sistem ne uspeva da se pokrene posle skeniranja antivirusom


sistem ne uspeva da se pokrene posle skeniranja antivirusom

Ja sam sinoc skenirala racunar sa Avast-antivirusom
i detektovao je nekoliko zarazenih file_ova, to su bili uglavnom file programi za arhitekturu, na kojima radim.
E sada pod opcijama sta uraditi sa zarazenim file_ovima, ja sam kliknula opciju:
DELETE za neke file_ove
CHEST za ostale jer ne mogu da ih izbrisem posto mi trebaju i radim na njima
a prvu opciju koju sam bila izabrala REPAIR FILE nije uspeo da odradi, kaze ERROR OPERATION FAILED.

kada sam kliknula RESTART on je poceo da restartuje, medjutim posle toga nista, desilo se ono sto sam danas navela kao problem, znaci sistem nije hteo da se pokrene.

Ne znam sta sada da uradim sa tim zarazenim file_ovima, da li opet da pokrenem skeniranje racunara sa antivirusom?

OTL logfile created on: 16/05/2012 20:37:06 - Run 1
OTL by OldTimer - Version Folder = C:\Users\lukamatic\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000410 | Country: Italy | Language: ITA | Date Format: dd/MM/yyyy

5,99 Gb Total Physical Memory | 4,33 Gb Available Physical Memory | 72,27% Memory free
11,98 Gb Paging File | 10,41 Gb Available in Paging File | 86,90% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,41 Gb Total Space | 321,69 Gb Free Space | 34,54% Space Free | Partition Type: NTFS
Drive D: | 164,85 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: UDF
Drive F: | 7,45 Gb Total Space | 1,93 Gb Free Space | 25,96% Space Free | Partition Type: FAT32

Computer Name: LUKAMATIC-PC | User Name: lukamatic | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012/05/16 12:49:24 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Users\lukamatic\Desktop\OTL.exe
PRC - [2012/05/11 23:19:01 | 000,949,104 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\opera.exe
PRC - [2011/05/10 14:10:58 | 003,459,712 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2011/05/10 14:10:57 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2011/03/28 12:21:16 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
PRC - [2010/03/31 12:27:06 | 000,139,268 | ---- | M] () -- C:\Program Files (x86)\DCPFLICS\DCPFLICS.exe
PRC - [2010/03/25 14:39:22 | 000,490,280 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe
PRC - [2010/03/10 02:10:38 | 000,086,016 | ---- | M] () -- C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe
PRC - [2010/03/10 01:38:18 | 000,086,016 | ---- | M] () -- C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe
PRC - [2009/07/20 05:00:00 | 000,077,824 | ---- | M] () -- C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe
PRC - [2008/09/24 14:32:48 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
PRC - [2007/11/20 13:52:30 | 000,045,700 | ---- | M] () -- C:\Program Files (x86)\cebas\ip-clamp\ipclamp.exe

========== Modules (No Company Name) ==========

MOD - [2009/07/20 05:00:00 | 000,077,824 | ---- | M] () -- C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe

========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/05/10 14:10:57 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2010/11/20 18:26:11 | 001,436,424 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:64bit: - [2010/03/10 01:38:18 | 000,086,016 | ---- | M] () [Auto | Running] -- C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe -- (mi-raysat_3dsmax2011_64)
SRV:64bit: - [2009/07/20 13:36:14 | 000,160,784 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:64bit: - [2009/07/14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:64bit: - [2009/04/08 03:48:44 | 002,020,608 | ---- | M] (O&O Software GmbH) [Auto | Running] -- C:\Windows\SysNative\oodag.exe -- (O&O Defrag)
SRV - [2012/05/13 14:42:34 | 000,257,696 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2011/07/13 16:02:34 | 001,045,256 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/04/01 12:14:30 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011/03/28 12:21:16 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2011/01/21 12:57:31 | 000,078,536 | ---- | M] (Macrovision ) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe -- (InstallShield Licensing Service)
SRV - [2010/03/31 12:27:06 | 000,139,268 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\DCPFLICS\DCPFLICS.exe -- (DCPFLICS)
SRV - [2010/03/25 14:39:22 | 000,490,280 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate) @C:\Program Files (x86)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/03/10 02:10:38 | 000,086,016 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_32server.exe -- (mi-raysat_3dsmax2011_32)
SRV - [2010/02/19 15:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/09/24 14:32:48 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
SRV - [2007/11/20 13:52:30 | 000,045,700 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\cebas\ip-clamp\ipclamp.exe -- (IPClampService)

