Премини към съдържанието

merimeri

Потребител
  • Публикации

    99
  • Регистрация

  • Последно онлайн

Харесвания

7 Неутрална репутация

3 Последователи

Всичко за merimeri

  • Титла
    Редовен потребител
  • Рожден ден 14.09.1970

Информация

  • Пол
    Неопределен
  1. merimeri

    Болен компютър .

    Нямахме намерение за преинсталация ... никога не е преинсталиран ... но нямаше какво да направя и как да влезна ...както обясних по-горе - след рестарта не можа да тръгне и целия ден само се рестартираше ... опитах се да влезна от телефона , да те питам какво да правя , но не можах .. Мн. ти благодаря за всичко ! Стих за благодаря : Icotonev е спец - верен Калдата боец . С вирусите знае как да се пребори , с точните програми - да ги обори . Mery само му ревеше - тулбар в компа й се вреше . Пред Kaspersky е признат - браво на такъв мозък брат ! Поздрави !
  2. merimeri

    Болен компютър .

    Koмпютъра го преинсталирахме ... след като се изключи и започна да се включва не можа да изпълни стъпките и само се рестартираше ....
  3. merimeri

    Болен компютър .

    DDS (Ver_2011-09-30.01) - NTFS_x86 Internet Explorer: 9.0.8112.16421 Run by Stoqn at 19:14:31 on 2013-01-03 Microsoft® Windows Vista™ Ultimate 6.0.6002.2.1251.359.1033.18.2046.890 [GMT 2:00] . . ============== Running Processes ================ . C:Windowssystem32wininit.exe C:Windowssystem32lsm.exe C:Windowssystem32Ati2evxx.exe C:Windowssystem32SLsvc.exe C:Windowssystem32Ati2evxx.exe C:Program FilesATK HotkeyASLDRSrv.exe C:Program FilesATKGFNEXGFNEXSrv.exe C:Program FilesAVAST SoftwareAvastAvastSvc.exe C:Windowssystem32Dwm.exe C:WindowsExplorer.EXE C:WindowsSystem32spoolsv.exe C:Windowssystem32taskeng.exe C:Program FilesATK HotkeyHControlUser.exe C:Windowssystem32taskeng.exe C:Program FilesATK HotkeyHcontrol.exe C:Program FilesATKOSD2ATKOSD2.exe C:Program FilesATK HotkeyMsgTranAgt.exe C:Program FilesCommon FilesAcronisSchedule2schedul2.exe C:WindowsehomeehRecvr.exe C:Windowsehomeehsched.exe C:Program FilesCyberLinkShared filesRichVideo.exe C:ProgramDataSkypeToolbarsSkype C2C Servicec2c_service.exe C:Windowssystem32SearchIndexer.exe C:Program FilesWindows Media Playerwmpnetwk.exe C:WindowsRtHDVCpl.exe C:Program FilesSynapticsSynTPSynTPEnh.exe C:Program FilesATK HotkeyATKOSD.exe C:Program FilesAcronisTrueImageHomeTrueImageMonitor.exe C:Program FilesAcronisTrueImageHomeTimounterMonitor.exe C:Program FilesCommon FilesAcronisSchedule2schedhlp.exe C:Program FilesAVAST SoftwareAvastAvastUI.exe C:Program FilesWindows Sidebarsidebar.exe C:Windowsehomeehtray.exe C:Program FilesDatecsFlexType 2KFType2K.exe C:Program FilesATI TechnologiesATI.ACECore-StaticMOM.exe C:Windowsehomeehmsas.exe C:Program FilesWindows Sidebarsidebar.exe C:Program FilesATK HotkeyKBFiltr.exe C:Program FilesATK HotkeyWDC.exe C:Program FilesSynapticsSynTPSynTPHelper.exe C:Program FilesATI TechnologiesATI.ACECore-StaticCCC.exe C:Program FilesSkypePhoneSkype.exe C:Program FilesMozilla Firefoxfirefox.exe C:Program FilesMozilla Firefoxplugin-container.exe C:Windowssystem32MacromedFlashFlashPlayerPlugin_11_5_502_135.exe C:Windowssystem32MacromedFlashFlashPlayerPlugin_11_5_502_135.exe C:WindowsservicingTrustedInstaller.exe D:DesktopНова папкаdds.exe C:Windowssystem32wbemWmiPrvSE.exe C:Windowssystem32svchost.exe -k DcomLaunch C:Windowssystem32svchost.exe -k rpcss C:WindowsSystem32svchost.exe -k LocalServiceNetworkRestricted C:WindowsSystem32svchost.exe -k LocalSystemNetworkRestricted C:Windowssystem32svchost.exe -k netsvcs C:Windowssystem32svchost.exe -k GPSvcGroup C:Windowssystem32svchost.exe -k LocalService C:Windowssystem32svchost.exe -k NetworkService C:Windowssystem32svchost.exe -k LocalServiceNoNetwork C:Windowssystem32svchost.exe -k LocalServiceAndNoImpersonation C:Windowssystem32svchost.exe -k NetworkServiceNetworkRestricted C:Windowssystem32svchost.exe -k imgsvc . