Премини към съдържанието
Форумът в приложение

По-лесно сърфиране. Научи повече.

Kaldata.com - Форуми

Приложение на форума на цял екран с push известия, значки и други.

За да инсталирате това приложение на iOS и iPadOS
  1. Докоснете Иконата за споделяне в Safari
  2. Превъртете менюто и докоснете Добавяне към началния екран.
  3. Докоснете Добавяне в горния десен ъгъл.
За да инсталирате това приложение на Android
  1. Докоснете менюто с 3 точки (⋮) в горния десен ъгъл на браузъра.
  2. Докоснете Добавяне към началния екран или Инсталиране на приложение.
  3. Потвърдете, като докоснете Инсталиране.

Добре дошли!

Добре дошли в нашите форуми, пълни с полезна информация. Имате проблем с компютъра или телефона си? Публикувайте нова тема и ще намерите решение на всичките си проблеми. Общувайте свободно и открийте безброй нови приятели.

Моля, регистрирайте се за да публикувате тема и да получите пълен достъп до всички функции.

 

Много бавно се зареждат сайтове съдържащи флаш.

Featured Replies

Здравейте,

 

имам следния проблем от няколко дена - страшно бавно ми отваря страници, които съдържат флаш, примерно спортал.бг и други . Просто като се отвори страницата и забива и отварянето на който и да е линк отново води за кратко замръзване на браузъра. Ползвам Chrome. Другото, което забелязах е наличието на съмнително процеси в Task Manager-a , които не могат да бъдат спрени, дава ми грешката : The operation could not be completed. Access is denied. 

Ето имената на тези процеси:

ATKOSD.exe

WDC.exe

KBfiltr.exe

HControl.exe

conhost.exe

wisptis.exe

InsOnWMI.exe

nvvsvc.exe

nvsstreamsvc.exe

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-11-2014
Ran by Ivan Georgiev (administrator) on IVANGEORGIEV-PC on 17-11-2014 23:52:09
Running from C:\Users\Ivan Georgiev\Desktop
Loaded Profile: Ivan Georgiev (Available profiles: Ivan Georgiev)
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
(Solid Documents, LLC) C:\Program Files (x86)\SolidDocuments\Solid Converter PDF\SCPDF\SolidConverterPDFServicex64.exe
(ClientConnect Ltd.) C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
(Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(ASUS) C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
() C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Akamai Technologies, Inc.) C:\Users\Ivan Georgiev\AppData\Local\Akamai\netsession_win.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDGesture.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(ASUS) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Dropbox, Inc.) C:\Users\Ivan Georgiev\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(ASUS) C:\Windows\AsScrPro.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Alexander Roshal) C:\Program Files\WinRAR\WinRAR.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\WINWORD.EXE
(Microsoft Corporation) C:\Windows\splwow64.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Alexander Roshal) C:\Program Files\WinRAR\WinRAR.exe
(Microsoft Corporation) C:\Windows\System32\calc.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2661672 2012-02-19] (ELAN Microelectronics Corp.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2461504 2014-09-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-07] (Intel Corporation)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2319536 2011-10-18] (ASUS)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322208 2012-06-25] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174752 2012-06-19] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [avast] => C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.)
HKLM-x32\...\Run: [MobileBroadband] => C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe [253952 2010-07-28] (Vodafone)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [807696 2013-12-20] (BlueStack Systems, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [369200 2009-10-30] (DT Soft Ltd)
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\Run: [Facebook Update] => C:\Users\Ivan Georgiev\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-09-16] (Facebook Inc.)
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22869088 2014-10-21] (Google)
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Ivan Georgiev\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\Run: [BackgroundContainerV2] => "C:\Windows\SysWOW64\Rundll32.exe" "C:\Users\Ivan Georgiev\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll",DllRun
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.)
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\Run: [Spotify] => C:\Users\Ivan Georgiev\AppData\Roaming\Spotify\Spotify.exe [6553144 2014-11-05] (Spotify Ltd)
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\Run: [Spotify Web Helper] => C:\Users\Ivan Georgiev\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-11-05] (Spotify Ltd)
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\MountPoints2: {4a524a5f-fc00-11e1-bd62-806e6f6e6963} - F:\InstAll.exe
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\MountPoints2: {87178c95-52ce-11e2-a105-10bf480f496a} - I:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\MountPoints2: {c0576d2b-4237-11e3-9d7c-10bf480f496a} - I:\setup_vmb_lite.exe /checkApplicationPresence
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\...\MountPoints2: {fcead55c-58ef-11e2-8319-10bf480f496a} - I:\HTC_Sync_Manager_PC.exe
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [174856 2014-09-14] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [156840 2014-09-14] (NVIDIA Corporation)
Startup: C:\Users\Ivan Georgiev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Ivan Georgiev\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA1F71A6F085ACE01
HKU\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = bg-BG
URLSearchHook: HKLM-x32 - uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Users\Ivan Georgiev\AppData\LocalLow\uTorrentControl_v2\prxtbuTo0.dll (ClientConnect Ltd.)
URLSearchHook: HKCU - uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Users\Ivan Georgiev\AppData\LocalLow\uTorrentControl_v2\prxtbuTo0.dll (ClientConnect Ltd.)
SearchScopes: HKU\S-1-5-21-4109598628-3443817014-4277544927-1000 -> {99E27757-0095-4546-80D6-629FB9B55864} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3220468
BHO: avast! WebRep -> {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: uTorrentControl_v2 Toolbar -> {7473b6bd-4691-4744-a82b-7854eb3d70b6} -> C:\Users\Ivan Georgiev\AppData\LocalLow\uTorrentControl_v2\prxtbuTo0.dll (ClientConnect Ltd.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! WebRep -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - uTorrentControl_v2 Toolbar - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Users\Ivan Georgiev\AppData\LocalLow\uTorrentControl_v2\prxtbuTo0.dll (ClientConnect Ltd.)
Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKU\S-1-5-21-4109598628-3443817014-4277544927-1000 -> No Name - {7473B6BD-4691-4744-A82B-7854EB3D70B6} -  No File
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{437E5D25-1B56-488B-914E-ACA6EDF6F0B5}: [NameServer] 95.111.89.193,89.190.192.247
Tcpip\..\Interfaces\{F39F257A-5446-44D4-9453-98ED320C9625}: [NameServer] 10.250.238.3 10.250.238.4

