest\ntuser.ini
2015-11-07 20:33 - 2015-11-07 20:33 - 00000000 _SHDL C:\Users\Guest\My Documents
2015-11-07 20:33 - 2009-07-14 08:48 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Media Center Programs
2015-11-01 15:22 - 2015-11-02 23:02 - 00000000 ____D C:\AdwCleaner
2015-11-01 15:22 - 2015-11-01 15:22 - 01694208 _____ C:\Users\Zeljka\Desktop\adwcleaner_5.015.exe
2015-10-27 15:44 - 2015-10-27 15:44 - 00001128 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-10-27 15:44 - 2015-10-27 15:44 - 00001116 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-10-27 00:08 - 2015-10-27 00:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-10-27 00:08 - 2015-10-27 00:08 - 00000000 ____D C:\Program Files\Common Files\Skype
2015-10-27 00:07 - 2015-10-27 00:08 - 00000000 ___RD C:\Program Files\Skype

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-26 23:54 - 2009-07-14 03:37 - 00000000 ____D C:\Windows
2015-11-26 23:46 - 2015-08-04 11:56 - 00726316 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-26 23:46 - 2009-07-14 05:34 - 00022432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-26 23:46 - 2009-07-14 05:34 - 00022432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-26 23:46 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2015-11-26 23:38 - 2015-10-25 01:23 - 00001030 _____ C:\Windows\Tasks\VfkHIAHQSRbPL3HDC6OFnTNMYrm.job
2015-11-26 23:38 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-26 21:14 - 2015-08-04 13:45 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-11-24 21:37 - 2009-07-14 05:33 - 00335536 _____ C:\Windows\system32\FNTCACHE.DAT
2015-11-23 17:40 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\NDF
2015-11-13 08:51 - 2015-08-04 12:28 - 00000000 ____D C:\Windows\system32\MRT
2015-11-13 08:49 - 2015-08-04 12:28 - 143250520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-11-13 05:35 - 2009-07-14 08:49 - 00000000 ____D C:\Program Files\Windows Journal
2015-11-12 05:19 - 2015-08-04 19:16 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\uTorrent
2015-11-11 14:14 - 2015-08-04 13:45 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-11-11 14:14 - 2015-08-04 13:45 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-11-11 13:30 - 2015-09-27 12:35 - 00000000 ____D C:\Users\Zeljka\AppData\LocalLow\uTorrent
2015-11-08 16:06 - 2015-08-04 13:32 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-11-06 15:49 - 2015-10-26 14:56 - 00794952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-11-06 15:49 - 2015-10-26 14:56 - 00435464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2015-11-01 15:34 - 2015-08-04 12:46 - 00000000 ____D C:\Program Files\Google
2015-11-01 15:33 - 2015-08-04 12:42 - 00000000 ____D C:\Users\Zeljka\AppData\Local\Google
2015-10-31 21:32 - 2009-07-14 03:37 - 00000000 __RHD C:\Users\Public\Libraries
2015-10-31 21:19 - 2015-08-04 14:56 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\PhotoScape
2015-10-30 16:12 - 2009-07-14 05:53 - 00032606 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-10-30 14:16 - 2015-08-04 11:51 - 00000000 ____D C:\Users\Zeljka
2015-10-29 22:16 - 2015-08-18 13:59 - 00011264 ____H C:\Users\Zeljka\Desktop\photothumb.db
2015-10-27 01:08 - 2015-08-04 14:01 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\Skype
2015-10-27 00:08 - 2015-08-04 14:01 - 00000000 ____D C:\ProgramData\Skype

==================== Files in the root of some directories =======

2015-04-19 13:20 - 2015-04-19 13:20 - 0005872 _____ () C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm
2015-08-04 12:17 - 2015-08-04 12:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-25 13:55

==================== End of FRST.txt ============================


mycity.rs/must-login.png

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Zdravo,

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

CreateRestorePoint:
Task: C:\Windows\Tasks\VfkHIAHQSRbPL3HDC6OFnTNMYrm.job => C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm.exe <==== ATTENTION
Task: {4AF8FB9F-8CD8-4A4C-A6F4-C8D93123FAEE} - System32\Tasks\VfkHIAHQSRbPL3HDC6OFnTNMYrm => C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm.exe <==== ATTENTION
C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm.exe
FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\prefs.js [2015-10-28] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\cfg [2015-10-28] <==== ATTENTION
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

