Problem sa AdBlock

Problem sa AdBlock

offline
  • Aleksandar Dimitrijević
  • Vozač Motornih Vozila
  • Pridružio: 15 Nov 2013
  • Poruke: 96
  • Gde živiš: Prokuplje

Napisano: 01 Jan 2015 18:21

Pozdrav svima.Vec duze vreme nemogu da idem na neke sajtove koji ne dozvoljavaju Adblock programe.Neznam kako to da resim,davno sam skidao dodatak za Operu,ali sam to obrisao i onda mi se ovo pojavilo pre jedno 2-3 meseca.A i cesto mi se desava da mi Opera automatski skida nekakve dodatke koji skidaju neke programe.Ako moze neko da mi pomogne da se resim svih stvari u kompu koje imaju bilo kakve veze sa Adblockom.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-01-2015
Ran by user (administrator) on USER-PC on 01-01-2015 09:13:36
Running from C:\Users\user\Desktop
Loaded Profiles: user & UpdatusUser (Available profiles: user & UpdatusUser)
Platform: Microsoft Windows 7 Ultimate (X86) OS Language: English (United States)
Internet Explorer Version 9 (Default browser: Launcher)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Cherished Technololgy LIMITED) C:\ProgramData\IePluginServices\PluginService.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(TODO: <Company name>) C:\Program Files\STab\ProtectService.exe
(SearchProtect) C:\Program Files\STab\CmdShell.exe
(Realtek Semiconductor Corp.) C:\Windows\SOUNDMAN.EXE
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Sonix Technology Co., Ltd.) C:\Program Files\Common Files\SNP2UVC\tsnp2uvc.exe
(Aztec Media Inc) C:\Program Files\Settings Manager\smdmf\SmdmFService.exe
(TODO: <Company name>) C:\Program Files\STab\HPNotify.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(PC Utilities Software Limited) C:\Program Files\Optimizer Pro\OptProSmartScan.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Aztec Media Inc) C:\Program Files\Settings Manager\smdmf\SmdmFService.exe
(Aztec Media Inc) C:\Program Files\Settings Manager\smdmf\smdmfu.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
(Cool Mirage) C:\Users\user\AppData\Roaming\TornTV.com\TornTVSvc.exe
(PC Utilities Software Limited) C:\Program Files\Optimizer Pro\OptProReminder.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
() C:\Program Files\Opera\26.0.1656.60\opera_crashreporter.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Opera Software) C:\Program Files\Opera\26.0.1656.60\opera.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SoundMan] => C:\Windows\SOUNDMAN.EXE [598016 2007-03-09] (Realtek Semiconductor Corp.)
HKLM\...\Run: [CmPCIaudio] => RunDll32 CMICNFG3.cpl,CMICtrlWnd
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-09] (Oracle Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-03-15] (Adobe Systems Incorporated)
HKLM\...\Run: [SwitchBoard] => C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeCS5.5ServiceManager] => C:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [1523360 2011-01-12] (Adobe Systems Incorporated)
HKLM\...\Run: [snp2uvc] => C:\Windows\vsnp2uvc.exe
HKLM\...\Run: [tsnp2uvc] => C:\Program Files\Common Files\SNP2UVC\tsnp2uvc.exe [322560 2012-02-23] (Sonix Technology Co., Ltd.)
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\Run: [Google Update] => "C:\Users\user\AppData\Local\Google\Update\GoogleUpdate.exe" /c
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\Run: [Optimizer Pro] => C:\Program Files\Optimizer Pro\OptProLauncher.exe [148048 2014-10-28] (PC Utilities Software Limited)
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\Run: [LiveSupport] => "C:\Program Files\LiveSupport\LiveSupport.exe" /noshow /log
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [30872168 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\MountPoints2: {dae1397b-60c9-11e4-aa62-0013d4eaccd8} - F:\autorun.exe
AppInit_DLLs: C:\Users\user\AppData\Local\Linkey\IEEXTE~1\iedll.dll => C:\Users\user\AppData\Local\Linkey\IEExtension\iedll.dll [175632 2014-08-31] (Aztec Media Inc)
HKLM\...\AppCertDlls: [x86] -> C:\Program Files\Settings Manager\smdmf\sysapcrt.dll [488464 2014-09-21] ()
HKLM\...\AppCertDlls: [x64] -> c:\program files\settings manager\smdmf\x64\sysapcrt.dll
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com/fwlink/?LinkId=56626&homep.....XX9RW16QK2
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = isearch.omiga-plus.com/?type=hp&ts=14191074.....XX9RW16QK2
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com/fwlink/?LinkId=56626&homep.....69&src=hmp
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = msn.com/?ocid=iehp
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = isearch.omiga-plus.com/?type=hp&ts=14191074.....XX9RW16QK2
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = websearch.searc-hall.info/?pid=2461&r=2014/.....S&unqvl=65
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\Software\Microsoft\Internet Explorer\Main,First Home Page = g.msn.com/1ewenusDefaultPack/UP97_FRPage
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe sweet-page.com/?type=sc&ts=1412114700&f.....XX9RW16QK2
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = default-search.net/search?sid=503&aid=1.....&src=ds&p={searchTerms}
SearchScopes: HKLM -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = websearch.searc-hall.info/?l=1&q={searchTerms}&pid=2461&r=2014/10/31&hid=5923529126752973976&lg=EN&cc=RS&unqvl=65
SearchScopes: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = default-search.net/search?sid=503&aid=1.....&src=ds&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = websearch.searc-hall.info/?l=1&q={searchTerms}&pid=2461&r=2014/10/31&hid=5923529126752973976&lg=EN&cc=RS&unqvl=65
BHO: TotalPlusHD-3.1V20.12 -> {11111111-1111-1111-1111-110611321185} -> C:\Program Files\TotalPlusHD-3.1V20.12\TotalPlusHD-3.1V20.12-bho.dll (HDPlus-3.1TotalV20.12)
BHO: TornPlusTV_version1.11 -> {11111111-1111-1111-1111-110611881155} -> C:\Program Files\TornPlusTV_version1.11\TornPlusTV_version1.11-bho.dll (Qwerty)
BHO: Linkey -> {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} -> C:\Users\user\AppData\Local\Linkey\IEExtension\iedll.dll (Aztec Media Inc)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Hosts: 194.145.200.27 pagead2.googlesyndication.com
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default
FF NewTab: chrome://quick_start/content/index.html
FF DefaultSearchEngine: default-search.net
FF DefaultSearchEngine,S: WebSearch
FF DefaultSearchUrl: hxxp://websearch.searc-hall.info/?pid=2461&r=2014/10/31&hid=5923529126752973976&lg=EN&cc=RS&unqvl=65&l=1&q=
FF SearchEngineOrder.1: default-search.net
FF SearchEngineOrder.1,S: WebSearch
FF SearchEngineOrder.3: Bing
FF SelectedSearchEngine: default-search.net
FF SelectedSearchEngine,S: WebSearch
FF Homepage: hxxp://www.default-search.net?sid=503&aid=100&itype=n&ver=13986&tm=569&src=hmp
FF Keyword.URL: hxxp://www.default-search.net/search?sid=503&aid=100&itype=n&ver=13986&tm=569&src=ds&p=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @omaha.maxiget.com/Maxiget Updater;version=3 -> C:\Program Files\Maxiget\Updater\70.3.29.7018\npMaxigetUpdater3.dll (Maxiget Ltd.)
FF Plugin: @omaha.maxiget.com/Maxiget Updater;version=9 -> C:\Program Files\Maxiget\Updater\70.3.29.7018\npMaxigetUpdater3.dll (Maxiget Ltd.)
FF Plugin: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll No File
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll No File
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3928567857-1886121683-2546958505-1000: @tools.google.com/Google Update;version=3 -> C:\Users\user\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\searchplugins\bingp.xml
FF SearchPlugin: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\searchplugins\default-search.xml
FF SearchPlugin: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\searchplugins\WebSearch.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\default-search.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\omiga-plus.xml
FF Extension: TornPlusTV_version1.11 - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\5760ec0d6ec24a119c6398f@fa137c6b34f842bd805263bee28d76.com [2014-12-20]
FF Extension: TotalPlusHD-3.1V20.12 - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com [2014-12-20]
FF Extension: GoSave - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\8K375@xU.org [2014-12-08]
FF Extension: Linkey for Firefox - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\extension@linkeyproject.com [2014-12-22]
FF Extension: Fast Start - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\faststartff@gmail.com [2014-12-20]
FF Extension: YoutubeAdBlocke - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\FypGfh@qB8ji.org [2014-12-08]
FF Extension: jid1xgtdawe3yyUeBQjetpack - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\jid1-xgtdawe3yyUeBQ@jetpack [2014-12-24]
FF Extension: NextCoup - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\of6h@E.edu [2014-12-08]
FF Extension: uriloaderpdfjs - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\uriloader@pdf.js [2014-12-24]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\extensions\faststartff@gmail.com
FF StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox\firefox.exe isearch.omiga-plus.com/?type=sc&ts=14191074.....XX9RW16QK2

