Poslao: 15 Mar 2007 23:02
|
offline
- garfild24
- Građanin
- Pridružio: 22 Jul 2006
- Poruke: 43
- Gde živiš: Podgorica
|
nema nista ni na pu... da pocinje evo sam detaljno ispregledao
|
|
|
|
Poslao: 15 Mar 2007 23:06
|
offline
- bobby
- Administrator
- Pridružio: 04 Sep 2003
- Poruke: 24135
- Gde živiš: Wien
|
Izvini, ali moram da se uverim posto u logu pise da je tu.
Skini sledeci program:
https://www.mycity.rs/must-login.png
U gornje polje iskopiraj sledeci tekst:
[nick] garfild24
C:\WINDOWS\system32\pushow*.dll
Nakon toga klikni na dugme Prepare Files.
Ukoliko ovaj program uspe da pokupi taj fajl, onda ce biti omogucen klik na dugme Upload. Ukoliko ti to dugme bude omoguceno onda klikni na njega i nama ce stici tvoj fajl. Naravno, treba da si prikljucen na internet da bi Upload bio uspesan.
Ukoliko se dugme Upload ne ukljuci, onda klikni desno dugme na donje polje u programu, odaberi Select All, pa ponovo desno dugme na donje polje, odaberi Copy, pa onda ovde na forumu u polje za pisanje poruke klikni desno dugme, pa odaberi Paste.
|
|
|
|
Poslao: 15 Mar 2007 23:13
|
offline
- garfild24
- Građanin
- Pridružio: 22 Jul 2006
- Poruke: 43
- Gde živiš: Podgorica
|
Debug: creating temp folder at C:\ToSubmit\
Debug: temp folder is empty, nothing to pack
Debug: deleting temp folder at C:\ToSubmit\
|
|
|
|
Poslao: 15 Mar 2007 23:23
|
offline
- bobby
- Administrator
- Pridružio: 04 Sep 2003
- Poruke: 24135
- Gde živiš: Wien
|
Moracu da te zamolim da probas ponovo ewido micro, ali mu zadaj da skenira samo C: particiju.
Bojim se da ako uradimo ciscenje direktno u HJT-u, da cu ti unistiti Windows Blinds, sto moze da dovede do toga da ti se uopste ne ucita Desktop.
|
|
|
|
Poslao: 15 Mar 2007 23:30
|
offline
- garfild24
- Građanin
- Pridružio: 22 Jul 2006
- Poruke: 43
- Gde živiš: Podgorica
|
ok kad zavrsi da ocistim ako bude infekcija da onda pokrenem HJT i opet proslijedim log jel tako?
|
|
|
|
Poslao: 15 Mar 2007 23:33
|
offline
- bobby
- Administrator
- Pridružio: 04 Sep 2003
- Poruke: 24135
- Gde živiš: Wien
|
garfild24 ::ok kad zavrsi da ocistim ako bude infekcija da onda pokrenem HJT i opet proslijedim log jel tako?
Obavezno stavi ewido log i HJT log, da vidim da li smo nesto uspeli.
Jos jedna solucija je SpyBot Search & Destroy koji je besplatan a dobro cisti od spywarea i adwarea. Mogao bi i njemu da das sansu da se oproba.
Ukoliko budes cistio i SpyBotom, onda mi HJT log napravi zadnjeg, a najbolje je da posle ciscenja prvo jednom restartujes komp, pa da tek onda napravis HJT log jer cu tada moci da vidim da li se neka infekcija obnavlja.
|
|
|
|
Poslao: 16 Mar 2007 00:04
|
offline
- garfild24
- Građanin
- Pridružio: 22 Jul 2006
- Poruke: 43
- Gde živiš: Podgorica
|
bobby ::Jos jedna solucija je SpyBot Search & Destroy koji je besplatan a dobro cisti od spywarea i adwarea. Mogao bi i njemu da das sansu da se oproba.
daj mi link za njega !
Dopuna: 16 Mar 2007 0:04
izvini nasao sam ga ovamo u upustvima
|
|
|
|
|
Poslao: 16 Mar 2007 19:59
|
offline
- garfild24
- Građanin
- Pridružio: 22 Jul 2006
- Poruke: 43
- Gde živiš: Podgorica
|
bobby skenirao sam opet imao je 14 detekcija evo ti log-ovi!
