Totalno usporen računar

Totalno usporen računar

offline
  • Pridružio: 30 Dec 2008
  • Poruke: 193

Napisano: 10 Avg 2012 16:35

Računar već jedno vreme radi dosta usporeno.Sporo otvara stranice,dok otvori stranu na netu traje celu večnost. Jako sporo se i gasi.Pošto imam troje dece različite dobi Very Happy i samo jedan računar (na žalost) možete zamisliti šta sve ima na njemu i šta se sve skida sa neta. Imam stcable.net.


OTL logfile created on: 10.8.2012 15:24:57 - Run 1
OTL by OldTimer - Version 3.2.56.0 Folder = C:\Users\Mirjana\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 0000241a | Country: Srbija | Language: SRM | Date Format: d.M.yyyy

2,00 Gb Total Physical Memory | 0,20 Gb Available Physical Memory | 9,76% Memory free
4,00 Gb Paging File | 1,14 Gb Available in Paging File | 28,62% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 68,36 Gb Total Space | 6,50 Gb Free Space | 9,51% Space Free | Partition Type: NTFS
Drive D: | 80,68 Gb Total Space | 14,69 Gb Free Space | 18,21% Space Free | Partition Type: NTFS

Computer Name: MIRJANA-PC | User Name: Mirjana | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012.08.10 15:24:08 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Mirjana\Desktop\OTL.exe
PRC - [2012.08.08 21:32:44 | 000,348,664 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2012.07.26 10:29:46 | 000,244,656 | ---- | M] (Facebook) -- C:\Users\Mirjana\AppData\Local\Facebook\Messenger\2.1.4590.0\FacebookMessenger.exe
PRC - [2012.07.03 13:46:44 | 000,655,944 | ---- | M] (Malwarebytes Corporation) -- d:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012.07.03 13:46:44 | 000,462,920 | ---- | M] (Malwarebytes Corporation) -- D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2012.06.20 13:18:08 | 001,568,976 | ---- | M] (Ask) -- C:\Program Files (x86)\Ask.com\Updater\Updater.exe
PRC - [2012.05.12 20:53:21 | 000,880,496 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
PRC - [2012.05.08 18:39:48 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2012.05.08 18:39:44 | 000,465,360 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe
PRC - [2012.05.08 18:39:43 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2012.03.12 22:25:06 | 000,583,680 | ---- | M] (MyCity) -- C:\Program Files (x86)\MCShield\MCShieldRTM.exe
PRC - [2012.01.18 07:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
PRC - [2012.01.03 15:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2011.06.15 08:19:14 | 000,307,200 | ---- | M] (PowerISO Computing, Inc.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.EXE


