[ bobo 75 @ 13.09.2008. 14:32 ] @
Prije nego što objasnim o čemu se radi pozdravio bih sve na forumu i izvinjavam se ako sam nešto pogriješio

Od prije neki dan na Mozilli mi se pojavljuje ovakav problem da li bi neko mogao da mi pomogne uradio sam bukvalno sve mijenjao jezik u Preferences ali kad kliknem na home pojavi se treća slika
Unaprijed hvala


[Ovu poruku je menjao bobo 75 dana 13.09.2008. u 15:45 GMT+1]
[ kristi1 @ 13.09.2008. 15:42 ] @
bobo daj postavi HJT log, moguce da ti se u start page uvalila ta adresa. Skini ga odavde http://download.hijackthis.eu/HJTInstall.exe klikni na prvi tab odozgo, kad se pojavi log iskopiraj ga i postavi ovde.
[ bobo 75 @ 13.09.2008. 17:18 ] @
Evo ga log nadam se da sam dobro postavio

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:14:22, on 13.9.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iolo\System Mechanic Professional 6\SMSystemAnalyzer.exe
C:\Program Files\MemTurbo30\MemTurbo.exe
C:\Program Files\a-squared Anti-Dialer\a2service.exe
C:\WINDOWS\ATKKBService.exe
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\Common Files\MicroWorld\Agent\MWASER.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\system32\WgaTray.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = socks=
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = plimus.com,www.plimus.com,regnow.com,www.regnow.com,
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: TGTSoft Explorer Toolbar Changer - {C333CF63-767F-4831-94AC-E683D962C63C} - C:\Program Files\TGTSoft\StyleXP\TGT_BHO.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SMSystemAnalyzer] "C:\Program Files\iolo\System Mechanic Professional 6\SMSystemAnalyzer.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: MemTurbo.lnk = C:\Program Files\MemTurbo30\MemTurbo.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O17 - HKLM\System\CCS\Services\Tcpip\..\{25C65EA4-5DEC-467C-9414-7FC17653EF49}: NameServer = 195.66.160.1,195.66.160.2
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: a-squared Anti-Dialer Service (a2AntiDialer) - Emsi Software GmbH - C:\Program Files\a-squared Anti-Dialer\a2service.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MWAgent - MicroWorld Technologies Inc. - C:\Program Files\Common Files\MicroWorld\Agent\MWASER.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe

--
End of file - 6259 bytes
[ sanja2010 @ 13.09.2008. 17:49 ] @
Hmmmm meni ovaj home lici na default mozillin... Nego... probaj da ides na www.google.com/ncr pa onda javi.
[ bobo 75 @ 13.09.2008. 17:53 ] @
Da ali kad posjetim ovaj link otvara mi ovo
[ kristi1 @ 13.09.2008. 18:45 ] @
Ne znam sta da ti kazem, je si probao sa komplet reinstalacijom firefoxa, mozda te zeza ovaj ProxyOverride, ako ne znas sta je to fixuj obe ove linije
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = socks=
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = plimus.com,www.plimus.com,regnow.com,www.regnow.com,
[ bobo 75 @ 13.09.2008. 19:09 ] @
Probao sam i to reinstalirao sam ali opet isto a ovo ne znam šta je
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = socks=
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = plimus.com,www.plimus.com,regnow.com,www.regnow.com
ne znam je li sigurno za fix
[ kristi1 @ 13.09.2008. 20:36 ] @
Ma slobodno ga fixuj nista nece da se desi, a imas tu i putanju pa ga rucno obrisi, posto HJT samo sprecava njegovo pokretanje ali ne i brisanje.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings
[ bobo 75 @ 13.09.2008. 20:43 ] @
Evo sad sam ga obrisao ali ga nema u regedit
Oprosti što te ovako smaram
[ kristi1 @ 13.09.2008. 20:58 ] @
Dobro nista onda a kako je sad stanje jel se popravilo nesto.
[ bobo 75 @ 13.09.2008. 21:02 ] @
Još nije
Poludio sam
[ bobe84 @ 13.09.2008. 21:15 ] @
Bobo sta se deshava kad otvorish na primer ovo: http://www.google.com/firefox
ili mozda ovo: http://www.google.rs/firefox
Ajd otvori pa javi
pozdrav!
[ kristi1 @ 13.09.2008. 21:18 ] @
Veruj ne znam sta da ti kazem, sacekaj mozda ima neko neki predlog. Pusti ovaj program da ti skenira komp za svaki slucaj, to sto ja ne vidim ne mora da znaci da nemas nekog malware-a http://www.malwarebytes.org/mbam.php