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-14]
CHR Extension: (Google Drive) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-14]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-07-04]
CHR Extension: (GoSave) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfodefnaodpgpokgdhfcmgpadficdkcf [2014-10-31]
CHR Extension: (Google Search) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-14]
CHR Extension: (Exfm Explorer) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehohhddamheegbbkabfgegbaeminghlb [2014-10-31]
CHR Extension: (flmfagndkngjknjjcoejaihmibcfcjdh) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\flmfagndkngjknjjcoejaihmibcfcjdh [2014-12-24]
CHR Extension: (NextCoup) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaajcacjemkanjghifbigalaconkijbm [2014-12-06]
CHR Extension: (TotalPlusHD-3.1V20.12) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb [2014-12-20]
CHR Extension: (nilidoodajjnlapacccmliohagelpanf) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nilidoodajjnlapacccmliohagelpanf [2014-12-24]
CHR Extension: (Google Wallet) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-14]
CHR HKLM\...\Chrome\Extension: [fpmeembnagmagppkgghhfjfdfajdfcah] - C:\Users\user\AppData\Local\Linkey\ChromeExtension\ChromeExtension.crx [2014-12-22]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - No Path

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-20] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-20] (globalUpdate) [File not signed]
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [705416 2014-09-23] (Cherished Technololgy LIMITED)
R2 IHProtect Service; C:\Program Files\STab\ProtectService.exe [158864 2014-11-09] (TODO: <Company name>)
S2 mglupdate; C:\Program Files\Maxiget\Updater\MaxigetUpdater.exe [131480 2014-11-04] (Maxiget Ltd.)
S3 mglupdatem; C:\Program Files\Maxiget\Updater\MaxigetUpdater.exe [131480 2014-11-04] (Maxiget Ltd.)
R2 SmdmFService; C:\Program Files\Settings Manager\smdmf\SmdmFService.exe [3572240 2014-09-21] (Aztec Media Inc)
S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 trntv; C:\Users\user\AppData\Roaming\TornTV.com\TornTVSvc.exe [19456 2014-11-18] (Cool Mirage) [File not signed]
S2 gupdate; "C:\Program Files\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files\Google\Update\GoogleUpdate.exe" /medsvc [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 ALCXWDM; C:\Windows\System32\drivers\RTKVAC.SYS [4075816 2007-05-03] (Realtek Semiconductor Corp.)
R3 cmuda3; C:\Windows\System32\drivers\cmudax3.sys [1872192 2009-11-30] (C-Media Inc)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [243128 2014-12-22] (Disc Soft Ltd)
R1 F06DEFF2-5B9C-490D-910F-35D3A9119622; C:\Program Files\Settings Manager\smdmf\smdmfmgrc2.cfg [34192 2014-09-21] (Aztec Media Inc)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [7680 2006-10-19] ()
R3 nvmpu401; C:\Windows\System32\drivers\nvmpu401.sys [10240 2005-04-13] (NVIDIA Corporation)
R0 Si3114r5; C:\Windows\System32\DRIVERS\Si3114r5.sys [210472 2008-04-29] (Silicon Image, Inc)
R0 SiFilter; C:\Windows\System32\DRIVERS\SiWinAcc.sys [17064 2008-04-29] (Silicon Image, Inc.)
R0 SiRemFil; C:\Windows\System32\DRIVERS\SiRemFil.sys [12200 2008-04-29] (Silicon Image, Inc.)
R1 {bb7b7a60-f574-47c2-8a0b-4c56f2da9802}w; C:\Windows\System32\drivers\{bb7b7a60-f574-47c2-8a0b-4c56f2da9802}w.sys [43152 2014-09-30] (StdLib)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [102272 2011-10-23] (Huawei Technologies Co., Ltd.)