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www.google.com mStart Page = hxxp://www.google.com BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:program filesmicrosoft officeoffice12GrooveShellExtensions.dll BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:program filesavast softwareavastaswWebRepIE.dll BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:program filesskypetoolbarsinternet explorerskypeieplugin.dll BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:program filesavast softwareavastaswWebRepIE.dll uRun: [sidebar] c:program fileswindows sidebarsidebar.exe /autoRun uRun: [ehTray.exe] c:windowsehomeehTray.exe mRun: [HControlUser] "c:program filesatk hotkeyHcontrolUser.exe" mRun: [ATKOSD2] "c:program filesatkosd2ATKOSD2.exe" mRun: [RtHDVCpl] RtHDVCpl.exe mRun: [synTPEnh] c:program filessynapticssyntpSynTPEnh.exe mRun: [startCCC] "c:program filesati technologiesati.acecore-staticCLIStart.exe" mRun: [QuickTime Task] "c:program filesquicktimeqttask.exe" -atboottime mRun: [Malwarebytes Anti-Malware (reboot)] "c:program filesmalwarebytes' anti-malwarembam.exe" /runcleanupscript mRun: [TrueImageMonitor.exe] c:program filesacronistrueimagehomeTrueImageMonitor.exe mRun: [AcronisTimounterMonitor] c:program filesacronistrueimagehomeTimounterMonitor.exe mRun: [Acronis Scheduler2 Service] "c:program filescommon filesacronisschedule2schedhlp.exe" mRun: [avast] "c:program filesavast softwareavastavastUI.exe" /nogui StartupFolder: c:usersstoqnappdataroamingmicros~1windowsstartm~1programsstartupadobem~1.lnk - c:program filesadobe media playerAdobe Media Player.exe StartupFolder: c:usersstoqnappdataroamingmicros~1windowsstartm~1programsstartupccc.lnk - c:program filesati technologiesati.acecore-staticCCC.exe StartupFolder: c:usersstoqnappdataroamingmicros~1windowsstartm~1programsstartuponenot~1.lnk - c:program filesmicrosoft officeoffice12ONENOTEM.EXE StartupFolder: c:progra~2micros~1windowsstartm~1programsstartupflexty~1.lnk - c:program filesdatecsflextype 2kFType2K.exe uPolicies-Explorer: NoDriveTypeAutoRun = dword:149 uPolicies-Explorer: NoDrives = dword:0 mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0 mPolicies-Explorer: NoDrives = dword:0 mPolicies-System: EnableUIADesktopToggle = dword:0 IE: E&xport to Microsoft Excel - c:progra~1micros~2office12EXCEL.EXE/3000 IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:program filesmicrosoft officeoffice12ONBttnIE.dll IE: {807DF5E0-4EF7-48a8-A405-239F3E29FFA9} - {FE69C007-C452-4d3e-86D2-1730DF8BC871} - <orphaned> IE: {88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - {17A84966-F1E9-4645-AA9E-5E771EE1C859} - c:program filesnuclear coffeevideogetpluginsVideoGet_IE.dll IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:program filesskypetoolbarsinternet explorerskypeieplugin.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:program filesyahoo!commonYinsthelper.dll TCP: NameServer = 46.40.72.9 192.168.0.1 TCP: Interfaces{EA3A2565-B297-4FE4-8C32-4329B1CB50A1} : DHCPNameServer = 46.40.72.9 192.168.0.1 Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:program filesmicrosoft officeoffice12GrooveSystemServices.dll Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:program filesskypetoolbarsinternet explorerskypeieplugin.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:program filescommon filesskypeSkype4COM.dll SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:program filesmicrosoft officeoffice12GrooveShellExtensions.dll LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg . ================= FIREFOX =================== . FF - ProfilePath - c:usersstoqnappdataroamingmozillafirefoxprofilesrftsd1zx.default FF - prefs.js: browser.startup.homepage - www.google.bg/ FF - plugin: c:program filesgooglegoogle earthpluginnpgeplugin.dll FF - plugin: c:program filesgoogleupdate1.3.21.123npGoogleUpdate3.dll FF - plugin: c:program filesmozilla firefoxpluginsnpyaxmpb.dll FF - plugin: c:windowssystem32macromedflashNPSWF32_11_5_502_135.dll . ============= SERVICES / DRIVERS =============== . R0 tdrpman228;Acronis Try&Decide and Restore Points filter (build 228);c:windowssystem32driverstdrpm228.sys [2011-1-31 902592] R1 aswKbd;aswKbd;c:windowssystem32driversaswKbd.sys [2012-8-22 20624] R1 aswSnx;aswSnx;c:windowssystem32driversaswSnx.sys [2012-1-27 738504] R1 aswSP;aswSP;c:windowssystem32driversaswSP.sys [2012-1-27 361032] R2 aswFsBlk;aswFsBlk;c:windowssystem32driversaswFsBlk.sys [2012-1-27 21256] R2 aswMonFlt;aswMonFlt;c:windowssystem32driversaswMonFlt.sys [2012-1-27 58680] R2 avast! Antivirus;avast! Antivirus;c:program filesavast softwareavastAvastSvc.exe [2012-1-27 44808] R2 FontCache;Windows Font Cache Service;c:windowssystem32svchost.exe -k