Usporen rad racunara

1

Usporen rad racunara

offline
  • Pridružio: 03 Jan 2011
  • Poruke: 997

Na preporuku TwinHeadedEagle na ovoj temi je predstavljem moj problem http://www.mycity.rs/Windows/sporo-se-podize-sistem_3.html

Inace nesto mi nije izgleda dobro sa fontom ili necim drugim ili gresim?

https://www.mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Korak 1.

Arrow Preuzmi program OTL sa donjeg linka na Desktop:

OTL download
Klikni na dati link i u prozoru koji se otvori, klikni na dugme Save;
kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati datoteku, odaberi Desktop i klikni na dugme Save.

Dvoklikom pokreni OTL;

klikni na dugme Run Scan;

po završetku skeniranja, izveštaj će se otvoriti u programu Notepad (napomena: izveštaj će automatski biti sačuvan na Desktopu kao OTL.Txt) .


Priloži izveštaj OTL.Txt uz poruku korišćenjem opcije Prikači fajl.



Korak 2.

Preuzmi program GMER sa donjeg linka na Desktop:


GMER download
Klikni dati link;
Kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati file, odaberi Desktop i klikni Save.



Dvoklikom pokrenite GMER.
Sačekaj da se završi uvodno skeniranje - ukoliko se pojavi bilo kakav upit, klikni No;

klikni Scan i sačekaj da skeniranje bude završeno;

klikni Save ... - izveštaj sačuvaj na Desktop (pod nazivom Gmer1);

klikni desnim tasterom u prozor programa Gmer i odaberi Options > 3rd party - klikni Scan;

po završetku skeniranja klikni Save ... - izveštaj sačuvaj na Desktop (pod nazivom Gmer2);

klikni taster >>> i odaberi Autostart karticu;

po završetku kratkotrajnog skeniranja, klikni Copy;

otvori Notepad i u njega postavi kopirani tekst - izveštaj sačuvaj na Desktop (pod nazivom Gmer3);


Slikoviti prikaz postupka

Priloži sva tri izveštaja uz poruku korišćenjem opcije Prikači fajl.

offline
  • Pridružio: 03 Jan 2011
  • Poruke: 997

Napisano: 19 Maj 2013 20:03

OTL logfile created on: 19.5.2013 19:52:39 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Virijevic1\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000C1A | Country: Serbia and Montenegro | Language: SRB | Date Format: d.M.yyyy

1022,42 Mb Total Physical Memory | 254,57 Mb Available Physical Memory | 24,90% Memory free
2,40 Gb Paging File | 1,54 Gb Available in Paging File | 64,04% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 15,00 Gb Total Space | 4,23 Gb Free Space | 28,19% Space Free | Partition Type: NTFS
Drive D: | 73,00 Gb Total Space | 27,87 Gb Free Space | 38,18% Space Free | Partition Type: NTFS
Drive E: | 42,00 Gb Total Space | 16,00 Gb Free Space | 38,09% Space Free | Partition Type: NTFS
Drive F: | 19,00 Gb Total Space | 9,13 Gb Free Space | 48,05% Space Free | Partition Type: NTFS

Computer Name: VIRIJEVIC | User Name: Virijevic1 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013.05.19 19:52:04 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Virijevic1\Desktop\OTL.exe
PRC - [2013.05.09 10:58:30 | 004,858,968 | ---- | M] (AVAST Software) -- F:\Antivirusi\Avast\AvastUI.exe
PRC - [2013.05.09 10:58:30 | 000,046,808 | ---- | M] (AVAST Software) -- F:\Antivirusi\Avast\AvastSvc.exe
PRC - [2013.04.26 18:31:59 | 001,815,248 | ---- | M] (COMODO) -- F:\Antivirusi\Comodo\COMODO Internet Security\cavwp.exe
PRC - [2013.04.25 02:30:15 | 004,443,912 | ---- | M] (COMODO) -- F:\Antivirusi\Comodo\COMODO Internet Security\cmdagent.exe
PRC - [2013.04.25 02:29:48 | 009,478,352 | ---- | M] (COMODO) -- F:\Antivirusi\Comodo\COMODO Internet Security\cis.exe
PRC - [2013.04.15 19:38:17 | 003,012,816 | ---- | M] (COMODO) -- F:\Antivirusi\Comodo\COMODO Internet Security\cistray.exe
PRC - [2013.04.12 11:18:51 | 000,920,472 | ---- | M] (Mozilla Corporation) -- F:\Pretraživači\Mozilla FireFox\firefox.exe
PRC - [2008.04.14 06:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (No Company Name) ==========

