Poslao: 07 Maj 2012 16:32
|
offline
- HellenZS
- Građanin
- Pridružio: 07 Maj 2012
- Poruke: 68
- Gde živiš: Loznica
|
Napisano: 07 Maj 2012 12:09
32-bitni windows
Korak #1:
Problem se ispoljava kada uspostavim video poziv na skajpu,sagovornici me ne vide,ali me cuju.
Pocelo je od janura-februara ove godine,do tada je sve bilo kao sto treba da bude.
Antivirus Avast nije detektovao nista,dakle po tom skeniranju,racunar je bio cist.
Koristila sam i device manager ali i on je prikazao da je sve cisto.
Pokusala sam sa reintaliranjem skajpa,kamere i graficke,izbrisala antivirus.
Pokusala da instaliram stariju verziju skajpa i dalje isto.
Koristim mts ADSL osnovni paket (vi cete znati koja je brzina u pitanju).
Deljan opis problema sam ispisala Klik
Korak #2:
Sadrzaj DDS.txt:
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_31
Run by Administrator at 11:24:28 on 2012-05-07
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.447.62 [GMT 2:00]
.
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\RelevantKnowledge\rlvknlg.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ACD Systems\ACDSee Pro\5.0\ACDSeeProInTouch2.exe
C:\Program Files\D-Link\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\PixArt\PAC7302\Monitor.exe
C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\D-Link\Bluetooth Software\BTTray.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\REGSVR32.exe
.
============== Pseudo HJT Report ===============
.
uInternet Connection Wizard,ShellNext = hxxp://ui.skype.com/ui/0/5.5.0.124.259/en/getflash
uURLSearchHooks: YouTube Downloader Toolbar: {f3fee66e-e034-436a-86e4-9690573bee8a} - c:\program files\youtube downloader toolbar\ie\5.6\youtubedownloaderToolbarIE.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\progra~1\micros~2\office12\GRA8E1~1.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: KMPlayer Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: YouTube Downloader Toolbar: {f3fee66e-e034-436a-86e4-9690573bee8a} - c:\program files\youtube downloader toolbar\ie\5.6\youtubedownloaderToolbarIE.dll
TB: KMPlayer Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: YouTube Downloader Toolbar: {f3fee66e-e034-436a-86e4-9690573bee8a} - c:\program files\youtube downloader toolbar\ie\5.6\youtubedownloaderToolbarIE.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Google Update] "c:\documents and settings\administrator\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [Facebook Update] "c:\documents and settings\administrator\local settings\application data\facebook\update\FacebookUpdate.exe" /c /nocrashserver
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [ACPW05EN] "c:\program files\acd systems\acdsee pro\5.0\ACDSeeProInTouch2.exe" /pid ACPW05EN
mRun: [ApnUpdater] "c:\program files\ask.com\updater\Updater.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [PAC7302_Monitor] c:\windows\pixart\pac7302\Monitor.exe
mRun: [<NO NAME>]
mRun: [SearchSettings] "c:\program files\common files\spigot\search settings\SearchSettings.exe"
StartupFolder: c:\docume~1\admini~1\startm~1\programs\startup\yahoo!~1.lnk - c:\program files\yahoo!\widgets\YahooWidgets.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\bttray.lnk - c:\program files\d-link\bluetooth software\BTTray.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: Send To &Bluetooth - c:\program files\d-link\bluetooth software\btsendto_ie_ctx.htm
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\d-link\bluetooth software\btsendto_ie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{57BE58A9-669E-4F79-BDCE-4F6749B6C091} : DhcpNameServer = 192.168.1.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\progra~1\micros~2\office12\GR99D3~1.DLL
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Handler: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - c:\windows\system32\BTXPPanel.dll
Notify: AtiExtEvent - Ati2evxx.dll
Notify: RelevantKnowledge - c:\program files\relevantknowledge\rlls.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\progra~1\micros~2\office12\GRA8E1~1.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\administrator\application data\mozilla\firefox\profiles\ayqqoyic.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=937811&p=
FF - plugin: c:\documents and settings\administrator\application data\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\documents and settings\administrator\application data\mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: c:\documents and settings\administrator\local settings\application data\facebook\video\skype\npFacebookVideoCalling.dll
FF - plugin: c:\documents and settings\administrator\local settings\application data\google\update\1.3.21.111\npGoogleUpdate3.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npdeployJava1.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\3.0.40624.0\npctrlui.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
.
