ajde da pokusam

1

ajde da pokusam

offline
  • Pridružio: 28 Apr 2012
  • Poruke: 62

imam problem sa ask toolbarom...vec duze vreme mi je instalirana i ne znam kako da je se resim...u add-ons je nema...podesavanja sam radila u mozilli i nema pomoci....sve sam radila sto mi je ovde receno....

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Polako pročitaj ovu temu:
http://www.mycity.rs/Ambulanta/Kako-otvoriti-temu-u-Ambulanti.html

i postavi tražene FRST.txt i Addition.txt izvještaje.

offline
  • Pridružio: 28 Apr 2012
  • Poruke: 62

Napisano: 17 Apr 2015 0:00

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-04-2015 04
Ran by Administrator (administrator) on USER-C62F6B03F2 on 16-04-2015 23:50:08
Running from C:\Documents and Settings\Administrator\My Documents\Downloads
Loaded Profiles: Administrator (Available profiles: Administrator)
Platform: Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Chicony) C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(APN) C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(TOSHIBA) C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
() C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe
(APN LLC.) C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
(Just Develop It) C:\Program Files\MyPC Backup\BackupStack.exe
(Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe
(Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(MyPCBackup.com) C:\Program Files\MyPC Backup\MyPC Backup.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16859648 2008-01-29] (Realtek Semiconductor Corp.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1024000 2007-12-06] (Synaptics, Inc.)
HKLM\...\Run: [Camera Assistant Software] => C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe [413696 2007-10-25] (Chicony)
HKLM\...\Run: [GrooveMonitor] => C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-13] (AVAST Software)
HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k
HKLM\...\Run: [ApnTBMon] => C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2005896 2015-04-06] (APN)
HKU\S-1-5-21-583907252-2077806209-839522115-500\...\Run: [TOSCDSPD] => C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe [65536 2005-04-11] (TOSHIBA)
HKU\S-1-5-21-583907252-2077806209-839522115-500\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [4811032 2014-09-26] (Piriform Ltd)
HKU\S-1-5-21-583907252-2077806209-839522115-500\...\Run: [PCPerformer] => "C:\Program Files\PC Performer\PCPerformer.exe" /RUNSCAN
Startup: C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\MyPC Backup.lnk
ShortcutTarget: MyPC Backup.lnk -> C:\Program Files\MyPC Backup\MyPC Backup.exe (MyPCBackup.com)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
BootExecute: autocheck autochk * aswBoot.exe /M:b777da27 /dir:"C:\Program Files\AVAST Software\Avast"

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-583907252-2077806209-839522115-500\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = isearch.omiga-plus.com/?type=hp&ts=14220574.....VT952EVMVX
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = isearch.omiga-plus.com/?type=hp&ts=14220574.....VT952EVMVX
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-583907252-2077806209-839522115-500\Software\Microsoft\Internet Explorer\Main,Start Page = isearch.omiga-plus.com/?type=hp&ts=14220574.....VT952EVMVX
HKU\S-1-5-21-583907252-2077806209-839522115-500\Software\Microsoft\Internet Explorer\Main,Search Page = google.com/search?trackid=sp-006&q={searchTerms}
HKU\S-1-5-21-583907252-2077806209-839522115-500\Software\Microsoft\Internet Explorer\Main,Search Bar = google.com/?trackid=sp-006
HKU\S-1-5-21-583907252-2077806209-839522115-500\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = isearch.omiga-plus.com/?type=hp&ts=14220574.....VT952EVMVX
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "http://ww2.searchalgo.com/?cid=5031" <======= ATTENTION
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
SearchScopes: HKLM -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {0745903f-537a-47df-b632-555dc5bc790c} URL = findamo.com/search.html?&q={searchTerms}&cid=4151ch=2
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {74db9f9c-a172-477b-8545-8d1b3e4d5fa1} URL = ww2.searchalgo.com/search.html?q={searchTerms}&cid=5031
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {799e8a7f-9a74-405f-a0f8-68c003365b01} URL = ww2.searchalgo.com/search.html?q={searchTerms}&cid=5031
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {b86f66ba-c211-40c4-845f-99000d8a0793} URL = ww2.searchalgo.com/search.html?q={searchTerms}&cid=5031
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = google.com/search?trackid=sp-006&q={searchTerms}
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
BHO: No Name -> {319A461D-5202-4578-9EDC-CA35B9C0B561} -> No File
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-14] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-01] (AVAST Software)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-14] (Oracle Corporation)
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 89.216.1.40 89.216.1.50
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe isearch.omiga-plus.com/?type=sc&ts=14220574.....VT952EVMVX

