Navigacija
Lista poslednjih: 16, 32, 64, 128 poruka.

Pomoc oko zastite

[es] :: Zaštita :: Pomoc oko zastite
(Zaključana tema (lock), by Aleksandar Maletic)
Strane: 1 2 3 4

[ Pregleda: 15523 | Odgovora: 66 ] > FB > Twit

Postavi temu

Autor

Pretraga teme: Traži
Markiranje Štampanje RSS

alien111
Beograd

Član broj: 45525
Poruke: 21
*.dynamic.isp.telekom.rs.



+1 Profil

icon Pomoc oko zastite08.04.2012. u 11:14 - pre 146 meseci
Pre par meseci sam se javljao na temi http://www.elitesecurity.org/t360944-1#3021769 i resio problem.
Od pre nekoliko dana imam problem da mi racunar brlja sa vremenom na racunaru, kad ga iskljucim i ponovo ukljucim posle par sati bude neko potpuno bezveze vreme na racunaru. To se ranije nije desavalo.

Evo saljem ti fajl, ne znam sta bi ovde mogao da bude deo koji pravi problem:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:44:30 AM, on 4/7/2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe
C:\Program Files\Common Files\DeviceHelper\DeviceManager.exe
F:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\oplmgr.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
F:\Program Files\ThreatFire\TFService.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wscntfy.exe
F:\Program Files\Mobilni Internet\ModemListener.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\BrowserCompanion\BCHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
F:\Program Files\ThreatFire\TFTray.exe
F:\Program Files\ClamWin\bin\ClamTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\msiexec.exe
C:\Documents and Settings\djordje\Desktop\ccleaner\blbla\blabla.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?bab...c51c4e000000000000000ea6b4cad4
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
O2 - BHO: script helper for ie - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files\BrowserCompanion\jsloader.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - F:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O2 - BHO: Update Timer - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files\BrowserCompanion\updatebhoWin32.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\apps\flashget\jccatch.dll
O2 - BHO: QUICKfind BHO Object - {C08DF07A-3E49-4E25-9AB0-D3882835F153} - C:\PROGRA~1\IDM\QUICKF~1\PlugIns\IEHelp.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - F:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - F:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ModemListener] F:\Program Files\Mobilni Internet\ModemListener.exe start
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "F:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Browser companion helper] C:\Program Files\BrowserCompanion\BCHelper.exe /T=3 /CHI=clbfjfbnelcflpgpklppgplejolacbej
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [ThreatFire] F:\Program Files\ThreatFire\TFTray.exe
O4 - HKLM\..\Run: [ClamWin] "F:\Program Files\ClamWin\bin\ClamTray.exe" --logon
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "F:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [RunNarrator] Narrator.exe (User 'Default user')
O8 - Extra context menu item: &Search the web - http://toolbar.recfree.com/rcfr/ctxmnu.html
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xport to Microsoft Excel - res://F:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Preuzmi sa FlashGet-om - C:\apps\flashget\jc_link.htm
O8 - Extra context menu item: Preuzmi sve sa FlashGet-om - C:\apps\flashget\jc_all.htm
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\apps\flashget\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\apps\flashget\flashget.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O18 - Protocol: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll
O18 - Protocol: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll
O18 - Protocol: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\wmfhotfix.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Autodata Limited License Service - Autodata Limited - C:\Program Files\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe
O23 - Service: DeviceManager - Unknown owner - C:\Program Files\Common Files\DeviceHelper\DeviceManager.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - F:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: OpenLink License Manager (oplmgr) - OpenLink Software - C:\WINDOWS\system32\oplmgr.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - F:\Program Files\Skype\Updater\Updater.exe
O23 - Service: ThreatFire - PC Tools - F:\Program Files\ThreatFire\TFService.exe
O23 - Service: Apache Tomcat (Tomcat5) - Apache Software Foundation - F:\Program Files\Apache Software Foundation\Tomcat 5.5\bin\tomcat5.exe
O23 - Service: OpenLink Virtuoso Server (Virtuoso) - OpenLink Software - F:\Program Files\OpenLink Software\Virtuoso 6.3\bin\virtuoso.exe
O23 - Service: vToolbarUpdater - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe

--
End of file - 9740 bytes


[Ovu poruku je menjao alien111 dana 08.04.2012. u 12:25 GMT+1]
 
0

Vodomar

Član broj: 145510
Poruke: 288



+37 Profil

icon Re: Pomoc oko zastite08.04.2012. u 12:17 - pre 146 meseci
http://www.kaspersky.com/antivirus-removal-tool-register skini kada ga otvoriš klikni na točkić u desnom uglu i štikliraj Computer ništa drugo ne diraj.Potom klikni na karticu Automatic Scan i počmi :) Start scanning
prodji ovu proceduru za babylon i za recfree toolbar ovde

korekcija vremena
If you didn't go looking for it, don't install it. If you do install it, make sure you update it. And if
you no longer need it, remove it.
 
0

alien111
Beograd

Član broj: 45525
Poruke: 21
*.dynamic.isp.telekom.rs.



+1 Profil

icon Re: Pomoc oko zastite08.04.2012. u 13:17 - pre 146 meseci
Sa prvog linka skinuo sam verziju 11, ima oko 129MB exe fajl, pokrenuo sam ga, ali je prilikom instalacije zakovao u jednom trenutku sa porukom "Please try to reboot your computer. Error message is Failed to exrtact the product into t:\tmp\254534\, error iz 193". I posle restartovanja se ponovilo isto, nisam uspeo da ga pokrenem i vidim tockic u desnom uglu.

Takođe, može li pomoć oko ovog log fajla iznad, šta je potrebno da čekiram da se reši.

Što se tiče sistemskog vremena to je koliko vidim link do upustva kako se vreme podešava, umem ja to, ali kad uključim računar ponovo recimo za 10 sati vreme loše pokazuje i mora ponovo da se podešava svaki put kad uključim računara. Ovaj problem nije bio do pre nekoliko dana, pa je to bio razlog da ponovo napravim ovaj log fajl za analizu kao na prethodnoj temi od pre par meseci.

[Ovu poruku je menjao alien111 dana 08.04.2012. u 14:28 GMT+1]
 
0

kristi1

Član broj: 151211
Poruke: 2012
*.dynamic.isp.telekom.rs.

Sajt: www.mycity.rs/Ambulanta


+88 Profil

icon Re: Pomoc oko zastite08.04.2012. u 14:08 - pre 146 meseci
Pokreni ovaj alat da ocistis AVG iz sistema http://www.avg.com/ww-en/utilities
Takodje, taj ClamWin, saoodbrambeni modul mu je nula, sto znaci da ako je izlozen napadu nekog malware nije sposoban da odbrani samog sebe.

Vreme... zameni bateriju na ploci.
 
0

Vodomar

Član broj: 145510
Poruke: 288



+37 Profil

icon Re: Pomoc oko zastite08.04.2012. u 14:09 - pre 146 meseci
http://www.online-solutions.ru...ucts/osam-autorun-manager.html preuzmi,raspakuj pokreni osam.exe sačuvaj osam.html log na desktop i postavi ga ovde


If you didn't go looking for it, don't install it. If you do install it, make sure you update it. And if
you no longer need it, remove it.
 
0

Vodomar

Član broj: 145510
Poruke: 288



+37 Profil

icon Re: Pomoc oko zastite08.04.2012. u 14:24 - pre 146 meseci
Citat:
Please note that ClamWin Free Antivirus does not include an on-access real-time scanner. You need to manually scan a file in order to detect a virus or spyware.

If you didn't go looking for it, don't install it. If you do install it, make sure you update it. And if
you no longer need it, remove it.
 
0

valjan
Janko Valencik
Software Deployer
Schneider Electric
Novi Sad

Moderator
Član broj: 158605
Poruke: 3531
*.dynamic.sbb.rs.



+553 Profil

icon Re: Pomoc oko zastite08.04.2012. u 14:58 - pre 146 meseci
Citat:
kristi1
Vreme... zameni bateriju na ploci.


E upravo to, ako vreme brljavi samo kad se računar upali nakon što je bio skroz ugašen neko vreme, onda je najčešće u pitanju baterija na ploči. Otvori kućište pa baci pogled na matičnu ploču, i videćeš bateriju veličine novčića, zapiši oznaku ili je ponesi, i možeš je kupiti maltene u svakoj prodavnici baterija, cena nije neka strašna (kada sam je poslednji put kupovao pre par godina bila je oko 120din, ne verujem da je sad preko 200).
 
0

alien111
Beograd

Član broj: 45525
Poruke: 21
*.dynamic.isp.telekom.rs.



+1 Profil

icon Re: Pomoc oko zastite08.04.2012. u 15:12 - pre 146 meseci
@kristi1 Pokrenuo sam taj program, nadam se da je uklonio AVG iz sistema, trebalo bi da promenim antivirus ali ti ostaci AVG nisu omogucili da se neki bolji antivirus instalira. Razmisljao sam da ako uspe uklanjanje AVG da izbrisem i ClamWin i instaliram neki bolji, ima li predloga koji da isntaliram?

