Премини към съдържанието
От 1-ви септември 2021 г., вход във форумите ще е възможен само с имейл адрес вместо потребителско име. Ако не помните имейла с който сте се регистрирали, вижте го в настройките на профила си. ×
  • Добре дошли!

    Добре дошли в нашите форуми, пълни с полезна информация. Имате проблем с компютъра или телефона си? Публикувайте нова тема и ще намерите решение на всичките си проблеми. Общувайте свободно и открийте безброй нови приятели.

    Моля, регистрирайте се за да публикувате тема и да получите пълен достъп до всички функции.

     

Проблем с мозила


Препоръчан отговор


Здравейте. Проблема ми е следния - след посещение някъде (на компа сме 3 човека) сме лепнали нещо на Мозилата - отварят се някакви прозорци с реклами, и отделно някакви игри в нов прозорец. С Гугъл Хром нямам проблеми ама Аз съм си привърженик на Мозилата. Опитах някакви програми от нета ама нищо не се получи и за това съм тук. Предварително благодаря на хората които ще ми обърнат внимание, дори и да не помогнат. Качвам и снимка да видите как изглеждат:

 

Линк към коментара
Сподели в други сайтове

Много съжалявам, вината е моя - извинявайте.

 

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 20-11-2014
Ran by Administrator at 2014-11-22 01:48:55
Running from C:\Documents and Settings\Administrator\My Documents\Downloads
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Avira Desktop (Disabled - Up to date) {AD166499-45F9-482A-A743-FDD3350758C7}
 
==================== Installed Programs ======================
 
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKLM\...\uTorrent) (Version: 3.2.1.28086 - BitTorrent Inc.)
Adobe Community Help (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Media Player (HKLM\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Photoshop CS3 (HKLM\...\Adobe_719d6f144d0c086a0dfa7ff76bb9ac1) (Version: 10.0 - Adobe Systems Incorporated)
Adobe Reader X (10.1.7) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.7 - Adobe Systems Incorporated)
AIMP3 (HKLM\...\AIMP3) (Version: v3.55.1355, 14.07.2014 - AIMP DevTeam)
Avira (HKLM\...\{9480d4af-12b9-4e56-8034-4031ef6ab39d}) (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG)
Avira (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG) Hidden
Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 14.0.7.342 - Avira)
Battlefield Play4Free (HKLM\...\{87686C21-8A15-4b4d-A3F1-11141D9BE094}) (Version:  - EA Digital illusions)
CCleaner (HKLM\...\CCleaner) (Version: 3.23 - Piriform)
Counter Strike 1.6 p48 build 4554 2.1 (HKLM\...\Counter Strike 1.6 p48 build 4554 2.1) (Version:  - )
Counter-Strike: Condition Zero (HKLM\...\Steam App 80) (Version:  - Valve)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd)
FileZilla Client 3.8.1 (HKLM\...\FileZilla Client) (Version: 3.8.1 - Tim Kosse)
FlexType 2K (HKLM\...\FlexType 2K) (Version:  - )
Fraps (HKLM\...\Fraps) (Version:  - )
Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.65 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
HLSW v1.4.0.2 (HKLM\...\HLSW_is1) (Version:  - Stripf Software)
Java 7 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217040FF}) (Version: 7.0.400 - Oracle)
KMP Service (HKLM\...\4F6D5E84-5826-4394-9F40-3A9A19165651_is1) (Version:  - KMP) <==== ATTENTION
Malwarebytes Anti-Malware, версия 2.0.3.1025 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30320 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30320 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM\...\{90110409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.7969.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft WinUsb 1.0 (HKLM\...\winusb0100) (Version:  - Microsoft Corporation)
Mozilla Firefox 33.1 (x86 bg) (HKLM\...\Mozilla Firefox 33.1 (x86 bg)) (Version: 33.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSXML 6.0 Parser (HKLM\...\{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}) (Version: 6.10.1129.0 - Microsoft Corporation)
MyFreeCodec (HKU\S-1-5-21-515967899-1979792683-842925246-500\...\MyFreeCodec) (Version:  - )
Nero 7 Premium (HKLM\...\{4781569D-5404-1F26-4B2B-6DF444441031}) (Version: 7.00.0087 - Nero AG)
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Graphics Driver 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA nView 141.24 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 141.24 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
PDF Settings (Version: 1.0 - Adobe Systems Incorporated) Hidden
PunkBuster Services (HKLM\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.)
RealDownloader (Version: 1.3.3 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0 - RealNetworks, Inc) Hidden
RealPlayer (HKLM\...\RealPlayer 16.0) (Version: 16.0.3 - RealNetworks)
RealUpgrade 1.1 (Version: 1.1.0 - RealNetworks, Inc.) Hidden
Samsung Kies (HKLM\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.0.12094_28 - Samsung Electronics Co., Ltd.)
Samsung Kies (Version: 2.5.0.12094_28 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies3 (HKLM\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.14055.3 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (Version: 3.2.14055.3 - Samsung Electronics Co., Ltd.) Hidden
Samsung Story Album Viewer (HKLM\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13052_1 - Samsung Electronics Co., Ltd.)
Samsung Story Album Viewer (Version: 1.0.0.13052_1 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.40.0 - SAMSUNG Electronics Co., Ltd.)
Skype™ 6.21 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
SoundMAX (HKLM\...\{F0A37341-D692-11D4-A984-009027EC0A9C}) (Version: 5.10.01.6380 - Analog Devices)
Steam (HKLM\...\Steam) (Version:  - Valve Corporation)
TeamViewer 8 (HKLM\...\TeamViewer 8) (Version: 8.0.16642 - TeamViewer)
The KMPlayer (remove only) (HKLM\...\The KMPlayer) (Version: 3.8.0.120 - PandoraTV)
Unlocker 1.9.1 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb)
WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden
Windows Bulgarian Interface Pack (HKLM\...\{C408D81A-CB17-4CDF-98AF-2E64036B3F32}) (Version: 1.0.0.2600 - Microsoft Corporation)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
Архиватор WinRAR (HKLM\...\WinRAR archiver) (Version:  - )
 
==================== Custom CLSID (selected items): ==========================
 
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
 
CustomCLSID: HKU\S-1-5-21-515967899-1979792683-842925246-500_Classes\CLSID\{0B090D40-DA26-5D4D-2509-B755873E337E}\InprocServer32 -> C:\WINDOWS\system32\ole32.dll (Microsoft Corporation)
 
==================== Restore Points  =========================
 
 
==================== Hosts content: ==========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2008-04-14 12:00 - 2008-04-14 12:00 - 00000734 ____N C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1       localhost
 
