Prijava na forum:
Ime:
Lozinka:
Prijavi me trajno:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:

ConQUIZtador
Trenutno vreme je: 19. Jul 2025, 13:49:14
nazadnapred
Korisnici koji su trenutno na forumu 0 članova i 1 gost pregledaju ovu temu.

 Napomena: Za sva pitanja u vezi kupovine novog hardware-a ili procene vrednosti i preporuke koristite - ovu temu

Spyware,sta je,kako radi,kako se zastititi? :: Kako rade mreze :: Burek Anti-virus software review :: Index tema koje ne treba propustiti

Idi dole
Stranice:
1 2 [Sve]
Počni novu temu Nova anketa Odgovor Štampaj Dodaj temu u favorite Pogledajte svoje poruke u temi
Tema: Autoupdate.exe  (Pročitano 4127 puta)
12. Jan 2013, 11:40:00
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
Browser
Opera 12.12
Prije dva dana mi je racunar strasno usporio, nisam mogao nista da radim na njemu sve dok ga ne restartujem. Juce sam otvorio Win task manager i pratio koji se programi pale dok mi zakoci komp. Uvijek se palio Autoupdate.exe i cim sam ga ugasio preko task managera racunar je ponovo ozivio. Eh sada, trazio sam po interentu kako da ga uklonim i svi kazu skini ovo, skini ono, skini nesto trece. Vec imam alat za uklanjanje malware-a ali ga ne moze da indentifikuje. Pitanje je, kako ukloniti ovo cudo?
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Prijatelj foruma
Poznata licnost

MC- argus

Zodijak
Pol Muškarac
Poruke 4467
Zastava
OS
Windows 7
Browser
Mozilla Firefox 18.0
mob
HTC 
Preuzmi OTL na desktop http://oldtimer.geekstogo.com/OTL.exe

Dvoklikom pokreni OTL;

klikni Run Scan;

Po završetku skeniranja, izveštaj ce se otvoriti u Notepad-u.

Kopiraj mi log.


Priheftaj ga.
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Clan u razvoju

Zodijak
Pol
Poruke 36
OS
Windows 7
Browser
Chrome 23.0.1271.64
pozdrav,
preporucujem revouninstaler koji resava sve probleme, cak i posle deinstalacije mozes (moras) brisanje ostataka iz registar baze podataka bez ikakvih opasnosti po druge programe, pokusaj....
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
OS
Windows XP
Browser
Opera 12.12
pozdrav,
preporucujem revouninstaler koji resava sve probleme, cak i posle deinstalacije mozes (moras) brisanje ostataka iz registar baze podataka bez ikakvih opasnosti po druge programe, pokusaj....
Da ga mogu naci na kompu uklonio bih ga, nije to nikakav problem. Problem je sto ga ne mogu naci a pojavljuje mi se u procesima. Ne mogu ga nacini ni u registry, bar ne na uobicajenim mjestima gdje bi se trebao da nalazi.

Izvoli .txt fajl sa logom.

Fajlovi prikačeni uz poruku (kliknite na slike za punu veličinu)

*
OTL.Txt (66.02 KB)
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Prijatelj foruma
Poznata licnost

MC- argus

Zodijak
Pol Muškarac
Poruke 4467
Zastava
OS
Windows 7
Browser
Mozilla Firefox 18.0
mob
HTC 
Imas ostatke dva antivirusa, a koliko vidim nijedan nije u funkciji, Avast i Bitdefender.

Pokreni oba ova alata, jedan pa drugi da pocistis AV ostatke.

http://www.avast.com/uninstall-utility
http://www.bitdefender.com/support/How-to-uninstall-Bitdefender-333.html



Korak2.

Pokreni OTL

U beli okvir prozora gde piše Custom Scans/Fixes iskopiraj sledeci tekst:

