Poslao: 21 Jun 2009 21:33
|
offline
- PlasticFantasic
- Novi MyCity građanin
- Pridružio: 21 Jun 2009
- Poruke: 6
|
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:26:41, on 21.6.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\TUProgSt.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Google\Google Talk\googletalk.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O8 - Extra context menu item: &Windows Live Search - [Link mogu videti samo ulogovani korisnici]\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - [Link mogu videti samo ulogovani korisnici]
O8 - Extra context menu item: E&xport to Microsoft Excel - [Link mogu videti samo ulogovani korisnici]\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open in new background tab - [Link mogu videti samo ulogovani korisnici]\Program Files\Windows Live Toolbar\Components\en-ww\msntabres.dll.mui/229?4bb0907ffd0f46d6935ec9a5edf7c540
O8 - Extra context menu item: Open in new foreground tab - [Link mogu videti samo ulogovani korisnici]\Program Files\Windows Live Toolbar\Components\en-ww\msntabres.dll.mui/230?4bb0907ffd0f46d6935ec9a5edf7c540
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\Skype4COM.dll
O20 - AppInit_DLLs:
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Performance Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Office Source Engine (ose) - Unknown owner - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - Unknown owner - C:\Program Files\Spyware Doctor\pctsAuxs.exe (file missing)
O23 - Service: PC Tools Security Service (sdCoreService) - Unknown owner - C:\Program Files\Spyware Doctor\pctsSvc.exe (file missing)
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe
--
End of file - 5251 bytes
Vec neko vreme se avast skener poste ne gasi iako nista ne saljem,niti primam.Obrisao sam sve infekcije koje sam nasao sa malwarebytes-om i avastom.Vi ste mi poslednja nada pred reinstalaciju.
|
|
|
|
|
Poslao: 21 Jun 2009 22:24
|
offline
- PlasticFantasic
- Novi MyCity građanin
- Pridružio: 21 Jun 2009
- Poruke: 6
|
ComboFix 09-06-20.04 - Korisnik 21.06.2009 22:15.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2046.1501 [GMT 2:00]
Running from: c:\documents and settings\Korisnik\Desktop\ComboFix.exe
AV: avast! antivirus 4.8.1335 [VPS 090620-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\recycler\S-1-5-21-3034851740-8462730006-390190673-0069
c:\recycler\S-1-5-21-6035920303-0224457490-094474354-8990
c:\recycler\S-1-5-21-3034851740-8462730006-390190673-0069\Desktop.ini
c:\recycler\S-1-5-21-6035920303-0224457490-094474354-8990\Desktop.ini
Infected copy of c:\windows\system32\drivers\ndis.sys was found and disinfected
Restored copy from - The cat ate it
.
((((((((((((((((((((((((( Files Created from 2009-05-21 to 2009-06-21 )))))))))))))))))))))))))))))))
.
2009-06-21 15:07 . 2006-10-25 17:09 758352 ----a-w- C:\fwconfig.exe
2009-06-21 15:07 . 2006-10-25 17:09 131072 ----a-w- C:\clicapi.dll
2009-06-21 14:20 . 2009-06-21 14:20 100243 ----a-w- c:\windows\system32\drivers\ndis.zip
2009-06-21 11:33 . 2009-06-21 11:33 -------- d-----w- c:\program files\Trend Micro
2009-06-20 20:35 . 2009-06-21 15:28 -------- d-----w- c:\program files\COMODO
2009-06-19 19:11 . 2009-06-17 09:27 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-19 19:11 . 2009-06-19 19:11 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-06-19 19:11 . 2009-06-19 19:11 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-06-19 19:11 . 2009-06-17 09:27 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-06-19 08:46 . 2001-08-23 14:00 4224 -c--a-w- c:\windows\system32\dllcache\beep.sys
2009-06-19 08:46 . 2001-08-23 14:00 4224 ----a-w- c:\windows\system32\drivers\beep.sys
2009-06-16 15:48 . 2009-04-30 20:02 457248 ----a-w- c:\windows\system32\nvudisp.exe
2009-06-16 15:47 . 2009-04-26 22:42 457248 ----a-w- c:\windows\system32\NVUNINST.EXE
2009-06-16 15:47 . 2009-06-16 13:23 -------- d-----w- C:\NVIDIA
2009-06-16 15:43 . 2009-06-16 15:43 -------- d-----w- c:\windows\Logs
2009-06-16 15:38 . 2008-07-29 07:42 528384 ------r- c:\windows\RtlExUpd.dll
2009-06-16 15:38 . 2007-04-16 14:46 33792 ----a-w- c:\windows\system32\drivers\AmdPPM.sys