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-01 09:13 - 2015-01-01 09:14 - 00021401 _____ () C:\Users\user\Desktop\FRST.txt
2015-01-01 09:10 - 2015-01-01 09:13 - 00000000 ____D () C:\FRST
2015-01-01 09:10 - 2015-01-01 09:10 - 01114624 _____ (Farbar) C:\Users\user\Desktop\FRST.exe
2014-12-31 23:04 - 2014-12-31 23:04 - 00594776 _____ () C:\Users\user\Downloads\Installation (2).exe
2014-12-31 08:30 - 2014-12-31 08:30 - 00594792 _____ () C:\Users\user\Downloads\Installation (1).exe
2014-12-31 08:07 - 2014-12-31 08:07 - 00153161 _____ () C:\Users\user\Downloads\[kickass.so]call.of.duty.2.pc.dvd.key.1.3.patch.nocd.(zabranjeno).torrent
2014-12-31 07:22 - 2014-12-31 07:22 - 00319113 _____ () C:\Users\user\Downloads\HARD.TRUCK.18.WHEELS.OF.STEEL.V1.0.ENG.GIMPSRUS.NOCD.ZIP
2014-12-31 07:21 - 2014-12-31 07:21 - 00000000 ____D () C:\Users\user\Documents\18 WoS Across America
2014-12-31 07:20 - 2015-01-01 09:09 - 00000000 ____D () C:\Program Files\18 WoS Across America
2014-12-31 07:13 - 2014-12-31 07:13 - 00028171 _____ () C:\Users\user\Downloads\[kickass.so]18.wheels.of.steel.across.america.torrent
2014-12-31 06:57 - 2014-12-31 06:58 - 00594784 _____ () C:\Users\user\Downloads\Installation.exe
2014-12-31 06:43 - 2014-12-31 07:17 - 00000000 ____D () C:\Users\user\Documents\Euro Truck Simulator 2
2014-12-31 06:25 - 2014-12-31 06:25 - 00011590 _____ () C:\Users\user\Downloads\[kickass.so]euro.truck.simulator.2.full.p2p.torrent
2014-12-30 13:56 - 2014-12-30 13:56 - 00025912 _____ () C:\Users\user\Downloads\james-bond-live-and-let-die-1973-serbian-yify-30696.zip
2014-12-30 13:24 - 2014-12-30 13:24 - 00019043 _____ () C:\Users\user\Downloads\[kickass.so]james.bond.live.and.let.die.1973.720p.brrip.x264.yify.torrent
2014-12-30 13:24 - 2014-12-30 13:24 - 00019043 _____ () C:\Users\user\Downloads\[kickass.so]james.bond.live.and.let.die.1973.720p.brrip.x264.yify (1).torrent
2014-12-30 13:11 - 2014-12-30 13:11 - 00019428 _____ () C:\Users\user\Downloads\[kickass.so]james.bond.live.and.let.die.1973.1080p.brrip.x264.yify.torrent
2014-12-30 13:11 - 2014-12-30 13:11 - 00019428 _____ () C:\Users\user\Downloads\[kickass.so]james.bond.live.and.let.die.1973.1080p.brrip.x264.yify (1).torrent
2014-12-27 05:29 - 2014-12-27 05:29 - 00002066 _____ () C:\Users\Public\Desktop\Battlefield 1942 The Road To Rome.lnk
2014-12-25 09:44 - 2014-12-25 09:44 - 00000000 ____D () C:\Users\user\Desktop\The misfit brigate
2014-12-22 04:26 - 2015-01-01 08:46 - 00000000 ____D () C:\ProgramData\smdmf
2014-12-22 04:26 - 2014-12-22 04:26 - 00000000 ____D () C:\Users\user\AppData\Roaming\FirefoxToolbar
2014-12-22 04:26 - 2014-12-22 04:26 - 00000000 ____D () C:\Users\user\AppData\Local\Linkey
2014-12-22 04:26 - 2014-12-22 04:26 - 00000000 ____D () C:\Program Files\Settings Manager
2014-12-22 04:25 - 2014-12-22 04:25 - 00000000 ____D () C:\Users\user\AppData\Roaming\TuneUp Software
2014-12-22 04:25 - 2014-12-22 04:25 - 00000000 ____D () C:\Users\user\AppData\Local\TuneUp Software
2014-12-22 04:23 - 2014-12-22 04:23 - 00001900 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-12-22 04:23 - 2014-12-22 04:23 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-12-22 04:23 - 2014-12-22 04:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-12-22 04:22 - 2014-12-22 04:26 - 00000000 ____D () C:\Users\user\AppData\Roaming\RHEng
2014-12-22 04:22 - 2014-12-22 04:25 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-12-22 04:22 - 2014-12-22 04:23 - 00000000 ____D () C:\Users\user\AppData\Roaming\DAEMON Tools Lite
2014-12-22 04:22 - 2014-12-22 04:23 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-12-22 04:22 - 2014-12-22 04:22 - 00243128 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-12-22 04:22 - 2014-12-22 04:22 - 00000000 ____D () C:\Users\user\AppData\Roaming\OpenCandy
2014-12-22 04:22 - 2014-12-22 04:22 - 00000000 ____D () C:\Program Files\DAEMON Tools Lite
2014-12-20 12:38 - 2015-01-01 08:43 - 00005504 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-6.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00005170 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-11.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00005168 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-7.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00004480 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-4.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00003452 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-1.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00002432 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-5_user.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00002432 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-5.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00002096 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-2.job
2014-12-20 12:38 - 2014-12-20 12:38 - 02058208 _____ (HDPlus-3.1TotalV20.12) C:\Users\user\AppData\Roaming\UPIHGDM.exe
2014-12-20 12:38 - 2014-12-20 12:38 - 01392096 _____ (HDPlus-3.1TotalV20.12) C:\Users\user\AppData\Roaming\DPJ.exe
2014-12-20 12:38 - 2014-12-20 12:38 - 00000000 ____D () C:\Program Files\d12204ae-c139-4127-983b-80bdbb0aaf71
2014-12-20 12:37 - 2015-01-01 08:12 - 00004480 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-3.job
2014-12-20 12:37 - 2014-12-20 12:38 - 00000000 ____D () C:\Program Files\TotalPlusHD-3.1V20.12
2014-12-20 12:35 - 2014-12-20 12:36 - 00000000 ____D () C:\Program Files\STab
2014-12-20 12:35 - 2014-12-20 12:35 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2014-12-20 12:28 - 2015-01-01 08:33 - 00005506 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-6.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00005170 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-7.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00004482 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-4.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00003456 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-1.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00002434 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-5_user.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00002434 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-5.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00002098 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-2.job
2014-12-20 12:28 - 2014-12-20 12:28 - 01329120 _____ (Qwerty) C:\Users\user\AppData\Roaming\JFBZ.exe
2014-12-20 12:28 - 2014-12-20 12:28 - 00000000 ____D () C:\Program Files\c4088188-b7a1-4314-8ed4-28d4603b68a6
2014-12-20 12:27 - 2015-01-01 08:12 - 00005172 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-11.job
2014-12-20 12:27 - 2015-01-01 08:12 - 00000980 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-12-20 12:27 - 2015-01-01 06:42 - 00000984 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-12-20 12:27 - 2014-12-20 12:28 - 00000000 ____D () C:\Program Files\TornPlusTV_version1.11
2014-12-20 12:27 - 2014-12-20 12:27 - 01805792 _____ (Qwerty) C:\Users\user\AppData\Roaming\UNZMIZU.exe
2014-12-20 12:27 - 2014-12-20 12:27 - 00000000 ____D () C:\Users\user\AppData\Local\globalUpdate
2014-12-20 12:27 - 2014-12-20 12:27 - 00000000 ____D () C:\Program Files\globalUpdate
2014-12-20 12:25 - 2014-12-20 12:25 - 00000000 ____D () C:\Users\user\AppData\Roaming\TornTV.com
2014-12-20 12:25 - 2014-12-20 12:25 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com
2014-12-19 03:04 - 2014-12-27 05:29 - 00001039 _____ () C:\Windows\eReg.dat
2014-12-19 02:56 - 2014-12-19 02:56 - 00002066 _____ () C:\Users\Public\Desktop\Battlefield 1942 Secret Weapons of WWII.lnk
2014-12-19 02:50 - 2014-12-19 02:50 - 00002040 _____ () C:\Users\Public\Desktop\Battlefield 1942.lnk
2014-12-19 02:38 - 2014-12-19 02:39 - 00000000 ____D () C:\Program Files\EA GAMES
2014-12-18 12:26 - 2003-04-08 12:00 - 01355776 _____ (Microsoft Corporation) C:\Windows\system32\MSVBVM50.dll
2014-12-18 12:26 - 1997-01-15 23:00 - 00071680 _____ (Microsoft Corporation) C:\Windows\ST5UNST.EXE
2014-12-18 12:26 - 1997-01-15 23:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\VB5StKit.dll
2014-12-16 11:47 - 2014-12-16 11:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medal of Honor - Airborne
2014-12-16 04:30 - 2014-12-16 04:30 - 00002687 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-12-16 04:30 - 2014-12-16 04:30 - 00000000 ___RD () C:\Program Files\Skype
2014-12-16 04:30 - 2014-12-16 04:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-12-16 04:30 - 2014-12-16 04:30 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-12-15 07:09 - 2014-12-15 07:09 - 00000000 _____ () C:\Users\user\AppData\Local\{43C4F25D-13DB-43FA-9355-9AD38B090A7E}
2014-12-12 10:18 - 2014-12-12 10:18 - 00000802 _____ () C:\Users\Public\Desktop\AMCap.lnk
2014-12-12 10:18 - 2014-12-12 10:18 - 00000000 ____D () C:\Users\user\AppData\Roaming\InstallShield
2014-12-12 10:18 - 2014-12-12 10:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Video Device
2014-12-12 10:18 - 2014-12-12 10:18 - 00000000 ____D () C:\Program Files\Common Files\SNP2UVC
2014-12-12 10:18 - 2009-08-13 20:33 - 00239616 _____ ( ) C:\Windows\system32\rsnp2uvc.dll
2014-12-11 03:21 - 2014-12-11 03:21 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 04:33 - 2014-12-03 18:20 - 00728576 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-10 04:33 - 2014-12-03 18:20 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-10 04:33 - 2014-12-03 18:20 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-10 04:33 - 2014-12-03 18:20 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-10 04:33 - 2014-12-03 18:20 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-10 04:33 - 2014-12-03 18:20 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-10 04:33 - 2014-12-03 18:17 - 00873984 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-10 04:33 - 2014-12-01 15:27 - 01160872 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-08 05:00 - 2014-12-08 05:00 - 00001136 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-12-08 05:00 - 2014-12-08 05:00 - 00001124 _____ () C:\Users\user\Desktop\TeamViewer 9.lnk
2014-12-06 07:41 - 2014-12-27 16:41 - 00000000 ____D () C:\ProgramData\NextCoup
2014-12-06 07:41 - 2014-12-26 23:09 - 00000000 ____D () C:\Program Files\NextCoup
2014-12-06 07:41 - 2014-12-06 07:41 - 04772352 _____ () C:\Windows\system32\setup.exe
2014-12-04 09:43 - 2014-12-29 09:10 - 00000000 ____D () C:\Users\user\Documents\FIFA 08
2014-12-04 09:40 - 2014-12-04 09:40 - 00001968 _____ () C:\Users\user\Desktop\FIFA 08.lnk
2014-12-04 09:23 - 2014-12-04 09:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Sports
2014-12-04 09:19 - 2014-12-04 09:40 - 00000000 ____D () C:\Program Files\EA Sports
2014-12-02 20:59 - 2014-12-02 20:59 - 00000000 __SHD () C:\found.006