========== Driver Services (SafeList) ==========

DRV:64bit: - [2012/03/01 08:54:38 | 000,022,896 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/11/24 23:23:32 | 000,203,320 | ---- | M] (DEVGURU Co., LTD.( [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm) SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.)
DRV:64bit: - [2011/11/24 23:23:28 | 000,098,616 | ---- | M] (DEVGURU Co., LTD.( [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.)
DRV:64bit: - [2011/05/10 14:04:08 | 000,600,920 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2011/05/10 14:04:07 | 000,287,576 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2011/05/10 14:02:41 | 000,053,592 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2011/05/10 13:59:59 | 000,031,064 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr.sys -- (aswRdr)
DRV:64bit: - [2011/05/10 13:59:48 | 000,064,344 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2011/05/10 13:59:37 | 000,022,360 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2011/03/11 08:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 08:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/09/28 17:44:52 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2010/01/28 16:25:02 | 000,086,120 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2009/08/21 01:20:18 | 000,356,096 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2009/08/21 01:20:18 | 000,187,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2009/08/21 01:20:18 | 000,092,160 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2009/08/21 01:20:18 | 000,063,488 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/17 18:54:46 | 000,040,976 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV:64bit: - [2009/06/17 18:54:38 | 000,112,144 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LMouKE.Sys -- (LMouKE)
DRV:64bit: - [2009/06/17 18:54:30 | 000,057,872 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2009/06/17 18:54:22 | 000,055,312 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2009/06/17 18:54:14 | 000,013,328 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LHidEqd.sys -- (LHidEqd)
DRV:64bit: - [2009/06/17 18:54:06 | 000,074,256 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LEqdUsb.sys -- (LEqdUsb)
DRV:64bit: - [2009/06/17 18:53:42 | 000,089,616 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\L8042mou.Sys -- (L8042mou)
DRV:64bit: - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/22 23:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009/05/18 15:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2005/03/29 03:30:38 | 000,008,192 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009/02/10 19:23:10 | 000,115,600 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys -- (ISODrive)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = [Link mogu videti samo ulogovani korisnici]{searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = [Link mogu videti samo ulogovani korisnici]{searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = [Link mogu videti samo ulogovani korisnici]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = it-IT
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = D3 E0 CD 87 BB 2F CD 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = [Link mogu videti samo ulogovani korisnici]{searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\ C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_235.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\ disabled File not found
FF - HKLM\Software\MozillaPlugins\ C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll ()
FF - HKLM\Software\MozillaPlugins\ File not found
FF - HKLM\Software\MozillaPlugins\,version=: File not found
FF - HKLM\Software\MozillaPlugins\,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\ C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\ disabled File not found
FF - HKLM\Software\MozillaPlugins\,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll File not found
FF - HKLM\Software\MozillaPlugins\;version= C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\;version= C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\;version=: File not found
FF - HKLM\Software\MozillaPlugins\ Update;version=3: C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\ Update;version=9: C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\,version=0.9.18: C:\Program Files (x86)\Veetle\plugins\npVeetle.dll (Veetle Inc)
FF - HKLM\Software\MozillaPlugins\,version=0.9.18: C:\Program Files (x86)\Veetle\Player\npvlc.dll (Veetle Inc)
FF - HKCU\Software\MozillaPlugins\ C:\Users\lukamatic\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\ C:\Users\lukamatic\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\ Update;version=3: C:\Users\lukamatic\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\ Update;version=9: C:\Users\lukamatic\AppData\Local\Google\Update\\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ C:\Program Files\Alwil Software\Avast5\WebRep\FF [2011/05/10 19:21:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox\Extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\Components [2010/11/20 18:40:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox\Extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\Plugins [2011/05/30 13:43:32 | 000,000,000 | ---D | M]

[2010/11/20 15:12:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\lukamatic\AppData\Roaming\Mozilla\Extensions
[2010/11/20 15:12:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\lukamatic\AppData\Roaming\Mozilla\Firefox\Profiles\9z9uxt8q.default\extensions
[2011/05/16 10:09:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012/02/14 13:54:39 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
File not found (No name found) -- C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\EXTENSIONS\{AB2CE124-6272-4B12-94A9-7303C7397BD1}

