Provera instalacije novog Windowsa

Provera instalacije novog Windowsa

offline
  • Pridružio: 07 Nov 2007
  • Poruke: 80
  • Gde živiš: Bgd; Address: +44° 48' 54.62", +20° 29' 50.96"

Sinoć sam seo i reinstalirao zaraženi Win. Po instalaciji upotrebio sam novi Antivirus, odma instalitao Spybot. Tek onda sam instalirao drajvere i ono što mi je neophodno za rad. Kad vidim da mi neki od program prijavljuje instalaciju explorera.exe
Naravno nisam dozvolio Samo je pitanje oklen je stigao i da li se nije nakačio. Da ne sponinjem da imam problem sa podizanjem Wina sa D particije. O tome sam u drugom topicu pisao. U ambulanti ima i o problemu kada je bio zaražen komp

Zači sada imam Webroot, mislim da ga je on prijavio prvi pre no što sam instalirao ZAlarma i spybot.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:41:52, on 19.3.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\Webroot\WebrootSecurity\WRConsumerService.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Webroot\WebrootSecurity\SpySweeper.exe
C:\Program Files\Nitro PDF\Professional\NitroPDFPrinterMonitor.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Webroot\WebrootSecurity\SpySweeperUI.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
E:\PRGRAM FAILS- nediraj\win_PortablApps_mini_programi\PortableApps\1BandwidthMeterPro\BWMeterPro.exe
E:\PRGRAM FAILS- nediraj\win_PortablApps_mini_programi\PortableApps\1_CCsetup208\CCleaner.exe
C:\PROGRA~1\FLOCK\FLOCK.EXE
C:\Documents and Settings\Predrag\Desktop\New Folder\TR3.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [Link mogu videti samo ulogovani korisnici]
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [Link mogu videti samo ulogovani korisnici]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [Link mogu videti samo ulogovani korisnici]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [Link mogu videti samo ulogovani korisnici]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [Link mogu videti samo ulogovani korisnici]
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [Link mogu videti samo ulogovani korisnici]
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\WebrootSecurity\SpySweeperUI.exe" /startintray
O4 - HKLM\..\Run: [NeroFilterCheck] "C:\WINDOWS\system32\NeroCheck.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] "C:\WINDOWS\system32\ctfmon.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - [Link mogu videti samo ulogovani korisnici]\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. (www.webroot.com) - C:\Program Files\Webroot\WebrootSecurity\SpySweeper.exe
O23 - Service: Webroot Client Service (WRConsumerService) - Webroot Software, Inc. - C:\Program Files\Webroot\WebrootSecurity\WRConsumerService.exe

--
End of file - 4928 bytes



offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Log je cist....



offline
  • Pridružio: 07 Nov 2007
  • Poruke: 80
  • Gde živiš: Bgd; Address: +44° 48' 54.62", +20° 29' 50.96"

Odllično, hvala na trudu.

Ko je trenutno na forumu
 

Ukupno su 1292 korisnika na forumu :: 158 registrovanih, 11 sakrivenih i 1123 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 6018 - dana 19 Dec 2025 13:41

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: -[CoA]-, 33 bren, 357magnum, A.R.Chafee.Jr., Agape, Aleksej, aleph_one, aramis s, Aska, Asparagus, b07, babaroga, bankulen, bato_banjaluka, bax0904, Bivan, blue, Bojan198527, bojan581, Bojke549, bokisha253, boro975, boromir, Boroš, Botovac, boxbole, BOXRR, brundo65, Bubimir, BWG, BZ, CCCP, Chainsaw, chichabg, Cicumile, Cirkon, Citalac, Comyymoc, dacanaldo, darionis, DeerHunter, Despot Đurađ, dj.teodorovicreg, Dolinc, dozorni, dragan_mig31, dule10savic, dulleo, Dungorth, dushan, Dusko Nikolin, eagle.rs, El-Komadante, ElGenius, ElvisP, fijufijukrozkapiju55, Georgius, Giskard, goran.vvv, Goran_, havoc995, ivan1973, ivan_8282, Ivanmateja, Jablan, Jan, JK, Jonbonjovi, jopicus, Jovan.D, Jozo74, kendzo-andzo-boni-fju, Klass, knutveliki, Koridor, kuntalo, kybonacci, lakson001, lcc, leptirleptir, Lester Freamon, Levi, ljuba, loon123, lord sir giga, LostInSpaceandTime, Lucije Kvint, Macalone, Manjane, marsovac 2, MaRtInsrbija1993, mat, mercedesamg, mgolub, milenko crazy north, Milometer, mir juzni, mix1, mkukoleca, Mrav Obrad, N.e.m.a.nj.a., Novakomp, omen, Orlova, Pekman, ping15, Podmukli neprijatelj, Prečanin30, proka89, RajkoB, Ray1973, Robin, rodoljub, rovac, RS28, ruma, S.Palestinac, sajorg, sasics, savaskytec, Savkec, Sevatar, Sevetar, Sharpshooter, sistem22, Sitan_Lopov, slowhand, sosko, Srky Boy, Srle993, Srna, StankoVrankovic, Steeeefan, stefan95, strelac07, suton, tecataki, TheDictator, ujke, uruk, Vatreni Zmaj, Velibor Radoja, Vica1958, Viceroy, vidra boy, vladaa012, VladaKG1980, wulfy, xAlex2, XBMC, yiyi, Zec, zgoljo, zivojin32, zlaya011, Zmaj Ognjeni Vuk, Žrnov, 800077