ne pokazuju se gedzeti u win 7

ne pokazuju se gedzeti u win 7

offline
  • Pridružio: 26 Jan 2006
  • Poruke: 233

Napisano: 16 Apr 2011 13:03

dakle imam win 7 pro x32. internet konekcija je adsl. juce mi je racunar poceo cudno da se ponasa. na desktopu mi gedzet za vreme crn,a kalendara nema. u internet exploreru ie9 je izmenjena home page strana vise nije google. ja sam startovao malwarebyte i superantispyware i oni su nasli brdo stetocina i sve se popravilo. medjutim danas opet primecujem da mi gedzeti ne rade i guglajuci po netu nasao sam da je uzrok problema kljuc u registry



[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\l]


ja sam ovaj kljuc obrisao i gedzeti rade,ali od danas kad ovaj kljuc obrisem nakon restarta opet se pojavi. takodje ovaj kljuc onemogucava npr. da ne mogu da startujem services.msc, servis security center.

stavljam vam log fajlove


DDS (Ver_11-03-05.01) - NTFSx86
Run by gljubic at 12:45:44,94 on 16.04.2011
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_24
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.3034.1874 [GMT 2:00]
.
AV: AVG Internet Security Business Edition 2011 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Internet Security Business Edition 2011 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\PROGRA~1\AVG\AVG10\avgchsvx.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskeng.exe
C:\Windows\system32\rundll32.exe
C:\Windows\system32\rundll32.exe
C:\Program Files\AVG\AVG10\avgwdsvc.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Program Files\AVG\AVG10\avgam.exe
C:\Program Files\AVG\AVG10\avgnsx.exe
C:\Program Files\AVG\AVG10\avgemcx.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Windows\Ubefea.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\AVG\AVG10\avgtray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\MagicDisc\MagicDisc.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\regedit.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\PROGRA~1\AVG\AVG10\avgrsx.exe
C:\Program Files\AVG\AVG10\avgcsrvx.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\gljubic\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\notepad.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\gljubic\Desktop\remove virus\mycity\dds.scr
C:\Windows\system32\conhost.exe
.
============== Pseudo HJT Report ===============
.
uSearch Bar = Preserve
mSearchAssistant = hxxp://start.facemoods.com/?a=ddr&s={searchTerms}&f=4
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 6.0\acrobat\activex\AcroIEHelper.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg10\avgssie.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: AcroIEToolbarHelper Class: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [Google Update] "c:\users\gljubic\appdata\local\google\update\GoogleUpdate.exe" /c
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Apoint] c:\program files\delltpad\Apoint.exe
mRun: [Malwarebytes' Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRun: [AVG_TRAY] c:\program files\avg\avg10\avgtray.exe
StartupFolder: c:\users\gljubic\appdata\roaming\micros~1\windows\startm~1\programs\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
StartupFolder: c:\users\gljubic\appdata\roaming\micros~1\windows\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~1\office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~1\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg10\avgpp.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: igfxcui - igfxdev.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\gljubic\appdata\roaming\mozilla\firefox\profiles\11tnu0zv.default\
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
FF - prefs.js: browser.startup.homepage - hxxp://www.smaxi.net
FF - component: c:\program files\avg\avg10\toolbar\firefox\avg@igeared\components\IGeared_tavgp_xputils3.dll
FF - component: c:\program files\avg\avg10\toolbar\firefox\avg@igeared\components\IGeared_tavgp_xputils35.dll
FF - component: c:\program files\avg\avg10\toolbar\firefox\avg@igeared\components\xpavgtbapi.dll
FF - component: c:\program files\mozilla firefox\extensions\{ab2ce124-6272-4b12-94a9-7303c7397bd1}\components\SkypeFfComponent.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npFoxitReaderPlugin.dll
FF - plugin: c:\users\gljubic\appdata\local\google\update\1.2.183.39\npGoogleOneClick8.dll
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [2010-9-13 25680]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2010-9-7 26064]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2010-12-8 251728]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2010-9-7 34384]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2010-11-12 299984]
R1 CSN5PDTS82;CSN5PDTS82 NDIS Protocol Driver;c:\windows\system32\drivers\CSN5PDTS82.sys [2011-4-4 28184]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 48128]
R2 avgwd;AVG WatchDog;c:\program files\avg\avg10\avgwdsvc.exe [2010-10-22 265400]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\drivers\L1C62x86.sys [2011-3-11 68208]
R3 TS_AR5416;[CommView] Atheros AR5008 Wireless Network Adapter Service 7.7;c:\windows\system32\drivers\ts_athw.sys [2010-7-26 1629992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2011-3-12 52224]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\drivers\vwifimp.sys [2009-7-14 14336]
.
=============== Created Last 30 ================
.
2011-04-16 10:24:34 -------- d-----w- c:\windows\pss
2011-04-16 09:59:24 -------- d--h--w- C:\$AVG
2011-04-15 21:36:54 -------- d-----w- c:\windows\system32\drivers\AVG
2011-04-15 21:16:20 6792528 ----a-w- c:\progra~2\microsoft\windows defender\definition updates\{88b824ec-b6b4-460f-b0ae-e71646d182bf}\mpengine.dll
2011-04-15 21:16:18 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-04-15 20:14:28 -------- d-----w- c:\progra~2\SUPERAntiSpyware.com
2011-04-15 20:08:59 -------- d-----w- c:\users\gljubic\appdata\roaming\Malwarebytes
2011-04-15 20:08:55 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-04-15 20:08:55 -------- d-----w- c:\progra~2\Malwarebytes
2011-04-15 20:08:52 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-04-15 20:08:52 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-04-15 12:27:21 169472 ----a-w- c:\windows\Ubefea.exe
2011-04-15 11:12:04 -------- d-----w- c:\users\gljubic\appdata\roaming\archsoft
2011-04-15 07:46:04 -------- d-----w- C:\Output
2011-04-13 09:12:18 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-13 09:12:18 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-13 09:12:18 114176 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-04-13 08:52:21 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2011-04-13 08:52:21 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2011-04-13 08:52:19 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-04-13 08:52:19 294912 ----a-w- c:\windows\system32\atmfd.dll