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-01 09:11 - 2014-06-14 17:54 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3928567857-1886121683-2546958505-1000UA.job
2015-01-01 09:09 - 2014-06-14 09:22 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-01-01 09:06 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\Microsoft Games
2015-01-01 09:05 - 2014-09-09 14:00 - 00000000 ____D () C:\Stronghold Crusader
2015-01-01 08:47 - 2014-07-03 17:36 - 00000886 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-01 08:46 - 2014-11-04 08:41 - 00000896 _____ () C:\Windows\Tasks\MaxigetUpdaterTaskMachineUA.job
2015-01-01 08:46 - 2014-11-04 08:41 - 00000892 _____ () C:\Windows\Tasks\MaxigetUpdaterTaskMachineCore.job
2015-01-01 08:41 - 2014-10-31 12:44 - 00000000 ____D () C:\Program Files\GoSave
2015-01-01 08:27 - 2014-06-14 05:21 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-01 08:17 - 2009-07-13 20:34 - 00013536 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-01 08:17 - 2009-07-13 20:34 - 00013536 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-01 08:16 - 2014-06-16 01:43 - 01295045 _____ () C:\Windows\WindowsUpdate.log
2015-01-01 08:12 - 2014-09-05 04:52 - 00021013 _____ () C:\Windows\setupact.log
2015-01-01 08:12 - 2014-07-03 17:36 - 00000882 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-01 08:12 - 2009-07-13 20:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-01 04:11 - 2014-06-14 17:54 - 00000852 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3928567857-1886121683-2546958505-1000Core.job
2014-12-31 17:57 - 2014-06-14 09:58 - 00000000 ____D () C:\Users\user\AppData\Roaming\uTorrent
2014-12-31 17:30 - 2014-08-19 18:55 - 00000000 ___RD () C:\Users\user\Desktop\Photos
2014-12-31 07:21 - 2014-10-09 03:27 - 00196068 _____ () C:\Windows\Directx.log
2014-12-29 13:27 - 2014-08-12 22:01 - 00000000 ____D () C:\The KMPlayer
2014-12-27 06:12 - 2014-06-14 09:20 - 00000000 ____D () C:\Users\user\AppData\Roaming\Skype
2014-12-27 05:28 - 2014-10-20 08:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games
2014-12-26 23:09 - 2014-10-31 12:43 - 00000000 ____D () C:\ProgramData\17555ef8d453397e
2014-12-26 21:32 - 2014-06-14 06:04 - 00000000 ____D () C:\Users\user\AppData\Local\Microsoft Games
2014-12-26 19:29 - 2014-11-24 16:21 - 00000000 ____D () C:\Users\user\Desktop\DYNAMITE DELUX
2014-12-22 16:48 - 2014-09-30 18:56 - 00010596 _____ () C:\Windows\PFRO.log
2014-12-22 04:32 - 2014-08-16 12:50 - 00000000 ____D () C:\Program Files\GameSpy Arcade
2014-12-22 04:32 - 2014-08-13 20:20 - 00000970 _____ () C:\Users\UpdatusUser\Desktop\GameSpy Arcade.lnk
2014-12-22 04:32 - 2014-08-13 20:20 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade
2014-12-22 04:26 - 2014-06-14 08:58 - 00726316 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-20 12:38 - 2014-06-14 09:13 - 00000000 ____D () C:\Program Files\Adobe
2014-12-20 12:37 - 2014-07-03 17:36 - 00000000 ____D () C:\Program Files\Google
2014-12-20 12:31 - 2014-06-14 09:17 - 00001317 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-20 12:31 - 2014-06-14 09:17 - 00001305 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-12-20 12:31 - 2014-06-14 08:54 - 00001613 _____ () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-19 03:04 - 2014-06-14 03:53 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-12-17 22:03 - 2014-06-14 09:55 - 00000000 ____D () C:\Program Files\Opera
2014-12-16 11:49 - 2014-10-20 09:02 - 00000000 ____D () C:\Users\user\Documents\EA Games
2014-12-16 04:30 - 2014-06-14 09:19 - 00000000 ____D () C:\ProgramData\Skype
2014-12-12 14:07 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\system32\wfp
2014-12-12 14:07 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\security
2014-12-12 14:07 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\registration
2014-12-12 10:16 - 2009-07-13 18:04 - 00000589 _____ () C:\Windows\win.ini
2014-12-11 03:25 - 2014-06-14 09:14 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-12-11 03:21 - 2014-07-09 04:35 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-11 03:21 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\AppCompat
2014-12-11 03:05 - 2014-07-21 05:29 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-11 03:00 - 2014-07-26 05:07 - 109818608 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-10 03:27 - 2014-06-14 05:20 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-12-10 03:27 - 2014-06-14 05:20 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-12-08 21:24 - 2009-07-13 20:33 - 03763592 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-12-08 13:31 - 2014-06-14 09:59 - 00109280 _____ () C:\Users\user\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-06 07:42 - 2014-10-31 12:44 - 00000000 ____D () C:\ProgramData\YoutubeAdBlocke
2014-12-06 07:41 - 2014-10-31 12:44 - 00000000 ____D () C:\Program Files\YoutubeAdBlocke
2014-12-06 07:41 - 2014-10-31 12:43 - 00000532 __RSH () C:\ProgramData\ntuser.pol
2014-12-04 02:37 - 2009-07-13 20:53 - 00032604 _____ () C:\Windows\Tasks\SCHEDLGU.TXT