Kod:
:OTL
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}: "URL" = http://search.imesh.com/web?src=ieb&systemid=1&q={searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/home?AF=14276
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&babsrc=SP_def&AF=14276
IE - HKCU\..\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}: "URL" = http://slirsredirect.search.aol.com/redirector/sredir?sredir=843&query={searchTerms}&invocationType=tb50-ie-aolradio-chromesbox-en-us&tb_uuid=20100830093623328&tb_oid=19-09-2009&tb_mrud=30-08-2010
IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}: "URL" = http://search.imesh.com/web?src=ieb&systemid=1&q={searchTerms}
O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo\YontooIEClient.dll (Yontoo LLC)
O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found
O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm File not found
O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - Reg Error: Value error. File not found
O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - Reg Error: Value error. File not found
O33 - MountPoints2\{0531ed54-140b-11e0-8c1b-0030054d73bb}\Shell\AuToPlAy\CoMMand - "" = G:\cxjenk.exe
O33 - MountPoints2\{0531ed54-140b-11e0-8c1b-0030054d73bb}\Shell\AutoRun\command - "" = G:\cxjenk.exe
O33 - MountPoints2\{0531ed54-140b-11e0-8c1b-0030054d73bb}\Shell\ExPlorE\CommAnD - "" = G:\cxjenk.exe
O33 - MountPoints2\{0531ed54-140b-11e0-8c1b-0030054d73bb}\Shell\opEN\commAnD - "" = G:\cxjenk.exe
O33 - MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\Shell\AutoRun\command - "" = bmwm5\\\535dbiturbo.exe
O33 - MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\Shell\explore\command - "" = G:\
O33 - MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\Shell\Install\command - "" = G:\
O33 - MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\Shell\open\command - "" = G:\
O33 - MountPoints2\{313421ee-ea8b-11e0-8ca1-0030054d73bb}\Shell\AutoRun\command - "" = G:\bUgTKQ.eXe
O33 - MountPoints2\{313421ee-ea8b-11e0-8ca1-0030054d73bb}\Shell\Open\COMmaNd - "" = G:\bUGtkQ.exE
O33 - MountPoints2\{53601112-cb96-11de-8b6b-0030054d73bb}\Shell\AutoRun\command - "" = G:\bUgTKQ.eXe
O33 - MountPoints2\{53601112-cb96-11de-8b6b-0030054d73bb}\Shell\Open\COMmaNd - "" = G:\bUGtkQ.exE
O33 - MountPoints2\{68edbabe-29b0-11e1-8ccd-0030054d73bb}\Shell\AutoRun\command - "" = G:\bUgTKQ.eXe
O33 - MountPoints2\{68edbabe-29b0-11e1-8ccd-0030054d73bb}\Shell\Open\COMmaNd - "" = G:\bUGtkQ.exE
O33 - MountPoints2\{944b0796-af0a-11e0-8c7c-0030054d73bb}\Shell\AutoRun\command - "" = G:\bUgTKQ.eXe
O33 - MountPoints2\{944b0796-af0a-11e0-8c7c-0030054d73bb}\Shell\Open\COMmaNd - "" = G:\bUGtkQ.exE
O33 - MountPoints2\{97aa6ab7-f7e2-11e0-8caa-0030054d73bb}\Shell\AutoRun\command - "" = G:\bUgTKQ.eXe
O33 - MountPoints2\{97aa6ab7-f7e2-11e0-8caa-0030054d73bb}\Shell\Open\COMmaNd - "" = G:\bUGtkQ.exE
O33 - MountPoints2\{97aa6aca-f7e2-11e0-8caa-0030054d73bb}\Shell\AutoRun\command - "" = G:\bUgTKQ.eXe
O33 - MountPoints2\{97aa6aca-f7e2-11e0-8caa-0030054d73bb}\Shell\Open\COMmaNd - "" = G:\bUGtkQ.exE
O33 - MountPoints2\{97aa6ace-f7e2-11e0-8caa-0030054d73bb}\Shell\AutoRun\command - "" = G:\bUgTKQ.eXe
O33 - MountPoints2\{97aa6ace-f7e2-11e0-8caa-0030054d73bb}\Shell\Open\COMmaNd - "" = G:\bUGtkQ.exE
O33 - MountPoints2\{99478c2b-7a5d-11de-8b0e-a3ad42dadffb}\Shell\AutoRun\command - "" = G:\bUgTKQ.eXe
O33 - MountPoints2\{99478c2b-7a5d-11de-8b0e-a3ad42dadffb}\Shell\Open\COMmaNd - "" = G:\bUGtkQ.exE
O33 - MountPoints2\{99478c30-7a5d-11de-8b0e-a3ad42dadffb}\Shell\AutoRun\command - "" = luckasta//tamanten.exe
O33 - MountPoints2\{99478c30-7a5d-11de-8b0e-a3ad42dadffb}\Shell\Explore\command - "" = luckasta//tamanten.exe
O33 - MountPoints2\{99478c30-7a5d-11de-8b0e-a3ad42dadffb}\Shell\Open\command - "" = luckasta//tamanten.exe
O33 - MountPoints2\{d94d45ed-dd1d-11e0-8c9b-0030054d73bb}\Shell\AutoRun\command - "" = SnZWro.eXe
O33 - MountPoints2\{d94d45ed-dd1d-11e0-8c9b-0030054d73bb}\Shell\OPeN\coMMAnd - "" = SNzWro.exE