MOD - [2013.05.19 11:35:03 | 002,084,864 | ---- | M] () -- F:\Antivirusi\Avast\defs\13051900\algo.dll
MOD - [2013.05.17 16:53:40 | 016,033,160 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_202.dll
MOD - [2011.03.02 12:40:51 | 000,140,288 | ---- | M] () -- F:\Programi\WinRar\RarExt.dll
MOD - [2008.04.14 06:42:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll


========== Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2013.05.09 10:58:30 | 000,046,808 | ---- | M] (AVAST Software) [Auto | Running] -- F:\Antivirusi\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2013.04.25 02:30:15 | 004,443,912 | ---- | M] (COMODO) [Auto | Running] -- F:\Antivirusi\Comodo\COMODO Internet Security\cmdagent.exe -- (cmdAgent)
SRV - [2013.04.15 19:38:18 | 000,127,184 | ---- | M] (COMODO) [On_Demand | Stopped] -- F:\Antivirusi\Comodo\COMODO Internet Security\cmdvirth.exe -- (cmdvirth)
SRV - [2013.04.12 11:18:50 | 000,115,608 | ---- | M] (Mozilla Foundation) [Disabled | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.03.01 23:06:26 | 000,077,944 | ---- | M] (Autodesk) [Disabled | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2013.01.31 11:38:54 | 003,289,208 | ---- | M] (Skype Technologies S.A.) [Disabled | Stopped] -- C:\Documents and Settings\All Users\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2013.01.08 13:55:20 | 000,161,536 | R--- | M] (Skype Technologies) [Disabled | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.12.19 10:49:34 | 000,732,648 | ---- | M] (Nokia) [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2012.09.23 16:28:00 | 001,258,856 | ---- | M] (NVIDIA Corporation) [Disabled | Stopped] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2010.07.04 20:07:40 | 000,238,952 | ---- | M] (Teruten) [Disabled | Stopped] -- C:\WINDOWS\system32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2008.10.22 23:49:24 | 000,188,416 | ---- | M] () [Disabled | Stopped] -- f:\Programi\Quartus II\quartus\bin\jtagserver.exe -- (JTAGServer)
SRV - [2008.09.08 12:10:20 | 000,450,560 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe -- (ForceWare Intelligent Application Manager (IAM)
SRV - [2008.09.08 12:09:40 | 000,184,320 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe -- (nSvcIp)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - [2013.05.09 10:59:10 | 000,765,736 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2013.05.09 10:59:10 | 000,368,944 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2013.05.09 10:59:10 | 000,174,664 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswVmm.sys -- (aswVmm)
DRV - [2013.05.09 10:59:10 | 000,056,080 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2013.05.09 10:59:10 | 000,049,376 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswRvrt.sys -- (aswRvrt)
DRV - [2013.05.09 10:59:09 | 000,066,336 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2013.05.09 10:59:09 | 000,049,760 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (AswRdr)
DRV - [2013.05.09 10:59:08 | 000,029,816 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2013.04.25 12:05:20 | 000,099,392 | ---- | M] (COMODO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\inspect.sys -- (Inspect)
DRV - [2013.04.15 19:38:59 | 000,032,816 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cmdhlp.sys -- (cmdHlp)
DRV - [2013.04.15 19:38:58 | 000,592,384 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard)
DRV - [2013.04.15 19:38:58 | 000,018,528 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmderd.sys -- (cmderd)
DRV - [2012.12.18 11:06:00 | 000,020,032 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\dgderdrv.sys -- (dgderdrv)
DRV - [2012.11.09 16:33:32 | 000,137,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu)
DRV - [2012.11.09 16:33:32 | 000,008,576 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc)
DRV - [2012.11.09 16:33:32 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2012.11.09 16:33:32 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2012.11.09 16:33:30 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2012.11.09 16:33:30 | 000,018,560 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2012.10.17 14:53:46 | 000,019,072 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2012.09.20 06:35:36 | 000,181,344 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudserd.sys -- (ssudserd)
DRV - [2012.09.20 06:35:36 | 000,181,344 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudmdm.sys -- (ssudmdm)
DRV - [2012.09.20 06:35:36 | 000,083,168 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudbus.sys -- (dg_ssudbus)
DRV - [2012.08.21 19:34:12 | 006,168,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService)
DRV - [2011.06.15 10:23:56 | 000,060,156 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2010.06.14 10:32:54 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2009.11.18 08:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009.11.18 08:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2008.08.01 12:36:00 | 000,054,784 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2008.08.01 12:36:00 | 000,022,016 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2007.07.07 09:11:58 | 000,026,120 | ---- | M] (Rainbow Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SNTNLUSB.SYS -- (Sntnlusb)
DRV - [2007.07.07 09:11:38 | 000,076,288 | ---- | M] (Rainbow Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\SENTINEL.SYS -- (Sentinel)
DRV - [2007.07.07 09:09:48 | 000,007,680 | ---- | M] (Altera Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\pgdhdlc.sys -- (AlteraByteBlaster)
DRV - [2006.08.29 16:56:20 | 000,032,377 | ---- | M] (B-phreaks) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\prodigy.sys -- (PRODIGY)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://websearch.lookforithere.info/?pid=922&r=201.....S&unqvl=14
IE - HKLM\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://websearch.lookforithere.info/?l=1&q={searchTerms}&pid=922&r=2013/05/13&hid=2382761519&lg=EN&cc=RS&unqvl=14

