Internet

Otvaraju mi se stranice same od sebe

rambox pet 24.5.2013 17:23
sinkee kaže...

dal se otvaraju random stranice tipa reklame il nes slicno, ak je onda vjerojatno neki spyware..

 

skini spybot search & destroy i pusti ga nek makne sve kaj nadje..

 

Ma kakav Spybot fučkaj ga, to je zastarjeli i loš program kojeg je vrjeme pregazilo odavno to sigurno.Nevinašce

 

Njemu treba HitmanPro to sigurno, dole ima link vezano oko toga pa ako HitmanPro nađe neku gamad onda nek iskoristi njegov besplatni Trial ključ za čiščenje gamadi i to je to.Cool

 

http://www.bug.hr/forum/topic/internet/kako-prepoznati-pravi-virus/134139.aspx?page=0&jumpto=2590991&sort=asc&view=flat

 

S druge strane tu je i besplatni Malewarebytes, s kojim je dosta napravit Quick Scan ili brzo skeniranje u potrazi za gamadi na Windowsima.{#}

 

http://www.filehippo.com/download_malwarebytes_anti_malware/

 

 

abeabe pet 24.5.2013 17:28

da random reklame mi dolaze ... malewarebytes sam maloprije koristio na full scan evo log :  Malwarebytes Anti-Malware (Trial) 1.75.0.1300
www.malwarebytes.org

Database version: v2013.05.24.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16576
Ermin :: ERMIN11 [administrator]

Protection: Enabled

24.5.2013. 10:30:42
mbam-log-2013-05-24 (10-30-42).txt

Scan type: Full scan (C:\|D:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 381419
Time elapsed: 44 minute(s), 35 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 3
HKCU\SOFTWARE\Funmoods (PUP.FunMoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\InstallCore\funmoods (PUP.FunMoods) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\InstallCore\funmoods (PUP.FunMoods) -> Quarantined and deleted successfully.

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
ali i dalje mi izbacuje reklame

dombo sub 25.5.2013 06:07
abeabe kaže...

Pozdrav,evo kao sto pise u naslovu stranice mi se same otvaraju  ako neko zna nesto o tome ili ima rjesenje neka se javi,hvala

 

Ako se to događa dok gledaš porno sadržaj onda ti je to čisto normalno. Naviknut ćeš s vremenom.

abeabe sub 25.5.2013 16:19

taman upalio program i izbacilo mi 3 reklame -.- ...evo log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.9.4 (05.06.2013:1)
OS: Windows 7 Ultimate x64
Ran by Ermin on sub 25.05.2013. at 16:13:26,80
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully stopped: [Service] defaulttabsearch
Successfully deleted: [Service] defaulttabsearch
Successfully stopped: [Service] defaulttabupdate
Successfully deleted: [Service] defaulttabupdate
Successfully stopped: [Service] yontoo desktop updater
Successfully deleted: [Service] yontoo desktop updater



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-259705996-4127975289-1982832926-1000\Software\Microsoft\Internet Explorer\Main\\Start Page