O1 HOSTS File: ([2010/11/20 20:34:12 | 000,000,854 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts:
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No CLSID value found.
O4:64bit: - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
O4 - HKCU..\Run: [AdobeBridge] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 36
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = FF FF FF FF [binary data]
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKLM\..Trusted Domains: ([]http in Trusted sites)
O15 - HKLM\..Trusted Domains: ([]https in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{AB6D70A4-DB16-4C93-9C3D-939E32156383}: DhcpNameServer =
O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:64bit: - Protocol\Handler\HPPUDCS - No CLSID value found
O18:64bit: - Protocol\Handler\hppufile - No CLSID value found
O18:64bit: - Protocol\Handler\hppusam - No CLSID value found
O18:64bit: - Protocol\Handler\hppuzip - No CLSID value found
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18 - Protocol\Handler\HPPUDCS {522CC7E5-F378-4F97-8BD7-125D17F5B332} - C:\Program Files (x86)\Common Files\Hewlett-Packard\HP Printer Utility DCS\APP\hplidcsapp.dll (Hewlett-Packard Company)
O18 - Protocol\Handler\hppufile {4BCA8E33-E18F-4358-9F6F-3C7206BCF72F} - C:\Program Files (x86)\Hewlett-Packard\HP Printer Utility\hpluCtrls.dll (Hewlett-Packard Company)
O18 - Protocol\Handler\hppusam {4BCA8E33-E18F-4358-9F6F-3C7206BCF72F} - C:\Program Files (x86)\Hewlett-Packard\HP Printer Utility\hpluCtrls.dll (Hewlett-Packard Company)
O18 - Protocol\Handler\hppuzip {4BCA8E33-E18F-4358-9F6F-3C7206BCF72F} - C:\Program Files (x86)\Hewlett-Packard\HP Printer Utility\hpluCtrls.dll (Hewlett-Packard Company)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/10/08 17:43:47 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O32 - AutoRun File - [2011/04/07 17:16:19 | 000,000,000 | RHSD | M] - C:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{41640fba-4f50-11e1-ab9c-20cf302f6ffd}\Shell - "" = AutoRun
O33 - MountPoints2\{41640fba-4f50-11e1-ab9c-20cf302f6ffd}\Shell\AutoRun\command - "" = F:\NokiaPCIA_Autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (OODBS)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\ [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\ [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012/05/16 20:35:35 | 000,595,456 | ---- | C] (OldTimer Tools) -- C:\Users\lukamatic\Desktop\OTL.exe
[2012/05/15 21:41:14 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{8368F41A-0B99-427B-85D3-0BBA8EC367AE}
[2012/05/15 21:41:01 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{28FA3BD2-521B-4C91-8C96-81BB7A1E089C}
[2012/05/15 17:03:15 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{0D53187F-1CD7-46D6-9547-7F6B22159A5B}
[2012/05/15 17:03:03 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{87F092E1-A2E2-4364-B9BE-722FBF513FBE}
[2012/05/13 22:35:30 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\Desktop\2012_05_13
[2012/05/13 14:42:10 | 008,769,696 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2012/05/13 14:41:19 | 000,419,488 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2012/05/13 14:41:17 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2012/05/13 14:39:57 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{D3BB5C93-BE32-4765-930D-0535564F5C8B}
[2012/05/13 14:39:42 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{C0F21373-9282-4232-9AF4-628CAA2B547E}
[2012/05/12 19:06:51 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{0DF514B1-ABED-4C45-83FF-247A41A3C054}
[2012/05/12 11:15:43 | 001,541,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2012/05/12 11:15:42 | 001,837,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2012/05/12 11:15:42 | 000,902,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2012/05/12 11:15:42 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2012/05/12 11:15:42 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2012/05/12 11:14:56 | 005,504,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2012/05/12 11:14:55 | 003,958,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2012/05/12 11:14:55 | 003,902,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2012/05/12 11:06:38 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{513ED938-6083-454A-970D-28102669B743}