LocalServiceAndNoImpersonation [2008-1-21 21504] R2 Skype C2C Service;Skype C2C Service;c:programdataskypetoolbarsskype c2c servicec2c_service.exe [2012-12-13 3290896] R3 NETw5v32;Intel® Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ;c:windowssystem32driversNETw5v32.sys [2009-1-21 3658752] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:windowsmicrosoft.netframeworkv4.0.30319mscorsvw.exe [2010-3-18 130384] S2 gupdate1c98e9d48070d10;Google Update Service (gupdate1c98e9d48070d10);c:program filesgoogleupdateGoogleUpdate.exe [2009-2-14 133104] S2 SkypeUpdate;Skype Updater;c:program filesskypeupdaterUpdater.exe [2012-2-15 158856] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:windowssystem32macromedflashFlashPlayerUpdateService.exe [2012-7-6 250808] S3 BthAvrcp;Bluetooth AVRCP Profile;c:windowssystem32driversBthAvrcp.sys [2010-2-5 28048] S3 gupdatem;Ус»уі° Ѕ° Google рєту°»ё·°цёя (gupdatem);c:program filesgoogleupdateGoogleUpdate.exe [2009-2-14 133104] S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:windowsmicrosoft.netframeworkv4.0.30319wpfWPFFontCache_v0400.exe [2010-3-18 753504] . =============== File Associations =============== . FileExt: .js: Applicationsmplayerc.exe="c:program filesk-lite codec packmedia player classicmplayerc.exe" "%1" [userChoice] . =============== Created Last 30 ================ . 2013-01-02 21:12:42 -------- d-----w- c:windowssystem32catroot2 2013-01-02 12:30:43 303616 ----a-w- C:SetACL.exe 2013-01-02 12:09:17 290304 ----a-w- C:subinacl.exe 2013-01-02 12:04:55 -------- d-----w- C:RegBackup 2013-01-02 07:47:44 -------- d-----w- C:Tweaking.com_Windows_Repair_Logs 2013-01-02 07:47:33 -------- d-----w- c:program filesTweaking.com 2013-01-01 17:03:12 -------- d-sh--w- C:found.001 2012-12-29 14:16:39 -------- d-sh--w- C:$RECYCLE.BIN 2012-12-27 06:51:30 -------- d-----w- c:usersstoqnappdatalocaltemp 2012-12-20 21:27:54 34304 ----a-w- c:windowssystem32atmlib.dll 2012-12-20 21:27:54 293376 ----a-w- c:windowssystem32atmfd.dll 2012-12-20 21:01:39 54016 ----a-w- c:windowssystem32driversbgdgk.sys 2012-12-20 17:21:25 -------- d-----w- C:found.000 2012-12-13 01:04:36 9728 ----a-w- c:windowssystem32Wdfres.dll 2012-12-13 01:04:26 66560 ----a-w- c:windowssystem32driversWUDFPf.sys 2012-12-13 01:04:26 155136 ----a-w- c:windowssystem32driversWUDFRd.sys 2012-12-13 01:04:25 16896 ----a-w- c:windowssystem32winusb.dll 2012-12-13 01:04:24 73216 ----a-w- c:windowssystem32WUDFSvc.dll 2012-12-13 01:04:24 172032 ----a-w- c:windowssystem32WUDFPlatform.dll 2012-12-13 01:04:23 47720 ----a-w- c:windowssystem32driversWdfLdr.sys 2012-12-13 01:04:22 526952 ----a-w- c:windowssystem32driversWdf01000.sys 2012-12-13 01:04:16 38912 ----a-w- c:windowssystem32WUDFCoinstaller.dll 2012-12-13 01:04:15 196608 ----a-w- c:windowssystem32WUDFHost.exe 2012-12-13 01:04:14 613888 ----a-w- c:windowssystem32WUDFx.dll 2012-12-12 05:59:11 2048000 ----a-w- c:windowssystem32win32k.sys 2012-12-12 05:59:10 376320 ----a-w- c:windowssystem32dpnet.dll 2012-12-12 05:59:10 23040 ----a-w- c:windowssystem32dpnsvr.exe 2012-12-12 05:59:08 224640 ----a-w- c:windowssystem32driversvolsnap.sys 2012-12-12 05:59:00 2048 ----a-w- c:windowssystem32tzres.dll 2012-12-10 17:06:45 -------- d-----w- c:programdataThunder Network . ==================== Find3M ==================== . 2012-12-14 14:49:28 21104 ----a-w- c:windowssystem32driversmbam.sys 2012-12-11 18:44:21 73656 ----a-w- c:windowssystem32FlashPlayerCPLApp.cpl 2012-12-11 18:44:21 697272 ----a-w- c:windowssystem32FlashPlayerApp.exe 2012-11-18 17:35:52 723294 ----a-w- c:windowsunins000.exe 2012-11-14 02:09:22 1800704 ----a-w- c:windowssystem32jscript9.dll 2012-11-14 01:58:15 1427968 ----a-w- c:windowssystem32inetcpl.cpl 2012-11-14 01:57:37 1129472 ----a-w- c:windowssystem32wininet.dll 2012-11-14 01:49:25 142848 ----a-w- c:windowssystem32ieUnatt.exe 2012-11-14 01:48:27 420864 ----a-w- c:windowssystem32vbscript.dll 2012-11-14 01:44:42 2382848 ----a-w- c:windowssystem32mshtml.tlb 2012-10-30 22:51:58 738504 ----a-w- c:windowssystem32driversaswSnx.sys 2012-10-30 22:51:57 58680 ----a-w- c:windowssystem32driversaswMonFlt.sys 2012-10-30 22:51:56 20624 ----a-w- c:windowssystem32driversaswKbd.sys 2012-10-30 22:51:07 41224 ----a-w- c:windowsavastSS.scr . ============= FINISH: 19:15:09,49 ===============
  4. merimeri

