spor racunar

1

spor racunar

offline
  • Pridružio: 27 Sep 2013
  • Poruke: 94

pre oko dva meseca sam se javio sa istim problemom a to je jako sporo otvaranje fajlova pogotovu pretrazivaca i tada ste mi pomogli i sve je bilo ok do pre par dana kada je ponovo poceo da bude spor i da koci pa se bojim da opet nije u pitanju neki virus.Pomoc?

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6103

Pozdrav,

Isprati top temu u Ambulanti i isprati Korak1 i Korak2.
http://www.mycity.rs/Ambulanta/Kako-otvoriti-temu-u-Ambulanti.html

Korak1 - opisi problem (delimicno ispunjen)
Korak2 - postavi DDS izvestaje


I neko od clanova AMF Tima ce na osnovu postavljenih logova imati uvid i odliciti dalje korake.

offline
  • Pridružio: 27 Sep 2013
  • Poruke: 94

Citiraj
pre oko dva meseca sam se javio sa istim problemom a to je jako sporo otvaranje fajlova pogotovu pretrazivaca i tada ste mi pomogli i sve je bilo ok do pre par dana kada je ponovo poceo da bude spor i da koci pa se bojim da opet nije u pitanju neki virus.Pomoc?
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.45.2
Run by digital at 14:26:50 on 2013-11-26
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1022.224 [GMT 1:00]
.
AV: AVG AntiVirus Free Edition 2014 *Disabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Firewall *Disabled*
.
============== Running Processes ================
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\TP-LINK\TP-LINK 54M Wireless Client Utility\TWCU.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe
C:\Program Files\Cyberlink\Shared Files\brs.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Documents and Settings\digital\Application Data\SkypEmoticons\se.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://start.gamehitzone.com/?utm_source=NightStreetRacing&utm_medium=start
uSearch Bar = hxxp://www.google.com
uSearch Page = hxxp://www.google.com
uInternet Connection Wizard,ShellNext = iexplore
uSearchAssistant = hxxp://www.google.com
mSearchAssistant = hxxp://www.google.com
mCustomizeSearch = hxxp://www.google.com
BHO: FastestTube: {3E532CE8-C6D9-4A10-8ACE-4348C96E8B6A} - c:\program files\fastesttube\2.1.9\WombatBHO.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: ividi Helper Object: {8B8B2E80-1444-451D-AC8E-EB9A847F3887} - c:\program files\unitech llc\ividi\1.8.23.0\bh\ividi.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [Skype] "c:\program files\skype\\phone\Skype.exe" /nosplash /minimized
uRun: [se] "c:\documents and settings\digital\application data\skypemoticons\se.exe" /minimized
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
mRun: [TWCU] "c:\program files\tp-link\tp-link 54m wireless client utility\TWCU.exe" -nogui
mRun: [AVG_UI] "c:\program files\avg\avg2014\avgui.exe" /TRAYONLY
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [RemoteControl9] "c:\program files\cyberlink\powerdvd9\PDVD9Serv.exe"
mRun: [PDVD9LanguageShortcut] "c:\program files\cyberlink\powerdvd9\language\Language.exe"
mRun: [BDRegion] c:\program files\cyberlink\shared files\brs.exe
mRun: [Apoint] c:\program files\apoint2k\Apoint.exe
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} -
TCP: NameServer = 10.0.0.1 87.250.98.250 87.250.97.250
TCP: Interfaces\{05F2CDEC-E13B-4347-9AC3-5465F5FCC2C3} : DHCPNameServer = 10.0.0.1 87.250.98.250 87.250.97.250
TCP: Interfaces\{9367FD5D-2693-4233-A7CC-895777A2D734} : NameServer = 91.191.59.118 87.250.98.250
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: AtiExtEvent - Ati2evxx.dll
LSA: Authentication Packages = msv1_0 nwprovau
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\31.0.1650.57\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\digital\application data\mozilla\firefox\profiles\g2zdq4un.default-1366142093421\
FF - prefs.js: browser.startup.homepage - hxxp://search.ividi.org/?src=tbhp&id=0812170600000000000054e6fcdab77c&affilt=3
FF - prefs.js: keyword.URL - hxxp://search.ividi.org/?src=tbsp&id=0812170600000000000054e6fcdab77c&affilt=3&q=
FF - plugin: c:\documents and settings\digital\local settings\application data\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\games\greenwebplayer\npgreenwebplayer.dll
FF - plugin: c:\program files\google\update\1.3.21.165\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\dtplugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\windows\system32\adobe\director\np32dsw_1205146.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_8_800_168.dll
FF - ExtSQL: 2013-10-26 22:49; u0seae45k@mkcjrftiya.net; c:\documents and settings\digital\application data\mozilla\firefox\profiles\g2zdq4un.default-1366142093421\extensions\u0seae45k@mkcjrftiya.net
FF - ExtSQL: 2013-10-26 22:49; aaaeuoe@uoeypl.co.uk; c:\documents and settings\digital\application data\mozilla\firefox\profiles\g2zdq4un.default-1366142093421\extensions\aaaeuoe@uoeypl.co.uk
.
---- FIREFOX POLICIES ----
FF - user.js: extensions.ividi.hpOld0 -
FF - user.js: extensions.ividi.tlbrSrchUrl - hxxp://search.ividi.org/?src=tbsp&id=0812170600000000000054e6fcdab77c&affilt=3&q=
FF - user.js: extensions.ividi.id - 0812170600000000000054e6fcdab77c
FF - user.js: extensions.ividi.appId - {685F23D9-FCFD-475C-B56A-362645945C5A}
FF - user.js: extensions.ividi.instlDay - 15977
FF - user.js: extensions.ividi.vrsn - 1.8.23.0
FF - user.js: extensions.ividi.vrsni - 1.8.23.0