FireFox:
========
FF ProfilePath: C:\Users\Ivan Georgiev\AppData\Roaming\Mozilla\Firefox\Profiles\llhisx5b.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin HKU\S-1-5-21-4109598628-3443817014-4277544927-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Ivan Georgiev\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKU\S-1-5-21-4109598628-3443817014-4277544927-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Ivan Georgiev\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-4109598628-3443817014-4277544927-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Ivan Georgiev\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npFoxitReaderPlugin.dll (Foxit Software Company)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\911bg.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\diribg.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\pe-bg.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\portalbgdict.xml
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-09-16]

Chrome: 
=======
CHR HomePage: Default -> 
CHR Profile: C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Диск) - C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-05-07]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2014-11-05]
CHR Extension: (Google Wallet) - C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-09]
CHR HKLM-x32\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Users\Ivan Georgiev\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx [2012-08-26]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [277120 2012-02-16] (ASUS)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2013-12-20] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2013-12-20] (BlueStack Systems, Inc.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1149760 2014-09-17] (NVIDIA Corporation)
R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2012-07-16] (Nero AG)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] ()
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-21] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-21] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1796928 2014-09-17] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19440960 2014-09-17] (NVIDIA Corporation)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2012-10-08] () [File not signed]
R2 SCPDFReadSpool; C:\Program Files (x86)\SolidDocuments\Solid Converter PDF\SCPDF\SolidConverterPDFServicex64.exe [193392 2012-10-29] (Solid Documents, LLC)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TBSrv; C:\Program Files (x86)\Tbccint\ToolbarService\ToolbarService.exe [350528 2014-04-10] (ClientConnect Ltd.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2099512 2013-10-30] (TuneUp Software)
R2 VmbService; C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe [9216 2010-07-28] (Vodafone) [File not signed]
S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1255736 2012-09-16] () [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 AiCharger; C:\Windows\SysWOW64\DRIVERS\AiCharger.sys [17152 2012-01-30] (ASUSTek Computer Inc.)
R3 AsusVBus; C:\Windows\System32\DRIVERS\AsusVBus.sys [35968 2011-12-21] (Windows (R) Win 7 DDK provider)
R3 AsusVTouch; C:\Windows\System32\DRIVERS\AsusVTouch.sys [16512 2011-11-07] (Windows (R) Win 7 DDK provider)
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] ()
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [114448 2013-12-20] (BlueStack Systems)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20288 2014-09-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38048 2014-09-04] (NVIDIA Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2012-09-14] () [File not signed]
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software)
S3 ZTEusbwwan; C:\Windows\System32\DRIVERS\ZTEusbwwan.sys [235520 2010-07-28] (ZTE Incorporated)
U3 ap2kyg4f; C:\Windows\System32\Drivers\ap2kyg4f.sys [0 ] (Microsoft Corporation)
S3 ALSysIO; \??\C:\Users\IVANGE~1\AppData\Local\Temp\ALSysIO64.sys [X]
S3 ASUSProcObsrv; \??\F:\I386\AsPrOb64.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-17 23:52 - 2014-11-17 23:52 - 00027259 _____ () C:\Users\Ivan Georgiev\Desktop\FRST.txt
2014-11-17 23:52 - 2014-11-17 23:52 - 00000000 ____D () C:\FRST
2014-11-17 23:51 - 2014-11-17 23:51 - 02117120 _____ (Farbar) C:\Users\Ivan Georgiev\Desktop\FRST64.exe
2014-11-16 21:54 - 2014-11-16 21:54 - 00000000 ____D () C:\Users\Ivan Georgiev\Desktop\DSCN3632
2014-11-16 21:27 - 2014-11-16 21:54 - 253883926 _____ () C:\Users\Ivan Georgiev\Desktop\DSCN3632.zip
2014-11-16 17:49 - 2014-11-16 17:49 - 00000000 ____H () C:\Users\Ivan Georgiev\Desktop\~WRL0388.tmp
2014-11-16 17:46 - 2014-11-16 17:46 - 03119728 _____ () C:\Users\Ivan Georgiev\Downloads\МФМ (1).rar
2014-11-14 00:06 - 2014-11-14 00:06 - 00519680 _____ () C:\Users\Ivan Georgiev\Downloads\External_Data (2).xls
2014-11-14 00:02 - 2014-11-14 00:02 - 00519680 _____ () C:\Users\Ivan Georgiev\Downloads\External_Data (1).xls
2014-11-13 23:45 - 2014-11-13 23:45 - 00519680 _____ () C:\Users\Ivan Georgiev\Downloads\External_Data.xls
2014-11-13 18:24 - 2014-11-14 17:49 - 00001559 _____ () C:\Users\Ivan Georgiev\Desktop\iztochnici.txt
2014-11-12 00:51 - 2014-10-14 04:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 00:51 - 2014-10-14 04:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-12 00:51 - 2014-10-14 04:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 00:51 - 2014-10-14 04:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 00:51 - 2014-10-14 04:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 00:51 - 2014-10-14 03:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-12 00:51 - 2014-10-14 03:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-12 00:51 - 2014-10-14 03:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 00:51 - 2014-10-14 03:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 00:50 - 2014-11-07 21:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 00:50 - 2014-11-07 21:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 00:50 - 2014-11-06 06:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-12 00:50 - 2014-11-06 06:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 00:50 - 2014-11-06 06:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-11-12 00:50 - 2014-11-06 05:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 00:50 - 2014-11-06 05:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 00:50 - 2014-11-06 05:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 00:50 - 2014-11-06 05:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 00:50 - 2014-11-06 05:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 00:50 - 2014-11-06 05:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 00:50 - 2014-11-06 05:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 00:50 - 2014-11-06 05:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 00:50 - 2014-11-06 05:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 00:50 - 2014-11-06 05:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 00:50 - 2014-11-06 05:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 00:50 - 2014-11-06 05:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-12 00:50 - 2014-11-06 05:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 00:50 - 2014-11-06 05:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-11-12 00:50 - 2014-11-06 05:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 00:50 - 2014-11-06 05:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 00:50 - 2014-11-06 05:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 00:50 - 2014-11-06 05:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 00:50 - 2014-11-06 05:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 00:50 - 2014-11-06 05:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 00:50 - 2014-11-06 05:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 00:50 - 2014-11-06 05:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 00:50 - 2014-11-06 05:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 00:50 - 2014-11-06 05:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 