Problem sa Windowsom

Problem sa Windowsom

offline
  • Pridružio: 08 Jan 2012
  • Poruke: 35

Pozdrav svima. Potrebna mi je pomoc.

U pocetku bio je problem samo sa flash player-om, zakuca se kada gledam nesto na yt (preko google chrome, ie, mozille..). Radi ok 20-30minuta i onda pukne. Nekako sam pokusavao da napravim, brisao flash player, opet instalirao i nista. Sada je problem jos veci. Obrisao sam mozillu, imam samo ie i chrome. Chrome koristim cesce i sada pukne iz cista mira, nebitno na kom sam sajtu. Dok ovo kucam chrome je pao 2x. :@ Kada upalim kameru na msnu/skype program se gasi posle par minuta. Prijavljuje error i kada gledam nesto preko BS playera. Winamp/MS office/Adobe photoshop/cak i glupa Zuma pukne posle nekoliko minuta. Pre 2-3 dana poceo je da se resetuje iz cista mira. Imam ESET smart security poslednju verziju i njime ne prijavljuje ni jedan virus.
Koristim windows xp sp3.

Kao sto sam vec rekao, problem se javio pre mesec dana, mozda malo ranije. U pocetku je samo flash player zezao, a sada je haos. Brisao sam flash player, opet instalirao i nista. Programima memset i MHDD sam proverio ram i hdd, i to je u redu. Koristim ADSL 1Mb/s.

Sadrzaj DDS.txt

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702
Run by MChemicalR at 5:01:46 on 2012-01-09
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.767.380 [GMT 1:00]
.
AV: ESET Smart Security 5.0 *Enabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET Personal firewall *Enabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\Ati2evxx.exe
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\PixArt\PAC207\Monitor.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\Update\1.3.21.79\GoogleCrashHandler.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
svchost.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\wuauclt.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.rs/
mSearchAssistant = hxxp://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 5.0\reader\activex\AcroIEHelper.ocx
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - c:\program files\divx\divx plus web player\ie\divxhtml5\DivXHTML5.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:\progra~1\micros~4\office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [BitTorrent] "c:\program files\bittorrent\BitTorrent.exe"
mRun: [ATIPTA] "c:\program files\ati technologies\ati control panel\atiptaxx.exe"
mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
mRun: [PAC207_Monitor] c:\windows\pixart\pac207\Monitor.exe
mRun: [Monitor] c:\windows\pixart\pac207\Monitor.exe
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [egui] "c:\program files\eset\eset smart security\egui.exe" /hide /waitservice
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
mPolicies-system: EnableLinkedConnections = 1 (0x1)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office14\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_70C5B381380DB17F.dll/cmsidewiki.html
IE: Se&nd to OneNote - c:\progra~1\micros~4\office14\ONBttnIE.dll/105
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} - file:///C:/Program%20Files/Zuma/Images/stg_drm.ocx
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} - file:///C:/Program%20Files/Zuma/Images/armhelper.ocx
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{C6490C26-536A-4C6F-95FF-7034C0628F77} : DhcpNameServer = 192.168.1.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Notify: AtiExtEvent - Ati2evxx.dll
.
============= SERVICES / DRIVERS ===============
.
R1 dk2drv;DK2 WindowsNT Driver;c:\windows\system32\drivers\dk2drv.sys [2011-9-14 49720]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2011-6-3 118104]
R2 ekrn;ESET Service;c:\program files\eset\eset smart security\ekrn.exe [2011-9-22 974944]
R2 NAUpdate;@c:\program files\nero\update\nasvc.exe,-200;c:\program files\nero\update\NASvc.exe [2010-3-25 490280]
R2 trysftnt;trysftnt;c:\windows\system32\drivers\TRYSFTNT.SYS [2011-7-13 39136]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\tuneup utilities 2011\TuneUpUtilitiesService32.exe [2011-12-8 1527104]
R3 PAC207;Eye 110;c:\windows\system32\drivers\PFC027.SYS [2011-7-13 616064]
R3 SydexFDD;Sydex Diskette Driver;c:\windows\system32\drivers\SYDEXFDD.SYS [2011-7-13 13037]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\tuneup utilities 2011\TuneUpUtilitiesDriver32.sys [2011-7-7 10064]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2011-7-15 136176]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2011-7-15 136176]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2011-9-14 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2011-9-14 8320]
S3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]
.
=============== Created Last 30 ================
.
2012-01-08 23:38:06 -------- d-----w- C:\Tri D Corpus
2012-01-08 22:31:55 57328 ----a-w- c:\windows\system\OLE2CONV.DLL
2012-01-08 22:31:55 51712 ----a-w- c:\windows\system\OLE2PROX.DLL
2012-01-08 22:31:55 304640 ----a-w- c:\windows\system\OLE2.DLL
2012-01-08 22:31:55 27397 ----a-w- c:\windows\system\OLE2.REG
2012-01-08 22:31:55 25088 ----a-w- c:\windows\system\OLE2THK.DLL
2012-01-08 22:31:55 177744 ----a-w- c:\windows\system\TYPELIB.DLL
2012-01-08 22:31:55 163408 ----a-w- c:\windows\system\OLE2DISP.DLL
2012-01-08 22:31:55 157696 ----a-w- c:\windows\system\STORAGE.DLL
2012-01-08 22:31:55 124512 ----a-w- c:\windows\system\OLE2NLS.DLL
2012-01-08 22:31:55 109056 ----a-w- c:\windows\system\COMPOBJ.DLL
2012-01-08 22:29:02 -------- d-----w- c:\documents and settings\mchemicalr\application data\DAEMON Tools Pro
2012-01-08 22:29:02 -------- d-----w- c:\documents and settings\all users\application data\DAEMON Tools Pro
2012-01-08 03:36:55 -------- d-----w- c:\documents and settings\all users\application data\Chief Architect Premier X3
2012-01-08 03:36:45 -------- d-----w- c:\documents and settings\mchemicalr\application data\Chief Architect Premier X3
2012-01-08 03:34:33 -------- d-----w- c:\program files\Chief Architect
2011-12-30 22:12:47 29504 ----a-w- c:\windows\system32\uxtuneup.dll
2011-12-26 00:12:57 -------- d-sh--w- C:\found.000
2011-12-25 22:32:44 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-12-20 21:23:26 -------- d-----w- c:\documents and settings\all users\application data\Driver Tool
.
==================== Find3M ====================
.
2011-12-08 16:38:12 31552 ----a-w- c:\windows\system32\TURegOpt.exe
2011-11-24 20:20:35 0 ----a-w- c:\windows\ativpsrm.bin
2011-11-23 18:00:00 74752 ----a-w- c:\windows\system32\ff_vfw.dll
.
============= FINISH: 5:02:26.78 ===============


mycity.rs/must-login.png

GMER mi je 3x restartovao kompjuter tako da sam skenirao sa RootRepeal-om.

mycity.rs/must-login.png

offline
  • Fil  Male
  • Legendarni građanin
  • Pridružio: 11 Jun 2009
  • Poruke: 16586

U logovima nema tragova aktivne infekcije.

Slučaj nastavljamo u ovoj temi:
http://www.mycity.rs/Windows/Problem-sa-Windowsom-4.html

Ko je trenutno na forumu
 

Ukupno su 935 korisnika na forumu :: 7 registrovanih, 0 sakrivenih i 928 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: esx66, Mikulino, Mixelotti, ozzy, saputnik plavetnila, strelac07, wizzardone