========== Modules (No Company Name) ==========

MOD - [2012.08.07 08:43:40 | 000,442,392 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\ppgooglenaclpluginchrome.dll
MOD - [2012.08.07 08:43:39 | 012,235,800 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\PepperFlash\pepflashplayer.dll
MOD - [2012.08.07 08:43:37 | 003,997,720 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\pdf.dll
MOD - [2012.08.07 08:42:21 | 000,526,872 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\libglesv2.dll
MOD - [2012.08.07 08:42:20 | 000,104,984 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\libegl.dll
MOD - [2012.08.07 08:42:09 | 000,144,424 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\avutil-51.dll
MOD - [2012.08.07 08:42:08 | 000,266,792 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\avformat-54.dll
MOD - [2012.08.07 08:42:07 | 002,480,680 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\avcodec-54.dll
MOD - [2012.07.26 10:30:04 | 021,014,960 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Facebook\Messenger\2.1.4590.0\libcef.dll
MOD - [2012.07.26 10:29:40 | 000,283,568 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Facebook\Messenger\2.1.4590.0\CefSharp.WinForms.dll
MOD - [2012.07.26 10:29:36 | 000,455,600 | ---- | M] () -- C:\Users\Mirjana\AppData\Local\Facebook\Messenger\2.1.4590.0\CefSharp.dll
MOD - [2012.06.14 08:07:25 | 011,833,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\a0b35ba07be52485fdb6f36c2b1f880a\System.Web.ni.dll
MOD - [2012.06.14 08:07:05 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\828e99a57411166ccc26d24be089ba44\System.Windows.Forms.ni.dll
MOD - [2012.06.14 00:33:52 | 001,591,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\502adc65e43b9d025cba1fd0bfa964a8\System.Drawing.ni.dll
MOD - [2012.05.10 07:45:50 | 006,611,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\4e26c6b80e18c10fd21607868d6f10cd\System.Data.ni.dll
MOD - [2012.05.10 07:43:58 | 005,452,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\cfb0e4de1afd3f2efbbf39a5e39f646a\System.Xml.ni.dll
MOD - [2012.05.10 07:43:51 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\2a5cbab122112cd4291b684e67460c16\System.Configuration.ni.dll
MOD - [2012.05.10 07:43:50 | 007,967,232 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\9447bd5b21a91081d4275b4c4401b1f9\System.ni.dll
MOD - [2012.05.10 07:43:39 | 011,493,376 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\2ab531f4915cccb998c4e852fb7efd00\mscorlib.ni.dll
MOD - [2010.11.05 03:58:05 | 002,927,616 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2012.03.25 19:49:22 | 000,204,304 | ---- | M] (Nitro PDF Software) [Auto | Running] -- C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe -- (NitroReaderDriverReadSpool2)
SRV:64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012.08.03 15:32:27 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012.07.03 13:46:44 | 000,655,944 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- d:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012.07.03 13:19:28 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.06.15 00:17:46 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012.05.08 18:39:48 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2012.05.08 18:39:44 | 000,465,360 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService)
SRV - [2012.05.08 18:39:43 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2012.01.18 07:44:52 | 000,450,848 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
SRV - [2012.01.03 15:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.02.19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012.07.03 13:46:44 | 000,024,904 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012.05.08 18:39:49 | 000,132,832 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2012.05.08 18:39:49 | 000,098,848 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2012.03.22 21:21:42 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.01.18 07:44:36 | 004,865,568 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64)
DRV:64bit: - [2011.09.16 17:09:16 | 000,027,760 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:64bit: - [2011.06.15 10:30:46 | 000,093,240 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 13:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.13 23:59:33 | 005,020,672 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2009.06.10 22:35:42 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = [Link mogu videti samo ulogovani korisnici]{searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = [Link mogu videti samo ulogovani korisnici]{searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [Link mogu videti samo ulogovani korisnici]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = [Link mogu videti samo ulogovani korisnici]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = sr-rs
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 18 87 1B CE EA 4D CD 01 [binary data]
IE - HKCU\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = [Link mogu videti samo ulogovani korisnici]{searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{EC9461AD-A03F-44B9-97CC-B152BB3C3AB5}: "URL" = [Link mogu videti samo ulogovani korisnici]{searchTerms}&locale=&apn_ptnrs=^ABZ&apn_dtid=^YYYYYY^YY^RS&apn_uid=579a4748-53f3-4ee3-9448-8070628c5f62&apn_sauid=13053AFA-857E-40A5-97D5-548753A5AE94
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://search.avira.com/?l=dis&o=APN10401&gct=hp&dc=EU&locale=en_RS"
FF - prefs.js..browser.search.selectedEngine: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..keyword.URL: "http://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10401&locale=en_RS&apn_uid=579a4748-53f3-4ee3-9448-8070628c5f62&apn_ptnrs=%5EABZ&apn_sauid=13053AFA-857E-40A5-97D5-548753A5AE94&apn_dtid=%5EYYYYYY%5EYY%5ERS&&q="


FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_270.dll File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_270.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_33: C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@nitropdf.com/NitroPDF: C:\Program Files (x86)\Nitro PDF\Reader 2\npnitromozilla.dll ( )
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Mirjana\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Mirjana\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\facebook.com/fbDesktopPlugin: C:\Users\Mirjana\AppData\Local\Facebook\Messenger\2.1.4590.0\npFbDesktopPlugin.dll (Facebook, Inc.)