Some content of TEMP:
====================
C:\Users\user\AppData\Local\Temp\715F2F9ee27.exe
C:\Users\user\AppData\Local\Temp\9512CAF8-BDFC-291E-8EFC-1BEF2022DE09.exe
C:\Users\user\AppData\Local\Temp\comver.dll
C:\Users\user\AppData\Local\Temp\D9B231AA-7104-FAB3-2DAD-0C3F14A06A81.dll
C:\Users\user\AppData\Local\Temp\D9B231AA-7104-FAB3-2DAD-0C3F14A06A81.exe
C:\Users\user\AppData\Local\Temp\drm_dialogs.dll
C:\Users\user\AppData\Local\Temp\drm_dyndata_7330014.dll
C:\Users\user\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\user\AppData\Local\Temp\LiveSupport_setup.exe
C:\Users\user\AppData\Local\Temp\OnlineBackup.exe
C:\Users\user\AppData\Local\Temp\optprosetup.exe
C:\Users\user\AppData\Local\Temp\Runner2.exe
C:\Users\user\AppData\Local\Temp\Runner4.exe
C:\Users\user\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\user\AppData\Local\Temp\SkypeSetup.exe
C:\Users\user\AppData\Local\Temp\sSetup-se.exe
C:\Users\user\AppData\Local\Temp\ttv.exe
C:\Users\user\AppData\Local\Temp\vcredist_x86.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-09-07 08:34

==================== End Of Log ============================



mycity.rs/must-login.png

Dopuna: 01 Jan 2015 18:24

Zaboravio sam samo da cestitam svima srecnu Novu Godinu i pretstojece praznike,nemogu da uredim poruku gore,pa obrisite ako smeta Smile

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6104

Pozdrav Bubblegum018,

Dobrodosao u Ambulantu. Srecna i tebi nova godina. Ziveli

Uh ...odakle da pocnem. Ja cu malo biti stroziji prema tebi jer tako mora. Ovo je ... strasno. Tvoj sistem je prosto unakazen, da se tako izrazim.

Citat:Vec duze vreme nemogu da idem na neke sajtove koji ne dozvoljavaju Adblock programe.

Znas, ovo je jako neozbiljno od tebe. U opisu posla AdBlock+ dodatka jeste da pokusa da blokira svaku poznatu malicioznu (relativan pojam znacenja malicioznog ...) reklamu koju ti sumnjivi sajtovi nude. I ti ignorises takve poruke, takve upozorenja samo zato jer ti sajt izbaci pop-up sa obavestenjem da iskljucis AdBlock?

Bi li ti skocio s' mosta ako ti ja kazem da skocis? Smile

Znaci, moras da se dovedes u red. Pronadji sajtove koji nisu maliciozni, koji ti davaju da gledas online filmove bez da iskljucujes zastitu.

Dalje, gde je ovde zastita? Ti na sistemu ne posedujes ni jedan jedini zastitni softver? Opet, neodgovorno sa tvoje strane, da trazis pomoc a samu preventivu nisi ispunio. Prvo pravilo Windows sistema jeste: Zastitni softver, AntiVirus, AntiMalware...

Ali vraticemo se na to (zastita sistema) nesto kasnije. Sada nas ceka ozbiljan posao. Imaj na umu da dezinfekcija ove masine moze da potraje, u vecini slucajeva nije dovoljno u jednoj rundi potuci sav malware.





--- --- --- --- ---




Arrow Iz Program and Features (Start > Control Panel ) pokusaj da deinstlairas/ uklonis sledece:

GoSave
Optimizer Pro v3.2
Settings Manager
WindowsMangerProtect20.0.0.1013


Ukoliko bilo sta od oboga odbija deinstalaciju, preskoci taj korak/program i predji na sledeci.




--- --- --- --- ---

U svakom slucaju, odradi sledeci. Kao sto vidis i po samoj scripti, ovo nije naivno...







