spor rad racunara

2

spor rad racunara

offline
  • Pridružio: 14 Jul 2013
  • Poruke: 16

Zoek.exe Version 4.0.0.5 Updated 30-November-2013
Tool run by DRAGAN on Tue 12/03/2013 at 0:21:42.27.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\DRAGAN\AppData\Local\Temp\Rar$DI04.211\zoek.com [Script inserted]

==== Older Logs ======================

C:\zoek-results2013-12-02-170707.log 18322 bytes

==== Files Recently Created / Modified ======================

====== C:\Windows ====
====== C:\Users\DRAGAN\AppData\Local\Temp ====
====== Java Cache =====
====== C:\Windows\system32 =====
2013-11-25 22:09:25 FB0D1CC2911A0645DDA6C0608473EB55 34816 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll
2013-11-25 22:09:25 F9F114B2A6F876C92D317A755494F233 17142784 ----a-w- C:\Windows\System32\mshtml.dll
2013-11-25 22:09:25 F8DE2F74CD4323BABBDACAADD9A39254 112128 ----a-w- C:\Windows\System32\ieUnatt.exe
2013-11-25 22:09:25 F862CD08F1AD4EE39BD506853F3C6103 16284 ----a-w- C:\Windows\System32\ieuinit.inf
2013-11-25 22:09:25 F7B6E341F4B1947BEC0E14EEBE3C627E 111616 ----a-w- C:\Windows\System32\IEAdvpack.dll
2013-11-25 22:09:25 F705F52FC41577641E82B9934728B02C 440832 ----a-w- C:\Windows\System32\ieui.dll
2013-11-25 22:09:25 EC7038154490E50ACD405A022F51B204 83456 ----a-w- C:\Windows\System32\inseng.dll
2013-11-25 22:09:25 D9F12F54E3B5A092F1D5F191F5286E53 337408 ----a-w- C:\Windows\System32\html.iec
2013-11-25 22:09:25 D6BC25D55501DE093757675B3B120867 208896 ----a-w- C:\Windows\System32\ie4uinit.exe
2013-11-25 22:09:25 CFCE4EFF1D6D909EE2EA3AFCB8F1E677 233472 ----a-w- C:\Windows\System32\url.dll
2013-11-25 22:09:25 C629D814E48CAA81E0D806BD7ECA98B8 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2013-11-25 22:09:25 C611C6ED5ECFE4608BA79472DFE3D49C 646144 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2013-11-25 22:09:25 C3B0DBD04CC18574B0706CA119902474 367104 ----a-w- C:\Windows\System32\dxtmsft.dll
2013-11-25 22:09:25 C1A6E565B2782C09BC40AD749B46D9ED 71680 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe
2013-11-25 22:09:25 C17139EAF939964142C7A1AEEE02DC81 616104 ----a-w- C:\Windows\System32\ieapfltr.dat
2013-11-25 22:09:25 BE8B10D84DDD8F43A32EE013B54F5287 61952 ----a-w- C:\Windows\System32\iesetup.dll
2013-11-25 22:09:25 BC2C13A3B664B686DA52D558FE5502FC 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2013-11-25 22:09:25 B68750104FBA545C633B7E9AEA660208 2166272 ----a-w- C:\Windows\System32\iertutil.dll
2013-11-25 22:09:25 B5EB5BD3066959611E1F7A80FD6CC172 1818112 ----a-w- C:\Windows\System32\wininet.dll
2013-11-25 22:09:25 AE6A2C5ECD3E96556E22F12816842F60 48640 ----a-w- C:\Windows\System32\mshtmler.dll
2013-11-25 22:09:25 AE254DBF16E3E3D7C35ED017B4B55EC6 4240384 ----a-w- C:\Windows\System32\jscript9.dll
2013-11-25 22:09:25 AD27563BC16AB1EAACAE3033E99C2F78 194048 ----a-w- C:\Windows\System32\elshyph.dll
2013-11-25 22:09:25 ABDFC692D9FE43E2BA8FE6CB5A8CB95A 13312 ----a-w- C:\Windows\System32\mshta.exe
2013-11-25 22:09:25 AB3B2CA52AFB695AFCDD2620A21E5B21 24576 ----a-w- C:\Windows\System32\licmgr10.dll
2013-11-25 22:09:25 9E170B0AF156B478BD2B1FD6A2250C9E 62464 ----a-w- C:\Windows\System32\tdc.ocx
2013-11-25 22:09:25 9B8701A380CEE1B05D651B4ED4048C8F 645120 ----a-w- C:\Windows\System32\jsIntl.dll
2013-11-25 22:09:25 9A33FDDD687A836A1FD478B43C5A95FD 151552 ----a-w- C:\Windows\System32\iexpress.exe
2013-11-25 22:09:25 887055A3C8DD6C87D200D11EAFDBD45B 74240 ----a-w- C:\Windows\System32\SetIEInstalledDate.exe
2013-11-25 22:09:25 83F49FD1BC0A999B006D564C540C7258 86016 ----a-w- C:\Windows\System32\iesysprep.dll
2013-11-25 22:09:25 81A605B0F3A29A117AB83A08D40F772F 1926656 ----a-w- C:\Windows\System32\inetcpl.cpl
2013-11-25 22:09:25 809804D8AED97AEA96B3D4B66A4C5C70 553472 ----a-w- C:\Windows\System32\jscript9diag.dll
2013-11-25 22:09:25 779E142FE2159935E78C0FA2E190FF1E 610304 ----a-w- C:\Windows\System32\jscript.dll
2013-11-25 22:09:25 71144A47CD02FDDC77DDF5EB5315767F 523776 ----a-w- C:\Windows\System32\msfeeds.dll
2013-11-25 22:09:25 6EB0B7301E00F717BD68A742D1391FAF 36352 ----a-w- C:\Windows\System32\imgutil.dll