------

Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Scan] i pricekaj da program zavrsi.
Klikni na dugme [Clean]
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S0].txt

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

vec posle prve radnje oseca se osvezenje u radu racunara.. Hvala!
*log je prikacen

mycity.rs/must-login.png

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Imas instalirana dva antivirusa na kompu.
Deinstaliraj ESET.

Pa mi ponovo postavi FRST i Addition log, sveze logove, postupak je kao prvi put.

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

Ovog puta mi nije izbacio addition log.. Evo rezultata

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:26-11-2015
Ran by Zeljka (administrator) on ZELJKA-PC (28-11-2015 00:03:12)
Running from C:\Users\Zeljka\Desktop
Loaded Profiles: Zeljka (Available Profiles: Zeljka & UpdatusUser & Guest)
Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_245.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12017368 2013-10-24] (Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6133520 2015-11-06] (AVAST Software)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner.exe [5282584 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1031105164-31450739-3421844613-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Mystify.scr [221184 2010-11-20] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-10-26] (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{56E726EF-EC4F-400B-B7B7-8DCA389E30AF}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-08-04] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-10-26] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-04] (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default
FF Homepage: hxxps://www.google.rs/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-11] ()
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-04] (Oracle Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-10-26] [not signed]
FF Extension: Youtube Converter MP3 - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\extensions\{a3a5c777-f583-4fef-9380-ab4add1bc2a5}.xpi [2015-11-27]
FF Extension: firefoxonlineconvertcom - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\Extensions\firefox@online-convert.com [2015-10-28] [not signed]
FF Extension: Adblock Plus - C:\Users\Zeljka\AppData\Roaming\Mozilla\Firefox\Profiles\ubtfxv4g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-11-26]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-10-26]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-10-26]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-10-26] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [109008 2015-10-26] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3219136 2015-10-26] (Avast Software)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5613328 2015-07-29] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24016 2015-10-26] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [26096 2015-10-26] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [76000 2015-10-26] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [275856 2015-10-26] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-10-26] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49776 2015-10-26] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [794952 2015-11-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [435464 2015-11-06] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [115640 2015-10-26] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208664 2015-10-26] (AVAST Software)
R0 ngvss; C:\Windows\system32\Drivers\ngvss.sys [107984 2015-10-26] (AVAST Software)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-10-26] (Avast Software)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-27 23:48 - 2015-11-27 23:48 - 00000987 _____ C:\Users\Zeljka\Desktop\AdwCleaner[S1].txt
2015-11-27 23:36 - 2015-11-27 23:36 - 01733632 _____ C:\Users\Zeljka\Desktop\adwcleaner_5.022.exe
2015-11-27 23:31 - 2015-11-27 23:31 - 00001953 _____ C:\Users\Zeljka\Desktop\Fixlog.txt
2015-11-26 23:54 - 2015-11-28 00:03 - 00007813 _____ C:\Users\Zeljka\Desktop\FRST.txt
2015-11-26 23:54 - 2015-11-28 00:03 - 00000000 ____D C:\FRST
2015-11-26 23:54 - 2015-11-26 23:54 - 01719808 _____ (Farbar) C:\Users\Zeljka\Desktop\FRST.exe
2015-11-26 23:52 - 2015-11-26 23:52 - 02348544 _____ (Farbar) C:\Users\Zeljka\Desktop\FRST64.exe
2015-11-23 23:16 - 2015-11-03 18:46 - 02386944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-11-12 22:20 - 2015-11-12 22:20 - 00011119 _____ C:\Users\Guest\Desktop\~WRD0000.tmp
2015-11-11 16:00 - 2015-10-20 01:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-11-11 16:00 - 2015-10-20 01:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-11-11 16:00 - 2015-10-20 01:52 - 00138176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-11-11 16:00 - 2015-10-20 01:52 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-11 16:00 - 2015-10-20 01:48 - 01308160 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-11-11 16:00 - 2015-10-20 01:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-11-11 16:00 - 2015-10-20 01:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-11-11 16:00 - 2015-10-20 01:45 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-11-11 16:00 - 2015-10-20 01:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-11-11 16:00 - 2015-10-20 01:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-11-11 16:00 - 2015-10-20 01:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-11 16:00 - 2015-10-20 01:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-11-11 16:00 - 2015-10-20 01:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-11 16:00 - 2015-10-20 01:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-11-11 16:00 - 2015-10-20 00:29 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-11 16:00 - 2015-10-20 00:28 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-11 16:00 - 2015-10-20 00:28 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-11 16:00 - 2015-10-13 17:31 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-11-11 16:00 - 2015-10-13 17:31 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-11-11 15:57 - 2015-11-05 03:12 - 01267712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-11-11 15:57 - 2015-11-05 03:12 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 11031552 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 06035968 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 02088448 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00389120 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00195072 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-11-11 15:57 - 2015-11-05 03:11 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-11-11 15:57 - 2015-11-05 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\corpol.dll
2015-11-11 15:57 - 2015-11-05 03:11 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-11-11 15:57 - 2015-11-05 03:10 - 01466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-11-11 15:57 - 2015-11-05 02:37 - 00386560 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-11-11 15:57 - 2015-11-05 02:22 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-11-11 15:57 - 2015-10-13 05:50 - 00712640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-11-11 15:57 - 2015-09-23 14:09 - 00371920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-11-11 15:57 - 2015-09-23 14:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-11-11 15:34 - 2015-10-01 18:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2015-11-11 15:34 - 2015-10-01 18:50 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 02955776 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 02061824 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-11-11 15:31 - 2015-10-20 18:46 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-11-11 15:31 - 2015-10-20 18:45 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-11-11 15:31 - 2015-10-20 18:45 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-11-11 15:31 - 2015-10-20 18:45 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-11-11 15:31 - 2015-10-20 18:45 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-11-07 22:32 - 2015-11-27 23:31 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-11-07 20:35 - 2015-11-07 20:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Mozilla
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Mozilla
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Macromedia
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Adobe
2015-11-07 20:35 - 2015-11-07 20:35 - 00000000 ____D C:\Users\Guest\AppData\Local\Macromedia
2015-11-07 20:34 - 2015-11-07 20:34 - 00000000 ____D C:\Users\Guest\AppData\Roaming\AVAST Software
2015-11-07 20:33 - 2015-11-11 18:53 - 00000000 ____D C:\Users\Guest
2015-11-07 20:33 - 2015-11-07 20:33 - 00000020 ___SH C:\Users\Guest\ntuser.ini
2015-11-07 20:33 - 2015-11-07 20:33 - 00000000 _SHDL C:\Users\Guest\My Documents
2015-11-07 20:33 - 2009-07-14 08:48 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Media Center Programs
2015-11-01 15:22 - 2015-11-27 23:43 - 00000000 ____D C:\AdwCleaner

