Napisano: 05 Maj 2011 20:43
molim pomoc da vidite imam li jos virus na kompjuteru i uklonite ako je tamo.hvala,
32 bitni,w-7, compaq 615, laptop
Kompjuter mi se usporio,vec prije par tjedana.
Neznam sto je razlog..(imam mozda previse podataka na komp.putujem.)
27-28 04.MS je otkrio viruse, :
Virus:win32/virut.BN,
Trojan:win32/Ramnit.C,
Worm:win32 Hildgild!gen.A
TrojanClicker:win32/Yabector.gen.
02.05. --Exploit:win32/CplLnk.A
03.05 Virus:win32/virut.BN
sve ih je kaze, uklonio...
onda danas 05.05
nekome sam htela na mobilni snimiti pjesmu(Indija mesto dogadjaja)
i odjednom alarm..u mobilnom bilo masu virusa
meni je ostalo u izvjestaju samo
worm:win32/Nugel.Z removed u 8PM
a kasnije sam nesto radila neznam sto
kako mi je u izvestaju MS-(history)
stavljen opet u karantenu u 11PM..
zajedno s
worm:win32/Autorun!inf
i sad su mi zadnja 2 u karanteni ,koja ce se isprazniti nakon 1 dan.
to je MS antivirus program.
nervira me sto nemam pristup u karantenu tog programa ..
pobrisala bi sama te 'wormove'
neznam sta vise da kazem...
recite koji antivirus da koristim..
ispada da je Avira malo bolja od MS?
evo izvestaj:
.
DDS (Ver_11-03-05.01) - NTFSx86
Run by zora at 23:22:32,06 on 2011-05-05
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_23
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.46.1033.18.2813.1619 [GMT 5,5:30]
.
AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}
SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Lavasoft Ad-Watch Live! *Disabled/Updated* {61CDFD9D-3CAC-9270-C6FC-52325ACB795B}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_499a67a913bde1c7\STacSV.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\atieclxx.exe
C:\Program Files\Nero\Tools\InCD\InCDSrv.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_499a67a913bde1c7\aestsrv.exe
C:\Program Files\LSI SoftModem\agrsmsvc.exe
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\Program Files\Nero\Tools\InCD\NBHRegInCDSrv.exe
C:\Windows\system32\IoctlSvc.exe
C:\Program Files\Seagate\Seagate Dashboard\SeagateDashboardService.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\WUDFHost.exe
C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
C:\Program Files\dvd43\DVD43_Tray.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Program Files\Nero\Tools\InCD\NBHGui.exe
C:\Program Files\Nero\Tools\InCD\InCD.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\PowerISO\PWRISOVM.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Seagate\Seagate Dashboard\MemeoDashboard.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Personal\bin\Personal.exe
C:\Program Files\Orbitdownloader\orbitdm.exe
C:\Users\zora\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Orbitdownloader\orbitnet.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Tata Photon+\Huawei\Tata Photon+.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Users\zora\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\zora\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\zora\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\zora\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\zora\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\zora\Desktop\dds.scr
C:\Windows\system32\conhost.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.yahoo.com/
uURLSearchHooks: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\tbuTo0.dll
mURLSearchHooks: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\tbuTo0.dll
BHO: Octh Class: {000123b4-9b42-4900-b3f7-f4b073efc214} - c:\program files\orbitdownloader\orbitcth.dll
BHO: IDMIEHlprObj Class: {0055c089-8582-441b-a0bf-17b458c2a3a8} - c:\program files\internet download manager\IDMIECC.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\programdata\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\tbuTo0.dll
BHO: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
TB: Grab Pro: {c55bbcd6-41ad-48ad-9953-3609c48eacc7} - c:\program files\orbitdownloader\GrabPro.dll
TB: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\tbuTo0.dll
TB: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
TB: {32099AAC-C132-4136-9E9A-4E364A424E17} - No File
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
TB: {30F9B915-B755-4826-820B-08FBA6BD249D} - No File
uRun: [Google Update] "c:\users\zora\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [Sony Ericsson PC Companion] "c:\program files\sony ericsson\sony ericsson pc companion\PCCompanion.exe" /Background