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234
FF DefaultSearchEngine: Google Default
FF DefaultSearchUrl: google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: omiga-plus
FF Homepage: about:home
FF Keyword.URL: google.com/search/?trackid=sp-006
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-14] ()
FF Plugin: @java.com/DTPlugin,version=10.7.2 -> C:\WINDOWS\system32\npDeployJava1.dll [2014-07-14] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-14] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-30] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.)
FF user.js: detected! => C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\user.js [2015-02-03]
FF SearchPlugin: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\searchplugins\firefox-add-ons.xml [2015-04-16]
FF SearchPlugin: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\searchplugins\google-default.xml [2015-04-16]
FF Extension: Search App by Ask - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\Extensions\toolbar_ORJ-SPE@apn.ask.com.xpi [2015-04-10]
FF Extension: Clock Hand 1.0.1 - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\Extensions\{60b4ca60-5c76-463e-8bce-058498c2450d}.xpi [2015-02-03]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: No Name - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-01]
FF HKLM\...\Firefox\Extensions: [fftoolbar2014@etech.com] - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\extensions\fftoolbar2014@etech.com
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: Eset Plugin - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2014-07-14]
FF HKU\S-1-5-21-583907252-2077806209-839522115-500\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\Documents and Settings\All Users\Application Data\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.rs/
CHR StartupUrls: Default -> "hxxp://isearch.omiga-plus.com/?type=hp&ts=1422057476&from=obw&uid=FUJITSUXMHZ2160BHXG1_K61BT952EVMVT952EVMVX", "hxxp://www.google.rs/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default