2013-11-25 22:09:25 6A92CEC8532056791C6832B2725D170D 139264 ----a-w- C:\Windows\System32\wextract.exe
2013-11-25 22:09:25 6A794439B6612E43FEDE0217C919B652 454656 ----a-w- C:\Windows\System32\vbscript.dll
2013-11-25 22:09:25 6922D7ED84AE102504174922D5D42F49 238288 ----a-w- C:\Windows\System32\iedkcs32.dll
2013-11-25 22:09:25 64831CAD496A073398853A34A5813675 69632 ----a-w- C:\Windows\System32\mshtmled.dll
2013-11-25 22:09:25 5EC13202430A3EB68DFF44CF1FEEA2BE 61952 ----a-w- C:\Windows\System32\MshtmlDac.dll
2013-11-25 22:09:25 5DFE55E0221F0C5FA4D6CECFA72B1D78 32768 ----a-w- C:\Windows\System32\iernonce.dll
2013-11-25 22:09:25 55969AADF0210A614700F89B48976F68 43008 ----a-w- C:\Windows\System32\msfeedsbs.dll
2013-11-25 22:09:25 53FC62C51CB18C9100A7DFAF2D2A6C47 12800 ----a-w- C:\Windows\System32\msfeedssync.exe
2013-11-25 22:09:25 4F032F1FDEFEA5EC8EEA3562643B5EE8 69120 ----a-w- C:\Windows\System32\icardie.dll
2013-11-25 22:09:25 4D4726D1AD5ED1590A62685F92900594 51200 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2013-11-25 22:09:25 4BCC7EB5F20840DA67943BD86AE95735 56832 ----a-w- C:\Windows\System32\pngfilt.dll
2013-11-25 22:09:25 4A7956EE34BE56D20C54CF6A47693C25 43008 ----a-w- C:\Windows\System32\jsproxy.dll
2013-11-25 22:09:25 44D5C650C971910827EA65B4D989ED94 164864 ----a-w- C:\Windows\System32\msrating.dll
2013-11-25 22:09:25 433161597584186EF806EFC8EA530433 703488 ----a-w- C:\Windows\System32\ieapfltr.dll
2013-11-25 22:09:25 2EE1E467D73642AFDDB03019F58C252B 1156608 ----a-w- C:\Windows\System32\urlmon.dll
2013-11-25 22:09:25 2AF48780D879AFC43733159CB29CD8BD 1051136 ----a-w- C:\Windows\System32\mshtmlmedia.dll
2013-11-25 22:09:25 298FDE634538B62CEEEC266D8773B21A 182272 ----a-w- C:\Windows\System32\msls31.dll
2013-11-25 22:09:25 22868FAAF9C851BFA924B8D7EDB6CBC1 11220992 ----a-w- C:\Windows\System32\ieframe.dll
2013-11-25 22:09:25 1AFBAA54BDF637F69B8E02A5578286B0 116736 ----a-w- C:\Windows\System32\iepeers.dll
2013-11-25 22:09:25 14E18520903F925D296C8E29BDE6BD43 108032 ----a-w- C:\Windows\System32\ieetwcollector.exe
2013-11-25 22:09:25 1200D9C7DB0ADC1B8143A0A9921BF7DA 127488 ----a-w- C:\Windows\System32\occache.dll
2013-11-25 22:09:25 08B56CF57B7CE44315034247CC76D0F1 244736 ----a-w- C:\Windows\System32\dxtrans.dll
2013-11-25 22:09:25 03B3541AE6986602CF9CB5B3AD169C33 208384 ----a-w- C:\Windows\System32\webcheck.dll
2013-11-25 22:08:25 E0B8C6B1EA1EF94747E966E9093FB968 1289096 ----a-w- C:\Windows\System32\ntdll.dll
2013-11-25 22:08:25 D67472125471784DE7147946EDA25FEB 640512 ----a-w- C:\Windows\System32\advapi32.dll
2013-11-25 22:08:25 813A7F5A2D6D366EB3FFB643B851BCE5 3914176 ----a-w- C:\Windows\System32\ntoskrnl.exe
2013-11-25 22:08:25 482C8CD985C727C7C78A5E9B320947F0 3969472 ----a-w- C:\Windows\System32\ntkrnlpa.exe
2013-11-25 22:08:25 401D25136E26B237D77DA1BF1198B3BD 619520 ----a-w- C:\Windows\System32\tdh.dll
2013-11-25 22:08:10 E94C583CDE2348950155F2AF2876F34D 231424 ----a-w- C:\Windows\System32\mswsock.dll
2013-11-25 22:07:57 6DE66FE7C526637E74CD066461C7C871 1505280 ----a-w- C:\Windows\System32\d3d11.dll
====== C:\Windows\system32\drivers =====
2013-11-25 22:08:10 F81BB7E487EDCEAB630A7EE66CF23913 338944 ----a-w- C:\Windows\System32\drivers\afd.sys
2013-11-25 22:08:10 CA59F7C570AF70BC174F477CFE2D9EE3 1294272 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2013-11-13 08:58:23 D7C760D57B1656DD748B9E4AB6CB5A51 136640 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2013-11-13 08:58:23 85449EEBE8F8EBD6481EFBF0F352B4EB 369848 ----a-w- C:\Windows\System32\drivers\cng.sys
2013-11-13 08:58:22 F286830298323272260332D6ABC905C1 67520 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
====== C:\Windows\Tasks ======
====== C:\Windows\Temp ======
======= C:\Program Files =====
======= C: =====
====== C:\Users\DRAGAN\AppData\Roaming ======
====== C:\Users\DRAGAN ======
2013-12-02 19:40:31 C9560BBB239E0EA21EF4BEA39DD85F69 4121952 ----a-w- C:\Users\DRAGAN\Desktop\tdsskiller.exe
2013-12-02 16:32:59 5CE10688C6671AE9AFC20B09376E8AB2 1110034 ----a-w- C:\Users\DRAGAN\Desktop\adwcleaner.exe