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babylontoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\conduit
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Failed to delete: [Registry Key] HKEY_CURRENT_USER\Software\datamngr
Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\datamngr
Failed to delete: [Registry Key] HKEY_CURRENT_USER\Software\datamngr_toolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\default tab
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\default tab
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\defaulttab
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\defaulttab
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\ilivid
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\systweak
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\Software\defaulttab
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\Software\smartbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\sprotector
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\appid\discoveryhelper.dll
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\appid\gifanimator.dll
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\appid\imtrprogress.dll
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\appid\imweb.dll
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\discoveryhelper.imesh6discovery
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\discoveryhelper.imesh6discovery.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\imweb.imwebcontrol
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\funmoodssetup_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\funmoodssetup_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\mybabylontb_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\mybabylontb_rasmancs
Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\datamngr
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sp global
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sprotector
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{23527E58-56B4-4712-BFD8-2D377A1714B4}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
Successfully deleted: [Registry Key] "hkey_local_machine\software\pip"



~~~ Files

Successfully deleted: [File] "C:\end"



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\bettersoft"
Successfully deleted: [Folder] "C:\ProgramData\browse2save"
Successfully deleted: [Folder] "C:\ProgramData\installmate"
Successfully deleted: [Folder] "C:\ProgramData\softsafe"
Successfully deleted: [Folder] "C:\ProgramData\tarma installer"
Successfully deleted: [Folder] "C:\Users\Ermin\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\Ermin\AppData\Roaming\defaulttab"
Successfully deleted: [Folder] "C:\Users\Ermin\AppData\Roaming\funmoods"
Successfully deleted: [Folder] "C:\Users\Ermin\AppData\Roaming\opencandy"
Successfully deleted: [Folder] "C:\Users\Ermin\AppData\Roaming\systweak"
Successfully deleted: [Folder] "C:\Users\Ermin\appdata\locallow\browse2save"
Successfully deleted: [Folder] "C:\Program Files (x86)\defaulttab"
Successfully deleted: [Folder] "C:\Program Files (x86)\imesh applications"
Successfully deleted: [Folder] "C:\Program Files (x86)\websearch"
Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\browse2save"



~~~ Chrome

Successfully deleted: [Folder] C:\Users\Ermin\appdata\local\Google\Chrome\User Data\Default\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\kdidombaedgpfiiedeimiebkmbilgmlc



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on sub 25.05.2013. at 16:18:21,79
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

rambox sub 25.5.2013 17:09
abeabe kaže...
pocelo mi je sad dolazit google chrome ne reagira

Potpuno deinstaliraj Chroome i onda bude ok, JRT je pobrisal smeče iz Chroome pa je to možda razlog da se izblesiral.Prvo deinstaliraj Chrome i to sa Revo Uninstaler, kako to ide u tom programu vidiš na dolnjem video i nema problema.Revo Uninstaler moš nač u ovom paketu programa link ispod, znači prvo Chroome tako deinstaliraj i onda ga ponovo instaliraj šta drugo.Cool

 

http://www.bug.hr/forum/topic/razni-softverski-problemi/kupio-novi-komp-kako-ga-odrzavati/122828.aspx?page=0&jumpto=2391074&sort=asc&view=flat

 

http://youtu.be/WoKkGfrbsi8

 

 

abeabe sub 25.5.2013 20:06

evo log # AdwCleaner v2.301 - Logfile created 05/25/2013 at 20:02:22
# Updated 16/05/2013 by Xplode
# Operating system : Windows 7 Ultimate Service Pack 1 (64 bits)
# User : Ermin - ERMIN11
# Boot Mode : Normal
# Running from : C:\Users\Ermin\Downloads\AdwCleaner.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

File Deleted : C:\Users\Ermin\AppData\Local\Temp\Uninstall.exe
Folder Deleted : C:\Program Files (x86)\TornTV.com
Folder Deleted : C:\ProgramData\APN
Folder Deleted : C:\ProgramData\BBrowsee2sauvee
Folder Deleted : C:\ProgramData\BuRRoWsye2save
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BBrowsee2sauvee
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BuRRoWsye2save
Folder Deleted : C:\ProgramData\SEarcHH-NNeWWTTaab
Folder Deleted : C:\Users\Ermin\AppData\Local\PackageAware
Folder Deleted : C:\Users\Ermin\AppData\Local\Temp\APN
Folder Deleted : C:\Users\Ermin\AppData\LocalLow\BBrowsee2sauvee
Folder Deleted : C:\Users\Ermin\AppData\LocalLow\BuRRoWsye2save
Folder Deleted : C:\Users\Ermin\AppData\LocalLow\SEarcHH-NNeWWTTaab
Folder Deleted : C:\Users\Ermin\AppData\Roaming\ExpressFiles
Folder Deleted : C:\Users\Ermin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com