==================== Scheduled Tasks (whitelisted) =============
 
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-515967899-1979792683-842925246-500.job => C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe
Task: C:\WINDOWS\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-515967899-1979792683-842925246-500.job => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-515967899-1979792683-842925246-500.job => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-515967899-1979792683-842925246-500.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-515967899-1979792683-842925246-500.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-515967899-1979792683-842925246-500.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
Task: C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-515967899-1979792683-842925246-500.job => C:\Program Files\Real\RealUpgrade\realupgrade.exe
 
==================== Loaded Modules (whitelisted) =============
 
2012-10-18 16:35 - 2000-12-13 00:55 - 00028672 _____ () C:\WINDOWS\system32\newdll.dll
2014-06-01 11:08 - 2014-06-01 11:08 - 00035328 _____ () C:\xampp\FileZillaFTP\FileZilla FTP Client\fzshellext.dll
2014-05-24 18:41 - 2014-05-24 18:41 - 00091648 _____ () C:\xampp\FileZillaFTP\FileZilla FTP Client\libgcc_s_sjlj-1.dll
2014-05-24 18:41 - 2014-05-24 18:41 - 00892416 _____ () C:\xampp\FileZillaFTP\FileZilla FTP Client\libstdc++-6.dll
2014-10-30 13:37 - 2014-10-30 13:37 - 00075136 _____ () C:\WINDOWS\system32\PnkBstrA.exe
2013-08-14 14:19 - 2013-08-14 14:19 - 00039056 _____ () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
2012-11-17 16:51 - 2000-12-30 12:39 - 00151552 _____ () C:\WINDOWS\Datecs\Flex2K.exe
2014-09-02 08:45 - 2014-11-11 20:48 - 01171456 _____ () C:\Program Files\Steam\libavcodec-56.dll
2014-09-02 08:45 - 2014-11-11 20:48 - 00442368 _____ () C:\Program Files\Steam\libavutil-54.dll
2014-09-02 08:45 - 2014-11-11 20:48 - 00332800 _____ () C:\Program Files\Steam\libavresample-2.dll
2013-12-04 22:37 - 2014-11-11 20:47 - 00774656 _____ () C:\Program Files\Steam\SDL2.dll
2014-05-22 12:52 - 2014-11-18 22:23 - 02227904 _____ () C:\Program Files\Steam\video.dll
2014-09-02 08:45 - 2014-11-11 20:48 - 00403968 _____ () C:\Program Files\Steam\libavformat-56.dll
2014-09-02 08:45 - 2014-11-11 20:48 - 00485888 _____ () C:\Program Files\Steam\libswscale-3.dll
2013-12-04 22:37 - 2014-11-18 22:23 - 00690880 _____ () C:\Program Files\Steam\bin\chromehtml.dll
2014-11-21 16:33 - 2014-11-21 16:33 - 00155232 ___HT () C:\Documents and Settings\Administrator\Local Settings\Temp\~34.tmp
2013-12-04 22:37 - 2014-11-11 20:48 - 34589888 _____ () C:\Program Files\Steam\bin\libcef.dll
2014-08-26 09:24 - 2014-11-11 20:48 - 00837824 _____ () C:\Program Files\Steam\bin\ffmpegsumo.dll
2013-12-04 22:41 - 2013-12-04 22:41 - 00126496 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\filesystem_stdio.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 01625608 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\hw.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 00400920 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\vgui.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 00652800 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\SDL2.dll
2014-04-17 22:34 - 2014-04-17 22:34 - 01093128 _____ () c:\program files\steam\steamapps\common\half-life\cstrike\cl_dlls\client.dll
2013-12-04 22:41 - 2013-12-04 22:41 - 00081920 _____ () c:\program files\steam\steamapps\common\half-life\valve\cl_dlls\particleman.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 00843264 _____ () c:\program files\steam\steamapps\common\half-life\valve\cl_dlls\GameUI.dll
2013-12-04 22:41 - 2013-12-04 22:41 - 00241152 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\vgui2.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 00874496 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\chromehtml.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 00338944 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\tier0.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 20320240 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\libcef.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 01100800 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\avcodec-53.dll
2013-12-04 22:41 - 2013-12-04 22:41 - 00124416 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\avutil-51.dll
2013-12-04 22:41 - 2013-12-04 22:41 - 00192000 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\avformat-53.dll
2013-12-04 22:41 - 2013-12-04 22:41 - 00071680 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\mssmp3.asi
2013-12-04 22:41 - 2013-12-04 22:41 - 00153088 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\mssvoice.asi
2013-12-04 22:41 - 2013-12-04 22:41 - 00138768 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\demoplayer.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 00282112 _____ () C:\Program Files\Steam\steamapps\common\Half-Life\core.dll
2013-12-04 22:40 - 2013-12-04 22:41 - 00536576 _____ () c:\program files\steam\steamapps\common\half-life\platform\servers\serverbrowser.dll
2008-04-14 12:00 - 2008-04-14 12:00 - 00059904 _____ () C:\WINDOWS\system32\devenum.dll
2008-04-14 12:00 - 2008-04-14 12:00 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
2014-11-21 15:30 - 2014-11-14 23:15 - 09009480 _____ () C:\Program Files\Google\Chrome\Application\39.0.2171.65\pdf.dll
2014-11-21 15:30 - 2014-11-14 23:15 - 01677128 _____ () C:\Program Files\Google\Chrome\Application\39.0.2171.65\ffmpegsumo.dll
2014-11-21 15:30 - 2014-11-14 23:15 - 14910280 _____ () C:\Program Files\Google\Chrome\Application\39.0.2171.65\PepperFlash\pepflashplayer.dll
 
==================== Alternate Data Streams (whitelisted) =========
 
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
 
AlternateDataStreams: C:\Documents and Settings\All Users\Application Data\TEMP:D1B5B4F1
 
==================== Safe Mode (whitelisted) ===================
 
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
 
==================== EXE Association (whitelisted) =============
 
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
 
 
==================== MSCONFIG/TASK MANAGER disabled items =========
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\startupreg: Clownfish => "C:\Program Files\Clownfish\Clownfish.exe"
MSCONFIG\startupreg: KiesAirMessage => C:\Program Files\Samsung\Kies\KiesAirMessage.exe -startup
MSCONFIG\startupreg: KiesPreload => C:\Program Files\Samsung\Kies\Kies.exe /preload
MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
MSCONFIG\startupreg: NeroFilterCheck => C:\WINDOWS\system32\NeroCheck.exe
MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: TkBellExe => "C:\program files\real\realplayer\update\realsched.exe"  -osboot
MSCONFIG\startupreg: UnlockerAssistant => "C:\Program Files\Unlocker\UnlockerAssistant.exe"
 
========================= Accounts: ==========================
 
Administrator (S-1-5-21-515967899-1979792683-842925246-500 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\Administrator
ASPNET (S-1-5-21-515967899-1979792683-842925246-1004 - Limited - Enabled)
Guest (S-1-5-21-515967899-1979792683-842925246-501 - Limited - Disabled)
HelpAssistant (S-1-5-21-515967899-1979792683-842925246-1000 - Limited - Disabled)
SUPPORT_388945a0 (S-1-5-21-515967899-1979792683-842925246-1002 - Limited - Disabled)
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (11/21/2014 00:08:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application nvbackend.exe, version 15.3.33.0, faulting module nvbackend.exe, version 15.3.33.0, fault address 0x0007240c.
Processing media-specific event for [nvbackend.exe!ws!]
 