1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

Start
File: C:\Windows\System32\msiexec.exe
File: C:\Users\user\Downloads\Installation (2).exe
File: C:\Users\user\Downloads\Installation (1).exe
File: C:\Users\user\Downloads\Installation.exe
File: C:\Windows\system32\setup.exe
Folder: C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
Folder: C:\ProgramData\17555ef8d453397e

CloseProcesses:
CMD: dir /a "C:\Users\User\AppData\Roaming\Opera Software\Opera Stable"
CMD: type "C:\Users\User\AppData\Roaming\Opera Software\Opera Stable\Preferences"
CMD: type "C:\Windows\eReg.dat"
REG: reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C87834EB-A2A0-B9D4-AA9A-C263D1191051}" /f
REG: reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1" /f
REG: reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Settings Manager" /f
REG: reg delete "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect" /f
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh winsock reset catalog
CMD: netsh int ip reset c:\resetlog.txt
CMD: ipconfig /release
CMD: ipconfig /renew
CMD: ipconfig /flushdns
CMD: bitsadmin /reset /allusers
CMD: type "c:\resetlog.txt"

CreateRestorePoint:
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\Run: [Optimizer Pro] => C:\Program Files\Optimizer Pro\OptProLauncher.exe [148048 2014-10-28] (PC Utilities Software Limited)
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\Run: [LiveSupport] => "C:\Program Files\LiveSupport\LiveSupport.exe" /noshow /log
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\MountPoints2: {dae1397b-60c9-11e4-aa62-0013d4eaccd8} - F:\autorun.exe
AppInit_DLLs: C:\Users\user\AppData\Local\Linkey\IEEXTE~1\iedll.dll => C:\Users\user\AppData\Local\Linkey\IEExtension\iedll.dll [175632 2014-08-31] (Aztec Media Inc)
HKLM\...\AppCertDlls: [x86] -> C:\Program Files\Settings Manager\smdmf\sysapcrt.dll [488464 2014-09-21] ()
HKLM\...\AppCertDlls: [x64] -> c:\program files\settings manager\smdmf\x64\sysapcrt.dll
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp&ts=14191074.....XX9RW16QK2
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp&ts=14191074.....XX9RW16QK2
HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://websearch.searc-hall.info/?pid=2461&r=2014/.....S&unqvl=65
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.sweet-page.com/?type=sc&ts=1412114700&f.....XX9RW16QK2
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = http://www.default-search.net/search?sid=503&aid=1.....&src=ds&p={searchTerms}
SearchScopes: HKLM -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.searc-hall.info/?l=1&q={searchTerms}&pid=2461&r=2014/10/31&hid=5923529126752973976&lg=EN&cc=RS&unqvl=65
SearchScopes: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1419.....RW16QK2&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = http://www.default-search.net/search?sid=503&aid=1.....&src=ds&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.searc-hall.info/?l=1&q={searchTerms}&pid=2461&r=2014/10/31&hid=5923529126752973976&lg=EN&cc=RS&unqvl=65
BHO: TotalPlusHD-3.1V20.12 -> {11111111-1111-1111-1111-110611321185} -> C:\Program Files\TotalPlusHD-3.1V20.12\TotalPlusHD-3.1V20.12-bho.dll (HDPlus-3.1TotalV20.12)
BHO: TornPlusTV_version1.11 -> {11111111-1111-1111-1111-110611881155} -> C:\Program Files\TornPlusTV_version1.11\TornPlusTV_version1.11-bho.dll (Qwerty)
BHO: Linkey -> {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} -> C:\Users\user\AppData\Local\Linkey\IEExtension\iedll.dll (Aztec Media Inc)

FF DefaultSearchEngine: default-search.net
FF DefaultSearchEngine,S: WebSearch
FF DefaultSearchUrl: hxxp://websearch.searc-hall.info/?pid=2461&r=2014/10/31&hid=5923529126752973976&lg=EN&cc=RS&unqvl=65&l=1&q=
FF SearchEngineOrder.1: default-search.net
FF SearchEngineOrder.1,S: WebSearch
FF SearchEngineOrder.3: Bing
FF SelectedSearchEngine: default-search.net
FF SelectedSearchEngine,S: WebSearch
FF Homepage: hxxp://www.default-search.net?sid=503&aid=100&itype=n&ver=13986&tm=569&src=hmp
FF Keyword.URL: hxxp://www.default-search.net/search?sid=503&aid=100&itype=n&ver=13986&tm=569&src=ds&p=
FF SearchPlugin: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\searchplugins\default-search.xml
FF SearchPlugin: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\searchplugins\WebSearch.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\default-search.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\omiga-plus.xml
FF Extension: TornPlusTV_version1.11 - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\5760ec0d6ec24a119c6398f@fa137c6b34f842bd805263bee28d76.com [2014-12-20]
FF Extension: TotalPlusHD-3.1V20.12 - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com [2014-12-20]
FF Extension: GoSave - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\8K375@xU.org [2014-12-08]
FF Extension: Linkey for Firefox - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\extension@linkeyproject.com [2014-12-22]
FF Extension: Fast Start - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\faststartff@gmail.com [2014-12-20]
FF Extension: YoutubeAdBlocke - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\FypGfh@qB8ji.org [2014-12-08]
FF Extension: jid1xgtdawe3yyUeBQjetpack - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\jid1-xgtdawe3yyUeBQ@jetpack [2014-12-24]
FF Extension: NextCoup - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\of6h@E.edu [2014-12-08]
FF Extension: uriloaderpdfjs - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\uriloader@pdf.js [2014-12-24]

CHR Extension: (GoSave) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfodefnaodpgpokgdhfcmgpadficdkcf [2014-10-31]
CHR Extension: (Exfm Explorer) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehohhddamheegbbkabfgegbaeminghlb [2014-10-31]
CHR Extension: (flmfagndkngjknjjcoejaihmibcfcjdh) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\flmfagndkngjknjjcoejaihmibcfcjdh [2014-12-24]
CHR Extension: (NextCoup) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaajcacjemkanjghifbigalaconkijbm [2014-12-06]
CHR Extension: (TotalPlusHD-3.1V20.12) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb [2014-12-20]
CHR Extension: (nilidoodajjnlapacccmliohagelpanf) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nilidoodajjnlapacccmliohagelpanf [2014-12-24]
CHR HKLM\...\Chrome\Extension: [fpmeembnagmagppkgghhfjfdfajdfcah] - C:\Users\user\AppData\Local\Linkey\ChromeExtension\ChromeExtension.crx [2014-12-22]
CHR HKU\S-1-5-21-3928567857-1886121683-2546958505-1000\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - No Path

S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-20] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-12-20] (globalUpdate) [File not signed]
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [705416 2014-09-23] (Cherished Technololgy LIMITED)
R2 IHProtect Service; C:\Program Files\STab\ProtectService.exe [158864 2014-11-09] (TODO: <Company name>)
S2 mglupdate; C:\Program Files\Maxiget\Updater\MaxigetUpdater.exe [131480 2014-11-04] (Maxiget Ltd.)
S3 mglupdatem; C:\Program Files\Maxiget\Updater\MaxigetUpdater.exe [131480 2014-11-04] (Maxiget Ltd.)
R2 SmdmFService; C:\Program Files\Settings Manager\smdmf\SmdmFService.exe [3572240 2014-09-21] (Aztec Media Inc)
R2 trntv; C:\Users\user\AppData\Roaming\TornTV.com\TornTVSvc.exe [19456 2014-11-18] (Cool Mirage) [File not signed]
S2 gupdate; "C:\Program Files\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files\Google\Update\GoogleUpdate.exe" /medsvc [X]
R1 F06DEFF2-5B9C-490D-910F-35D3A9119622; C:\Program Files\Settings Manager\smdmf\smdmfmgrc2.cfg [34192 2014-09-21] (Aztec Media Inc)

