C:\Users\d4nepo\AppData\Roaming\Server.exe (MOLIM ZA POMOC)

C:\Users\d4nepo\AppData\Roaming\Server.exe (MOLIM ZA POMOC)

offline
  • d4nepo  Male
  • Novi MyCity građanin
  • Pridružio: 31 Avg 2012
  • Poruke: 19

Pozdrav,

Avast mi je pronasao u lokaciji C:\Users\d4nepo\AppData\Roaming\Server.exe Win:32 Agent ANTB
Neznam ukoliko uklonim server.exe dali mozda necu sistem sjebati pa eto da vas pitam ko je voljan da mi kaze sta trebam da uradim.

DDS--->

DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 10.6.2
Run by Dane at 9:26:57 on 2012-08-31
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.43.1031.18.3582.2093 [GMT 2:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Users\Dane\AppData\Local\Google\Update\1.3.21.115\GoogleCrashHandler.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\WUDFHost.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Skype\Phone\Skype.exe
C:\Users\Dane\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dane\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dane\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dane\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dane\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre7\bin\ssv.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre7\bin\jp2ssv.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [Google Update] "c:\users\dane\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "c:\program files\amd avt\bin\kdbsync.exe" aml
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
mRun: [SwitchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
mRun: [AdobeCS5ServiceManager] "c:\program files\common files\adobe\cs5servicemanager\CS5ServiceManager.exe" -launchedbylogin
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
TCP: DhcpNameServer = 10.0.0.138
TCP: Interfaces\{512695F2-1DA6-4C34-8812-0B2A864117BD} : DhcpNameServer = 10.0.0.138
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
.
============= SERVICES / DRIVERS ===============
.
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2012-8-25 729752]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2012-8-25 355632]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2012-8-28 242240]
R2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\common files\adobe\arm\1.0\armsvc.exe [2012-7-27 63960]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2012-7-4 217088]
R2 AMD FUEL Service;AMD FUEL Service;c:\program files\ati technologies\ati.ace\fuel\Fuel.Service.exe [2012-7-4 291840]
R2 AODDriver4.1;AODDriver4.1;c:\program files\ati technologies\ati.ace\fuel\i386\aoddriver2.sys [2012-3-5 45184]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2012-8-25 21256]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2012-8-25 58680]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2012-8-25 44808]
R2 TeamViewer7;TeamViewer 7;c:\program files\teamviewer\version7\TeamViewer_Service.exe [2012-8-25 2673064]
R3 amdiox86;AMD IO Driver;c:\windows\system32\drivers\amdiox86.sys [2012-7-21 37944]
R3 amdkmdag;amdkmdag;c:\windows\system32\drivers\atikmdag.sys [2012-7-4 10070016]
R3 amdkmdap;amdkmdap;c:\windows\system32\drivers\atikmpag.sys [2012-7-4 290304]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW73.sys [2012-2-23 86544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-7-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-8-25 250056]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 SwitchBoard;SwitchBoard;c:\program files\common files\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-7-21 52224]