uRun: [LightScribe Control Panel] c:\program files\common files\lightscribe\LightScribeControlPanel.exe -hidden
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
uRun: [IDMan] c:\program files\internet download manager\IDMan.exe /onboot
mRun: [AmIcoSinglun] c:\program files\amicosinglun\AmIcoSinglun.exe
mRun: [dvd43] c:\program files\dvd43\dvd43_tray.exe
mRun: [NBKeyScan] "c:\program files\nero\nero8\nero backitup\NBKeyScan.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [SysTrayApp] c:\program files\idt\wdm\sttray.exe
mRun: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [<NO NAME>]
mRun: [SearchSettings] "c:\program files\common files\spigot\search settings\SearchSettings.exe"
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
mRun: [NBHGui] c:\program files\nero\tools\incd\NBHGui.exe
mRun: [InCD] c:\program files\nero\tools\incd\InCD.exe
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [PWRISOVM.EXE] c:\program files\poweriso\PWRISOVM.EXE
mRun: [Seagate Dashboard] c:\program files\seagate\seagate dashboard\MemeoLauncher.exe --silent --no_ui
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [QuickTime Task] "c:\program files\qt lite\QTTask.exe" -atboottime
mRun: [UnlockerAssistant] "c:\program files\unlocker\UnlockerAssistant.exe"
StartupFolder: c:\users\zora\appdata\roaming\micros~1\windows\startm~1\programs\startup\dropbox.lnk - c:\users\zora\appdata\roaming\dropbox\bin\Dropbox.exe
StartupFolder: c:\users\zora\appdata\roaming\micros~1\windows\startm~1\programs\startup\skrmur~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\bankid~1.lnk - c:\program files\personal\bin\Personal.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\orbit.lnk - c:\program files\orbitdownloader\orbitdm.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: &Download by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/201
IE: &Grab video by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/204
IE: Append Link Target to Existing PDF
IE: Do&wnload selected by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/203
IE: Down&load all by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/202
IE: Download all links with IDM - c:\program files\internet download manager\IEGetAll.htm
IE: Download FLV video content with IDM - c:\program files\internet download manager\IEGetVL.htm
IE: Download with IDM - c:\program files\internet download manager\IEExt.htm
IE: E&xportera till Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: {2E7EEFAE-1926-4EE3-B39C-FA9B16F5FB7B} = 121.242.190.180 4.2.2.2
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\zora\appdata\roaming\mozilla\firefox\profiles\iatjo3y8.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/
FF - prefs.js: keyword.URL - hxxp://www.google.com/search?sourceid=navclient&hl=en&q=
FF - component: c:\program files\common files\spigot\wtxpcom\components\WidgiToolbarFF.dll
FF - component: c:\programdata\real\realplayer\browserrecordplugin\firefox\ext\components\nprpffbrowserrecordext.dll
FF - component: c:\programdata\real\realplayer\browserrecordplugin\firefox\ext\components\nprpffbrowserrecordlegacyext.dll
FF - component: c:\users\zora\appdata\roaming\idm\idmmzcc3\components\idmmzcc.dll
FF - component: c:\users\zora\appdata\roaming\mozilla\firefox\profiles\iatjo3y8.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\FFExternalAlert.dll
FF - component: c:\users\zora\appdata\roaming\mozilla\firefox\profiles\iatjo3y8.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\RadioWMPCore.dll
FF - component: c:\users\zora\appdata\roaming\mozilla\firefox\profiles\iatjo3y8.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\frozen.dll
FF - component: c:\users\zora\appdata\roaming\mozilla\firefox\profiles\iatjo3y8.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbar-ff3.dll
FF - component: c:\users\zora\appdata\roaming\mozilla\firefox\profiles\iatjo3y8.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\components\RadioWMPCore.dll
FF - component: c:\users\zora\appdata\roaming\mozilla\firefox\profiles\iatjo3y8.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\components\RadioWMPCoreGecko19.dll
FF - component: c:\users\zora\appdata\roaming\mozilla\firefox\profiles\iatjo3y8.default\extensions\engine@conduit.com\components\RadioWMPCore.dll