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\PROGRAM FILES\WEB ASSISTANT\FIREFOX
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\Program Files\Web Assistant\Firefox
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012.06.07 18:05:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.06.19 09:01:42 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012.07.12 09:58:11 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012.06.07 18:05:56 | 000,000,000 | ---D | M]

[2012.06.19 09:02:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mirjana\AppData\Roaming\Mozilla\Extensions
[2012.04.28 16:59:32 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\0\extensions
[2012.08.09 16:03:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions
[2012.06.29 20:25:52 | 000,000,000 | ---D | M] (VideoFileDownload - Download YouTube Videos) -- C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\plugin@videofiledownload.com
[2012.08.09 16:03:10 | 000,000,000 | ---D | M] (Avira SearchFree Toolbar plus Web Protection) -- C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\toolbar@ask.com
[2012.08.09 16:03:10 | 000,002,344 | ---- | M] () -- C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\searchplugins\askcom.xml
[2012.06.23 11:51:39 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012.06.23 11:51:40 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2012.06.15 00:19:07 | 000,085,472 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012.06.15 01:19:17 | 000,001,525 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazon-en-GB.xml
[2012.06.15 01:19:17 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012.06.15 01:19:17 | 000,000,759 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-en-GB.xml
[2012.06.15 01:19:17 | 000,002,782 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\pogodakyu.xml
[2012.06.15 01:19:17 | 000,002,421 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\vokabular.xml
[2012.06.15 01:19:17 | 000,001,333 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-sr.xml

========== Chrome ==========

CHR - homepage: [Link mogu videti samo ulogovani korisnici]
CHR - default_search_provider: Ask (Enabled)
CHR - default_search_provider: search_url = [Link mogu videti samo ulogovani korisnici]{searchTerms}
CHR - default_search_provider: suggest_url = [Link mogu videti samo ulogovani korisnici]{searchTerms},
CHR - homepage: [Link mogu videti samo ulogovani korisnici]
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Mirjana\AppData\Local\Google\Chrome\Application\21.0.1180.75\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Nitro PDF Plug-In (Enabled) = C:\Program Files (x86)\Nitro PDF\Reader 2\npnitromozilla.dll
CHR - plugin: Facebook Desktop (Enabled) = C:\Users\Mirjana\AppData\Local\Facebook\Messenger\2.0.4478.0\npFbDesktopPlugin.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Mirjana\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll
CHR - Extension: Avira Toolbar = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\
CHR - Extension: Google Translate = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb\1.2.3.1_0\
CHR - Extension: YouTube = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google \u043F\u0440\u0435\u0442\u0440\u0430\u0433\u0430 = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: YoWindow Weather = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef\1.33_0\
CHR - Extension: winnie the pooh = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\golfgdoojafiippacodpnlfkmclpdgmo\1_0\
CHR - Extension: 1Click Downloader = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\jplinpmadfkdgipabgcdchbdikologlh\1.5_0\
CHR - Extension: Google \u043F\u0440\u043E\u0432\u0435\u0440\u0430 \u043F\u043E\u0448\u0442\u0435 = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\3.2_0\
CHR - Extension: Autofill = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlmmgnhgdeffjkdckmikfpnddkbbfkkk\5.5_0\
CHR - Extension: Gmail = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (VideoFileDownload) - {82EA3E77-7BD2-4744-A8F2-670770767EC5} - C:\Program Files (x86)\OApps\bho_project.dll (VideoFileDownload)
O2 - BHO: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll File not found
O3 - HKLM\..\Toolbar: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] d:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent File not found
O4 - HKCU..\Run: [Facebook Update] C:\Users\Mirjana\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKCU..\Run: [MCShield Monitor] C:\Program Files (x86)\MCShield\MCShieldRTM.exe (MyCity)
O4 - HKCU..\Run: [uTorrent] C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O4 - Startup: C:\Users\Mirjana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk = C:\Users\Mirjana\AppData\Local\Facebook\Messenger\2.1.4590.0\FacebookMessenger.exe (Facebook)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000019 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda64.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll (Avira Operations GmbH & Co. KG)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [Link mogu videti samo ulogovani korisnici] (Java Plug-in 1.6.0_33)
O16 - DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici] (Java Plug-in 1.6.0_33)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [Link mogu videti samo ulogovani korisnici] (Java Plug-in 1.6.0_33)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 91.102.231.242 91.102.231.241
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1CBE2340-09C3-4B69-AC26-57865F06D04F}: DhcpNameServer = 91.102.231.242 91.102.231.241
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012.03.11 18:52:24 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012.08.10 15:24:19 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Mirjana\Desktop\OTL.exe
[2012.08.09 16:03:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ask.com
[2012.08.09 16:02:52 | 000,000,000 | ---D | C] -- C:\Users\Mirjana\AppData\Local\APN
[2012.08.05 20:41:39 | 000,000,000 | ---D | C] -- C:\Users\Mirjana\AppData\Roaming\DivoGames
[2012.08.02 23:31:24 | 000,000,000 | ---D | C] -- C:\Users\Mirjana\Desktop\New Folder (2)
[2012.08.02 21:15:09 | 000,000,000 | ---D | C] -- C:\ProgramData\OrganicCoffee
[2012.07.31 08:56:57 | 000,000,000 | R--D | C] -- C:\Users\Mirjana\Desktop\Sims3Dash
[2012.07.27 10:20:52 | 000,000,000 | ---D | C] -- C:\Users\Mirjana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
[2012.07.25 21:07:46 | 001,603,672 | ---- | C] (Avira Operations GmbH & Co. KG ) -- C:\Users\Mirjana\Desktop\avira_cloud_tech_preview_setup.exe
[2012.07.23 10:03:31 | 000,000,000 | ---D | C] -- C:\Users\Mirjana\Documents\Activision
[2012.07.23 10:03:31 | 000,000,000 | ---D | C] -- C:\Users\Mirjana\AppData\Local\Activision
[2012.07.23 02:27:32 | 000,000,000 | ---D | C] -- C:\Users\Mirjana\AppData\Roaming\Peter L Jones
[2012.07.23 02:27:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\s3pe
[2012.07.23 02:26:19 | 000,000,000 | ---D | C] -- C:\Program Files\s3pe
[2012.07.15 22:28:58 | 000,000,000 | ---D | C] -- C:\Users\Mirjana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\A Gnomes Home - The Great Crystal Crusade
[2012.07.15 22:27:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\A Gnomes Home - The Great Crystal Crusade
[2012.07.15 15:40:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EA Games