00:50 - 2014-11-06 05:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 00:50 - 2014-11-06 05:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 00:50 - 2014-11-06 05:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 00:50 - 2014-11-06 04:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 00:50 - 2014-11-06 04:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 00:50 - 2014-11-06 04:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 00:50 - 2014-11-06 04:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 00:50 - 2014-11-06 04:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 00:50 - 2014-11-06 04:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 00:50 - 2014-11-06 04:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 00:50 - 2014-11-06 04:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-11-12 00:50 - 2014-11-06 04:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 00:50 - 2014-11-06 04:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 00:50 - 2014-11-06 04:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 00:50 - 2014-11-06 04:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 00:50 - 2014-11-06 04:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 00:50 - 2014-11-06 04:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 00:50 - 2014-11-06 04:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 00:50 - 2014-11-06 04:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 00:50 - 2014-11-06 04:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-11-12 00:50 - 2014-11-06 04:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 00:50 - 2014-11-06 04:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 00:50 - 2014-11-06 04:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 00:50 - 2014-11-06 03:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 00:50 - 2014-11-06 03:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 00:50 - 2014-11-06 03:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 00:50 - 2014-11-06 03:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 00:49 - 2014-10-03 04:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 00:49 - 2014-10-03 04:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 00:49 - 2014-10-03 04:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 00:49 - 2014-10-03 04:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 00:49 - 2014-10-03 04:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 00:49 - 2014-10-03 03:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 00:49 - 2014-10-03 03:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 00:49 - 2014-10-03 03:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 00:49 - 2014-09-19 11:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-12 00:49 - 2014-09-19 11:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 00:49 - 2014-09-19 11:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-12 00:49 - 2014-09-19 11:23 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-12 00:49 - 2014-09-19 11:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-12 00:49 - 2014-09-19 11:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 00:49 - 2014-09-19 11:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-12 00:49 - 2014-08-21 08:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 00:49 - 2014-08-21 08:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-12 00:49 - 2014-08-21 08:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 00:49 - 2014-08-21 08:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-12 00:49 - 2014-08-12 04:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-12 00:49 - 2014-08-12 03:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-12 00:48 - 2014-09-19 11:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-12 00:48 - 2014-09-19 11:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-12 00:48 - 2014-09-19 11:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-12 00:48 - 2014-09-19 11:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-12 00:48 - 2014-09-19 11:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-12 00:48 - 2014-09-19 11:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-12 00:48 - 2014-09-19 11:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-12 00:47 - 2014-10-25 03:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 00:47 - 2014-10-25 03:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 00:47 - 2014-10-14 04:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 00:47 - 2014-10-14 03:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 00:47 - 2014-10-10 02:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 00:46 - 2014-10-18 04:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 00:46 - 2014-10-18 03:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-11 23:48 - 2014-11-13 08:42 - 00012255 _____ () C:\Users\Ivan Georgiev\Desktop\CPOBorsi.xlsx
2014-11-11 23:21 - 2014-11-13 23:06 - 00032522 _____ () C:\Users\Ivan Georgiev\Downloads\MCXSpotMarketHistoryPrice (1).csv
2014-11-11 23:02 - 2014-11-11 23:02 - 00019208 _____ () C:\Users\Ivan Georgiev\Downloads\SpotPrice (2).csv
2014-11-11 22:48 - 2014-11-11 22:48 - 00019208 _____ () C:\Users\Ivan Georgiev\Downloads\SpotPrice (1).csv
2014-11-11 22:27 - 2014-11-11 22:27 - 00026166 _____ () C:\Users\Ivan Georgiev\Downloads\MCXSpotMarketHistoryPrice.csv
2014-11-11 21:36 - 2014-11-11 21:36 - 00019208 _____ () C:\Users\Ivan Georgiev\Downloads\SpotPrice.csv
2014-11-10 23:43 - 2014-11-10 23:43 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-10 22:59 - 2014-11-10 22:59 - 00018548 _____ () C:\Users\Ivan Georgiev\Downloads\Guardians of the Galaxy 2014 DVDRip X264 AC3 5.1-PLAYNOW.torrent
2014-11-10 19:40 - 2014-11-10 19:40 - 00000856 _____ () C:\Users\Ivan Georgiev\Downloads\Historical_Data_Quantity.csv
2014-11-08 23:26 - 2014-11-08 23:26 - 00013592 _____ () C:\Users\Ivan Georgiev\Downloads\Pink Floyd - The Endless River [Deluxe Edition] (2014) - SMG.torrent
2014-11-08 22:41 - 2014-11-16 11:10 - 00000000 ____D () C:\Users\Ivan Georgiev\Desktop\mot
2014-11-06 23:51 - 2014-11-06 23:51 - 00000000 _____ () C:\Users\Ivan Georgiev\Desktop\New Text Document (2).txt
2014-11-06 23:23 - 2014-11-06 23:23 - 00006269 _____ () C:\Users\Ivan Georgiev\Downloads\TeamViewer_Setup_bg-ckq (1).exe.torrent
2014-11-06 01:08 - 2014-11-06 01:08 - 00258677 _____ () C:\Users\Ivan Georgiev\Downloads\изтеглен файл (5).htm
2014-11-05 19:28 - 2014-11-05 19:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\АКТ Софт Кирила 2003+
2014-11-05 19:28 - 2014-11-05 19:28 - 00000000 ____D () C:\Program Files (x86)\Cyrilla
2014-11-05 19:26 - 2014-11-05 19:26 - 06084735 _____ () C:\Users\Ivan Georgiev\Downloads\Cyrilla_Correct_2003+.zip
2014-11-05 18:38 - 2014-11-13 17:54 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Local\Spotify
2014-11-05 18:38 - 2014-11-05 18:38 - 00001852 _____ () C:\Users\Ivan Georgiev\Desktop\Spotify.lnk
2014-11-05 18:38 - 2014-11-05 18:38 - 00001838 _____ () C:\Users\Ivan Georgiev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2014-11-05 18:37 - 2014-11-16 22:04 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Roaming\Spotify
2014-11-05 18:37 - 2014-11-05 18:37 - 00137888 _____ (Spotify Ltd) C:\Users\Ivan Georgiev\Downloads\SpotifySetup.exe
2014-11-05 08:44 - 2014-11-05 08:44 - 00000000 ____D () C:\Users\Ivan Georgiev\Desktop\New folder
2014-10-27 20:26 - 2014-10-27 20:26 - 00000450 _____ () C:\Users\Ivan Georgiev\Downloads\url (1).htm
2014-10-27 15:43 - 2014-10-27 15:43 - 00093331 _____ () C:\Users\Ivan Georgiev\Downloads\the.expendables.3.2014.bluray_mexican(subsunacs.net).rar
2014-10-27 15:43 - 2014-10-27 15:43 - 00018551 _____ () C:\Users\Ivan Georgiev\Downloads\The.Expendables.3.2014.BRRip.XviD-WAR.torrent
2014-10-23 13:17 - 2014-10-23 13:17 - 00016259 _____ () C:\Users\Ivan Georgiev\Downloads\mic_gianna_syren_bb052014_480p_1000.mp4.torrent
2014-10-22 14:25 - 2014-10-22 14:25 - 03119728 _____ () C:\Users\Ivan Georgiev\Downloads\МФМ.rar
2014-10-20 21:26 - 2014-10-20 21:26 - 00000000 ____D () C:\Users\Ivan Georgiev\Desktop\new