***** [Registry] *****

Key Deleted : HKCU\Software\DataMngr
Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\ExpressFiles
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKCU\Software\5f6df8fe239ed41
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FC41815-FA4C-4F8B-B143-2C045C8EA2FC}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{21493C1F-D071-496A-9C27-450578888291}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{55C1727F-5535-4C2A-9601-8C2458608B48}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\DefaultTabBHO.DLL
Key Deleted : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowser
Key Deleted : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowser.1
Key Deleted : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX
Key Deleted : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX.1
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{403A885F-CB00-40C1-BDC1-EB09053194F7}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{55C1727F-5535-4C2A-9601-8C2458608B48}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{AC329328-7EC4-4C34-B672-0A2B90CB9B00}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\Software\DataMngr
Key Deleted : HKLM\Software\ExpressFiles
Key Deleted : HKLM\Software\InstallCore
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{872F3C0B-4462-424C-BB9F-74C6899B9F92}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\5f6df8fe239ed41
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{14F35FFC-522A-4DD1-A07E-6B8B65C6891E}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{3BF72F68-72D8-461D-A884-329D936C5581}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{78E9D883-93CD-4072-BEF3-38EE581E2839}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7F6AFBF1-E065-4627-A2FD-810366367D01}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{83AC1413-FCE4-4A46-9DD5-4F31F306E71F}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B6F8DA9F-2696-419E-A8A3-19BE41EF51BD}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C3F3165C-74D3-6FDB-3274-14FDA8698CFA}
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DefaultTab
Key Deleted : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IM
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CA1CE38C-F04C-471F-B9F3-083C58165C10}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OptimizerPro
Key Deleted : HKLM\SOFTWARE\Tarma Installer

***** [Internet Browsers] *****

-\\ Internet Explorer v10.0.9200.16576

[OK] Registry is clean.

-\\ Google Chrome v27.0.1453.94

File : C:\Users\Ermin\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [5794 octets] - [25/05/2013 20:01:47]
AdwCleaner[S1].txt - [5619 octets] - [25/05/2013 20:02:22]

########## EOF - C:\AdwCleaner[S1].txt - [5679 octets] ##########

peterstern9 sub 25.5.2013 20:23
dombo kaže...

 

Ako se to događa dok gledaš porno sadržaj onda ti je to čisto normalno. Naviknut ćeš s vremenom.

Vidim kolega, ti si se već davno naviknuo. Stari iskusni fan eksplicitnih ljubavnih drama iliti konkretnih ljubavnih drama.

rambox sub 25.5.2013 20:30
abeabe kaže...

napravio sam obadvoje al opet dolazi :S

Hm čudno a kroz koji browser se otvaraju stranice zapravo?Nevinašce

 

Vezano za ovo čišćenje sa JRT ili sa AdwareCleaner, to su alati slične namjene i prema logovima počistili su razno Adware smeče.Ja bi rekel da tebe muči neki loši program, kojeg si instaliral pa on otvara reklame a nije na popisu za počistit bilo kod JRT ili AdwareCleaner.

 

Jedino šta još može bit je neki Rootkit, kojeg HitmanPro a niti Malwarebytes ne detektiraju isto kao šta ne detektiraju taj neki loši program kojeg si nabacil na Windowse.Kak sam več i rekel prije, prema popisu počiščenog smeča preko JRT i AdwareCleaner tvoji Windowsi su u priličnom neredu tu je bilo svašta kao u nekom kontejneru za smeče fučkaj ga.Izlanuo seCool

djigibao sub 25.5.2013 20:37
abeabe kaže...

otvaraju mi se na svim browserima kad imam google chrome na njemu mi se otvara a kad ga obrisem i skinem operu otvara mi se na operi i internet exploreru 

 

Pogledaj malo HOST file (C:\WINDOWS\system32\drivers\etc).

 

Ako se zelis javit TOTAL-u prvo napravi ovo sto pise pa mu posalji linkove s LOG-om - KLIK

 

Mozes prije svega proc s TDSS Killer-om