============= SERVICES / DRIVERS ===============
.
R2 Application Updater;Application Updater;c:\program files\application updater\ApplicationUpdater.exe [2012-4-23 785304]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2012-5-4 54760]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\common files\pc tools\smonitor\StartManSvc.exe [2012-5-6 793048]
S2 QuestBasic Service;QuestBasic Service;c:\program files\questbasic\questbasic.exe [2012-1-25 23040]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-4-5 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-5-6 257696]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2012-1-25 1691480]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2010-4-28 704872]
.
=============== Created Last 30 ================
.
2012-05-07 09:07:25 -------- d-----r- c:\program files\Skype
2012-05-06 21:32:08 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-05-06 09:20:15 -------- d-----w- c:\documents and settings\administrator\application data\Search Settings
2012-05-06 09:19:56 -------- d-----w- c:\program files\Application Updater
2012-05-06 09:19:54 -------- d-----w- c:\program files\YouTube Downloader Toolbar
2012-05-06 09:19:54 -------- d-----w- c:\program files\common files\Spigot
2012-05-05 23:31:48 593920 ------w- c:\windows\system32\ati2sgag.exe
2012-05-05 23:26:50 -------- d-----w- C:\ATI
2012-05-05 22:24:58 -------- d-----w- c:\documents and settings\administrator\application data\Registry Mechanic
2012-05-05 22:17:13 880640 ----a-w- c:\windows\system32\UniBox10.ocx
2012-05-05 22:17:13 212992 ----a-w- c:\windows\system32\UniBoxVB12.ocx
2012-05-05 22:17:13 1101824 ----a-w- c:\windows\system32\UniBox210.ocx
2012-05-05 22:17:12 658432 ----a-w- c:\windows\system32\MSCOMCT2.OCX
2012-05-05 22:17:11 37336 ----a-w- c:\windows\system32\CleanMFT32.exe
2012-05-05 22:16:58 -------- d-----w- c:\program files\PC Tools
2012-05-05 22:06:50 -------- d-----w- c:\program files\common files\PC Tools
2012-05-05 22:06:00 -------- d-----w- c:\documents and settings\all users\application data\PC Tools
2012-05-05 22:05:56 -------- d-----w- c:\documents and settings\administrator\application data\Product_RM
2012-05-04 22:17:23 48128 ----a-w- c:\windows\system32\Remove.exe
2012-05-04 22:17:23 -------- d-----w- c:\program files\common files\Eye 312
2012-05-04 22:17:21 457856 ----a-w- c:\windows\system32\drivers\PAC7302.SYS
2012-05-04 22:17:15 129024 ----a-w- c:\windows\system32\SP7302.ax
2012-05-04 22:17:14 14336 ----a-w- c:\windows\system32\P7302USD.dll
2012-05-04 22:17:13 -------- d-----w- c:\windows\PixArt
2012-05-04 22:17:13 -------- d-----w- c:\program files\common files\Pac7302
2012-05-04 18:44:11 -------- d-----w- c:\documents and settings\administrator\Tracing
2012-05-04 18:30:39 -------- d-----w- c:\program files\Microsoft Office Outlook Connector
2012-05-04 18:29:49 54760 ----a-w- c:\windows\system32\drivers\fssfltr_tdi.sys
2012-05-04 18:26:14 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2012-05-04 18:23:26 -------- d-----w- c:\program files\Microsoft
2012-05-04 18:22:51 -------- d-----w- c:\program files\Windows Live SkyDrive
2012-05-04 18:20:35 4927864 ----a-w- c:\program files\common files\windows live\.cache\98d096df1cd2a22\Silverlight.2.0.exe
2012-05-04 18:13:51 74520 ----a-w- c:\program files\common files\windows live\.cache\a8b847971cd2a21\DSETUP.dll