@valjan, @kristi1 Hvala za informaciju u vezi sa baterijom

@Vodomar Evo osam.html, nisam nasao opciju da zakacim fajl kao atachment:
Report of OSAM: Autorun Manager v5.0.11926.0
http://www.online-solutions.ru/en/
Saved at 15:53:28 on 08.04.2012
OS: Windows XP Professional Service Pack 2 (Build 2600)
Default Browser: Mozilla Corporation Firefox 11.0

Scanner Settings
Rootkits detection (hidden registry)
Rootkits detection (hidden files)
Retrieve files information
Check Microsoft signatures

Filters
Trusted entries
Empty entries
Hidden registry entries (rootkit activity)
Exclusively opened files
Not found files
Files without detailed information
Existing files
Non-startable services
Non-startable drivers
Active entries
Disabled entries

Risk Name Publisher Full Path Status
AppInit DLLs
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows
|||| "AppInit_DLLs" C:\WINDOWS\system32\wmfhotfix.dll File found, but it contains no detailed information
Control Panel Objects
HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls
|||||| "SYMLIVE" "Symantec Corporation" C:\Program Files\Symantec\LiveUpdate\S32LUCP1.CPL File exists
Drivers
HKLM\SYSTEM\CurrentControlSet\Services
|||||| "Aspi32" (Aspi32) "Adaptec" C:\WINDOWS\system32\drivers\Aspi32.sys File exists
"Changer" (Changer) C:\WINDOWS\system32\drivers\Changer.sys File not found
"DAEMON Tools Virtual Bus Driver" (dtsoftbus01) "DT Soft Ltd" C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys File exists
"Driver for MagicISO SCSI Host Controller" (mcdbus) C:\WINDOWS\System32\DRIVERS\mcdbus.sys File not found
|||||| "FssFltr" (fssfltr) "Microsoft Corporation" C:\WINDOWS\System32\DRIVERS\fssfltr_tdi.sys File exists
|||||| "GhostPciScanner" (GhPciScan) "Symantec Corporation" C:\apps\ghost\ghpciscan.sys File exists
|||||| "giveio" (giveio) C:\WINDOWS\System32\giveio.sys File found, but it contains no detailed information
"i2omgmt" (i2omgmt) C:\WINDOWS\system32\drivers\i2omgmt.sys File not found
|||||| "imagedrv" (imagedrv) "Ahead Software AG" C:\WINDOWS\System32\Drivers\imagedrv.sys File exists
|||||| "imagesrv" (imagesrv) "Ahead Software AG" C:\WINDOWS\System32\DRIVERS\imagesrv.sys File exists
|||||| "Intel(R) 536EP Modem" (Intels51) "Intel Corporation" C:\WINDOWS\System32\DRIVERS\Intels51.sys File exists
|||||| "Klif" (Klif) "Kaspersky Labs" C:\WINDOWS\System32\Drivers\klif.sys File exists
"lbrtfdc" (lbrtfdc) C:\WINDOWS\system32\drivers\lbrtfdc.sys File not found
|||||| "MagicTune" (MagicTune) "Beyond Logic http://www.beyondlogic.org" C:\WINDOWS\system32\drivers\Porttalk.sys File exists
"PCIDump" (PCIDump) C:\WINDOWS\system32\drivers\PCIDump.sys File not found
"PDCOMP" (PDCOMP) C:\WINDOWS\system32\drivers\PDCOMP.sys File not found
"PDFRAME" (PDFRAME) C:\WINDOWS\system32\drivers\PDFRAME.sys File not found
"PDRELI" (PDRELI) C:\WINDOWS\system32\drivers\PDRELI.sys File not found
"PDRFRAME" (PDRFRAME) C:\WINDOWS\system32\drivers\PDRFRAME.sys File not found
|||||| "PQNTDrv" (PQNTDrv) "PowerQuest Corporation" C:\WINDOWS\system32\drivers\PQNTDrv.sys File exists
|||||| "PxHelp20" (PxHelp20) "Sonic Solutions" C:\WINDOWS\System32\DRIVERS\PxHelp20.sys File exists
|||||| "SANDRA" (SANDRA) "SiSoftware" f:\Program Files\SiSoftware\SiSoftware Sandra Lite 2010c\WNt500x86\Sandra.sys File exists
|||||| "Secdrv" (Secdrv) C:\WINDOWS\System32\DRIVERS\secdrv.sys File signed by Microsoft | File found, but it contains no detailed information
|||||| "speedfan" (speedfan) "Windows (R) 2000 DDK provider" C:\WINDOWS\System32\speedfan.sys File exists
|||||| "sptd" (sptd) "Duplex Secure Ltd." C:\WINDOWS\System32\Drivers\sptd.sys File exists
|||||| "TfFsMon" (TfFsMon) "PC Tools" C:\WINDOWS\System32\drivers\TfFsMon.sys File exists
|||||| "TfNetMon" (TfNetMon) "PC Tools" C:\WINDOWS\system32\drivers\TfNetMon.sys File exists
|||||| "TfSysMon" (TfSysMon) "PC Tools" C:\WINDOWS\System32\drivers\TfSysMon.sys File exists
|||||| "TVICHW32" (TVICHW32) "EnTech Taiwan" C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS File exists
"WDICA" (WDICA) C:\WINDOWS\system32\drivers\WDICA.sys File not found
"xwlwfd" (xwlwfd) C:\WINDOWS\System32\drivers\tpag.sys File not found
Explorer
HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
|||||| {9EF0045A-CDD9-438e-95E6-02B9AFEC8E11} "CRLUpdate" "Microsoft Corporation" %SystemRoot%\System32\updcrl.exe -e -u %SystemRoot%\System32\verisignpub1.crl File exists
|||||| {89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath" "Microsoft Corporation" C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install File exists
HKLM\Software\Classes\Folder\shellex\ColumnHandlers
|||||| {F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" "Adobe Systems, Inc." C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll File exists
HKLM\Software\Classes\Protocols\Filter
|||||| {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" "Microsoft Corporation" C:\WINDOWS\system32\mscoree.dll File exists
|||||| {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" "Microsoft Corporation" C:\WINDOWS\system32\mscoree.dll File exists
|||||| {1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" "Microsoft Corporation" C:\WINDOWS\system32\mscoree.dll File exists
HKLM\Software\Classes\Protocols\Handler
|| {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} "CTData Class" "Blabbers Communications Ltd" C:\Program Files\BrowserCompanion\tdataprotocol.dll File exists
|| {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} "CTData Class" "Blabbers Communications Ltd" C:\Program Files\BrowserCompanion\tdataprotocol.dll File exists
|| {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} "CTData Class" "Blabbers Communications Ltd" C:\Program Files\BrowserCompanion\tdataprotocol.dll File exists
|||||| {32505114-5902-49B2-880A-1F7738E5A384} "Data Page Plugable Protocal mso-offdap11 Handler" "Microsoft Corporation" C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL File exists
|||||| {3D9F03FA-7A94-11D3-BE81-0050048385D1} "Data Page Pluggable Protocol mso-offdap Handler" "Microsoft Corporation" C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL File exists
|||||| {314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" "Microsoft Corporation" C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll File exists
|||||| {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class" "Skype Technologies" C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL File exists
|||| {828030A1-22C1-4009-854F-8E305202313F} "livecall" "Microsoft Corporation" C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL File exists
|||||| {0A9007C0-4076-11D3-8789-0000F8105754} "Microsoft Infotech Storage Protocol for IE 4.0" "Microsoft Corporation" C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll File exists
|||||| {CD00020A-8B95-11D1-82DB-00C04FB1625D} "Microsoft PKM KnowledgePluggable Class" "Microsoft Corporation" C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL File exists
|||| {828030A1-22C1-4009-854F-8E305202313F} "msnim" "Microsoft Corporation" C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL File exists
{B658800C-F66E-4EF3-AB85-6C0C227862A9} "ViProtocolOLE Class" C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\10.0.6\ViProtocol.dll File exists
|||||| {03C514A3-1EFB-4856-9F99-10D7BE1653C0} "Windows Live Mail HTML Asynchronous Pluggable Protocol Handler" "Microsoft Corporation" C:\Program Files\Windows Live\Mail\mailcomm.dll File exists
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
|||||| {23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension" "Igor Pavlov" F:\Program Files\7-Zip\7-zip.dll File exists
|||||| {0563DB41-F538-4B37-A92D-4659049B7766} "CLSID_WLMCMimeFilter" "Microsoft Corporation" C:\Program Files\Windows Live\Mail\mailcomm.dll File exists
"CorelDRAW Shell Extension Component" File not found | COM-object registry key not found
|||||| {1CDB2949-8F65-4355-8456-263E7C208A5D} "Desktop Explorer" "NVIDIA Corporation" C:\WINDOWS\system32\nvshell.dll File exists
|||||| {1E9B04FB-F9E5-4718-997B-B8DA88302A47} "Desktop Explorer Menu" "NVIDIA Corporation" C:\WINDOWS\system32\nvshell.dll File exists
{D545EBD1-BD92-11CF-8772-00A0C9039735} "Developer Studio Components" "Microsoft Corporation" C:\Program Files\Microsoft Visual Studio\Common\MSDev98\Bin\IDE\DEVXPGL.DLL File exists
{42071714-76d4-11d1-8b24-00a0c9068ff3} "Display Panning CPL Extension" deskpan.dll File not found
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Encryption Context Menu" File not found | COM-object registry key not found
|||||| {1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache" "Microsoft Corporation" C:\WINDOWS\system32\mscoree.dll File exists
{32683183-48a0-441b-a342-7c2a440a9478} "Media Band" File not found | COM-object registry key not found
|||||| {42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" "Microsoft Corporation" C:\Program Files\Microsoft Office\Office10\msohev.dll File exists
|||||| {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" "Microsoft Corporation" C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll File exists
|||||| {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" "Microsoft Corporation" C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll File exists
|||||| {1E9B04FB-F9E5-4718-997B-B8DA88302A48} "nView Desktop Context Menu" "NVIDIA Corporation" C:\WINDOWS\system32\nvshell.dll File exists
|||||| {0006F045-0000-0000-C000-000000000046} "Outlook File Icon Extension" "Microsoft Corporation" C:\Program Files\Microsoft Office\Office10\OLKFSTUB.DLL File exists
|||||| {35786D3C-B075-49b9-88DD-029876E11C01} "Portable Devices" "Microsoft Corporation" C:\WINDOWS\system32\wpdshext.dll File exists
|||||| {D6791A63-E7E2-4fee-BF52-5DED8E86E9B8} "Portable Devices Menu" "Microsoft Corporation" C:\WINDOWS\system32\wpdshext.dll File exists
|||||| {640167b4-59b0-47a6-b335-a6b3c0695aea} "Portable Media Devices" "Microsoft Corporation" C:\WINDOWS\system32\Audiodev.dll File exists
|||||| {57C51AF9-DEF7-11D3-A801-00C04F163490} "PropPage Class" "Symantec Corporation" C:\apps\ghost\GhoShExt.dll File exists
{6B19FEC2-A45B-11CF-9045-00A0C9039735} "Registered ActiveX Controls" "Microsoft Corporation" C:\Program Files\Microsoft Visual Studio\Common\MSDev98\Bin\IDE\DEVXPGL.DLL File exists
{764BF0E1-F219-11ce-972D-00AA00A14F56} "Shell extensions for file compression" File not found | COM-object registry key not found
|||||| {E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References" "Microsoft Corporation" C:\WINDOWS\system32\dfshim.dll File exists
|||||| {e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References" "Microsoft Corporation" C:\WINDOWS\system32\dfshim.dll File exists
|||||| {BDEADF00-C265-11d0-BCED-00A0C90AB50F} "Web Folders" "Microsoft Corporation" C:\Program Files\Common Files\Microsoft Shared\Web Folders\MSONSEXT.DLL File exists
|||||| {2BE99FD4-A181-4996-BFA9-58C5FFD11F6C} "Windows Live Photo Gallery Autoplay Drop Target" "Microsoft Corporation" C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe File exists
|||||| {00F30F64-AC33-42F5-8FD1-5DC2D3FDE06C} "Windows Live Photo Gallery Editor Drop Target" "Microsoft Corporation" C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe File exists
|||||| {00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} "Windows Live Photo Gallery Editor Shim" "Microsoft Corporation" C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll File exists
|||||| {00F30F90-3E96-453B-AFCD-D71989ECC2C7} "Windows Live Photo Gallery Viewer Autoplay Shim" "Microsoft Corporation" C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll File exists
|||||| {00F33137-EE26-412F-8D71-F84E4C2C6625} "Windows Live Photo Gallery Viewer Autoplay Shim" "Microsoft Corporation" C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll File exists
|||||| {00F374B7-B390-4884-B372-2FC349F2172B} "Windows Live Photo Gallery Viewer Drop Target" "Microsoft Corporation" C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe File exists
|||||| {00F346CB-35A4-465B-8B8F-65A29DBAB1F6} "Windows Live Photo Gallery Viewer Shim" "Microsoft Corporation" C:\Program Files\Windows Live\Photo Gallery\PhotoViewerShim.dll File exists