FF - user.js: extensions.ividi.vrsnTs - 1.8.23.010:06:15
FF - user.js: extensions.ividi.prtnrId - ividi
FF - user.js: extensions.ividi.prdct - ividi
FF - user.js: extensions.ividi.aflt - 3
FF - user.js: extensions.ividi.smplGrp - none
FF - user.js: extensions.ividi.tlbrId - base
FF - user.js: extensions.ividi.instlRef -
FF - user.js: extensions.ividi.dfltLng -
FF - user.js: extensions.ividi.excTlbr - true
FF - user.js: extensions.ividi.ffxUnstlRst - false
FF - user.js: extensions.ividi.admin - false
FF - user.js: extensions.ividi.autoRvrt - false
FF - user.js: extensions.ividi.rvrt - false
FF - user.js: extensions.ividi.hmpg - true
FF - user.js: extensions.ividi.hmpgUrl - hxxp://search.ividi.org/?src=tbhp&id=0812170600000000000054e6fcdab77c&affilt=3
FF - user.js: extensions.ividi.dfltSrch - true
FF - user.js: extensions.ividi.srchPrvdr - Search
FF - user.js: extensions.ividi.kw_url - hxxp://search.ividi.org/?src=tbsp&id=0812170600000000000054e6fcdab77c&affilt=3&q=
FF - user.js: extensions.ividi.dnsErr - true
FF - user.js: extensions.ividi.newTab - true
FF - user.js: extensions.ividi.newTabUrl - hxxp://search.ividi.org/?q={searchTerms}&src=tbnt&id=0812170600000000000054e6fcdab77c&affilt=3
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2013-7-20 147768]
R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2013-7-20 222520]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2013-7-10 27448]
R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2013-7-20 209176]
R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2013-3-1 22840]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2013-7-20 176952]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2013-3-21 193848]
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-9-2 37664]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2012/02/09 12:22:29];c:\program files\cyberlink\powerdvd9\000.fcl [2009-5-7 87536]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2014\avgidsagent.exe [2013-11-11 3478544]
R2 avgwd;AVG WatchDog;c:\program files\avg\avg2014\avgwdsvc.exe [2013-9-24 348008]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\tuneup utilities 2014\TuneUpUtilitiesService32.exe [2013-8-29 1740600]
R3 cmudax;C-Media High Definition Audio Interface;c:\windows\system32\drivers\cmudax.sys [2012-2-9 1287296]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\tuneup utilities 2014\TuneUpUtilitiesDriver32.sys [2013-8-21 12320]
S?0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2013-7-1 102712]
S?1 Avgdiskx;AVG Disk Driver;c:\windows\system32\drivers\avgdiskx.sys [2013-8-1 120600]
.
=============== Created Last 30 ================
.
2013-11-23 12:48:15 36664 ----a-w- c:\windows\system32\TURegOpt.exe
2013-11-23 12:43:55 -------- d-----w- c:\documents and settings\digital\application data\PhotoScape
2013-11-23 12:40:59 -------- d-----w- c:\program files\TuneUp Utilities 2014
2013-11-23 12:39:14 -------- d-----w- c:\documents and settings\all users\application data\TuneUp Software
2013-11-23 12:37:54 -------- d-sh--w- c:\documents and settings\all users\application data\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-11-23 12:33:01 -------- d-----w- c:\program files\PhotoScape
2013-11-13 14:45:17 -------- d-----w- c:\documents and settings\digital\application data\AVG
2013-11-13 14:40:19 -------- d-----w- c:\documents and settings\all users\application data\AVG
2013-11-13 14:37:42 -------- d-sh--w- c:\documents and settings\all users\application data\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2013-11-04 15:43:20 -------- d-----w- c:\documents and settings\digital\application data\Qualys
.
==================== Find3M ====================
.
2013-11-05 20:50:48 120600 ----a-w- c:\windows\system32\drivers\avgdiskx.sys
2013-11-04 20:57:30 209176 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2013-10-31 22:00:28 176952 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2013-10-31 21:30:08 222520 ----a-w- c:\windows\system32\drivers\avglogx.sys
2013-10-24 21:28:32 147768 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2013-10-13 07:25:38 920064 ----a-w- c:\windows\system32\wininet.dll
2013-10-13 07:25:08 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-10-13 07:25:02 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2013-10-13 07:24:17 18944 ----a-w- c:\windows\system32\corpol.dll
2013-10-13 06:57:59 385024 ----a-w- c:\windows\system32\html.iec
2013-10-12 15:56:19 278528 ----a-w- c:\windows\system32\oakley.dll
2013-10-09 13:12:48 287744 ----a-w- c:\windows\system32\gdi32.dll
2013-10-08 05:50:41 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-10-08 05:29:36 145408 ----a-w- c:\windows\system32\javacpl.cpl
2013-10-07 10:59:21 603136 ----a-w- c:\windows\system32\crypt32.dll
2013-10-05 01:14:01 7168 ----a-w- c:\windows\system32\xpsp4res.dll
2013-09-16 23:57:26 22840 ----a-w- c:\windows\system32\drivers\avgidsshimx.sys
2013-09-16 13:09:46 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-09-16 13:09:46 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-09-09 23:43:20 27448 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
2013-09-04 18:50:06 37664 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-08-29 01:31:44 1878656 ----a-w- c:\windows\system32\win32k.sys
.
============= FINISH: 14:27:41,29 ===============UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 9.2.2012 22:59:14