Error: (11/19/2014 08:56:21 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Hanging application Photoshop.exe, version 10.0.0.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
 
Error: (10/31/2014 06:44:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application filezilla.exe, version 3.8.1.0, faulting module filezilla.exe, version 3.8.1.0, fault address 0x00081265.
Processing media-specific event for [filezilla.exe!ws!]
 
Error: (10/31/2014 00:43:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application filezilla.exe, version 3.8.1.0, faulting module filezilla.exe, version 3.8.1.0, fault address 0x00081265.
Processing media-specific event for [filezilla.exe!ws!]
 
Error: (10/30/2014 01:45:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application bfp4f.exe, version 1.0.0.4, faulting module ntdll.dll, version 5.1.2600.6055, fault address 0x0000100b.
Processing media-specific event for [bfp4f.exe!ws!]
 
Error: (10/30/2014 00:18:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application filezilla.exe, version 3.8.1.0, faulting module filezilla.exe, version 3.8.1.0, fault address 0x00081265.
Processing media-specific event for [filezilla.exe!ws!]
 
Error: (10/27/2014 10:09:13 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application launcher.exe, version 1.0.1.187, faulting module ntdll.dll, version 5.1.2600.6055, fault address 0x00019fca.
Processing media-specific event for [launcher.exe!ws!]
 
Error: (10/26/2014 03:13:02 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Hanging application nero.exe, version 7.0.0.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
 
Error: (10/26/2014 02:31:19 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Hanging application nero.exe, version 7.0.0.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
 
Error: (10/26/2014 02:31:14 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Hanging application nero.exe, version 7.0.0.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
 
 
System errors:
=============
Error: (11/10/2014 07:32:12 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Timeout (30000 milliseconds) waiting for a transaction response from the NVSvc service.
 
Error: (11/06/2014 04:23:49 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Timeout (30000 milliseconds) waiting for a transaction response from the NVSvc service.
 
Error: (11/04/2014 09:28:30 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Timeout (30000 milliseconds) waiting for a transaction response from the NVSvc service.
 
 
Microsoft Office Sessions:
=========================
Error: (11/21/2014 00:08:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvbackend.exe15.3.33.0nvbackend.exe15.3.33.00007240c
 
Error: (11/19/2014 08:56:21 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Photoshop.exe10.0.0.0hungapp0.0.0.000000000
 
Error: (10/31/2014 06:44:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: filezilla.exe3.8.1.0filezilla.exe3.8.1.000081265
 
Error: (10/31/2014 00:43:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: filezilla.exe3.8.1.0filezilla.exe3.8.1.000081265
 
Error: (10/30/2014 01:45:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: bfp4f.exe1.0.0.4ntdll.dll5.1.2600.60550000100b
 
Error: (10/30/2014 00:18:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: filezilla.exe3.8.1.0filezilla.exe3.8.1.000081265
 
Error: (10/27/2014 10:09:13 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: launcher.exe1.0.1.187ntdll.dll5.1.2600.605500019fca
 
Error: (10/26/2014 03:13:02 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: nero.exe7.0.0.0hungapp0.0.0.000000000
 
Error: (10/26/2014 02:31:19 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: nero.exe7.0.0.0hungapp0.0.0.000000000
 
Error: (10/26/2014 02:31:14 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: nero.exe7.0.0.0hungapp0.0.0.000000000
 
 
==================== Memory info =========================== 
 
Processor: Intel® Pentium® Dual CPU E2180 @ 2.00GHz
Percentage of memory in use: 62%
Total physical RAM: 2046.04 MB
Available physical RAM: 757.45 MB
Total Pagefile: 3939.01 MB
Available Pagefile: 2064.47 MB
Total Virtual: 2047.88 MB
Available Virtual: 1947.82 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:53.94 GB) (Free:22.82 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: () (Fixed) (Total:244.14 GB) (Free:157.2 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 298.1 GB) (Disk ID: 5724DA06)
Partition 1: (Active) - (Size=53.9 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=244.1 GB) - (Type=OF Extended)
 
==================== End Of Log ============================

Addition.txt

Линк към коментара
Сподели в други сайтове

Здравейте,

 

Публикували сте Addition.txt и сте прикачили отново Addition.txt. :)

Трябва да видя и другия лог файл - FRST.txt (той даже е по-важния от двата).

 

 

Поздрави!

Линк към коментара
Сподели в други сайтове

Ето го.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 20-11-2014
Ran by Administrator (administrator) on COMPUTEK-1DC5C0 on 22-11-2014 01:47:35
Running from C:\Documents and Settings\Administrator\My Documents\Downloads
Loaded Profiles: Administrator (Available profiles: Administrator)
Platform: Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English (United States)
Internet Explorer Version 8
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Computer, Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Teruten) C:\WINDOWS\system32\FsUsbExService.Exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
() C:\WINDOWS\system32\PnkBstrA.exe
() C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
() C:\WINDOWS\Datecs\Flex2K.exe
(Valve Corporation) C:\Program Files\Steam\Steam.exe
(Valve Corporation) C:\Program Files\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files\Steam\bin\steamwebhelper.exe
(Valve) C:\Program Files\Steam\SteamApps\common\Half-Life\hl.exe
(Valve Corporation) C:\Program Files\Steam\GameOverlayUI.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Farbar) C:\Documents and Settings\Administrator\My Documents\Downloads\FRST (1).exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [703736 2014-11-18] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM\...\Run: [soundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [868352 2007-03-16] (Analog Devices, Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-19\...\RunOnce: [_nltide_3] => rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
HKU\S-1-5-20\...\RunOnce: [_nltide_3] => rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
HKU\S-1-5-21-515967899-1979792683-842925246-1003-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\RunOnce: [_nltide_3] => rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
HKU\S-1-5-21-515967899-1979792683-842925246-500\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKU\S-1-5-21-515967899-1979792683-842925246-500\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-18\...\RunOnce: [_nltide_3] => rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\FlexType 2K.lnk
ShortcutTarget: FlexType 2K.lnk -> C:\WINDOWS\Datecs\Flex2K.exe ()
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
URLSearchHook: [s-1-5-21-515967899-1979792683-842925246-1003-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0] ATTENTION ==> Default URLSearchHook is missing.
HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "http://www.google.com"<======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-515967899-1979792683-842925246-500 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://en.eazel.com/results.php?id=AAA797963e2ac2798c711550cf31b0ab429&oid=1&cat=web&co=&lg=en&q={searchTerms}
BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.)
Tcpip\..\Interfaces\{6562F65F-DD0F-4E59-B6C3-64283866C0C0}: [NameServer] 8.8.8.8,8.8.4.4
 