|||||| {45670FA8-ED97-4F44-BC93-305082590BFB} "Windows XPS Document Metadata Handler" "Microsoft Corporation" C:\WINDOWS\System32\XPSSHHDR.DLL File exists
|||||| {44121072-A222-48f2-A58A-6D9AD51EBBE9} "Windows XPS Document Thumbnail Handler" "Microsoft Corporation" C:\WINDOWS\System32\XPSSHHDR.DLL File exists
|||||| {B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" c:\apps\winrar\rarext.dll File found, but it contains no detailed information
|||| {5464D816-CF16-4784-B9F3-75C0DB52B499} "Yahoo! Mail Shell Extension" "Yahoo! Inc." C:\Program Files\Yahoo!\Common\YMMAPI.dll File exists
|||||| {06A2568A-CED6-4187-BB20-400B8C02BE5A} "{06A2568A-CED6-4187-BB20-400B8C02BE5A}" "Microsoft Corporation" C:\Program Files\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe File exists
HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
|||||| {AAA288BA-9A4C-45B0-95D7-94D524869DB5} "WPDShServiceObj Class" "Microsoft Corporation" C:\WINDOWS\system32\WPDShServiceObj.dll File exists
Internet Explorer
HKCU\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars
{32683183-48a0-441b-a342-7c2a440a9478} "{32683183-48a0-441b-a342-7c2a440a9478}" File not found | COM-object registry key not found
{4528BBE0-4E08-11D5-AD55-00010333D0AD} "{4528BBE0-4E08-11D5-AD55-00010333D0AD}" File not found | COM-object registry key not found
{BDEADE7F-C265-11D0-BCED-00A0C90AB50F} "{BDEADE7F-C265-11D0-BCED-00A0C90AB50F}" File not found | COM-object registry key not found
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
"ITBarLayout" File not found | COM-object registry key not found
"{21FA44EF-376D-4D53-9B0F-8A89D3229068}" File not found | COM-object registry key not found
"{3041D03E-FD4B-44E0-B742-2D9B88305F98}" File not found | COM-object registry key not found
"{32099AAC-C132-4136-9E9A-4E364A424E17}" File not found | COM-object registry key not found
"{A057A204-BACC-4D26-9990-79A187E2698E}" File not found | COM-object registry key not found
"{CCC7A320-B3CA-4199-B1A6-9F516DD69829}" File not found | COM-object registry key not found
"{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}" File not found | COM-object registry key not found
"{EF99BD32-C1FB-11D2-892F-0090271D4F88}" File not found | COM-object registry key not found
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} "Java Plug-in 1.6.0_07"
http://java.sun.com/update/1.6...tall-1_6_0_07-windows-i586.cab C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll File not found
|||| {8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_31"
http://java.sun.com/update/1.6...tall-1_6_0_31-windows-i586.cab "Sun Microsystems, Inc." F:\Program Files\Java\jre6\bin\npjpi160_31.dll File exists
|||| {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} "Java Plug-in 1.6.0_31"
http://java.sun.com/update/1.6...tall-1_6_0_31-windows-i586.cab "Sun Microsystems, Inc." F:\Program Files\Java\jre6\bin\npjpi160_31.dll File exists
|||| {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_31"
http://java.sun.com/update/1.6...tall-1_6_0_31-windows-i586.cab "Sun Microsystems, Inc." F:\Program Files\Java\jre6\bin\npjpi160_31.dll File exists
Microsoft XML Parser for Java "Microsoft XML Parser for Java"
file://C:\WINDOWS\Java\classes\xmldso.cab File not found | COM-object registry key not found
|||||| {D27CDB6E-AE6D-11CF-96B8-444553540000} "Shockwave Flash Object"
http://fpdownload.macromedia.c...lashplayer/current/swflash.cab "Adobe Systems, Inc." C:\WINDOWS\system32\Macromed\Flash\Flash10c.ocx File exists
|||| {17492023-C23A-453E-A040-C7C580BBF700} "Windows Genuine Advantage Validation Tool"
http://go.microsoft.com/fwlink/?linkid=39204 "Microsoft Corporation" C:\WINDOWS\system32\LegitCheckControl.DLL File exists
{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} "{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}"
http://java.sun.com/update/1.5...tall-1_5_0_11-windows-i586.cab File not found | COM-object registry key not found
{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} "{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}"
http://java.sun.com/update/1.6...tall-1_6_0_01-windows-i586.cab File not found | COM-object registry key not found
{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} "{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}"
http://java.sun.com/update/1.6...tall-1_6_0_02-windows-i586.cab File not found | COM-object registry key not found
{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} "{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}"
http://java.sun.com/update/1.6...tall-1_6_0_03-windows-i586.cab File not found | COM-object registry key not found
{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} "{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}"
http://java.sun.com/update/1.6...tall-1_6_0_05-windows-i586.cab File not found | COM-object registry key not found
HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars
{4528BBE0-4E08-11D5-AD55-00010333D0AD} "{4528BBE0-4E08-11D5-AD55-00010333D0AD}" File not found | COM-object registry key not found
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions
|||| {5F7B1267-94A9-47F5-98DB-E99415F33AEC} "Blog This" "Microsoft Corporation" C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll File exists
|||||| "Exec" "Microsoft Corporation" C:\WINDOWS\Network Diagnostic\xpnetdiag.exe File exists
|||| "FlashGet" "Amaze Soft" C:\apps\flashget\flashget.exe File exists
|||| "Messenger" "Microsoft Corporation" C:\Program Files\Messenger\msmsgs.exe File exists
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar
"{95B7759C-8C7F-4BF1-B163-73684A933233}" File not found | COM-object registry key not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
|||||| {18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper" "Adobe Systems Incorporated" C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll File exists
{00cbb66b-1d3b-46d3-9577-323a336acb50} "Chatvibes Browser Helper" " " C:\Program Files\BrowserCompanion\jsloader.dll File exists
{963B125B-8B21-49A2-A3A8-E37092276531} "Chatvibes Browser Helper Verifier" " " C:\Program Files\BrowserCompanion\updatebhoWin32.dll File exists
|||| {A5366673-E8CA-11D3-9CD9-0090271D075B} "IeCatch2 Class" "Amaze Soft" C:\apps\flashget\jccatch.dll File exists
|||| {DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" "Sun Microsystems, Inc." F:\Program Files\Java\jre6\bin\jp2ssv.dll File exists
|||| {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} "Java(tm) Plug-In SSV Helper" "Sun Microsystems, Inc." F:\Program Files\Java\jre6\bin\ssv.dll File exists
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} "JQSIEStartDetectorImpl Class" "Sun Microsystems, Inc." F:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll File exists
|| {C08DF07A-3E49-4E25-9AB0-D3882835F153} "QUICKfind BHO Object" C:\PROGRA~1\IDM\QUICKF~1\PlugIns\IEHelp.dll File found, but it contains no detailed information
|| {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} "Search Helper" "Microsoft Corp." C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll File exists
|||||| {9030D464-4C02-4ABF-8ECC-5164760863C6} "Windows Live Sign-in Helper" "Microsoft Corporation" C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll File exists
{5C255C8A-E604-49b4-9D64-90988571CECB} "{5C255C8A-E604-49b4-9D64-90988571CECB}" File not found | COM-object registry key not found
{95B7759C-8C7F-4BF1-B163-73684A933233} "{95B7759C-8C7F-4BF1-B163-73684A933233}" File not found | COM-object registry key not found
Logon
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
"DAEMON Tools Lite" "DT Soft Ltd" "F:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun File exists
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
|||| "Adobe ARM" "Adobe Systems Incorporated" "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" File exists
"Browser companion helper" "Blabbers Communications LTD" C:\Program Files\BrowserCompanion\BCHelper.exe /T=3 /CHI=clbfjfbnelcflpgpklppgplejolacbej File exists
"ClamWin" "alch" "F:\Program Files\ClamWin\bin\ClamTray.exe" --logon File exists
"ModemListener" F:\Program Files\Mobilni Internet\ModemListener.exe start File found, but it contains no detailed information
|||| "nwiz" "NVIDIA Corporation" nwiz.exe /install File exists
|||| "QuickTime Task" "Apple Computer, Inc." "F:\Program Files\QuickTime\qttask.exe" -atboottime File exists
|||| "SunJavaUpdateSched" "Sun Microsystems, Inc." "C:\Program Files\Common Files\Java\Java Update\jusched.exe" File exists
|||||| "ThreatFire" "PC Tools" F:\Program Files\ThreatFire\TFTray.exe File exists
"vProt" "C:\Program Files\AVG Secure Search\vprot.exe" File exists
Services
HKLM\SYSTEM\CurrentControlSet\Services
|||||| ".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32) "Microsoft Corporation" C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe File exists
|||||| "Adobe LM Service" (Adobe LM Service) "Adobe Systems" C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe File exists
|||||| "Apache Tomcat" (Tomcat5) "Apache Software Foundation" F:\Program Files\Apache Software Foundation\Tomcat 5.5\bin\tomcat5.exe File exists
|||||| "ASP.NET State Service" (aspnet_state) "Microsoft Corporation" C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe File exists
|||||| "Autodata Limited License Service" (Autodata Limited License Service) "Autodata Limited" C:\Program Files\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe File exists
|||||| "DeviceManager" (DeviceManager) C:\Program Files\Common Files\DeviceHelper\DeviceManager.exe File found, but it contains no detailed information
|||||| "Extensible Authentication Protocol Service" (EapHost) "Microsoft Corporation" C:\WINDOWS\System32\eapsvc.dll File exists
|||| "Google Update Service (gupdate)" (gupdate) "Google Inc." C:\Program Files\Google\Update\GoogleUpdate.exe File exists
|||| "Google Update Service (gupdatem)" (gupdatem) "Google Inc." C:\Program Files\Google\Update\GoogleUpdate.exe File exists
|||||| "Health Key and Certificate Management Service" (hkmsvc) "Microsoft Corporation" C:\WINDOWS\System32\kmsvc.dll File exists
"Java Quick Starter" (JavaQuickStarterService) "Sun Microsystems, Inc." F:\Program Files\Java\jre6\bin\jqs.exe File exists
|||||| "Macromedia Licensing Service" (Macromedia Licensing Service) C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe File exists
|||||| "Network Access Protection Agent" (napagent) "Microsoft Corporation" C:\WINDOWS\System32\qagentrt.dll File exists
|||||| "Office Source Engine" (ose) "Microsoft Corporation" C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE File exists
"OpenLink License Manager" (oplmgr) "OpenLink Software" C:\WINDOWS\system32\oplmgr.exe File exists
"OpenLink Virtuoso Server" (Virtuoso) "OpenLink Software" F:\Program Files\OpenLink Software\Virtuoso 6.3\bin\virtuoso.exe File exists
|||||| "SeaPort" (SeaPort) "Microsoft Corp." C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe File exists
|||||| "Skype Updater" (SkypeUpdate) "Skype Technologies" F:\Program Files\Skype\Updater\Updater.exe File exists
|||||| "ThreatFire" (ThreatFire) "PC Tools" F:\Program Files\ThreatFire\TFService.exe File exists
"vToolbarUpdater" (vToolbarUpdater) C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.0.6\ToolbarUpdater.exe File exists
|||||| "Windows CardSpace" (idsvc) "Microsoft Corporation" C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe File exists
|||||| "Windows Live Family Safety Service" (fsssvc) "Microsoft Corporation" C:\Program Files\Windows Live\Family Safety\fsssvc.exe File exists
|||||| "Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0) "Microsoft Corporation" C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe File exists
|||||| "Wired AutoConfig" (Dot3svc) "Microsoft Corporation" C:\WINDOWS\System32\dot3svc.dll File exists
Winlogon
HKCU\Control Panel\IOProcs
"MVB" mvfs32.dll File not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions
|||||| {B587E2B1-4D59-4e7e-AED9-22B9DF11D053} "802.3 Group Policy" "Microsoft Corporation" C:\WINDOWS\system32\dot3gpclnt.dll File exists
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
|||||| "dimsntfy" "Microsoft Corporation" C:\WINDOWS\System32\dimsntfy.dll File exists
|||| "WgaLogon" "Microsoft Corporation" C:\WINDOWS\system32\WgaLogon.dll File exists