2011-04-13 08:49:50 2333184 ----a-w- c:\windows\system32\win32k.sys
2011-04-13 08:49:42 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2011-04-13 08:49:36 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-04-13 08:39:34 741376 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-13 08:29:31 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2011-04-13 08:29:31 1137664 ----a-w- c:\windows\system32\mfc42.dll
2011-04-13 08:24:17 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-04-13 08:24:17 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-04-13 08:24:17 223232 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-04-13 08:24:17 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-04-06 12:13:03 161792 ----a-w- c:\windows\system32\d3d10_1.dll
2011-04-06 10:30:34 443904 ----a-w- c:\windows\system32\MDIVWCTL.DLL
2011-04-06 10:30:34 180224 ----a-w- c:\windows\system32\ijl11.dll
2011-04-06 10:30:34 16384 ----a-w- c:\windows\system32\MSPGIMME.DLL
2011-04-06 10:30:34 1033216 ----a-w- c:\windows\system32\MSPCORE.DLL
2011-04-05 14:05:08 -------- d-----w- c:\users\gljubic\appdata\roaming\Colasoft Packet Builder
2011-04-04 13:52:11 -------- d-----w- c:\users\gljubic\appdata\roaming\Colasoft MAC Scanner
2011-04-04 13:52:11 -------- d-----w- c:\program files\common files\Colasoft Shared
2011-04-04 13:52:10 -------- d-----w- c:\users\gljubic\appdata\roaming\Colasoft Capsa 7 Enterprise
2011-04-04 13:52:10 -------- d-----w- c:\progra~2\Colasoft Capsa 7 Enterprise
2011-04-04 13:52:00 28184 ----a-w- c:\windows\system32\drivers\CSN5PDTS82.sys
2011-04-04 13:51:56 -------- d-----w- c:\program files\Colasoft Capsa 7 Enterprise Edition
2011-03-31 08:55:22 -------- d-----w- c:\program files\DellTPad
2011-03-31 08:55:02 1461992 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll
2011-03-31 08:55:02 114616 ----a-w- c:\windows\system32\Vxdif.dll
2011-03-31 08:55:01 255096 ----a-w- c:\windows\system32\drivers\Apfiltr.sys
2011-03-31 07:18:38 -------- d-----w- c:\users\gljubic\appdata\roaming\YCanPDF
2011-03-31 07:17:00 -------- d-----w- c:\windows\system32\tempdir
2011-03-31 07:16:59 -------- d-----w- c:\windows\system32\shellconv
2011-03-31 07:16:59 -------- d-----w- c:\program files\Okdo Document Converter Professional
2011-03-30 18:31:51 -------- d-----w- c:\progra~2\AVS4YOU
2011-03-30 18:31:28 774144 ----a-w- c:\windows\system32\htmlayout.dll
2011-03-30 18:31:24 -------- d-----w- c:\program files\common files\AVSMedia
2011-03-30 18:30:53 1700352 ----a-w- c:\windows\system32\GdiPlus.dll
2011-03-30 18:30:53 -------- d-----w- c:\program files\AVS4YOU
2011-03-30 13:59:23 -------- d-----w- c:\program files\Yamicsoft
2011-03-30 13:48:38 -------- d-----w- c:\progra~2\RegInOut
2011-03-30 13:48:34 -------- d-----w- c:\windows\RegInOut System Utilities
2011-03-29 13:49:27 781272 ----a-w- c:\program files\mozilla firefox\mozsqlite3.dll
2011-03-29 13:49:27 728024 ----a-w- c:\program files\mozilla firefox\libGLESv2.dll
2011-03-29 13:49:27 1975768 ----a-w- c:\program files\mozilla firefox\D3DCompiler_42.dll
2011-03-29 13:49:27 1893336 ----a-w- c:\program files\mozilla firefox\d3dx9_42.dll
2011-03-29 13:49:27 1874904 ----a-w- c:\program files\mozilla firefox\mozjs.dll
2011-03-29 13:49:27 15832 ----a-w- c:\program files\mozilla firefox\mozalloc.dll
2011-03-29 13:49:27 142296 ----a-w- c:\program files\mozilla firefox\libEGL.dll
2011-03-29 13:49:27 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2011-03-29 11:28:04 -------- d-----w- c:\users\gljubic\appdata\local\GHISLER
2011-03-28 07:30:07 -------- d-----w- c:\users\gljubic\appdata\roaming\Autodesk
2011-03-27 21:40:42 -------- d-----w- c:\progra~2\Soulseek
2011-03-27 21:39:43 -------- d-----w- c:\program files\SoulseekNS
2011-03-27 20:42:54 -------- d-----w- c:\program files\MP3Resizer
2011-03-27 20:26:50 -------- d-----w- c:\users\gljubic\appdata\roaming\MP3 Quality Modifier
2011-03-26 08:57:22 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-03-26 08:57:22 472808 ----a-w- c:\program files\mozilla firefox\plugins\npdeployJava1.dll
2011-03-26 08:54:46 -------- d-----w- c:\program files\JDownloader
2011-03-25 08:59:14 -------- d-----w- c:\program files\Audiograbber
2011-03-24 21:52:11 -------- d-----w- c:\users\gljubic\appdata\roaming\ASAP Utilities
2011-03-24 21:52:11 -------- d-----w- c:\program files\ASAP Utilities
2011-03-23 21:57:50 -------- d-----w- c:\program files\CommViewWiFi
2011-03-23 13:34:25 -------- d-----w- c:\program files\Network Stumbler
2011-03-23 12:25:02 -------- d-----w- c:\program files\Cain
2011-03-22 21:50:18 -------- d-----w- c:\users\gljubic\.terminfo
2011-03-22 20:14:29 -------- d-----w- c:\progra~2\TamoSoft
2011-03-22 18:54:27 -------- d-----w- c:\windows\system32\appmgmt
2011-03-22 11:29:26 -------- d-----w- c:\users\gljubic\VirtualBox VMs
2011-03-22 09:40:46 802816 ----a-w- c:\windows\system32\imagXRA7.dll
2011-03-22 09:40:46 368640 ----a-w- c:\windows\system32\TwnLib4.dll
2011-03-22 09:40:45 497296 ----a-w- c:\windows\system32\imagXpr7.dll
2011-03-22 09:40:45 258048 ----a-w- c:\windows\system32\imagXR7.dll
2011-03-22 09:40:45 1757184 ----a-w- c:\windows\system32\imagX7.dll
2011-03-22 09:40:45 -------- d-----w- c:\program files\Nero
2011-03-22 09:40:45 -------- d-----w- c:\progra~2\Nero
2011-03-21 21:46:59 -------- d-----w- c:\program files\CACE Technologies
2011-03-21 20:25:09 -------- d-----w- c:\users\gljubic\appdata\roaming\Wireshark
2011-03-21 19:54:11 -------- d-----w- c:\program files\WinPcap
2011-03-21 19:53:55 -------- d-----w- c:\program files\Wireshark
2011-03-21 19:04:59 -------- d-----w- c:\users\gljubic\appdata\local\Microsoft Games
2011-03-21 19:03:55 -------- d-----w- c:\program files\Microsoft Games
2011-03-18 20:00:10 -------- d-----w- c:\program files\Vistumbler
2011-03-18 15:24:25 -------- d-----w- c:\users\gljubic\appdata\local\MetaGeek,_LLC
2011-03-18 15:09:02 -------- d-----w- c:\program files\MetaGeek
2011-03-17 13:54:14 90624 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\HPZPPWN7.DLL
.
==================== Find3M ====================
.
2011-03-12 09:51:02 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-02-19 06:30:54 805376 ----a-w- c:\windows\system32\FntCache.dll
2011-02-19 06:30:51 1076736 ----a-w- c:\windows\system32\DWrite.dll
2011-02-19 06:30:50 739840 ----a-w- c:\windows\system32\d2d1.dll
2011-02-17 17:06:08 135472 ----a-w- c:\windows\system32\VBoxNetFltNotify.dll
.
============= FINISH: 12:46:02,77 ===============


pokusao sam da startujem rootrepeal ali mi prijavljuje gresku, takodje to sam pokusao i iz compatibility moda ali isto
https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

Dopuna: 16 Apr 2011 13:56

sada mi kao default stranicu ie9 pokazuje adresu cenzura

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Pozdrav.