S3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\wat\WatAdminSvc.exe [2012-7-21 1343400]
.
=============== File Associations ===============
.
txtfile="c:\program files\pspad editor\PSPad.exe" "%1"
.
=============== Created Last 30 ================
.
2012-08-31 00:52:11 -------- d-----w- c:\users\dane\appdata\local\{6B8520D4-5744-44FD-AE11-30CE356929D7}
2012-08-30 12:51:25 -------- d-----w- c:\users\dane\appdata\local\{A372A39E-8748-49AA-8FB9-D31457EC8FD2}
2012-08-30 00:45:54 -------- d-----w- C:\games
2012-08-29 19:35:43 56200 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{7c759a42-7464-4048-8f3b-6467f7c4dee8}\offreg.dll
2012-08-29 19:25:14 -------- d-s---w- c:\program files\HLSW
2012-08-29 19:25:14 -------- d-----w- c:\users\dane\appdata\roaming\HLSW
2012-08-29 10:55:07 -------- d-----w- c:\users\dane\appdata\local\{9310ED3B-87D9-4E65-A2B1-1DDFCC808A24}
2012-08-29 06:50:18 -------- d-----w- c:\users\dane\appdata\roaming\PSpad
2012-08-29 06:49:57 -------- d-----w- c:\program files\PSPad editor
2012-08-29 00:14:27 7022536 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{7c759a42-7464-4048-8f3b-6467f7c4dee8}\mpengine.dll
2012-08-28 21:53:57 -------- d-----w- c:\program files\Rockstar Games
2012-08-28 21:53:42 32768 ----a-w- c:\program files\common files\installshield\professional\runtime\Objectps.dll
2012-08-28 21:53:41 749568 ----a-w- c:\program files\common files\installshield\professional\runtime\10\50\intel32\iKernel.dll
2012-08-28 21:53:41 69715 ----a-w- c:\program files\common files\installshield\professional\runtime\10\50\intel32\ctor.dll
2012-08-28 21:53:41 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\10\50\intel32\DotNetInstaller.exe
2012-08-28 21:53:41 274432 ----a-w- c:\program files\common files\installshield\professional\runtime\10\50\intel32\iscript.dll
2012-08-28 21:53:41 180224 ----a-w- c:\program files\common files\installshield\professional\runtime\10\50\intel32\iuser.dll
2012-08-28 21:53:35 323716 ----a-w- c:\program files\common files\installshield\professional\runtime\10\50\intel32\setup.dll
2012-08-28 21:53:35 192644 ----a-w- c:\program files\common files\installshield\professional\runtime\10\50\intel32\iGdi.dll
2012-08-28 21:52:13 242240 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2012-08-28 21:52:10 -------- d-----w- c:\users\dane\appdata\roaming\DAEMON Tools Lite
2012-08-28 21:52:06 -------- d-----w- c:\program files\DAEMON Tools Lite
2012-08-28 21:51:42 -------- d-----w- c:\programdata\DAEMON Tools Lite
2012-08-28 15:13:55 -------- d-----w- c:\users\dane\appdata\local\{362757B2-C5D9-420C-895E-4F73E5D18589}
2012-08-28 03:42:03 -------- d-----w- c:\users\dane\appdata\local\{C6ED4CCC-8AFD-4E8F-A061-5096FE0D67E4}
2012-08-27 15:12:41 -------- d-----w- c:\users\dane\appdata\local\{91EF1A46-4E2F-4595-8497-CBA56D7551F5}
2012-08-26 09:56:13 -------- d-----w- c:\users\dane\appdata\local\{0C4B8CFF-0C5D-426E-B8A7-05861FF70065}
2012-08-25 17:42:35 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-08-25 17:42:35 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-08-25 16:57:05 -------- d-----w- c:\users\dane\appdata\local\Opera
2012-08-25 16:42:49 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2012-08-25 16:33:39 -------- d-----w- c:\users\dane\appdata\local\Adobe