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://websearch.lookforithere.info/?pid=922&r=201.....S&unqvl=14
IE - HKCU\..\SearchScopes,DefaultScope = {BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.delta-search.com/?q={searchTerms}&affID=119776&tt=110413_www&babsrc=SP_ss&mntrId=C8E800E04D62CDAB
IE - HKCU\..\SearchScopes\{8EEAC88A-079B-4b2c-80C1-7836F79EB40A}: "URL" = http://us.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo
IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = https://isearch.avg.com/search?cid={6ABB36AE-E3CC-498F-99A8-AB54CF398DE4}&mid=c50c7cd4ab7f46a797d7905ee1e0f89a-8c52b00094fc0d113207c929683fc1afcbf798f6&lang=en&ds=pl011&pr=sa&d=2013-01-29 12:43:04&v=12.1.0.20&sap=dsp&q={searchTerms}
IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3220468
IE - HKCU\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://websearch.lookforithere.info/?l=1&q={searchTerms}&pid=922&r=2013/05/13&hid=2382761519&lg=EN&cc=RS&unqvl=14
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "WebSearch"
FF - prefs.js..browser.search.defaultenginename,S: S", "WebSearch"
FF - prefs.js..browser.search.defaultthis.engineName: ""
FF - prefs.js..browser.search.defaulturl: "http://websearch.lookforithere.info/?pid=922&r=2013/05/13&hid=2382761519&lg=EN&cc=RS&unqvl=14&l=1&q="
FF - prefs.js..browser.search.order.1: "WebSearch"
FF - prefs.js..browser.search.order.1,S: S", "WebSearch"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.selectedEngine,S: S", "WebSearch"
FF - prefs.js..browser.startup.homepage: "http://www.pravoslavnikalendar.iz.rs/index.php"
FF - prefs.js..extensions.enabledAddons: %7Bb9db16a4-6edc-47ec-a1f4-b86292ed211d%7D:4.9.14
FF - prefs.js..extensions.enabledAddons: %7B7473b6bd-4691-4744-a82b-7854eb3d70b6%7D:10.15.0.562
FF - prefs.js..extensions.enabledAddons: wrc%40avast.com:8.0.1489
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:20.0.1
FF - prefs.js..keyword.URL: "http://websearch.lookforithere.info/?pid=922&r=2013/05/13&hid=2382761519&lg=EN&cc=RS&unqvl=14&l=1&q="
FF - prefs.js..network.proxy.http: "178.18.17.211"
FF - prefs.js..network.proxy.http_port: 3128
FF - prefs.js..network.proxy.type: 0
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaultenginename: ""
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: ""
FF - prefs.js..browser.startup.homepage: ""
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: ""