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-28 00:01 - 2009-07-14 03:37 - 00000000 ____D C:\Windows
2015-11-28 00:00 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\inf
2015-11-27 23:59 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-11-27 23:58 - 2015-08-04 12:57 - 00000000 ____D C:\Program Files\ESET
2015-11-27 23:53 - 2009-07-14 05:34 - 00022432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-27 23:53 - 2009-07-14 05:34 - 00022432 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-27 23:40 - 2015-08-04 11:56 - 00726316 _____ C:\Windows\system32\PerfStringBackup.INI
2015-11-26 21:14 - 2015-08-04 13:45 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-11-24 21:37 - 2009-07-14 05:33 - 00335536 _____ C:\Windows\system32\FNTCACHE.DAT
2015-11-23 17:40 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\NDF
2015-11-13 08:51 - 2015-08-04 12:28 - 00000000 ____D C:\Windows\system32\MRT
2015-11-13 08:49 - 2015-08-04 12:28 - 143250520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-11-13 05:35 - 2009-07-14 08:49 - 00000000 ____D C:\Program Files\Windows Journal
2015-11-12 05:19 - 2015-08-04 19:16 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\uTorrent
2015-11-11 14:14 - 2015-08-04 13:45 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-11-11 14:14 - 2015-08-04 13:45 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-11-11 13:30 - 2015-09-27 12:35 - 00000000 ____D C:\Users\Zeljka\AppData\LocalLow\uTorrent
2015-11-08 16:06 - 2015-08-04 13:32 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-11-06 15:49 - 2015-10-26 14:56 - 00794952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-11-06 15:49 - 2015-10-26 14:56 - 00435464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2015-11-01 15:34 - 2015-08-04 12:46 - 00000000 ____D C:\Program Files\Google
2015-11-01 15:33 - 2015-08-04 12:42 - 00000000 ____D C:\Users\Zeljka\AppData\Local\Google
2015-10-31 21:32 - 2009-07-14 03:37 - 00000000 __RHD C:\Users\Public\Libraries
2015-10-31 21:19 - 2015-08-04 14:56 - 00000000 ____D C:\Users\Zeljka\AppData\Roaming\PhotoScape
2015-10-30 16:12 - 2009-07-14 05:53 - 00032606 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-10-30 14:16 - 2015-08-04 11:51 - 00000000 ____D C:\Users\Zeljka
2015-10-29 22:16 - 2015-08-18 13:59 - 00011264 ____H C:\Users\Zeljka\Desktop\photothumb.db