    Болен компютър .

    Указанията ги изпълних . Ето Авира в какво се трансформира : Не стават хубави снимки ...едното е Аваст др Авира .... Тулбара го деинсталирах ,но този Babylon , който е до авира не мога да го премахна , когато кликна на десен бутон нищо не излиза и горе където са организиране , изгледи , деинсталиране / деинсталирането изчезва като опция
  5. merimeri

    Болен компютър .

    Честита Нова Година на всички ! Logfile of The Avenger Version 2.0, © by Swandog46 http://swandog46.geekstogo.com Platform: Windows Vista ******************* Script file opened successfully. Script file read successfully. Backups directory opened successfully at C:Avenger ******************* Beginning to process script file: Rootkit scan active. No rootkits found! Folder "C:Program FilesAvira" deleted successfully. Folder "C:ProgramDataAvira" deleted successfully. Error: could not open folder "C:UsersAll UsersAvira" Deletion of folder "C:UsersAll UsersAvira" failed! Status: 0xc0000715 Completed script processing. ******************* Finished! Terminate.
  6. merimeri

    Болен компютър .

    Това ли е ? Ако не е утре ще го търся All processes killed ========== PROCESSES ========== No active process named explorer.exe was found! ========== SERVICES/DRIVERS ========== ========== FILES ========== C:UsersStoqnAppDataRoamingMicrosoftWindowsRecentavira_registry_cleaner_en.lnk moved successfully. File/Folder C:WindowsPrefetchAVIRA_REGISTRY_CLEANER_EN.EXЕ not found. C:WindowsSystem32configsystemprofileAppDataRoamingMicrosoftWindowsCookiesstoqn@avira[1].txt moved successfully. C:WindowsSystem32configsystemprofileAppDataRoamingMicrosoftWindowsCookiesstoqn@www.avira[2].txt moved successfully. C:WindowsSystem32configsystemprofileAppDataRoamingMicrosoftWindowsCookiesstoqn@www.avira[3].txt moved successfully. Error: Unable to interpret <:Folder> in the current context! Error: Unable to interpret <C:Program FilesAvira> in the current context! Error: Unable to interpret <C:ProgramDataAvira> in the current context! Error: Unable to interpret <C:UsersAll UsersAvira> in the current context! ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Public ->Temp folder emptied: 0 bytes User: Stoqn ->Temp folder emptied: 41255 bytes ->Temporary Internet Files folder emptied: 1674852 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 69501020 bytes ->Google Chrome cache emptied: 25823034 bytes ->Flash cache emptied: 2902 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%System32 .tmp files removed: 0 bytes %systemroot%System32drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes %systemroot%system32configsystemprofileLocal SettingsTemporary Internet Files folder emptied: 0 bytes %systemroot%system32configsystemprofileAppDataLocalMicrosoftWindowsTemporary Internet Files folder emptied: 10471114 bytes %systemroot%system32configsystemprofileAppDataLocalLowSunJavaDeployment folder emptied: 320 bytes RecycleBin emptied: 21767558 bytes Total Files Cleaned = 123,00 mb OTM by OldTimer - Version 3.1.21.0 log created on 12292012_213338 Files moved on Reboot... Registry entries deleted on Reboot...
  7. merimeri

    Болен компютър .

    SystemLook 30.07.11 by jpshortstuff Log created at 20:57 on 29/12/2012 by Stoqn Administrator - Elevation successful ========== filefind ========== Searching for "*Avira*" C:UsersStoqnAppDataRoamingMicrosoftWindowsRecentavira_registry_cleaner_en.lnk --a---- 379 bytes [17:23 29/12/2012] [17:23 29/12/2012] 0514DD925693B0E42E83176FA14E1A50 C:WindowsPrefetchAVIRA_REGISTRY_CLEANER_EN.EXE-04DFBC13.pf --a---- 42464 bytes [16:41 29/12/2012] [17:20 29/12/2012] 917C9BA47C0B97D5EFF287590AC40559 C:WindowsSystem32configsystemprofileAppDataRoamingMicrosoftWindowsCookiesstoqn@avira[1].txt --a---- 347 bytes [07:25 08/10/2009] [07:25 08/10/2009] C4B29563A129097AB810E40DE38FE5F3 C:WindowsSystem32configsystemprofileAppDataRoamingMicrosoftWindowsCookiesstoqn@www.avira[2].txt --a---- 86 bytes [07:24 08/10/2009] [07:24 08/10/2009] B1817F74641C3BB7C26AED1101243A2B C:WindowsSystem32configsystemprofileAppDataRoamingMicrosoftWindowsCookiesstoqn@www.avira[3].txt --a---- 73 bytes [07:25 08/10/2009] [07:25 08/10/2009] 06CD356CD700CE21258BC049671023F9 ========== folderfind ========== Searching for "*Avira*" C:Program FilesAvira d------ [12:39 29/09/2009] C:ProgramDataAvira d------ [12:39 29/09/2009] C:UsersAll UsersAvira d------ [12:39 29/09/2009] ========== regfind ========== Searching for "*Avira*" No data found. -= EOF =-
  8. merimeri

    Болен компютър .

    Avira RegistryCleaner не беше архивирана и не ще да тръгне
  9. merimeri

    Болен компютър .

    Malwarebytes Anti-Malware 1.70.0.1100 www.malwarebytes.org Версия на базата от данни: v2012.12.29.07 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 9.0.8112.16421 Stoqn :: BANDERAS [администратор] 29.12.2012 г. 16:31 ч. mbam-log-2012-12-29 (16-31-37).txt Тип сканиране: Пълно сканиране (C:|D:|E:|G:|) Включени опции за сканиране: Памет | Автоматично зареждане | Системен регистър | Файлова система | Евристики/Допълнителни | Евристики/Shuriken | PUP | PUM Изключени опции за сканиране: P2P Сканирани обекти: 340667 Изминало време: 1 час(а), 4 минута(и), 47 секунда(и) Открити процеси в паметта: 0 (Не бяха открити зловредни обекти) Открити модули в паметта: 0 (Не бяха открити зловредни обекти) Открити ключове в системния регистър: 0 (Не бяха открити зловредни обекти) Открити стойности в системния регистър: 0 (Не бяха открити зловредни обекти) Открити информационни обекти в системния регистър: 0 (Не бяха открити зловредни обекти) Открити папки: 0 (Не бяха открити зловредни обекти) Открити файлове: 0 (Не бяха открити зловредни обекти) (край) Авира още си стои при програмите с разперения чадър
  10. merimeri

    Болен компютър .