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_202.dll ()
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: F:\PROGRAMI\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf: F:\PROGRAMI\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.21.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.6: F:\Programi\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Documents and Settings\Virijevic1\Application Data\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Documents and Settings\Virijevic1\Application Data\Mozilla\plugins\npo1d.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Documents and Settings\Virijevic1\Application Data\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Virijevic1\Local Settings\Application Data\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Virijevic1\Local Settings\Application Data\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: F:\Antivirusi\Avast\WebRep\FF [2013.05.13 21:11:29 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: F:\Pretraživaci\Mozilla FireFox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: F:\Pretraživaci\Mozilla FireFox\plugins

[2012.12.26 17:18:06 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Extensions
[2013.05.13 20:55:21 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\extensions
[2013.03.27 07:30:31 | 000,000,000 | ---D | M] (uTorrentControl_v2) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6}
[2013.02.23 23:42:48 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2013.05.13 20:53:50 | 000,000,000 | ---D | M] (ConetInUyetyOsaavvea) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\extensions\icpvyu@fxaoi.com
[2013.05.13 20:55:21 | 000,000,000 | ---D | M] (SearchNewTab) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\extensions\wljyrlojf@qjrvr-.com
[2013.03.16 18:58:59 | 000,216,743 | ---- | M] () (No name found) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\extensions\freehdsport@freehdsport.tv.xpi
[2013.03.17 00:25:06 | 000,224,945 | ---- | M] () (No name found) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\extensions\gophoto@gophoto.it.xpi
[2013.04.13 12:11:31 | 000,213,470 | ---- | M] () (No name found) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\extensions\torntv2@torntv.com.xpi
[2013.05.09 21:14:48 | 000,870,680 | ---- | M] () (No name found) -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013.05.13 20:56:00 | 000,007,849 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Application Data\Mozilla\Firefox\Profiles\9i5bog7v.default\searchplugins\WebSearch.xml
[2013.05.13 21:11:29 | 000,000,000 | ---D | M] (avast! Online Security) -- F:\ANTIVIRUSI\AVAST\WEBREP\FF

========== Chrome ==========

CHR - homepage: http://websearch.lookforithere.info/?pid=922&r=201.....S&unqvl=14
CHR - Extension: SearchNewTab = C:\Documents and Settings\Virijevic1\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ngiajilanemmkdhdbabpbgcffdpobkgp\1\
CHR - Extension: ConetInUyetyOsaavvea = C:\Documents and Settings\Virijevic1\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\phofccihcieihlalkniflknpcmlgmmig\1\

O1 HOSTS File: ([2007.08.11 08:58:33 | 000,000,768 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 mpa.one.microsoft.com
O4 - HKLM..\Run: [avast] F:\Antivirusi\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [COMODO Internet Security] F:\Antivirusi\Comodo\COMODO Internet Security\cistray.exe (COMODO)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: E&xport to Microsoft Excel - F:\Programi\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Reg Error: Key error. File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - F:\Programi\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\nvLsp.dll (NVIDIA)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\nvLsp.dll (NVIDIA)
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fce.....vc1dmo.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{94A18258-4BA0-4E13-B310-1ACE93FAE0A6}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{94A18258-4BA0-4E13-B310-1ACE93FAE0A6}: NameServer = 8.26.56.26,156.154.70.22
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - AppInit_DLLs: (c:\progra~1\contin~1\sprote~1.dll) - File not found
O20 - AppInit_DLLs: (c:\progra~1\websea~1\sprote~1.dll) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Virijevic1\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Virijevic1\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012.12.26 17:03:28 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\H\Shell - "" = AutoRun
O33 - MountPoints2\H\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