========== Files - Modified Within 30 Days ==========

[2012.08.10 15:33:05 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012.08.10 15:24:22 | 000,000,912 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1001UA.job
[2012.08.10 15:24:08 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Mirjana\Desktop\OTL.exe
[2012.08.10 15:20:03 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.08.10 15:13:31 | 000,000,916 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1000UA.job
[2012.08.10 15:12:02 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1000UA.job
[2012.08.10 15:02:16 | 000,000,916 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1002UA.job
[2012.08.10 13:12:07 | 000,000,932 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1001UA.job
[2012.08.10 10:12:01 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1001Core.job
[2012.08.10 09:24:02 | 000,000,860 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1001Core.job
[2012.08.10 09:07:59 | 000,010,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.08.10 09:07:59 | 000,010,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.08.10 09:02:32 | 1610,113,024 | -HS- | M] () -- C:\hiberfil.sys
[2012.08.09 20:02:00 | 000,000,864 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1002Core.job
[2012.08.09 18:13:01 | 000,000,864 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1000Core.job
[2012.08.09 18:11:03 | 000,000,914 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-424014716-4226924264-1167033291-1000Core.job
[2012.08.09 16:03:13 | 000,002,066 | ---- | M] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2012.08.08 23:17:39 | 000,002,421 | ---- | M] () -- C:\Users\Mirjana\Desktop\Google Chrome.lnk
[2012.08.06 17:11:09 | 000,125,906 | ---- | M] () -- C:\Users\Mirjana\Desktop\466867_3993761295908_1584158510_o.jpg
[2012.08.06 17:10:58 | 000,240,903 | ---- | M] () -- C:\Users\Mirjana\Desktop\221424_3989834037729_1577805233_o.jpg
[2012.08.06 17:10:40 | 000,135,276 | ---- | M] () -- C:\Users\Mirjana\Desktop\614683_3993764575990_261085468_o.jpg
[2012.08.03 15:32:26 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2012.08.03 15:32:26 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2012.07.27 10:20:52 | 000,001,296 | ---- | M] () -- C:\Users\Mirjana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk
[2012.07.25 21:08:18 | 000,001,162 | ---- | M] () -- C:\Users\Public\Desktop\Avira APC.lnk
[2012.07.25 21:07:40 | 001,603,672 | ---- | M] (Avira Operations GmbH & Co. KG ) -- C:\Users\Mirjana\Desktop\avira_cloud_tech_preview_setup.exe
[2012.07.25 20:40:14 | 000,001,280 | ---- | M] () -- C:\Users\Mirjana\Desktop\s3pe - Shortcut.lnk
[2012.07.23 10:11:48 | 009,882,820 | ---- | M] () -- C:\Users\Mirjana\Desktop\vvn-smsd.7z
[2012.07.23 10:01:52 | 000,001,978 | ---- | M] () -- C:\Users\Mirjana\Desktop\[isoHunt] Spiderman_Shattered_Dimensions_(zabranjeno)_Only_-_RELOADED.5990514.TPB.torrent