If You have questions or want to get some help, You can visit http://forum.online-solutions.ru
 
0

kristi1

Član broj: 151211
Poruke: 2012
*.dynamic.isp.telekom.rs.

Sajt: www.mycity.rs/Ambulanta


+88 Profil

icon Re: Pomoc oko zastite08.04.2012. u 15:50 - pre 146 meseci
Instaliraj Avast, imas free verziju koja zadovoljava sasvim pristojno.
 
0

Vodomar

Član broj: 145510
Poruke: 288



+37 Profil

icon Re: Pomoc oko zastite08.04.2012. u 16:33 - pre 146 meseci
xp sp 2?! to prvo reši
uploaduj fajl ovde pa na forum daj link za download
avast je ok mada malo malo sa v.7 se čuje da brljavi.ako bude problema probaj aviru ili ad-aware
If you didn't go looking for it, don't install it. If you do install it, make sure you update it. And if
you no longer need it, remove it.
 
0

Aleksandar Maletic
System administrator

Moderator
Član broj: 235887
Poruke: 1138
77.243.22.*



+89 Profil

icon Re: Pomoc oko zastite08.04.2012. u 16:42 - pre 146 meseci
Na sve ovo što su kolege preporučile imam samo nešto da dodam.
Preuzmi Disable Autorun/Autoplay, pokreni program, štikliraj sve opcije i potvrdi sa Ok. Restartuj računar.
Preuzmi i instaliraj MCShield, štitiće tvoj računar od malvera koji preti sa prenosivih memorijskih uređaja.
A wolf is weaker than a lion and a tiger, but doesn't play in the circus.
 
0

alien111
Beograd

Član broj: 45525
Poruke: 21
*.dynamic.isp.telekom.rs.



+1 Profil

icon Re: Pomoc oko zastite08.04.2012. u 19:26 - pre 146 meseci
Hvala na odgovorima do sada, a evo i fajla: http://www.2shared.com/document/byF4RSJk/osam.html
 
0

Vodomar

Član broj: 145510
Poruke: 288



+37 Profil

icon Re: Pomoc oko zastite08.04.2012. u 20:06 - pre 146 meseci
ovo je čisto.updateuj windows na sp3,reši hardverski problem,avast ili avira ili ad-aware.instaliraj i mbam jednom nedeljno odradi full scan sa njim i sa odabranim AV-om.Kada ubuduće instaliraš softver opredeli se za custom instal tako ćeš dobiti šansu da ne instaliraš i toolbar.u firefox obaveno postavi WOT,ne posećuj crvene sajtove i ne skidaj softver sa torrenta.
If you didn't go looking for it, don't install it. If you do install it, make sure you update it. And if
you no longer need it, remove it.
 
+1

alien111
Beograd

Član broj: 45525
Poruke: 21
*.dynamic.isp.telekom.rs.



+1 Profil

icon Re: Pomoc oko zastite08.04.2012. u 20:17 - pre 146 meseci
Ok, hvala na odgovoru.
 
0

adjals

Član broj: 171330
Poruke: 34
*.adsl.eunet.rs.



+2 Profil

icon Re: Pomoc oko zastite06.05.2012. u 14:41 - pre 145 meseci
Pozz..za sve

nisam cesto ovde, ali trenutno mi je neophodan savet za sigurnu zastitu racunara i mala pomoc.
Trenutno koristim USB disk security i Eset NOd 32. Pre neki dan naletim na neki spayware, preko izlaznog linka na svom blogu, naravno sistem je odmah detektovao virus i upozorio, ali izgleda da ga nije uspeo unistiti. Ja sam sve izlazne linkove odmah obrisala sa bloga. Virus je izgleda onemogucio NOD32 tako da sada kada hocu da ga preinstaliram nece da prihvati instalciju a instalirala sam verziju sa softonic-a tj. sa ovog linka http://en.softonic.com/s/free-nod32-antivirus-2012-full-version
i sada mi izgleda taj virus onemogucio ESET Nod 32 posto mi MCaffe daje upozorenje da je u funkciji disabled ...tj. tacnije ovo pise po sceniranju .."Eset nod 32 antivirus 5.0 appears to be off or disabled, don`t leave your computer defenseless against the latest threats -turn your anty virus or anty-spayware software"- Mcaffe mi nudi opciju da kupim neki njihov software i da ga instaliram...

Pokusala sam da izvrsim update veryzije Eset Nod 32 pretpostavljam da nije najnovija i kada instaliram ponovo NOd 32 sa ovog linka

http://en.softonic.com/s/free-nod32-antivirus-2012-full-version


Ovo mi izbacuje U prvom prozoru:" You already have the latest vrersion installed"


i u drugom prozoru : "Installation has ben interrupted
The instalation of ESet Nod 32 has not been completed successfuly. They system has not been protected against computer threats. To install Wset Nod 32 on your computer please run installation again."