========== Files/Folders - Created Within 30 Days ==========

[2013.05.19 19:52:01 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Virijevic1\Desktop\OTL.exe
[2013.05.19 19:28:18 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2013.05.19 19:25:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\WhoCrashed
[2013.05.19 19:07:54 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia
[2013.05.14 13:31:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\My Documents\CPY_SAVES
[2013.05.14 13:31:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\My Documents\Sports Interactive
[2013.05.14 13:31:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\Local Settings\Application Data\Sports Interactive
[2013.05.14 13:31:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\Application Data\Sports Interactive
[2013.05.14 13:31:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\Sports Interactive
[2013.05.14 13:19:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Football Manager 2013
[2013.05.13 21:51:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2013.05.13 21:26:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\StarApp
[2013.05.13 20:55:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SearchNewTab
[2013.05.13 20:55:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SearchNewTab
[2013.05.13 20:55:02 | 000,000,000 | ---D | C] -- C:\Program Files\WebSearch
[2013.05.13 20:54:05 | 000,000,000 | ---D | C] -- C:\Program Files\ContinueToSave
[2013.05.13 20:52:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\InstallMate
[2013.05.13 13:15:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\Start Menu\Programs\WinDirStat
[2013.05.13 12:30:28 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Virijevic1\Recent
[2013.05.11 13:59:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VideoLAN
[2013.05.05 18:34:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\My Documents\Downloads
[2013.05.03 13:44:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\My Documents\Flight Simulator Files
[2013.04.30 19:59:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\Application Data\Malwarebytes
[2013.04.30 19:59:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2013.04.30 19:59:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2013.04.30 19:59:11 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2013.04.23 20:43:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Foxit Software
[2013.04.23 20:43:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Foxit Reader
[2013.04.21 11:01:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\Start Menu\Programs\TechPowerUp GPU-Z
[2013.04.21 10:59:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\Start Menu\Programs\Driver Cleaner Pro
[2013.04.21 10:57:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Virijevic1\Application Data\NVIDIA
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2013.05.19 19:52:04 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Virijevic1\Desktop\OTL.exe
[2013.05.19 19:42:20 | 000,688,992 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Desktop\dds.scr
[2013.05.19 19:42:01 | 000,001,040 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1993962763-362288127-682003330-1003UA.job
[2013.05.19 19:25:50 | 000,000,567 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Desktop\WhoCrashed.lnk
[2013.05.19 18:59:00 | 000,000,894 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013.05.19 18:45:13 | 000,000,434 | ---- | M] () -- C:\WINDOWS\tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job
[2013.05.19 16:00:01 | 000,000,328 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2013.05.19 15:54:34 | 000,000,890 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013.05.19 15:54:28 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013.05.19 13:50:05 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2013.05.18 17:02:43 | 000,692,104 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
[2013.05.18 17:02:43 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2013.05.17 22:42:00 | 000,000,988 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1993962763-362288127-682003330-1003Core.job
[2013.05.14 13:19:25 | 000,000,726 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Application Data\Microsoft\Internet Explorer\Quick Launch\Football Manager 2013.lnk
[2013.05.14 13:19:25 | 000,000,726 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Football Manager 2013.lnk
[2013.05.13 21:11:34 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2013.05.13 20:47:39 | 000,000,731 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Desktop\JDownloader.lnk
[2013.05.13 20:47:39 | 000,000,695 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Application Data\Microsoft\Internet Explorer\Quick Launch\JDownloader.lnk
[2013.05.13 13:15:11 | 000,000,567 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Desktop\WinDirStat.lnk
[2013.05.12 16:01:49 | 000,504,286 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2013.05.12 16:01:49 | 000,088,132 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2013.05.12 15:32:52 | 000,002,267 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk
[2013.05.09 10:59:10 | 000,765,736 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2013.05.09 10:59:10 | 000,368,944 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2013.05.09 10:59:10 | 000,174,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswVmm.sys
[2013.05.09 10:59:10 | 000,056,080 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2013.05.09 10:59:10 | 000,049,376 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswRvrt.sys
[2013.05.09 10:59:09 | 000,066,336 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys
[2013.05.09 10:59:09 | 000,049,760 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2013.05.09 10:59:08 | 000,029,816 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2013.05.09 10:58:37 | 000,041,664 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2013.05.09 10:58:28 | 000,229,648 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2013.05.06 14:56:34 | 000,013,312 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013.05.06 13:02:19 | 000,000,025 | ---- | M] () -- C:\Documents and Settings\Virijevic1\My Documents\gmapsupp.unl