FF - component: c:\users\zora\appdata\roaming\mozilla\firefox\profiles\iatjo3y8.default\extensions\engine@conduit.com\components\RadioWMPCoreGecko19.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\program files\personal\bin\np_prsnl.dll
FF - plugin: c:\program files\sony\media go\npmediago.dll
FF - plugin: c:\program files\tracker software\pdf viewer\npPDFXCviewNPPlugin.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
FF - plugin: c:\users\zora\appdata\local\google\update\1.2.183.39\npGoogleOneClick8.dll
FF - plugin: c:\users\zora\appdata\roaming\facebook\npfbplugin_1_0_3.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
FF - Ext: Yahoo! Toolbar: {635abd67-4fe9-1b23-4f01-e679fa7484c1} - c:\program files\mozilla firefox\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
FF - Ext: Google Toolbar for Firefox: {3112ca9c-de6d-4884-a869-9855de68056c} - %profile%\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}
FF - Ext: DownloadHelper: {b9db16a4-6edc-47ec-a1f4-b86292ed211d} - %profile%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
FF - Ext: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - %profile%\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}
FF - Ext: Conduit Engine : engine@conduit.com - %profile%\extensions\engine@conduit.com
FF - Ext: uTorrentBar Community Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - %profile%\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
FF - Ext: RealPlayer Browser Record Plugin: {ABDE892B-13A8-4d1b-88E6-365A6E755758} - c:\programdata\real\realplayer\browserrecordplugin\firefox\Ext
FF - Ext: IDM CC: mozilla_cc@internetdownloadmanager.com - c:\users\zora\appdata\roaming\idm\idmmzcc3
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2010-6-23 64288]
R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2009-6-18 165264]
R1 MpKsl1a2ce562;MpKsl1a2ce562;c:\programdata\microsoft\microsoft antimalware\definition updates\{8807003c-d13a-4a19-b237-5bf4c5947f71}\MpKsl1a2ce562.sys [2011-5-5 28752]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 48128]
R2 AESTFilters;Andrea ST Filters Service;c:\windows\system32\driverstore\filerepository\stwrt.inf_x86_neutral_499a67a913bde1c7\AEstSrv.exe [2010-9-13 81920]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-11-11 172032]
R2 Application Updater;Application Updater;c:\program files\application updater\ApplicationUpdater.exe [2011-1-28 387072]
R2 IDMWFP;IDMWFP;c:\windows\system32\drivers\idmwfp.sys [2011-2-12 85768]
R2 NeroRegInCDSrv;Nero Registry InCD Service;c:\program files\nero\tools\incd\NBHRegInCDSrv.exe [2009-10-16 53560]
R2 SBSDWSCService;SBSD Security Center Service;c:\program files\spybot - search & destroy\SDWinSec.exe [2010-8-5 1153368]
R2 SeagateDashboardService;Seagate Dashboard Service;c:\program files\seagate\seagate dashboard\SeagateDashboardService.exe [2010-4-30 14088]
R3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\drivers\ewusbdev.sys [2011-3-29 101120]
R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\drivers\MpNWMon.sys [2009-6-18 43392]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2010-10-25 54144]
R3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\antimalware\NisSrv.exe [2010-11-11 206360]
R3 usbfilter;AMD USB Filter Driver;c:\windows\system32\drivers\usbfilter.sys [2010-2-14 31288]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\drivers\vwifimp.sys [2009-7-14 14336]
R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\drivers\yk62x86.sys [2010-8-24 323360]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2010-2-4 1352832]
S3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.sys [2009-7-3 25600]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2010-12-13 13224]
S3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [2010-2-10 16456]
S3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [2010-2-10 11088]
S3 qcusbser;CDMA USB Device for Legacy Serial Communication;c:\windows\system32\drivers\qcusbser.sys [2011-2-7 106752]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;c:\program files\sony ericsson\sony ericsson pc companion\PCCService.exe [2010-12-13 150528]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-3-2 1343400]
S3 vpcuxd;USB Virtualization Stub Service;c:\windows\system32\drivers\vpcuxd.sys [2010-2-11 12800]
S3 zteusbser;ZTE USB Device for Legacy Serial Communication;c:\windows\system32\drivers\zteusbser.sys [2010-2-17 98432]
.
=============== Created Last 30 ================
.