:commands
[CREATERESTOREPOINT]
[emptytemp]

Klikni taster Run Fix;

Log koji dobiješ iskopiraj ovde u poruci.
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
OS
Windows XP
Browser
Opera 12.12
Kod:
All processes killed
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}\ not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2A59}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}\ deleted successfully.
C:\Program Files\Yontoo\YontooIEClient.dll moved successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Translate this web page with Babylon\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Translate with Babylon\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0531ed54-140b-11e0-8c1b-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0531ed54-140b-11e0-8c1b-0030054d73bb}\ not found.
File G:\cxjenk.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0531ed54-140b-11e0-8c1b-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0531ed54-140b-11e0-8c1b-0030054d73bb}\ not found.
File G:\cxjenk.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0531ed54-140b-11e0-8c1b-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0531ed54-140b-11e0-8c1b-0030054d73bb}\ not found.
File G:\cxjenk.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0531ed54-140b-11e0-8c1b-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0531ed54-140b-11e0-8c1b-0030054d73bb}\ not found.
File G:\cxjenk.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{207e342c-1746-11e0-8c1c-0030054d73bb}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{207e342c-1746-11e0-8c1c-0030054d73bb}\ not found.
File bmwm5\\\535dbiturbo.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{207e342c-1746-11e0-8c1c-0030054d73bb}\ not found.
File G:\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{207e342c-1746-11e0-8c1c-0030054d73bb}\ not found.
File G:\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{207e342c-1746-11e0-8c1c-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{207e342c-1746-11e0-8c1c-0030054d73bb}\ not found.
File G:\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{313421ee-ea8b-11e0-8ca1-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{313421ee-ea8b-11e0-8ca1-0030054d73bb}\ not found.
File G:\bUgTKQ.eXe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{313421ee-ea8b-11e0-8ca1-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{313421ee-ea8b-11e0-8ca1-0030054d73bb}\ not found.
File G:\bUGtkQ.exE not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{53601112-cb96-11de-8b6b-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53601112-cb96-11de-8b6b-0030054d73bb}\ not found.
File G:\bUgTKQ.eXe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{53601112-cb96-11de-8b6b-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53601112-cb96-11de-8b6b-0030054d73bb}\ not found.
File G:\bUGtkQ.exE not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{68edbabe-29b0-11e1-8ccd-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68edbabe-29b0-11e1-8ccd-0030054d73bb}\ not found.
File G:\bUgTKQ.eXe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{68edbabe-29b0-11e1-8ccd-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68edbabe-29b0-11e1-8ccd-0030054d73bb}\ not found.
File G:\bUGtkQ.exE not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{944b0796-af0a-11e0-8c7c-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{944b0796-af0a-11e0-8c7c-0030054d73bb}\ not found.
File G:\bUgTKQ.eXe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{944b0796-af0a-11e0-8c7c-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{944b0796-af0a-11e0-8c7c-0030054d73bb}\ not found.
File G:\bUGtkQ.exE not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{97aa6ab7-f7e2-11e0-8caa-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97aa6ab7-f7e2-11e0-8caa-0030054d73bb}\ not found.
File G:\bUgTKQ.eXe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{97aa6ab7-f7e2-11e0-8caa-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97aa6ab7-f7e2-11e0-8caa-0030054d73bb}\ not found.
File G:\bUGtkQ.exE not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{97aa6aca-f7e2-11e0-8caa-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97aa6aca-f7e2-11e0-8caa-0030054d73bb}\ not found.
File G:\bUgTKQ.eXe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{97aa6aca-f7e2-11e0-8caa-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97aa6aca-f7e2-11e0-8caa-0030054d73bb}\ not found.
File G:\bUGtkQ.exE not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{97aa6ace-f7e2-11e0-8caa-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97aa6ace-f7e2-11e0-8caa-0030054d73bb}\ not found.
File G:\bUgTKQ.eXe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{97aa6ace-f7e2-11e0-8caa-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{97aa6ace-f7e2-11e0-8caa-0030054d73bb}\ not found.
File G:\bUGtkQ.exE not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{99478c2b-7a5d-11de-8b0e-a3ad42dadffb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99478c2b-7a5d-11de-8b0e-a3ad42dadffb}\ not found.
File G:\bUgTKQ.eXe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{99478c2b-7a5d-11de-8b0e-a3ad42dadffb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99478c2b-7a5d-11de-8b0e-a3ad42dadffb}\ not found.
File G:\bUGtkQ.exE not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{99478c30-7a5d-11de-8b0e-a3ad42dadffb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99478c30-7a5d-11de-8b0e-a3ad42dadffb}\ not found.
File luckasta//tamanten.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{99478c30-7a5d-11de-8b0e-a3ad42dadffb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99478c30-7a5d-11de-8b0e-a3ad42dadffb}\ not found.
File luckasta//tamanten.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{99478c30-7a5d-11de-8b0e-a3ad42dadffb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99478c30-7a5d-11de-8b0e-a3ad42dadffb}\ not found.
File luckasta//tamanten.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d94d45ed-dd1d-11e0-8c9b-0030054d73bb}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d94d45ed-dd1d-11e0-8c9b-0030054d73bb}\ not found.
File SnZWro.eXe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d94d45ed-dd1d-11e0-8c9b-0030054d73bb}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d94d45ed-dd1d-11e0-8c9b-0030054d73bb}\ not found.
File SNzWro.exE not found.
========== COMMANDS ==========
Restore point Set: OTL Restore Point