System Uptime: 26.11.2013 12:44:20 (2 hours ago)
.
Motherboard: MICRO-STAR INTERNATIONAL CO., LTD | | MS-7187
Processor: Intel(R) Celeron(R) CPU 3.06GHz | Socket 775 | 3059/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 78 GiB total, 45,334 GiB free.
D: is FIXED (NTFS) - 155 GiB total, 146,954 GiB free.
I: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP257: 19.7.2013 16:21:59 - System Checkpoint
RP258: 25.7.2013 18:51:16 - System Checkpoint
RP259: 26.7.2013 22:19:41 - System Checkpoint
RP260: 28.7.2013 16:35:22 - System Checkpoint
RP261: 2.8.2013 20:33:22 - System Checkpoint
RP262: 6.8.2013 14:20:32 - System Checkpoint
RP263: 9.8.2013 13:34:32 - System Checkpoint
RP264: 10.8.2013 18:21:41 - System Checkpoint
RP265: 14.8.2013 14:05:10 - Software Distribution Service 3.0
RP266: 21.8.2013 16:42:22 - System Checkpoint
RP267: 26.8.2013 11:24:06 - Installed Virtua Tennis 3
RP268: 27.8.2013 21:59:23 - Removed Avira SearchFree Toolbar.
RP269: 28.8.2013 18:51:28 - Installed Virtua Tennis 3
RP270: 2.9.2013 12:13:08 - Instalirano AVG 2013
RP271: 2.9.2013 12:13:42 - Instalirano AVG 2013
RP272: 4.9.2013 21:07:52 - System Checkpoint
RP273: 5.9.2013 23:16:49 - Instalirano AVG 2014
RP274: 5.9.2013 23:20:30 - Uklonjeno AVG 2013
RP275: 5.9.2013 23:25:36 - Instalirano AVG 2014
RP276: 5.9.2013 23:32:32 - Uklonjeno AVG 2013
RP277: 8.9.2013 19:07:44 - System Checkpoint
RP278: 18.9.2013 13:47:38 - System Checkpoint
RP279: 20.9.2013 22:02:35 - Software Distribution Service 3.0
RP280: 1.1.2003 2:56:19 - System Checkpoint
RP281: 28.9.2013 13:50:44 - Removed Java 7 Update 17
RP282: 28.9.2013 13:51:52 - Installed Java 7 Update 40
RP283: 29.9.2013 20:51:50 - System Checkpoint
RP284: 30.9.2013 13:16:48 - Registry Reviver Restore Point (09/30/13)
RP285: 1.10.2013 21:40:03 - System Checkpoint
RP286: 6.10.2013 21:54:34 - System Checkpoint
RP287: 11.10.2013 23:10:10 - Software Distribution Service 3.0
RP288: 14.10.2013 15:13:54 - Installed More! 2 CD-ROM
RP289: 14.10.2013 23:31:06 - Software Distribution Service 3.0
RP290: 21.10.2013 20:06:48 - System Checkpoint
RP291: 22.10.2013 20:05:38 - Installed Java 7 Update 45
RP292: 27.10.2013 20:11:11 - System Checkpoint
RP293: 28.10.2013 18:13:07 - Installed DirectX
RP294: 30.10.2013 21:08:25 - System Checkpoint
RP295: 4.11.2013 15:02:22 - System Checkpoint
RP296: 5.11.2013 17:37:18 - System Checkpoint
RP297: 12.11.2013 19:19:14 - System Checkpoint
RP298: 13.11.2013 15:41:41 - Installed AVG PC TuneUp 2014
RP299: 13.11.2013 22:09:14 - Software Distribution Service 3.0
RP300: 14.11.2013 17:05:46 - Installed DirectX
RP301: 1.1.2003 2:42:30 - Removed AVG PC TuneUp 2014
RP302: 1.1.2003 2:44:01 - Removed AVG PC TuneUp 2014 (en-US)
.
==== Installed Programs ======================
.
7-Zip 9.15 beta
Adobe Flash Player 11 Plugin
Adobe Flash Player ActiveX
Adobe Shockwave Player 12.0
Advertising Center
AGEIA PhysX v6.10.05
AIMP2
America's Army
ATI Display Driver
AVG 2014
AVG SafeGuard toolbar
BS.Player FREE
C-Media High Definition Audio Driver
CCleaner
Cool Smiley Bar for Facebook
CyberLink PowerDVD 9
DolbyFiles
FastestTube
FastestTube-1.3.7.0
ffdshow v1.2.4422 [2012-04-09]
GameSpy Arcade
Google Chrome
Google Drive
Google Update Helper
GreenWebPlayer
Haali Media Splitter
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
ImgBurn
Infernal
Interwetten Moto Race Challenge 07
iVIDI Plugin 1.3
Java 7 Update 45
Java Auto Updater
K-Lite Codec Pack 6.1.0 (Full)
Malwarebytes Anti-Malware 1.46
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
More! 1 CD-ROM
More! 2 CD-ROM
Mozilla Firefox 22.0 (x86 sr)
Mozilla Maintenance Service
Nero 9
Nero ControlCenter
Nero InfoTool
Nero Installer
NeroBurningROM
NeroExpress
PhotoScape
Retrogamer toolbar Chrome Extension
SearchNewTab
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2861697)
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2817183)
Security Update for Windows Internet Explorer 8 (KB2829530)
Security Update for Windows Internet Explorer 8 (KB2838727)
Security Update for Windows Internet Explorer 8 (KB2847204)
Security Update for Windows Internet Explorer 8 (KB2862772)
Security Update for Windows Internet Explorer 8 (KB2870699)
Security Update for Windows Internet Explorer 8 (KB2879017)
Security Update for Windows Internet Explorer 8 (KB2888505)
Security Update for Windows Media Player (KB2803821-v2)
Security Update for Windows XP (KB2510581)
Security Update for Windows XP (KB2847311)
Security Update for Windows XP (KB2862152)
Security Update for Windows XP (KB2862330)
Security Update for Windows XP (KB2862335)
Security Update for Windows XP (KB2864063)
Security Update for Windows XP (KB2868626)
Security Update for Windows XP (KB2876217)
Security Update for Windows XP (KB2876315)
Security Update for Windows XP (KB2876331)
Security Update for Windows XP (KB2883150)
Security Update for Windows XP (KB2900986)
Security Update for Windows XP (KB975713)
Skype Toolbars
SkypEmoticons
Skype™ 4.2
Ss:Helper 1.74
swMSM
Torch
TP-LINK Wireless Client Utility
TuneUp Utilities 2014
TuneUp Utilities 2014 (en-US)
Unitech LLC toolbar
Unity Web Player
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows XP (KB951978)
Vauddix
Visual Studio 2012 x86 Redistributables
WebFldrs XP
Windows Internet Explorer 8
YTD Video Downloader 3.9.6
.
==== End Of File ===========================