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-17 23:52 - 2012-10-09 22:48 - 00000998 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-17 23:44 - 2012-09-12 16:06 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Roaming\Skype
2014-11-17 23:08 - 2012-09-16 19:03 - 00000960 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4109598628-3443817014-4277544927-1000UA.job
2014-11-17 23:03 - 2012-09-11 14:18 - 00001040 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4109598628-3443817014-4277544927-1000UA.job
2014-11-17 22:37 - 2009-07-14 06:45 - 00021280 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-17 22:37 - 2009-07-14 06:45 - 00021280 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-17 22:31 - 2012-09-11 13:10 - 01380783 _____ () C:\Windows\WindowsUpdate.log
2014-11-17 22:30 - 2012-09-11 14:14 - 00000380 _____ () C:\Users\Ivan Georgiev\AppData\Roaming\sp_data.sys
2014-11-17 20:37 - 2012-09-16 19:03 - 00000938 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4109598628-3443817014-4277544927-1000Core.job
2014-11-17 20:35 - 2012-10-09 22:48 - 00000994 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-17 20:31 - 2012-09-11 14:18 - 00000988 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4109598628-3443817014-4277544927-1000Core.job
2014-11-17 20:26 - 2012-09-11 13:27 - 00000830 _____ () C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
2014-11-17 00:57 - 2014-01-19 12:12 - 00084661 _____ () C:\Windows\setupact.log
2014-11-16 18:00 - 2014-05-28 12:14 - 00000846 _____ () C:\Users\Ivan Georgiev\Desktop\MLN.txt
2014-11-16 17:09 - 2012-09-12 12:58 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Roaming\vlc
2014-11-16 15:47 - 2012-10-09 22:48 - 00003994 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-11-16 15:47 - 2012-10-09 22:48 - 00003742 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-11-16 13:36 - 2012-09-11 14:20 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Roaming\uTorrent
2014-11-15 22:44 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-11-15 21:05 - 2012-09-14 13:03 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Local\Adobe
2014-11-15 00:37 - 2009-07-14 07:13 - 00782510 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-15 00:35 - 2012-12-31 00:58 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Local\HTC MediaHub
2014-11-15 00:35 - 2012-12-31 00:35 - 00000000 ___RD () C:\Users\Ivan Georgiev\Dropbox
2014-11-15 00:35 - 2012-12-31 00:33 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Roaming\Dropbox
2014-11-15 00:35 - 2012-10-09 22:49 - 00000000 ___RD () C:\Users\Ivan Georgiev\Google Диск
2014-11-15 00:35 - 2012-09-11 14:08 - 00109296 _____ () C:\Users\Ivan Georgiev\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-15 00:34 - 2012-09-11 13:27 - 00000828 _____ () C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
2014-11-14 22:08 - 2009-07-14 06:45 - 05027120 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-14 22:07 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-14 22:06 - 2014-01-20 00:08 - 00397346 _____ () C:\Windows\PFRO.log
2014-11-14 22:06 - 2012-09-20 19:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-14 20:41 - 2012-11-06 19:04 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Local\Akamai
2014-11-14 17:48 - 2012-09-16 16:34 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-11-13 18:01 - 2012-09-15 09:48 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-13 17:58 - 2012-09-11 14:18 - 00004026 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4109598628-3443817014-4277544927-1000UA
2014-11-13 17:58 - 2012-09-11 14:18 - 00003630 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4109598628-3443817014-4277544927-1000Core
2014-11-13 08:50 - 2013-07-20 07:46 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-13 08:42 - 2012-09-16 22:30 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-12 00:27 - 2014-07-17 16:21 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak
2014-11-07 00:36 - 2013-02-15 11:40 - 00001102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 8.lnk
2014-11-05 19:49 - 2012-09-11 14:08 - 00002048 _____ () C:\Windows\system32\AutoRunFilter.ini
2014-11-05 19:47 - 2012-09-11 13:26 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-05 08:36 - 2012-10-09 22:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-10-30 21:38 - 2014-08-12 17:37 - 00001637 _____ () C:\Users\Ivan Georgiev\Desktop\New Text Document.txt
2014-10-28 06:34 - 2010-11-21 05:27 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-10-22 23:05 - 2014-09-29 14:15 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Local\NVIDIA Corporation
2014-10-22 23:05 - 2014-09-29 14:15 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Local\NVIDIA
2014-10-22 18:47 - 2012-09-14 12:54 - 00000000 ____D () C:\Users\Ivan Georgiev\AppData\Roaming\FileZilla
2014-10-21 23:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\bg-BG
2014-10-21 23:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\bg-BG