2012-05-04 18:13:51 484632 ----a-w- c:\program files\common files\windows live\.cache\a8b847971cd2a21\DXSETUP.exe
2012-05-04 18:13:51 1670936 ----a-w- c:\program files\common files\windows live\.cache\a8b847971cd2a21\dsetup32.dll
2012-05-04 18:13:10 1013800 ----a-w- c:\program files\common files\windows live\.cache\905b3fe71cd2a21\WindowsXP-KB954708-x86-ENU.exe
2012-05-04 18:05:07 -------- d-----w- c:\program files\common files\Windows Live
2012-04-28 13:43:05 89184 ----a-w- c:\windows\system32\drivers\imagedrv.sys
2012-04-28 13:43:05 57344 ----a-w- c:\windows\system32\ImageDrive.cpl
2012-04-28 13:42:42 38912 ----a-w- c:\windows\system32\picn20.dll
2012-04-28 13:42:41 569344 ----a-w- c:\windows\system32\imagr5.dll
2012-04-28 13:42:41 544768 ----a-w- c:\windows\system32\imagx5.dll
2012-04-28 13:42:39 283920 ----a-w- c:\windows\system32\ImagXpr5.dll
2012-04-28 13:42:35 155648 ----a-w- c:\windows\system32\NeroCheck.exe
2012-04-28 13:38:24 -------- d-----w- c:\documents and settings\administrator\application data\GetRightToGo
2012-04-10 17:26:31 73728 ----a-w- c:\windows\system32\javacpl.cpl
2012-04-10 17:26:31 472808 ----a-w- c:\windows\system32\deployJava1.dll
.
==================== Find3M ====================
.
2012-05-06 22:21:47 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
.
============= FINISH: 11:24:45.90 ===============
File Attach:
mycity.rs/must-login.png
Korak #3:
Gmer1:
mycity.rs/must-login.png
Gmer2:
mycity.rs/must-login.png
Gmer3:
mycity.rs/must-login.png
P.S.
Osecam da ce biti problema koliko hoces.
Dopuna: 07 Maj 2012 13:36
Sad vidim da mi u koraku 2 vise puta izbacuje nesto skype,da nije problem do toga???
Dopuna: 07 Maj 2012 16:32
Ljudi,ima li koga da mi pomogne???
|
|
|
|
Poslao: 07 Maj 2012 16:49
|
offline
- magna86
- Anti Malware Fighter
Rank 2
- Pridružio: 21 Jun 2008
- Poruke: 6104
|
Pozdrav HellenZS.
Iz Control Panela/ Add or Remove deinstaliraj sledece:
Ask Toolbar
RelevantKnowledge
Spigot
> Restartuj PC a potom ponovo pokreni DDS i okaci mi sveze DDS.txt i Attach.txt logove.
|
|
|
|
Poslao: 07 Maj 2012 20:09
|
offline
- HellenZS
- Građanin
- Pridružio: 07 Maj 2012
- Poruke: 68
- Gde živiš: Loznica
|
E ovako:
RelevantKnowledge sam deinstalirala po upustvu preko Add/remove programs,ali spigot i ask tollbar nema,pa sam ih zato nasla preko search-a.Ask toolbar sam izbrisala kad sam ga nasla,ali zato u spigot-u ima jedan foder (search settings) koji ne moze da se izbrise sa delete.
Ovo su DDS posle uradjenog i restarta racunara:
DDS.txt:
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_31
Run by Administrator at 20:03:13 on 2012-05-07
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.447.21 [GMT 2:00]
.
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\Ati2evxx.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\RelevantKnowledge\rlvknlg.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\Program Files\D-Link\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Skype\Updater\Updater.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ACD Systems\ACDSee Pro\5.0\ACDSeeProInTouch2.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\PixArt\PAC7302\Monitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\D-Link\Bluetooth Software\BTTray.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\wuauclt.exe
.
