Usporen rad racunara(veoma usporen)

Usporen rad racunara(veoma usporen)

offline
  • Pridružio: 12 Avg 2008
  • Poruke: 708
  • Gde živiš: Bogu iza tregera!

Ja sam kod sestre, pokvaren je cd citac tako da sistem nemogu da reinstaliram.
Pokusao sam sa USB-a, ali imam nekih problema nesto bas nece, da sada nebih smarao oko toga da makar ovako probam malo poboljsati rad racunara...Smile

Kao sto naziv teme kaze, racunar je nevjerovatno spor.
Sve je usporeno, video na YT uzasno steka(stopa/zastajkuje).
Mislim da su driveri ok(ja sam nesto trazio i ubacio)
Evo informacije iz Speccy-a o konfiguraciji
Operating System
   MS Windows XP Professional 32-bit SP3
CPU
   Intel Pentium 4
   Northwood 0.13um Technology
RAM
   256 MB Single-Channel DDR @ 166MHz (2.5-3-3-7)
Motherboard
   FUJITSU SIEMENS D1562 (CPU)
Graphics
   AL1712 (1280x960@60Hz)
   Intel(R) 82865G Graphics Controller
Hard Drives
   39.1GB SAMSUNG SAMSUNG SP0411N (PATA)   21 °C
Optical Drives
   No optical disk drives detected
Audio
   SB Audigy LS

Jeste malo rama, ali mislim da nebi trebalo da bude bas ovako sporo...
A sada po pravilima da nastavim.

