USB Shortcut virus i cudno ponasanje racunara

2

USB Shortcut virus i cudno ponasanje racunara

offline
  • lnenad  Male
  • Stručni saradnik
    Web
  • Nenad
  • Arhitetak
  • Pridružio: 16 Jan 2007
  • Poruke: 2860
  • Gde živiš: Bijeljina

>>> MCShield AllScans.txt <<<



MCShield ::Anti-Malware Tool:: http://www.mcshield.net/

>>> v 2.8.3.24 / DB: 2013.12.27.1 / Windows 8 <<<


27-Dec-13 17:01:14 > Drive C: - scan started (no label ~97 GB, NTFS HDD )...



=> The drive is clean.


27-Dec-13 17:01:14 > Drive E: - scan started (Local Disk ~368 GB, NTFS HDD )...



=> The drive is clean.


Inace ne detektuje ni SD karticu ni usb.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Restartuj sistem pa opet probaj da skeniraš USB Flash disk i SD karticu.

offline
  • lnenad  Male
  • Stručni saradnik
    Web
  • Nenad
  • Arhitetak
  • Pridružio: 16 Jan 2007
  • Poruke: 2860
  • Gde živiš: Bijeljina

Nista, apsolutno ih ne detektuje, device manager mi daje uzvicnik na USB kontroler.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Huh. S obzirom da u zadnjem FRST izvještaju nemaš tragove aktivne infekcije:

Arrow

Uklonićemo korišćene alate.
Preuzmi "Xplode"-ov DelFix i sačuvaj ga na Desktop

Dvoklikom pokreni program.

Štikliraj sledeće opcije:
Remove disinfection tools
Purge System Restore
Reset system settings


Klikni na dugme "Run" i pričekaj da program završi rad.
Kada alat završi, otvoriće izvještaj u Notepadu.

Napomena: Izvještaj ce takodje biti sacuvan na C:\DelFix.txt
Taj izvještaj mi nije potreban.



Arrow

Ukoliko i nakon drugog restarta sistem ne bude prijavljivao USB uređaje, otvori temu u Windows potforumu, a ako ih prijavi i ako ih MSCHield skenira, postavi mi opet AllScans.txt

offline
  • lnenad  Male
  • Stručni saradnik
    Web
  • Nenad
  • Arhitetak
  • Pridružio: 16 Jan 2007
  • Poruke: 2860
  • Gde živiš: Bijeljina

Napisano: 27 Dec 2013 20:37

Bez rezultata, hvala u svakom slucaju Smile

Dopuna: 27 Dec 2013 23:28

Rijesio sam problem i evo logova



MCShield ::Anti-Malware Tool:: http://www.mcshield.net/

>>> v 2.8.3.24 / DB: 2013.12.27.1 / Windows 8 <<<


27-Dec-13 23:23:17 > Drive D: - scan started (SD ~3774 MB, FAT32 flash drive )...


>>> D:\MISC.lnk - Malware > Deleted. (13.12.27. 23.23 MISC.lnk.51830; MD5: 9d09db6ee0ccb7027a62c3e2622bf7db)

>>> D:\DCIM.lnk - Malware > Deleted. (13.12.27. 23.23 DCIM.lnk.418571; MD5: a2a72ee7b8e50b48dc883d5ff2fcd1f4)

>>> D:\SYSTEM.lnk - Malware > Deleted. (13.12.27. 23.23 SYSTEM.lnk.371877; MD5: 538a29825cfef19ea777f2d149d71549)

>>> D:\WinUsbDriver.vbs - Malware > Deleted. (13.12.27. 23.23 WinUsbDriver.vbs.78671; MD5: 80e49685d1ac8a3623dd78779820ae5a)

> Resetting attributes: D:\MISC < Successful.

> Resetting attributes: D:\DCIM < Successful.

> Resetting attributes: D:\SYSTEM < Successful.


=> Malicious files : 4/4 deleted.
=> Hidden folders : 3/3 unhidden.

____________________________________________

::::: Scan duration: 24sec :::::::::::::::::
____________________________________________



MCShield ::Anti-Malware Tool:: http://www.mcshield.net/

>>> v 2.8.3.24 / DB: 2013.12.27.1 / Windows 8 <<<


27-Dec-13 23:26:23 > Drive H: - scan started (no label ~1913 MB, FAT flash drive )...