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default
FF DefaultSearchEngine: Google (SSL)
FF DefaultSearchUrl: 
FF SearchEngineOrder.3: Bing 
FF SelectedSearchEngine: Google (SSL)
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.40.2 -> C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.40.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @real.com/nppl3260;version=16.0.3.51 -> c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpplugin;version=16.0.3.51 -> c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin: @realnetworks.com/npdlplugin;version=1 -> C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nprpplugin.dll (RealPlayer)
FF SearchPlugin: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\searchplugins\google-ssl.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\911bg.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\diribg.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pe-bg.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\portalbgdict.xml
FF Extension: Avira Browser Safety - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\Extensions\[email protected] [2014-11-20]
FF Extension: Battlefield Play4Free - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\Extensions\[email protected] [2014-10-30]
FF Extension: Settings Manager - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\Extensions\{1ED03F15-1006-1C66-CCA5-15A00B80A7B7} [2014-05-19]
FF Extension: Master-Site - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\Extensions\{86d8f0b9-33a3-4fa5-b69b-dbf25a2cf543} [2014-11-17]
FF Extension: ABV Notifier - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\Extensions\[email protected] [2013-10-22]
FF Extension: Adblock Plus Pop-up Addon - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\Extensions\[email protected] [2014-03-22]
FF Extension: Element Hiding Helper for Adblock Plus - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\Extensions\[email protected] [2014-03-22]
FF Extension: Visitors Facebook - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\Extensions\[email protected] [2014-01-01]
FF Extension: Youtube To MP3 / x-MuZiC.cOm - C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gy4hqjti.default\Extensions\[email protected] [2014-03-04]
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2013-04-09]
FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-09-27]
FF HKLM\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: No Name - {DF153AFF-6948-45d7-AC98-4FC4AF8A08E2} [Not Found]
 
Chrome: 
=======
CHR Profile: C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default
CHR Extension: (Google Презентации) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-21]
CHR Extension: (Google Документи) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-21]
CHR Extension: (Google Диск) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-21]
CHR Extension: (YouTube) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-21]
CHR Extension: (Google Търсене) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-21]
CHR Extension: (Електронни таблици от Google) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-21]
CHR Extension: (Avira Browser Safety) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-11-21]
CHR Extension: (RealDownloader) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji [2014-11-21]
CHR Extension: (Google Wallet) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-21]
CHR Extension: (Gmail) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-21]
CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\Documents and Settings\All Users\Application Data\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-08-14]
 
========================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-09-16] (Microsoft Corporation)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [432888 2014-11-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [432888 2014-11-18] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [229376 2006-02-28] (Apple Computer, Inc.) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2014-03-16] (Macrovision Europe Ltd.) [File not signed]
R2 FsUsbExService; C:\WINDOWS\system32\FsUsbExService.Exe [233472 2013-05-22] (Teruten) [File not signed]
R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2013-10-06] (Oracle Corporation)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
S4 PanService; C:\Program Files\PANDORA.TV\PanService\KMPService.exe [1922600 2013-07-08] (Pandora.TV)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [75136 2014-10-30] ()
R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] ()
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [98160 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\System32\DRIVERS\avipbb.sys [136216 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\System32\DRIVERS\avkmgr.sys [37352 2013-10-07] (Avira Operations GmbH & Co. KG)
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
R1 dtsoftbus01; C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys [242240 2013-04-09] (DT Soft Ltd)
R3 FsUsbExDisk; C:\WINDOWS\system32\FsUsbExDisk.SYS [37344 2013-05-22] () [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
U3 PROCMON23; C:\WINDOWS\System32\Drivers\PROCMON23.SYS [65048 2013-11-19] (Sysinternals - www.sysinternals.com)
R3 SenFiltService; C:\WINDOWS\System32\drivers\Senfilt.sys [8704 2005-03-17] (Analog Devices, Inc.)
R1 ssmdrv; C:\WINDOWS\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH)
R1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-09-16] (Microsoft Corporation)
R3 VM30xx86; C:\WINDOWS\System32\Drivers\vm30xx86.sys [1294336 2007-03-20] (Vimicro Corporation)
S3 EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys [X]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S4 InCDFs; system32\drivers\InCDFs.sys [X]
S1 InCDPass; system32\drivers\InCDPass.sys [X]
S1 InCDRm; system32\drivers\InCDRm.sys [X]
S4 IntelIde; No ImagePath
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () [File not signed]
U1 WS2IFSL; No ImagePath
 