============== Pseudo HJT Report ===============
.
uInternet Connection Wizard,ShellNext = hxxp://ui.skype.com/ui/0/5.5.0.124.259/en/getflash
uURLSearchHooks: YouTube Downloader Toolbar: {f3fee66e-e034-436a-86e4-9690573bee8a} - c:\program files\youtube downloader toolbar\ie\5.6\youtubedownloaderToolbarIE.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\progra~1\micros~2\office12\GRA8E1~1.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: KMPlayer Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: YouTube Downloader Toolbar: {f3fee66e-e034-436a-86e4-9690573bee8a} - c:\program files\youtube downloader toolbar\ie\5.6\youtubedownloaderToolbarIE.dll
TB: KMPlayer Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: YouTube Downloader Toolbar: {f3fee66e-e034-436a-86e4-9690573bee8a} - c:\program files\youtube downloader toolbar\ie\5.6\youtubedownloaderToolbarIE.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Google Update] "c:\documents and settings\administrator\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [Facebook Update] "c:\documents and settings\administrator\local settings\application data\facebook\update\FacebookUpdate.exe" /c /nocrashserver
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [ACPW05EN] "c:\program files\acd systems\acdsee pro\5.0\ACDSeeProInTouch2.exe" /pid ACPW05EN
mRun: [ApnUpdater] "c:\program files\ask.com\updater\Updater.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [PAC7302_Monitor] c:\windows\pixart\pac7302\Monitor.exe
mRun: [<NO NAME>]
mRun: [SearchSettings] "c:\program files\common files\spigot\search settings\SearchSettings.exe"
StartupFolder: c:\docume~1\admini~1\startm~1\programs\startup\yahoo!~1.lnk - c:\program files\yahoo!\widgets\YahooWidgets.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\bttray.lnk - c:\program files\d-link\bluetooth software\BTTray.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: Send To &Bluetooth - c:\program files\d-link\bluetooth software\btsendto_ie_ctx.htm
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\d-link\bluetooth software\btsendto_ie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{57BE58A9-669E-4F79-BDCE-4F6749B6C091} : DhcpNameServer = 192.168.1.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\progra~1\micros~2\office12\GR99D3~1.DLL
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Handler: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - c:\windows\system32\BTXPPanel.dll
Notify: AtiExtEvent - Ati2evxx.dll
Notify: RelevantKnowledge - c:\program files\relevantknowledge\rlls.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\progra~1\micros~2\office12\GRA8E1~1.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\administrator\application data\mozilla\firefox\profiles\ayqqoyic.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=937811&p=
FF - plugin: c:\documents and settings\administrator\application data\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\documents and settings\administrator\application data\mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: c:\documents and settings\administrator\local settings\application data\facebook\video\skype\npFacebookVideoCalling.dll
FF - plugin: c:\documents and settings\administrator\local settings\application data\google\update\1.3.21.111\npGoogleUpdate3.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npdeployJava1.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\3.0.40624.0\npctrlui.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
.
============= SERVICES / DRIVERS ===============
.
R2 Application Updater;Application Updater;c:\program files\application updater\ApplicationUpdater.exe [2012-4-23 785304]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2012-5-4 54760]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\common files\pc tools\smonitor\StartManSvc.exe [2012-5-6 793048]
R2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-4-5 158856]
S2 QuestBasic Service;QuestBasic Service;c:\program files\questbasic\questbasic.exe [2012-1-25 23040]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-5-6 257696]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2012-1-25 1691480]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2010-4-28 704872]
.
=============== Created Last 30 ================
.