[2012/05/12 11:06:27 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{A0FE0A9A-2F05-4E2E-B72B-108AA98D049D}
[2012/05/11 22:14:37 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{D48FA591-3455-434D-940B-CE725384883E}
[2012/05/11 22:14:24 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{62EDB493-6F7E-4557-89F6-3E4A70824E4D}
[2012/05/11 13:15:07 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{6063419F-D5E1-4AD2-9753-745CD06431C1}
[2012/05/11 13:14:52 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{3E7A39A4-8EC3-4602-BA18-33A82ECE521A}
[2012/05/10 18:18:48 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{95894826-2FB6-43A4-8F07-81AD987595DA}
[2012/05/10 18:18:37 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{2E3C13BA-05E0-4937-99AF-2DA7A1DA7771}
[2012/05/10 09:04:27 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{E947E93A-628B-471B-BE36-B5EAE9F7EF08}
[2012/05/08 23:11:25 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\Desktop\Mrva slike Rim
[2012/05/08 22:58:43 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Roaming\Imagenomic
[2012/05/08 22:55:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Imagenomic
[2012/05/08 22:55:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Imagenomic
[2012/05/08 22:32:27 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{D3D3A018-CBEB-4F26-B067-F79F30372216}
[2012/05/08 22:32:17 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{5A93ED6D-E09D-47EF-8944-F8A855701FF6}
[2012/05/07 00:23:09 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\Desktop\2012_05_07
[2012/05/06 19:10:03 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{4A9FB663-6216-46F7-8C21-27A8FF36FDA3}
[2012/05/06 19:09:51 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{26C2D11C-16DC-4ADD-8F30-094DB0F3A29C}
[2012/05/06 18:06:23 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{18C643A0-1B72-4A61-8703-0B4E52EADBCD}
[2012/05/06 18:06:13 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{2FB1C15E-1E0F-457C-BDEE-29011E103796}
[2012/05/06 10:27:02 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{1666FD83-E930-4E5B-832F-F3827FA4B3D6}
[2012/05/06 10:26:50 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{8028E74A-51B9-437B-810B-3BA606E773EF}
[2012/05/05 15:48:51 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{F8C48EB0-A6D7-410D-829A-3A8102F3A243}
[2012/05/05 15:48:40 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{FEB3221E-B64A-47A0-8AAE-289C8A4D0ECE}
[2012/05/05 13:14:32 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\Desktop\2012_05_05
[2012/05/05 11:32:12 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{189A9934-053E-44CF-B4E7-DB3BC94AC647}
[2012/05/05 11:32:01 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{2B3BA203-F805-4F97-B376-35DB19520E5D}
[2012/05/04 13:20:01 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{D95F6801-42F2-42CA-B360-A4E3134AAE56}
[2012/05/04 13:19:41 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{DD822379-CF90-4D35-B245-C355AC44CB97}
[2012/05/03 13:40:29 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\Desktop\2012_05_03
[2012/05/03 13:04:45 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{5FE27CD8-7797-4448-BA89-12B51A2927FF}
[2012/05/03 13:04:32 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{57F190C8-8A84-474E-A8E8-E4D20113035D}
[2012/05/02 17:47:10 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{29C14AC5-E051-4CAE-B32C-2B5D2E49A7D4}
[2012/05/02 17:46:59 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{4F8EE455-8EAB-43FD-82AF-7502CD0C4CE4}
[2012/05/01 13:11:29 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{1ED6F3E8-0650-407C-A546-542ACD9A6DC8}
[2012/05/01 12:07:25 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{CEBFFE94-429F-45C4-92BF-283BECBD4E1D}