DSS;
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_30
Run by Administrator at 15:04:00 on 2012-01-13
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.247.38 [GMT 1:00]
.
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\program files\real\realplayer\update\realsched.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Avast\AvastSvc.exe
C:\Program Files\Avast\AvastUI.exe
C:\Program Files\Speccy\Speccy.exe
C:\WINDOWS\system32\wuauclt.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://start.drp.su/
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast\aswWebRepIE.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\avast\aswWebRepIE.dll
uRun: [Google Update] "c:\documents and settings\administrator\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [RemoteControl] "c:\program files\cyberlink\powerdvd\PDVDServ.exe"
mRun: [LanguageShortcut] "c:\program files\cyberlink\powerdvd\language\Language.exe"
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [NeroFilterCheck] c:\program files\common files\ahead\lib\NeroCheck.exe
mRun: [avast] "c:\program files\avast\avastUI.exe" /nogui
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
TCP: DhcpNameServer = 77.239.64.19 77.239.64.20
TCP: Interfaces\{95EDE164-AF13-47CF-8F41-3D496B8E9882} : DhcpNameServer = 77.239.64.19 77.239.64.20
Notify: igfxcui - igfxdev.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\administrator\application data\mozilla\firefox\profiles\p2zhb4ag.default\
FF - prefs.js: browser.startup.homepage - www.google.com
FF - plugin: c:\documents and settings\administrator\local settings\application data\google\update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll
FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\pando networks\media booster\npPandoWebPlugin.dll
.
============= SERVICES / DRIVERS ===============
.
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2012-1-13 314456]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2012-1-13 20568]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast\AvastSvc.exe [2012-1-13 44768]
R3 cpuz135;cpuz135;\??\c:\docume~1\admini~1\locals~1\temp\cpuz135\cpuz135_x32.sys --> c:\docume~1\admini~1\locals~1\temp\cpuz135\cpuz135_x32.sys [?]
R4 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys --> c:\windows\system32\drivers\epfwtdir.sys [?]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2012-1-13 435032]
SUnknown NOD32FiXTemDono;NOD32FiXTemDono; [x]
.
=============== Created Last 30 ================
.
2012-01-13 13:58:33 -------- d-----w- c:\program files\Speccy
2012-01-13 13:39:12 435032 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-01-13 13:37:56 41184 ----a-w- c:\windows\avastSS.scr
2012-01-13 13:36:28 -------- d-----w- c:\program files\Avast
2012-01-13 13:36:28 -------- d-----w- c:\documents and settings\all users\application data\AVAST Software
2012-01-13 13:35:53 -------- d-----w- c:\program files\SIW
2012-01-13 12:55:41 43992 ----a-w- c:\program files\mozilla firefox\mozutils.dll
2012-01-13 12:55:40 626688 ----a-w- c:\program files\mozilla firefox\msvcr80.dll
2012-01-13 12:55:40 548864 ----a-w- c:\program files\mozilla firefox\msvcp80.dll
2012-01-13 12:55:40 479232 ----a-w- c:\program files\mozilla firefox\msvcm80.dll
2012-01-12 23:11:24 -------- d-----w- c:\program files\Nero
2012-01-12 23:11:24 -------- d-----w- c:\documents and settings\all users\application data\Nero
2012-01-12 23:08:24 47616 ----a-w- c:\program files\windows media player\msoobci.dll
2012-01-12 23:08:23 819200 ----a-w- c:\program files\windows media player\wmsetsdk.exe
2012-01-12 23:04:47 -------- d-----w- c:\windows\RegisteredPackages
2012-01-12 20:23:21 -------- d-----w- c:\program files\uTorrent
2012-01-12 20:22:29 -------- d-----w- c:\documents and settings\administrator\application data\uTorrent
2012-01-11 15:02:23 -------- d-----w- c:\documents and settings\administrator\application data\ElevatedDiagnostics
2012-01-11 13:53:05 -------- d-----w- c:\windows\system32\ReinstallBackups
2012-01-11 13:17:20 73728 ----a-w- c:\windows\system32\javacpl.cpl
2012-01-11 13:07:24 -------- d-----w- c:\program files\JDownloader
2012-01-11 13:07:24 -------- d-----w- c:\program files\common files\i4j_jres
2011-12-26 18:40:38 -------- d-----w- C:\SG Interactive
2011-12-26 17:53:59 -------- d-----w- c:\documents and settings\administrator\local settings\application data\PMB Files
2011-12-26 17:53:54 -------- d-----w- c:\documents and settings\all users\application data\PMB Files
2011-12-26 17:53:00 -------- d-----w- c:\program files\Pando Networks
.
==================== Find3M ====================
.
2012-01-11 13:16:45 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-11-29 14:45:10 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-11-19 06:01:26 499712 ----a-w- c:\windows\system32\msvcp71.dll
2011-11-19 06:01:26 348160 ----a-w- c:\windows\system32\msvcr71.dll
.
=================== ROOTKIT ====================
.
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Windows 5.1.2600
.
CreateFile("\\.\PHYSICALDRIVE0"): The process cannot access the file because it is being used by another process.
device: opened successfully
user: error reading MBR
.
Disk trace:
called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys intelide.sys PCIIDEX.SYS
1 nt!IofCallDriver[0x804E37C5] -> \Device\Harddisk0\DR0[0x8131F030]
3 CLASSPNP[0xF95CCFD7] -> nt!IofCallDriver[0x804E37C5] -> \Device\0000005d[0x812B3348]
5 ACPI[0xF9543620] -> nt!IofCallDriver[0x804E37C5] -> \Device\Ide\IdeDeviceP1T1L0-9[0x812F3030]
kernel: MBR read successfully
_asm { XOR AX, AX; MOV SS, AX; MOV SP, 0x7c00; STI ; PUSH AX; POP ES; PUSH AX; POP DS; CLD ; MOV SI, 0x7c1b; MOV DI, 0x61b; PUSH AX; PUSH DI; MOV CX, 0x1e5; REP MOVSB ; RETF ; MOV BP, 0x7be; MOV CL, 0x4; CMP [BP+0x0], CH; JL 0x2e; JNZ 0x3a; }
user != kernel MBR !!!
.
============= FINISH: 15:05:21.54 ===============