Moraces da deinstaliras AVG. Zatim pokreni ovaj alat koji ce ukloniti ostatke antivrusa http://www.avg.com/ww-en/download-tools



Preuzmi sUBs-ov ComboFix sa sledeće adrese na Desktop:


Bleeping Computer
Klikni desnim tasterom na link i odaberi opciju Save Target As... (Save Link As..., Save Linked Content As... ili sličnu);
Kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati file, odaberi Desktop i klikni Save.




Kada preuzimanje programa bude završeno:
deaktiviraj zaštitni softver (uputstvo);
zatvori pokrenute programe;
dvoklikom pokreni program ComboFix.

U toku rada, ComboFix će:proveriti postoji li novija verzija programa:
klikni Yes ako bude ponuđeno preuzimanje iste.
prikazati DISCLAIMER OF WARRANTY ON SOFTWARE:
klikni Yes kako bi proces bio nastavljen.
ako Recovery Console nije instalirana, ponuditi instalaciju:
obavezno prihvati klikom na Yes i isprati postupak.
postaviti/dati određeni broj upita/obaveštenja:
prihvati klikom na Yes ili OK.
po potrebi, restartovati Windows (više puta);
na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.


Iskopiraj izveštaj koji je ComboFix napravio u temu na forumu:
klikni desnim tasterom miša u prozor Notepad-a i izaberi Select All;
klikni desnim tasterom miša na obeleženi tekst i izaberi Copy;
klikni desnim tasterom miša u polje za pisanje poruke i izaberi Paste.


Napomena:Izveštaj će biti sačuvan pod nazivom ComboFix.txt na sistemskoj particiji (tipična lokacija: C:\ComboFix.txt);
Ukoliko nakon slanja poruke primetiš da izveštaj nije kompletan, iskoristi opciju Prikači fajl za prilaganje file-a C:\ComboFix.txt uz poruku.

offline
  • Pridružio: 26 Jan 2006
  • Poruke: 233

combofix fajl izgleda ovako. ja sam u medjuvremenu jos jednom skenirao sa malwarebyte i superantispyware programima i cistio racunar