====== C: exe-files ==
2013-12-03 08:11:22 CA0A340ABCF0C14A09691CBC90186AB4 51080 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleUpdateBroker.exe
2013-12-03 08:11:22 C98E0215F7B65F0DDEE0591BD57EDFA6 847128 ----a-w- C:\Program Files\Google\Update\1.3.22.3\GoogleUpdateSetup.exe
2013-12-03 08:11:22 600B1A4BCC0823A96DC7B86F005ADBB8 51080 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleUpdateOnDemand.exe
2013-12-03 08:11:04 9CCBA5E2489E603BB1578D1D541252A8 273800 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler64.exe
2013-12-03 08:11:04 465680BDE344CE4FF6646626AA3A9125 223112 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleCrashHandler.exe
2013-12-03 08:11:03 506708142BC63DABA64F2D3AD1DCD5BF 116648 ----atw- C:\Program Files\Google\Update\1.3.22.3\GoogleUpdate.exe
2013-12-03 08:10:48 C98E0215F7B65F0DDEE0591BD57EDFA6 847128 ----a-w- C:\Program Files\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.22.3\GoogleUpdateSetup.exe
2013-12-03 07:57:44 E887F98CD5B28446E6D51A88336F68C8 51928 ----a-w- C:\Windows\temp\6207b2ff-94d0-4592-9349-2d38483506a8\firefox.exe
2013-12-03 07:51:38 E887F98CD5B28446E6D51A88336F68C8 51928 ----a-w- C:\Windows\temp\f63f77d1-26b7-4fec-882a-f0ba16b5f255\firefox.exe
2013-12-03 07:41:17 58D338B3D9DB5AEF7B704F2B630C4E7C 1092389 ----a-w- C:\Users\DRAGAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1NS44ZEU\FRST[4].exe
2013-12-03 07:40:29 58D338B3D9DB5AEF7B704F2B630C4E7C 1092389 ----a-w- C:\Users\DRAGAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1NS44ZEU\FRST.exe
2013-12-03 07:36:36 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\DRAGAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1VKV3XNU\FRST[1].exe
2013-12-02 19:40:31 C9560BBB239E0EA21EF4BEA39DD85F69 4121952 ----a-w- C:\Users\DRAGAN\Desktop\tdsskiller.exe
2013-12-02 17:53:27 874E41D45D5F2A12B548009753E4408C 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1536180709-4104921558-1111698551-1000\$I1MBOPY.exe
2013-12-02 17:51:03 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1536180709-4104921558-1111698551-1000\$R1MBOPY.exe
2013-12-02 16:32:59 5CE10688C6671AE9AFC20B09376E8AB2 1110034 ----a-w- C:\Users\DRAGAN\Desktop\adwcleaner.exe
=== C: other files ==
2013-12-02 18:16:43 12E9F2974CE8A22B1BF1845CBE4C9A1D 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1536180709-4104921558-1111698551-1000\$IQX1R0K.zip
2013-12-02 18:16:42 2BA0FB63D93B14F1BCF603733033A0E8 544 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1536180709-4104921558-1111698551-1000\$ID9Z80W.zip
2013-12-02 16:56:32 FAFA407BA87C2C39455FC72D3DA863FE 4050563 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1536180709-4104921558-1111698551-1000\$RQX1R0K.zip
2013-12-02 16:53:58 FAFA407BA87C2C39455FC72D3DA863FE 4050563 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1536180709-4104921558-1111698551-1000\$RD9Z80W.zip
2013-12-02 16:42:48 7C48747731C50F55A718AA4D3B9B3E86 2527378 ----a-r- C:\Users\DRAGAN\AppData\Local\temp\Z-Analyse.zip