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Arrow Korak 1

Preuzmi "Xplode"-ov AdwCleaner i sačuvaj ga na Desktop
Dvoklikom pokreni program.
Klikni na dugme Scan i sačekaj da se završi skeniranje.
Klikni na dugme Clean i pričekaj da program završi.
Program će zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni OK kao potvrdu.
Na sljedeća dva prozora koja se otvore (Informations i Restart required ) klikni OK

Računar će se restartovati, a potom otvoriti Notepad (C:\AdwCleaner[S0].txt) sa izvještajem.
Sačuvaj taj izvještaj na Desktop i okači ga uz poruku koristeći opciju "Prikači fajl"

Napomena: Izvještaj ce takođe biti sačuvan na C:\Adwcleaner\AdwCleaner[S0].txt



Arrow Korak 2

Preuzmite program GMER sa donjeg linka na Desktop:


GMER download
Kliknite dati link;
Kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati file, odaberite Desktop i kliknite Save.



Dvoklikom pokrenite GMER.
Sačekajte da se završi uvodno skeniranje - ukoliko se pojavi bilo kakav upit, kliknite No;

kliknite Scan i sačekajte da skeniranje bude završeno;

kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer1);

kliknite desnim tasterom u prozor programa Gmer i odaberite Options > 3rd party - kliknite Scan;

po završetku skeniranja kliknite Save ... - izveštaj sačuvajte na Desktop (pod nazivom Gmer2);

kliknite taster >>> i odaberite Autostart karticu;

po završetku kratkotrajnog skeniranja, kliknite Copy;

otvorite Notepad i u njega postavite kopirani tekst - izveštaj sačuvajte na Desktop (pod nazivom Gmer3);


Slikoviti prikaz postupka

Priložite sva tri izveštaja uz poruku korišćenjem opcije Prikači fajl.

offline
  • Pridružio: 27 Sep 2013
  • Poruke: 94

evoi izvestaja
mycity.rs/must-login.png

mycity.rs/must-login.png

mycity.rs/must-login.png

mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Preuzmi zoek.exe sa ovog ili ovog linka i sačuvaj ga na Desktop.


Zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;
dvoklikom pokreni zoek.exe;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sljedeći tekst:

procces;
startupall;
skipfix-iedefaults;
firefoxlook;
chromelook;
filesrcm;


Klikni na dugme i pričekaj da se skeniranje završi.


Zoek će po potrebi restartovati Windows, a na kraju rada otvoriti Notepad sa izvještajem o skeniranju.

Napomena: Izvještaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadržaj tog loga u poruku.

offline
  • Pridružio: 27 Sep 2013
  • Poruke: 94

izvestaj zoek.exe
Zoek.exe Version 4.0.0.5 Updated 24-November-2013
Tool run by digital on pet 29.11.2013 at 17:45:15,64.
Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\DOCUME~1\digital\LOCALS~1\Temp\Temporary Directory 1 for zoek.zip\zoek.com [Script inserted]

==== System Restore Info ======================

29.11.2013 17:49:35 Zoek.exe System Restore Point Created Succesfully.

==== Files Recently Created / Modified ======================

====== C:\WINDOWS ====
====== C:\DOCUME~1\digital\LOCALS~1\Temp ====
2013-11-27 20:56:15 B0AADE070F403FDE4EABA053DBDEF5AA 512581 ----a-w- C:\Documents and Settings\digital\Local Settings\Temp\$$$$$_sWeather_temp\resources.dll
====== Java Cache =====
====== C:\WINDOWS\system32 =====
2013-11-23 12:48:15 95E3998CF5F016BE9AC0AFDF413010C5 36664 ----a-w- C:\WINDOWS\System32\TURegOpt.exe
====== C:\WINDOWS\system32\drivers =====
====== C:\WINDOWS\Tasks ======
====== C:\WINDOWS\Temp ======
======= C:\Program Files =====
2013-11-26 15:52:06 -------- d-----w- C:\Program Files\GreyGray
2013-11-23 12:40:59 -------- d-----w- C:\Program Files\TuneUp Utilities 2014
2013-11-23 12:33:01 -------- d-----w- C:\Program Files\PhotoScape
======= C: =====
2013-11-26 15:59:41 18FAD2DCB8238CA4FF493DCE6DA25BA6 2198239 ----a-w- C:\sWeather.zip
2013-11-26 15:53:00 70B4AD54C0A93338728935FC2EF577F8 119327 ----a-w- C:\Weather_Meter.zip
====== C:\Documents and Settings\digital\Application Data ======
2013-11-28 21:14:01 50D1225FCF42097C24D117B2FBDC9EAF 64744 ----a-w- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2013-11-25 18:34:52 -------- d-----w- C:\Documents and Settings\LocalService\Application Data\TuneUp Software
2013-11-23 12:43:55 -------- d-----w- C:\Documents and Settings\digital\Application Data\PhotoScape
2013-11-14 17:36:49 -------- d-----w- C:\Documents and Settings\LocalService\Application Data\AVG
2013-11-13 14:45:17 -------- d-----w- C:\Documents and Settings\digital\Application Data\AVG
2013-11-04 15:43:20 -------- d-----w- C:\Documents and Settings\digital\Application Data\Qualys
====== C:\Documents and Settings\digital ======
2013-11-27 20:53:05 -------- d--h--r- C:\Documents and Settings\digital\Recent