Some content of TEMP:
====================
C:\Users\Ivan Georgiev\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp6i_itg.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-15 22:37

==================== End Of Log ============================

Мерси!

Редактирано от Gr1zzlord (преглед на промените)

Здравейте..! :)

 
Моля, изтеглете ZOEK (by Smeenk) и да го запишете на вашия работен плот
Временно деактивирайте вашата антивирусна и антишпионска защита - инструкции тук

  • Щракнете с десния бутон върху тази икона  51a612a8b27e2-Zoek.pngи изберете RunAsAdmin.jpg Run as Administrator, за да стартирате инструмента.
  • Изчакайте търпеливо, докато  се появи  главната конзола (може да отнеме минута или две).

52b6de58f1952-Zoek_Startpagina_5.0.0.0.P

  • В главния прозорец, моля поставете в следния скрипт:

createsrpoint;
autoclean;
emptyalltemp;

  • Уверете се, че  опцията Scan All Users е маркирана.
  • Натиснете Run Script и изчакайте. Сканирането може да отнеме няколко минути.
  • Когато сканирането приключи, ще се отвори лог файл с име zoek-results.
  • Ако е необходимо рестартиране, той ще се отвори след това.
  • Копирайте съдържанието му в следващия си отговор.

 

 

adwcleaner_new.png Сканиране с AdwCleaner
 
Моля, изтеглете и стартирайте програмата AdwCleaner (by Xplode):

  • Затворете всички стартирани програми и браузъри
  • Кликнете два пъти върху adwcleaner.exe за да стартирате инструмента.
  • Натиснете OK, за да потвърдите, че всички стартирани програми ще бъдат затворени.
  • Маркирайте Clean
  • Вашият компютър ще се рестартира автоматично. Текстовия файл ще се отвори след рестарта.
  • Моля, да публикувате съдържанието на този лог в отговора си
  • Можете да намерите лога,който автоматично се запомня тук C:AdwCleaner[s0].txt

 

 

JRTbythisisu.png Сканиране с Junkware Removal Tool
 
Моля, изтеглете Junkware Removal Tool (by Thisisu ) и запазете на вашия десктоп.

  • Спрете временно работата на защитните програми.
  • Стартирайте инструмента JRT.exe
  • Ще се отвори ДОС прозорец. Натиснете което и да е копче от клавиатурата.
  • Затворете излишните приложения и всички браузъри и изчакайте проверката да завърши.
  • Ще се появи лог файл (който можете да намерите и ръчно на десктопа с името JRT.txt).
  • Моля копирайте съдържанието на лог файла в следващия си пост.

 

 

GUZVCQN.jpg  Моля, изтеглете Malwarebytes Anti -Malware и го запомнете на вашия работен плот .
  Кликнете два пъти върху mbam-setup-consumer-2.0.0.1хххх.exe и следвайте инструкциите, за да инсталирате програмата .

