problem u windows exploreru

problem u windows exploreru

offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 792
  • Gde živiš: Cacak

Napisano: 09 Dec 2013 13:49

Koristim win7 , telekom adsl i AV MicrosoftSecurityEssentials.Od juce je poceo da mi se ispoljava problem u otvaranju exsplorera Tv karte , sound kartice i ko zna jos cega a kad otvorim mozilu nece da otvori stranicu stalno izlazi ova poruka
samo sto sam pokusavao to je da skeniram sa AV i nista nije nadjeno drugo nista nisam radio posto nemam ideju sta da radim . Kad otvorim tv kartu vrti do beskonacnosti i nemoze da se obrise cak ni iz task managera vec mora da se restartuje racunar. Cini mi se da je ovo pocelo da se dogadja posle abdejta tv kartice pomocu njene alatke live update.
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 11.0.9600.16428 BrowserJavaVersion: 10.45.2
Run by miroslav at 13:44:22 on 2013-12-09
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.2046.734 [GMT 1:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\nvvsvc.exe
C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\HDD Regenerator 2011\hrsrv.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Nitro\Reader 3\NitroPDFReaderDriverService3.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\WindowsMobile\wmdcBase.exe
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\XpertVision\TBPANEL.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\MCShield\MCShieldRTM.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\PANDORA.TV\PanService\KMPService.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\System32\rundll32.exe
D:\Christmas Trees\ChristmasGarlandLight.exe
D:\Christmas Trees\ChristmasGift.exe
C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
C:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\PANDORA.TV\PanService\KMPProcess.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Microsoft Security Client\MpCmdRun.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k WindowsMobile
C:\Windows\system32\svchost.exe -k SDRSVC
.
============== Pseudo HJT Report ===============
.
uStart Page = [Link mogu videti samo ulogovani korisnici]
BHO: RoboForm Toolbar Helper: {724d43a9-0d85-11d4-9908-00400523e39a} - c:\program files\siber systems\ai roboform\roboform.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
TB: &RoboForm Toolbar: {724d43a0-0d85-11d4-9908-00400523e39a} - c:\program files\siber systems\ai roboform\roboform.dll
uRun: [TBPanel] c:\program files\xpertvision\TBPanel.exe /A
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [MCShield Monitor] c:\program files\mcshield\mcshieldrtm.exe
uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe" /MINIMIZED
uRun: [Google Update] "c:\users\miroslav\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [TBHostSupport] "c:\windows\system32\rundll32.exe" "c:\users\miroslav\appdata\local\tbhostsupport\TBHostSupport.dll",DLLRunTBHostSupportPlugin
uRun: [Christmas Garland Light] d:\christmas trees\ChristmasGarlandLight.exe
uRun: [Christmas Gift] d:\christmas trees\ChristmasGift.exe
uRun: [RoboForm] "c:\program files\siber systems\ai roboform\RoboTaskBarIcon.exe"
uRun: [WinFast Schedule] c:\program files\winfast\wfdtv\WFWIZ.exe
mRun: [RtHDVCpl] c:\program files\realtek\audio\hda\RtHDVCpl.exe -s
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Windows Mobile-based device management] c:\windows\windowsmobile\wmdcBase.exe
mRun: [HDD Regenerator] "c:\program files\hdd regenerator 2011\Shell.exe" /0
mRun: [WinFastDTV] c:\program files\winfast\wfdtv\DTVSchdl.exe
mRun: [ArcSoft Connection Service] c:\program files\common files\arcsoft\connection service\bin\ACDaemon.exe
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: Podesi Meni - c:\program files\siber systems\ai roboform\RoboFormComCustomizeIEMenu.html
IE: Prikaži Paletu Alatki RoboForm-a - c:\program files\siber systems\ai roboform\RoboFormComShowToolbar.html
IE: Puni Obrazac - c:\program files\siber systems\ai roboform\RoboFormComFillForms.html
IE: Sacuvaj Obrazac - <no file>
IE: Send by Bluetooth - c:\program files\ivt corporation\bluesoleil\transsend\ie\tsinfo.htm
IE: Send via &Message... - c:\program files\ivt corporation\bluesoleil\transsend\ie\tssms.htm
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - c:\program files\siber systems\ai roboform\roboform.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - c:\program files\siber systems\ai roboform\roboform.dll