====== C: exe-files ==
2013-12-31 14:07:47 72EE1BFBB8E863CBEA43A686AEAE1177 2077312 ----a-w- C:\Documents and Settings\digital\My Documents\??????????\needforrussia_setup(2).exe
2013-12-31 14:06:37 72EE1BFBB8E863CBEA43A686AEAE1177 2077312 ----a-w- C:\Documents and Settings\digital\My Documents\??????????\needforrussia_setup(1).exe
2013-11-29 16:18:08 43C44561C5340D22D427750F3E8969E6 66328 ----a-w- C:\Program Files\GreyGray\bin\utilGreyGray.exe
2013-11-28 12:28:06 60BF4AE8CC40B0E3E28613657ED2EED8 377856 ----a-w- C:\Documents and Settings\digital\My Documents\Downloads\jlgmqb9p.exe
2013-11-28 11:58:08 AFAFA655CC59872129A32CDE4F60F2DE 1091882 ----a-w- C:\Documents and Settings\digital\My Documents\Downloads\AdwCleaner.exe
2013-11-26 15:58:10 F0B991FC49D6235BD6D47832CB583615 338984 ----a-w- C:\Documents and Settings\digital\My Documents\Downloads\sWeather__2736_il2025400.exe
2013-11-26 15:52:50 8D736D96D2B4F9B36EDE21F4138E11E4 241517 ----a-w- C:\Program Files\GreyGray\GreyGrayUninstall.exe
2013-11-26 15:50:49 F0B991FC49D6235BD6D47832CB583615 338984 ----a-w- C:\Documents and Settings\digital\My Documents\Downloads\Weather Meter__2736_il2060035.exe
2013-11-26 11:53:58 1616A89B0034F53FC6760B9DB7185B33 5927000 ----a-w- C:\Program Files\AVG\AVG2014\avgmfapx.exe
2013-11-23 12:48:15 95E3998CF5F016BE9AC0AFDF413010C5 36664 ----a-w- C:\WINDOWS\system32\TURegOpt.exe
2013-11-23 12:36:19 918B9CF0985B93F5AE459883E30E90FF 86569 ----a-w- C:\Program Files\PhotoScape\uninstall.exe
2013-11-23 12:21:45 B65C28AE8635E0634639D32B3C4C1AE5 486744 ----a-w- C:\Documents and Settings\digital\Desktop\JOVANA\PhotoScape_V3.6.5-aoc-jd.exe
=== C: other files ==
2013-11-29 16:21:16 C5E4B93E5E3CD11C606E980EEDAAED32 687170 ----a-w- C:\WINDOWS\Temp\avgdiag2\5639553e-a987-4104-bfe8-cf625807ec73\out\5639553e-a987-4104-bfe8-cf625807ec73[afbacbe6-7d65-47df-8efe-85afba3e5e8f]_3.zip
2013-11-29 16:20:06 FDEF5BF2D2D5AA94727B2649CC91987A 734332 ----a-w- C:\WINDOWS\Temp\avgdiag2\5639553e-a987-4104-bfe8-cf625807ec73\out\5639553e-a987-4104-bfe8-cf625807ec73[afbacbe6-7d65-47df-8efe-85afba3e5e8f]_2.zip
2013-11-29 16:18:47 66F398325E72372EC34D5FCCB5EA6EC1 714428 ----a-w- C:\WINDOWS\Temp\avgdiag2\5639553e-a987-4104-bfe8-cf625807ec73\out\5639553e-a987-4104-bfe8-cf625807ec73[afbacbe6-7d65-47df-8efe-85afba3e5e8f]_1.zip
2013-11-29 15:34:58 7491D31B8CFB8083B42F0DFEBB9D9416 731326 ----a-w- C:\Documents and Settings\digital\Local Settings\Temp\avgdiag2\a267b179-314d-4907-8b72-972754e64810\out\a267b179-314d-4907-8b72-972754e64810[afbacbe6-7d65-47df-8efe-85afba3e5e8f].zip
2013-11-28 17:33:25 AE7004D992871576A5FEF2BF86B3C32B 7848 ----a-w- C:\Documents and Settings\digital\Local Settings\Temporary Internet Files\Content.IE5\192RDG00\www.google[1].com
2013-11-28 16:24:28 7FA58C15865516E00DD6A8047FE47836 2317762 ----a-w- C:\RECYCLER\S-1-5-21-1757981266-562591055-1177238915-1003\Dc7.zip
2013-11-26 15:59:41 18FAD2DCB8238CA4FF493DCE6DA25BA6 2198239 ----a-w- C:\sWeather.zip
2013-11-26 15:53:00 70B4AD54C0A93338728935FC2EF577F8 119327 ----a-w- C:\Weather_Meter.zip

==== Startup Registry Enabled ======================

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_USERS\S-1-5-21-1757981266-562591055-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe /background"
"Skype"="C:\Program Files\Skype\\Phone\Skype.exe /nosplash /minimized"
"se"="C:\Documents and Settings\digital\Application Data\SkypEmoticons\se.exe /minimized "
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TWCU"="C:\Program Files\TP-LINK\TP-LINK 54M Wireless Client Utility\TWCU.exe -nogui"
"AVG_UI"="C:\Program Files\AVG\AVG2014\avgui.exe /TRAYONLY"
"SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"
"RemoteControl9"="C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe"
"PDVD9LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe"
"BDRegion"="C:\Program Files\Cyberlink\Shared Files\brs.exe"
"Apoint"="C:\Program Files\Apoint2K\Apoint.exe"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe /background"
"Skype"="C:\Program Files\Skype\\Phone\Skype.exe /nosplash /minimized"
"se"="C:\Documents and Settings\digital\Application Data\SkypEmoticons\se.exe /minimized "
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"

==== Startup Registry Disabled ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ctfmon.exe]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ctfmon"
"hkey"="HKCU"
"command"="C:\\WINDOWS\\system32\\ctfmon.exe"


==== Task Scheduler Jobs ======================

C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a------ C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [16.09.2013 14:09]
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [24.06.2013 13:06]
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [24.06.2013 13:06]
C:\WINDOWS\tasks\Updater.job --a------ C:\Documents and Settings\All Users\Application Data\WombatUpdater\WombatUpdater.exe [30.12.2010 10:26]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{20a82645-c095-46ed-80e3-08825760534b}"="C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension" [19.04.2013 12:35]

==== Firefox Extensions ======================

ProfilePath: C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421
- Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
- Vauddix - %ProfilePath%\extensions\aaaeuoe@uoeypl.co.uk
- SearchNewTab - %ProfilePath%\extensions\u0seae45k@mkcjrftiya.net
- WebSite Recommendation - %ProfilePath%\extensions\WebSiteRecommendation@weliketheweb.com
- GreyGray - %ProfilePath%\extensions\firefox@greygray.biz.xpi
- Cool Smiley Bar for Facebook - %ProfilePath%\extensions\pluswinks@PlusWinks.xpi
- Speed Analysis 2 - %ProfilePath%\extensions\speedanalysis02@SpeedAnalysis.com.xpi

AppDir: C:\Program Files\Mozilla Firefox
- Skype extension for Firefox - %AppDir%\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421
C2321043FA2CA4C32FF449DE6116B5D9 - C:\WINDOWS\system32\Adobe\Director\np32dsw_1205146.dll - Shockwave for Director / Shockwave for Director
CFAF7B67C78D09D79688AEDCA3D090E2 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll - Google Update
6768C724599214E4F9ADD9F8FF5097EB - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U45
F1CD6E22E5AE5CEEB7712E546A5FC853 - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.450.18
E5AF72B7353FF8D431A7C463A4229524 - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll - Shockwave Flash
F0DBF31A1C23D334A02FDF524701D390 - C:\Documents and Settings\digital\Local Settings\Application Data\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
B50F45C9DCE776FCA64A3A8BD3D6A6F7 - C:\Games\GreenWebPlayer\npgreenwebplayer.dll - GreenWebPlayer
AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
28000D7EEB2FD95A36E1A7539F599C3B - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
5D41BCD19A3D90E4EBB58A6BFB79E4F7 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
8B6884E3E1E5F8ABA5FA0C6A2B13181D - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
giacfgjdclhnmkacnfbaljbmpnelflol - C:\Program Files\iVIDI.org plugin\ividiplg.crx[05.11.2012 19:18]
jdfpoleiejpinbkfnjpcapjnghmahlbo - C:\Program Files\Retrogamer_4w Chrome Extension\bar\Retrogamer@mindspark.com[30.10.2012 12:59]
kpdhgpkkloealnjnmepfhanpcleldbef - C:\Program Files\Unitech LLC\ividi\1.8.23.0\ividi.crx[25.07.2013 07:30]
nhogbcndagiknbfomjgdeghehkljalhi - C:\Program Files\GreyGray\nhogbcndagiknbfomjgdeghehkljalhi.crx[07.11.2013 21:42]