Dopuna: 17 Apr 2015 0:02

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 15-04-2015 04
Ran by Administrator at 2015-04-16 23:52:28
Running from C:\Documents and Settings\Administrator\My Documents\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader XI (11.0.08) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
AstroWin v3.67 (HKLM\...\AstroWin_is1) (Version: - Allen Edwall/AstroWin)
Atheros Driver Installation Program (HKLM\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 9.2 - Atheros)
Autorun Virus Remover 3.1 (HKLM\...\Autorun Virus Remover_is1) (Version: - Autorun Remover)
Avast Free Antivirus (HKLM\...\Avast) (Version: 10.0.2208 - AVAST Software)
BSPlayer (HKLM\...\BSPlayer1) (Version: - )
Camera Assistant Software for Toshiba (HKLM\...\{37C866E4-AA67-4725-9E95-A39968DD7960}) (Version: 1.7.175.0123 - Chicony Electronics Co.,Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 4.18 - Piriform)
CD/DVD Drive Acoustic Silencer (HKLM\...\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}) (Version: 1.00.008 - TOSHIBA)
Clock Hand (HKLM\...\Clock Hand) (Version: 2015.02.03.142429 - Clock Hand) <==== ATTENTION
Dropbox (HKU\S-1-5-21-583907252-2077806209-839522115-500\...\Dropbox) (Version: 2.10.52 - Dropbox, Inc.)
ffdshow v1.2.4453 [2012-05-21] (HKLM\...\ffdshow_is1) (Version: 1.2.4453.0 - )
FormatFactory 3.3.5.0 (HKLM\...\FormatFactory) (Version: 3.3.5.0 - Format Factory)
Google Chrome (HKLM\...\Google Chrome) (Version: 41.0.2272.118 - Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
High Definition Audio Driver Package - KB888111 (HKLM\...\KB888111WXPSP2) (Version: 20040219.000000 - Microsoft Corporation)
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: - Intel Corporation)
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
MODEM Mobile Connection (HKLM\...\{93D34EE3-99B3-4DB1-8B0A-0A657466F90D}) (Version: 1.0.0.1 - )
Mozilla Firefox 37.0.1 (x86 en-US) (HKLM\...\Mozilla Firefox 37.0.1 (x86 en-US)) (Version: 37.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
MyPC Backup (HKLM\...\MyPC Backup) (Version: - JDi Backup Ltd) <==== ATTENTION
Nero 6 Ultra Edition (HKLM\...\Nero - Burning Rom!UninstallKey) (Version: - )
neurowise (HKLM\...\neurowise) (Version: 2014.09.05.052626 - neurowise) <==== ATTENTION
omiga-plus uninstall (HKLM\...\omiga-plus uninstall) (Version: - omiga-plus) <==== ATTENTION
REALTEK GbE & FE Ethernet PCI-E NIC Driver (HKLM\...\{C9BED750-1211-4480-B1A5-718A3BE15525}) (Version: 1.16.0000 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 5.10.0.5559 - Realtek Semiconductor Corp.)
Reimage Express (HKLM\...\Reimage Express) (Version: 1.0.3.2 - Reimage)
Revo Uninstaller Pro 3.1.1 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.1 - VS Revo Group, Ltd.)
Search App by Ask (HKLM\...\{4F524A2D-5350-4500-76A7-A758B70C1B00}) (Version: 12.27.0.141 - APN, LLC) <==== ATTENTION
Soft Modem with SmartCP (HKLM\...\CNXT_MODEM_PCI_VEN_14F1&DEV_2C06&SUBSYS_14F10000) (Version: 7.70.00 - Conexant)
SoftwareUpdater (HKLM\...\SoftwareUpdater) (Version: - ) <==== ATTENTION
Speed Test (HKLM\...\Speed Test) (Version: 4.1.0.0 - BestOffers) <==== ATTENTION
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 10.1.8.0 - Synaptics)
TOSHIBA Assist (HKLM\...\{12B3A009-A080-4619-9A2A-C6DB151D8D67}) (Version: - )
UnknownFile (HKU\S-1-5-21-583907252-2077806209-839522115-500\...\UnknownFile) (Version: 1.0.0.0 - UnknownFile) <==== ATTENTION!
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
USB 2.0 Card Reader (HKLM\...\{D10CB652-9332-4242-B7A9-2D61570144F7}) (Version: 1.0.0.0 - )
Video Performer (HKU\S-1-5-21-583907252-2077806209-839522115-500\...\Video Performer) (Version: - PerformerSoft LLC) <==== ATTENTION
VLC media player 2.1.3 (HKLM\...\VLC media player) (Version: 2.1.3 - VideoLAN)
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Winamp (remove only) (HKLM\...\Winamp) (Version: - )
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows XP Service Pack 3 (HKLM\...\Windows XP Service Pack) (Version: 20080414.031525 - Microsoft Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{E69341A3-E6D2-4175-B60C-C9D3D6FA40F6}\localserver32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-583907252-2077806209-839522115-500_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)

==================== Restore Points =========================

19-03-2015 12:57:12 Software Distribution Service 3.0
20-03-2015 15:11:09 Software Distribution Service 3.0
21-03-2015 02:14:32 Software Distribution Service 3.0
22-03-2015 02:23:07 Software Distribution Service 3.0
23-03-2015 02:25:35 Software Distribution Service 3.0
24-03-2015 02:27:24 Software Distribution Service 3.0
25-03-2015 02:30:03 Software Distribution Service 3.0
26-03-2015 02:25:58 Software Distribution Service 3.0
27-03-2015 01:53:47 Software Distribution Service 3.0
28-03-2015 02:21:53 Software Distribution Service 3.0
29-03-2015 03:03:27 Software Distribution Service 3.0
30-03-2015 02:02:25 Software Distribution Service 3.0
31-03-2015 01:50:35 Software Distribution Service 3.0
01-04-2015 02:17:08 Software Distribution Service 3.0
02-04-2015 01:16:48 Software Distribution Service 3.0
03-04-2015 00:44:38 Software Distribution Service 3.0
04-04-2015 00:51:51 System Checkpoint
04-04-2015 01:30:05 Software Distribution Service 3.0
05-04-2015 02:29:21 Software Distribution Service 3.0
06-04-2015 01:08:42 Software Distribution Service 3.0
07-04-2015 01:32:25 Software Distribution Service 3.0
08-04-2015 01:47:06 Software Distribution Service 3.0
09-04-2015 01:19:37 Software Distribution Service 3.0
10-04-2015 01:14:00 Software Distribution Service 3.0
11-04-2015 00:38:55 Software Distribution Service 3.0
12-04-2015 10:57:19 Software Distribution Service 3.0
13-04-2015 02:17:04 Software Distribution Service 3.0
14-04-2015 01:58:37 Software Distribution Service 3.0
15-04-2015 01:35:48 Software Distribution Service 3.0
16-04-2015 01:12:30 Software Distribution Service 3.0
==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2001-08-23 12:00 - 2014-10-20 19:18 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\PC Performer Scheduled Scan.job => C:\Program Files\PC Performer\PCPerformer.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\ReimageUpdater.job => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe <==== ATTENTION