[2012/05/01 12:07:14 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{B768739C-ACD7-4259-A528-01E93E7C4530}
[2012/04/30 11:13:55 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{A3308C17-DFBC-44FC-910E-BC03888053A2}
[2012/04/27 12:51:10 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{A4E6C5CB-5135-4F78-BE41-63B6FCDF0785}
[2012/04/27 12:51:00 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{835D4B30-9CC9-406B-967A-8ED3113D4C8B}
[2012/04/26 15:44:37 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{F7F862C8-D4C1-40D4-9A27-BBC03FB02533}
[2012/04/25 13:28:06 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{DEB9B4E0-91BA-4EF6-B4F5-D755A6033ECA}
[2012/04/24 17:48:14 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{C07775FB-D919-4C82-B623-047DF3A51178}
[2012/04/24 17:48:03 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{C7B97261-E421-4CD6-B53F-B312B2DBBA91}
[2012/04/24 17:16:58 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{55537BAC-244F-4AB8-A341-B8BB402AD077}
[2012/04/24 17:16:47 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{4DB70C4A-1B18-4032-B339-E39FA51AEBC8}
[2012/04/24 11:52:46 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{52A54A70-D18B-4385-8B53-AFF5A36AEE55}
[2012/04/24 11:52:32 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{2F005E4E-265E-4C2D-8E83-504BC028522F}
[2012/04/23 20:28:46 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{C91B47DE-AB2C-49C4-91DF-95BF360F5E9C}
[2012/04/23 20:28:35 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{B64B417D-6068-4BB4-8E5B-F3B86FBCEDB8}
[2012/04/23 11:33:27 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{36B9E9AA-947F-46DB-90CB-AC267033E632}
[2012/04/23 11:33:15 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{2AAA95C8-AC36-493A-A5B8-6A2EA02D0056}
[2012/04/22 19:13:57 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{BBBDF9A0-3420-445B-82F8-964574DFAB77}
[2012/04/22 19:13:46 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{83963AD8-AEAE-455C-B046-E9FA0B0A39F8}
[2012/04/22 19:09:24 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{6D64CB5C-AC6A-4492-B0B1-F0BF8E6DB882}
[2012/04/22 19:09:00 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{80E39098-C5C9-4D7C-9289-8F7C58708A7B}
[2012/04/21 11:32:53 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{4492941D-7C6B-458B-891C-30654B46FE50}
[2012/04/21 11:32:43 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{B08BF412-3AE5-4F77-BCE4-DD20940BF673}
[2012/04/20 11:57:44 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{92DE3423-B864-4C11-ADAB-CD30B54963A8}
[2012/04/19 18:34:56 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{B5FF471C-B2D7-4A6D-AC02-2E2C47D8228F}
[2012/04/19 18:34:45 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{BF091ACF-0BA0-4AD8-8D2E-A73119228185}
[2012/04/19 13:06:54 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{A11F8DB3-D57C-41AE-9C04-20DCDF0D6DDE}
[2012/04/19 13:06:43 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{FDEB8FCF-BB58-41C8-91AB-39ED16C61D7D}
[2012/04/19 12:33:10 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{3BE03572-0A1B-4692-9A5A-B7620987C3A0}
[2012/04/19 12:32:56 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{D5B739A7-D40C-4DA6-B48E-66B36B6D5E68}
[2012/04/18 19:13:32 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{8DDA7518-DF3B-4C54-93BF-28A10107BC21}
[2012/04/18 19:13:20 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{88958E81-1AF5-464F-8C11-C9B4B9854AA7}
[2012/04/18 12:11:43 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{542327AD-A13B-4573-B406-CE7DCB4D12DC}
[2012/04/17 21:12:45 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{F4A49E4B-A2F7-447A-88E7-F02592DF357B}
[2012/04/17 21:12:34 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{9D34C87E-8E7F-488D-ADB7-8503636AE875}
[2012/04/17 10:09:23 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{0ACACB3D-5653-48D6-8C8B-FB78D0EA6CAB}
[2012/04/17 10:09:01 | 000,000,000 | ---D | C] -- C:\Users\lukamatic\AppData\Local\{43128436-ED79-4449-85B2-AC10D624DC2C}