[2013.05.06 12:49:32 | 000,000,025 | ---- | M] () -- C:\Documents and Settings\Virijevic1\My Documents\sw.unl
[2013.05.05 23:21:01 | 002,275,111 | ---- | M] () -- C:\Documents and Settings\Virijevic1\My Documents\Form I-94.pdf
[2013.04.30 19:59:20 | 000,000,635 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2013.04.25 12:05:20 | 000,099,392 | ---- | M] (COMODO) -- C:\WINDOWS\System32\drivers\inspect.sys
[2013.04.23 20:43:05 | 000,000,617 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Application Data\Microsoft\Internet Explorer\Quick Launch\Foxit Reader.lnk
[2013.04.23 16:04:10 | 000,348,048 | ---- | M] (COMODO) -- C:\WINDOWS\System32\guard32.dll
[2013.04.21 11:01:35 | 000,000,519 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Desktop\TechPowerUp GPU-Z.lnk
[2013.04.21 10:59:15 | 000,000,689 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Desktop\Driver Cleaner Pro.lnk
[2013.04.21 10:59:15 | 000,000,689 | ---- | M] () -- C:\Documents and Settings\Virijevic1\Application Data\Microsoft\Internet Explorer\Quick Launch\Driver Cleaner Pro.lnk
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2013.05.19 19:42:03 | 000,688,992 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Desktop\dds.scr
[2013.05.19 19:25:50 | 000,000,567 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Desktop\WhoCrashed.lnk
[2013.05.14 13:19:25 | 000,000,726 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Application Data\Microsoft\Internet Explorer\Quick Launch\Football Manager 2013.lnk
[2013.05.14 13:19:25 | 000,000,726 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Football Manager 2013.lnk
[2013.05.13 20:47:39 | 000,000,731 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Desktop\JDownloader.lnk
[2013.05.13 20:47:39 | 000,000,695 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Application Data\Microsoft\Internet Explorer\Quick Launch\JDownloader.lnk
[2013.05.13 20:47:26 | 000,000,695 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\JDownloader.lnk
[2013.05.13 20:47:26 | 000,000,655 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\JDownloader Uninstaller.lnk
[2013.05.13 20:47:26 | 000,000,640 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\JDownloader Update.lnk
[2013.05.13 13:15:11 | 000,000,567 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Desktop\WinDirStat.lnk
[2013.05.06 13:02:19 | 000,000,025 | ---- | C] () -- C:\Documents and Settings\Virijevic1\My Documents\gmapsupp.unl
[2013.05.06 12:49:32 | 000,000,025 | ---- | C] () -- C:\Documents and Settings\Virijevic1\My Documents\sw.unl
[2013.05.05 23:21:00 | 002,275,111 | ---- | C] () -- C:\Documents and Settings\Virijevic1\My Documents\Form I-94.pdf
[2013.04.30 19:59:20 | 000,000,635 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
[2013.04.23 20:43:05 | 000,000,617 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Application Data\Microsoft\Internet Explorer\Quick Launch\Foxit Reader.lnk
[2013.04.21 11:01:35 | 000,000,519 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Desktop\TechPowerUp GPU-Z.lnk
[2013.04.21 10:59:15 | 000,000,689 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Desktop\Driver Cleaner Pro.lnk
[2013.04.21 10:59:15 | 000,000,689 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Application Data\Microsoft\Internet Explorer\Quick Launch\Driver Cleaner Pro.lnk
[2013.03.11 17:04:10 | 000,174,664 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswVmm.sys
[2013.03.11 17:04:10 | 000,049,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswRvrt.sys
[2013.03.04 21:32:35 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2013.03.04 20:45:46 | 000,004,934 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\mtbjfghn.xbe
[2013.03.04 19:08:23 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys
[2013.03.04 19:08:22 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll
[2013.03.04 19:07:46 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Application Data\$_hpcst$.hpc
[2013.02.04 19:12:28 | 000,025,816 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT
[2013.01.31 01:35:59 | 001,007,368 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2013.01.30 19:30:07 | 000,000,173 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Local Settings\Application Data\msmathematics.qat.Virijevic1
[2012.12.30 20:40:13 | 000,013,312 | ---- | C] () -- C:\Documents and Settings\Virijevic1\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.12.26 18:51:09 | 000,067,256 | ---- | C] () -- C:\Documents and Settings\Virijevic1\qms-bmh3.bmp
[2012.12.26 18:51:07 | 000,067,256 | ---- | C] () -- C:\Documents and Settings\Virijevic1\qms-bmh2.bmp
[2012.12.26 18:51:05 | 000,067,256 | ---- | C] () -- C:\Documents and Settings\Virijevic1\qms-bmh1.bmp
[2012.12.26 18:51:00 | 000,000,016 | -H-- | C] () -- C:\Documents and Settings\Virijevic1\1HmOlao4361
[2012.12.26 18:50:54 | 000,000,180 | ---- | C] () -- C:\Documents and Settings\Virijevic1\quartus2.ini
[2012.12.26 18:42:18 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2012.12.26 17:56:28 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2012.12.26 17:55:31 | 000,291,680 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012.12.26 17:37:12 | 000,004,984 | ---- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin
[2012.12.26 17:12:50 | 001,101,436 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2012.12.26 17:12:50 | 001,101,436 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2012.12.26 17:12:50 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2012.12.26 17:12:41 | 002,811,988 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data
[2012.12.26 17:05:21 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2012.12.26 17:01:02 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2012.12.18 11:06:10 | 000,030,568 | ---- | C] () -- C:\WINDOWS\MusiccityDownload.exe
[2012.12.18 11:06:06 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll
[2012.12.18 11:06:06 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll
[2012.12.18 11:06:06 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll
[2012.12.18 11:06:06 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll

========== ZeroAccess Check ==========

[2012.12.30 17:02:49 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2012.08.30 22:29:36 | 001,510,400 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2008.04.14 06:41:54 | 000,472,064 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 06:42:10 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

========== Files - Unicode (All) ==========
[2013.05.04 15:38:10 | 001,623,040 | ---- | M] ()(C:\Documents and Settings\Virijevic1\My Documents\????? ? ?????????? ????????? (????????? ?? ?? 01. ???????? 2012.).doc) -- C:\Documents and Settings\Virijevic1\My Documents\Закон о привредним друштвима (примењује се од 01. фебруара 2012.).doc
[2013.05.01 11:17:26 | 001,623,040 | ---- | C] ()(C:\Documents and Settings\Virijevic1\My Documents\????? ? ?????????? ????????? (????????? ?? ?? 01. ???????? 2012.).doc) -- C:\Documents and Settings\Virijevic1\My Documents\Закон о привредним друштвима (примењује се од 01. фебруара 2012.).doc

< End of report >



https://www.mycity.rs/must-login.png

Dopuna: 19 Maj 2013 20:21

Gmer1:

https://www.mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Nedostaju ti jos Gmer 2 i Gmer 3

offline
  • Pridružio: 03 Jan 2011
  • Poruke: 997

Zna msporo mi skenira evo jos gmer2 nije skenirao.