IE: {724d43aa-0d85-11d4-9908-00400523e39a} - {724d43aa-0d85-11d4-9908-00400523e39a} - c:\program files\siber systems\ai roboform\roboform.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - {FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD} - <orphaned>
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{950145A9-7978-489C-85C9-6084509E4518} : DHCPNameServer = 192.168.1.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\windows\system32\skype4com.dll
SSODL: WebCheck - <orphaned>
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\31.0.1650.63\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\miroslav\appdata\roaming\mozilla\firefox\profiles\4jmgh4o3.default\
FF - prefs.js: browser.startup.homepage - [Link mogu videti samo ulogovani korisnici]
FF - prefs.js: keyword.URL - [Link mogu videti samo ulogovani korisnici]
FF - plugin: c:\program files\google\update\1.3.22.3\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\dtplugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\nitro\reader 3\npdf.dll
FF - plugin: c:\program files\nitro\reader 3\npnitroie.dll
FF - plugin: c:\program files\nitro\reader 3\npnitromozilla.dll
FF - plugin: c:\program files\nvidia corporation\3d vision\npnv3dv.dll
FF - plugin: c:\program files\nvidia corporation\3d vision\npnv3dvstreaming.dll
FF - plugin: c:\users\miroslav\appdata\local\google\update\1.3.22.3\npGoogleUpdate3.dll
FF - plugin: c:\users\miroslav\appdata\local\spoon\3.33.6.140\npMozillaSpoonPlugin.dll
FF - plugin: c:\users\miroslav\appdata\roaming\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\users\miroslav\appdata\roaming\mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: c:\users\miroslav\appdata\roaming\mozilla\plugins\npo1d.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_9_900_152.dll
FF - ExtSQL: 2013-11-01 23:08; jid1-2XvMEc6Luckz4w@jetpack; c:\users\miroslav\appdata\roaming\mozilla\firefox\profiles\4jmgh4o3.default\extensions\jid1-2XvMEc6Luckz4w@jetpack.xpi
FF - ExtSQL: 2013-12-07 09:45; {73007fef-a6e0-47d3-b4e7-dfc116ed6f65}; c:\users\miroslav\appdata\roaming\mozilla\firefox\profiles\4jmgh4o3.default\extensions\{73007fef-a6e0-47d3-b4e7-dfc116ed6f65}.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 BtHidBus;Bluetooth HID Bus Service;c:\windows\system32\drivers\BtHidBus.sys [2008-7-31 20616]
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2013-9-27 214696]
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-2-15 37664]
R1 MpKsl9e71fada;MpKsl9e71fada;c:\programdata\microsoft\microsoft antimalware\definition updates\{2c1926c1-30e2-4284-bcc2-131a50f8b029}\MpKsl9e71fada.sys [2013-12-9 40392]
R2 BsMobileCS;BsMobileCS;c:\program files\ivt corporation\bluesoleil\BsMobileCS.exe [2008-8-1 143467]
R2 hddrsrv;hddrsrv;c:\program files\hdd regenerator 2011\hrsrv.exe [2013-5-8 82144]
R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2013-2-15 418376]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2013-2-15 701512]
R2 NAUpdate;Nero Update;c:\program files\nero\update\NASvc.exe [2010-3-25 490280]
R2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2013-6-18 104768]
R2 NitroReaderDriverReadSpool3;NitroPDFReaderDriverCreatorReadSpool3;c:\program files\nitro\reader 3\NitroPDFReaderDriverService3.exe [2013-1-14 196624]
R2 PanService;PandoraService;c:\program files\pandora.tv\panservice\KMPService.exe [2013-9-25 1922600]
R2 SSPORT;SSPORT;c:\windows\system32\drivers\SSPORT.SYS [2013-2-15 5120]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\nvidia corporation\3d vision\nvSCPAPISvr.exe [2013-1-18 383264]
R2 TeamViewer8;TeamViewer 8;c:\program files\teamviewer\version8\TeamViewer_Service.exe [2013-2-15 3467768]
R3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\system32\drivers\IvtBtBus.sys [2008-7-2 26248]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-2-15 22856]
R3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\NisSrv.exe [2013-10-23 280288]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2009-6-10 139776]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 vToolbarUpdater15.5.0;vToolbarUpdater15.5.0;c:\program files\common files\avg secure search\vtoolbarupdater\15.5.0\toolbarupdater.exe --> c:\program files\common files\avg secure search\vtoolbarupdater\15.5.0\ToolbarUpdater.exe [?]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\ieetwcollector.exe [2013-11-26 108032]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2013-2-15 15872]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2013-2-28 52224]