Ponovo sam isla na run i salje mi one smajlije da instaliram, to nisam cekirala i ponudi ti Hotspot Shield 2.53 za instalaciju-kada sam njega instalirala, pokazuje mi ikonicu sa upozorenjem da moye da dezorjentise sistem i da ga Microsoft ne preporucjuje da se instalacija prekine ? Za ovaj antivirus Hot Spot Shield 2.53 prvi put cujem ali mi ga je Eset Nod 32 ponudio da ga instaliram kao dodatni ( to je sa ovog linka na softonic-U), medjutim nisam ga instalirala. Da li treba i ovaj Hot SPot Shield 2.53 da instaliram?

Meni treba preporuka sta je najbolje u ovom slucaju da uradim i kakvu zastitiu da instaliram(napominjem da vec imam instaliran USB disk security version 6.1.0.432) posto mi instaliran ESET Nod 32 nije u funkciji, kako bih pronasla ovaj Spayware i unistila ga potpuno. A ovih dana je net pun nekih virusa...
Evo koji windows koristim ako je to bitno i
Verzija mog WIndowsa je Windows XP (5.1.2600 Servis pack 3 Build 2600
i nemam pojma jel ovo novija verzija ili nije.

A memorija mi je 512 MB celokupna i raspoloziva 29.49 MB
i virtuelna celokupna 2 GB i raspoloziva 1.96GB

Napomenucu jos ako je bitno da mi se pc znantno usporio i da mi stalno pokazuje upozorenje da mu je virtuelna memorija puna i tu mi treba savet koji je najbolji nacin da nateram windows da isprazni virtuelnu memoriju?




Hvala unapred na odgovoru.
 
0

Dashkes

Član broj: 90973
Poruke: 845



+27 Profil

icon Re: Pomoc oko zastite06.05.2012. u 16:15 - pre 145 meseci
Pozdrav adjals!
Preuzmite OSAM: Autorun Manager v5.0 i prikačite ovde html stranicu sa rezultatima.
 
0

adjals

Član broj: 171330
Poruke: 34
*.adsl.eunet.rs.



+2 Profil

icon Re: Pomoc oko zastite06.05.2012. u 22:32 - pre 145 meseci
Pozz, Dashkes

evo instalirala sam Osam Autorun manager i izvrsila skeniranje, i evo rezultata (valjda sam pravilno odradila ovo - fajl sto mi je Osam Autorun manger prilikom skeniranja dao opciju da ga sacuvam ,sacuvala sam ga i otvorila u Firefox-u i preko misa otvorila html za tu stranu i prekopirala i to je ovo)..Ako nije to to, samo mi reci tacno gde treba da idem da bih prikacila html stranu sa rezultatima.