Attach Izvjestaj
https://www.mycity.rs/must-login.png
*******************************************
GMER Izvjestaji

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

https://www.mycity.rs/must-login.png

Da napomenem, za ova skeniranja i ujedno da napravim ovu temu trebalo mi je oko 2:30h

offline
  • Fil  Male
  • Legendarni građanin
  • Pridružio: 11 Jun 2009
  • Poruke: 16586

Preuzmi sUBs-ov ComboFix sa sledeće adrese na Desktop:


Bleeping Computer
Klikni desnim tasterom na link i odaberi opciju Save Target As... (Save Link As..., Save Linked Content As... ili sličnu);
Kada se otvori dijalog za izbor lokacije na kojoj treba sačuvati file, odaberi Desktop i klikni Save.




Kada preuzimanje programa bude završeno:
deaktiviraj zaštitni softver (uputstvo);
zatvori pokrenute programe;
dvoklikom pokreni program ComboFix;
u prozoru koji se otvori klikni "I Agree".

U toku rada, ComboFix će:proveriti postoji li novija verzija programa:
klikni Yes ako bude ponuđeno preuzimanje iste.
ako Recovery Console nije instalirana, ponuditi instalaciju:
obavezno prihvati klikom na Yes i isprati postupak.
postaviti/dati određeni broj upita/obaveštenja:
prihvati klikom na Yes ili OK.
po potrebi, restartovati Windows (više puta);
na kraju rada, otvoriti Notepad sa izveštajem o skeniranju.


Iskopiraj izveštaj koji je ComboFix napravio u temu na forumu:
klikni desnim tasterom miša u prozor Notepad-a i izaberi Select All;
klikni desnim tasterom miša na obeleženi tekst i izaberi Copy;
klikni desnim tasterom miša u polje za pisanje poruke i izaberi Paste.


Napomena:Izveštaj će biti sačuvan pod nazivom ComboFix.txt na sistemskoj particiji (tipična lokacija: C:\ComboFix.txt);
Ukoliko nakon slanja poruke primetiš da izveštaj nije kompletan, iskoristi opciju Prikači fajl za prilaganje file-a C:\ComboFix.txt uz poruku.

offline
  • Pridružio: 12 Avg 2008
  • Poruke: 708
  • Gde živiš: Bogu iza tregera!