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 3599779 bytes

User: Misho
->Temp folder emptied: 1383599 bytes
->Temporary Internet Files folder emptied: 2624780 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Opera cache emptied: 24195853 bytes
->Flash cache emptied: 12195 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 2402044 bytes
%systemroot%\System32 .tmp files removed: 17537553 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 81920 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 268435464 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 33754483 bytes

Total Files Cleaned = 338.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 01122013_175504

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Ovo do sada nista nije pomoglo, i dalje se pojavljuje.
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Prijatelj foruma
Poznata licnost

MC- argus

Zodijak
Pol Muškarac
Poruke 4467
Zastava
OS
Windows 7
Browser
Mozilla Firefox 18.0
mob
HTC 
Ajde deinstaliraj taj Adwanced Care, ja mislim da je to do njega.

Obrisi ga pa javi da li se pojavljuje, da ne pustamo drugi alat, prvo to hocu da proverim.

Jesi deinstalirao antivirus programe?
« Poslednja izmena: 12. Jan 2013, 18:34:18 od ivicaspas »
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
OS
Windows XP
Browser
Opera 12.12
Ajde deinstaliraj taj Adwanced Care, ja mislim da je to do njega.

Obrisi ga pa javi da li se pojavljuje, da ne pustamo drugi alat, prvo to hocu da proverim.

Jesi deinstalirao antivirus programe?
Ovako. To mi se desilo prije dva dana. Mislio sam da je do anti virusa ( jer se ponekad zna desiti, tako sam cuo), pa sam obrisao avast na nacin koji si mi ti gore naveo. Nakon toga sam instalirao Advanced system care bas da uklonim te malwere i slicne stvari, ali kada sam procesljao nije bilo nista. Dakle, nije ni do ASC ni to antivirusa ( bar nije do Avasta, dva puta sam ga uklonio -tacnije jednom).
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Prijatelj foruma
Poznata licnost

MC- argus

Zodijak
Pol Muškarac
Poruke 4467
Zastava
OS
Windows 7
Browser
Mozilla Firefox 18.0
mob
HTC 
U OTL logu koji sam trazio prisutan je Avast i to aktivan, znaci da nije dobro deinstaliran.
Takodje je prisutan BitDefender.