<p><span class="header1">Report of OSAM: Autorun Manager v5.0.11926.0</span><br>
<a href="http://www.online-solutions.ru/en/" target="_blank">http://www.online-solutions.ru/en/</a><br>
Saved at 22:57:28 on 06.05.2012</p>
<b>OS</b>: Windows XP Professional Service Pack 3 (Build 2600)<br>
<b>Default Browser</b>: Mozilla Corporation Firefox 12.0<br>
<br><b>Scanner Settings</b><br>
<input disabled="disabled" checked="checked" type="checkbox">Rootkits detection (hidden registry)<br>
<input disabled="disabled" checked="checked" type="checkbox">Rootkits detection (hidden files)<br>
<input disabled="disabled" checked="checked" type="checkbox">Retrieve files information<br>
<input disabled="disabled" checked="checked" type="checkbox">Check Microsoft signatures<br>
<br><b>Filters</b><br>
<input disabled="disabled" type="checkbox">Trusted entries<br>
<input disabled="disabled" type="checkbox">Empty entries<br>
<input disabled="disabled" checked="checked" type="checkbox">Hidden registry entries (rootkit activity)<br>
<input disabled="disabled" checked="checked" type="checkbox">Exclusively opened files<br>
<input disabled="disabled" checked="checked" type="checkbox">Not found files<br>
<input disabled="disabled" checked="checked" type="checkbox">Files without detailed information<br>
<input disabled="disabled" checked="checked" type="checkbox">Existing files<br>
<input disabled="disabled" type="checkbox">Non-startable services<br>
<input disabled="disabled" type="checkbox">Non-startable drivers<br>
<input disabled="disabled" checked="checked" type="checkbox">Active entries<br>
<input disabled="disabled" checked="checked" type="checkbox">Disabled entries<br>
<br>
<table border="1" cellpadding="0" cellspacing="0">
<tbody><tr>
<th class="cap" width="20">&nbsp;</th>
<th class="cap">Risk</th>
<th class="cap">Name</th>
<th class="cap">Publisher</th>
<th class="cap">Full Path</th>
<th class="cap">Status</th>
</tr>
<tr>
<td class="group" colspan="6">Common</td>
</tr>
<tr>
<td class="reg" colspan="6">%SystemRoot%\Tasks</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"FreeFileViewerUpdateChecker.job"</td>
<td>"Bitberry Software"</td>
<td>C:\Program Files\FreeFileViewer\FFVCheckForUpdates.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"ProgramUpdateCheck.job"</td>
<td>"Trusted Software ApS"</td>
<td>C:\Program Files\File Type Assistant\tsassist.exe</td>
<td>File exists</td>
</tr>
<tr>
<td class="nodetails"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="nodetails">"Scheduled Update for Ask Toolbar.job"</td>
<td class="nodetails"></td>
<td class="nodetails">C:\Program Files\Ask.com\UpdateTask.exe</td>
<td class="nodetails">File found, but it contains no detailed information</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Adobe Flash Player Updater.job"</td>
<td>"Adobe Systems Incorporated"</td>
<td>C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"GoogleUpdateTaskUserS-1-5-21-117609710-1788223648-1644491937-500Core.job"</td>
<td>"Google Inc."</td>
<td>C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"GoogleUpdateTaskUserS-1-5-21-117609710-1788223648-1644491937-500UA.job"</td>
<td>"Google Inc."</td>
<td>C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe</td>
<td>File exists</td>
</tr>
<tr>
<td class="group" colspan="6">Control Panel Objects</td>
</tr>
<tr>
<td class="reg" colspan="6">%SystemRoot%\system32</td>
</tr>
<tr>
<td class="nodetails"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td class="nodetails">"ALSNDMGR.CPL"</td>
<td class="nodetails"></td>
<td class="nodetails">C:\WINDOWS\system32\ALSNDMGR.CPL</td>
<td class="nodetails">File found, but it contains no detailed information</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"FlashPlayerCPLApp.cpl"</td>
<td>"Adobe Systems Incorporated"</td>
<td>C:\WINDOWS\system32\FlashPlayerCPLApp.cpl</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"infocardcpl.cpl"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\infocardcpl.cpl</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"wuaucpl.cpl"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\wuaucpl.cpl</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"Nero BurnRights 10"</td>
<td>"Nero AG"</td>
<td>C:\Program Files\Nero\Nero 10\Nero BurnRights\NeroBurnRights_10.cpl</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Pando"</td>
<td>"Pando Networks"</td>
<td>C:\Program Files\Pando Networks\Media Booster\PMB.cpl</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"SMAX3CP"</td>
<td>"Analog Devices, Inc."</td>
<td>C:\Program Files\Analog Devices\SoundMAX\SMax3CP.cpl</td>
<td>File exists</td>
</tr>
<tr>
<td class="group" colspan="6">Drivers</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\SYSTEM\CurrentControlSet\Services</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"Anchorfree HSS Adapter" (taphss)</td>
<td>"AnchorFree Inc"</td>
<td>C:\WINDOWS\System32\DRIVERS\taphss.sys</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"Aspi32" (Aspi32)</td>
<td>"Adaptec"</td>
<td>C:\WINDOWS\system32\drivers\Aspi32.sys</td>
<td>File exists</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"Changer" (Changer)</td>
<td class="notfound"></td>
<td class="notfound">C:\WINDOWS\system32\drivers\Changer.sys</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"ehdrv" (ehdrv)</td>
<td>"ESET"</td>
<td>C:\WINDOWS\System32\DRIVERS\ehdrv.sys</td>
<td>File exists</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"i2omgmt" (i2omgmt)</td>
<td class="notfound"></td>
<td class="notfound">C:\WINDOWS\system32\drivers\i2omgmt.sys</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"ISO DVD/CD-ROM Device Driver" (ISODrive)</td>
<td>"EZB Systems, Inc."</td>
<td>C:\Program Files\UltraISO\drivers\ISODrive.sys</td>
<td>File exists</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"lbrtfdc" (lbrtfdc)</td>
<td class="notfound"></td>
<td class="notfound">C:\WINDOWS\system32\drivers\lbrtfdc.sys</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"PCIDump" (PCIDump)</td>
<td class="notfound"></td>
<td class="notfound">C:\WINDOWS\system32\drivers\PCIDump.sys</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"PDCOMP" (PDCOMP)</td>
<td class="notfound"></td>
<td class="notfound">C:\WINDOWS\system32\drivers\PDCOMP.sys</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"PDFRAME" (PDFRAME)</td>
<td class="notfound"></td>
<td class="notfound">C:\WINDOWS\system32\drivers\PDFRAME.sys</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"PDRELI" (PDRELI)</td>
<td class="notfound"></td>
<td class="notfound">C:\WINDOWS\system32\drivers\PDRELI.sys</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"PDRFRAME" (PDRFRAME)</td>
<td class="notfound"></td>
<td class="notfound">C:\WINDOWS\system32\drivers\PDRFRAME.sys</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"PxHelp20" (PxHelp20)</td>
<td>"Sonic Solutions"</td>
<td>C:\WINDOWS\System32\Drivers\PxHelp20.sys</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"SASDIFSV" (SASDIFSV)</td>
<td>"SUPERAdBlocker.com and SUPERAntiSpyware.com"</td>
<td>C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"SASKUTIL" (SASKUTIL)</td>
<td>"SUPERAdBlocker.com and SUPERAntiSpyware.com"</td>
<td>C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"Service for Realtek AC97 Audio (WDM)" (ALCXWDM)</td>
<td>"Realtek Semiconductor Corp."</td>
<td>C:\WINDOWS\System32\drivers\ALCXWDM.SYS</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"VIA AGP Filter" (viaagp1)</td>
<td>"VIA Technologies, Inc."</td>
<td>C:\WINDOWS\System32\DRIVERS\viaagp1.sys</td>
<td>File exists</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"WDICA" (WDICA)</td>
<td class="notfound"></td>
<td class="notfound">C:\WINDOWS\system32\drivers\WDICA.sys</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td class="group" colspan="6">Explorer</td>
</tr>
<tr>
<td class="reg" colspan="6">HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt"</td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt"</td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt"</td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} "DropboxExt"</td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\Software\Classes\Folder\shellex\ColumnHandlers</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension"</td>
<td>"Adobe Systems, Inc."</td>
<td>C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\Software\Classes\Protocols\Filter</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\mscoree.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\mscoree.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\mscoree.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{807553E5-5146-11D5-A672-00B0D022E945} "text/xml"</td>
<td>"Microsoft Corporation"</td>
<td>C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\Software\Classes\Protocols\Handler</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{32505114-5902-49B2-880A-1F7738E5A384} "Data Page Plugable Protocal mso-offdap11 Handler"</td>
<td>"Microsoft Corporation"</td>
<td>C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{3D9F03FA-7A94-11D3-BE81-0050048385D1} "Data Page Pluggable Protocol mso-offdap Handler"</td>
<td>"Microsoft Corporation"</td>
<td>C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} "IEProtocolHandler Class"</td>
<td>"Skype Technologies"</td>
<td>C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{5513F07E-936B-4E52-9B00-067394E91CC5} "McAfee SACore Protocol Handler"</td>
<td>"McAfee, Inc."</td>
<td>c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{5513F07E-936B-4E52-9B00-067394E91CC5} "McAfee SACore Protocol Handler"</td>
<td>"McAfee, Inc."</td>
<td>c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{91774881-D725-4E58-B298-07617B9B86A8} "Skype IE add-on Pluggable Protocol"</td>
<td>"Skype Technologies S.A."</td>
<td>C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{4D25FB7A-8902-4291-960E-9ADA051CFBBF} "tbr"</td>
<td>"Crawler.com"</td>
<td>C:\PROGRA~1\Crawler\ctbr.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} "SABShellExecuteHook Class"</td>
<td>"SuperAdBlocker.com"</td>
<td>C:\Program Files\SUPERAntiSpyware\SASSEH.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{23170F69-40C1-278A-1000-000100020000} "7-Zip Shell Extension"</td>
<td>"Igor Pavlov"</td>
<td>C:\Program Files\7-Zip\7-zip.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{5F327514-6C5E-4d60-8F16-D07FA08A78ED} "Auto Update Property Sheet Extension"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\wuaucpl.cpl</td>
<td>File exists</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">{42071714-76d4-11d1-8b24-00a0c9068ff3} "Display Panning CPL Extension"</td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Encryption Context Menu"</td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{E30BB957-3B17-43E6-8F4C-8F01BFED6F0F} "FileExtToggleExt Class"</td>
<td></td>
<td>C:\WINDOWS\system32\ShellExt\FILEEX~1.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\mscoree.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{8A56567E-A333-4843-B6E1-C3A262E41D8C} "HashPage Class"</td>
<td>"Beeblebrox.org"</td>
<td>C:\WINDOWS\system32\ShellExt\HashTab.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">{B1883831-F0D8-4453-8245-EEAAD866DD6E} "HashTab Context Menu"</td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rc">||&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{A5026724-3344-4658-94AE-0908507D892C} "HiddenFilesToggleExt Class"</td>
<td></td>
<td>C:\WINDOWS\system32\ShellExt\HIDDEN~1.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rc">||&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{A1A07B07-F70D-482e-B0E8-B6178E73B094} "hksshlex Class"</td>
<td>"Big-O Software"</td>
<td>C:\PROGRA~1\hkSFV\hkshlex.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler"</td>
<td>"Microsoft Corporation"</td>
<td>C:\Program Files\Microsoft Office\OFFICE11\msohev.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler"</td>
<td>"Microsoft Corporation"</td>
<td>C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler"</td>
<td>"Microsoft Corporation"</td>
<td>C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">{764BF0E1-F219-11ce-972D-00AA00A14F56} "Shell extensions for file compression"</td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\dfshim.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\dfshim.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{AD392E40-428C-459F-961E-9B147782D099} "UIContextMenu Class"</td>
<td>"EZB Systems, Inc."</td>
<td>C:\Program Files\UltraISO\isoshell.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="nodetails"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td class="nodetails">{DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} "UnlockerShellExtension"</td>
<td class="nodetails"></td>
<td class="nodetails">C:\Program Files\Unlocker\UnlockerCOM.dll</td>
<td class="nodetails">File found, but it contains no detailed information</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Web Folders"</td>
<td>"Microsoft Corporation"</td>
<td>C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR"</td>
<td>"Alexander Roshal"</td>
<td>C:\Program Files\WinRAR\rarext.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="group" colspan="6">Internet Explorer</td>
</tr>
<tr>
<td class="reg" colspan="6">HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td><binary data=""> "&amp;Crawler Toolbar"</binary></td>
<td>"Crawler.com"</td>
<td>C:\PROGRA~1\Crawler\ctbr.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td><binary data=""> "Ask Toolbar"</binary></td>
<td>"Ask"</td>
<td>C:\Program Files\Ask.com\GenericAskToolbar.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">ITBar7Height "ITBar7Height"</td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound"><binary data=""> "ITBar7Layout"</binary></td>
<td class="notfound"></td>
<td class="notfound"></td>
<td class="notfound">File not found | COM-object registry key not found</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rc">||&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td><binary data=""> "TheGiftBar Toolbar"</binary></td>
<td>"Conduit Ltd."</td>
<td>C:\Program Files\TheGiftBar\prxtbTheG.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} "&amp;Crawler Toolbar Helper"</td>
<td>"Crawler.com"</td>
<td>C:\PROGRA~1\Crawler\ctbr.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} "McAfee SiteAdvisor Toolbar"</td>
<td>"McAfee, Inc."</td>
<td>c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rc">||&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{efc46a17-82ed-46ea-b94a-a08c86bb4fbe} "TheGiftBar Toolbar"</td>
<td>"Conduit Ltd."</td>
<td>C:\Program Files\TheGiftBar\prxtbTheG.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{00000000-6E41-4FD3-8538-502F5495E5FC} "UrlSearchHook Class"</td>
<td>"Ask"</td>
<td>C:\Program Files\Ask.com\GenericAskToolbar.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{73848533-39E1-49F1-9363-28054268C094} "FileInterface Class"<br>https://online.bancaintesabeog...etailDLL/FSINT9.dll</td>
<td></td>
<td>C:\WINDOWS\Downloaded Program Files\FSINT9.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{76326493-E84F-4D4B-939C-1E07B50037F2} "ProxyModule Class"<br>https://online.bancaintesabeog...ailDLL/SGCMSCCD.DLL</td>
<td></td>
<td>C:\WINDOWS\Downloaded Program Files\SGCMSCCD.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Messenger"</td>
<td>"Microsoft Corporation"</td>
<td>C:\Program Files\Messenger\msmsgs.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ry">||||&nbsp;&nbsp;</td>
<td>{FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Research"</td>
<td>"Microsoft Corporation"</td>
<td>C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{898EA8C8-E7FF-479B-8935-AEC46303B9E5} "Skype Click to Call"</td>
<td>"Skype Technologies S.A."</td>
<td>C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td><binary data=""> "&amp;Crawler Toolbar"</binary></td>
<td>"Crawler.com"</td>
<td>C:\PROGRA~1\Crawler\ctbr.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td><binary data=""> "Ask Toolbar"</binary></td>
<td>"Ask"</td>
<td>C:\Program Files\Ask.com\GenericAskToolbar.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} "McAfee SiteAdvisor Toolbar"</td>
<td>"McAfee, Inc."</td>
<td>c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rc">||&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{efc46a17-82ed-46ea-b94a-a08c86bb4fbe} "TheGiftBar Toolbar"</td>
<td>"Conduit Ltd."</td>
<td>C:\Program Files\TheGiftBar\prxtbTheG.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} "&amp;Crawler Toolbar Helper"</td>
<td>"Crawler.com"</td>
<td>C:\PROGRA~1\Crawler\ctbr.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{18DF081C-E8AD-4283-A596-FA578C2EBDC3} "Adobe PDF Link Helper"</td>
<td>"Adobe Systems Incorporated"</td>
<td>C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{D4027C7F-154A-4066-A1AD-4243D8127440} "Ask Toolbar"</td>
<td>"Ask"</td>
<td>C:\Program Files\Ask.com\GenericAskToolbar.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{11111111-1111-1111-1111-110011221158} "I Want This"</td>
<td>"215 Apps"</td>
<td>C:\Program Files\I Want This\I Want This.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>{B164E929-A1B6-4A06-B104-2CD0E90A88FF} "McAfee SiteAdvisor BHO"</td>
<td>"McAfee, Inc."</td>
<td>c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{AE805869-2E5C-4ED4-8F7B-F1F7851A4497} "Skype Browser Helper"</td>
<td>"Skype Technologies S.A."</td>
<td>C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rc">||&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>{efc46a17-82ed-46ea-b94a-a08c86bb4fbe} "TheGiftBar Toolbar"</td>
<td>"Conduit Ltd."</td>
<td>C:\Program Files\TheGiftBar\prxtbTheG.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="group" colspan="6">Logon</td>
</tr>
<tr>
<td class="reg" colspan="6">%AllUsersProfile%\Start Menu\Programs\Startup</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"desktop.ini"</td>
<td></td>
<td>C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"McAfee Security Scan Plus.lnk"</td>
<td>"McAfee, Inc."</td>
<td>C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe</td>
<td>Shortcut exists | File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">%UserProfile%\Start Menu\Programs\Startup</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"desktop.ini"</td>
<td></td>
<td>C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\desktop.ini</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Dropbox.lnk"</td>
<td>"Dropbox, Inc."</td>
<td>C:\Documents and Settings\Administrator\Application Data\Dropbox\bin\Dropbox.exe</td>
<td>Shortcut exists | File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"chromium"</td>
<td>"Google Inc."</td>
<td>C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\Application\chrome.exe --no-startup-window</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Google Update"</td>
<td>"Google Inc."</td>
<td>"C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Hotlist-1st-Product-Alerts"</td>
<td>"iDeveloperNetwork Ltd."</td>
<td>C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX44.234\Hotlist-1st-Product-Alerts.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"MSMSGS"</td>
<td>"Microsoft Corporation"</td>
<td>"C:\Program Files\Messenger\msmsgs.exe" /background</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Skype"</td>
<td>"Skype Technologies S.A."</td>
<td>"C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"SUPERAntiSpyware"</td>
<td>"SUPERAntiSpyware.com"</td>
<td>C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe</td>
<td>File exists</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\Software\Microsoft\Windows\CurrentVersion\Run</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ry">||||&nbsp;&nbsp;</td>
<td>"Adobe ARM"</td>
<td>"Adobe Systems Incorporated"</td>
<td>"C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"ApnUpdater"</td>
<td>"Ask"</td>
<td>"C:\Program Files\Ask.com\Updater\Updater.exe"</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"egui"</td>
<td>"ESET"</td>
<td>"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Smapp"</td>
<td>"Analog Devices, Inc."</td>
<td>C:\Program Files\Analog Devices\SoundMAX\SMTray.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"SweetIM"</td>
<td>"SweetIM Technologies Ltd."</td>
<td>C:\Program Files\SweetIM\Messenger\SweetIM.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"USB Antivirus"</td>
<td>"Zbshareware Lab"</td>
<td>C:\Program Files\USB Disk Security\USBGuard.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"USB Security"</td>
<td>"Zbshareware Lab"</td>
<td>C:\Program Files\USB Disk Security\USBGuard.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"WinampAgent"</td>
<td>"Nullsoft, Inc."</td>
<td>"C:\Program Files\Winamp\winampa.exe"</td>
<td>File exists</td>
</tr>
<tr>
<td class="group" colspan="6">Print Monitors</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"Microsoft Document Imaging Writer Monitor"</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\mdimon.dll</td>
<td>File exists</td>
</tr>
<tr>
<td class="group" colspan="6">Services</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\SYSTEM\CurrentControlSet\Services</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32)</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Adobe Flash Player Update Service" (AdobeFlashPlayerUpdateSvc)</td>
<td>"Adobe Systems Incorporated"</td>
<td>C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"ASP.NET State Service" (aspnet_state)</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"Automatic Updates" (wuauserv)</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\system32\wuauserv.dll</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"ESET Service" (ekrn)</td>
<td>"ESET"</td>
<td>C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Google Updater Service" (gusvc)</td>
<td>"Google"</td>
<td>C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"McAfee Security Scan Component Host Service" (McComponentHostService)</td>
<td>"McAfee, Inc."</td>
<td>C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"McAfee SiteAdvisor Service" (McAfee SiteAdvisor Service)</td>
<td>"McAfee, Inc."</td>
<td>c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Mozilla Maintenance Service" (MozillaMaintenance)</td>
<td>"Mozilla Foundation"</td>
<td>C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs ru">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td>"Office Source Engine" (ose)</td>
<td>"Microsoft Corporation"</td>
<td>C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"SAS Core Service" (!SASCORE)</td>
<td>"SUPERAntiSpyware.com"</td>
<td>C:\Program Files\SUPERAntiSpyware\SASCORE.EXE</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"Skype Updater" (SkypeUpdate)</td>
<td>"Skype Technologies"</td>
<td>C:\Program Files\Skype\Updater\Updater.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"SoundMAX Agent Service" (SoundMAX Agent Service (default))</td>
<td>"Analog Devices, Inc."</td>
<td>C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"Windows CardSpace" (idsvc)</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe</td>
<td>File exists</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0)</td>
<td>"Microsoft Corporation"</td>
<td>C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe</td>
<td>File exists</td>
</tr>
<tr>
<td class="group" colspan="6">Winlogon</td>
</tr>
<tr>
<td class="reg" colspan="6">HKCU\Control Panel\IOProcs</td>
</tr>
<tr>
<td class="notfound"><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rn">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td>
<td class="notfound">"MVB"</td>
<td class="notfound"></td>
<td class="notfound">mvfs32.dll</td>
<td class="notfound">File not found</td>
</tr>
<tr>
<td class="reg" colspan="6">HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify</td>
</tr>
<tr>
<td><input disabled="disabled" checked="checked" type="checkbox"></td>
<td class="rs rt">||||||</td>
<td>"!SASWinLogon"</td>
<td>"SUPERAntiSpyware.com"</td>
<td>C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL</td>
<td>File exists</td>
</tr>
</tbody></table>
<p>If You have questions or want to get some help, You can visit <a href="http://forum.online-solutions.ru" target="_blank">http://forum.online-solutions.ru</a></p>
<div id="hide-button" style="background: url(&quot;http://207.150.202.194/chat/jscss/up_1.png&quot;) no-repeat scroll 0% 0% transparent; height: 19px; width: 49px; position: fixed; top: auto; margin-left: -24px; left: 50%; bottom: 0px; z-index: 32768; display: none;"></div><script type="text/javascript">document.getElementById("hide-button").onclick = function(){var show_evt = document.createEvent("Events");show_evt.initEvent("showhidetoolbar",true,false);this.dispatchEvent(show_evt);};</script>
 