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-21-1536180709-4104921558-1111698551-1000\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun"
"DAEMON Tools Lite"="C:\Users\DRAGAN\Desktop\DAEMON Tools Lite\DTLite.exe -autorun"

[HKEY_USERS\S-1-5-21-1536180709-4104921558-1111698551-1003\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-21-1536180709-4104921558-1111698551-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"="SOUNDMAN.EXE"
"avast"="C:\Program Files\AVAST Software\Avast\avastUI.exe /nogui"
"20131121"="C:\Program Files\AVAST Software\Avast\setup\emupdate\6174e1da-89cf-46c7-9cd4-fc53e38ee202.exe /check"

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe /minimized /regrun"
"DAEMON Tools Lite"="C:\Users\DRAGAN\Desktop\DAEMON Tools Lite\DTLite.exe -autorun"

==== Startup Registry Disabled ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Facebook Update]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Facebook Update"
"hkey"="HKCU"
"command"="\"C:\\Users\\DRAGAN\\AppData\\Local\\Facebook\\Update\\FacebookUpdate.exe\" /c /nocrashserver"


==== Startup Folders ======================

2012-11-04 15:14:12 2004 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Photags AutoDetect.lnk

==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [10/09/2013 07:52 AM]
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1536180709-4104921558-1111698551-1000Core.job --a------ C:\Users\DRAGAN\AppData\Local\Facebook\Update\FacebookUpdate.exe [07/12/2012 01:30 AM]
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1536180709-4104921558-1111698551-1000UA.job --a------ C:\Users\DRAGAN\AppData\Local\Facebook\Update\FacebookUpdate.exe [07/12/2012 01:30 AM]
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [10/03/2011 10:43 AM]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files\Google\Update\GoogleUpdate.exe [10/03/2011 10:43 AM]
C:\Windows\tasks\Torntv 2-codedownloader.job --a------ C:\Program Files\Torntv 2\Torntv 2-codedownloader.exe [08/27/2013 11:03 AM]