[2012.07.21 19:42:22 | 000,159,799 | ---- | M] () -- C:\Users\Mirjana\Desktop\[isoHunt] 502143BBB2C98C407774884F88CF2EE225AE49C1.torrent
[2012.07.21 14:12:53 | 000,778,834 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.07.21 14:12:53 | 000,651,938 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.07.21 14:12:53 | 000,120,870 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.07.15 22:28:58 | 000,001,348 | ---- | M] () -- C:\Users\Mirjana\Desktop\A Gnomes Home - The Great Crystal Crusade.lnk
[2012.07.15 20:22:03 | 000,000,786 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012.07.15 20:19:13 | 004,827,680 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012.07.15 15:47:38 | 000,000,613 | ---- | M] () -- C:\Windows\eReg.dat
[2012.07.15 15:40:53 | 000,001,866 | ---- | M] () -- C:\Users\Public\Desktop\Command & Conquer Generals.lnk

========== Files Created - No Company Name ==========

[2012.08.06 17:11:11 | 000,125,906 | ---- | C] () -- C:\Users\Mirjana\Desktop\466867_3993761295908_1584158510_o.jpg
[2012.08.06 17:11:00 | 000,240,903 | ---- | C] () -- C:\Users\Mirjana\Desktop\221424_3989834037729_1577805233_o.jpg
[2012.08.06 17:10:46 | 000,135,276 | ---- | C] () -- C:\Users\Mirjana\Desktop\614683_3993764575990_261085468_o.jpg
[2012.07.25 21:08:18 | 000,001,162 | ---- | C] () -- C:\Users\Public\Desktop\Avira APC.lnk
[2012.07.25 20:40:14 | 000,001,280 | ---- | C] () -- C:\Users\Mirjana\Desktop\s3pe - Shortcut.lnk
[2012.07.23 10:11:40 | 009,882,820 | ---- | C] () -- C:\Users\Mirjana\Desktop\vvn-smsd.7z
[2012.07.23 10:01:59 | 000,001,978 | ---- | C] () -- C:\Users\Mirjana\Desktop\[isoHunt] Spiderman_Shattered_Dimensions_(zabranjeno)_Only_-_RELOADED.5990514.TPB.torrent
[2012.07.21 19:42:41 | 000,159,799 | ---- | C] () -- C:\Users\Mirjana\Desktop\[isoHunt] 502143BBB2C98C407774884F88CF2EE225AE49C1.torrent
[2012.07.15 22:28:58 | 000,001,348 | ---- | C] () -- C:\Users\Mirjana\Desktop\A Gnomes Home - The Great Crystal Crusade.lnk
[2012.07.15 15:40:53 | 000,001,866 | ---- | C] () -- C:\Users\Public\Desktop\Command & Conquer Generals.lnk
[2012.07.14 21:08:45 | 000,000,613 | ---- | C] () -- C:\Windows\eReg.dat
[2012.06.07 18:00:55 | 000,165,449 | ---- | C] () -- C:\Windows\hpoins28.dat
[2012.06.07 18:00:55 | 000,000,442 | ---- | C] () -- C:\Windows\hpomdl28.dat
[2012.03.23 03:28:07 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2012.03.22 20:29:23 | 000,764,302 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012.03.22 20:28:24 | 000,033,134 | ---- | C] () -- C:\Users\Mirjana\AppData\Roaming\UserTile.png
[2012.01.18 07:44:00 | 010,920,984 | ---- | C] () -- C:\Windows\SysWow64\LogiDPP.dll
[2012.01.18 07:44:00 | 000,336,408 | ---- | C] () -- C:\Windows\SysWow64\DevManagerCore.dll
[2012.01.18 07:44:00 | 000,104,472 | ---- | C] () -- C:\Windows\SysWow64\LogiDPPApp.exe