==================== NetSvcs (Whitelisted) ===================
 
 
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
 
 
==================== One Month Created Files and Folders ========
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-11-22 01:47 - 2014-11-22 01:47 - 00000000 ____D () C:\FRST
2014-11-21 16:00 - 2014-11-21 16:00 - 00001216 _____ () C:\Documents and Settings\Administrator\Desktop\,,,,,,,,,,,,,,,,,,,,,,,,,,,.txt
2014-11-21 15:30 - 2014-11-21 15:30 - 00001811 _____ () C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk
2014-11-21 15:30 - 2014-11-21 15:30 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Google Chrome
2014-11-21 15:29 - 2014-11-21 15:29 - 00880784 _____ (Google Inc.) C:\Documents and Settings\Administrator\Desktop\ChromeSetup.exe
2014-11-21 00:42 - 2014-11-21 15:46 - 00114904 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-11-21 00:42 - 2014-11-21 15:46 - 00000777 _____ () C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-21 00:42 - 2014-11-21 15:46 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-11-21 00:42 - 2014-11-21 15:46 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-21 00:42 - 2014-10-01 11:11 - 00054360 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-11-21 00:42 - 2014-10-01 11:11 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-11-19 09:57 - 2014-11-19 09:57 - 09498679 _____ () C:\Documents and Settings\Administrator\Desktop\the-european-union-flag-1920x1200.psd
2014-11-19 09:23 - 2014-11-19 09:23 - 04528641 _____ () C:\Documents and Settings\Administrator\Desktop\Untitled-1.psd
2014-11-18 15:57 - 2014-11-18 15:58 - 00000858 _____ () C:\Documents and Settings\All Users\Desktop\Avira.lnk
2014-11-18 10:25 - 2014-11-18 10:25 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\AIMP3
2014-11-18 10:22 - 2014-11-18 10:27 - 00000000 ____D () C:\Documents and Settings\Administrator\Desktop\Нова папка
2014-11-17 22:28 - 2014-11-17 22:29 - 12156771 _____ () C:\Documents and Settings\Administrator\Desktop\ЙОАННА СХ 2014 ЗАСЕТИ ПЛОЩИ.psd
2014-11-17 20:27 - 2014-11-17 20:27 - 191040615 _____ () C:\Documents and Settings\Administrator\Desktop\ЙОАННА СХ ЕООД 5.psd
2014-11-17 20:01 - 2014-11-17 20:02 - 00037967 _____ () C:\Documents and Settings\Administrator\Desktop\Untitled.FR12
2014-11-17 20:00 - 2014-11-17 20:00 - 00000000 ____D () C:\Documents and Settings\Administrator\Application Data\Canon
2014-11-17 19:54 - 2014-11-17 19:54 - 00000000 ____D () C:\Documents and Settings\Administrator\Application Data\ABBYY
2014-11-17 19:41 - 2014-11-21 01:07 - 00000000 ____D () C:\Documents and Settings\Administrator\Local Settings\Application Data\ABBYY
2014-11-17 19:40 - 2014-11-17 19:40 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\ABBYY
2014-11-17 19:39 - 2014-11-17 19:39 - 00000000 ____D () C:\Program Files\MSXML 6.0
2014-11-17 19:38 - 2014-11-17 19:38 - 00000000 ____D () C:\Documents and Settings\Administrator\Application Data\WebExtend
2014-11-17 17:49 - 2014-11-19 09:42 - 00000000 ____D () C:\Documents and Settings\Administrator\Desktop\ЙОАННА СХ АНКЕТНА КАРТА 2014
2014-11-17 17:47 - 2014-11-17 20:21 - 187543698 _____ () C:\Documents and Settings\Administrator\Desktop\ЙОАННА СХ ЕООД 8.psd
2014-11-17 17:39 - 2014-11-17 20:27 - 196656104 _____ () C:\Documents and Settings\Administrator\Desktop\ЙОАННА СХ ЕООД 6.psd
2014-11-17 14:38 - 2014-11-17 14:38 - 05895842 _____ () C:\Documents and Settings\Administrator\Desktop\12346copy.psd
2014-11-17 14:26 - 2014-11-17 14:26 - 06933988 _____ () C:\Documents and Settings\Administrator\Desktop\12345копие.psd
2014-11-17 14:25 - 2014-11-17 18:11 - 06933712 _____ () C:\Documents and Settings\Administrator\Desktop\12345.psd
2014-11-15 23:58 - 2014-11-15 23:58 - 00000000 ____D () C:\Documents and Settings\Administrator\Desktop\Неизползвани клавишни комбинации на работния плот
2014-11-14 17:04 - 2014-11-14 17:04 - 00050346 _____ () C:\Documents and Settings\Administrator\Desktop\amx_gag.amxx
2014-11-14 13:08 - 2014-11-19 08:29 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Package Cache
2014-11-14 13:08 - 2014-11-14 13:16 - 00000000 ____D () C:\Documents and Settings\Administrator\Local Settings\Application Data\CSO
2014-11-14 13:08 - 2014-11-14 13:08 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Nexon
2014-11-13 21:20 - 2014-11-13 21:20 - 00001353 _____ () C:\Documents and Settings\Administrator\Desktop\plugins.ini
2014-11-10 20:00 - 2014-11-10 20:00 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-11-03 08:28 - 2014-03-19 03:27 - 00184192 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudmdm.sys
2014-11-03 08:28 - 2014-03-19 03:27 - 00088832 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudbus.sys
2014-11-02 14:01 - 2014-11-02 14:01 - 00010730 _____ () C:\Documents and Settings\Administrator\Desktop\ISO1.nri
2014-10-30 13:41 - 2014-10-30 13:41 - 00234768 _____ () C:\WINDOWS\system32\PnkBstrB.xtr
2014-10-30 13:39 - 2014-10-30 13:39 - 00000000 ____D () C:\Documents and Settings\Administrator\Local Settings\Application Data\PunkBuster
2014-10-30 13:38 - 2014-10-30 13:44 - 00000000 ____D () C:\Documents and Settings\Administrator\My Documents\Battlefield Play4Free
2014-10-30 13:38 - 2014-10-30 13:41 - 00138264 _____ () C:\WINDOWS\system32\Drivers\PnkBstrK.sys
2014-10-30 13:38 - 2014-10-30 13:38 - 00138056 _____ () C:\Documents and Settings\Administrator\Application Data\PnkBstrK.sys
2014-10-30 13:37 - 2014-10-30 13:41 - 00234768 _____ () C:\WINDOWS\system32\PnkBstrB.exe
2014-10-30 13:37 - 2014-10-30 13:37 - 00075136 _____ () C:\WINDOWS\system32\PnkBstrA.exe
2014-10-30 13:37 - 2014-10-30 13:37 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\EA Games
2014-10-30 13:07 - 2014-10-30 13:07 - 00000000 ____D () C:\Program Files\EA Games
2014-10-30 08:37 - 2014-10-30 08:37 - 00000710 _____ () C:\Documents and Settings\Administrator\Desktop\HLSW.lnk
2014-10-30 08:37 - 2014-10-30 08:37 - 00000000 ___SD () C:\Documents and Settings\All Users\Start Menu\Programs\HLSW
2014-10-30 00:44 - 2014-10-30 00:44 - 00024303 _____ () C:\Documents and Settings\Administrator\Desktop\dracula_untold_2014_720p_hdcam_new_source_x264_pimp4003(subsunacs.net).rar
2014-10-29 20:32 - 2014-10-29 20:32 - 06243018 _____ () C:\Documents and Settings\Administrator\Desktop\motd.psd
2014-10-27 09:43 - 2014-10-27 09:43 - 00042925 _____ () C:\b29e41e8-fb30-4005-acaa-f943f487a8bd.dmp
2014-10-27 01:16 - 2014-10-27 01:16 - 00043803 _____ () C:\3045dba8-b90f-4969-bf67-dae1d5b203ec.dmp
2014-10-27 00:17 - 2014-11-21 01:15 - 00000000 ____D () C:\Program Files\WarThunder
2014-10-27 00:17 - 2014-10-27 00:17 - 00000000 ____D () C:\Documents and Settings\Administrator\My Documents\My Games
2014-10-25 22:22 - 2014-10-25 22:22 - 00081924 _____ () C:\Documents and Settings\Administrator\Desktop\1217_Maleficent.2014.rar
 
==================== One Month Modified Files and Folders =======
 
(If an entry is included in the fixlist, the file\folder will be moved.)
 