[ bobo 75 @ 13.09.2008. 22:13 ] @
bobe 84
na prvom linku ovo slika 1
na drugom ovo slika 2



Kristy evo probaću sad
skenirao sam i opet isto
uradio sam u safe mode potom sam ga deinstalirao sa revo uninstalerom i opet instalirao i ništa
[ sanja2010 @ 13.09.2008. 22:21 ] @
Jel si probao sa www.google.com/ncr pa onda da otvaras home?
[ bobo 75 @ 13.09.2008. 22:37 ] @
Jesam ali opet Netherlands čak sam primjetio i uexploreru da je isto
Pogledaj pa stvarno sam sad psihički pukao
[ sanja2010 @ 13.09.2008. 22:49 ] @
NCR znaci No Country Recognition. Google-u se iz tvog IP-a cini da si iz Holandije pa malo zaglupavi. Ja sam se tako prvi put iscimala kada me je stalno redirektovao na nemacki...
[ bobo 75 @ 13.09.2008. 22:55 ] @
A da znaš samo kako me to nervira kad bih se ovoga riješio pao bi mi kamen sa srca
Ne znam više šta da radim
[ Stefan Jocic @ 14.09.2008. 10:32 ] @
Instaliraj program Hotspot Shield koji je besplatan i mozes ga skinuti ovde http://www.anchorfree.com/downloads/hotspot-shield/thank-you-CS/ .Posle startovanja OS-a,upali program i sacekaj 15 sekundi i probaj da sa startovanjem Mozille.Samo da dodam da je ovaj program odlican,jer dozvoljava gledanje televizije svim korisnicima van amerike na Hulu.com .Princip rada ovog programa jeste da ne dozvoli ocitavanje lokacije putem IP adrese.
[ bobo 75 @ 14.09.2008. 11:12 ] @
E hvala ti evo sad ću pokušati da uradim znači instaliram ovaj program pa onda restart pa ga pokrenem ako sam razumio,
a kad ukucam početnu starnu google http://www.google.com/firefox?...rls=org.mozilla:en-US:official on mi prebaci na Netherlands.Znači otvorim Tools - Options - Main - u Home page ukucam ovu adresu a on mi otvori Netherlands.Nevjerovatno.
[ kristi1 @ 14.09.2008. 11:43 ] @
Bobo je si proverio sta imas u hohsts file, ako imas bilo sta osim 127.0.0.1 - localhost obrisi slobodno.
[ bobo 75 @ 14.09.2008. 11:55 ] @
Jesam Kristi išao sam na c -windows -system 32 - drivers - etc - host - pa delete unutar njega sve i opet isto
Pa ne znam više šta da radim poluđeh
[ Pali zari @ 14.09.2008. 12:36 ] @
ako imas ptt adsl onda je mozda u tome stvar , meni je tako bila pocetna stranica na nemackom i njihov ip nekih par dana onda se sve vratilo u normalu samo od sebe, probaj da skines spybot pa skeniraj sa njim ..
[ bobo 75 @ 14.09.2008. 13:07 ] @
Ne nisam preko ptt a skenirao sam sa spy boot i ništa
[ night-shift @ 14.09.2008. 13:14 ] @
U Firefoxu: Tools -> Options -> Content -> Languages -> Choose pa proveri šta ti tu stoji



Inače problem je 99% do pogrešnog prepoznavanja IP adrese od strane Google-a, ali bi sa ovim trebalo da ti otvara Google koji želiš (koji jezik namestiš prvi u listi u podešavanjima Firefoxa).
[ bobo 75 @ 14.09.2008. 13:23 ] @
evo
[ GoLiJaT @ 14.09.2008. 17:44 ] @
Problem je u prepoznavanju IP adrese od strane google-a, prije nekoliko dana doslo je do mijenjanja ip adresa u nekim dijelovima Podgorice. Nisi jedini sa tim problemom, za sada znam barem 15 ljudi koji imaju isti problem:-)
[ bobo 75 @ 14.09.2008. 18:34 ] @
Zezaš me pa ne mogu da vjerujem nervni slom sam doživio čovječe svašta