2011-05-05 17:08:26 28752 ----a-w- c:\progra~2\microsoft\microsoft antimalware\definition updates\{8807003c-d13a-4a19-b237-5bf4c5947f71}\MpKsl1a2ce562.sys
2011-05-05 15:00:33 7071056 ----a-w- c:\progra~2\microsoft\microsoft antimalware\definition updates\{8807003c-d13a-4a19-b237-5bf4c5947f71}\mpengine.dll
2011-05-05 03:47:49 -------- d-----w- c:\users\zora\appdata\local\Adobe
2011-04-28 14:53:27 87608 ----a-w- c:\users\zora\appdata\roaming\inst.exe
2011-04-28 01:52:26 2614784 ----a-w- c:\windows\explorer.exe
2011-04-26 22:19:36 143744 ----a-w- c:\windows\system32\drivers\nvstor.sys
2011-04-26 22:19:35 1686016 ----a-w- c:\windows\system32\esent.dll
2011-04-26 22:19:35 1210240 ----a-w- c:\windows\system32\drivers\ntfs.sys
2011-04-26 22:19:35 117120 ----a-w- c:\windows\system32\drivers\nvraid.sys
2011-04-26 22:19:34 332160 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2011-04-26 22:19:34 146304 ----a-w- c:\windows\system32\drivers\storport.sys
2011-04-26 22:19:33 74240 ----a-w- c:\windows\system32\fsutil.exe
2011-04-26 22:10:27 31232 ----a-w- c:\windows\system32\prevhost.exe
2011-04-26 22:09:14 442880 ----a-w- c:\windows\system32\XpsPrint.dll
2011-04-24 18:53:14 -------- d-----w- c:\program files\common files\Adobe-BackupByPhotoshopPortable
2011-04-24 18:53:07 -------- d-----w- c:\users\zora\appdata\roaming\Adobe-BackupByPhotoshopPortable
2011-04-24 18:53:07 -------- d-----w- c:\users\zora\appdata\local\Adobe-BackupByPhotoshopPortable
2011-04-24 18:53:07 -------- d-----w- c:\progra~2\Adobe-BackupByPhotoshopPortable
2011-04-18 04:26:57 -------- d-----w- c:\users\zora\appdata\local\{F951769B-FC09-4834-8ACB-202F2C4A4B46}
2011-04-16 19:03:47 -------- d-----w- c:\users\zora\appdata\roaming\FTP Explorer
2011-04-16 18:43:18 -------- dc----w- c:\program files\FTP Explorer
2011-04-13 18:38:51 311296 ----a-w- c:\windows\system32\drivers\srv.sys
2011-04-13 18:38:51 309760 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-13 18:38:51 113664 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-04-13 18:32:40 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2011-04-13 18:32:39 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2011-04-13 18:32:34 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-04-13 18:32:34 294912 ----a-w- c:\windows\system32\atmfd.dll
2011-04-13 18:17:23 2331136 ----a-w- c:\windows\system32\win32k.sys
2011-04-13 18:17:01 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2011-04-13 18:16:54 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-04-13 18:06:42 740864 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-13 17:54:13 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2011-04-13 17:54:13 1137664 ----a-w- c:\windows\system32\mfc42.dll
2011-04-13 17:48:55 95744 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-04-13 17:48:55 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-04-13 17:48:55 221696 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-04-13 17:48:55 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-04-09 10:18:33 439632 ------w- c:\progra~2\microsoft\microsoft antimalware\definition updates\{880562dd-383b-4aaf-b274-a754acc377d1}\gapaengine.dll
.
==================== Find3M ====================
.
2011-04-28 14:53:27 47360 ----a-w- c:\users\zora\appdata\roaming\pcouffin.sys
2011-02-19 05:33:11 802304 ----a-w- c:\windows\system32\FntCache.dll
2011-02-19 05:32:48 1074176 ----a-w- c:\windows\system32\DWrite.dll
2011-02-19 05:32:35 739840 ----a-w- c:\windows\system32\d2d1.dll
1999-06-25 09:55:30 149504 -c--a-w- c:\program files\UNWISE.EXE
2006-05-03 10:06:54 163328 --sh--r- c:\windows\system32\flvDX.dll
2007-02-21 11:47:16 31232 --sh--r- c:\windows\system32\msfDX.dll
2008-03-16 13:30:52 216064 --sh--r- c:\windows\system32\nbDX.dll
.
============= FINISH: 23:23:23,52 ===============
ne sjecan se sta sam radila ..scanirala ili kompjuter ili neki 'pen-drive'
https://www.mycity.rs/must-login.png
Dopuna: 05 Maj 2011 20:53
samo da dodam da mi ne radi kako treba kopiranje kad ima folder i podfolder.Javlja, 'runtime error' i explorer prestane funkcionirati...i neki debug se spominje..izvinite ,umorna sam od svih tih poruka ..da li i to ima veze sa virusima?
|