==================== Loaded Modules (whitelisted) ==============

2015-04-16 20:30 - 2015-04-16 20:30 - 02926080 _____ () C:\Program Files\AVAST Software\Avast\defs\15041601\algo.dll
2004-08-04 00:56 - 2008-04-14 05:42 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2015-03-13 22:11 - 2015-03-13 22:11 - 38714440 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-04-14 21:41 - 2014-04-14 21:41 - 00039192 _____ () C:\Program Files\CCleaner\branding.dll
2014-07-02 15:56 - 2008-01-22 11:00 - 04624384 _____ () C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe
2004-08-04 00:56 - 2008-04-14 05:41 - 00059904 _____ () C:\WINDOWS\system32\devenum.dll
2001-08-23 12:00 - 2001-08-23 12:00 - 00015360 _____ () C:\WINDOWS\system32\tsd32.dll
2004-08-04 00:56 - 2013-01-02 08:49 - 01292288 _____ () C:\WINDOWS\system32\quartz.dll
2004-08-04 00:56 - 2008-04-14 05:42 - 00192512 _____ () C:\WINDOWS\system32\qcap.dll
2012-05-06 12:20 - 2012-05-06 12:20 - 03449856 _____ () C:\Program Files\FreeTime\FormatFactory\FFModules\Filters\ffdshow\ffdshow.ax
2014-10-13 16:31 - 2014-10-13 16:31 - 00904704 _____ () C:\Program Files\MyPC Backup\x86\System.Data.SQLite.dll
2014-10-13 16:36 - 2014-10-13 16:36 - 00012288 _____ () C:\Program Files\MyPC Backup\GetText.dll
2015-04-03 20:49 - 2015-03-30 23:07 - 09279304 _____ () C:\Program Files\Google\Chrome\Application\41.0.2272.118\pdf.dll
2015-04-03 20:49 - 2015-03-30 23:07 - 14974280 _____ () C:\Program Files\Google\Chrome\Application\41.0.2272.118\PepperFlash\pepflashplayer.dll
2014-11-06 02:26 - 2014-02-10 13:44 - 04592128 _____ () C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libglesv2.dll
2014-11-06 02:26 - 2014-02-10 13:44 - 00112128 _____ () C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libegl.dll

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-583907252-2077806209-839522115-500\Control Panel\Desktop\\Wallpaper -> C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
DNS Servers: 89.216.1.40 - 89.216.1.50

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== Accounts: =============================

Administrator (S-1-5-21-583907252-2077806209-839522115-500 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Administrator
Guest (S-1-5-21-583907252-2077806209-839522115-501 - Limited - Disabled)
HelpAssistant (S-1-5-21-583907252-2077806209-839522115-1000 - Limited - Disabled)
SUPPORT_388945a0 (S-1-5-21-583907252-2077806209-839522115-1002 - Limited - Disabled)

==================== Faulty Device Manager Devices =============

Name:
Description:
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/16/2015 00:37:55 PM) (Source: MsiInstaller) (EventID: 1013) (User: USER-C62F6B03F2)
Description: Product: Microsoft .NET Framework 3.0 Service Pack 2 -- Microsoft .NET Framework 3.0 Service Pack 2 cannot be uninstalled because it will affect other applications that are installed. For more information, see go.microsoft.com/fwlink/?LinkId=91126.