Qualys BrowserCheck for Windows - digital - Default\Extensions\ejhnkognlohdkpjkjongioociddgoibk
iVIDI.org plugin - digital - Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol
SearchNewTab - digital - Default\Extensions\hipahfceelgjnhembjaafnmcpphjbfan
Retrogamer - digital - Default\Extensions\jdfpoleiejpinbkfnjpcapjnghmahlbo
Vauddix - digital - Default\Extensions\kmknonfmdfmoekgdmifllndmniahegba
iVidi Chrome Toolbar - digital - Default\Extensions\kpdhgpkkloealnjnmepfhanpcleldbef
GreyGray - digital - Default\Extensions\nhogbcndagiknbfomjgdeghehkljalhi
Google Wallet - digital - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Allin1Convert - digital - Default\Extensions\pfkanglmmnniiolknlhaajllgmlgcdkj
Docs - NetworkService - Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - NetworkService - Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - NetworkService - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - NetworkService - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Retrogamer - NetworkService - Default\Extensions\jdfpoleiejpinbkfnjpcapjnghmahlbo
Gmail - NetworkService - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== IE Start and Search Settings ======================

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://start.gamehitzone.com/?utm_source=NightStreetRacing&utm_medium=start"
"Search Page"="http://www.google.com"
"Search Bar"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"SearchAssistant"="http://www.google.com"
"CustomizeSearch"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://search.ividi.org/?q={searchTerms}&src=tbnt&id=0812170600000000000054e6fcdab77c&affilt=3"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
"CustomizeSearch"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Unknown Url="http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC"
{A6057BE9-9A8D-4526-9FD5-A06C4BCAD304} Search Url="http://search.ividi.org/?q={searchTerms}&src=tbsp&id=0812170600000000000054e6fcdab77c&affilt=3&r=406"

==== EOF on pet 29.11.2013 at 17:54:10,42 ======================

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Arrow


Zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;
dvoklikom pokreni zoek.exe;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sljedeći tekst:

C:\WINDOWS\tasks\Updater.job;f
[HKEY_USERS\S-1-5-21-1757981266-562591055-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Run];r
"se"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run];r
"se"=-
C:\Documents and Settings\digital\Application Data\SkypEmoticons;fs
Vauddix;ff
C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\extensions\aaaeuoe@uoeypl.co.uk;fs
SearchNewTab;ff
C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\extensions\u0seae45k@mkcjrftiya.net;fs
WebSite Recommendation;ff
C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\extensions\WebSiteRecommendation@weliketheweb.com;fs
firefox@greygray.biz.xpi;ff
pluswinks@PlusWinks.xpi;ff
SpeedAnalysis.com.xpi;ff
giacfgjdclhnmkacnfbaljbmpnelflol;chr
C:\Program Files\iVIDI.org;fs
jdfpoleiejpinbkfnjpcapjnghmahlbo;chr
C:\Program Files\Retrogamer_4w;fs
kpdhgpkkloealnjnmepfhanpcleldbef;chr
C:\Program Files\Unitech LLC;fs
nhogbcndagiknbfomjgdeghehkljalhi;chr
C:\Program Files\GreyGray;fs
hipahfceelgjnhembjaafnmcpphjbfan;chr
pfkanglmmnniiolknlhaajllgmlgcdkj;chr
emptytemp;
emptyclsid;
autoclean;


Klikni na dugme i pričekaj da se skeniranje završi.


Zoek će po potrebi restartovati Windows, a na kraju rada otvoriti Notepad sa izvještajem o skeniranju.

Napomena: Izvještaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadržaj tog loga u poruku.




Question

Kakvo je sada stanje?

offline
  • Pridružio: 27 Sep 2013
  • Poruke: 94

izvestajZoek.exe Version 4.0.0.5 Updated 24-November-2013
Tool run by digital on pet 29.11.2013 at 22:05:40,26.
Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\DOCUME~1\digital\LOCALS~1\Temp\Temporary Directory 2 for zoek.zip\zoek.exe [Script inserted]

==== Older Logs ======================

C:\zoek-results2013-11-29-165410.log 14391 bytes

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1757981266-562591055-1177238915-1003\Software\Microsoft\Internet Explorer\SearchScopes\{A6057BE9-9A8D-4526-9FD5-A06C4BCAD304} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Util GreyGray deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Util GreyGray deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Util GreyGray deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Util GreyGray deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Update GreyGray deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update GreyGray deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\Update GreyGray deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Update GreyGray deleted successfully

==== FireFox Fix ======================

ProfilePath: C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421

user.js not found
---- Lines ividi removed from prefs.js ----
user_pref("browser.startup.homepage", "http://search.ividi.org/?src=tbhp&id=0812170600000000000054e6fcdab77c&affilt=3");
user_pref("extensions.ividi.admin", false);
user_pref("extensions.ividi.aflt", "3");
user_pref("extensions.ividi.appId", "{685F23D9-FCFD-475C-B56A-362645945C5A}");
user_pref("extensions.ividi.autoRvrt", "false");
user_pref("extensions.ividi.dfltLng", "");
user_pref("extensions.ividi.dfltSrch", true);
user_pref("extensions.ividi.dnsErr", true);
user_pref("extensions.ividi.excTlbr", true);
user_pref("extensions.ividi.ffxUnstlRst", false);
user_pref("extensions.ividi.hmpg", true);
user_pref("extensions.ividi.hmpgUrl", "http://search.ividi.org/?src=tbhp&id=0812170600000000000054e6fcdab77c&affilt=3");
user_pref("extensions.ividi.hpOld0", "");
user_pref("extensions.ividi.id", "0812170600000000000054e6fcdab77c");
user_pref("extensions.ividi.instlDay", "15977");
user_pref("extensions.ividi.instlRef", "");
user_pref("extensions.ividi.kw_url", "http://search.ividi.org/?src=tbsp&id=0812170600000000000054e6fcdab77c&affilt=3&q=");
user_pref("extensions.ividi.newTab", true);
user_pref("extensions.ividi.newTabUrl", "http://search.ividi.org/?q={searchTerms}&src=tbnt&id=0812170600000000000054e6fcdab77c&affilt=3");
user_pref("extensions.ividi.prdct", "ividi");
user_pref("extensions.ividi.prtnrId", "ividi");
user_pref("extensions.ividi.rvrt", "false");
user_pref("extensions.ividi.smplGrp", "none");
user_pref("extensions.ividi.srchPrvdr", "Search ");
user_pref("extensions.ividi.tlbrId", "base");
user_pref("extensions.ividi.tlbrSrchUrl", "http://search.ividi.org/?src=tbsp&id=0812170600000000000054e6fcdab77c&affilt=3&q=");
user_pref("extensions.ividi.vrsn", "1.8.23.0");
user_pref("extensions.ividi.vrsni", "1.8.23.0");
user_pref("extensions.ividi.vrsnTs", "1.8.23.010:06:15");
user_pref("keyword.URL", "http://search.ividi.org/?src=tbsp&id=0812170600000000000054e6fcdab77c&affilt=3&q=");
---- Lines Search removed from prefs.js ----
user_pref("browser.search.order.1", "Search ");
---- Lines extensions.VAMvQkvu removed from prefs.js ----
user_pref("extensions.VAMvQkvu.epoch", "1385820463");
---- Lines extensions.u0wC removed from prefs.js ----
user_pref("extensions.u0wC.epoch", "1385820463");
---- FireFox user.js and prefs.js backups ----