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Ok, nema problema, kad bude ti postavi, pa cemo nastaviti...

offline
  • Pridružio: 03 Jan 2011
  • Poruke: 997

Napisano: 19 Maj 2013 20:50

Gmer2:

https://www.mycity.rs/must-login.png

Dopuna: 19 Maj 2013 20:54

Zablokirao mi kad sam pokrenuo da skeniram autostart jel mogu da prekinem proces pa ponovo skeniram autostart?

Dopuna: 19 Maj 2013 20:56

Ipak se odblokirao.
Gmer3:

https://www.mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Idea Na racunaru imas instalirana dva antivirusa

avast! Free Antivirus
COMODO Internet Security


Drzanje dva antivirusa jedan pored drugog nije preporucljivo jer u tvom slucaju usporava racunar, takodje moze se desiti da ostete sistem itd.

Odluci se koji ces da obrises a koji ces da ostavis.



Korak 1.

Preuzmi "Xplode"-ov AdwCleaner () i sacuvaj ga na Desktop

Dvoklikom pokreni program.
Klikni na dugme [Delete] i pricekaj da program zavrsi.
Program ce zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni Ok kao potvrdu.
Na sledeca dva prozora koja se otvore (Informations i Restart required ) klikni Ok


Racunar ce se restartovati a potom otvoriti notepad (C:\AdwCleaner[S1].txt) sa izvestajem.
Sacuvaj taj notepad na Desktop i okaci ga uz poruku koristeci opciju "Prikaci fajl"

Napomena: Izvestaj ce takodje biti sacuvan na C:\AdwCleaner[S1].txt




Korak 2.

Preuzmi Junkware Removal Tool ( JRT ) i sacuvaj ga na desktop.

zatvori browser i ostale pokrenute programe;
Jel potrebno navesti napomenu za duzinu scana? Da postavim ovaj PG ili nema potrebe za tim?

Privremeno deaktiviraj zastitni softver (Uputstvo);

dvoklikom na ikonicu ( )pokreni program JRT;

Kod obavestenja "press any key" pritisnuti bilo koji taster i alat ce zapoceti skeniranje.
Napomena: u ovisnosti od sistemske specifikacije vreme skeniranja u nekim slucajevima moze da potraje.

Kada zavrsi otvorice se log sa izvestajem koji ce biti sacuvan na desktopu pod nazivom JRT.txt


Arrow Kopiraj sadrzaj tog loga u temu.

offline
  • Pridružio: 03 Jan 2011
  • Poruke: 997

Napisano: 19 Maj 2013 22:37

https://www.mycity.rs/must-login.png

Dopuna: 19 Maj 2013 22:48

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.9.4 (05.06.2013:1)
OS: Microsoft Windows XP x86
Ran by Virijevic1 on ??? 19.05.2013 at 22:39:13,32
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim



~~~ Files



~~~ Folders





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ??? 19.05.2013 at 22:46:12,43
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Dopuna: 19 Maj 2013 22:51

Izbrisao sam Comodo koji Firewall da koristim umesto njega ako je uopste i potrebno pored Avasta?

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Arrow Kakvo je sada stanje sistema?



Arrow Ponovo pokreni program OTL dvoklikom na ikonu.

Klikni na Run Scan i dostavi mi novi izvestaj nakon sto se skeniranje zavrsi.

Ko je trenutno na forumu
 

Ukupno su 1022 korisnika na forumu :: 37 registrovanih, 6 sakrivenih i 979 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 357magnum, A.R.Chafee.Jr., amaterSRB, Atomski čoban, babaroga, Bobrock1, Boris90, dankisha, FileFinder, GandorCC, Georgius, godljevo, goxin, havoc995, laurusri, mackenzie, mercedesamg, Mi lao shu, mile23, MiloradKomadic, miodrag, misa1xx, nuke92, opt1, pein, raketaš, repac, Ripanjac, sevenino, Shinobi, Stojković, Sumadija34, suton, tubular, umpah-pah, vathra, zexoni