Error: (04/16/2015 01:23:45 AM) (Source: HotFixInstaller) (EventID: 5000) (User: )
Description: EventType visualstudio8setup, P1 microsoft .net framework 3.5-kb2604111, P2 1033, P3 1603, P4 msi, P5 f, P6 9.0.40215.0, P7 install, P8 x86, P9 visualstudio8setup0, P10 visualstudio8setup1.

Error: (04/16/2015 01:23:45 AM) (Source: MsiInstaller) (EventID: 1023) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 3.5 SP1 - Update 'KB2604111' could not be installed. Error code 1603. Additional information is available in the log file C:\WINDOWS\system32\config\SYSTEM~1\LOCALS~1\Temp\Microsoft .NET Framework 3.5-KB2604111_20150415_232339843-Msi0.txt.

Error: (04/16/2015 01:23:44 AM) (Source: MsiInstaller) (EventID: 10005) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 3.5 SP1 -- Error 25541.Failed to open XML file C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CONFIG\web_mediumtrust.config, system error: -2147024786

Error: (04/16/2015 01:14:10 AM) (Source: HotFixInstaller) (EventID: 5000) (User: )
Description: EventType visualstudio8setup, P1 microsoft .net framework 3.5-kb2840629, P2 1033, P3 1603, P4 msi, P5 f, P6 9.0.40215.0, P7 install, P8 x86, P9 visualstudio8setup0, P10 visualstudio8setup1.

Error: (04/16/2015 01:14:10 AM) (Source: MsiInstaller) (EventID: 1023) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 3.5 SP1 - Update 'KB2840629' could not be installed. Error code 1603. Additional information is available in the log file C:\WINDOWS\system32\config\SYSTEM~1\LOCALS~1\Temp\Microsoft .NET Framework 3.5-KB2840629_20150415_231404718-Msi0.txt.

Error: (04/16/2015 01:14:09 AM) (Source: MsiInstaller) (EventID: 10005) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 3.5 SP1 -- Error 25541.Failed to open XML file C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CONFIG\web_mediumtrust.config, system error: -2147024786

Error: (04/16/2015 01:13:33 AM) (Source: HotFixInstaller) (EventID: 5000) (User: )
Description: EventType visualstudio8setup, P1 microsoft .net framework 3.5-kb2736416, P2 1033, P3 1603, P4 msi, P5 f, P6 9.0.40215.0, P7 install, P8 x86, P9 visualstudio8setup0, P10 visualstudio8setup1.

Error: (04/16/2015 01:13:32 AM) (Source: MsiInstaller) (EventID: 1023) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 3.5 SP1 - Update 'KB2736416' could not be installed. Error code 1603. Additional information is available in the log file C:\WINDOWS\system32\config\SYSTEM~1\LOCALS~1\Temp\Microsoft .NET Framework 3.5-KB2736416_20150415_231320500-Msi0.txt.

Error: (04/16/2015 01:13:31 AM) (Source: MsiInstaller) (EventID: 10005) (User: NT AUTHORITY)
Description: Product: Microsoft .NET Framework 3.5 SP1 -- Error 25541.Failed to open XML file C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CONFIG\web_mediumtrust.config, system error: -2147024786


System errors:
=============
Error: (04/16/2015 06:25:14 PM) (Source: ipnathlp) (EventID: 31008) (User: )
Description: The DNS proxy agent was unable to read the local list of name-resolution
servers from the registry.
The data is the error code.

Error: (04/16/2015 05:25:14 PM) (Source: ipnathlp) (EventID: 31008) (User: )
Description: The DNS proxy agent was unable to read the local list of name-resolution
servers from the registry.
The data is the error code.

Error: (04/16/2015 04:25:14 PM) (Source: ipnathlp) (EventID: 31008) (User: )
Description: The DNS proxy agent was unable to read the local list of name-resolution
servers from the registry.
The data is the error code.

Error: (04/16/2015 01:25:14 PM) (Source: ipnathlp) (EventID: 31008) (User: )
Description: The DNS proxy agent was unable to read the local list of name-resolution
servers from the registry.
The data is the error code.