2009-06-16 15:38 . 2009-06-16 15:38 -------- d-----w- c:\program files\AMD
2009-06-16 15:37 . 2009-06-16 15:40 16608 ----a-w- c:\windows\gdrv.sys
2009-06-16 15:00 . 2009-06-16 15:00 -------- d-----w- c:\windows\system32\AGEIA
2009-06-16 15:00 . 2009-06-16 15:01 -------- d-----w- c:\program files\AGEIA Technologies
2009-06-16 15:00 . 2009-06-16 15:49 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-06-16 15:00 . 2004-08-03 21:10 61056 -c--a-w- c:\windows\system32\dllcache\ohci1394.sys
2009-06-16 15:00 . 2004-08-03 21:10 61056 ----a-w- c:\windows\system32\drivers\ohci1394.sys
2009-06-16 15:00 . 2004-08-03 21:10 53248 -c--a-w- c:\windows\system32\dllcache\1394bus.sys
2009-06-16 15:00 . 2004-08-03 21:10 53248 ----a-w- c:\windows\system32\drivers\1394bus.sys
2009-06-16 15:00 . 2001-08-17 11:46 6400 -c--a-w- c:\windows\system32\dllcache\enum1394.sys
2009-06-16 15:00 . 2001-08-17 11:46 6400 ----a-w- c:\windows\system32\drivers\enum1394.sys
2009-06-16 14:59 . 2004-08-03 21:07 8832 -c--a-w- c:\windows\system32\dllcache\wmiacpi.sys
2009-06-16 14:59 . 2004-08-03 21:07 8832 ----a-w- c:\windows\system32\drivers\wmiacpi.sys
2009-06-16 13:04 . 2009-06-21 17:06 -------- d-----w- c:\program files\SpeedFan
2009-06-04 11:52 . 2009-06-04 11:52 -------- d-----w- C:\install
2009-06-02 16:19 . 2009-06-02 16:46 -------- d-----w- c:\windows\system32\oodag
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-21 20:16 . 2004-08-03 22:14 182912 ----a-w- c:\windows\system32\drivers\ndis.sys
2009-06-21 14:19 . 2009-06-21 14:19 91139 ----a-w- c:\windows\system32\drivers\ndis.rar
2009-06-17 09:40 . 2008-07-29 15:15 -------- d-----w- c:\program files\Red Eye Pilot
2009-06-16 15:41 . 2009-06-16 15:39 -------- d-----w- c:\program files\Realtek
2009-06-16 15:38 . 2008-04-17 10:22 319488 -c--a-w- c:\windows\HideWin.exe
2009-06-16 13:25 . 2008-04-17 10:11 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-06-16 13:25 . 2008-11-01 16:19 -------- d-----w- c:\program files\NVIDIA Corporation
2009-06-16 12:07 . 2008-04-17 13:16 8 -c--a-w- c:\windows\system32\nvModes.dat
2009-05-05 20:45 . 2008-04-17 13:43 -------- d-----w- c:\program files\Opera
2009-04-30 22:31 . 2009-04-30 22:31 1657376 ----a-w- c:\windows\system32\nwiz.exe
2009-04-30 22:31 . 2009-04-30 22:31 449056 ----a-w- c:\windows\system32\nvappbar.exe
2009-04-30 22:31 . 2009-04-30 22:31 436768 ----a-w- c:\windows\system32\keystone.exe
2009-04-30 22:31 . 2009-04-30 22:31 466944 ----a-w- c:\windows\system32\nvshell.dll
2009-04-30 22:31 . 2009-04-30 22:31 1724416 ----a-w- c:\windows\system32\nvwdmcpl.dll
2009-04-30 22:31 . 2009-04-30 22:31 1507328 ----a-w- c:\windows\system32\nview.dll
2009-04-30 22:31 . 2009-04-30 22:31 1101824 ----a-w- c:\windows\system32\nvwimg.dll
2009-04-30 20:02 . 2009-04-30 20:02 9994240 ----a-w- c:\windows\system32\nvoglnt.dll
2009-04-30 20:02 . 2009-04-30 20:02 806912 ----a-w- c:\windows\system32\nvapi.dll
2009-04-30 20:02 . 2009-04-30 20:02 663552 ----a-w- c:\windows\system32\nvcuvid.dll
2009-04-30 20:02 . 2009-04-30 20:02 1720320 ----a-w- c:\windows\system32\nvcuda.dll
2009-04-30 20:02 . 2009-04-30 20:02 1579630 ----a-w- c:\windows\system32\nvdata.bin
2009-04-30 20:02 . 2009-04-30 20:02 143360 ----a-w- c:\windows\system32\nvcodins.dll
2009-04-30 20:02 . 2009-04-30 20:02 143360 ----a-w- c:\windows\system32\nvcod.dll
2009-04-30 20:02 . 2009-04-30 20:02 1314816 ----a-w- c:\windows\system32\nvcuvenc.dll
2009-04-30 20:02 . 2007-12-04 23:41 8055584 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2009-04-30 20:02 . 2007-12-04 23:41 5896320 ----a-w- c:\windows\system32\nv4_disp.dll
2009-04-25 19:52 . 2009-04-25 19:51 -------- d-----w- c:\documents and settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-04-25 19:51 . 2008-04-17 10:52 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer
2009-04-25 19:51 . 2009-04-25 19:51 -------- d-----w- c:\program files\Bonjour
2009-04-25 19:51 . 2008-04-17 10:52 -------- d-----w- c:\program files\QuickTime Alternative
2009-04-25 19:50 . 2009-04-25 19:50 -------- d-----w- c:\program files\Apple Software Update