prefs_29.11.2013_2230_.backup

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_USERS\S-1-5-21-1757981266-562591055-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Run]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

==== Deleting Files \ Folders ======================

C:\Documents and Settings\digital\Application Data\SkypEmoticons not found
C:\Program Files\iVIDI.org not found
C:\Program Files\Retrogamer_4w not found
C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\extensions\aaaeuoe@uoeypl.co.uk deleted
C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\extensions\u0seae45k@mkcjrftiya.net deleted
C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\extensions\WebSiteRecommendation@weliketheweb.com deleted
C:\Program Files\Unitech LLC deleted
C:\Documents and Settings\All Users\Application Data\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} deleted
C:\Program Files\Retrogamer_4w Chrome Extension deleted
C:\Program Files\SsHelper deleted
C:\Program Files\iVIDI.org plugin deleted
C:\Program Files\AVG SafeGuard toolbar deleted
C:\Documents and Settings\digital\Application Data\AVG SafeGuard toolbar deleted
C:\Documents and Settings\digital\Application Data\Unitech LLC deleted
C:\Documents and Settings\digital\Application Data\PlusWinks deleted
C:\Documents and Settings\All Users\Application Data\InstallMate deleted
C:\Documents and Settings\All Users\Application Data\AVG SafeGuard toolbar deleted
C:\Documents and Settings\All Users\Application Data\YTD Video Downloader deleted
C:\Documents and Settings\All Users\Application Data\WinterSoft deleted
C:\Documents and Settings\digital\Local Settings\Application Data\AVG SafeGuard toolbar deleted
C:\Documents and Settings\All Users\Start Menu\Programs\YTD Video Downloader deleted
C:\WINDOWS\wininit.ini deleted
C:\user.js deleted
C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\searchplugins\ividi.xml deleted
C:\Documents and Settings\All Users\Desktop\YTD Video Downloader.lnk deleted
C:\Documents and Settings\digital\Desktop\Old Firefox Data\extensions\ffxtlbra@softonic.com\content\softonic.css deleted
C:\Documents and Settings\digital\Desktop\Old Firefox Data\extensions\ffxtlbra@softonic.com\content\softonic.xul deleted
C:\Documents and Settings\digital\Desktop\Old Firefox Data\searchplugins\softonic.xml deleted
"C:\WINDOWS\tasks\Updater.job" deleted
"C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\extensions\firefox@greygray.biz.xpi" deleted
"C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\extensions\pluswinks@PlusWinks.xpi" deleted
"C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\extensions\speedanalysis02@SpeedAnalysis.com.xpi" deleted
"C:\Program Files\GreyGray\bin\sqlite3.dll" deleted
"C:\Program Files\GreyGray\bin\utilGreyGray.exe" deleted
"C:\Program Files\GreyGray\bin\sqlite3.dll" deleted
"C:\Program Files\GreyGray\bin\utilGreyGray.exe" deleted
"C:\Program Files\GreyGray" not deleted
"C:\Program Files\GreyGray" not deleted
"C:\Program Files\GreyGray\bin" not deleted
"C:\Program Files\GreyGray\bin" not deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{20a82645-c095-46ed-80e3-08825760534b}"="C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension" [19.04.2013 12:35]

==== Firefox Extensions ======================

AppDir: C:\Program Files\Mozilla Firefox
- Skype extension for Firefox - %AppDir%\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Documents and Settings\digital\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421
C2321043FA2CA4C32FF449DE6116B5D9 - C:\WINDOWS\system32\Adobe\Director\np32dsw_1205146.dll - Shockwave for Director / Shockwave for Director
CFAF7B67C78D09D79688AEDCA3D090E2 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll - Google Update
6768C724599214E4F9ADD9F8FF5097EB - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U45
F1CD6E22E5AE5CEEB7712E546A5FC853 - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.450.18
E5AF72B7353FF8D431A7C463A4229524 - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll - Shockwave Flash
F0DBF31A1C23D334A02FDF524701D390 - C:\Documents and Settings\digital\Local Settings\Application Data\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
B50F45C9DCE776FCA64A3A8BD3D6A6F7 - C:\Games\GreenWebPlayer\npgreenwebplayer.dll - GreenWebPlayer
AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation
28000D7EEB2FD95A36E1A7539F599C3B - C:\Program Files\Windows Media Player\npdrmv2.dll - Microsoft® DRM
5D41BCD19A3D90E4EBB58A6BFB79E4F7 - C:\Program Files\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
8B6884E3E1E5F8ABA5FA0C6A2B13181D - C:\Program Files\Windows Media Player\npwmsdrm.dll - Microsoft® DRM


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
giacfgjdclhnmkacnfbaljbmpnelflol - C:\Program Files\iVIDI.org plugin\ividiplg.crx[]
jdfpoleiejpinbkfnjpcapjnghmahlbo - C:\Program Files\Retrogamer_4w Chrome Extension\bar\Retrogamer@mindspark.com[]
kpdhgpkkloealnjnmepfhanpcleldbef - C:\Program Files\Unitech LLC\ividi\1.8.23.0\ividi.crx[]
nhogbcndagiknbfomjgdeghehkljalhi - C:\Program Files\GreyGray\nhogbcndagiknbfomjgdeghehkljalhi.crx[]