>>> H:\insomnia.lnk - Malware > Deleted. (13.12.27. 23.26 insomnia.lnk.93746; MD5: ee4c1b3a6fb0fca3afec8fdf0d6f4180)

>>> H:\teorije konstr.lnk - Malware > Deleted. (13.12.27. 23.26 teorije konstr.lnk.682991; MD5: 51c46e432cb033e8937ebd5788008d60)

>>> H:\DJUKIN rodjendan.lnk - Malware > Deleted. (13.12.27. 23.26 DJUKIN rodjendan.lnk.993886; MD5: 50febb335f574ac0cb58aab99e5a22e1)

>>> H:\stampa.lnk - Malware > Deleted. (13.12.27. 23.26 stampa.lnk.310467; MD5: 31e3fa1184fbc0aafd6b8bafc1cd8a10)

>>> H:\Rhinoceros (64bit) 5.1.20927.2230.lnk - Malware > Deleted. (13.12.27. 23.26 Rhinoceros (64bit) 5.1.20927.2230.lnk.796943; MD5: fdc3da37fb4f9ebab6d502d851b7ba18)

>>> H:\Savremena Arhitektura.lnk - Malware > Deleted. (13.12.27. 23.26 Savremena Arhitektura.lnk.543707; MD5: 5ff0057cc16292502fb4670ec3527c8d)

>>> H:\repreyentacije i ostalo b.lnk - Malware > Deleted. (13.12.27. 23.26 repreyentacije i ostalo b.lnk.466532; MD5: 90fe22b104e9bb62a90c028f94102e09)

>>> H:\System Volume Information.lnk - Malware > Deleted. (13.12.27. 23.26 System Volume Information.lnk.337536; MD5: 624f000ad4ce3682c0c526cbe0d04229)

>>> H:\WinUsbDriver.vbs - Malware > Deleted. (13.12.27. 23.26 WinUsbDriver.vbs.803153; MD5: 80e49685d1ac8a3623dd78779820ae5a)

> Resetting attributes: H:\insomnia < Successful.

> Resetting attributes: H:\teorije konstr < Successful.

> Resetting attributes: H:\DJUKIN rodjendan < Successful.

> Resetting attributes: H:\stampa < Successful.

> Resetting attributes: H:\Rhinoceros (64bit) 5.1.20927.2230 < Successful.

> Resetting attributes: H:\Savremena Arhitektura < Successful.

> Resetting attributes: H:\repreyentacije i ostalo b < Successful.

> Resetting attributes: H:\System Volume Information < Successful.


=> Malicious files : 9/9 deleted.
=> Hidden folders : 8/8 unhidden.

____________________________________________

::::: Scan duration: 6sec ::::::::::::::::::
____________________________________________

Hvala vam svima na MCShieldu <3, raspali Avast i AVG su gledali u usb kao u blagosiljanu vodicu. Samo jedno pitanje, kako je moguce da iako mi je podesen prikaz sakrivenih fajlova, ja iste nisam vidio?

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Pored prikaza skrivenih fajlova potrebno je da uključiš prikaz i kritičnih sistemskih fajlova (system, supperhidden) isključivanjem opcije "Hide protected system files" pored "Show hidden files and folders" u Folder Options -> View (ne vjerujem da je mijenjano to u Win 8). Ovdje bismo završili, a ako imaš još pitanja otvori temu u odgovarajućem potforumu.

Ko je trenutno na forumu
 

Ukupno su 1153 korisnika na forumu :: 48 registrovanih, 6 sakrivenih i 1099 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 357magnum, babaroga, bestguarder, bojan_t, Boris90, BraneS, bufanje, Centauro, Denaya, djordje92sm, doloress, Dorcolac, goranperović66, goxin, Karla, Kazablankasrb, Koridor, kybonacci, lcc, Leonov, lord sir giga, maiden6657, mean_machine, Mi lao shu, mikrimaus, mile23, milos.cbr, minmatar34957, MiroslavD, mkukoleca, nebojsag, nextyamb, Panter, sabros, Sir Budimir, stankolich, StefanNBG90, Stoilkovic, Tvrtko I, UAV operator, Valter071, vathra, Viktor Petrenko, vladaa012, vukovi, wolverined4, Žrnov, šumar bk2