==================== Files in the root of some directories =======

2015-04-19 13:20 - 2015-04-19 13:20 - 0005872 _____ () C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm
2015-08-04 12:17 - 2015-08-04 12:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some files in TEMP:
====================
C:\Users\Zeljka\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-25 13:55

==================== End of FRST.txt ============================

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

CreateRestorePoint:
File:C:\ProgramData\DP45977C.lfl
C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

Fix result of Farbar Recovery Scan Tool (x86) Version:26-11-2015
Ran by Zeljka (2015-11-28 09:12:51) Run:2
Running from C:\Users\Zeljka\Desktop
Loaded Profiles: Zeljka (Available Profiles: Zeljka & UpdatusUser & Guest)
Boot Mode: Normal

==============================================

fixlist content:
*****************
CreateRestorePoint:
File:C:\ProgramData\DP45977C.lfl
C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm
EmptyTemp:
*****************

Restore point was successfully created.

========================= File:C:\ProgramData\DP45977C.lfl ========================

File not signed
MD5:
Creation and modification date: 2015-08-04 - 2015-08-04
Size: 0000000
Attributes: ---AH
Company Name:
Internal Name:
Original Name:
Product:
Description:
File Version:
Product Version:
Copyright:

====== End of File: ======

C:\Users\Zeljka\AppData\Roaming\VfkHIAHQSRbPL3HDC6OFnTNMYrm => moved successfully
EmptyTemp: => 13 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 09:13:27 ====

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Da li sada imas nekih problema?

offline
  • Zeca92 
  • Novi MyCity građanin
  • Pridružio: 26 Nov 2015
  • Poruke: 5

Nema vise iskacucih prozorcica, mnogo brze ide restart, mnogo brze sve otvara i brze je spreman za rad.. Hvala! Ziveli

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Odlicno.

Sledeća procedura će implementirati završno čišćenje.



Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.

Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;
Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.

Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Ukoliko neki alat ili izveštaj nije uklonjen, slobodno ih obriši ručno.


Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)
- Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
- DelFix briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

Ko je trenutno na forumu
 

Ukupno su 858 korisnika na forumu :: 32 registrovanih, 9 sakrivenih i 817 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., Aleksandar Tomić, Apok, Ben Roj, bojank, bokisha253, comi_pfc, doloress, draggan, HrcAk47, ILGromovnik, Krvava Devetka, kunktator, milenko crazy north, ostoja, Parker, Romibrat, saputnik plavetnila, sasa87, Sir Budimir, Sićko, slonic_tonic, sovanova95, SR-3m, stalja, tubular, uruk, vaso1, VojvodaMisic, wolverined4, zlaya011, šumar bk2