    Свирещите ги няма ...браузера се оправи ей тия 2-те постоянно се подават и мн дразнят искам насоки да ги премахна завинаги ' Firefox попречи на автоматичното пренасочване на страницата ' ( сори за мъглата , която ги е покрила ) и ' Windows e блокирала някои програми за стартиране '
  11. merimeri

    Болен компютър .

    ComboFix 12-12-29.02 - Stoqn 12.2012 г. 14:17:18.9.2 - x86 Microsoft® Windows Vista™ Ultimate 6.0.6002.2.1251.359.1033.18.2046.1122 [GMT 2:00] Running from: d:desktopComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((( Files Created from 2012-11-28 to 2012-12-29 ))))))))))))))))))))))))))))))) . . 2012-12-29 12:40 . 2012-12-29 12:40 -------- d-----w- c:usersPublicAppDataLocaltemp 2012-12-29 12:40 . 2012-12-29 12:40 -------- d-----w- c:usersDefaultAppDataLocaltemp 2012-12-27 06:51 . 2012-12-29 12:40 -------- d-----w- c:usersStoqnAppDataLocaltemp 2012-12-20 21:27 . 2012-12-16 13:12 34304 ----a-w- c:windowssystem32atmlib.dll 2012-12-20 21:27 . 2012-12-16 10:50 293376 ----a-w- c:windowssystem32atmfd.dll 2012-12-20 21:01 . 2012-12-20 21:01 54016 ----a-w- c:windowssystem32driversbgdgk.sys 2012-12-20 17:21 . 2012-12-20 17:21 -------- d-----w- C:found.000 2012-12-13 01:04 . 2012-07-26 02:46 9728 ----a-w- c:windowssystem32Wdfres.dll 2012-12-13 01:04 . 2012-07-26 02:33 66560 ----a-w- c:windowssystem32driversWUDFPf.sys 2012-12-13 01:04 . 2012-07-26 02:32 155136 ----a-w- c:windowssystem32driversWUDFRd.sys 2012-12-13 01:04 . 2009-07-14 12:12 16896 ----a-w- c:windowssystem32winusb.dll 2012-12-13 01:04 . 2012-07-26 03:20 73216 ----a-w- c:windowssystem32WUDFSvc.dll 2012-12-13 01:04 . 2012-07-26 03:20 172032 ----a-w- c:windowssystem32WUDFPlatform.dll 2012-12-13 01:04 . 2012-07-26 03:39 47720 ----a-w- c:windowssystem32driversWdfLdr.sys 2012-12-13 01:04 . 2012-07-26 03:39 526952 ----a-w- c:windowssystem32driversWdf01000.sys 2012-12-13 01:04 . 2012-07-26 03:20 38912 ----a-w- c:windowssystem32WUDFCoinstaller.dll 2012-12-13 01:04 . 2012-07-26 03:21 196608 ----a-w- c:windowssystem32WUDFHost.exe 2012-12-13 01:04 . 2012-07-26 03:20 613888 ----a-w- c:windowssystem32WUDFx.dll 2012-12-12 05:59 . 2012-11-13 01:36 2048000 ----a-w- c:windowssystem32win32k.sys 2012-12-12 05:59 . 2012-11-02 10:18 376320 ----a-w- c:windowssystem32dpnet.dll 2012-12-12 05:59 . 2012-11-02 08:26 23040 ----a-w- c:windowssystem32dpnsvr.exe 2012-12-12 05:59 . 2012-08-21 11:47 224640 ----a-w- c:windowssystem32driversvolsnap.sys 2012-12-12 05:59 . 2012-11-13 01:29 2048 ----a-w- c:windowssystem32tzres.dll 2012-12-10 17:06 . 2012-12-10 17:06 -------- d-----w- c:usersPublicThunder Network 2012-12-10 17:06 . 2012-12-10 17:06 -------- d-----w- c:programdataThunder Network . . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-12-11 18:44 . 2012-07-06 14:43 73656 ----a-w- c:windowssystem32FlashPlayerCPLApp.cpl 2012-12-11 18:44 . 2012-07-06 14:43 697272 ----a-w- c:windowssystem32FlashPlayerApp.exe 2012-11-18 17:35 . 2012-11-18 17:33 723294 ----a-w- c:windowsunins000.exe 2012-10-30 22:51 . 2012-01-27 13:14 361032 ----a-w- c:windowssystem32driversaswSP.sys 2012-10-30 22:51 . 2012-01-27 13:14 54232 ----a-w- c:windowssystem32driversaswTdi.sys 2012-10-30 22:51 . 2012-01-27 13:14 35928 ----a-w- c:windowssystem32driversaswRdr.sys 2012-10-30 22:51 . 2012-01-27 13:14 738504 ----a-w- c:windowssystem32driversaswSnx.sys 2012-10-30 22:51 . 2012-01-27 13:14 58680 ----a-w- c:windowssystem32driversaswMonFlt.sys 2012-10-30 22:51 . 2012-08-22 20:51 20624 ----a-w- c:windowssystem32driversaswKbd.sys 2012-10-30 22:51 . 