========== Alternate Data Streams ==========

@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:A6E01F67
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:56C66609
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:1B3549F2
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:02B823FE
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:D8F9D810
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:05F547A9

< End of report >

[Link mogu videti samo ulogovani korisnici]

Dopuna: 10 Avg 2012 16:45

Da,zaboravila sam da imam Aviru antivrus,Malwarebytes Anti-Malware i MCShield Real-Time Monitor.



rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Pozdrav Mirabe

Ponovo pokreni program OTL dvoklikom na ikonicu;

U beli okvir prozora gde piše Custom Scans/Fixes iskopirati sledeći tekst:

:OTL
IE - HKCU\..\SearchScopes\{EC9461AD-A03F-44B9-97CC-B152BB3C3AB5}: "URL" = http://websearch.ask.com/redirect?client=ie&tb.....crm&q={searchTerms}&locale=&apn_ptnrs=^ABZ&apn_dtid=^YYYYYY^YY^RS&apn_uid=579a4748-53f3-4ee3-9448-8070628c5f62&apn_sauid=13053AFA-857E-40A5-97D5-548753A5AE94
FF - prefs.js..browser.search.selectedEngine: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..keyword.URL: "http://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10401&locale=en_RS&apn_uid=579a4748-53f3-4ee3-9448-8070628c5f62&apn_ptnrs=%5EABZ&apn_sauid=13053AFA-857E-40A5-97D5-548753A5AE94&apn_dtid=%5EYYYYYY%5EYY%5ERS&&q="
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\Program Files\Web Assistant\Firefox
FF - prefs.js..browser.startup.homepage: "http://search.avira.com/?l=dis&o=APN10401&gct=hp&dc=EU&locale=en_RS"
[2012.08.09 16:03:10 | 000,000,000 | ---D | M] (Avira SearchFree Toolbar plus Web Protection) -- C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\toolbar@ask.com
[2012.08.09 16:03:10 | 000,002,344 | ---- | M] () -- C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\searchplugins\askcom.xml
CHR - default_search_provider: Ask (Enabled)
CHR - default_search_provider: search_url = http://websearch.ask.com/redirect?client=cr&sr.....ERS&q={searchTerms}
CHR - default_search_provider: suggest_url = http://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms},
CHR - Extension: Avira Toolbar = C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\
O2 - BHO: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll File not found
O3 - HKLM\..\Toolbar: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Ask)
@Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:A6E01F67
@Alternate Data Stream - 121 bytes -> C:\ProgramData\TEMP:56C66609
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:1B3549F2
@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:02B823FE
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:D8F9D810
@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:05F547A9

:files
C:\Program Files (x86)\Ask.com

:commands
[emptytemp]
[EMPTYJAVA]


Klikni taster Run Fix;


Log koji dobiješ iskopiraj ovde u poruci.