========== Files - Modified Within 30 Days ==========

[2012/05/16 20:36:06 | 000,782,838 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012/05/16 20:36:06 | 000,669,394 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012/05/16 20:36:06 | 000,127,060 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012/05/16 20:21:38 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012/05/16 12:49:24 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Users\lukamatic\Desktop\OTL.exe
[2012/05/16 06:44:00 | 000,001,176 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2629844541-24734895-693162514-1000UA.job
[2012/05/16 06:44:00 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/05/16 06:42:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/05/16 01:20:51 | 086,771,223 | ---- | M] () -- C:\Users\lukamatic\Desktop\tav.psd
[2012/05/16 00:59:05 | 011,367,849 | ---- | M] () -- C:\Users\lukamatic\Desktop\tav.3 maggio ipotesi2
[2012/05/16 00:40:02 | 002,684,660 | ---- | M] () -- C:\Users\lukamatic\Desktop\R R
[2012/05/16 00:28:55 | 000,056,199 | ---- | M] () -- C:\Users\lukamatic\Desktop\Capturevv.JPG
[2012/05/13 18:41:57 | 000,064,504 | ---- | M] () -- C:\Users\lukamatic\Desktop\RicevutaCompilazione417096.pdf
[2012/05/13 18:39:22 | 000,064,504 | ---- | M] () -- C:\Users\lukamatic\Desktop\RicevutaDiIVAMATIC.pdf
[2012/05/13 14:42:33 | 000,419,488 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2012/05/13 14:42:33 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2012/05/13 14:42:10 | 008,769,696 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2012/05/12 19:05:23 | 001,117,976 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012/05/12 11:44:00 | 000,001,124 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2629844541-24734895-693162514-1000Core.job
[2012/05/12 11:11:18 | 000,115,164 | ---- | M] () -- C:\Users\lukamatic\Desktop\Capture.JPG
[2012/05/11 23:54:50 | 000,012,796 | ---- | M] () -- C:\Users\lukamatic\Desktop\Bollettino.pdf
[2012/05/11 13:30:44 | 137,299,932 | ---- | M] () -- C:\Users\lukamatic\Desktop\TAVOLA_03_analisi.psd
[2012/05/10 09:14:27 | 000,072,083 | ---- | M] () -- C:\Users\lukamatic\Desktop\ModulisticaEsameLaurea.pdf
[2012/05/09 00:39:39 | 041,782,663 | ---- | M] () -- C:\Users\lukamatic\Desktop\IMG_2470[1].psd
[2012/05/08 23:06:39 | 000,010,752 | ---- | M] () -- C:\Windows\SysWow64\BASSMOD.dll
[2012/05/08 23:06:27 | 000,040,510 | ---- | M] () -- C:\Users\lukamatic\Desktop\Imagenomic.Portraiture.v1.0.0.8.for.Adobe.Photoshop.(zabranjeno)
[2012/05/08 22:54:14 | 004,058,712 | ---- | M] () -- C:\Users\lukamatic\Desktop\PortraiturePlugin2308.exe
[2012/05/08 16:01:04 | 000,205,278 | ---- | M] () -- C:\Users\lukamatic\Desktop\curve di livello heraklion.dwg
[2012/05/08 16:00:50 | 000,205,343 | ---- | M] () -- C:\Users\lukamatic\Desktop\Drawing1.dwg
[2012/05/03 18:28:02 | 000,249,276 | ---- | M] () -- C:\Users\lukamatic\Desktop\
[2012/04/26 18:24:50 | 002,794,873 | ---- | M] () -- C:\Users\lukamatic\Desktop\Piante200e2.dwg
[2012/04/21 17:51:02 | 000,040,144 | ---- | M] () -- C:\Users\lukamatic\Desktop\CertificatoIscrizione.pdf
[2012/04/17 14:39:46 | 000,047,362 | ---- | M] () -- C:\Users\lukamatic\Desktop\scale di plottaggio.dwg
[2012/04/17 01:19:19 | 009,826,388 | ---- | M] () -- C:\Users\lukamatic\Desktop\steven holl.dwg