  • В секцията Settings = > Detection and Protection => Detection Options, се поставя отметка в квадратчето 'Scan for rootkits'.

MBAMsettings.JPG

  • В главния прозорец на програмата , щракнете върху 'Update Now'
  • След актуализацията завърши, кликнете на бутона " 'Scan Now  " .
  • Ако има налична актуализация , щракнете върху бутона Update Now button .
  • Ще стартира Threat Scan.
  • Когато сканирането приключи, ако има някакви открити зарази , щракнете върху Apply Actions за да се позволи на Mbam да почисти засеченото. .

MBAMReboot.JPG

  •   След рестарта ,стартирайте Mbam още веднъж.
  •   Кликнете на History tab > Application Logs .
  •   Кликнете два пъти върху реда , който показва датата и часа на сканирането или View Detailed Log .
  •   Кликнете върху " Copy да Clipboard "

MBAMLog.JPG

  •   Поставете  съдържанието на клипборда в следващия си  отговор.

 

 

icon1348768721.jpg  Изтеглете Security Check (автор: screen317) от тук

  • Кликнете два пъти върху SecurityCheck.exe и следвайте инструкциите.
  • Когато програмата завърши работата си, ще се отвори един текстов документ: checkup.txt.
  • Копирайте съдържанието на checkup.txt с Копирай (Copy) и с Постави (Paste) го поставете в следващия си коментар.

 

 

xpfNZP4A.png.pagespeed.ic.bp5cRl1pJg.jpg  Дневници
 
В следващия си отговор, моля да включите следните дневници:

  • zoek-results
  • Дневник от Malwarebytes Anti -Malware
  • JRT.txt
  • AdwCleaner[s0].txt
  • checkup.txt
  • Автор

Здравейте, 

 

благодаря за отговора. За жалост възникнаха проблеми още от началото - не мога да изтегля програмата ZOEK, като тръгна да я тегли ми изписва " Не бе успешно - грешка в мрежата" . Пробвах да изтегля и зип и рар файла, но пак същото, през мозила пак не успявам.

Здравейте.. Линка работи и аз изтеглям програмата коректно..!Спрете изпълнението на всички инструкции и направете следното:

 

51a5bf3d99e8a-ComboFixlogo16.png Сканиране с ComboFix

 

i_arrow-r.gif Изтеглете ComboFix combofix.gif от тук и го запазете на десктопа си.
How to use ComboFix
icon_exclaim.gif Изключете вашата антивирусна и антишпионска програма, обикновено това става чрез натискане на десния бутон на мишката върху иконата на програма в системния трей.
Бележка: Ако не можете я спрете или не сте сигурни коя програма да изключите, моля прегледайте информацията от този линк: How to disable your security applications by amateur
icon_arrow.gif Стартирайте Combo-Fix.com combofix.gif и следвайте инструкциите.
Когато процесът приключи успешно, инструментът ще създаде лог файл. Моля, включете съдържанието на C:ComboFix.txt в следващия Ви коментар в тази тема.
i_exclaim.gif Моля, не прикачвайте лог файла/овете от програмата, а го/ги копирайте и поставете в следващия Ви коментар в тази тема.

 

 

xpfNZP4A.png.pagespeed.ic.bp5cRl1pJg.jpg  Дневници

 

В следващия си отговор, моля да включите следните дневници:

 

  • ComboFix.txt
  • Автор

Същата работа..и него не мога да изтегля

 

п.с. Като пробвам да изтегля например торент файл става. С .рар файл качен във ФБ също стана.

Редактирано от Gr1zzlord (преглед на промените)

И в двата случая трябва временно да спрете защитата си в реално време - временно...Правите ли го..?

  • Автор

Охх не. Съжалявам. Помислих, че след като ги изтегля преди да ги стартирам трябва да го направя. Сега стана. Ще започна със стъпките от първия коментар.

  • Автор

Така направих всичко:


Zoek.exe v5.0.0.0 Updated 16-November-2014
Tool run by Ivan Georgiev on ўв 18.11.2014 Ј. at 15:57:37,56.
Microsoft Windows 7 Ultimate  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Ivan Georgiev\Desktop\zoek.exe [Scan all users] [Script inserted] 

==== System Restore Info ======================

18.11.2014 г. 15:59:26 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Internet Explorer\SearchScopes\{99E27757-0095-4546-80D6-629FB9B55864} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TBSrv deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\TBSrv deleted successfully

==== Deleting Files \ Folders ======================

C:\PROGRA~3\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} deleted
C:\Users\Ivan Georgiev\AppData\LocalLow\Conduit deleted
C:\Users\Ivan Georgiev\AppData\LocalLow\uTorrentControl_v2 deleted
C:\PROGRA~2\uTorrentControl_v2 deleted
C:\PROGRA~2\SopCast deleted
C:\PROGRA~2\Conduit deleted
C:\Users\Ivan Georgiev\AppData\Roaming\OpenCandy deleted
C:\PROGRA~3\Ask deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Ivan Georgiev\AppData\Local\CRE deleted
C:\Users\Ivan Georgiev\AppData\Local\Conduit deleted
C:\Users\Ivan Georgiev\AppData\LocalLow\PriceGong deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"[email protected]"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [02.10.2013 Ј. 09:27]

==== Firefox Extensions ======================

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Ivan Georgiev\AppData\Roaming\Mozilla\Firefox\Profiles\llhisx5b.default
D2377C9458EFEB094E38B8C874AA214C	- C:\Users\Ivan Georgiev\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll -	Google Update
3CD19649B2C3023D65E67C056457A2BC	- C:\Users\Ivan Georgiev\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll -	Facebook Video Calling Plugin
A58DE0A570148AF5FF3512B2A340D09F	- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll -	Shockwave Flash