2014-11-22 01:48 - 2012-10-18 16:02 - 00000000 ____D () C:\Documents and Settings\Administrator\Local Settings\Temp
2014-11-22 01:45 - 2012-10-18 17:37 - 00000000 ____D () C:\Documents and Settings\Administrator\Application Data\Skype
2014-11-22 01:44 - 2013-02-19 19:37 - 00018186 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-11-22 01:41 - 2012-12-08 12:07 - 00000498 _____ () C:\Documents and Settings\Administrator\Desktop\пассуорд.txt
2014-11-22 01:04 - 2012-10-18 16:55 - 01425816 _____ () C:\WINDOWS\system32\nvdrsdb1.bin
2014-11-22 01:04 - 2012-10-18 16:55 - 00000001 _____ () C:\WINDOWS\system32\nvdrssel.bin
2014-11-21 16:34 - 2013-12-04 22:36 - 00000000 ____D () C:\Program Files\Steam
2014-11-21 16:06 - 2012-10-18 18:48 - 00592240 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-21 16:03 - 2012-12-31 10:43 - 00000302 _____ () C:\WINDOWS\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-515967899-1979792683-842925246-500.job
2014-11-21 16:03 - 2012-12-31 10:43 - 00000294 _____ () C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-515967899-1979792683-842925246-500.job
2014-11-21 16:03 - 2012-10-18 15:55 - 02057951 _____ () C:\WINDOWS\WindowsUpdate.log
2014-11-21 16:02 - 2013-01-21 15:38 - 00000316 _____ () C:\WINDOWS\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-515967899-1979792683-842925246-500.job
2014-11-21 16:02 - 2012-12-01 23:26 - 00000294 _____ () C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-515967899-1979792683-842925246-500.job
2014-11-21 16:02 - 2012-10-18 18:51 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-11-21 16:02 - 2012-10-18 18:51 - 00000053 _____ () C:\WINDOWS\wiaservc.log
2014-11-21 16:02 - 2012-10-18 18:47 - 03655464 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-11-21 16:02 - 2012-10-18 16:02 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-11-21 16:01 - 2012-11-08 00:28 - 02872830 _____ () C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-515967899-1979792683-842925246-500-0.dat
2014-11-21 16:01 - 2012-11-08 00:28 - 00255798 _____ () C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
2014-11-21 16:01 - 2012-10-18 16:02 - 00032450 _____ () C:\WINDOWS\SchedLgU.Txt
2014-11-21 16:01 - 2012-10-18 16:02 - 00000278 ___SH () C:\Documents and Settings\Administrator\ntuser.ini
2014-11-21 16:01 - 2012-10-18 16:02 - 00000000 ____D () C:\Documents and Settings\Administrator
2014-11-21 15:30 - 2012-10-18 16:32 - 00000000 ____D () C:\Documents and Settings\Administrator\Local Settings\Application Data\Google
2014-11-21 15:29 - 2013-02-09 15:06 - 00000000 ____D () C:\Program Files\Google
2014-11-21 10:07 - 2013-02-09 15:06 - 00000986 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-21 10:07 - 2013-02-09 15:06 - 00000982 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-21 10:06 - 2012-10-18 16:04 - 00031976 _____ () C:\Documents and Settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2014-11-21 01:18 - 2013-04-09 22:56 - 00000000 ____D () C:\Documents and Settings\Administrator\Application Data\DAEMON Tools Lite
2014-11-21 01:18 - 2013-02-09 18:28 - 00000000 ____D () C:\Documents and Settings\Administrator\Application Data\AIMP3
2014-11-21 01:18 - 2012-11-12 22:36 - 00000000 ____D () C:\Documents and Settings\Administrator\Application Data\FileZilla
2014-11-21 01:18 - 2012-10-18 16:34 - 00000000 ____D () C:\Documents and Settings\Administrator\Application Data\uTorrent
2014-11-21 01:09 - 2013-05-26 09:26 - 00000000 ____D () C:\Program Files\Cs 1.6 Background Maker v3.0
2014-11-21 00:58 - 2013-01-10 06:50 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2757638$
2014-11-20 12:46 - 2012-11-15 18:37 - 01284032 ___SH () C:\Documents and Settings\Administrator\Desktop\Thumbs.db
2014-11-20 00:07 - 2012-10-18 16:55 - 01425816 _____ () C:\WINDOWS\system32\nvdrsdb0.bin
2014-11-18 15:58 - 2012-10-18 16:36 - 00000000 ____D () C:\Documents and Settings\All Users\Start Menu\Programs\Avira
2014-11-18 15:58 - 2012-10-18 16:35 - 00000000 ____D () C:\Program Files\Avira
2014-11-18 15:57 - 2012-10-18 16:35 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Avira
2014-11-18 10:24 - 2013-02-09 18:28 - 00000000 ____D () C:\Program Files\AIMP3
2014-11-18 09:47 - 2008-04-14 12:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl
2014-11-17 19:37 - 2012-11-07 18:28 - 00000000 ____D () C:\Temp
2014-11-17 11:04 - 2013-01-21 15:38 - 00000342 _____ () C:\WINDOWS\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-515967899-1979792683-842925246-500.job
2014-11-17 10:40 - 2012-12-01 23:26 - 00000302 _____ () C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-515967899-1979792683-842925246-500.job
2014-11-13 21:27 - 2013-01-04 18:46 - 00000000 ____D () C:\Documents and Settings\Administrator\Application Data\HLSW
2014-11-13 13:25 - 2012-10-18 16:56 - 00701104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-11-13 13:25 - 2012-10-18 16:56 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-11-12 08:56 - 2013-04-19 18:52 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-04 23:00 - 2012-11-03 16:38 - 00000116 _____ () C:\WINDOWS\NeroDigital.ini
2014-11-04 23:00 - 2012-11-01 21:48 - 00044032 _____ () C:\Documents and Settings\Administrator\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-11-04 23:00 - 2012-10-18 16:33 - 00000000 ____D () C:\Program Files\The KMPlayer
2014-10-30 13:37 - 2012-12-12 18:00 - 00000000 ____D () C:\WINDOWS\system32\LogFiles
2014-10-30 08:37 - 2012-10-18 15:57 - 00000000 ____D () C:\Program Files\xerox
2014-10-27 09:43 - 2012-10-18 15:54 - 00000000 ____D () C:\WINDOWS\system32\DirectX
2014-10-27 00:13 - 2012-10-18 17:36 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Skype
2014-10-27 00:12 - 2013-01-23 14:46 - 00000000 ___RD () C:\Program Files\Skype
 
Some content of TEMP:
====================
C:\Documents and Settings\Administrator\Local Settings\Temp\avgnt.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\DseShExt-x86.dll
C:\Documents and Settings\Administrator\Local Settings\Temp\jre-7u55-windows-i586-iftw.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\KMP_3.8.0.122.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\lowproc.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\Quarantine.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\SDShelEx-win32.dll
C:\Documents and Settings\Administrator\Local Settings\Temp\SettingsManagerSetup.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\SHSetup.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\SimBundD.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\SkypeSetup.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\stubhelper.dll
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
==================== End Of Log =

FRST.txt


Линк към коментара
Сподели в други сайтове

Изтеглете edit-text.giffixlist.txt и го запазете в папката от която стартирахте FRST.exe.
Стартирайте FRST.exe и натиснете бутона Fix веднъж!
След като приключи, ако ви поиска рестарт - съгласете се. След рестарта публикувайте лог файла - fixlog.txt, който ще се създаде след работата на програмата.
 