CustomCLSID: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000_Classes\CLSID\{1BBF13E0-551E-42DD-91F4-1A547443FFDA}\InprocServer32 -> C:\Users\user\AppData\Local\Tbccint\Community Alerts\Alert.dll (ClientConnect Ltd.)
CustomCLSID: HKU\S-1-5-21-3928567857-1886121683-2546958505-1000_Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}\localserver32 -> C:\Users\user\AppData\Local\Temp\715F2F9ee27.exe ()
CustomCLSID: HKU\S-1-5-21-3928567857-1886121683-2546958505-1001_Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}\localserver32 -> C:\Users\UpdatusUser\AppData\Local\Temp\715F2F9ee27.exe No File

Task: {0F3415DE-E473-4041-8C4B-C23BF19DDD54} - System32\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-6 => C:\Program Files\TotalPlusHD-3.1V20.12\f87a1f17-151f-4bd3-82ab-20da80490c4b-6.exe [2014-12-20] (HDPlus-3.1TotalV20.12) <==== ATTENTION
Task: {159F7C04-20B7-434D-B93E-C6464BDFA160} - System32\Tasks\MaxigetUpdaterTaskMachineUA => C:\Program Files\Maxiget\Updater\MaxigetUpdater.exe [2014-11-04] (Maxiget Ltd.)
Task: {17DEA214-E1D1-42AE-B8D7-507328848305} - System32\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-5_user => C:\Program Files\TornPlusTV_version1.11\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-5.exe [2014-12-20] (Qwerty) <==== ATTENTION
Task: {314D1052-4A54-4CCC-AE9B-AED7E289CFE5} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-12-20] (globalUpdate) <==== ATTENTION
Task: {320BD52F-7643-4970-8096-1FC2F31C20CC} - System32\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-4 => C:\Program Files\TornPlusTV_version1.11\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-4.exe [2014-12-20] (Qwerty) <==== ATTENTION
Task: {3DAD6684-4AE1-4EA3-ADA3-38FCBF762E20} - System32\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-11 => C:\Program Files\TornPlusTV_version1.11\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-11.exe [2014-12-20] (Qwerty) <==== ATTENTION
Task: {45A6634B-B249-433D-879D-57F955834F6F} - System32\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-2 => C:\Program Files\TornPlusTV_version1.11\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-2.exe [2014-12-20] (Qwerty) <==== ATTENTION
Task: {491351FD-6394-4DC4-9BAE-F8209DAD39A4} - System32\Tasks\{103A1B9D-78E3-433D-BD6B-2E1DB01D2EFE} => pcalua.exe -a C:\Users\user\Desktop\cnr-wcam_345_drv_xpwv3264w73264_111103.exe -d C:\Users\user\Desktop
Task: {564EBCDE-09CD-4BBD-87D2-62E52AB225B3} - System32\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-6 => C:\Program Files\TornPlusTV_version1.11\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-6.exe [2014-12-20] (Qwerty) <==== ATTENTION
Task: {5673DFE3-94F3-43E9-9B97-AF286105E0EA} - System32\Tasks\Optimizer Pro Schedule => C:\Program Files\Optimizer Pro\OptProLauncher.exe [2014-10-28] (PC Utilities Software Limited) <==== ATTENTION
Task: {583C5019-6363-4BE6-9A17-20C815529CD3} - System32\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-7 => C:\Program Files\TotalPlusHD-3.1V20.12\f87a1f17-151f-4bd3-82ab-20da80490c4b-7.exe [2014-12-20] (HDPlus-3.1TotalV20.12) <==== ATTENTION
Task: {6474D99C-F9B5-47AB-879C-06893B3EEA13} - System32\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-5 => C:\Program Files\TotalPlusHD-3.1V20.12\f87a1f17-151f-4bd3-82ab-20da80490c4b-5.exe [2014-12-20] (HDPlus-3.1TotalV20.12) <==== ATTENTION
Task: {7951D2E8-70C1-42E8-8C3D-E2A814465B29} - System32\Tasks\AdobeAAMUpdater-1.0-user-PC-user => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-15] (Adobe Systems Incorporated)
Task: {88388355-7212-41F1-A1E5-2D146E92CE28} - System32\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-1 => C:\Program Files\TotalPlusHD-3.1V20.12\TotalPlusHD-3.1V20.12-codedownloader.exe [2014-12-20] (HDPlus-3.1TotalV20.12) <==== ATTENTION
Task: {96D3FC18-0197-422F-B826-AC75350FAEC2} - System32\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-4 => C:\Program Files\TotalPlusHD-3.1V20.12\f87a1f17-151f-4bd3-82ab-20da80490c4b-4.exe [2014-12-20] (HDPlus-3.1TotalV20.12) <==== ATTENTION
Task: {9ED637F4-C380-436A-80AD-61885FE4E2B1} - System32\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-1 => C:\Program Files\TornPlusTV_version1.11\TornPlusTV_version1.11-codedownloader.exe [2014-12-20] (Qwerty) <==== ATTENTION
Task: {B8C78E08-6507-489C-9071-67A0591C8412} - System32\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-2 => C:\Program Files\TotalPlusHD-3.1V20.12\f87a1f17-151f-4bd3-82ab-20da80490c4b-2.exe [2014-12-20] (HDPlus-3.1TotalV20.12) <==== ATTENTION
Task: {BBAE1342-509B-413D-82F8-D45DD04DC3E6} - System32\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-5 => C:\Program Files\TornPlusTV_version1.11\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-5.exe [2014-12-20] (Qwerty) <==== ATTENTION
Task: {D2291D51-2E62-4F39-BF20-0084B331C4AD} - System32\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-5_user => C:\Program Files\TotalPlusHD-3.1V20.12\f87a1f17-151f-4bd3-82ab-20da80490c4b-5.exe [2014-12-20] (HDPlus-3.1TotalV20.12) <==== ATTENTION
Task: {D58683C1-EC78-4268-A36A-8E6B3A2925F9} - System32\Tasks\MaxigetUpdaterTaskMachineCore => C:\Program Files\Maxiget\Updater\MaxigetUpdater.exe [2014-11-04] (Maxiget Ltd.)
Task: {E52E9A94-BFA8-4FB1-8081-41B140DB79C5} - System32\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-3 => C:\Program Files\TotalPlusHD-3.1V20.12\f87a1f17-151f-4bd3-82ab-20da80490c4b-3.exe [2014-12-20] (HDPlus-3.1TotalV20.12) <==== ATTENTION
Task: {E6C8C542-4A20-4C02-8CDD-9DD5D59D98D0} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-12-20] (globalUpdate) <==== ATTENTION
Task: {E6D86EF1-819B-4E82-9531-DDC2B81FFA99} - System32\Tasks\LaunchSignup => C:\Program Files\MyPC Backup\Signup Wizard.exe <==== ATTENTION
Task: {E8E70624-F2AF-4C7D-A2BC-541591F13F01} - System32\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-11 => C:\Program Files\TotalPlusHD-3.1V20.12\f87a1f17-151f-4bd3-82ab-20da80490c4b-11.exe [2014-12-20] (HDPlus-3.1TotalV20.12) <==== ATTENTION
Task: {ED820631-41D1-46B4-968E-CAC7F644B842} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3928567857-1886121683-2546958505-1000Core => C:\Users\user\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {F40253C2-C1D7-4D10-8AC9-3D0AE0E216D4} - System32\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-7 => C:\Program Files\TornPlusTV_version1.11\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-7.exe [2014-12-20] (Qwerty) <==== ATTENTION