offline
  • Pridružio: 30 Dec 2008
  • Poruke: 193

Napisano: 10 Avg 2012 17:49

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21799

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21769
IconResource=%SystemRoot%\system32\imageres.dll,-183
Evo ja sam dobila ovo ali sam morala da restartujem računar (tako mi je traženo)

Dopuna: 10 Avg 2012 17:50

E izvini,ovo je kog koji sam dobila

All processes killed
========== OTL ==========
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EC9461AD-A03F-44B9-97CC-B152BB3C3AB5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EC9461AD-A03F-44B9-97CC-B152BB3C3AB5}\ not found.
Prefs.js: "Ask.com" removed from browser.search.selectedEngine
Prefs.js: "Ask.com" removed from browser.search.order.1
Prefs.js: "Ask.com" removed from browser.search.defaultengine
Prefs.js: "Ask.com" removed from browser.search.defaultenginename
Prefs.js: "http://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-3&o=APN10401&locale=en_RS&apn_uid=579a4748-53f3-4ee3-9448-8070628c5f62&apn_ptnrs=%5EABZ&apn_sauid=13053AFA-857E-40A5-97D5-548753A5AE94&apn_dtid=%5EYYYYYY%5EYY%5ERS&&q=" removed from keyword.URL
File HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\Program Files\Web Assistant\Firefox not found.
Prefs.js: "http://search.avira.com/?l=dis&o=APN10401&gct=hp&dc=EU&locale=en_RS" removed from browser.startup.homepage
C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\toolbar@ask.com\searchplugins folder moved successfully.
C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully.
C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\toolbar@ask.com\defaults folder moved successfully.
C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully.
C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\toolbar@ask.com\chrome\content folder moved successfully.
C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\toolbar@ask.com\chrome folder moved successfully.
C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\extensions\toolbar@ask.com folder moved successfully.
C:\Users\Mirjana\AppData\Roaming\Mozilla\Firefox\Profiles\qu61fbbn.default\searchplugins\askcom.xml moved successfully.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\tb_ux folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\lib folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\content_script\hack folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\content_script folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\config\skin\js folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\config\skin\images folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\config\skin\css folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\config\skin folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\config\locales\en folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\config\locales folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\config folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0\background folder moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaangaohdajkgeopjhpbnlpkehbhmbj\7.15.4.0_0 folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater deleted successfully.
C:\Program Files (x86)\Ask.com\Updater\Updater.exe moved successfully.
ADS C:\ProgramData\TEMP:A6E01F67 deleted successfully.
ADS C:\ProgramData\TEMP:56C66609 deleted successfully.
ADS C:\ProgramData\TEMP:1B3549F2 deleted successfully.
ADS C:\ProgramData\TEMP:02B823FE deleted successfully.
ADS C:\ProgramData\TEMP:D8F9D810 deleted successfully.
ADS C:\ProgramData\TEMP:05F547A9 deleted successfully.
========== FILES ==========
C:\Program Files (x86)\Ask.com\Updater folder moved successfully.
C:\Program Files (x86)\Ask.com\assets\oobe folder moved successfully.
C:\Program Files (x86)\Ask.com\assets folder moved successfully.
C:\Program Files (x86)\Ask.com folder moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Andjela
->Temp folder emptied: 38825407 bytes
->Temporary Internet Files folder emptied: 47936390 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 236073180 bytes
->Flash cache emptied: 58469 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56468 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Mirjana
->Temp folder emptied: 5461398754 bytes
->Temporary Internet Files folder emptied: 72982669 bytes
->Java cache emptied: 8292 bytes
->FireFox cache emptied: 78176834 bytes
->Google Chrome cache emptied: 73719045 bytes
->Flash cache emptied: 4870337 bytes

User: Nikola
->Temp folder emptied: 563679529 bytes
->Temporary Internet Files folder emptied: 8697498 bytes
->Java cache emptied: 3813850234 bytes
->Google Chrome cache emptied: 272474107 bytes
->Flash cache emptied: 49386 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 727704521 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50333 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 10.873,00 mb


[EMPTYJAVA]