Napisano: 14 Jan 2012 1:09

ComboFix 12-01-13.05 - Administrator 01/14/2012 0:55.1.1 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.247.5 [GMT 1:00]
Running from: c:\documents and settings\Administrator\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((( Files Created from 2011-12-14 to 2012-01-14 )))))))))))))))))))))))))))))))
.
.
2012-01-13 13:58 . 2012-01-13 13:58 -------- d-----w- c:\program files\Speccy
2012-01-13 13:39 . 2011-11-28 17:51 20568 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-01-13 13:39 . 2011-11-28 17:53 314456 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-01-13 13:39 . 2011-11-28 17:52 34392 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2012-01-13 13:39 . 2011-11-28 17:52 52952 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-01-13 13:39 . 2011-11-28 17:53 435032 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-01-13 13:39 . 2011-11-28 17:52 111320 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2012-01-13 13:39 . 2011-11-28 17:51 105176 ----a-w- c:\windows\system32\drivers\aswmon.sys
2012-01-13 13:39 . 2011-11-28 17:48 30808 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2012-01-13 13:37 . 2011-11-28 18:01 41184 ----a-w- c:\windows\avastSS.scr
2012-01-13 13:37 . 2011-11-28 18:01 199816 ----a-w- c:\windows\system32\aswBoot.exe
2012-01-13 13:36 . 2012-01-13 16:52 -------- d-----w- c:\program files\Avast
2012-01-13 13:36 . 2012-01-13 13:36 -------- d-----w- c:\documents and settings\All Users\Application Data\AVAST Software
2012-01-13 13:35 . 2012-01-13 13:35 -------- d-----w- c:\program files\SIW
2012-01-13 12:55 . 2012-01-13 12:55 43992 ----a-w- c:\program files\Mozilla Firefox\mozutils.dll
2012-01-13 12:55 . 2012-01-13 12:55 626688 ----a-w- c:\program files\Mozilla Firefox\msvcr80.dll
2012-01-13 12:55 . 2012-01-13 12:55 548864 ----a-w- c:\program files\Mozilla Firefox\msvcp80.dll
2012-01-13 12:55 . 2012-01-13 12:55 479232 ----a-w- c:\program files\Mozilla Firefox\msvcm80.dll
2012-01-12 23:27 . 2012-01-12 23:27 -------- d-----w- c:\documents and settings\All Users\Application Data\Ahead
2012-01-12 23:11 . 2012-01-12 23:24 -------- d-----w- c:\program files\Common Files\Ahead
2012-01-12 23:11 . 2012-01-12 23:11 -------- d-----w- c:\documents and settings\All Users\Application Data\Nero
2012-01-12 23:11 . 2012-01-12 23:11 -------- d-----w- c:\program files\Nero
2012-01-12 23:08 . 2004-08-11 00:45 47616 ----a-w- c:\program files\Windows Media Player\msoobci.dll
2012-01-12 23:08 . 2004-08-11 00:45 819200 ----a-w- c:\program files\Windows Media Player\wmsetsdk.exe
2012-01-12 20:23 . 2012-01-12 20:23 -------- d-----w- c:\program files\uTorrent
2012-01-12 20:22 . 2012-01-12 22:16 -------- d-----w- c:\documents and settings\Administrator\Application Data\uTorrent
2012-01-11 15:02 . 2012-01-11 15:02 -------- d-----w- c:\documents and settings\Administrator\Application Data\ElevatedDiagnostics
2012-01-11 13:18 . 2012-01-11 13:18 -------- d-----w- c:\program files\Common Files\Java
2012-01-11 13:17 . 2012-01-11 13:16 73728 ----a-w- c:\windows\system32\javacpl.cpl
2012-01-11 13:16 . 2012-01-11 13:16 -------- d-----w- c:\program files\Java
2012-01-11 13:07 . 2012-01-11 13:20 -------- d-----w- c:\program files\JDownloader
2012-01-11 13:07 . 2012-01-11 13:07 -------- d-----w- c:\program files\Common Files\i4j_jres
2011-12-26 18:40 . 2011-12-26 18:40 -------- d-----w- C:\SG Interactive
2011-12-26 17:53 . 2011-12-26 20:26 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\PMB Files
2011-12-26 17:53 . 2011-12-26 17:54 -------- d-----w- c:\documents and settings\All Users\Application Data\PMB Files
2011-12-26 17:53 . 2011-12-26 17:53 -------- d-----w- c:\program files\Pando Networks
2011-12-25 18:59 . 2011-12-25 18:59 -------- d-----w- c:\documents and settings\Administrator\Application Data\CyberLink
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-11 13:16 . 2011-12-02 14:25 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-11-29 14:45 . 2011-11-29 14:45 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-11-19 06:01 . 2011-11-19 06:01 499712 ----a-w- c:\windows\system32\msvcp71.dll
2011-11-19 06:01 . 2011-11-19 06:01 348160 ----a-w- c:\windows\system32\msvcr71.dll
2012-01-13 12:55 . 2011-10-04 07:59 121816 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2005-09-20 94208]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2005-09-20 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2005-09-20 114688]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-28 35696]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2006-11-23 56928]
"LanguageShortcut"="c:\program files\CyberLink\PowerDVD\Language\Language.exe" [2006-12-06 54832]
"TkBellExe"="c:\program files\real\realplayer\update\realsched.exe" [2011-11-19 296056]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2008-05-28 570664]
"avast"="c:\program files\Avast\avastUI.exe" [2011-11-28 3744552]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"57098:TCP"= 57098:TCP:Pando Media Booster
"57098:UDP"= 57098:UDP:Pando Media Booster
.
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [1/13/2012 2:39 PM 435032]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [1/13/2012 2:39 PM 314456]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [1/13/2012 2:39 PM 20568]
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - ASWSNX
.
Contents of the 'Scheduled Tasks' folder
.
2012-01-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1606980848-484763869-1417001333-500Core.job
- c:\documents and settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-08-09 22:31]
.
2012-01-13 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1606980848-484763869-1417001333-500UA.job
- c:\documents and settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-08-09 22:31]
.
2012-01-13 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-1606980848-484763869-1417001333-500.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2011-11-09 00:14]
.
2012-01-13 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-1606980848-484763869-1417001333-500.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2011-11-09 00:14]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://start.drp.su/
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 77.239.64.19 77.239.64.20
FF - ProfilePath - c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\p2zhb4ag.default\
FF - prefs.js: browser.startup.homepage - www.google.com
.
- - - - ORPHANS REMOVED - - - -
.
AddRemove-RealPlayer 15.0 - c:\program files\real\realplayer\Update\r1puninst.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-01-14 01:04
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-1606980848-484763869-1417001333-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,0e,ac,a0,8d,79,c6,04,41,83,aa,c2,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,0e,ac,a0,8d,79,c6,04,41,83,aa,c2,\
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(3200)
c:\windows\system32\ieframe.dll
c:\windows\system32\OneX.DLL
c:\windows\system32\eappprxy.dll
c:\windows\system32\webcheck.dll
.
Completion time: 2012-01-14 01:09:09
ComboFix-quarantined-files.txt 2012-01-14 00:09
.
Pre-Run: 9,128,505,344 bytes free
Post-Run: 10,489,790,464 bytes free
.
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - DB3A35249723B3E930DB3F2B6374F928