========== Files Created - No Company Name ==========

[2012/05/16 00:59:18 | 086,771,223 | ---- | C] () -- C:\Users\lukamatic\Desktop\tav.psd
[2012/05/16 00:59:03 | 011,367,849 | ---- | C] () -- C:\Users\lukamatic\Desktop\tav.3 maggio ipotesi2
[2012/05/16 00:39:57 | 002,684,660 | ---- | C] () -- C:\Users\lukamatic\Desktop\R R
[2012/05/16 00:28:54 | 000,056,199 | ---- | C] () -- C:\Users\lukamatic\Desktop\Capturevv.JPG
[2012/05/13 18:41:57 | 000,064,504 | ---- | C] () -- C:\Users\lukamatic\Desktop\RicevutaCompilazione417096.pdf
[2012/05/13 18:39:22 | 000,064,504 | ---- | C] () -- C:\Users\lukamatic\Desktop\RicevutaDiIVAMATIC.pdf
[2012/05/13 14:41:50 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/05/12 11:11:04 | 000,115,164 | ---- | C] () -- C:\Users\lukamatic\Desktop\Capture.JPG
[2012/05/11 23:54:50 | 000,012,796 | ---- | C] () -- C:\Users\lukamatic\Desktop\Bollettino.pdf
[2012/05/11 13:28:46 | 137,299,932 | ---- | C] () -- C:\Users\lukamatic\Desktop\TAVOLA_03_analisi.psd
[2012/05/10 09:14:27 | 000,072,083 | ---- | C] () -- C:\Users\lukamatic\Desktop\ModulisticaEsameLaurea.pdf
[2012/05/09 00:39:39 | 041,782,663 | ---- | C] () -- C:\Users\lukamatic\Desktop\IMG_2470[1].psd
[2012/05/08 23:06:27 | 000,040,510 | ---- | C] () -- C:\Users\lukamatic\Desktop\Imagenomic.Portraiture.v1.0.0.8.for.Adobe.Photoshop.(zabranjeno)
[2012/05/08 22:54:04 | 004,058,712 | ---- | C] () -- C:\Users\lukamatic\Desktop\PortraiturePlugin2308.exe
[2012/05/08 16:00:49 | 000,205,343 | ---- | C] () -- C:\Users\lukamatic\Desktop\Drawing1.dwg
[2012/05/08 16:00:49 | 000,205,278 | ---- | C] () -- C:\Users\lukamatic\Desktop\curve di livello heraklion.dwg
[2012/05/03 18:28:02 | 000,249,276 | ---- | C] () -- C:\Users\lukamatic\Desktop\
[2012/04/26 18:24:50 | 002,794,873 | ---- | C] () -- C:\Users\lukamatic\Desktop\Piante200e2.dwg
[2012/04/21 17:51:02 | 000,040,144 | ---- | C] () -- C:\Users\lukamatic\Desktop\CertificatoIscrizione.pdf
[2012/04/17 01:19:17 | 009,826,388 | ---- | C] () -- C:\Users\lukamatic\Desktop\steven holl.dwg
[2011/09/19 10:14:59 | 000,006,656 | ---- | C] () -- C:\Users\lukamatic\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/09/10 11:13:52 | 000,106,496 | R--- | C] () -- C:\Windows\SysWow64\vshp1020.dll
[2011/09/10 11:13:51 | 000,397,312 | R--- | C] () -- C:\Windows\SysWow64\zshp1020.exe
[2011/07/16 00:46:45 | 000,000,214 | ---- | C] () -- C:\Users\lukamatic\AppData\Roaming\default.rss
[2011/07/16 00:46:36 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2011/05/18 13:04:43 | 000,080,896 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2011/04/15 15:52:05 | 000,769,462 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011/03/16 19:28:06 | 000,000,132 | ---- | C] () -- C:\Users\lukamatic\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2011/02/17 13:48:48 | 000,010,752 | ---- | C] () -- C:\Windows\SysWow64\BASSMOD.dll
[2011/02/15 13:21:18 | 000,200,704 | ---- | C] () -- C:\Windows\SysWow64\BongoSDK.10.v40.dll
[2011/02/01 17:43:46 | 000,000,553 | ---- | C] () -- C:\Windows\hpntwksetup.ini
[2011/01/23 12:44:29 | 000,000,021 | ---- | C] () -- C:\Windows\SurCode.INI
[2010/11/23 18:35:54 | 000,037,125 | --S- | C] () -- C:\ProgramData\winstat.sys
[2010/11/23 18:35:54 | 000,000,516 | RHS- | C] () -- C:\ProgramData\winpage.sys
[2010/11/23 18:03:48 | 000,000,208 | ---- | C] () -- C:\Windows\{6BC52438-5DE4-4102-846E-64C225A0A04E}_WiseFW.ini
[2010/11/20 15:22:31 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2010/11/20 14:19:24 | 000,000,990 | ---- | C] () -- C:\Users\lukamatic\AppData\Local\
[2010/11/20 14:19:24 | 000,000,832 | ---- | C] () -- C:\Users\lukamatic\AppData\Local\

========== Files - Unicode (All) ==========
[2012/05/15 19:42:40 | 000,015,423 | ---- | M] ()(C:\Users\lukamatic\Desktop\???????? ???? ??????.docx) -- C:\Users\lukamatic\Desktop\Путинова нова Русија.docx
[2012/05/15 19:42:39 | 000,015,423 | ---- | C] ()(C:\Users\lukamatic\Desktop\???????? ???? ??????.docx) -- C:\Users\lukamatic\Desktop\Путинова нова Русија.docx

========== Alternate Data Streams ==========

@Alternate Data Stream - 1182 bytes -> C:\ProgramData\Microsoft:epNAgMQnBHIpv2RHAf
@Alternate Data Stream - 1126 bytes -> C:\Program Files\Common Files\System:G9xmYl0B8idXN6PvWD3
@Alternate Data Stream - 1012 bytes -> C:\ProgramData\Microsoft:JZ03m3mmmuSjct81eCVZXSZnhV