ComboFix 11-04-15.06 - gljubic 16.04.2011 23:48:30.1.2 - x86
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.3034.2034 [GMT 2:00]
Running from: c:\users\gljubic\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
ADS - system32: deleted 12 bytes in 1 streams.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\gljubic\Documents\BackupRegistry(20110416).reg
c:\windows\system32\Ijl11.dll
.
.
((((((((((((((((((((((((( Files Created from 2011-03-16 to 2011-04-16 )))))))))))))))))))))))))))))))
.
.
2011-04-16 21:52 . 2011-04-16 21:52 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-04-16 21:36 . 2011-04-16 21:36 -------- d-----w- c:\program files\Microsoft
2011-04-16 15:12 . 2011-04-16 15:13 -------- d-----w- c:\users\gljubic\AppData\Local\Adobe
2011-04-16 15:12 . 2011-04-16 15:12 -------- d-----w- c:\users\gljubic\AppData\Roaming\ABBYY
2011-04-16 15:05 . 2011-04-16 15:11 -------- d-----w- c:\program files\ABBYY FineReader 10
2011-04-16 15:01 . 2011-04-16 15:01 -------- d-----w- c:\program files\Common Files\ABBYY
2011-04-16 15:01 . 2011-04-16 15:02 -------- d-----w- c:\program files\ABBYY FineReader 10 CE License Manager
2011-04-16 14:56 . 2011-04-16 15:13 -------- d-----w- c:\users\gljubic\AppData\Local\ABBYY
2011-04-16 14:56 . 2011-04-16 15:05 -------- d-----w- c:\programdata\ABBYY
2011-04-16 14:56 . 2011-04-16 14:59 -------- d-----w- c:\program files\ABBYY FineReader 9.0
2011-04-16 12:07 . 2011-04-16 12:07 -------- d-----w- c:\program files\InCode Solutions
2011-04-16 12:07 . 2011-04-16 12:07 -------- d-----w- c:\users\gljubic\AppData\Roaming\SUPERAntiSpyware.com
2011-04-16 12:06 . 2011-04-16 12:07 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-04-15 21:16 . 2011-04-14 14:30 6792528 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{88B824EC-B6B4-460F-B0AE-E71646D182BF}\mpengine.dll
2011-04-15 21:16 . 2011-02-02 16:11 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-04-15 20:14 . 2011-04-15 20:14 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2011-04-15 20:08 . 2011-04-15 20:08 -------- d-----w- c:\users\gljubic\AppData\Roaming\Malwarebytes
2011-04-15 20:08 . 2011-04-15 20:08 -------- d-----w- c:\programdata\Malwarebytes
2011-04-15 20:08 . 2010-12-20 16:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-04-15 20:08 . 2011-04-15 20:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-04-15 20:08 . 2010-12-20 16:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-04-15 11:12 . 2011-04-16 14:49 -------- d-----w- c:\users\gljubic\AppData\Roaming\archsoft
2011-04-15 07:46 . 2011-04-15 07:55 -------- d-----w- C:\Output
2011-04-14 12:07 . 2011-04-14 12:07 -------- d-----w- c:\users\gljubic\AppData\Roaming\AdobeUM
2011-04-14 12:05 . 2011-04-14 12:06 -------- d-----w- c:\program files\Common Files\Adobe
2011-04-13 09:12 . 2011-02-23 04:48 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-13 09:12 . 2011-02-23 04:48 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-13 09:12 . 2011-02-23 04:47 114176 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-04-13 08:52 . 2011-03-03 05:38 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2011-04-13 08:52 . 2011-03-03 05:36 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2011-04-13 08:52 . 2011-02-19 06:30 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-04-13 08:52 . 2011-02-19 04:34 294912 ----a-w- c:\windows\system32\atmfd.dll
2011-04-13 08:49 . 2011-03-03 03:42 2333184 ----a-w- c:\windows\system32\win32k.sys
2011-04-13 08:49 . 2011-02-12 05:35 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2011-04-13 08:49 . 2011-02-24 05:38 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-04-13 08:39 . 2011-03-08 05:28 741376 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-13 08:29 . 2011-03-11 05:33 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2011-04-13 08:29 . 2011-03-11 05:33 1137664 ----a-w- c:\windows\system32\mfc42.dll
2011-04-13 08:24 . 2011-02-23 04:47 223232 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-04-13 08:24 . 2011-02-23 04:47 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-04-13 08:24 . 2011-02-23 04:47 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-04-13 08:24 . 2011-02-23 04:47 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-04-06 12:13 . 2011-01-17 05:47 161792 ----a-w- c:\windows\system32\d3d10_1.dll
2011-04-06 10:30 . 2003-06-18 15:31 16384 ----a-w- c:\windows\system32\MSPGIMME.DLL
2011-04-06 10:30 . 2003-06-18 15:31 443904 ----a-w- c:\windows\system32\MDIVWCTL.DLL
2011-04-06 10:30 . 2003-06-18 15:31 1033216 ----a-w- c:\windows\system32\MSPCORE.DLL
2011-04-05 14:05 . 2011-04-05 14:07 -------- d-----w- c:\users\gljubic\AppData\Roaming\Colasoft Packet Builder
2011-04-04 13:52 . 2011-04-04 14:29 -------- d-----w- c:\users\gljubic\AppData\Roaming\Colasoft MAC Scanner
2011-04-04 13:52 . 2011-04-04 13:52 -------- d-----w- c:\program files\Common Files\Colasoft Shared
2011-04-04 13:52 . 2011-04-04 13:55 -------- d-----w- c:\programdata\Colasoft Capsa 7 Enterprise
2011-04-04 13:52 . 2011-04-04 13:52 -------- d-----w- c:\users\gljubic\AppData\Roaming\Colasoft Capsa 7 Enterprise
2011-04-04 13:52 . 2010-05-20 13:14 28184 ----a-w- c:\windows\system32\drivers\CSN5PDTS82.sys
2011-04-04 13:51 . 2011-04-15 10:29 -------- d-----w- c:\program files\Colasoft Capsa 7 Enterprise Edition
2011-03-31 08:55 . 2011-03-31 08:55 -------- d-----w- c:\program files\DellTPad
2011-03-31 08:55 . 2010-05-31 19:37 114616 ----a-w- c:\windows\system32\Vxdif.dll
2011-03-31 08:55 . 2009-07-14 10:27 1461992 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll
2011-03-31 08:55 . 2010-06-21 19:59 255096 ----a-w- c:\windows\system32\drivers\Apfiltr.sys
2011-03-31 07:18 . 2011-03-31 07:18 -------- d-----w- c:\users\gljubic\AppData\Roaming\YCanPDF
2011-03-31 07:17 . 2011-03-31 07:17 -------- d-----w- c:\windows\system32\tempdir
2011-03-31 07:16 . 2011-04-15 09:13 -------- d-----w- c:\program files\Okdo Document Converter Professional
2011-03-31 07:16 . 2011-03-31 07:17 -------- d-----w- c:\windows\system32\shellconv
2011-03-30 18:31 . 2011-03-30 18:31 -------- d-----w- c:\programdata\AVS4YOU
2011-03-30 18:31 . 2010-05-25 11:40 774144 ----a-w- c:\windows\system32\htmlayout.dll
2011-03-30 18:31 . 2011-03-30 18:31 -------- d-----w- c:\program files\Common Files\AVSMedia
2011-03-30 18:30 . 2011-03-30 18:31 -------- d-----w- c:\program files\AVS4YOU
2011-03-30 18:30 . 2010-07-21 11:32 1700352 ----a-w- c:\windows\system32\GdiPlus.dll
2011-03-30 13:59 . 2011-03-30 13:59 -------- d-----w- c:\program files\Yamicsoft
2011-03-30 13:48 . 2011-03-30 13:48 -------- d-----w- c:\programdata\RegInOut
2011-03-30 13:48 . 2011-03-30 13:48 -------- d-----w- c:\windows\RegInOut System Utilities
2011-03-29 13:49 . 2011-03-18 17:57 781272 ----a-w- c:\program files\Mozilla Firefox\mozsqlite3.dll
2011-03-29 13:49 . 2011-03-18 17:57 728024 ----a-w- c:\program files\Mozilla Firefox\libGLESv2.dll
2011-03-29 13:49 . 2011-03-18 17:57 1975768 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_42.dll
2011-03-29 13:49 . 2011-03-18 17:57 1893336 ----a-w- c:\program files\Mozilla Firefox\d3dx9_42.dll
2011-03-29 13:49 . 2011-03-18 17:57 1874904 ----a-w- c:\program files\Mozilla Firefox\mozjs.dll
2011-03-29 13:49 . 2011-03-18 17:57 15832 ----a-w- c:\program files\Mozilla Firefox\mozalloc.dll
2011-03-29 13:49 . 2011-03-18 17:57 142296 ----a-w- c:\program files\Mozilla Firefox\libEGL.dll
2011-03-29 13:49 . 2011-03-18 17:57 142296 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll
2011-03-29 11:28 . 2011-03-29 11:28 -------- d-----w- c:\users\gljubic\AppData\Local\GHISLER
2011-03-29 05:10 . 2011-03-29 05:10 -------- d-----w- c:\program files\Common Files\Java
2011-03-26 08:54 . 2011-04-15 22:56 -------- d-----w- c:\program files\JDownloader
2011-03-25 08:59 . 2011-03-25 09:00 -------- d-----w- c:\program files\Audiograbber
2011-03-24 21:52 . 2011-03-24 21:52 -------- d-----w- c:\program files\ASAP Utilities