.
=============== Created Last 30 ================
.
2013-12-09 12:32:32 62576 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{2c1926c1-30e2-4284-bcc2-131a50f8b029}\offreg.dll
2013-12-09 12:32:32 40392 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{2c1926c1-30e2-4284-bcc2-131a50f8b029}\MpKsl9e71fada.sys
2013-12-09 09:54:46 7772552 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{2c1926c1-30e2-4284-bcc2-131a50f8b029}\mpengine.dll
2013-12-09 09:43:55 7772552 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2013-12-09 08:55:18 -------- d-----w- c:\program files\RelevantKnowledge
2013-12-09 08:53:42 -------- d-----w- c:\program files\ChrisTV PVR
2013-12-08 17:18:19 245408 ----a-w- c:\windows\system32\unicows.dll
2013-12-06 20:31:07 -------- d-----w- c:\program files\Inpaint
2013-12-06 18:24:58 -------- d-----w- c:\program files\HDD Regenerator 2011
2013-12-06 15:18:46 -------- d-----w- c:\users\miroslav\appdata\local\ActiveDancer
2013-12-06 07:24:28 719224 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\{eeabf6fa-959e-4075-a631-3fa36055b305}\gapaengine.dll
2013-12-05 13:23:45 -------- d-----w- c:\program files\Siber Systems
2013-12-03 21:23:18 -------- d-----w- c:\programdata\YTD Video Downloader
2013-12-03 21:23:06 -------- d-----w- c:\program files\GreenTree Applications
2013-11-25 12:40:41 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2013-11-25 12:37:31 -------- d-----w- c:\windows\system32\directx
2013-11-24 17:02:52 350 ----a-w- c:\windows\system32\AF15IRTBL.bin
2013-11-21 17:53:56 -------- d-----w- c:\program files\Free MP3 Cutter
2013-11-20 08:24:53 -------- d-----w- c:\program files\MSECache
2013-11-18 22:15:01 -------- d-----w- c:\users\miroslav\appdata\roaming\DScaler4
2013-11-18 22:15:01 -------- d-----w- c:\program files\DScaler
2013-11-18 22:05:27 81408 ----a-w- c:\windows\emMON.exe
2013-11-18 22:05:27 113664 ----a-w- c:\windows\system32\emPRP.ax
2013-11-18 14:47:45 258048 ----a-w- c:\windows\system32\drmclien.dll
2013-11-18 14:47:27 -------- d-----w- c:\windows\ulead.dat
2013-11-17 08:14:20 -------- d-----w- c:\program files\Leadtek Research Inc
2013-11-13 23:21:54 2 ----a-w- c:\windows\system32\Dvbpws.dll
2013-11-12 22:34:55 -------- d-----w- c:\programdata\DriverGenius
.
==================== Find3M ====================
.
2013-11-19 10:21:30 230048 ------w- c:\windows\system32\MpSigStub.exe
2013-11-14 07:23:41 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-11-14 07:23:41 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-10-12 02:03:08 656896 ----a-w- c:\windows\system32\nshwfp.dll
2013-10-12 02:01:41 679424 ----a-w- c:\windows\system32\IKEEXT.DLL
2013-10-12 02:01:25 216576 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2013-10-08 06:50:41 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-10-05 19:57:25 1168384 ----a-w- c:\windows\system32\crypt32.dll
2013-10-04 01:58:50 152576 ----a-w- c:\windows\system32\SmartcardCredentialProvider.dll
2013-10-04 01:56:25 168960 ----a-w- c:\windows\system32\credui.dll
2013-10-04 01:56:00 1796096 ----a-w- c:\windows\system32\authui.dll
2013-10-03 01:58:07 305152 ----a-w- c:\windows\system32\gdi32.dll
2013-09-27 08:53:06 214696 ----a-w- c:\windows\system32\drivers\MpFilter.sys
2013-09-27 08:53:06 104768 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
2013-09-25 02:01:08 136640 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2013-09-25 02:01:06 67520 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2013-09-25 01:57:46 99840 ----a-w- c:\windows\system32\sspicli.dll
2013-09-25 01:57:26 22016 ----a-w- c:\windows\system32\secur32.dll
2013-09-25 01:57:24 247808 ----a-w- c:\windows\system32\schannel.dll
2013-09-25 01:56:42 220160 ----a-w- c:\windows\system32\ncrypt.dll
2013-09-25 01:56:02 1038848 ----a-w- c:\windows\system32\lsasrv.dll
2013-09-25 00:49:20 22016 ----a-w- c:\windows\system32\lsass.exe
2013-09-25 00:49:18 15872 ----a-w- c:\windows\system32\sspisrv.dll
2013-09-14 00:48:58 338944 ----a-w- c:\windows\system32\drivers\afd.sys
.
============= FINISH: 13:46:51.68 ===============