0

Dashkes

Član broj: 90973
Poruke: 845



+27 Profil

icon Re: Pomoc oko zastite07.05.2012. u 09:48 - pre 145 meseci
Sve je odlično! :)


Deštiklirajte sledeće stavke -
1. "Scheduled Update for Ask Toolbar.job" C:\Program Files\Ask.com\UpdateTask.exe
2. "Changer" (Changer) C:\WINDOWS\system32\drivers\Changer.sys
3. "i2omgmt" (i2omgmt) C:\WINDOWS\system32\drivers\i2omgmt.sys
4. "lbrtfdc" (lbrtfdc) C:\WINDOWS\system32\drivers\lbrtfdc.sys
5. "WDICA" (WDICA) C:\WINDOWS\system32\drivers\WDICA.sys
6. {4D25FB7A-8902-4291-960E-9ADA051CFBBF} "tbr" "Crawler.com" C:\PROGRA~1\Crawler\ctbr.dll
7. {8A56567E-A333-4843-B6E1-C3A262E41D8C} "HashPage Class" "Beeblebrox.org" C:\WINDOWS\system32\ShellExt\HashTab.dll
8. {A5026724-3344-4658-94AE-0908507D892C} "HiddenFilesToggleExt Class" C:\WINDOWS\system32\ShellExt\HIDDEN~1.DLL
9. {A1A07B07-F70D-482e-B0E8-B6178E73B094} "hksshlex Class" "Big-O Software" C:\PROGRA~1\hkSFV\hkshlex.dll
10. "&Crawler Toolbar" "Crawler.com" C:\PROGRA~1\Crawler\ctbr.dll
11. "Ask Toolbar" "Ask" C:\Program Files\Ask.com\GenericAskToolbar.dll
12. "TheGiftBar Toolbar" "Conduit Ltd." C:\Program Files\TheGiftBar\prxtbTheG.dll
13. {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} "&Crawler Toolbar Helper" "Crawler.com" C:\PROGRA~1\Crawler\ctbr.dll
14. {efc46a17-82ed-46ea-b94a-a08c86bb4fbe} "TheGiftBar Toolbar" "Conduit Ltd." C:\Program Files\TheGiftBar\prxtbTheG.dll
15. {00000000-6E41-4FD3-8538-502F5495E5FC} "UrlSearchHook Class" "Ask" C:\Program Files\Ask.com\GenericAskToolbar.dll
16. "&Crawler Toolbar" "Crawler.com" C:\PROGRA~1\Crawler\ctbr.dll
17. "Ask Toolbar" "Ask" C:\Program Files\Ask.com\GenericAskToolbar.dll
18. {efc46a17-82ed-46ea-b94a-a08c86bb4fbe} "TheGiftBar Toolbar" "Conduit Ltd." C:\Program Files\TheGiftBar\prxtbTheG.dll
19. {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} "&Crawler Toolbar Helper" "Crawler.com" C:\PROGRA~1\Crawler\ctbr.dll
20. {D4027C7F-154A-4066-A1AD-4243D8127440} "Ask Toolbar" "Ask" C:\Program Files\Ask.com\GenericAskToolbar.dll
21. {11111111-1111-1111-1111-110011221158} "I Want This" "215 Apps" C:\Program Files\I Want This\I Want This.dll
22. {efc46a17-82ed-46ea-b94a-a08c86bb4fbe} "TheGiftBar Toolbar" "Conduit Ltd." C:\Program Files\TheGiftBar\prxtbTheG.dll
23. "Hotlist-1st-Product-Alerts" "iDeveloperNetwork Ltd." C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX44.234\Hotlist-1st-Product-Alerts.exe
24. "ApnUpdater" "Ask" "C:\Program Files\Ask.com\Updater\Updater.exe"
25. "SweetIM" "SweetIM Technologies Ltd." C:\Program Files\SweetIM\Messenger\SweetIM.exe
i kliknite na Apply. Nakon toga restartujte računar.