2012-05-07 13:49:22 -------- d-----w- c:\documents and settings\administrator\local settings\application data\WMTools Downloaded Files
2012-05-07 10:55:59 -------- d-----w- c:\documents and settings\administrator\application data\BITS
2012-05-07 10:55:57 -------- d-----w- c:\documents and settings\administrator\application data\FlashgetSetup
2012-05-07 10:55:44 -------- d-----w- c:\program files\FlashGet Network
2012-05-07 09:07:25 -------- d-----r- c:\program files\Skype
2012-05-06 21:32:08 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-05-06 09:20:15 -------- d-----w- c:\documents and settings\administrator\application data\Search Settings
2012-05-06 09:19:56 -------- d-----w- c:\program files\Application Updater
2012-05-06 09:19:54 -------- d-----w- c:\program files\YouTube Downloader Toolbar
2012-05-06 09:19:54 -------- d-----w- c:\program files\common files\Spigot
2012-05-05 23:31:48 593920 ------w- c:\windows\system32\ati2sgag.exe
2012-05-05 23:26:50 -------- d-----w- C:\ATI
2012-05-05 22:24:58 -------- d-----w- c:\documents and settings\administrator\application data\Registry Mechanic
2012-05-05 22:17:13 880640 ----a-w- c:\windows\system32\UniBox10.ocx
2012-05-05 22:17:13 212992 ----a-w- c:\windows\system32\UniBoxVB12.ocx
2012-05-05 22:17:13 1101824 ----a-w- c:\windows\system32\UniBox210.ocx
2012-05-05 22:17:12 658432 ----a-w- c:\windows\system32\MSCOMCT2.OCX
2012-05-05 22:17:11 37336 ----a-w- c:\windows\system32\CleanMFT32.exe
2012-05-05 22:16:58 -------- d-----w- c:\program files\PC Tools
2012-05-05 22:06:50 -------- d-----w- c:\program files\common files\PC Tools
2012-05-05 22:06:00 -------- d-----w- c:\documents and settings\all users\application data\PC Tools
2012-05-05 22:05:56 -------- d-----w- c:\documents and settings\administrator\application data\Product_RM
2012-05-04 22:17:23 48128 ----a-w- c:\windows\system32\Remove.exe
2012-05-04 22:17:23 -------- d-----w- c:\program files\common files\Eye 312
2012-05-04 22:17:21 457856 ----a-w- c:\windows\system32\drivers\PAC7302.SYS
2012-05-04 22:17:15 129024 ----a-w- c:\windows\system32\SP7302.ax
2012-05-04 22:17:14 14336 ----a-w- c:\windows\system32\P7302USD.dll
2012-05-04 22:17:13 -------- d-----w- c:\windows\PixArt
2012-05-04 22:17:13 -------- d-----w- c:\program files\common files\Pac7302
2012-05-04 18:44:11 -------- d-----w- c:\documents and settings\administrator\Tracing
2012-05-04 18:30:39 -------- d-----w- c:\program files\Microsoft Office Outlook Connector
2012-05-04 18:29:49 54760 ----a-w- c:\windows\system32\drivers\fssfltr_tdi.sys
2012-05-04 18:26:14 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2012-05-04 18:23:26 -------- d-----w- c:\program files\Microsoft
2012-05-04 18:22:51 -------- d-----w- c:\program files\Windows Live SkyDrive
2012-05-04 18:20:35 4927864 ----a-w- c:\program files\common files\windows live\.cache\98d096df1cd2a22\Silverlight.2.0.exe
2012-05-04 18:13:51 74520 ----a-w- c:\program files\common files\windows live\.cache\a8b847971cd2a21\DSETUP.dll
2012-05-04 18:13:51 484632 ----a-w- c:\program files\common files\windows live\.cache\a8b847971cd2a21\DXSETUP.exe
2012-05-04 18:13:51 1670936 ----a-w- c:\program files\common files\windows live\.cache\a8b847971cd2a21\dsetup32.dll
2012-05-04 18:13:10 1013800 ----a-w- c:\program files\common files\windows live\.cache\905b3fe71cd2a21\WindowsXP-KB954708-x86-ENU.exe
2012-05-04 18:05:07 -------- d-----w- c:\program files\common files\Windows Live
2012-04-28 13:43:05 89184 ----a-w- c:\windows\system32\drivers\imagedrv.sys
2012-04-28 13:43:05 57344 ----a-w- c:\windows\system32\ImageDrive.cpl
2012-04-28 13:42:42 38912 ----a-w- c:\windows\system32\picn20.dll
2012-04-28 13:42:41 569344 ----a-w- c:\windows\system32\imagr5.dll
2012-04-28 13:42:41 544768 ----a-w- c:\windows\system32\imagx5.dll
2012-04-28 13:42:39 283920 ----a-w- c:\windows\system32\ImagXpr5.dll
2012-04-28 13:42:35 155648 ----a-w- c:\windows\system32\NeroCheck.exe
2012-04-28 13:38:24 -------- d-----w- c:\documents and settings\administrator\application data\GetRightToGo
2012-04-10 17:26:31 73728 ----a-w- c:\windows\system32\javacpl.cpl
2012-04-10 17:26:31 472808 ----a-w- c:\windows\system32\deployJava1.dll
.