Dopuna: 09 Dec 2013 13:54

Izvinjavam se zaboravio sam attach fajl
[Link mogu videti samo ulogovani korisnici]



offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6104

Pozdrav,

Deinstaliraj nezeljeni program:
Start > Control Panel > Programs and Features i u listi deinstaliraj sledece AVG SafeGuard toolbar




Potom ...




Preuzmi smeenk-ov zoek.zip ili zoek.rar () sa ovog ili ovog linka i sačuvaj ga na Desktop.

Raspakuj arhivu u neki folder (uputstvo), a zatim:

zatvori browser i ostale pokrenute programe;
privremeno deaktiviraj zaštitni softver ( ukoliko je to potrebno ) Uputstvo ;
dvoklikom pokreni zoek na ikonicu programa ;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sledeći tekst:

createsrpoint;
AVG SafeGuard toolbar;u
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run];r
"TBHostSupport"=-;r
c:\users\miroslav\appdata\local\tbhostsupport;fs
vToolbarUpdater15.5.0;s
c:\program files\common files\avg secure search;fs
StandardSearch;
uninstall-list;


Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.



offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 792
  • Gde živiš: Cacak

kad otvorim program izlazi ovaj prozor


offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6104

Nisi preuzeo zoek.zip ili zoek.rar vec Z-analyse. Sacekaj ga, izbacice ti log, a kada to uradi, iskopiraj ga na forum i sacekaj moje dalje instrukcije. Wink

offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 792
  • Gde živiš: Cacak

[Link mogu videti samo ulogovani korisnici]

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6104

Nema ovde malware, samo crapware & junkware koji znaju da prave problem. Malo je verovatno da je to napravilo i tebi problem ali daj da to ocistimo kako treba kada si ovde.
I po opisu problema govori nam da je driver moguc uzrocnik problema. To potvrdjuje i Event Viewer.
(pogledati Attach.txt log napravljen od strane DDS alata, zadnja sekcija "Event Viewer Messages From Past Week" )





Ponovo pokreni zoek kao malopre sto si ...

zatvori browser i ostale pokrenute programe;
privremeno deaktiviraj zaštitni softver ( ukoliko je to potrebno ) Uputstvo ;
dvoklikom pokreni zoek na ikonicu programa ;
pričekaj da se alat startuje ...