Dopuna: 14 Jan 2012 1:10

Izvini sto si cekao, ipak je nova(Pravoslavna).
Pa nek ti bude srecna i sa puno uspjeha!!!(oprosti ako je ne slavis)
I izvini za neke greske ako ima posto sam pripit...Smile

offline
  • Fil  Male
  • Legendarni građanin
  • Pridružio: 11 Jun 2009
  • Poruke: 16586

Kad se otrezniš, možeš da otvoriš temu u Windows delu jer na računaru nemaš aktivnog malware-a. Smile


Potrebno je deinstalirati ComboFix:
klikni start (ili ), a zatim RUN.

Na Visti koristiti Start Search polje ukoliko Run nije dostupan.

U liniju za unos teksta ukucaj (iskopiraj) sledeće:

ComboFix /Uninstall

Primeti da postoji razmak između "ComboFix" i "/Uninstall".



a zatim klikni OK (ili pritisni Enter).


Sačekaj da se proces deinstalacije završi.

offline
  • Pridružio: 12 Avg 2008
  • Poruke: 708
  • Gde živiš: Bogu iza tregera!

Zaboravio sam se zahvaliti...
Hvala ti puno...
Mada si mi vise odmogao nego pomogao...Smile (tako se kaze samo)
Sada opet nemam pojma sta je, a da je mlw makar bi znao s cime imam problem..Very Happy

Ko je trenutno na forumu
 

Ukupno su 1240 korisnika na forumu :: 34 registrovanih, 8 sakrivenih i 1198 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: airsuba, babaroga, Bobrock1, bojanM84, branko7, Bubimir, CrazyDiablo, Dogma21, Dorcolac, DragoslavS, Georgius, GORDI, goxin, ivan1973, Krusarac, mikrimaus, milenko crazy north, MiroslavD, nemkea71, pedjolino76, Petar35, Pohovani_00, Prašinar, procesor, Romibrat, SD izvidjac, shaja1, SR-3m, tmanda323, Toper, tubular, USSVoyager, vathra, wolverined4