==== Other Scheduled Tasks ======================

"C:\Windows\system32\tasks\Adobe Flash Player Updater" [C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\system32\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\system32\tasks\FacebookUpdateTaskUserS-1-5-21-1536180709-4104921558-1111698551-1000Core" [C:\Users\DRAGAN\AppData\Local\Facebook\Update\FacebookUpdate.exe]
"C:\Windows\system32\tasks\FacebookUpdateTaskUserS-1-5-21-1536180709-4104921558-1111698551-1000UA" [C:\Users\DRAGAN\AppData\Local\Facebook\Update\FacebookUpdate.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files\Google\Update\GoogleUpdate.exe]
"C:\Windows\system32\tasks\SidebarExecute" [C:\Program Files\Windows Sidebar\sidebar.exe]
"C:\Windows\system32\tasks\Torntv 2-codedownloader" [C:\Program Files\Torntv 2\Torntv 2-codedownloader.exe]
"C:\Windows\system32\tasks\{81A183B0-6D55-44B8-A3EA-D538ACDB6337}" [C:\Program Files\Skype\Phone\Skype.exe]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [05/22/2013 01:04 PM]

==== Firefox Extensions ======================

ProfilePath: C:\Users\DRAGAN\AppData\Roaming\Mozilla\Firefox\Profiles\1cqr8ha4.default
- Undetermined - %ProfilePath%\extensions\staged
- DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
- YouTube to MP3 - %ProfilePath%\extensions\youtube2mp3@mondayx.de.xpi
- Funmoods New Tab - %ProfilePath%\extensions\{5ebdca98-43b3-45bb-87e0-716029fb42ab}.xpi
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files\Mozilla Firefox
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\DRAGAN\AppData\Roaming\Mozilla\Firefox\Profiles\1cqr8ha4.default
C36444D7301A8C881FC7296B092609C7 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll - Google Update
4BF70B35B943BD73BD6E13EB7C1BA4B3 - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll - Shockwave Flash
D493C8FC0D0FD015BB9765658D77346E - C:\Users\DRAGAN\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
1B197A0ED28DB310AB67591567C3787A - C:\Windows\system32\npdeployJava1.dll - Java Deployment Toolkit 7.0.150.3
D7EFF0B98C370E03D7E2593399D9B669 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll - NVIDIA 3D Vision
75A1232EAC640B782CDD2132B5271AA8 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll - NVIDIA 3D VISION
2B78086E45508ED59364CE75179D729B - C:\Program Files\Nitro\Reader 3\npnitromozilla.dll - Nitro PDF plugin for Firefox and Chrome
0B31B0F8FA99CFD009C8FBEA9E20C9DE - C:\Users\DRAGAN\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin
7B000D95ABFE622F17709D36AF44FBD3 - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll - Java(TM) Platform SE 6 U35
3D3CAF586124C4E8102764C8B3063BB6 - C:\Windows\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director
5DB82B8C515C875AE58E1B8B5997416B - C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit)
2CDA67C1309CA966D8EFEE4EE0D6CA92 - C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll - RealPlayer Version Plugin
4461D2F67A9597EEFC7FA1ED8E251A41 - C:\Program Files\Nitro\Reader 3\npnitroie.dll - Nitro PDF plugin for Internet Explorer
B7B85962BFCFEFECE806A2A2025AA60E - C:\Program Files\Nitro\Reader 3\npdf.dll - Nitro PDF Library
15E298B5EC5B89C5994A59863969D9FF - C:\Windows\system32\npmproxy.dll - Microsoft® Windows® Operating System


==== Chrome Look ======================

Google Wallet - DRAGAN - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

==== IE Start and Search Settings ======================

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
{1E5F0A0C-9800-4755-9F98-0FDC911110AE} BrotherSoft Extreme2 B1 Customized Web Search Url="http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3281348&CUI=UN66749015068537722"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"

==== EOF on Tue 12/03/2013 at 0:30:27.79 ======================

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Ponovo pokreni zoek ;


zatvori browser i ostale pokrenute programe;
deaktiviraj zaštitni softver ( po potrebi ) Uputstvo ;


U beli okvir prozora iskopiraj sledeći tekst:


C:\Windows\tasks\Torntv 2-codedownloader.job;f
C:\Program Files\Torntv 2;fs
Funmoods New Tab;ff
Undetermined;ff
C:\Users\DRAGAN\AppData\LocalLow\Unity\WebPlayer;fs
{1E5F0A0C-9800-4755-9F98-0FDC911110AE};c
emptyalltemp;
autoclean;
emptyclsid;
emptyrecycle.bin;




Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.

offline
  • Pridružio: 14 Jul 2013
  • Poruke: 16

Napisano: 03 Dec 2013 12:21

Zoek.exe Version 4.0.0.5 Updated 30-November-2013
Tool run by DRAGAN on Tue 12/03/2013 at 2:48:36.37.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\DRAGAN\AppData\Local\Temp\Rar$EX00.756\zoek.exe [Script inserted]

==== Older Logs ======================

C:\zoek-results2013-12-02-170707.log 18322 bytes
C:\zoek-results2013-12-03-083027.log 19086 bytes

==== Creating Sample_20131203_0306.zip ======================

Copied file C:\Users\DRAGAN\avast_free_antivirus_setup.exe to sample\avast_free_antivirus_setup.exe
Copied file C:\Users\DRAGAN\CT2431400_MB2_s.exe to sample\CT2431400_MB2_s.exe
sample\avast_free_antivirus_setup.exe renamed to 0EA95F1E762494B5D928ED4D5B5DA29B
sample\CT2431400_MB2_s.exe renamed to FE7269E7B625FA2AC60609236B90301E

C:\Users\Public\Desktop\sample_20131203_0306.zip created successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1536180709-4104921558-1111698551-1000\Software\Microsoft\Internet Explorer\SearchScopes\{1E5F0A0C-9800-4755-9F98-0FDC911110AE} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

ProfilePath: C:\Users\DRAGAN\AppData\Roaming\Mozilla\Firefox\Profiles\1cqr8ha4.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_20131203_0310_.backup

==== Deleting Files \ Folders ======================

C:\Program Files\Torntv 2 deleted
C:\Users\DRAGAN\AppData\LocalLow\Unity\WebPlayer deleted
C:\Program Files\Uninstall Information\ib_uninst_0 deleted
C:\Program Files\Uninstall Information\ib_uninst_396 deleted
C:\Program Files\Uninstall Information\ib_uninst_430 deleted
C:\Program Files\Uninstall Information\ib_uninst_479 deleted
C:\Users\DRAGAN\AppData\Local\jv16PT_temp.tmp deleted
C:\Users\DRAGAN\AppData\Local\CRE deleted
C:\Windows\tasks\Torntv 2-codedownloader.job deleted
C:\Windows\system32\tasks\Torntv 2-codedownloader deleted
C:\Users\DRAGAN\AppData\Roaming\Mozilla\Firefox\Profiles\1cqr8ha4.default\searchplugins\mb2-customized-web-search.xml deleted
C:\Users\DRAGAN\AppData\Roaming\Mozilla\Firefox\Profiles\1cqr8ha4.default\jetpack deleted
C:\Users\DRAGAN\AppData\Roaming\Mozilla\Firefox\Profiles\1cqr8ha4.default\extensions\staged deleted
C:\Users\DRAGAN\avast_free_antivirus_setup.exe deleted
C:\Users\DRAGAN\CT2431400_MB2_s.exe deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [05/22/2013 01:04 PM]

==== Firefox Extensions ======================

ProfilePath: C:\Users\DRAGAN\AppData\Roaming\Mozilla\Firefox\Profiles\1cqr8ha4.default
- DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
- YouTube to MP3 - %ProfilePath%\extensions\youtube2mp3@mondayx.de.xpi
- Funmoods New Tab - %ProfilePath%\extensions\{5ebdca98-43b3-45bb-87e0-716029fb42ab}.xpi
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