Внимание: Скрипта е създаден за текущата система. Да не се ползва за други системи с подобни проблеми!

 

Пишете дали проблема остава!

 

Това е засега. :)

 

Поздрави!

Линк към коментара
Сподели в други сайтове

Май единственото което забелязвам е че хард диска все едно зарежда нещо, т.е.  по-шумен е от нормалното, но само като вкл мозила.

 

Поздрави!

Fixlog.txt

Линк към коментара
Сподели в други сайтове

 

Май единственото което забелязвам е че хард диска все едно зарежда нещо, т.е.  по-шумен е от нормалното, но само като вкл мозила.

 

Поздрави!

 

Не мисля, че това се дължи на зловредна активност. Аз под пишете дали проблема остава имах предвид дали изчезнаха рекламите в Mozilla след изпълнението на скрипта от предишния ми коментар.

Линк към коментара
Сподели в други сайтове

Много благодаря за помоща и отделеното време, а има ли начин за в бъдеще да мога да защитя компютъра си от подобни проблеми?

Линк към коментара
Сподели в други сайтове

Нека първо да проверим за остатъци:

 

 

 

СТЪПКА 1

  • Изтеглете и стартирайтe 6sv1DN9.jpgAdwCleaner.exe.
  • Натиснете бутона Scan.
  • AdwCleaner ще започне да проверява компютъра.
  • След като проверката приключи натиснете бутона Clean.
  • Програмата ще затвори всички излишни процеси и след почистването ще иска да рестартира машината. Съгласете се.
  • Ще се появи автоматично лог файл с името (AdwCleaner[s0].txt) в C:\Adwcleaner
  • Публикувайте съдържанието му в следващия си коментар.


     
    СТЪПКА 2
     

     
    Моля изтеглете icon1351185104.png Junkware Removal Tool на вашия десктоп.
  • Спрете временно работата на защитните програми.
  • Стартирайте инструмента JRT.exe
  • Ще се отвори ДОС прозорец. Натиснете което и да е копче от клавиатурата.
  • Затворете излишните приложения и всички браузъри и изчакайте проверката да завърши.
  • Ще се появи лог файл (който можете да намерите и ръчно на десктопа с името JRT.txt).
  • Моля копирайте съдържанието на лог файла в следващия си пост.


     
    СТЪПКА 3


     
    Моля изтеглете Malwarebytes Anti-Malware 2.0.3.1025 Final и я запазете на вашия десктоп.
  • Стартирайте файла mbam-setup-2.0.3.1025.exe и следвайте указанията за да инсталирате програмата.
  • След като инсталацията приключи се уверете че сте сложили отметка пред:
  • Launch Malwarebytes Anti-Malware
  • Отметката активираща пробния 14 дневен период също е маркиран по-подразбиране. Ако не желаете да тествате защитата в реално време на програмата през следващите 14 дни тогава премахнете отметката.
  • Натиснете бутона Finish.
  • Отидете до табът Settings > Detection and Protection > и под категорията Detection Options включете опцията "Scan for rootkits".
  • Отидете до табът Scan, сложете радио-бутона пред Threat Scan и след това натиснете бутона Scan Now >> . Ако е намерена актуализация тогава натиснете бутона Update Now.
  • Ще започне проверка за зловреден софтуер.
  • При някои инфекции можете да видите съобщението:
  • "Could not load DDA driver"
  • Натиснете "Yes" на това съобщение за да позволите драйвера да се зареди след рестарт.
  • Разрешете на компютъра да се рестартира и след това продължете с останалите инструкции.
  • След като проверката приключи натиснете бутона Apply Actions.
  • Изчакайте да се появи прозореца подканващ ви да рестартирате и след това натиснете бутона Yes.
  • След рестарта, когато се появи десктопа MBAM ще се зареди още веднъж.
  • Отидете то табът History > Application Logs.
  • Отворете рапорта с последната дата и час и натиснете бутона "Copy to Clipboard"
  • Сега вече поставете съдържанието на лог файла с клавишната комбинация Ctrl + V и го публикувайте в следващия си коментар.


     
    СТЪПКА 4
     

     
    1.Изтеглете Hitman Pro.
    За 32-битова система - dEMD6.gif.
    За 64-битова система - Download-button3.gif


    2.Стартирайте програмата.

    3.След като сте стартирали програмата като кликнете върху иконата 5vo5F.jpg и натиснете бутона „Напред“ като се съгласите с лицензионното споразумение (EULA).

    4.Сложете отметка пред "Не, искам да завърша еднократно сканиране на компютъра".

    5.Натиснете бутона „Напред“.

    6.Програмата ще започне да сканира. Времето за сканиране е около 2 минути.

    7.След завършване на сканирането от списъка с намерените неща (ако има такива) изберете Apply to all => Ignore.

    8.Натиснете "Next" и след това натиснете "Изнеси резултата в XML file" и запазете лог файла на десктопа.

    9.Архивирайте файла и го прикачете в следващия си коментар или копирайте съдържанието му в следващия си коментар.
     
    Забележка: Ако няма падащо меню, където да изберете ignore както на снимката:
     
    6-scanfin-choose.jpg
     
    Тогава просто затворете програмата след края на проверката (без да премахвате нищо)...след това отворете C:ProgramdataHitmanProLogs, отворете и публикувайте съдържанието на лог файла в следващия си коментар.

 

Колкото за предпазване от подобни напасти занапред...внимавайте какво кликате и инсталирате. Добра програмка за целта е Unchecky.

 

Поздрави!

Линк към коментара
Сподели в други сайтове

Здравейте,

 

Публикували сте много стар лог файл от adwcleaner:

 

Report created 06/06/2014 at 08:27:49

 

Моля, публикувайте лог файла от последната проверка.

 

Също така изтеглете edit-text.giffixlist.txt и го запазете в папката от която стартирахте FRST.exe.
Стартирайте FRST.exe и натиснете бутона Fix веднъж!
След като приключи, ако ви поиска рестарт - съгласете се. След рестарта публикувайте лог файла - fixlog.txt, който ще се създаде след работата на програмата.
 
Внимание: Скрипта е създаден за текущата система. Да не се ползва за други системи с подобни проблеми!

 

Пишете после как е положението. :)

 

Поздрави!

Линк към коментара
Сподели в други сайтове

Ами не виждам някакви нередности в работата на компютъра засега, много благодаря за отделеното време и за помоща която ми оказахте. Радва ме факта, че има още добри и умни хора които биха помогнали на някой в беда, и при това безкористно.

Още веднъж хиляди благодарности.

С уважение: Е. Вълков

AdwCleanerS2.txt

Fixlog.txt

Линк към коментара
Сподели в други сайтове

Здравейте,

 

Няколко финални препоръки:

 

1. Проверете за стари приложения с помощта на PatchMyPC.