Koji Antivirus trenutno koristis?
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
OS
Windows XP
Browser
Opera 12.12
Niti jedan. Cak se ne sjecam ni kada sam BitDefender koristio.
Ne kontam kako nije avast dobro deinstaliran. Izabrao sam verziju koju koristim, nasao gdje sam ga instalirao i uklonio ga iz safe moda.
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Prijatelj foruma
Poznata licnost

MC- argus

Zodijak
Pol Muškarac
Poruke 4467
Zastava
OS
Windows 7
Browser
Mozilla Firefox 18.0
mob
HTC 
Ovo je iz tvog izvestaja, to su aktivni drajveri i servisi dva Antivirus programa na tvom racunaru:

Kod:
SRV - File not found [Auto | Stopped] -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe -- (aswUpdSv)

M] (BitDefender) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\bdfsfltr.sys -- (bdfsfltr)
DRV - [2011/11/21 18:58:58 | 000,340,624 | ---- | M] (BitDefender S.R.L.) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\trufos.sys -- (Trufos)
[2012/09/21 09:21:46 | 000,294,868 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2012/09/21 09:21:45 | 000,294,868 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2012/09/21 09:21:45 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin


Odradi uninstall alatima koje sam ti dao i postavi svezi OTL izvestaj da bi znao da li su uklonjeni ostaci Antivirus programa.
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
OS
Windows XP
Browser
Opera 12.12
Ovo je iz tvog izvestaja, to su aktivni drajveri i servisi dva Antivirus programa na tvom racunaru:

Kod:
SRV - File not found [Auto | Stopped] -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe -- (aswUpdSv)

M] (BitDefender) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\bdfsfltr.sys -- (bdfsfltr)
DRV - [2011/11/21 18:58:58 | 000,340,624 | ---- | M] (BitDefender S.R.L.) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\trufos.sys -- (Trufos)
[2012/09/21 09:21:46 | 000,294,868 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2012/09/21 09:21:45 | 000,294,868 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2012/09/21 09:21:45 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin


Odradi uninstall alatima koje sam ti dao i postavi svezi OTL izvestaj da bi znao da li su uklonjeni ostaci Antivirus programa.

Ok je to, uradio sam ja uninstall bitdefendera sa onim alatom koji si mi dao, isto tako sam uradio i sa avastom. Ali kazem ti da mi se to pocelo desavati prije dva dana. Avast imam mnogo duze od toga, pa ne vidim vezu izmedju autoupdate.exe i avasta. Takodjer ASC sam tek juce instalirao, dakle ni on ne moze da bude razlog tog update-a.
Evo ponovo izvjestaj:
http://www.2shared.com/document/zjvRwvpv/OTL.html
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Prijatelj foruma
Poznata licnost

MC- argus

Zodijak
Pol Muškarac
Poruke 4467
Zastava
OS
Windows 7
Browser
Mozilla Firefox 18.0
mob
HTC 

Pokreni OTL

U beli okvir prozora gde piše Custom Scans/Fixes iskopiraj sledeci tekst:

Kod:
:processes
killallprocesses

:files
C:\WINDOWS\system32\drivers\trufos.sys
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\System32\nvdrsdb0.bin
C:\WINDOWS\System32\nvdrsdb1.bin
C:\WINDOWS\System32\nvdrssel.bin

:services
aswUpdSv
Trufos

:OTL
O2 - BHO: (no name) - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - No CLSID value found.

:commands
[CREATERESTOREPOINT]
[emptytemp]

Klikni taster Run Fix;

Log koji dobiješ iskopiraj ovde u poruci.
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
OS
Windows XP
Browser
Opera 12.12
Izvoli:
Kod:
All processes killed
========== PROCESSES ==========
========== FILES ==========
C:\WINDOWS\system32\drivers\trufos.sys moved successfully.
File\Folder C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe not found.
C:\WINDOWS\System32\nvdrsdb0.bin moved successfully.
C:\WINDOWS\System32\nvdrsdb1.bin moved successfully.
C:\WINDOWS\System32\nvdrssel.bin moved successfully.
========== SERVICES/DRIVERS ==========
Service aswUpdSv stopped successfully!
Service aswUpdSv deleted successfully!
Service Trufos stopped successfully!
Service Trufos deleted successfully!
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9CFACCB6-2F3F-4177-94EA-0D2B72D384C1}\ not found.
========== COMMANDS ==========
Restore point Set: OTL Restore Point

[EMPTYTEMP]

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Misho
->Temp folder emptied: 926632 bytes
->Temporary Internet Files folder emptied: 1336582 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Opera cache emptied: 23776689 bytes
->Flash cache emptied: 1077 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 67604 bytes

Total Files Cleaned = 25.00 mb


OTL by OldTimer - Version 3.2.69.0 log created on 01122013_202005

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Prijatelj foruma
Poznata licnost

MC- argus

Zodijak
Pol Muškarac
Poruke 4467
Zastava
OS
Windows 7
Browser
Mozilla Firefox 18.0
mob
HTC 
Jos se pojavljuje?