2009-04-25 19:49 . 2009-04-25 19:49 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-03 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-02-05 81000]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-04-30 86016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-04-30 13750272]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Nokia.PCSync"="c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-03-27 1744896]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
@=""
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"msnmsgr"="c:\program files\MSN Messenger\msnmsgr.exe" /background
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"RTHDCPL"=RTHDCPL.EXE
"Alcmtr"=ALCMTR.EXE
"nwiz"=nwiz.exe /install
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" -osboot
"SmartRAM"=c:\program files\IObit\Advanced WindowsCare V2\MemCleaner.exe /m
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\InterVideo\\DVD7\\WinDVD.exe"=
"c:\\Program Files\\Google\\Google Talk\\googletalk.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Opera\\Opera.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\InCode Solutions\\RemoveIT Pro v4 - SE\\removeit.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [17.4.2008 16:01 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [17.4.2008 16:01 20560]
R2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service;c:\windows\system32\TUProgSt.exe [22.1.2009 16:24 603904]
S3 ATICDSDr;ATICDSDr;\??\c:\docume~1\Korisnik\LOCALS~1\Temp\ATICDSDr.sys --> c:\docume~1\Korisnik\LOCALS~1\Temp\ATICDSDr.sys [?]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe --> c:\program files\Spyware Doctor\pctsAuxs.exe [?]
S3 ULI5261XP;ULi M526X Ethernet NT Driver;c:\windows\system32\drivers\ULILAN51.SYS [17.4.2008 12:11 28672]
S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service;c:\program files\MSN Messenger\usnsvc.exe [19.1.2007 12:54 97136]
.
Contents of the 'Scheduled Tasks' folder
2009-06-21 c:\windows\Tasks\Check Updates for Windows Live Toolbar.job
- c:\program files\Windows Live Toolbar\MSNTBUP.EXE [2006-09-27 15:39]
.
.
------- Supplementary Scan -------
.
uStart Page = about:blank
uInternet Settings,ProxyOverride = *.local
IE: &Windows Live Search - c:\program files\Windows Live Toolbar\msntb.dll/search.htm
IE: Add to Windows &Live Favorites - [Link mogu videti samo ulogovani korisnici]
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Open in new background tab - c:\program files\Windows Live Toolbar\Components\en-ww\msntabres.dll.mui/229?4bb0907ffd0f46d6935ec9a5edf7c540
IE: Open in new foreground tab - c:\program files\Windows Live Toolbar\Components\en-ww\msntabres.dll.mui/230?4bb0907ffd0f46d6935ec9a5edf7c540
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [Link mogu videti samo ulogovani korisnici]
Rootkit scan 2009-06-21 22:17
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\OMSCAN]
"ImagePath"="\Sys"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
"OODEFRAG11.00.00.01WORKSTATION"="1AC1B69B....
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'explorer.exe'(2400)
c:\windows\system32\msi.dll
c:\windows\system32\WPDShServiceObj.dll
c:\program files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 6\PCSCM.dll
c:\program files\Nokia\Nokia PC Suite 6\Lang\PhoneBrowser_eng-us.nlr
c:\program files\Nokia\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Alwil Software\Avast4\ashServ.exe
c:\windows\system32\rundll32.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\NVIDIA Corporation\nTune\nTuneService.exe
c:\windows\system32\HPZipm12.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2009-06-21 22:19 - machine was rebooted
ComboFix-quarantined-files.txt 2009-06-21 20:19
Pre-Run: 7.836.299.264 bytes free
Post-Run: 7.882.702.848 bytes free
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer
201
|
|
|
|
|
Poslao: 22 Jun 2009 16:38
|
offline
- PlasticFantasic
- Novi MyCity građanin
- Pridružio: 21 Jun 2009
- Poruke: 6
|
Jos sinoc su prestale da trepere (osim kada su zaista to trebale).Odusevljen sam.Jos sam uspeo da svoj FW konacno osposobim.Nisam hteo nista da komentarisem posto nisam znao treba li jos nesto da uradim.Hvala ti VELIKO
A zarazio sam se najgluplje na svetu,trebao mi je program za pracenje temperature i onog trena kada sam kliknuo na link moj AV je poludeo,nakon toga nista vise nije bilo isto
|
|
|
|
|
|