U beli okvir prozora iskopiraj sledeći tekst:

autoclean;
C:\Windows\tasks\At1.job;f
C:\Windows\tasks\At2.job;f
C:\Windows\system32\tasks\At1;f
C:\Windows\system32\tasks\At2;f
chrdefaults;
C:\Users\miroslav\AppData\Local\CRE\aicancafipiklohohmoognddncljhkio.crx;f
aicancafipiklohohmoognddncljhkio;chr


Klikni na dugme i pričekaj da se skeniranje završi.


zoek ce po potrebi, restartovati Windows a na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.

Napomena:Izveštaj će biti sačuvan pod nazivom zoek-results.log na sistemskoj particiji (tipična lokacija: C:\zoek-results.log)


Arrow Kopiraj sadrzaj tog loga u poruku.



------ Potom ------



Potom, zavrsna ARK provera:

Preuzmi aswMBR i sacuvaj ga na Desktop.

Dvoklikom pokreni aswMBR.

Ukoliko dobijes sledecu poruku:
Would you like to download latest Avast! virus definitions?
Klikni na dugme Yes i pricekaj da se proces preuzimanja definicija zavrsi.


Proveri da je pod AV Scan: izabrana opcija QuickScan

Klikni na Scan.

Kada zavrsi skeniranje ( Scan finished successfully ) klikni Save log.
Sacuvaj aswMBR log na Desktop.
Sadrzaj tog loga iskopiraj u temi.

offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 792
  • Gde živiš: Cacak

Zoek.exe Version 4.0.0.5 Updated 05-December-2013
Tool run by miroslav on Wed 12/11/2013 at 22:26:59.16.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\miroslav\Desktop\zoek\zoek.com [Script inserted]

==== System Restore Info ======================

12/11/2013 10:28:11 PM Zoek.exe System Restore Point Created Succesfully.



aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2013-12-11 22:35:42
-----------------------------
22:35:42.641 OS Version: Windows 6.1.7601 Service Pack 1
22:35:42.642 Number of processors: 2 586 0xF0D
22:35:42.646 ComputerName: MIROSLAV-PC UserName: miroslav
22:35:43.062 Initialize success
22:47:53.744 AVAST engine defs: 13121100
22:54:48.268 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
22:54:48.272 Disk 0 Vendor: WDC_WD2500AAJB-00WGA0 00.02C01 Size: 238474MB BusType: 3
22:54:48.276 Disk 1 \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP2T0L0-3
22:54:48.279 Disk 1 Vendor: Hitachi_HDT725025VLA380 V5DOA7EA Size: 238474MB BusType: 3
22:54:48.427 Disk 0 MBR read successfully
22:54:48.430 Disk 0 MBR scan
22:54:48.439 Disk 0 Windows 7 default MBR code
22:54:48.443 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 118997 MB offset 63
22:54:48.452 Disk 0 Partition - 00 0F Extended LBA 119467 MB offset 243706050
22:54:48.468 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 119467 MB offset 243706113
22:54:48.478 Disk 0 scanning sectors +488376000
22:54:48.548 Disk 0 scanning C:\Windows\system32\drivers
22:54:59.428 Service scanning
22:55:25.198 Modules scanning
22:55:34.288 Disk 0 trace - called modules:
22:55:34.313 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll ataport.SYS intelide.sys PCIIDEX.SYS atapi.sys nvlddmkm.sys dxgkrnl.sys dxgmms1.sys
22:55:34.321 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85a4dac8]
22:55:34.329 3 CLASSPNP.SYS[8944c59e] -> nt!IofCallDriver -> [0x84c88878]
22:55:34.337 5 ACPI.sys[88cc13d4] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x84cdf908]
22:55:35.209 AVAST engine scan C:\Windows
22:55:37.297 AVAST engine scan C:\Windows\system32
22:59:25.657 AVAST engine scan C:\Windows\system32\drivers
22:59:42.347 AVAST engine scan C:\Users\miroslav
23:01:54.133 AVAST engine scan C:\ProgramData
23:02:53.735 Scan finished successfully
23:11:16.683 Disk 0 MBR has been saved successfully to "C:\Users\miroslav\Desktop\MBR.dat"
23:11:16.696 The log file has been saved successfully to "C:\Users\miroslav\Desktop\aswMBR.txt"