User: All Users

User: Andjela
->Java cache emptied: 0 bytes

User: Default

User: Default User

User: Mirjana
->Java cache emptied: 0 bytes

User: Nikola
->Java cache emptied: 0 bytes

User: Public

Total Java Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.56.0 log created on 08102012_172611

Files\Folders moved on Reboot...
C:\Users\Andjela\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File\Folder C:\Users\Mirjana\AppData\Local\Temp\etilqs_4cBuXgUW07Gm8fL not found!
File\Folder C:\Users\Mirjana\AppData\Local\Temp\etilqs_4XcrSBgpZKf2bfp not found!
File\Folder C:\Users\Mirjana\AppData\Local\Temp\etilqs_Byl1nn00aS9uGEq not found!
File\Folder C:\Users\Mirjana\AppData\Local\Temp\etilqs_G7gQ9cBWz7QTdgs not found!
File\Folder C:\Users\Mirjana\AppData\Local\Temp\etilqs_SoOTE9zxqNufSdH not found!
File move failed. C:\Users\Mirjana\AppData\Local\Temp\FXSAPIDebugLogFile.txt scheduled to be moved on reboot.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0 moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1 moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2 moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3 moved successfully.
C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\index moved successfully.
C:\Users\Nikola\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

PendingFileRenameOperations files...
File C:\Users\Andjela\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!
File C:\Users\Mirjana\AppData\Local\Temp\etilqs_4cBuXgUW07Gm8fL not found!
File C:\Users\Mirjana\AppData\Local\Temp\etilqs_4XcrSBgpZKf2bfp not found!
File C:\Users\Mirjana\AppData\Local\Temp\etilqs_Byl1nn00aS9uGEq not found!
File C:\Users\Mirjana\AppData\Local\Temp\etilqs_G7gQ9cBWz7QTdgs not found!
File C:\Users\Mirjana\AppData\Local\Temp\etilqs_SoOTE9zxqNufSdH not found!
[2012.03.22 19:41:24 | 000,000,000 | ---- | M] () C:\Users\Mirjana\AppData\Local\Temp\FXSAPIDebugLogFile.txt : Unable to obtain MD5
File C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0 not found!
File C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1 not found!
File C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2 not found!
File C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3 not found!
File C:\Users\Mirjana\AppData\Local\Google\Chrome\User Data\Default\Cache\index not found!
File C:\Users\Nikola\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!

Registry entries deleted on Reboot...

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Dobro je, trebalo bi da internet bolje radi, jesi proverila?

Kakvo je sada stanje, ima li poboljsanja?

offline
  • Pridružio: 30 Dec 2008
  • Poruke: 193

Mislim da je bolje,brže otvara stranice,osim što mi se pojavljuje poruka da je došlo do prestanka rada Flash playera i ako sam u nekoj igrici na netu,ugasi se slika.

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Pokreni OTL i klkni CleanUp.

Nema malware-a u sistemu. Pocistili smo neke nezeljene toolbare i temp fajlove.
Mozes da otvoris temu u Windows forumu da se optimizuje sistem i da resis problem sa Flash playerom.

Ovde se bavimo samo malware-om.


Pozdrav.

offline
  • Pridružio: 30 Dec 2008
  • Poruke: 193

Hvala na pomoći! Very Happy

Ko je trenutno na forumu
 

Ukupno su 888 korisnika na forumu :: 54 registrovanih, 4 sakrivenih i 830 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: acatomic, amaterSRB, aramis s, avijacija, Bane san, bojan581, boxbole, CraniumWhite, cuculo, darkojbn, dejno, Demi87, divison, ElvisP, Feller, Frunze, ivica976, Kubovac, kunktator, kuntalo, Litostroton, M74AB3, magyar, mantrox, Marko1238, mat, menk, Mercury, mikelija, Miki281, MiroslavD, Miškić, Mskok, NNPD, Paki, Paklenica, Parker, Paško, peradetlić, PrincipL, proka89, raptorsi, sluga, Smd, Srky Boy, sspp, Stod, TalicniTom, tmanda323, Toper, Uros Cuore Sportivo, vidra1, Vlada1389, zlaya011