==================== Find3M ====================
.
2012-05-06 22:21:47 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
.
============= FINISH: 20:04:03.60 ===============
mycity.rs/must-login.png
Attach.txt:
mycity.rs/must-login.png
|
|
|
|
|
|
|
Poslao: 07 Maj 2012 21:12
|
offline
- HellenZS
- Građanin
- Pridružio: 07 Maj 2012
- Poruke: 68
- Gde živiš: Loznica
|
Napisano: 07 Maj 2012 21:01
Malwarebytes Anti-Malware (Trial) 1.61.0.1400
malwarebytes.org
Database version: v2012.05.07.03
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 6.0.2900.5512
Administrator :: HOMEPC [administrator]
Protection: Enabled
5/7/2012 8:47:00 PM
mbam-log-2012-05-07 (20-47-00).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 179905
Time elapsed: 9 minute(s), 27 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 1
C:\Program Files\RelevantKnowledge\rlls.dll (PUP.Adware.RelevantKnowledge) -> Delete on reboot.
Registry Keys Detected: 1
HKLM\SYSTEM\CurrentControlSet\Services\QuestBasic Service (PUP.Zwangi) -> Quarantined and deleted successfully.
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
Folders Detected: 1
C:\Program Files\RelevantKnowledge (PUP.Spyware.MarketScore) -> Delete on reboot.
Files Detected: 5
C:\Program Files\RelevantKnowledge\rlls.dll (PUP.Adware.RelevantKnowledge) -> Delete on reboot.
C:\Documents and Settings\Administrator\My Documents\Downloads\SoftonicDownloader_for_kmplayer.exe (PUP.ToolbarDownloader) -> Quarantined and deleted successfully.
C:\Program Files\QuestBasic\questbasic.exe (PUP.Zwangi) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\rloci.bin (PUP.Spyware.MarketScore) -> Quarantined and deleted successfully.
C:\Program Files\RelevantKnowledge\rlvknlg.exe (PUP.Spyware.MarketScore) -> Quarantined and deleted successfully.
(end)
DDS:
DS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_31
Run by Administrator at 20:58:47 on 2012-05-07
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.447.52 [GMT 2:00]
.
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\Ati2evxx.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\Program Files\D-Link\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ACD Systems\ACDSee Pro\5.0\ACDSeeProInTouch2.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\PixArt\PAC7302\Monitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\D-Link\Bluetooth Software\BTTray.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Opera\opera.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\WINDOWS\notepad.exe
.
============== Pseudo HJT Report ===============
.
uInternet Connection Wizard,ShellNext = hxxp://ui.skype.com/ui/0/5.5.0.124.259/en/getflash
uURLSearchHooks: YouTube Downloader Toolbar: {f3fee66e-e034-436a-86e4-9690573bee8a} - c:\program files\youtube downloader toolbar\ie\5.6\youtubedownloaderToolbarIE.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\progra~1\micros~2\office12\GRA8E1~1.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: KMPlayer Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: YouTube Downloader Toolbar: {f3fee66e-e034-436a-86e4-9690573bee8a} - c:\program files\youtube downloader toolbar\ie\5.6\youtubedownloaderToolbarIE.dll
TB: KMPlayer Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: YouTube Downloader Toolbar: {f3fee66e-e034-436a-86e4-9690573bee8a} - c:\program files\youtube downloader toolbar\ie\5.6\youtubedownloaderToolbarIE.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Google Update] "c:\documents and settings\administrator\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [Facebook Update] "c:\documents and settings\administrator\local settings\application data\facebook\update\FacebookUpdate.exe" /c /nocrashserver
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [ACPW05EN] "c:\program files\acd systems\acdsee pro\5.0\ACDSeeProInTouch2.exe" /pid ACPW05EN
mRun: [ApnUpdater] "c:\program files\ask.com\updater\Updater.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [PAC7302_Monitor] c:\windows\pixart\pac7302\Monitor.exe
mRun: [<NO NAME>]
mRun: [SearchSettings] "c:\program files\common files\spigot\search settings\SearchSettings.exe"
mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
mRunOnce: [Malwarebytes Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
mRunOnce: [Malwarebytes Anti-Malware (cleanup)] rundll32.exe "c:\documents and settings\all users\application data\malwarebytes\malwarebytes' anti-malware\cleanup.dll",ProcessCleanupScript
StartupFolder: c:\docume~1\admini~1\startm~1\programs\startup\yahoo!~1.lnk - c:\program files\yahoo!\widgets\YahooWidgets.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\bttray.lnk - c:\program files\d-link\bluetooth software\BTTray.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: Send To &Bluetooth - c:\program files\d-link\bluetooth software\btsendto_ie_ctx.htm
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\d-link\bluetooth software\btsendto_ie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{57BE58A9-669E-4F79-BDCE-4F6749B6C091} : DhcpNameServer = 192.168.1.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\progra~1\micros~2\office12\GR99D3~1.DLL
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Handler: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - c:\windows\system32\BTXPPanel.dll
Notify: AtiExtEvent - Ati2evxx.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\progra~1\micros~2\office12\GRA8E1~1.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\administrator\application data\mozilla\firefox\profiles\ayqqoyic.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=937811&p=
FF - plugin: c:\documents and settings\administrator\application data\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\documents and settings\administrator\application data\mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: c:\documents and settings\administrator\local settings\application data\facebook\video\skype\npFacebookVideoCalling.dll
FF - plugin: c:\documents and settings\administrator\local settings\application data\google\update\1.3.21.111\npGoogleUpdate3.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npdeployJava1.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\3.0.40624.0\npctrlui.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
.
============= SERVICES / DRIVERS ===============
.
R2 Application Updater;Application Updater;c:\program files\application updater\ApplicationUpdater.exe [2012-4-23 785304]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2012-5-4 54760]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2012-5-7 654408]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\common files\pc tools\smonitor\StartManSvc.exe [2012-5-6 793048]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-5-7 22344]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2012-5-7 40776]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-4-5 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-5-6 257696]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2012-1-25 1691480]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2010-4-28 704872]
SUnknown QuestBasic Service;QuestBasic Service; [x]
.
=============== Created Last 30 ================
.
2012-05-07 18:56:55 54016 ----a-w- c:\windows\system32\drivers\mhpkyn.sys
2012-05-07 18:45:17 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2012-05-07 18:45:17 -------- d-----w- c:\documents and settings\administrator\application data\Malwarebytes
2012-05-07 18:45:08 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
2012-05-07 18:45:07 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-05-07 18:45:07 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-05-07 13:49:22 -------- d-----w- c:\documents and settings\administrator\local settings\application data\WMTools Downloaded Files
2012-05-07 10:55:59 -------- d-----w- c:\documents and settings\administrator\application data\BITS
2012-05-07 10:55:57 -------- d-----w- c:\documents and settings\administrator\application data\FlashgetSetup
2012-05-07 10:55:44 -------- d-----w- c:\program files\FlashGet Network
2012-05-07 09:07:25 -------- d-----r- c:\program files\Skype