offline
  • magna86  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 21 Jun 2008
  • Poruke: 6104

Trebao si da sacekas da zoek zavrsi rad pa tek onda da mi postavis log a ne dok zoek jos radi ti kopiras sadrzaj loga. Bilo kako bilo, zoek je pocistio smece-fajlove, tvoj PC je cistiji nego sto je bio. To bi bilo to.

Preuzmi "Xplode"-ov DelFix i sačuvaj ga na Desktop

Dvoklikom pokreni program.

Štikliraj sledeće opcije:
Remove disinfection tools
Purge System Restore
Reset system settings


Klikni na dugme "Run" i pričekaj da program završi rad.
Alat ce ukloniti sve koriscene alate u ovoj temi...
Kada alat završi, otvoriće izvestaj u notepadu.
Napomena: Izvestaj ce takodje biti sacuvan na C:\DelFix.txt

Nije potrebno dostavljati izvestaj.

offline
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 792
  • Gde živiš: Cacak

Stanje je ostalo isto stim sto sad nemoze da se otvori ni desktop gadgets , izgleda nema druge nego da se reinstalira sistem . Hvala na pomoci

Ko je trenutno na forumu
 

Ukupno su 1191 korisnika na forumu :: 133 registrovanih, 8 sakrivenih i 1050 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 04bokibole, airsuba, aleksmajstor, Apok, aramis s, Asteker, babaroga, Betty25, bobo85, Bojan198527, bojank, bokisha253, Boris90, bpop, Bubimir, bukefal, BWG, ccoogg123, Cian, comi_pfc, CrazyNorth, crnogorac, cvrle312, DalmatinacMF, Dare, darkangel, Deki Duga Devetka, Denaya, dok80, DonRumataEstorski, Dorcolac, dragan_mig31, draganl, Drakce65, drimer, dulleo, FOX, gagidjuric, Gerila015, Gogi_avio, gomago, goranvas, goxsys, gregorxix, grenadir, grunff2, Hardenberg, havoc995, hologram, istina, Istman, JankoS, Jovan.D, jukeboxer, K-1A, kaisarevic1, Kalem, Kobrim, kolle.the.kid, kontrasvijeta, Kriglord, Kubovac, kunktator, Lazarus, Lošmi, Lucije Kvint, Macalone, Mackomen, marko.markovic, maxim_von_burdengate, mercedesamg, Mercury, Metanoja, Mi lao shu, micke83, MIG-3, milanpb, mile.ilic75, mile33, milenko crazy north, milos.cbr, mist-mist, mix1, momcilob55, monomah, morava_01, nebojsag, nemkea71, nisamBot, nnovakis, Novakomp, novator, operniki, Pantelejmon, Panter, panzerwaffe, pceklic, pfc74, pisac12, PlayerOne, PO1974, Pohovani_00, Povratak1912, precan, PrincipL, promajauglavi, raketaš, raykan, Rothmans, ruma, samoborac, Shinobi, sixpac, Smajser, stefanmpurtic, tanakadzo, tenkiasta71, theNedjeljko, Token, vathra, vidra boy, VJ, Vrač, vukovi, yiyi, Yugol33, zbazin, zdrebac, zg, zil10, Zorge, Zvlade, zziko