2012-08-25 12:09:31 -------- d-----w- c:\users\dane\appdata\local\{C3BF7F70-620D-43D8-AD83-28562B70EBF8}
2012-08-25 08:55:54 -------- d-----w- c:\users\dane\temp
2012-08-25 08:55:49 -------- d-----w- c:\program files\TeamViewer
2012-08-25 08:07:03 44784 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-08-25 08:07:01 729752 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-08-25 08:06:58 58680 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-08-25 08:06:05 41224 ----a-w- c:\windows\avastSS.scr
2012-08-25 08:05:54 -------- d-----w- c:\programdata\AVAST Software
2012-08-25 08:05:54 -------- d-----w- c:\program files\AVAST Software
2012-08-25 00:26:54 821736 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-08-25 00:26:54 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-08-25 00:26:40 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-08-24 10:59:07 -------- d-----w- c:\users\dane\appdata\local\{7F690863-F81A-4146-A326-A7E4F1FAB94E}
2012-08-24 03:31:10 -------- d-----w- c:\users\dane\appdata\local\{E16FD7AB-F8EF-4FD7-9C8D-C6F9DA17790B}
2012-08-23 15:32:29 -------- d-----w- c:\users\dane\appdata\local\{A06491FC-92FE-4956-BEA4-8B0AF3EC49A1}
2012-08-22 19:37:24 -------- d-----w- c:\users\dane\daneotac
2012-08-22 03:42:41 -------- d-----w- c:\users\dane\appdata\local\{268BE98F-5399-48F5-AE24-04882F91B0D8}
2012-08-21 15:18:36 -------- d-----w- c:\users\dane\appdata\local\{907F0964-E4CB-42E9-A069-1CF3BA3A17C6}
2012-08-20 15:16:54 -------- d-----w- c:\users\dane\appdata\local\{8F4C4773-013B-44DF-9289-AB03A72232A1}
2012-08-19 16:33:10 -------- d-----w- c:\users\dane\appdata\local\{6614B11F-BA37-453B-B53A-ACBA6B1841D3}
2012-08-19 16:33:10 -------- d-----w- c:\users\dane\appdata\local\{240A7BCE-F54A-4F50-947B-8F84C49D240C}
2012-08-19 16:03:16 400896 ----a-w- c:\windows\system32\srcore.dll
2012-08-19 16:03:15 2345984 ----a-w- c:\windows\system32\win32k.sys
2012-08-19 16:03:13 492032 ----a-w- c:\windows\system32\win32spl.dll
2012-08-19 16:03:13 317440 ----a-w- c:\windows\system32\spoolsv.exe
2012-08-19 16:03:09 41984 ----a-w- c:\windows\system32\browcli.dll
2012-08-19 16:03:09 102912 ----a-w- c:\windows\system32\browser.dll
2012-08-19 16:03:08 769024 ----a-w- c:\windows\system32\localspl.dll
.
==================== Find3M ====================
.
2012-07-23 19:09:39 50176 ----a-w- c:\users\dane\appdata\roaming\Server.exe
2012-07-22 08:47:00 152576 ----a-w- c:\windows\system32\msclmd.dll
2012-07-21 11:15:09 249856 ----a-w- c:\windows\system32\uxtheme.dll
2012-07-21 11:15:03 37376 ----a-w- c:\windows\system32\themeservice.dll
2012-07-21 10:30:13 348160 ----a-w- c:\windows\system32\msvcr71.dll
2012-07-21 10:30:13 1060864 ----a-w- c:\windows\system32\mfc71.dll
2012-07-20 19:12:10 0 ----a-w- c:\windows\ativpsrm.bin
2012-07-04 06:58:12 10070016 ----a-w- c:\windows\system32\drivers\atikmdag.sys
2012-07-04 06:35:46 19586048 ----a-w- c:\windows\system32\atioglxx.dll
2012-07-04 06:27:18 159744 ----a-w- c:\windows\system32\atiapfxx.exe
2012-07-04 06:27:08 918528 ----a-w- c:\windows\system32\aticfx32.dll
2012-07-04 06:21:46 442368 ----a-w- c:\windows\system32\ATIDEMGX.dll
2012-07-04 06:21:18 453632 ----a-w- c:\windows\system32\atieclxx.exe
2012-07-04 06:20:42 217088 ----a-w- c:\windows\system32\atiesrxx.exe
2012-07-04 06:19:24 163840 ----a-w- c:\windows\system32\atitmmxx.dll
2012-07-04 06:19:14 20992 ----a-w- c:\windows\system32\atimuixx.dll