Error: (04/16/2015 01:23:46 AM) (Source: Windows Update Agent) (EventID: 20) (User: )
Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft .NET Framework 3.5 SP1 on Windows XP, Server 2003, Vista, Server 2008 x86 (KB2604111).

Error: (04/16/2015 01:14:11 AM) (Source: Windows Update Agent) (EventID: 20) (User: )
Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft .NET Framework 3.5 SP1 on Windows XP, Server 2003, Vista, Server 2008 x86 (KB2840629).

Error: (04/16/2015 01:13:34 AM) (Source: Windows Update Agent) (EventID: 20) (User: )
Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft .NET Framework 3.5 SP1 on Windows XP, Server 2003, Vista, Server 2008 x86 (KB2736416).

Error: (04/15/2015 04:13:21 PM) (Source: ipnathlp) (EventID: 31008) (User: )
Description: The DNS proxy agent was unable to read the local list of name-resolution
servers from the registry.
The data is the error code.

Error: (04/15/2015 01:03:15 PM) (Source: ipnathlp) (EventID: 31008) (User: )
Description: The DNS proxy agent was unable to read the local list of name-resolution
servers from the registry.
The data is the error code.

Error: (04/15/2015 01:36:36 AM) (Source: Windows Update Agent) (EventID: 20) (User: )
Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft .NET Framework 3.5 SP1 on Windows XP, Server 2003, Vista, Server 2008 x86 (KB2604111).


Microsoft Office Sessions:
=========================

==================== Memory info ===========================

Processor: Intel(R) Pentium(R) Dual CPU T3400 @ 2.16GHz
Percentage of memory in use: 97%
Total physical RAM: 1915.93 MB
Available physical RAM: 41.38 MB
Total Pagefile: 3809.56 MB
Available Pagefile: 1227.98 MB
Total Virtual: 2047.88 MB
Available Virtual: 1950.07 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:58.59 GB) (Free:36.45 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: () (Fixed) (Total:90.45 GB) (Free:89.9 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 149.1 GB) (Disk ID: 12E74991)
Partition 1: (Active) - (Size=58.6 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=90.4 GB) - (Type=OF Extended)

==================== End Of Log =======

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Arrow Korak 1

Idi u Start -> Control Panel -> Add or Remove Programs i deinstaliraj sljedeće programe:

Clock Hand
MyPC Backup
neurowise
omiga-plus uninstall
Reimage Express
Search App by Ask
SoftwareUpdater
Speed Test
UnknownFile
Video Performer

McAfee Security Scan Plus



Arrow Korak 2

Otvori Notepad i iskopiraj sljedeći tekst koji se nalazi unutar Kod polja.

HKLM\...\Run: [ApnTBMon] => C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2005896 2015-04-06] (APN)
HKU\S-1-5-21-583907252-2077806209-839522115-500\...\Run: [PCPerformer] => "C:\Program Files\PC Performer\PCPerformer.exe" /RUNSCAN
Startup: C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\MyPC Backup.lnk
ShortcutTarget: MyPC Backup.lnk -> C:\Program Files\MyPC Backup\MyPC Backup.exe (MyPCBackup.com)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-583907252-2077806209-839522115-500\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp&ts=14220574.....VT952EVMVX
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp&ts=14220574.....VT952EVMVX
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {0745903f-537a-47df-b632-555dc5bc790c} URL = http://www.findamo.com/search.html?&q={searchTerms}&cid=4151ch=2
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1422.....52EVMVX&q={searchTerms}
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {74db9f9c-a172-477b-8545-8d1b3e4d5fa1} URL = http://ww2.searchalgo.com/search.html?q={searchTerms}&cid=5031
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {799e8a7f-9a74-405f-a0f8-68c003365b01} URL = http://ww2.searchalgo.com/search.html?q={searchTerms}&cid=5031
SearchScopes: HKU\S-1-5-21-583907252-2077806209-839522115-500 -> {b86f66ba-c211-40c4-845f-99000d8a0793} URL = http://ww2.searchalgo.com/search.html?q={searchTerms}&cid=5031
BHO: No Name -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> No File
BHO: No Name -> {319A461D-5202-4578-9EDC-CA35B9C0B561} -> No File
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=14220574.....VT952EVMVX
FF user.js: detected! => C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\user.js [2015-02-03]
FF SearchPlugin: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\searchplugins\firefox-add-ons.xml [2015-04-16]
FF SearchPlugin: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\searchplugins\google-default.xml [2015-04-16]
FF Extension: Search App by Ask - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\Extensions\toolbar_ORJ-SPE@apn.ask.com.xpi [2015-04-10]
FF Extension: Clock Hand 1.0.1 - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\Extensions\{60b4ca60-5c76-463e-8bce-058498c2450d}.xpi [2015-02-03]
FF HKLM\...\Firefox\Extensions: [fftoolbar2014@etech.com] - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\icw1u0k0.default-1413910281234\extensions\fftoolbar2014@etech.com
Task: C:\WINDOWS\Tasks\PC Performer Scheduled Scan.job => C:\Program Files\PC Performer\PCPerformer.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\ReimageUpdater.job => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe <==== ATTENTION
C:\Program Files\AskPartnerNetwork
C:\Program Files\MyPC Backup
C:\Program Files\Reimage
C:\Program Files\PC Performer

FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: Eset Plugin - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2014-07-14]
EmptyTemp:


U okviru Notepad-a klikni na File --> Save As
Fajl nazovi Fixlist i sačuvaj na Desktop
Dvoklikom ponovo pokreni FRST.exe
Klikni na Fix i sačekaj dok program ne završi.
Ukoliko program zatraži restart računara, omogući mu da to nesmetano obavi.
Nakon završetka rada, otvoriće se fixlog.txt, sa sadržajem koji treba da kopiraš u temu.
Takođe, na Desktop-u će se nalaziti (fixlog.txt).




Arrow Korak 3

Preuzmi "Xplode"-ov AdwCleaner i sačuvaj ga na Desktop
Dvoklikom pokreni program.
u EULA prozoru klikni na I agree.
Klikni na dugme Scan i sačekaj da se završi skeniranje.
Klikni na dugme Cleaning i pričekaj da program završi.
Program će zatvoriti sve aktivne programe i izbaciti prozor sa tim upozorenjem. Klikni OK kao potvrdu.
Na sljedeća dva prozora koja se otvore (Informations i Restart required ) klikni OK

Računar će se restartovati, a potom otvoriti Notepad (C:\AdwCleaner[S0].txt) sa izvještajem.
Sačuvaj taj izvještaj na Desktop i okači ga uz poruku koristeći opciju "Prikači fajl"

Napomena: Izvještaj ce takođe biti sačuvan na C:\Adwcleaner\AdwCleaner[S0].txt

offline
  • Pridružio: 28 Apr 2012
  • Poruke: 62

pomoc trebam...kod deinstaliranja sve sem...omiga plus ....nisam uspela izbrisati

a u ovom drugom delu kad sam pokretala FRST.exe trazi mi fixlist.txt... ovaj fixlist sto ste rekli da uradim sam uradila... e sad ovde zastoj...kad pritisnem na fix trazi mi to.....

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Prebaci FRST.exe iz Download foldera na Desktop.

offline
  • Pridružio: 28 Apr 2012
  • Poruke: 62

uradila sam i isto pokazuje....

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Provjeri da li si snimila tekstualni fajl kao fixlist.txt ili kao fixlist.txt.txt. Ukoliko nisi sigurna, ponovi postupak, ali kad budeš snimala u polje za naziv fajla unesi samo fixlist pa probaj opet.

offline
  • Pridružio: 28 Apr 2012
  • Poruke: 62

nevolja je sto mi se sad ukljucuje avast antivirus cim pokrenem FRST.exe
nisam ni ste strane zasticena...konstatuje virus u vezi ovog ...hvala u vakom slucaju

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Deaktiviraj privremeno Avast pa probaj opet.
http://www.mycity.rs/Uputstva/Iskljucivanje-zastitnog-softvera.html

Ko je trenutno na forumu
 

Ukupno su 838 korisnika na forumu :: 4 registrovanih, 1 sakriven i 833 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: Fog of War, Hans Gajger, Koridor, zziko