< End of report >
[Link mogu videti samo ulogovani korisnici]

Mozes li mi navesti tacne nazive detekcije? Ili mi okaci logove od avasta. Posto izvestaji govore da ti je avast antivirus ne azuriran ( ti imas verziju 5.x a trenutna je verzija 7.x ) proveri da li imas na ovoj lokaciji sacuvan log:

C:\ProgramData\AVAST Software\Avast\report

  • Pridružio: 28 Mar 2008
  • Poruke: 125

Pozdrav Smile

Na onoj lokaciji nema log_a, to jest unutar report file folder_a nema log_a.

Unutar Avast file folder_a ima jedan file folder log i u njemu ima nekoliko text file_ova.

Ja cu da ti posaljem 2 screenshot_a koja pokazuju sta je u kojoj lokaciji, pa mi ti reci sta od toga da ti posaljem.

Znaci jedna je: C:\ProgramData\AVAST Software\Avast\report

a druga je: C:\ProgramData\AVAST Software\Avast\log

Hvala puno Smile

Pozdrav. Smile

Sa ove lokacije
C:\ProgramData\AVAST Software\Avast\report

okaci mi aswBoot.txt.

  • Pridružio: 28 Mar 2008
  • Poruke: 125

[Link mogu videti samo ulogovani korisnici]

Arrow Ovako, u logovima nema tragova aktivnog malware-a. Tvoj sistem je cist.

Citat:Sinoc sam uradila antivirus scan sa avirom,i zatim pokusala da restartujem kompjuter, medjutim nista

Avira je imala losiju epizodu sa definicijama. Ova greska je naravno ubrzo ispravljena.

Za vise informacija o ovome mozes procitati ovde:
[Link mogu videti samo ulogovani korisnici]

Arrow Izvestaj govori da koristis neazuriran avast5 antivirus. Trenutna je verzija avast7.
Pokreni avast , klikni na Maintenance i pod Update klikni na Update Program. Pricekaj da se preuzimanje najnovije verzije antivirusa instalira.

Sto se tice detekcije ,mozes sve fajlove koji su vezani za tvoj program za arhitekturu mozes staviti pod ignore opciju.

Evo kako to radis:
Dvoklikom pokreni avast! i Klikni na Settings u gornjem desnom uglu.
U novom prozoru koji se otvori klikni na Exclusions. Klik na Add dugme dodajes zeljeni file/folder.

Takodje pod Real-Time Shields klikni na File System Shields pa sa desne strane Expert Settings.
U novom prozoru klikni na Exclusions. Klik na Add dugme dodajes zeljeni file/folder.

Takodje, fajlove vezane za tvoj softver mozes prijaviti kao pogresnu detekciju klikom na dugme Repord the file as false positive. Primer:

Za sva dodatna pitanja oko zastitnih programa ( antivirusa ) ovde se mozes raspitati:
[Link mogu videti samo ulogovani korisnici]


Arrow > Posto ovde nema aktivnog malware-a, ovde smo zavrsiti. Wink
Ostalo ti je jos ovo da uradis.

> Ponovo pokreni OTL i klikni na dugme CleanUp!

Preuzmi TFC (Temp File Cleaner) i sacuvaj ga na Desktop.
Dvoklikom pokreni program i klikni na dugme Start da bi dozvolio programu da otpocne skeniranje.
Kada program zavrsi skeniranje,mozda ce zatraziti da restartujes racunar. Dozvoli mu.

Napomena: Kada zavrsis sa ciscenjem temp fajlova,program mozes obrisati ili ga sacuvati za kasniju upotrebu.

Idea Preporučujem ti da koristiš program MCShield za zaštitu USB memorijskih uređaja.

Program možeš preuzeti sa OVOG linka. Nakon instalacije programa, priključi USB memorijske uređaje, i oni će biti skenirani. Na kraju skeniranja ćeš dobiti izveštaj da je uređaj čist ili obaveštenje o uklonjenom malware-u.

  • Pridružio: 28 Mar 2008
  • Poruke: 125

Jedno veliko HVALA za svu pomoc i savete i strpljenje koje si imao Very Happy
Sve sam uradila sto si mi predlozio.Bice mi od velike pomoci.

Pozdrav Very Happy

Pozdrav Wink