 

2. Почистете Java Cache и премахнете остатъците остатъците от предишните JAVA инсталации по следния начин: (ако никога не сте инсталирали Java, то пропуснете тази точка).

  • Моля изтеглете JavaRa 2.6  и я разархивирайте на вашия десктоп.
  • Стартирайте файла JavaRa.exe.
  • Натиснете бутона Updata JavaRa Definitions и след това натиснете бутона Download. След като приключи просто натиснете бутона ОК.
  • Сега натиснете Remove JRE, тъй като вече деинсталирахте всички версии на JAVA в началото просто натиснете бутона Next.
  • Сега натиснете Perform Removal Routine за да премахнете всички остатъци от JAVA в регистъра и от компютъра.
  • Когато приключи натиснете бутона OK за да затворите съобщението.
  • Изберете Next за да пропуснете download процеса. Изберете бутона Next още веднъж.Сега изберете бутона Close this wizard и натиснете Finish.
  • От основното меню изберете сега Additional tasks.
  • Сложете отметка пред Remove startup entry, Remove Outdated JRE Firefox Extentions и Clean JRE Temp Files и натиснете бутона Run. Браузърите трябва да бъде затворени преди да се опитате да изпълните тази стъпка!
  • След като приключи успешно, ще видите съобщението: "Selected tasks completed successfully".
  • Ще се създаде лог файл в същата папка от която сте стартирали JavaRa.
  • Моля, публикувайте този файл в следващия си коментар. Ако е много голям го качете на dox.bg.
  • Затворете JavaRa с натискането на червения хикс.

 

3. За да почистим използваните от нас инструменти направете следното:

 

3.1 Изтеглете OTC.exe и го стартирайте. Натиснете бутона CleanUp!.
Рестартирайте компютъра, ако ви попита!
 

3.2 Изтеглете Delfix.exe и го стартирайте. Сложете отметка пред Remove disinfection tools (трябва да има такава по-подразбиране, но все пак да си кажа) => натиснете бутона Run

Инструмента ще се самоизтрие след като приключи своята задача! Ако има папки, които не са се изтрили след гореспоменатите процедури пишете и ще ги премахнем ръчно.

 

 

4. За подобряване на производителността (ако системата ви се вижда мудна) вижте следните няколко теми:

 

Оптимизиране на Windows с цел по-добра производителност

Ръководство за поддръжка на Windows (XP, Vista и 7) [Revision 2.0]

Какво да направя, ако компютърът ми работи бавно

Профилактика на компютъра,как?

 

Направете и една дефрагментация с MyDefrag за повишаване на производителноста при дисковите операции: (ще се отрази благоприятно и при често използваните програми):

 

Изтеглете MyDefrag и я инсталирайте.

 

Изтеглете следния архив и го разархивирайте в C:\Program Files\MyDefrag v4.3.1\Scripts

 

Стартирайте MyDefrag.exe и изберете System Disk Level V и посочете системния дял C: и натиснете Run

 

KcdlAEi.jpg

 

Може да отнеме доста време, защото за основа на скрипта са използвани скриптовете на Jaspion и на някои други потребители + мои лични настройки и модификации.

Скрипта ще направи приоритизация на често използваните програми и файлове.

След като приключи ще изпише Finished и можете да затворите програмата от X-са.

 

Рестартирайте системата.

 

5. Проверете системата си актуални драйвери от сайтовете на производителите на компонентите ако ви се занимава (не използвайте програми за автоматично обновяване на драйверите за да си спестите главоболията после) и направете пълна проверка за гадини с наличната ви антивирусна програма за всеки случай (защото тя все пак е базирана на дефиниции и ние може да сме изтървали нещо тъй като почистваме само това, което видим в логовете).

 

Поздрави и усмихната седмица! Ще маркирам случая като РЕШЕН! :bye1:

Линк към коментара
Сподели в други сайтове

Архивирана тема

Темата е твърде стара и е архивирана. Не можете да добавяте нови отговори в нея, но винаги можете да публикувате нова тема, в която да продължи дискусията. Регистрирайте се или влезте във вашия профил за да публикувате нова тема.

  • Разглеждащи това в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

  • Горещи теми в момента

  • Подобни теми

    • от CaptainJord
      Здравейте, от известно време системата ми не работи както обикновенно. Много често процесора е към 100%, както и другите статистики. Също така, докато съм пуснал някоя игра получавам рязки спадове на FPS, което не е нормално за компютъра ми. Имам стабилна конфигурация GTX 1050 TI 4gb I5 6600k. Теглих какви ли не програми за сканиране на malware - намираха доста зловредни файлове, но уж ги чистят, а пак продължава проблема...
       

       
      Addition.txt FRST.txt

    • от FrankyF
      Здравейте, на скоро ми излезе един попъп :

      И понеже нямах антивирусна преди това исках да направя профилактична проверка.
      Прикачвам FRST & Adition.
      Adition - https://dox.abv.bg/download?id=ec814d8d64# - Линк за сваляне
      ckfiles - https://dox.abv.bg/download?id=e280a29d87# - Линк за сваляне
      FRST - https://dox.abv.bg/download?id=bb2866b435# - Линк за сваляне
      Днес като стартирах PC  видях за около части от секундата 4 терминала които се отвориха и затвориха.
       
      Благодаря предварително.
      Поздрави
    • от blazarow09
      От скоро ползвам машината и след като я закупих(нова) Windows defender беше спрян по подразбиране и на негово място имаше Norton Security, като аз прецених да го оставя, въпреки, че винаги съм ползвал Windows Defender. Преди седмица-две, след сканиране на системата ми излязоха няколко зловредни файла и антивирусната започна да спрами за някакви BitCoin Miners, аз мислех, че съм ги зачистил, но явно все още има останали зловредни файлове и днес ми се наложи да отворя Device Manager-a, като получих това съобщение.
       
      Не усещам разлика в performance-a на самата машина, но искам да съм сигурен, че всичко е наред и няма файлове, които могат да ми навредят за в бъдеще.

      Прикачвам логовете от Farbar и се надявам да ми помогнете. Благодаря предварително!
      Addition.txt FRST.txt
    • от Yanichka
      Здравейте. Имам проблеми с лаптопа ми от известно време - много е бавен, пренатоварва се и CPU-то работи на по-малко от  50%.. Бях посъветвана първо да проверя за вируси и нежелани софтуери, преди да предприема други мерки. Лаптопът е DELL Latitude E5540, Intel inside core i7 vPro. Да кажем, че  е средно на около 6 годинки :)) Коя антивирусна програма бихте ми препоръчали? Ако имате нужда от още информация за лаптопа, само пишете ;))  Благодаря предварително
  • Дарение

×
×
  • Добави ново...

Информация

Поставихме бисквитки на устройството ви за най-добро потребителско изживяване. Можете да промените настройките си за бисквитки, или в противен случай приемаме, че сте съгласни с нашите Условия за ползване