Qualys BrowserCheck for Windows - digital - Default\Extensions\ejhnkognlohdkpjkjongioociddgoibk
iVIDI.org plugin - digital - Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol
SearchNewTab - digital - Default\Extensions\hipahfceelgjnhembjaafnmcpphjbfan
Retrogamer - digital - Default\Extensions\jdfpoleiejpinbkfnjpcapjnghmahlbo
Vauddix - digital - Default\Extensions\kmknonfmdfmoekgdmifllndmniahegba
iVidi Chrome Toolbar - digital - Default\Extensions\kpdhgpkkloealnjnmepfhanpcleldbef
GreyGray - digital - Default\Extensions\nhogbcndagiknbfomjgdeghehkljalhi
Google Wallet - digital - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Allin1Convert - digital - Default\Extensions\pfkanglmmnniiolknlhaajllgmlgcdkj
Docs - NetworkService - Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - NetworkService - Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - NetworkService - Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - NetworkService - Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Retrogamer - NetworkService - Default\Extensions\jdfpoleiejpinbkfnjpcapjnghmahlbo
Gmail - NetworkService - Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== Chrome Fix ======================

C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jdfpoleiejpinbkfnjpcapjnghmahlbo deleted successfully
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\jdfpoleiejpinbkfnjpcapjnghmahlbo deleted successfully
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jdfpoleiejpinbkfnjpcapjnghmahlbo_0.localstorage deleted successfully
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jdfpoleiejpinbkfnjpcapjnghmahlbo_0.localstorage-journal deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kpdhgpkkloealnjnmepfhanpcleldbef deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nhogbcndagiknbfomjgdeghehkljalhi deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nhogbcndagiknbfomjgdeghehkljalhi_0.localstorage deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nhogbcndagiknbfomjgdeghehkljalhi_0.localstorage-journal deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\hipahfceelgjnhembjaafnmcpphjbfan deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hipahfceelgjnhembjaafnmcpphjbfan_0.localstorage deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hipahfceelgjnhembjaafnmcpphjbfan_0.localstorage-journal deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pfkanglmmnniiolknlhaajllgmlgcdkj deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pfkanglmmnniiolknlhaajllgmlgcdkj_0.localstorage deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pfkanglmmnniiolknlhaajllgmlgcdkj_0.localstorage-journal deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kmknonfmdfmoekgdmifllndmniahegba deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kmknonfmdfmoekgdmifllndmniahegba_0.localstorage deleted successfully
C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kmknonfmdfmoekgdmifllndmniahegba_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://start.gamehitzone.com/?utm_source=NightStreetRacing&utm_medium=start"
"Search Page"="http://www.google.com"
"Search Bar"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"SearchAssistant"="http://www.google.com"
"CustomizeSearch"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://search.ividi.org/?q={searchTerms}&src=tbnt&id=0812170600000000000054e6fcdab77c&affilt=3"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
"CustomizeSearch"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
"Default_Search_URL"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://start.gamehitzone.com/?utm_source=NightStreetRacing&utm_medium=start"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"SearchAssistant"="http://go.microsoft.com/fwlink/?LinkId=54896"
"CustomizeSearch"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"CustomizeSearch"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Unknown Url="http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1757981266-562591055-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8B8B2E80-1444-451D-AC8E-EB9A847F3887} deleted successfully
HKEY_USERS\S-1-5-21-1757981266-562591055-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8B8B2E80-1444-451D-AC8E-EB9A847F3887} deleted successfully
HKEY_USERS\S-1-5-21-1757981266-562591055-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ae60e6ed-49dd-4099-8b5e-386a4908d5d5} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{8B8B2E80-1444-451D-AC8E-EB9A847F3887} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8B8B2E80-1444-451D-AC8E-EB9A847F3887} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{ae60e6ed-49dd-4099-8b5e-386a4908d5d5} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ae60e6ed-49dd-4099-8b5e-386a4908d5d5} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{6C2C69EC-DF17-238F-44A6-92F4E0EB5E66} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\giacfgjdclhnmkacnfbaljbmpnelflol deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\jdfpoleiejpinbkfnjpcapjnghmahlbo deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\kpdhgpkkloealnjnmepfhanpcleldbef deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\nhogbcndagiknbfomjgdeghehkljalhi deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\SkypEmoticons_is1 deleted successfully

==== Empty IE Cache ======================

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\digital\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Documents and Settings\digital\Local Settings\Application Data\Mozilla\Firefox\Profiles\g2zdq4un.default-1366142093421\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Documents and Settings\digital\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\digital\LOCALS~1\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\RECYCLER successfully emptied

==== Deleting Files / Folders ======================

"C:\Documents and Settings\digital\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Program Files\GreyGray" not found
"C:\Program Files\GreyGray" not found

==== EOF on pet 29.11.2013 at 22:50:48,45 ======================
stanje je mnogo bolje,mada nije na na onom nivou na kom je bilo a i sad mi mnogo sporo podize windows posle palenja

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building


Zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;
dvoklikom pokreni zoek.exe;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sljedeći tekst:

startupall;
skipfix-iedefaults;
firefoxlook;
chromelook;
filesrcm;


Klikni na dugme i pričekaj da se skeniranje završi.


Zoek će po potrebi restartovati Windows, a na kraju rada otvoriti Notepad sa izvještajem o skeniranju.

Napomena: Izvještaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadržaj tog loga u poruku.

Ko je trenutno na forumu
 

Ukupno su 1058 korisnika na forumu :: 43 registrovanih, 7 sakrivenih i 1008 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., Apok, bankulen, bigfoot, bojanM84, bojcistv, Boris BM, BORUTUS, CikaKURE, dane007, darkojbn, debeli, djboj, dushan, Fog of War, Frunze, ginjica, gomago, hologram, ikan, Još malo pa deda, kikisp, kripo, kybonacci, milanovic, Millennium, Milos ZA, milutin134, nikoli_ca, panzerwaffe, Sass Drake, shone34, Springfield, Stanlio, Sumadija34, suton, Trpe Grozni, vathra, Vatreni Zmaj, Vlada1389, zdrebac, Zoca, šumar bk2