AppDir: C:\Program Files\Mozilla Firefox
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
- Java Console - %AppDir%\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\DRAGAN\AppData\Roaming\Mozilla\Firefox\Profiles\1cqr8ha4.default
C36444D7301A8C881FC7296B092609C7 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll - Google Update
4BF70B35B943BD73BD6E13EB7C1BA4B3 - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll - Shockwave Flash
1B197A0ED28DB310AB67591567C3787A - C:\Windows\system32\npdeployJava1.dll - Java Deployment Toolkit 7.0.150.3
D7EFF0B98C370E03D7E2593399D9B669 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll - NVIDIA 3D Vision
75A1232EAC640B782CDD2132B5271AA8 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll - NVIDIA 3D VISION
2B78086E45508ED59364CE75179D729B - C:\Program Files\Nitro\Reader 3\npnitromozilla.dll - Nitro PDF plugin for Firefox and Chrome
0B31B0F8FA99CFD009C8FBEA9E20C9DE - C:\Users\DRAGAN\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin
7B000D95ABFE622F17709D36AF44FBD3 - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll - Java(TM) Platform SE 6 U35
3D3CAF586124C4E8102764C8B3063BB6 - C:\Windows\system32\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director
5DB82B8C515C875AE58E1B8B5997416B - C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit)
2CDA67C1309CA966D8EFEE4EE0D6CA92 - C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll - RealPlayer Version Plugin
4461D2F67A9597EEFC7FA1ED8E251A41 - C:\Program Files\Nitro\Reader 3\npnitroie.dll - Nitro PDF plugin for Internet Explorer
B7B85962BFCFEFECE806A2A2025AA60E - C:\Program Files\Nitro\Reader 3\npdf.dll - Nitro PDF Library
15E298B5EC5B89C5994A59863969D9FF - C:\Windows\system32\npmproxy.dll - Microsoft® Windows® Operating System


==== Deleted Firefox Extensions ======================

C:\Users\DRAGAN\AppData\Roaming\Mozilla\Firefox\Profiles\1cqr8ha4.default\extensions\{5ebdca98-43b3-45bb-87e0-716029fb42ab}.xpi deleted

==== Chrome Look ======================


==== Chrome Fix ======================

C:\Users\DRAGAN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ticker.conduit.com_0.localstorage-journal deleted successfully
C:\Users\DRAGAN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_youtube.conduitapps.com_0.localstorage-journal deleted successfully
C:\Users\DRAGAN\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_isearch.babylon.com_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Torntv 2 deleted successfully

==== Empty IE Cache ======================

C:\Users\DRAGAN\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\DRAGAN\AppData\Local\Mozilla\Firefox\Profiles\1cqr8ha4.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\DRAGAN\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\DRAGAN\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on Tue 12/03/2013 at 3:19:17.75 ======================

Dopuna: 03 Dec 2013 12:27

tokom skeniranja ukljucio se par puta antivirus sa nekim upozorenjem... na kraju se pojavio i jedan kvadratic sa objasnjenjem da izvestaj nije kompletan kako sam ja razumela.

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Kakva je situacija sa racunarom, radi li brze?

offline
  • Pridružio: 14 Jul 2013
  • Poruke: 16

Napisano: 03 Dec 2013 20:25

dobro je Wink radi radi....

Dopuna: 03 Dec 2013 20:38

mogu li da pitam jos ovo : kako da obnovim aviru jer imam jos par dana do isteka registracije....?

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Ne koristim Aviru, ali koliko znam free verzija se uopste ne registruje, jedino ako nesto nisu menjali skoro.

Imas free verziju?

offline
  • Pridružio: 14 Jul 2013
  • Poruke: 16

izvinjavam se avast Very Happy imam free verziju Very Happy

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Vidi sliku



Nemoj da se zeznes pa da registrujes verziju koja se placa, free je sa leve strane.

offline
  • Pridružio: 14 Jul 2013
  • Poruke: 16

Napisano: 04 Dec 2013 11:44

ostalo je jos 36 dana Smile pa posle ce da vidimo kako cemo Smile

Dopuna: 04 Dec 2013 11:44

na engleskom je i ponesto razumem ali ne sve Sad

offline
  • m4rk0  Male
  • Administrator
  • Administrator tech foruma
  • Marko Vasić
  • Gladijator - Maximus Decimus Meridius
  • Pridružio: 14 Jan 2005
  • Poruke: 15766
  • Gde živiš: Majur (Colosseum)

http://www.avast.com/faq.php?article=AVKB9

Tu ti je sve opisano. Imas offline ili online metod registracije, pa izaberi sta ti vise odgovara. Znaci, dovoljan je jedan od navedenih metoda.

Ko je trenutno na forumu
 

Ukupno su 975 korisnika na forumu :: 9 registrovanih, 0 sakrivenih i 966 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: bigfoot, Boris90, Dorcolac, goxin, Koridor, Metanoja, Milos82, repac, TBF1D