2011-03-24 21:52 . 2011-03-24 21:52 -------- d-----w- c:\users\gljubic\AppData\Roaming\ASAP Utilities
2011-03-23 21:57 . 2011-03-30 14:06 -------- d-----w- c:\program files\CommViewWiFi
2011-03-23 13:34 . 2011-03-23 13:34 -------- d-----w- c:\program files\Network Stumbler
2011-03-23 12:25 . 2011-03-26 20:32 -------- d-----w- c:\program files\Cain
2011-03-22 21:50 . 2005-09-19 08:11 -------- d-----w- c:\users\gljubic\.terminfo
2011-03-22 20:14 . 2011-03-23 21:57 -------- d-----w- c:\programdata\TamoSoft
2011-03-22 11:29 . 2011-03-22 18:19 -------- d-----w- c:\users\gljubic\VirtualBox VMs
2011-03-22 09:41 . 2011-03-22 09:41 -------- d-----w- c:\users\gljubic\AppData\Roaming\Nero
2011-03-22 09:40 . 2006-03-17 13:49 368640 ----a-w- c:\windows\system32\TwnLib4.dll
2011-03-22 09:40 . 2006-03-17 10:45 802816 ----a-w- c:\windows\system32\imagXRA7.dll
2011-03-22 09:40 . 2011-03-22 09:40 -------- d-----w- c:\program files\Nero
2011-03-22 09:40 . 2011-03-22 09:40 -------- d-----w- c:\programdata\Nero
2011-03-22 09:40 . 2006-03-17 10:45 497296 ----a-w- c:\windows\system32\imagXpr7.dll
2011-03-22 09:40 . 2006-03-17 10:45 258048 ----a-w- c:\windows\system32\imagXR7.dll
2011-03-22 09:40 . 2006-03-17 10:45 1757184 ----a-w- c:\windows\system32\imagX7.dll
2011-03-22 09:40 . 2011-03-22 09:40 -------- d-----w- c:\program files\Common Files\Nero
2011-03-21 21:46 . 2011-03-21 21:46 -------- d-----w- c:\program files\CACE Technologies
2011-03-21 20:25 . 2011-03-24 07:49 -------- d-----w- c:\users\gljubic\AppData\Roaming\Wireshark
2011-03-21 19:54 . 2011-03-23 12:25 -------- d-----w- c:\program files\WinPcap
2011-03-21 19:53 . 2011-03-21 19:54 -------- d-----w- c:\program files\Wireshark
2011-03-21 19:04 . 2011-04-03 17:23 -------- d-----w- c:\users\gljubic\AppData\Local\Microsoft Games
2011-03-21 19:03 . 2011-04-03 17:08 -------- d-----w- c:\program files\Microsoft Games
2011-03-18 20:00 . 2011-03-22 21:33 -------- d-----w- c:\program files\Vistumbler
2011-03-18 15:24 . 2011-03-18 15:24 -------- d-----w- c:\users\gljubic\AppData\Local\MetaGeek,_LLC
2011-03-18 15:09 . 2011-03-18 15:09 -------- d-----w- c:\program files\MetaGeek
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-03-15 21:51 . 2011-03-15 21:51 74752 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-03-15 21:51 . 2011-03-15 21:51 161792 ----a-w- c:\windows\system32\msls31.dll
2011-03-15 21:51 . 2011-03-15 21:51 1126912 ----a-w- c:\windows\system32\wininet.dll
2011-03-15 21:51 . 2011-03-15 21:51 86528 ----a-w- c:\windows\system32\iesysprep.dll
2011-03-15 21:51 . 2011-03-15 21:51 76800 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-03-15 21:51 . 2011-03-15 21:51 74752 ----a-w- c:\windows\system32\iesetup.dll
2011-03-15 21:51 . 2011-03-15 21:51 63488 ----a-w- c:\windows\system32\tdc.ocx
2011-03-15 21:51 . 2011-03-15 21:51 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-03-15 21:51 . 2011-03-15 21:51 367104 ----a-w- c:\windows\system32\html.iec
2011-03-15 21:51 . 2011-03-15 21:51 1427456 ----a-w- c:\windows\system32\inetcpl.cpl
2011-03-15 21:51 . 2011-03-15 21:51 110592 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-03-15 21:51 . 2011-03-15 21:51 420864 ----a-w- c:\windows\system32\vbscript.dll
2011-03-15 21:51 . 2011-03-15 21:51 35840 ----a-w- c:\windows\system32\imgutil.dll
2011-03-15 21:51 . 2011-03-15 21:51 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2011-03-15 21:51 . 2011-03-15 21:51 23552 ----a-w- c:\windows\system32\licmgr10.dll
2011-03-15 21:51 . 2011-03-15 21:51 1797632 ----a-w- c:\windows\system32\jscript9.dll
2011-03-15 21:51 . 2011-03-15 21:51 152064 ----a-w- c:\windows\system32\wextract.exe
2011-03-15 21:51 . 2011-03-15 21:51 150528 ----a-w- c:\windows\system32\iexpress.exe
2011-03-15 21:51 . 2011-03-15 21:51 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2011-03-15 21:51 . 2011-03-15 21:51 11776 ----a-w- c:\windows\system32\mshta.exe
2011-03-15 21:51 . 2011-03-15 21:51 101888 ----a-w- c:\windows\system32\admparse.dll
2011-03-12 09:51 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-02-19 06:30 . 2011-03-13 07:33 805376 ----a-w- c:\windows\system32\FntCache.dll
2011-02-19 06:30 . 2011-03-13 07:33 1076736 ----a-w- c:\windows\system32\DWrite.dll
2011-02-19 06:30 . 2011-03-13 07:33 739840 ----a-w- c:\windows\system32\d2d1.dll
2011-02-17 17:06 . 2011-03-15 19:28 160560 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
2011-02-17 17:06 . 2011-03-15 19:27 44784 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
2011-02-17 17:06 . 2011-02-17 17:06 122032 ----a-w- c:\windows\system32\drivers\VBoxNetFlt.sys
2011-02-17 17:06 . 2011-02-17 17:06 111152 ----a-w- c:\windows\system32\drivers\VBoxNetAdp.sys
2011-02-17 17:06 . 2011-02-17 17:06 135472 ----a-w- c:\windows\system32\VBoxNetFltNotify.dll
2011-02-03 05:54 . 2011-03-12 10:05 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2011-03-18 17:57 . 2011-03-29 13:49 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-03-16 2423752]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-08-25 136216]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-08-25 171032]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-08-25 170520]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]
"Apoint"="c:\program files\DellTPad\Apoint.exe" [2010-06-04 292208]
"Malwarebytes' Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-12-20 963976]
"Bonus.SSR.FR10"="c:\program files\ABBYY FineReader 10\Bonus.ScreenshotReader.exe" [2009-12-20 941320]
.
c:\users\gljubic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
MagicDisc.lnk - c:\program files\MagicDisc\MagicDisc.exe [2011-3-12 576000]
OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2009-2-26 97680]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Acrobat Assistant.lnk]
backup=c:\windows\pss\Acrobat Assistant.lnk.CommonStartup
backupExtension=.CommonStartup
.
R1 CSN5PDTS82x64;CSN5PDTS82x64 NDIS Protocol Driver;c:\windows\system32\Drivers\CSN5PDTS82x64.sys [x]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S1 CSN5PDTS82;CSN5PDTS82 NDIS Protocol Driver;c:\windows\system32\Drivers\CSN5PDTS82.sys [2010-05-20 28184]
S2 ABBYY.Licensing.FineReader.Corporate.10.0;ABBYY FineReader 10 CE Licensing Service;c:\program files\Common Files\ABBYY\FineReader\10.00\Licensing\CE\NetworkLicenseServer.exe [2009-12-19 814344]
S2 ABBYY.Licensing.FineReader.Professional.9.0;ABBYY FineReader 9.0 Licensing Service;c:\program files\ABBYY FineReader 9.0\NetworkLicenseServer.exe [2007-09-24 566560]
S2 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2010-06-25 35088]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [2010-06-25 68208]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
.
Contents of the 'Scheduled Tasks' folder
.
2011-04-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2789972473-3263655161-3589041902-1000Core.job
- c:\users\gljubic\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-13 07:54]
.
2011-04-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2789972473-3263655161-3589041902-1000UA.job
- c:\users\gljubic\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-13 07:54]
.
2011-04-16 c:\windows\Tasks\User_Feed_Synchronization-{357F06DA-5878-4163-AA15-C55CAC2BA325}.job
- c:\windows\system32\msfeedssync.exe [2011-03-15 21:51]
.
.
------- Supplementary Scan -------
.
uStart Page = www.google.com
FF - ProfilePath - c:\users\gljubic\AppData\Roaming\Mozilla\Firefox\Profiles\11tnu0zv.default\
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
FF - prefs.js: browser.startup.homepage - hxxp://www.smaxi.net
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-Locked - (no file)
MSConfigStartUp-AVG_TRAY - c:\program files\AVG\AVG10\avgtray.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2011-04-16 23:54:19
ComboFix-quarantined-files.txt 2011-04-16 21:54
.
Pre-Run: 168.536.977.408 bytes free
Post-Run: 168.436.129.792 bytes free
.
- - End Of File - - 4A89F1EB1BD5DA0833B777FAB010E59C