2012-01-27 13:14 21256 ----a-w- c:windowssystem32driversaswFsBlk.sys 2012-10-30 22:51 . 2012-01-27 13:14 41224 ----a-w- c:windowsavastSS.scr 2012-10-30 22:50 . 2012-01-27 13:14 227648 ----a-w- c:windowssystem32aswBoot.exe 2011-12-21 07:38 . 2012-07-09 08:52 121816 ----a-w- c:program filesmozilla firefoxcomponentsbrowsercomps.dll . . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionexplorershelliconoverlayidentifiers00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOTCLSID{472083B0-C522-11CF-8763-00608CC02F24}] 2012-10-30 22:50 121528 ----a-w- c:program filesAVAST SoftwareAvastashShell.dll . [HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionRun] "Sidebar"="c:program filesWindows Sidebarsidebar.exe" [2009-04-11 1233920] "ehTray.exe"="c:windowsehomeehTray.exe" [2008-01-21 125952] "swg"="c:program filesGoogleGoogleToolbarNotifierGoogleToolbarNotifier.exe" [2009-02-14 39408] . [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun] "HControlUser"="c:program filesATK HotkeyHcontrolUser.exe" [2008-01-11 98304] "ATKOSD2"="c:program filesATKOSD2ATKOSD2.exe" [2008-01-23 7766016] "RtHDVCpl"="RtHDVCpl.exe" [2008-07-16 6253088] "SynTPEnh"="c:program filesSynapticsSynTPSynTPEnh.exe" [2007-12-07 1029416] "StartCCC"="c:program filesATI TechnologiesATI.ACECore-StaticCLIStart.exe" [2008-01-21 61440] "QuickTime Task"="c:program filesQuickTimeqttask.exe" [2009-01-26 155648] "Malwarebytes Anti-Malware (reboot)"="c:program filesMalwarebytes' Anti-Malwarembam.exe" [2012-09-29 981656] "Skytel"="Skytel.exe" [2008-07-16 1833504] "TrueImageMonitor.exe"="c:program filesAcronisTrueImageHomeTrueImageMonitor.exe" [2009-06-22 4355464] "AcronisTimounterMonitor"="c:program filesAcronisTrueImageHomeTimounterMonitor.exe" [2009-06-22 960568] "Acronis Scheduler2 Service"="c:program filesCommon FilesAcronisSchedule2schedhlp.exe" [2009-06-22 377248] "avast"="c:program filesAVAST SoftwareAvastavastUI.exe" [2012-10-30 4297136] . c:usersStoqnAppDataRoamingMicrosoftWindowsStart MenuProgramsStartup Adobe Media Player.lnk - c:program filesAdobe Media PlayerAdobe Media Player.exe [N/A] CCC.lnk - c:program filesATI TechnologiesATI.ACECore-StaticCCC.exe [2007-7-17 49152] OneNote 2007 Screen Clipper and Launcher.lnk - c:program filesMicrosoft OfficeOffice12ONENOTEM.EXE [2006-10-26 98632] . c:programdataMicrosoftWindowsStart MenuProgramsStartup FlexType 2K.lnk - c:program filesDatecsFlexType 2KFType2K.exe [2009-1-21 95232] . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversionpoliciessystem] "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSafeBootMinimalWudfSvc] @="Service" . [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregDAEMON Tools Lite] 2008-04-01 09:39 486856 ----a-w- c:program filesDAEMON Tools Litedaemon.exe . [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregGrooveMonitor] 2006-10-26 22:47 31016 ----a-w- c:program filesMicrosoft OfficeOffice12GrooveMonitor.exe . [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregLanguageShortcut] 2007-03-14 19:01 54832 ------w- c:program filesCyberLinkPowerDVDLanguageLanguage.exe . [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregRemoteControl] 2007-03-14 19:01 71216 ------w- c:program filesCyberLinkPowerDVDPDVDServ.exe . [HKEY_LOCAL_MACHINEsoftwaremicrosoftshared toolsmsconfigstartupregSkype] 2012-02-15 11:35 17146504 ----a-r- c:program filesSkypePhoneSkype.exe . [HKEY_LOCAL_MACHINEsoftwaremicrosoftsecurity centerSvcS-1-5-21-779763210-2148633512-2635204508-1000] "EnableNotificationsRef"=dword:00000001 . [HKEY_LOCAL_MACHINEsoftwaremicrosoftwindows ntcurrentversionsvchost] LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache bthsvcs REG_MULTI_SZ BthServ . Contents of the 'Scheduled Tasks' folder . 