2012-07-04 06:19:06 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2012-07-04 06:18:18 6811648 ----a-w- c:\windows\system32\atidxx32.dll
2012-07-04 05:36:22 58368 ----a-w- c:\windows\system32\coinst_8.97.100.3.dll
2012-07-04 05:36:14 1960960 ----a-w- c:\windows\system32\atiumdmv.dll
2012-07-04 05:35:14 6245888 ----a-w- c:\windows\system32\atiumdag.dll
2012-07-04 05:28:52 4749312 ----a-w- c:\windows\system32\atiumdva.dll
2012-07-04 05:11:38 56832 ----a-w- c:\windows\system32\atimpc32.dll
2012-07-04 05:11:38 56832 ----a-w- c:\windows\system32\amdpcom32.dll
2012-07-04 05:11:28 364544 ----a-w- c:\windows\system32\atiadlxx.dll
2012-07-04 05:11:16 14848 ----a-w- c:\windows\system32\atiglpxx.dll
2012-07-04 05:11:04 33280 ----a-w- c:\windows\system32\atigktxx.dll
2012-07-04 05:10:30 290304 ----a-w- c:\windows\system32\drivers\atikmpag.sys
2012-07-04 05:09:56 42496 ----a-w- c:\windows\system32\atiuxpag.dll
2012-07-04 05:09:42 32768 ----a-w- c:\windows\system32\atiu9pag.dll
2012-07-04 05:09:10 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2012-07-04 05:04:28 46080 ----a-w- c:\windows\system32\aticalrt.dll
2012-07-04 05:04:18 44544 ----a-w- c:\windows\system32\aticalcl.dll
2012-07-04 04:59:40 13402112 ----a-w- c:\windows\system32\aticaldd.dll
2012-07-04 00:32:18 159232 ----a-w- c:\windows\system32\clinfo.exe
2012-07-04 00:32:02 65024 ----a-w- c:\windows\system32\OpenVideo.dll
2012-07-04 00:31:52 56320 ----a-w- c:\windows\system32\OVDecode.dll
2012-07-04 00:30:58 13008384 ----a-w- c:\windows\system32\amdocl.dll
2012-07-04 00:30:08 50176 ----a-w- c:\windows\system32\OpenCL.dll
2012-06-29 00:16:58 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-06-29 00:09:01 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-06-29 00:08:59 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-06-29 00:04:43 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-06-29 00:00:45 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-06-06 05:05:52 1390080 ----a-w- c:\windows\system32\msxml6.dll
2012-06-06 05:05:52 1236992 ----a-w- c:\windows\system32\msxml3.dll
2012-06-06 05:03:06 805376 ----a-w- c:\windows\system32\cdosys.dll
2012-06-02 22:12:32 2422272 ----a-w- c:\windows\system32\wucltux.dll
2012-06-02 22:12:13 88576 ----a-w- c:\windows\system32\wudriver.dll
2012-06-02 13:19:42 171904 ----a-w- c:\windows\system32\wuwebv.dll
2012-06-02 13:12:20 33792 ----a-w- c:\windows\system32\wuapp.exe
.
============= FINISH: 9:27:42,86 ===============

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Pozdrav.

Nisi detaljno ispratio uputstvo, nedostaju ti Attach i GMER 1, 2, 3 izveštaji.

offline
  • d4nepo  Male
  • Novi MyCity građanin
  • Pridružio: 31 Avg 2012
  • Poruke: 19

ivance95 ::Pozdrav.

Nisi detaljno ispratio uputstvo, nedostaju ti Attach i GMER 1, 2, 3 izveštaji.

Pa mene samo interesuje dali smem fajl da brisem server.exe ili bih pao sistem

offline
  • Pridružio: 04 Jul 2011
  • Poruke: 5424

Ne možemo ovako napamet da ti odgovorimo, postavi potrebne izveštaje, a ja ili neko od kolega će ih pregledati i reći ti šta da radiš.


Ivance95 (AMF Tim)

offline
  • d4nepo  Male
  • Novi MyCity građanin
  • Pridružio: 31 Avg 2012
  • Poruke: 19

Sredjeno moze lock

Ko je trenutno na forumu
 

Ukupno su 844 korisnika na forumu :: 9 registrovanih, 0 sakrivenih i 835 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: Atomski čoban, BlekMen, Boris90, doloress, Fabius, HrcAk47, Japidson, koom0001, Leonov