https://www.mycity.rs/must-login.png

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Otvoriti Notepad i iskopirati sledeci tekst:

Firefox::
FF - ProfilePath - c:\users\gljubic\AppData\Roaming\Mozilla\Firefox\Profiles\11tnu0zv.default\
FF - prefs.js: browser.search.selectedEngine - AVG Secure Search
FF - prefs.js: browser.startup.homepage - hxxp://www.smaxi.net

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)


Snimiti na Desktop fajl iz Notepada kao "CFScript"




Prevuci snimljeni skript/tekst na ComboFix ikonicu kao na slici.
Postaviti u sledecoj poruci log koji bude bio napravljen na kraju ciscenja/skeniranja.

Imas li i dalje problem sa gadget -ima

offline
  • Pridružio: 26 Jan 2006
  • Poruke: 233

log combofixa je
Citat:ComboFix 11-04-16.01 - gljubic 17.04.2011 9:56.2.2 - x86
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.3034.2266 [GMT 2:00]
Running from: c:\users\gljubic\Desktop\ComboFix.exe
Command switches used :: c:\users\gljubic\Desktop\CFScript.txt
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((( Files Created from 2011-03-17 to 2011-04-17 )))))))))))))))))))))))))))))))
.
.
2011-04-17 08:00 . 2011-04-17 08:00 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-04-16 21:36 . 2011-04-16 21:36 -------- d-----w- c:\program files\Microsoft
2011-04-16 15:12 . 2011-04-16 15:13 -------- d-----w- c:\users\gljubic\AppData\Local\Adobe
2011-04-16 15:12 . 2011-04-16 15:12 -------- d-----w- c:\users\gljubic\AppData\Roaming\ABBYY
2011-04-16 15:05 . 2011-04-16 15:11 -------- d-----w- c:\program files\ABBYY FineReader 10
2011-04-16 15:01 . 2011-04-16 15:01 -------- d-----w- c:\program files\Common Files\ABBYY
2011-04-16 15:01 . 2011-04-16 15:02 -------- d-----w- c:\program files\ABBYY FineReader 10 CE License Manager
2011-04-16 14:56 . 2011-04-16 15:13 -------- d-----w- c:\users\gljubic\AppData\Local\ABBYY
2011-04-16 14:56 . 2011-04-16 15:05 -------- d-----w- c:\programdata\ABBYY
2011-04-16 14:56 . 2011-04-16 14:59 -------- d-----w- c:\program files\ABBYY FineReader 9.0
2011-04-16 12:07 . 2011-04-16 12:07 -------- d-----w- c:\program files\InCode Solutions
2011-04-16 12:07 . 2011-04-16 12:07 -------- d-----w- c:\users\gljubic\AppData\Roaming\SUPERAntiSpyware.com
2011-04-16 12:06 . 2011-04-16 12:07 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-04-15 21:16 . 2011-04-14 14:30 6792528 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{88B824EC-B6B4-460F-B0AE-E71646D182BF}\mpengine.dll
2011-04-15 21:16 . 2011-02-02 16:11 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-04-15 20:14 . 2011-04-15 20:14 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2011-04-15 20:08 . 2011-04-15 20:08 -------- d-----w- c:\users\gljubic\AppData\Roaming\Malwarebytes
2011-04-15 20:08 . 2011-04-15 20:08 -------- d-----w- c:\programdata\Malwarebytes
2011-04-15 20:08 . 2010-12-20 16:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-04-15 20:08 . 2011-04-15 20:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-04-15 20:08 . 2010-12-20 16:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-04-15 11:12 . 2011-04-16 14:49 -------- d-----w- c:\users\gljubic\AppData\Roaming\archsoft
2011-04-15 07:46 . 2011-04-15 07:55 -------- d-----w- C:\Output
2011-04-14 12:07 . 2011-04-14 12:07 -------- d-----w- c:\users\gljubic\AppData\Roaming\AdobeUM
2011-04-14 12:05 . 2011-04-14 12:06 -------- d-----w- c:\program files\Common Files\Adobe
2011-04-13 09:12 . 2011-02-23 04:48 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-13 09:12 . 2011-02-23 04:48 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-13 09:12 . 2011-02-23 04:47 114176 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-04-13 08:52 . 2011-03-03 05:38 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2011-04-13 08:52 . 2011-03-03 05:36 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2011-04-13 08:52 . 2011-02-19 06:30 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-04-13 08:52 . 2011-02-19 04:34 294912 ----a-w- c:\windows\system32\atmfd.dll
2011-04-13 08:49 . 2011-03-03 03:42 2333184 ----a-w- c:\windows\system32\win32k.sys
2011-04-13 08:49 . 2011-02-12 05:35 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2011-04-13 08:49 . 2011-02-24 05:38 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-04-13 08:39 . 2011-03-08 05:28 741376 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-13 08:29 . 2011-03-11 05:33 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2011-04-13 08:29 . 2011-03-11 05:33 1137664 ----a-w- c:\windows\system32\mfc42.dll
2011-04-13 08:24 . 2011-02-23 04:47 223232 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-04-13 08:24 . 2011-02-23 04:47 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-04-13 08:24 . 2011-02-23 04:47 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-04-13 08:24 . 2011-02-23 04:47 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-04-06 12:13 . 2011-01-17 05:47 161792 ----a-w- c:\windows\system32\d3d10_1.dll
2011-04-06 10:30 . 2003-06-18 15:31 16384 ----a-w- c:\windows\system32\MSPGIMME.DLL
2011-04-06 10:30 . 2003-06-18 15:31 443904 ----a-w- c:\windows\system32\MDIVWCTL.DLL
2011-04-06 10:30 . 2003-06-18 15:31 1033216 ----a-w- c:\windows\system32\MSPCORE.DLL
2011-04-05 14:05 . 2011-04-05 14:07 -------- d-----w- c:\users\gljubic\AppData\Roaming\Colasoft Packet Builder
2011-04-04 13:52 . 2011-04-04 14:29 -------- d-----w- c:\users\gljubic\AppData\Roaming\Colasoft MAC Scanner
2011-04-04 13:52 . 2011-04-04 13:52 -------- d-----w- c:\program files\Common Files\Colasoft Shared
2011-04-04 13:52 . 2011-04-04 13:55 -------- d-----w- c:\programdata\Colasoft Capsa 7 Enterprise
2011-04-04 13:52 . 2011-04-04 13:52 -------- d-----w- c:\users\gljubic\AppData\Roaming\Colasoft Capsa 7 Enterprise
2011-04-04 13:52 . 2010-05-20 13:14 28184 ----a-w- c:\windows\system32\drivers\CSN5PDTS82.sys
2011-04-04 13:51 . 2011-04-15 10:29 -------- d-----w- c:\program files\Colasoft Capsa 7 Enterprise Edition