Uslikaj mi task manager da vidim o cemu se radi.
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
OS
Windows XP
Browser
Opera 12.12
Hmmm, sada kada sam pokrenuo ASC pokrenuo mi se i autoupdate.exe. Evo slika:
http://i.imgur.com/xLuhN.png
« Poslednja izmena: 12. Jan 2013, 21:02:14 od iamuser »
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Prijatelj foruma
Poznata licnost

MC- argus

Zodijak
Pol Muškarac
Poruke 4467
Zastava
OS
Windows 7
Browser
Mozilla Firefox 18.0
mob
HTC 
Dobro, ocistili smo ostatke antivirusa oba, malware nemas to je od nekog programa, prati stanje i ako se pojavi uslikaj.

Ne vidim sliku.
« Poslednja izmena: 12. Jan 2013, 21:05:14 od ivicaspas »
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
OS
Windows XP
Browser
Opera 12.12
http://i.imgur.com/QLPeU.png
Imgur me zeza  Smile
Od kojeg programa bi to moglo da bude? Nedavno sam samo BS player instalirao i kodec za njega. Izbacuje mi neku gresku za BS player kada pokrecem racunar, da nije do njega?
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Prijatelj foruma
Poznata licnost

MC- argus

Zodijak
Pol Muškarac
Poruke 4467
Zastava
OS
Windows 7
Browser
Mozilla Firefox 18.0
mob
HTC 
Moguce, obrisi i njega i taj codeck.


Ajde jos nesto da proverim


Preuzmi program DDS na desktop   http://download.bleepingcomputer.com/sUBs/dds.scr
Dvoklikom pokreni DDS
Sacekaj malo, izbacice ti dva loga
Kopiraj mi oba loga > koristi dodatne opcije i prilozi fajl.
« Poslednja izmena: 12. Jan 2013, 21:28:20 od ivicaspas »
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Hronicar svakodnevice

Just another wannabe god.

Zodijak
Pol Muškarac
Poruke 718
OS
Windows XP
Browser
Opera 12.12
Ovako, izbrisao sam Advanced System Care i citav dan mi se nije pojavio autoupdate.exe. Ukoliko se sutra pojavi, uradicu ovo sto si predlozio. Hvala na pomoci Ivice, nazvacu svoje prvo dijete po tebi  Smile
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Idi gore
Stranice:
1 2 [Sve]
Počni novu temu Nova anketa Odgovor Štampaj Dodaj temu u favorite Pogledajte svoje poruke u temi
Trenutno vreme je: 19. Jul 2025, 13:49:14
nazadnapred
Prebaci se na:  

Poslednji odgovor u temi napisan je pre više od 6 meseci.  

Temu ne bi trebalo "iskopavati" osim u slučaju da imate nešto važno da dodate. Ako ipak želite napisati komentar, kliknite na dugme "Odgovori" u meniju iznad ove poruke. Postoje teme kod kojih su odgovori dobrodošli bez obzira na to koliko je vremena od prošlog prošlo. Npr. teme o određenom piscu, knjizi, muzičaru, glumcu i sl. Nemojte da vas ovaj spisak ograničava, ali nemojte ni pisati na teme koje su završena priča.

web design

Forum Info: Banneri Foruma :: Burek Toolbar :: Burek Prodavnica :: Burek Quiz :: Najcesca pitanja :: Tim Foruma :: Prijava zloupotrebe

Izvori vesti: Blic :: Wikipedia :: Mondo :: Press :: Naša mreža :: Sportska Centrala :: Glas Javnosti :: Kurir :: Mikro :: B92 Sport :: RTS :: Danas

Prijatelji foruma: Triviador :: Nova godina Beograd :: nova godina restorani :: FTW.rs :: MojaPijaca :: Pojacalo :: 011info :: Burgos :: Sudski tumač Novi Beograd

Pravne Informacije: Pravilnik Foruma :: Politika privatnosti :: Uslovi koriscenja :: O nama :: Marketing :: Kontakt :: Sitemap

All content on this website is property of "Burek.com" and, as such, they may not be used on other websites without written permission.

Copyright © 2002- "Burek.com", all rights reserved. Performance: 0.116 sec za 14 q. Powered by: SMF. © 2005, Simple Machines LLC.