2012-12-29 c:windowsTasksAdobe Flash Player Updater.job - c:windowssystem32MacromedFlashFlashPlayerUpdateService.exe [2012-07-06 18:44] . 2012-12-29 c:windowsTasksGoogleUpdateTaskMachineCore.job - c:program filesGoogleUpdateGoogleUpdate.exe [2009-02-14 12:10] . 2012-12-29 c:windowsTasksGoogleUpdateTaskMachineUA.job - c:program filesGoogleUpdateGoogleUpdate.exe [2009-02-14 12:10] . 2012-12-28 c:windowsTasksParetoLogic Registration.job - c:program filesCommon FilesParetoLogicUUS2UUS.dll [2009-01-13 14:59] . 2011-08-10 c:windowsTasksParetoLogic Update Version2.job - c:program filesCommon FilesParetoLogicUUS2Pareto_Update.exe [2009-01-13 14:59] . . ------- Supplementary Scan ------- . uStart Page = hxxp://www.google.com mStart Page = hxxp://www.google.com uInternet Settings,ProxyOverride = plimus.com;www.plimus.com;regnow.com;www.regnow.com IE: E&xport to Microsoft Excel - c:progra~1MICROS~2Office12EXCEL.EXE/3000 IE: {{807DF5E0-4EF7-48a8-A405-239F3E29FFA9} - {FE69C007-C452-4d3e-86D2-1730DF8BC871} - Trusted Zone: corpbank.bgrbweb TCP: DhcpNameServer = 46.40.72.9 192.168.0.1 FF - ProfilePath - c:usersStoqnAppDataRoamingMozillaFirefoxProfilesrftsd1zx.default FF - ExtSQL: 2012-11-18 19:34; {E71B541F-5E72-5555-A47C-E47863195841}; c:usersStoqnAppDataRoamingMozillaFirefoxProfilesrftsd1zx.defaultextensions{E71B541F-5E72-5555-A47C-E47863195841} FF - ExtSQL: !HIDDEN! 2012-07-07 13:04; {20a82645-c095-46ed-80e3-08825760534b}; c:windowsMicrosoft.NETFrameworkv3.5Windows Presentation FoundationDotNetAssistantExtension . - - - - ORPHANS REMOVED - - - - . SafeBoot-04738948.sys SafeBoot-31607166.sys SafeBoot-45815736.sys SafeBoot-74417032.sys SafeBoot-87120806.sys . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2012-12-29 14:40 Windows 6.0.6002 Service Pack 2 NTFS . scanning hidden processes ... . scanning hidden autostart entries ... . scanning hidden files ... . . c:usersStoqnAppDataLocalTempcatchme.dll 53248 bytes executable C:avast! sandbox . scan completed successfully hidden files: 2 . ************************************************************************** . [HKEY_LOCAL_MACHINESYSTEMControlSet001Services{95808DC4-FA4A-4C74-92FE-5B863F82066B}] "ImagePath"="??c:program filesCyberLinkPowerDVD000.fcl" . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4D36E96D-E325-11CE-BFC1-08002BE10318}0000AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 "MSCurrentCountry"=dword:000000b5 . [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4D36E96D-E325-11CE-BFC1-08002BE10318}0001AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4D36E96D-E325-11CE-BFC1-08002BE10318}0002AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4D36E96D-E325-11CE-BFC1-08002BE10318}0003AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINESYSTEMControlSet001ControlClass{4D36E96D-E325-11CE-BFC1-08002BE10318}0004AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . --------------------- DLLs Loaded Under Running Processes --------------------- . - - - - - - - > 'Explorer.exe'(4284) c:windowssystem32ieframe.dll c:windowssystem32pnidui.dll c:windowsSystem32SyncCenter.dll . Completion time: 2012-12-29 14:43:19 ComboFix-quarantined-files.txt 2012-12-29 12:43 ComboFix2.txt 2012-12-27 08:27 ComboFix3.txt 2012-12-25 20:02 ComboFix4.txt 2012-11-18 09:21 ComboFix5.txt 2012-12-28 17:11 . Pre-Run: 66 224 095 232 bytes free Post-Run: 66 169 995 264 bytes free . - - End Of File - - FB9A10F6212CF4C6B6A1BE89F1CC6898
  12. merimeri