• Preuzmite i instalirajte program Malwarebytes` Anti-Malware
• Pokrenite ga i izvršite update(Update > Check for Updates) i po završetku potvrdite sa OK.
• Posle update-a odaberite Scanner, označite Perform full scan i pritisnite Scan.
• Kada se skeniranje završi pritisnite OK, pa Show Results da vidite izveštaj.
• Proverite da li su svi pronađeni fajlovi štiklirani(ako nisu, odaberite ih), pritisnite Remove Selected i potvrdite sa OK.
• Program će vas upitati da restartujete računar i Vi to potvrdite.
• Takođe posle ukljanjanje malware-a sa računara dobićete log fajl(izveštaj) koji možete iskopirati ovde.
 
0

adjals

Član broj: 171330
Poruke: 34
*.adsl.eunet.rs.



+2 Profil

icon Re: Pomoc oko zastite07.05.2012. u 12:30 - pre 145 meseci
Odradila sam sve kako si mi objasnio, nije bilo komplikovano, nekih 47 detektovanih objekata je bili i evo prikacenog izvestaja koji sam dobila. i to je to. Da li ima potrebe jos nesto da mu odradim, i koji je najbolji antivirus da mu instaliram uz UDB Disk security, posto je i ESET Nod32 -datoteka bila inficirana i sada mi je izbrisana, ostala mi je samo ikonica za Nod na desktopu.

Samo jos jednu napomenu - juce sam instalirala i Super Anty Spayware 5.0.1148 i tu je bilo preko 400 objekata zarazeno, i to sam odradila po instrukcijama koje sistem daje, i mislim da je ok. Bio je i jedan Trojanac i ostalo Spayware i jos neki virusi. Jel tu ne treba nista vise oko Super Anty Spaware da se nesto ponovo skenira ili nesto drugo odradi.

Sada mi trenutno pc radi brze, i mnogo manje se cuje onaj zvuk, kao kada vrsimo defragmentaciju, ali mi jos uvek izbacuje onu zutu ikonicu sa znakom uzvika na kojoj pise Virtual Memory minimum Too Low,i kada se ukljuci, treba mu dosta vremena da pokrene browser al dobro to cu vec na forumu za to, verovatno ima nesto jos da se odradi oko toga, ja ono sto sam znala oko virtuelne memorije, sam odradila.

I imam pitanje da li smem ove programe koji su uklonjeni, kao npr. neke software koji mi trebaju da ih preuzmem i instaliram ponovo, da li nisu oni ostali negde zarazeni na linku sa kog sam ih preuzela?


Hvala ti puno, na pomoci...


Malwarebytes Anti-Malware (Proba) 1.61.0.1400
www.malwarebytes.org

Verzija baze: v2012.05.07.01

Windows XP Service Pack 3 x86 FAT32
Internet Explorer 6.0.2900.5512
Administrator :: NN-B33A0C856812 [administrator]

Zaštita: Omogućena

7.5.2012 12:05:16
mbam-log-2012-05-07 (12-52-55).txt

Način skeniranja: Kompletno skeniranje
Omogućene opcije skeniranja: Memorija | Automatsko pokretanje | Registar | Datotečni sistem | Heuristika/Dodatno | Heuristika/Shuriken | PUP | PUM
Onemogućene opcije skeniranja: P2P
Skeniranih objekata 217496
Proteklo vreme 44 minuta(e), 38 sekundi

Detektovani procesi u memoriji: 0
(Maliciozne stavke nisu pronađene)

Detektovani moduli u memoriji: 0
(Maliciozne stavke nisu pronađene)

Detektovani ključevi u registru: 28
HKCR\CLSID\{11111111-1111-1111-1111-110011221158} (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\TypeLib\{44444444-4444-4444-4444-440044224458} (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\Interface\{55555555-5555-5555-5555-550055225558} (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.BHO.1 (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110011221158} (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110011221158} (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011221158} (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\CLSID\{22222222-2222-2222-2222-220022222258} (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.Sandbox.1 (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.Sandbox (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\CLSID\{33333333-3333-3333-3333-330033223358} (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.FBApi.1 (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.FBApi (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{65bcd620-07dd-012f-819f-073cf1b8f7c6} (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.BHO (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\I Want This (Adware.GamePlayLabs) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.BHO (PUP.CrossFire.Gen) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.BHO.1 (PUP.CrossFire.Gen) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.FBApi (PUP.CrossFire.Gen) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.FBApi.1 (PUP.CrossFire.Gen) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.Sandbox (PUP.CrossFire.Gen) -> Nikakva akcija nije poduzeta.
HKCR\CrossriderApp0002258.Sandbox.1 (PUP.CrossFire.Gen) -> Nikakva akcija nije poduzeta.
HKCU\SOFTWARE\Aasppapmmxkvs (Malware.Trace) -> Nikakva akcija nije poduzeta.
HKCU\Software\Cr_Installer\2258 (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCU\SOFTWARE\CROSSRIDER (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
HKCU\SOFTWARE\I WANT THIS (PUP.GamesPlayLab) -> Nikakva akcija nije poduzeta.
HKLM\SOFTWARE\Google\Chrome\Extensions\mpfapcdfbbledbojijcbcclmlieaoogk (PUP.GamesPlayLab) -> Nikakva akcija nije poduzeta.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mpfapcdfbbledbojijcbcclmlieaoogk (PUP.GamesPlayLab) -> Nikakva akcija nije poduzeta.

Detektovane vrednosti u registru: 3
HKCU\Software\Crossrider|215AppVerifier (Adware.GamePlayLab) -> Podatak: e759db7c20fffd1252ec581c8c9b23d8 -> Nikakva akcija nije poduzeta.
HKCU\Software\I Want This|HelperRunningVersion (PUP.GamesPlayLab) -> Podatak: 149 -> Nikakva akcija nije poduzeta.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\I Want This|Publisher (Adware.GamePlayLab) -> Podatak: 215 Apps -> Nikakva akcija nije poduzeta.

Detektovani podaci u registru: 0
(Maliciozne stavke nisu pronađene)

Detektovane fascikle: 3
C:\Program Files\I Want This (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
C:\Documents and Settings\Administrator\Local Settings\Application Data\I Want This (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
C:\Documents and Settings\Administrator\Local Settings\Application Data\I Want This\Chrome (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.

Detektovane datoteke: 13
C:\Program Files\I Want This\I Want This.dll (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
C:\Documents and Settings\Administrator\Local Settings\Temp\7zO15D.tmp\MassTrafficInstantFreeBacklinks.exe (HackTool.Agent) -> Nikakva akcija nije poduzeta.
C:\Documents and Settings\Administrator\Local Settings\Temp\Temporary Directory 1 for MassTrafficInstantFreeBacklinks.zip\MassTrafficInstantFreeBacklinks.exe (HackTool.Agent) -> Nikakva akcija nije poduzeta.
C:\Documents and Settings\Administrator\My Documents\Downloads\SoftonicDownloader_for_eset-nod32-antivirus.exe (PUP.ToolbarDownloader) -> Nikakva akcija nije poduzeta.
C:\Documents and Settings\Administrator\My Documents\Downloads\SoftonicDownloader_for_usb-disk-security.exe (PUP.ToolbarDownloader) -> Nikakva akcija nije poduzeta.
C:\Program Files\I Want This\I Want This.exe (Adware.GamePlayLabs) -> Nikakva akcija nije poduzeta.
C:\Program Files\I Want This\I Want ThisGui.exe (Adware.GamePlayLabs) -> Nikakva akcija nije poduzeta.
C:\Program Files\I Want This\Uninstall.exe (Adware.GamePlayLabs) -> Nikakva akcija nije poduzeta.
C:\System Volume Information\_restore{68D79994-5797-4965-B54A-6E53E2930B96}\RP64\A0011758.exe (PUP.BundleInstaller.BT) -> Nikakva akcija nije poduzeta.
C:\Program Files\I Want This\I Want This.ini (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
C:\Program Files\I Want This\I Want This.ico (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
C:\Program Files\I Want This\I Want ThisInstaller.log (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.
C:\Documents and Settings\Administrator\Local Settings\Application Data\I Want This\Chrome\I Want This.crx (Adware.GamePlayLab) -> Nikakva akcija nije poduzeta.

(kraj)
 
0

Dashkes

Član broj: 90973
Poruke: 845



+27 Profil

icon Re: Pomoc oko zastite07.05.2012. u 12:55 - pre 145 meseci
Nažalost, niste ništa izbrisali MBAM-om, u logu možete videti "Nikakva akcija nije poduzeta."
Morate ponovo skenirati disk i čekirati sve objekte i izbrisati.

Što se tiče SUPERAntiSpyware-a, ja bih ga izbrisao i držao samo MBAM.
Ja koristim Dr.Web naprimer.
Od besplatnih alternativa preporučujem ili Outpost Security Suite FREE ili Lavasoft Ad-Aware Free Antivirus+.

Za skidanje softvera koristite FileHippo sajt.

Ne bi bilo loše da skenirate računar još jednom alatkom -
Preuzmite program Dr.Web CureIt!.

• Posle preuzimanja restartujte računar u Safe Mode-u (dok se pali računar pritiskajte F8 pa kada se pojavi meni odaberite Safe Mode).
• Kada se učita Safe Mode pokrenite Dr.Web CureIt!.
• Kad se upali odaberite Start. On će automatski početi da skenira računar. Pustiti da skenira (to je Express Scan).
• Kada završi sa skeniranjem odaberite kompletno skeniranje - Complete scan i sa desne strane pritisnite dugme Start Scanning (izgleda kao Play dugme).

Pokažite log (zapakujte u ".rar" arhivu i upload-ujte) CureIt!-a koji se nalazi u C:\Documents and Settings\USERNAME\DoctorWeb\
 
0

[es] :: Zaštita :: Pomoc oko zastite
(Zaključana tema (lock), by Aleksandar Maletic)
Strane: 1 2 3 4

[ Pregleda: 15523 | Odgovora: 66 ] > FB > Twit

Postavi temu

Navigacija
Lista poslednjih: 16, 32, 64, 128 poruka.