2012-05-06 21:32:08 419488 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-05-06 09:20:15 -------- d-----w- c:\documents and settings\administrator\application data\Search Settings
2012-05-06 09:19:56 -------- d-----w- c:\program files\Application Updater
2012-05-06 09:19:54 -------- d-----w- c:\program files\YouTube Downloader Toolbar
2012-05-06 09:19:54 -------- d-----w- c:\program files\common files\Spigot
2012-05-05 23:31:48 593920 ------w- c:\windows\system32\ati2sgag.exe
2012-05-05 23:26:50 -------- d-----w- C:\ATI
2012-05-05 22:24:58 -------- d-----w- c:\documents and settings\administrator\application data\Registry Mechanic
2012-05-05 22:17:13 880640 ----a-w- c:\windows\system32\UniBox10.ocx
2012-05-05 22:17:13 212992 ----a-w- c:\windows\system32\UniBoxVB12.ocx
2012-05-05 22:17:13 1101824 ----a-w- c:\windows\system32\UniBox210.ocx
2012-05-05 22:17:12 658432 ----a-w- c:\windows\system32\MSCOMCT2.OCX
2012-05-05 22:17:11 37336 ----a-w- c:\windows\system32\CleanMFT32.exe
2012-05-05 22:16:58 -------- d-----w- c:\program files\PC Tools
2012-05-05 22:06:50 -------- d-----w- c:\program files\common files\PC Tools
2012-05-05 22:06:00 -------- d-----w- c:\documents and settings\all users\application data\PC Tools
2012-05-05 22:05:56 -------- d-----w- c:\documents and settings\administrator\application data\Product_RM
2012-05-04 22:17:23 48128 ----a-w- c:\windows\system32\Remove.exe
2012-05-04 22:17:23 -------- d-----w- c:\program files\common files\Eye 312
2012-05-04 22:17:21 457856 ----a-w- c:\windows\system32\drivers\PAC7302.SYS
2012-05-04 22:17:15 129024 ----a-w- c:\windows\system32\SP7302.ax
2012-05-04 22:17:14 14336 ----a-w- c:\windows\system32\P7302USD.dll
2012-05-04 22:17:13 -------- d-----w- c:\windows\PixArt
2012-05-04 22:17:13 -------- d-----w- c:\program files\common files\Pac7302
2012-05-04 18:44:11 -------- d-----w- c:\documents and settings\administrator\Tracing
2012-05-04 18:30:39 -------- d-----w- c:\program files\Microsoft Office Outlook Connector
2012-05-04 18:29:49 54760 ----a-w- c:\windows\system32\drivers\fssfltr_tdi.sys
2012-05-04 18:26:14 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2012-05-04 18:23:26 -------- d-----w- c:\program files\Microsoft
2012-05-04 18:22:51 -------- d-----w- c:\program files\Windows Live SkyDrive
2012-05-04 18:20:35 4927864 ----a-w- c:\program files\common files\windows live\.cache\98d096df1cd2a22\Silverlight.2.0.exe
2012-05-04 18:13:51 74520 ----a-w- c:\program files\common files\windows live\.cache\a8b847971cd2a21\DSETUP.dll
2012-05-04 18:13:51 484632 ----a-w- c:\program files\common files\windows live\.cache\a8b847971cd2a21\DXSETUP.exe
2012-05-04 18:13:51 1670936 ----a-w- c:\program files\common files\windows live\.cache\a8b847971cd2a21\dsetup32.dll
2012-05-04 18:13:10 1013800 ----a-w- c:\program files\common files\windows live\.cache\905b3fe71cd2a21\WindowsXP-KB954708-x86-ENU.exe
2012-05-04 18:05:07 -------- d-----w- c:\program files\common files\Windows Live
2012-04-28 13:43:05 89184 ----a-w- c:\windows\system32\drivers\imagedrv.sys
2012-04-28 13:43:05 57344 ----a-w- c:\windows\system32\ImageDrive.cpl
2012-04-28 13:42:42 38912 ----a-w- c:\windows\system32\picn20.dll
2012-04-28 13:42:41 569344 ----a-w- c:\windows\system32\imagr5.dll
2012-04-28 13:42:41 544768 ----a-w- c:\windows\system32\imagx5.dll
2012-04-28 13:42:39 283920 ----a-w- c:\windows\system32\ImagXpr5.dll
2012-04-28 13:42:35 155648 ----a-w- c:\windows\system32\NeroCheck.exe
2012-04-28 13:38:24 -------- d-----w- c:\documents and settings\administrator\application data\GetRightToGo
2012-04-10 17:26:31 73728 ----a-w- c:\windows\system32\javacpl.cpl
2012-04-10 17:26:31 472808 ----a-w- c:\windows\system32\deployJava1.dll
.
==================== Find3M ====================
.
2012-05-06 22:21:47 70304 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
.
============= FINISH: 20:59:30.12 ===============
Attach:
mycity.rs/must-login.png
Dopuna: 07 Maj 2012 21:12
Izvinjavam se.Imam malu bebu pa ne uspevam odmah da vam odgovorim,kasnim sa odgovorima,pa rekoh da ne pomislite da sam odustala...
Hvala vam za trud,nadam se da cemo uspeti da resimo problem.
|
|
|
|
|
|
|