    Болен компютър .

    # AdwCleaner v2.103 - Logfile created 12/29/2012 at 13:44:20 # Updated 25/12/2012 by Xplode # Operating system : Windows Vista Ultimate Service Pack 2 (32 bits) # User : Stoqn - BANDERAS # Boot Mode : Normal # Running from : D:Desktopadwcleaner.exe # Option [Delete] ***** [services] ***** ***** [Files / Folders] ***** File Deleted : C:UsersStoqnAppDataRoamingMozillaFirefoxProfilesrftsd1zx.defaultbprotector_extensions.sqlite File Deleted : C:UsersStoqnAppDataRoamingMozillaFirefoxProfilesrftsd1zx.defaultbprotector_prefs.js File Deleted : C:UsersStoqnAppDataRoamingMozillaFirefoxProfilesrftsd1zx.defaultsearchpluginsmngr.xml File Deleted : C:UsersStoqnAppDataRoamingMozillaFirefoxProfilesrftsd1zx.defaultsearchpluginsmy-web-search.xml Folder Deleted : C:ProgramDataBrowser Manager ***** [Registry] ***** Key Deleted : HKCUSoftwaref0dad8e63aee15 Key Deleted : HKCUSoftwareMicrosoftWindowsCurrentVersionApp ManagementARPCache{E55E7026-EF2A-4A17-AAA7-DB98EA3FD1B1} Key Deleted : HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} Key Deleted : HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E} Key Deleted : HKLMSOFTWAREClassesCLSID{13119113-0854-469D-807A-171568457991} Key Deleted : HKLMSOFTWAREClassesCLSID{33119133-0854-469D-807A-171568457991} Key Deleted : HKLMSOFTWAREClassesInterface{23119123-0854-469D-807A-171568457991} Key Deleted : HKLMSOFTWAREClassesTypeLib{03119103-0854-469D-807A-171568457991} Key Deleted : HKLMSOFTWAREf0dad8e63aee15 Key Deleted : HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall504244733D18C8F63FF584AEB290E3904E791693 Value Deleted : HKCUSoftwareMozillaFirefoxextensions [{58BD07EB-0EE0-4DF0-8121-DC9B693373DF}] ***** [internet Browsers] ***** - Internet Explorer v9.0.8112.16457 [OK] Registry is clean. - Mozilla Firefox v9.0.1 (bg) File : C:UsersStoqnAppDataRoamingMozillaFirefoxProfilesrftsd1zx.defaultprefs.js Deleted : user_pref("browser.search.defaultenginename", "My Web Search"); Deleted : user_pref("browser.search.selectedEngine", "My Web Search"); Deleted : user_pref("browser.startup.homepage", "hxxp://home.mywebsearch.com/index.jhtml?ptb=8088E791-FBDD-443[...] Deleted : user_pref("extensions.mywebsearch.prevKwdEnabled", true); Deleted : user_pref("extensions.mywebsearch.prevKwdURL", "hxxp://search.mywebsearch.com/mywebsearch/GGmain.jht[...] Deleted : user_pref("extensions.mywebsearch.prevSelectedEngine", "Google"); Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.homepage", "hxxp://home.mywebsearch.com/index.jh[...] Deleted : user_pref("keyword.URL", "hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?st=kwd&ptb=8088E791[...] - Google Chrome v23.0.1271.97 File : C:UsersStoqnAppDataLocalGoogleChromeUser DataDefaultPreferences [OK] File is clean. ************************* AdwCleaner[s1].txt - [389 octets] - [14/11/2012 21:02:00] AdwCleaner[s2].txt - [32602 octets] - [14/11/2012 21:13:59] AdwCleaner[s3].txt - [13528 octets] - [19/11/2012 08:52:57] AdwCleaner[s4].txt - [3216 octets] - [29/12/2012 13:44:20] ########## EOF - C:AdwCleaner[s4].txt - [3276 octets] ########## ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 4.2.9 (12.28.2012:1) OS: Windows Vista Ultimate x86 Ran by Stoqn on съб 29.12.2012 г. at 13:51:51,74 Blog: http://thisisudax.blogspot.com ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:ProgramDatadrivercure" Successfully deleted: [Folder] "C:UsersStoqnAppDataRoamingdrivercure" Successfully deleted: [Folder] "C:UsersStoqnappdatalocalvideodownloadconverter_4z" Successfully deleted: [Folder] "C:UsersStoqnappdatalocallowvideodownloadconverter_4z" Successfully deleted: [Folder] "C:Program Filesvideodownloadconverter_4z" ~~~ FireFox Successfully deleted: [File] C:UsersStoqnAppDataRoamingmozillafirefoxprofilesrftsd1zx.defaultinvalidprefs.js Successfully deleted: [Folder] C:UsersStoqnAppDataRoamingmozillafirefoxprofilesrftsd1zx.defaultextensions4zffxtbr@videodownloadconverter_4z.com Successfully deleted: [Registry Value] hkey_local_machinesoftwaremozillafirefoxextensions4zffxtbr@videodownloadconverter_4z.com Successfully deleted the following from C:UsersStoqnAppDataRoamingmozillafirefoxprofilesrftsd1zx.defaultprefs.js user_pref("extensions.mywebsearch.prevKwdEnabled", true); user_pref("extensions.toolbar.mindspark._4zMembers_.hp.enabled", true); user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", ""); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2012122912"); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xdm007^YY^bg"); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "CNWm6eb_obQCFUpb3godIy0ALw"); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", true); user_pref("extensions.toolbar.mindspark._4zMembers_.installation.toolbarId", "8088E791-FBDD-4439-B297-0194823105EB"); user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1356778346235"); user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", true); user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", true); user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", true); user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", true); user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001"); user_pref("extensions.toolbar.mindspark.hp.enabled", true); user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "videodownloadconverter@mindspark.com"); user_pref("extensions.toolbar.mindspark.lastInstalled", "videodownloadconverter@mindspark.com"); user_pref("keyword.URL", "http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?st=kwd&ptb=8088E791-FBDD-4439-B297-0194823105EB&n=77ee8f20&ind=2012122912&p2=^HJ^xdm007^YY^bg& ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on съб 29.12.2012 г. at 13:55:08,53 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  13. merimeri

    Болен компютър .

    Давам вече 3 пъти , спира програмата и пише , че не отговаря да продължавам ли оффф най -после All processes killed ========== FILES ========== FileFolder C:Program FilesVideoDownloadConverter_4zbar2.bin4zbarsvc.exe not found. FileFolder C:Program FilesAviraAntiVir Desktopavguard.exe not found. FileFolder C:Program FilesAviraAntiVir Desktopsched.exe not found. FileFolder C:WindowsSystem32driversssmdrv.sys not found. FileFolder C:WindowsSystem32driversavipbb.sys not found. FileFolder C:Program FilesAviraAntiVir Desktopavgio.sys not found. recycler not found in C: recycler not found in D: < ipconfig /flushdns /c > Windows IP Configuration Successfully flushed the DNS Resolver Cache. D:Desktopcmd.bat deleted successfully. D:Desktopcmd.txt deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Public ->Temp folder emptied: 0 bytes User: Stoqn ->Temp folder emptied: 40006 bytes ->Temporary Internet Files folder emptied: 33170 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 26558289 bytes ->Google Chrome cache emptied: 0 bytes ->Flash cache emptied: 492 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%System32 .tmp files removed: 0 bytes %systemroot%System32drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes %systemroot%system32configsystemprofileLocal SettingsTemporary Internet Files folder emptied: 0 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 25,00 mb Restore point Set: OTL Restore Point OTL by OldTimer - Version 3.2.69.0 log created on 12292012_132005 FilesFolders moved on Reboot... PendingFileRenameOperations files... Registry entries deleted on Reboot...
  14. merimeri

    Болен компютър .

    Браузера пак се промени стана на - mywebsearch винаги когато се разваля става така ....настанява се това нещо ..как да се оттърва от него
  • Разглеждащи това в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

×

Информация

Поставихме бисквитки на устройството ви за най-добро потребителско изживяване. Можете да промените настройките си за бисквитки, или в противен случай приемаме, че сте съгласни с нашите условия за ползване.