Hosts:
C:\Program Files\STab
C:\Program Files\Optimizer Pro
C:\Users\user\AppData\Roaming\TornTV.com
C:\Program Files\LiveSupport
C:\Users\user\AppData\Local\Linkey
C:\Program Files\Settings Manager
C:\Program Files\TotalPlusHD-3.1V20.12
C:\Program Files\TornPlusTV_version1.11
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\searchplugins\default-search.xml
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\searchplugins\WebSearch.xml
C:\Program Files\mozilla firefox\browser\searchplugins\default-search.xml
C:\Program Files\mozilla firefox\browser\searchplugins\omiga-plus.xml
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\5760ec0d6ec24a119c6398f@fa137c6b34f842bd805263bee28d76.com
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\8K375@xU.org
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\extension@linkeyproject.com
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\faststartff@gmail.com
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\FypGfh@qB8ji.org
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\jid1-xgtdawe3yyUeBQ@jetpack
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\of6h@E.edu
C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\uaauzf02.default\Extensions\uriloader@pdf.js
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehohhddamheegbbkabfgegbaeminghlb
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\flmfagndkngjknjjcoejaihmibcfcjdh
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaajcacjemkanjghifbigalaconkijbm
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb
C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nilidoodajjnlapacccmliohagelpanf
C:\Program Files\globalUpdate
C:\ProgramData\IePluginServices
C:\Program Files\Maxiget
C:\Users\user\AppData\Roaming\TornTV.com
C:\ProgramData\smdmf
C:\Users\user\AppData\Roaming\FirefoxToolbar
C:\Program Files\GoSave
C:\Program Files\MyPC Backup

2014-12-20 12:38 - 2015-01-01 08:43 - 00005504 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-6.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00005170 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-11.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00005168 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-7.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00004480 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-4.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00003452 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-1.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00002432 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-5_user.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00002432 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-5.job
2014-12-20 12:38 - 2015-01-01 08:12 - 00002096 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-2.job
2014-12-20 12:38 - 2014-12-20 12:38 - 02058208 _____ (HDPlus-3.1TotalV20.12) C:\Users\user\AppData\Roaming\UPIHGDM.exe
2014-12-20 12:38 - 2014-12-20 12:38 - 01392096 _____ (HDPlus-3.1TotalV20.12) C:\Users\user\AppData\Roaming\DPJ.exe
2014-12-20 12:38 - 2014-12-20 12:38 - 00000000 ____D () C:\Program Files\d12204ae-c139-4127-983b-80bdbb0aaf71
2014-12-20 12:37 - 2015-01-01 08:12 - 00004480 _____ () C:\Windows\Tasks\f87a1f17-151f-4bd3-82ab-20da80490c4b-3.job
2014-12-20 12:37 - 2014-12-20 12:38 - 00000000 ____D () C:\Program Files\TotalPlusHD-3.1V20.12
2014-12-20 12:35 - 2014-12-20 12:36 - 00000000 ____D () C:\Program Files\STab
2014-12-20 12:35 - 2014-12-20 12:35 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2014-12-20 12:28 - 2015-01-01 08:33 - 00005506 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-6.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00005170 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-7.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00004482 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-4.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00003456 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-1.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00002434 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-5_user.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00002434 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-5.job
2014-12-20 12:28 - 2015-01-01 08:12 - 00002098 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-2.job
2014-12-20 12:28 - 2014-12-20 12:28 - 01329120 _____ (Qwerty) C:\Users\user\AppData\Roaming\JFBZ.exe
2014-12-20 12:28 - 2014-12-20 12:28 - 00000000 ____D () C:\Program Files\c4088188-b7a1-4314-8ed4-28d4603b68a6
2014-12-20 12:27 - 2015-01-01 08:12 - 00005172 _____ () C:\Windows\Tasks\5d1383e1-4c82-4f4f-9c01-40dbd9f8cea7-11.job
2014-12-20 12:27 - 2015-01-01 08:12 - 00000980 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-12-20 12:27 - 2015-01-01 06:42 - 00000984 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-12-20 12:27 - 2014-12-20 12:28 - 00000000 ____D () C:\Program Files\TornPlusTV_version1.11
2014-12-20 12:27 - 2014-12-20 12:27 - 01805792 _____ (Qwerty) C:\Users\user\AppData\Roaming\UNZMIZU.exe
2014-12-20 12:27 - 2014-12-20 12:27 - 00000000 ____D () C:\Users\user\AppData\Local\globalUpdate
2014-12-20 12:27 - 2014-12-20 12:27 - 00000000 ____D () C:\Program Files\globalUpdate
2014-12-20 12:25 - 2014-12-20 12:25 - 00000000 ____D () C:\Users\user\AppData\Roaming\TornTV.com
2014-12-20 12:25 - 2014-12-20 12:25 - 00000000 ____D () C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com
2014-12-06 07:41 - 2014-12-27 16:41 - 00000000 ____D () C:\ProgramData\NextCoup
2014-12-06 07:41 - 2014-12-26 23:09 - 00000000 ____D () C:\Program Files\NextCoup
2014-12-06 07:42 - 2014-10-31 12:44 - 00000000 ____D () C:\ProgramData\YoutubeAdBlocke
2014-12-06 07:41 - 2014-10-31 12:44 - 00000000 ____D () C:\Program Files\YoutubeAdBlocke
EmptyTemp:



2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.







Arrow

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6104

Napisano: 03 Jan 2015 10:28

Bump!

Bubblegum018, jesi li i dalje sa nama? Smile

Dopuna: 05 Jan 2015 14:41

Ukoliko se korisnik ne javi u Ambulantu kroz 72 sata, tema ce biti zakljucana.

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6104

Usled neaktivnosti korisnika Bubblegum018, ova tema je zakljucana.





[locked]

09 Jan 2015 10:34 magna86 Zaključavanje topica Razlog: Odgovoreno je  
Ko je trenutno na forumu
 

Ukupno su 957 korisnika na forumu :: 4 registrovanih, 0 sakrivenih i 953 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: bigfoot, Hans Gajger, kybonacci, zziko