==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
ejpbbhjlbipncjklfjjaedaieimbmdda - C:\Users\Ivan Georgiev\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx[]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
apdfllckaahabafndbhieahigkjlhalf - C:\Users\IVANGE~1\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx[05.05.2013 Ј. 23:09]
ejpbbhjlbipncjklfjjaedaieimbmdda - C:\Users\Ivan Georgiev\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx[]
lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[]

Google Drive App Launcher - Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh

==== Chromium Fix ======================

C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_lyrics.wikia.com_0.localstorage deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_lyrics.wikia.com_0.localstorage-journal deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_lyricstranslate.com_0.localstorage deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_lyricstranslate.com_0.localstorage-journal deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.azlyrics.com_0.localstorage-journal deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.karaoke-lyrics.net_0.localstorage deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.karaoke-lyrics.net_0.localstorage-journal deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lyrics.al_0.localstorage deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lyrics.al_0.localstorage-journal deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lyricsfreak.com_0.localstorage deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lyricsfreak.com_0.localstorage-journal deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.metrolyrics.com_0.localstorage deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.metrolyrics.com_0.localstorage-journal deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ask.com_0.localstorage deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ask.com_0.localstorage-journal deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sermonsearch.com_0.localstorage deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sermonsearch.com_0.localstorage-journal deleted successfully
C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google  Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully
HKEY_USERS\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully
HKEY_USERS\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD8B856E-F4C7-48E2-8CB6-115A21262500} deleted successfully
HKEY_USERS\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8A0F242-C217-4D9C-9A5A-8C8AE28A8F2F} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully
HKEY_USERS\S-1-5-21-4109598628-3443817014-4277544927-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{7473b6bd-4691-4744-a82b-7854eb3d70b6} deleted successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentControl_v2 Toolbar deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Ivan Georgiev\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Ivan Georgiev\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DK9NNSHA will be deleted at reboot
C:\Users\Ivan Georgiev\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YOO71H86 will be deleted at reboot
C:\Users\Ivan Georgiev\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZWI9ANYU will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Users\Ivan Georgiev\AppData\Local\Mozilla\Firefox\Profiles\llhisx5b.default\Cache emptied successfully
C:\Users\Ivan Georgiev\AppData\Local\Mozilla\Firefox\Profiles\llhisx5b.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Ivan Georgiev\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=364 folders=101 93562674 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Ivan Georgiev\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\IVANGE~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\Ivan Georgiev\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DK9NNSHA" not found
"C:\Users\Ivan Georgiev\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YOO71H86" not found
"C:\Users\Ivan Georgiev\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZWI9ANYU" not found

==== EOF on ўв 18.11.2014 Ј. at 16:35:24,10 ======================

# AdwCleaner v4.101 - Report created 18/11/2014 at 16:56:51
# Updated 09/11/2014 by Xplode
# Database : 2014-11-16.1 [Live]
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Ivan Georgiev - IVANGEORGIEV-PC
# Running from : C:\Users\Ivan Georgiev\Downloads\adwcleaner_4.101.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\Tbccint

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduit.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduitapps.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [BackgroundContainerV2]
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3220468
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{7473B6BD-4691-4744-A82B-7854EB3D70B6}]
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\PIP
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\Tbccint_HKLM
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\BackgroundContainer
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\BackgroundContainerV2
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\dt soft\daemon tools toolbar
Key Deleted : HKLM\SOFTWARE\PIP
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF2AEFF45EEA0A48A4B33C1973B6094
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\app.mam.conduit.com

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17420


-\\ Mozilla Firefox v31.0 (x86 bg)


-\\ Google Chrome v


*************************

AdwCleaner[R0].txt - [3039 octets] - [18/11/2014 16:52:04]
AdwCleaner[S0].txt - [2563 octets] - [18/11/2014 16:56:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2623 octets] ##########

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.9 (11.15.2014:2)
OS: Windows 7 Ultimate x64
Ran by Ivan Georgiev on ўв 18.11.2014 Ј. at 17:21:10,82
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: C:\Users\Ivan Georgiev\AppData\Roaming\mozilla\firefox\profiles\llhisx5b.default\minidumps [24 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ўв 18.11.2014 Ј. at 17:32:17,91
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 18.11.2014 г.
Scan Time: 17:35:11 ч.
Logfile: 
Administrator: Yes

Version: 2.00.3.1025
Malware Database: v2014.11.18.04
Rootkit Database: v2014.11.12.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Ivan Georgiev

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 331555
Time Elapsed: 17 min, 3 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Deep Rootkit Scan: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 2
PUP.Optional.uTorrentControl.A, HKLM\SOFTWARE\WOW6432NODE\uTorrentControl_v2, Quarantined, [1dcc281268143afcad4ca6bf3fc4cc34], 
PUP.Optional.uTorrentControl.A, HKU\S-1-5-21-4109598628-3443817014-4277544927-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\uTorrentControl_v2, Quarantined, [c8217dbd8bf14fe7de1cc3a247bc16ea], 

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 2
Trojan.Agent, C:\Program Files (x86)\GetFLV\GetFLV.v9.1.2.0.loader.exe, Quarantined, [a049bc7efa827eb8723959c7ce3452ae], 
HackTool.Wpakill, C:\Users\Ivan Georgiev\Downloads\RemoveWAT.2.2.5.Hazar.carter67.rar, Quarantined, [effad862413bff37ea1c99cc18e87d83], 