2011-03-31 08:55 . 2011-03-31 08:55 -------- d-----w- c:\program files\DellTPad
2011-03-31 08:55 . 2010-05-31 19:37 114616 ----a-w- c:\windows\system32\Vxdif.dll
2011-03-31 08:55 . 2009-07-14 10:27 1461992 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll
2011-03-31 08:55 . 2010-06-21 19:59 255096 ----a-w- c:\windows\system32\drivers\Apfiltr.sys
2011-03-31 07:18 . 2011-03-31 07:18 -------- d-----w- c:\users\gljubic\AppData\Roaming\YCanPDF
2011-03-31 07:17 . 2011-03-31 07:17 -------- d-----w- c:\windows\system32\tempdir
2011-03-31 07:16 . 2011-04-15 09:13 -------- d-----w- c:\program files\Okdo Document Converter Professional
2011-03-31 07:16 . 2011-03-31 07:17 -------- d-----w- c:\windows\system32\shellconv
2011-03-30 18:31 . 2011-03-30 18:31 -------- d-----w- c:\programdata\AVS4YOU
2011-03-30 18:31 . 2010-05-25 11:40 774144 ----a-w- c:\windows\system32\htmlayout.dll
2011-03-30 18:31 . 2011-03-30 18:31 -------- d-----w- c:\program files\Common Files\AVSMedia
2011-03-30 18:30 . 2011-03-30 18:31 -------- d-----w- c:\program files\AVS4YOU
2011-03-30 18:30 . 2010-07-21 11:32 1700352 ----a-w- c:\windows\system32\GdiPlus.dll
2011-03-30 13:59 . 2011-03-30 13:59 -------- d-----w- c:\program files\Yamicsoft
2011-03-30 13:48 . 2011-03-30 13:48 -------- d-----w- c:\programdata\RegInOut
2011-03-30 13:48 . 2011-03-30 13:48 -------- d-----w- c:\windows\RegInOut System Utilities
2011-03-29 13:49 . 2011-03-18 17:57 781272 ----a-w- c:\program files\Mozilla Firefox\mozsqlite3.dll
2011-03-29 13:49 . 2011-03-18 17:57 728024 ----a-w- c:\program files\Mozilla Firefox\libGLESv2.dll
2011-03-29 13:49 . 2011-03-18 17:57 1975768 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_42.dll
2011-03-29 13:49 . 2011-03-18 17:57 1893336 ----a-w- c:\program files\Mozilla Firefox\d3dx9_42.dll
2011-03-29 13:49 . 2011-03-18 17:57 1874904 ----a-w- c:\program files\Mozilla Firefox\mozjs.dll
2011-03-29 13:49 . 2011-03-18 17:57 15832 ----a-w- c:\program files\Mozilla Firefox\mozalloc.dll
2011-03-29 13:49 . 2011-03-18 17:57 142296 ----a-w- c:\program files\Mozilla Firefox\libEGL.dll
2011-03-29 13:49 . 2011-03-18 17:57 142296 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll
2011-03-29 11:28 . 2011-03-29 11:28 -------- d-----w- c:\users\gljubic\AppData\Local\GHISLER
2011-03-29 05:10 . 2011-03-29 05:10 -------- d-----w- c:\program files\Common Files\Java
2011-03-26 08:54 . 2011-04-15 22:56 -------- d-----w- c:\program files\JDownloader
2011-03-25 08:59 . 2011-03-25 09:00 -------- d-----w- c:\program files\Audiograbber
2011-03-24 21:52 . 2011-03-24 21:52 -------- d-----w- c:\program files\ASAP Utilities
2011-03-24 21:52 . 2011-03-24 21:52 -------- d-----w- c:\users\gljubic\AppData\Roaming\ASAP Utilities
2011-03-23 21:57 . 2011-03-30 14:06 -------- d-----w- c:\program files\CommViewWiFi
2011-03-23 13:34 . 2011-03-23 13:34 -------- d-----w- c:\program files\Network Stumbler
2011-03-23 12:25 . 2011-03-26 20:32 -------- d-----w- c:\program files\Cain
2011-03-22 21:50 . 2005-09-19 08:11 -------- d-----w- c:\users\gljubic\.terminfo
2011-03-22 20:14 . 2011-03-23 21:57 -------- d-----w- c:\programdata\TamoSoft
2011-03-22 11:29 . 2011-03-22 18:19 -------- d-----w- c:\users\gljubic\VirtualBox VMs
2011-03-22 09:41 . 2011-03-22 09:41 -------- d-----w- c:\users\gljubic\AppData\Roaming\Nero
2011-03-22 09:40 . 2006-03-17 13:49 368640 ----a-w- c:\windows\system32\TwnLib4.dll
2011-03-22 09:40 . 2006-03-17 10:45 802816 ----a-w- c:\windows\system32\imagXRA7.dll
2011-03-22 09:40 . 2011-03-22 09:40 -------- d-----w- c:\program files\Nero
2011-03-22 09:40 . 2011-03-22 09:40 -------- d-----w- c:\programdata\Nero
2011-03-22 09:40 . 2006-03-17 10:45 497296 ----a-w- c:\windows\system32\imagXpr7.dll
2011-03-22 09:40 . 2006-03-17 10:45 258048 ----a-w- c:\windows\system32\imagXR7.dll
2011-03-22 09:40 . 2006-03-17 10:45 1757184 ----a-w- c:\windows\system32\imagX7.dll
2011-03-22 09:40 . 2011-03-22 09:40 -------- d-----w- c:\program files\Common Files\Nero
2011-03-21 21:46 . 2011-03-21 21:46 -------- d-----w- c:\program files\CACE Technologies
2011-03-21 20:25 . 2011-03-24 07:49 -------- d-----w- c:\users\gljubic\AppData\Roaming\Wireshark
2011-03-21 19:54 . 2011-03-23 12:25 -------- d-----w- c:\program files\WinPcap
2011-03-21 19:53 . 2011-03-21 19:54 -------- d-----w- c:\program files\Wireshark
2011-03-21 19:04 . 2011-04-03 17:23 -------- d-----w- c:\users\gljubic\AppData\Local\Microsoft Games
2011-03-21 19:03 . 2011-04-03 17:08 -------- d-----w- c:\program files\Microsoft Games
2011-03-18 20:00 . 2011-03-22 21:33 -------- d-----w- c:\program files\Vistumbler
2011-03-18 15:24 . 2011-03-18 15:24 -------- d-----w- c:\users\gljubic\AppData\Local\MetaGeek,_LLC
2011-03-18 15:09 . 2011-03-18 15:09 -------- d-----w- c:\program files\MetaGeek
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-03-15 21:51 . 2011-03-15 21:51 74752 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2011-03-15 21:51 . 2011-03-15 21:51 161792 ----a-w- c:\windows\system32\msls31.dll
2011-03-15 21:51 . 2011-03-15 21:51 1126912 ----a-w- c:\windows\system32\wininet.dll
2011-03-15 21:51 . 2011-03-15 21:51 86528 ----a-w- c:\windows\system32\iesysprep.dll
2011-03-15 21:51 . 2011-03-15 21:51 76800 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2011-03-15 21:51 . 2011-03-15 21:51 74752 ----a-w- c:\windows\system32\iesetup.dll
2011-03-15 21:51 . 2011-03-15 21:51 63488 ----a-w- c:\windows\system32\tdc.ocx
2011-03-15 21:51 . 2011-03-15 21:51 48640 ----a-w- c:\windows\system32\mshtmler.dll
2011-03-15 21:51 . 2011-03-15 21:51 367104 ----a-w- c:\windows\system32\html.iec
2011-03-15 21:51 . 2011-03-15 21:51 1427456 ----a-w- c:\windows\system32\inetcpl.cpl
2011-03-15 21:51 . 2011-03-15 21:51 110592 ----a-w- c:\windows\system32\IEAdvpack.dll
2011-03-15 21:51 . 2011-03-15 21:51 420864 ----a-w- c:\windows\system32\vbscript.dll
2011-03-15 21:51 . 2011-03-15 21:51 35840 ----a-w- c:\windows\system32\imgutil.dll
2011-03-15 21:51 . 2011-03-15 21:51 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2011-03-15 21:51 . 2011-03-15 21:51 23552 ----a-w- c:\windows\system32\licmgr10.dll
2011-03-15 21:51 . 2011-03-15 21:51 1797632 ----a-w- c:\windows\system32\jscript9.dll
2011-03-15 21:51 . 2011-03-15 21:51 152064 ----a-w- c:\windows\system32\wextract.exe
2011-03-15 21:51 . 2011-03-15 21:51 150528 ----a-w- c:\windows\system32\iexpress.exe
2011-03-15 21:51 . 2011-03-15 21:51 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2011-03-15 21:51 . 2011-03-15 21:51 11776 ----a-w- c:\windows\system32\mshta.exe
2011-03-15 21:51 . 2011-03-15 21:51 101888 ----a-w- c:\windows\system32\admparse.dll
2011-03-12 09:51 . 2009-07-14 02:05 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-02-19 06:30 . 2011-03-13 07:33 805376 ----a-w- c:\windows\system32\FntCache.dll
2011-02-19 06:30 . 2011-03-13 07:33 1076736 ----a-w- c:\windows\system32\DWrite.dll
2011-02-19 06:30 . 2011-03-13 07:33 739840 ----a-w- c:\windows\system32\d2d1.dll
2011-02-17 17:06 . 2011-03-15 19:28 160560 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
2011-02-17 17:06 . 2011-03-15 19:27 44784 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
2011-02-17 17:06 . 2011-02-17 17:06 122032 ----a-w- c:\windows\system32\drivers\VBoxNetFlt.sys
2011-02-17 17:06 . 2011-02-17 17:06 111152 ----a-w- c:\windows\system32\drivers\VBoxNetAdp.sys
2011-02-17 17:06 . 2011-02-17 17:06 135472 ----a-w- c:\windows\system32\VBoxNetFltNotify.dll
2011-02-03 05:54 . 2011-03-12 10:05 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2011-03-18 17:57 . 2011-03-29 13:49 142296 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-03-16 2423752]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-08-25 136216]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-08-25 171032]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-08-25 170520]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]
"Apoint"="c:\program files\DellTPad\Apoint.exe" [2010-06-04 292208]
"Malwarebytes' Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-12-20 963976]
"Bonus.SSR.FR10"="c:\program files\ABBYY FineReader 10\Bonus.ScreenshotReader.exe" [2009-12-20 941320]
.
c:\users\gljubic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
MagicDisc.lnk - c:\program files\MagicDisc\MagicDisc.exe [2011-3-12 576000]
OneNote 2007 Screen Clipper and Launcher.lnk - c:\program files\Microsoft Office\Office12\ONENOTEM.EXE [2009-2-26 97680]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Acrobat Assistant.lnk]
backup=c:\windows\pss\Acrobat Assistant.lnk.CommonStartup
backupExtension=.CommonStartup
.
R1 CSN5PDTS82x64;CSN5PDTS82x64 NDIS Protocol Driver;c:\windows\system32\Drivers\CSN5PDTS82x64.sys [x]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [2009-07-13 14336]
S1 CSN5PDTS82;CSN5PDTS82 NDIS Protocol Driver;c:\windows\system32\Drivers\CSN5PDTS82.sys [2010-05-20 28184]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-05-10 67656]
S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys [2011-02-17 160560]
S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys [2011-02-17 44784]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 ABBYY.Licensing.FineReader.Corporate.10.0;ABBYY FineReader 10 CE Licensing Service;c:\program files\Common Files\ABBYY\FineReader\10.00\Licensing\CE\NetworkLicenseServer.exe [2009-12-19 814344]
S2 ABBYY.Licensing.FineReader.Professional.9.0;ABBYY FineReader 9.0 Licensing Service;c:\program files\ABBYY FineReader 9.0\NetworkLicenseServer.exe [2007-09-24 566560]
S2 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2010-06-25 35088]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [2010-06-25 68208]
S3 TS_AR5416;[CommView] Atheros AR5008 Wireless Network Adapter Service 7.7;c:\windows\system32\DRIVERS\ts_athw.sys [2011-01-09 08:22 1629992]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys [2011-02-17 111152]
S3 VBoxNetFlt;VBoxNetFlt Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [2011-02-17 122032]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
.
Contents of the 'Scheduled Tasks' folder
.
2011-04-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2789972473-3263655161-3589041902-1000Core.job
- c:\users\gljubic\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-13 07:54]
.
2011-04-17 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2789972473-3263655161-3589041902-1000UA.job
- c:\users\gljubic\AppData\Local\Google\Update\GoogleUpdate.exe [2011-03-13 07:54]
.
2011-04-16 c:\windows\Tasks\User_Feed_Synchronization-{357F06DA-5878-4163-AA15-C55CAC2BA325}.job
- c:\windows\system32\msfeedssync.exe [2011-03-15 21:51]
.
.
------- Supplementary Scan -------
.
uStart Page = www.google.com
FF - ProfilePath - c:\users\gljubic\AppData\Roaming\Mozilla\Firefox\Profiles\11tnu0zv.default\
.
.
Completion time: 2011-04-17 10:01:50
ComboFix-quarantined-files.txt 2011-04-17 08:01
ComboFix2.txt 2011-04-16 21:54
.
Pre-Run: 168.485.920.768 bytes free
Post-Run: 168.437.641.216 bytes free
.
- - End Of File - - 33A7E674F52354C84A4018EBFC5C9D2E

gadzeti mi se vise ne gube bar za sada

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Napisano: 17 Apr 2011 10:07

Dobro, ja i ti smo ovde zavrsili, ako budes imao probleme sa gadget-ima obrati se u Windows forumu

Potrebno je deinstalirati ComboFix:
klikni start (ili ), a zatim RUN.

Na Visti koristiti Start Search polje ukoliko Run nije dostupan.

U liniju za unos teksta ukucaj (iskopiraj) sledeće:

ComboFix /Uninstall

Primeti da postoji razmak između "ComboFix" i "/Uninstall".



a zatim klikni OK (ili pritisni Enter).


Sačekaj da se proces deinstalacije završi.

Dopuna: 17 Apr 2011 10:10

Ne zaboravi da instaliras antivirus Smile

Ko je trenutno na forumu
 

Ukupno su 352 korisnika na forumu :: 7 registrovanih, 0 sakrivenih i 345 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 9k38, Istman, mean_machine, nenad81, procesor, SlaKoj, voja64