Physical Sectors: 0
(No malicious items detected)


(end)
 Results of screen317's Security Check version 0.99.90  
 Windows 7 Service Pack 1 x64 (UAC is enabled)  
 Internet Explorer 11  
[b][u]``````````````Antivirus/Firewall Check:``````````````[/b][/u] 
 Windows Firewall Enabled!  
 Windows Firewall Disabled!  
avast! Antivirus   
 Antivirus up to date!   
[b][u]`````````Anti-malware/Other Utilities Check:`````````[/b][/u] 
 TuneUp Utilities 2014   
 TuneUp Utilities 2014 (en-US)  
 TuneUp Utilities 2014   
 Java 7 Update 45  
 [color=red][b]Java version out of Date![/b][/color] 
  Adobe Flash Player 13.0.0.214 [b][color=red]Flash Player out of Date![/color][/b]  
 Adobe Reader 10.1.8 [color=red][b]Adobe Reader out of Date![/b][/color]  
 Mozilla Firefox 31.0 [color=red][b]Firefox out of Date![/b][/color]  
 Google Chrome (38.0.2125.104) 
 Google Chrome (38.0.2125.111) 
 Google Chrome (chrome.exe..) 
 Google Chrome (debug.log..) 
 Google Chrome (Dictionaries...) 
 Google Chrome (First Run...) 
 Google Chrome (master_preferences...) 
 Google Chrome (old_chrome.exe..) 
[b][u]````````Process Check: objlist.exe by Laurent````````[/b][/u]  
 Malwarebytes Anti-Malware mbam.exe  
 AVAST Software Avast AvastSvc.exe  
 AVAST Software Avast AvastUI.exe  
[b][u]`````````````````System Health check`````````````````[/b][/u] 
 Total Fragmentation on Drive C: 5% 
[b][u]````````````````````End of Log``````````````````````[/b][/u] 

vxyzw0.gif Java не е актуална а по-старите версии съдържат уязвимости. Нужно е да обновете до най-новата версия:
Изтеглете най-новата версия от тук: Free Java Download
Важно е да се отстранят по-стари версии на Java, тъй като тя не прави това автоматично и старите версии все още ви оставя уязвими.
Отидете на Start > Control Panel > отворете Uninstall a program
Намерете в списъка  всички предишни инсталирани версии на Java. (J2SE Runtime Environment).Във вашия случай:Java™ 7 Update 51. Изберете всяка поотделно и я деинсталирайте като щракнете върху Uninstall.След като старите версии са премахнати, моля инсталирайте най-новата версия.
 
 
vxyzw0.gif 
1.Деинсталирайте и старите версии на Adobe Flash Player....вижте тази статия : Uninstall Flash Player
2. Затворете всички стартирани приложения, включително  Internet Explorer или други браузъри, както и приложения (като AOL Instant Messenger, Yahoo Messenger, MSN Messenger).
3. Кликнете два пъти върху файла, който сте изтеглили, за да деинсталирате Flash.
4. Ако е деинсталиран успешно, отидете на този сайт: Downloads . Инсталирайте Adobe Flash Player , и изберете Приемам и инсталиратне сега. Това ще инсталира най-новата версия на Flash за вашия браузър (обърнете внимание: Flash плъгини за IE и Firefox, трябва да бъдат монтирани отделно).

Забележка: Препоръчвам ви да махнете незадължителните отметки и да избегнете да  инсталирате (Free McAfee Security Scan или Free Toolbar Google).

 

 

Същото се отнася и за Adobe Reader и Mozilla Firefox...Можете да използвате следните програми PatchMyPC или Secunia Personal Software Inspector за да инсталирате всички ъпдейти и последни версии на софтуер, които инструментите ви предложат.

 

 

След всичко това ..каво е състоянието на системата ви..? Наблюдавате ли първоначалните проблеми..?

  • Автор

Ами да вече работи много по-добре. Като цяло съществуващите проблеми със забиването ги няма. На някакъв вирус ли се дължеше това? 

Ами да вече работи много по-добре. Като цяло съществуващите проблеми със забиването ги няма. На някакъв вирус ли се дължеше това? 

 

Добро утро..!Основно на адуер..но свети и един Trojan.Agent...с който Malwarebytes Anti-Malware се е справил.Това обаче ме навява на мисълта да направим още една - две проверки за да сме сигурни че всичко е " ок"...Сега направете сканирането от пост 4 и публикувайте в следващия си пост резултата..! :)

Архивирана тема

Темата е твърде стара и е архивирана. Не можете да добавяте нови отговори в нея, но винаги можете да публикувате нова тема, в която да продължи дискусията. Регистрирайте се или влезте във вашия профил за да публикувате нова тема.

Разглеждащи това в момента 0

  • Няма регистрирани потребители разглеждащи тази страница.

Дарение

  • Подкрепи съществуването на форума - направи дарение
    32%
    Дарени 315 € от нужните 1 000 €

Бюлетин

Получавайте известие, когато има важна промяна или новина свързана с форума.

Профил

Навигация

Търсене

Търсене

Конфигуриране на push известия в браузъра

Chrome (Android)
  1. Докоснете иконата на катинар до адресната лента.
  2. Докоснете Разрешения → Известия.
  3. Променете предпочитанията си.
Chrome (Desktop)
  1. Кликнете върху иконата на катинар в адресната лента.
  2. Изберете Настройки на сайта.
  3. Намерете Известия и коригирайте предпочитанията си.