Dopuna: 16 Mar 2007 19:57
__________________________________________________
ewido anti-spyware online scanner
http://www.ewido.net
__________________________________________________
Name: TrackingCookie.Yieldmanager
Path: :mozilla.5:C:\Documents and Settings\MULTIPRINT\Application Data\Mozilla\Firefox\Profiles\0ev8wf13.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Yieldmanager
Path: :mozilla.6:C:\Documents and Settings\MULTIPRINT\Application Data\Mozilla\Firefox\Profiles\0ev8wf13.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Yieldmanager
Path: :mozilla.7:C:\Documents and Settings\MULTIPRINT\Application Data\Mozilla\Firefox\Profiles\0ev8wf13.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Revsci
Path: :mozilla.31:C:\Documents and Settings\MULTIPRINT\Application Data\Mozilla\Firefox\Profiles\0ev8wf13.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Revsci
Path: :mozilla.34:C:\Documents and Settings\MULTIPRINT\Application Data\Mozilla\Firefox\Profiles\0ev8wf13.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Revsci
Path: :mozilla.36:C:\Documents and Settings\MULTIPRINT\Application Data\Mozilla\Firefox\Profiles\0ev8wf13.default\cookies.txt
Risk: Medium
Name: TrackingCookie.Revsci
Path: :mozilla.37:C:\Documents and Settings\MULTIPRINT\Application Data\Mozilla\Firefox\Profiles\0ev8wf13.default\cookies.txt
Risk: Medium
Name: Downloader.Apher.070
Path: C:\Documents and Settings\MULTIPRINT\My Documents\My Hack.rar/My Hack\hacking\hack\ap0x2-.zip/ap0x2/my.target2.zip/vct_razbijacme2.exe
Risk: High
Name: Not-A-Virus.DoS.Win32.Bonk.d
Path: C:\Documents and Settings\MULTIPRINT\My Documents\My Hack.rar/My Hack\hacking\hakerrrrrrrrrrrr\jolt2.zip/jolt2/jolt2.exe
Risk: Low
Name: Adware.SoftwareDoctor
Path: C:\Program Files\SoftwareDoctor
Risk: Medium
Name: Adware.SoftwareDoctor
Path: C:\Program Files\SoftwareDoctor\ErrorDoctor
Risk: Medium
Name: Adware.SoftwareDoctor
Path: C:\Program Files\SoftwareDoctor\ErrorDoctor\FixedOnWednesdayOctober252006005351.xml
Risk: Medium
Name: Not-A-Virus.RemoteAdmin.Win32.RemotelyAnywhere.a
Path: C:\System Volume Information\_restore{CA622238-7827-4A69-B4FA-0573559373F3}\RP718\A0959115.dll
Risk: Low
Name: Adware.ErrorDoctor
Path: C:\System Volume Information\_restore{CA622238-7827-4A69-B4FA-0573559373F3}\RP718\A0959118.exe
Risk: Medium
Name: Adware.WebHancer
Path: C:\System Volume Information\_restore{CA622238-7827-4A69-B4FA-0573559373F3}\RP718\A0959126.inf
Risk: Medium
Dopuna: 16 Mar 2007 19:59
Logfile of HijackThis v1.99.1
Scan saved at 7:16:15 PM, on 3/16/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
C:\WINDOWS\system32\lvhidsvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\UTSCSI.EXE
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
C:\PROGRA~1\eSnips\ClientGW.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
C:\Program Files\Common Files\AOL\1173697284\ee\AOLSoftware.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\MSGTAG\MSGTAG.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\PROGRA~1\Stardock\OBJECT~1\WindowFX\wfxload.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\PROGRA~1\Magentic\bin\MgApp.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\Metacafe\MetacafeAgent.exe
C:\Program Files\YPOPs\YPOPs.exe
C:\WINDOWS\system32\LVComsX.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Documents and Settings\MULTIPRINT\Desktop\New Folder\HT.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQToolbar\toolbaru.dll
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRA%7E1%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\MULTIPRINT\Application Data\Mozilla\Profiles\default\9mt21tpb.slt\prefs.js)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: XTTBPos00 Class - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\Program Files\ICQToolbar\toolbaru.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: eSnips - {ED1184DA-E57E-4480-99D0-A16809037F54} - C:\PROGRA~1\eSnips\SnipBar.dll
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQToolbar\toolbaru.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [eSnips] "C:\PROGRA~1\eSnips\ClientGW.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [DataLayer] C:\Program Files\Common Files\PCSuite\DataLayer\DataLayer.exe
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -onlytray
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1173697284\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [SoftPerfect Personal Firewall] "C:\Program Files\SoftPerfect Personal Firewall\fw.exe"
O4 - HKCU\..\Run: [MSGTAG] "C:\Program Files\MSGTAG\MSGTAG.exe" /startup
O4 - HKCU\..\Run: [Magentic] C:\PROGRA~1\Magentic\bin\Magentic.exe /c
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKCU\..\Run: [WindowFX] C:\PROGRA~1\Stardock\OBJECT~1\WindowFX\\wfxload.exe
O4 - Startup: Metacafe.lnk = C:\Program Files\Metacafe\MetacafeAgent.exe
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Startup: YPOPs.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Metacafe.lnk = C:\Program Files\Metacafe\MetacafeAgent.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Search - O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Add to Windows &Live Favorites -
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open in new background tab - res://C:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/229?c67c0f95dc894dfc9e12a1f609c33ffb
O8 - Extra context menu item: Open in new foreground tab - res://C:\Program Files\Windows Live Toolbar\Components\en-us\msntabres.dll.mui/230?c67c0f95dc894dfc9e12a1f609c33ffb
O8 - Extra context menu item: Snip to my eSnips account - C:\Program Files\eSnips\res\SnipIt.htm
O8 - Extra context menu item: Web Rebates. - file://C:\Program Files\WebRebates4\websrebates\webtrebates\toprC0.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: YU-MP3.COM Account Login - {ECC5777A-6E88-BFCE-13CE-81F134789E7B} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: &YU-MP3.COM User Login - {ECC5777A-6E88-BFCE-13CE-81F134789E7B} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} -
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (AcPreview Control) - file://C:\Program Files\AutoCAD 2002\AcPreview.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{58F7B8B6-D5FF-4801-9168-4BC9138B0071}: NameServer = 195.66.160.1 195.66.160.2
O17 - HKLM\System\CCS\Services\Tcpip\..\{FC043462-7DD8-4DDF-ABF6-9B091D96C28B}: NameServer = 195.66.160.1,195.66.160.2
O17 - HKLM\System\CS2\Services\Tcpip\..\{58F7B8B6-D5FF-4801-9168-4BC9138B0071}: NameServer = 195.66.160.1 195.66.160.2
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: text/html - {994D478A-45D0-4DB4-AE77-288B1E346E99} - (no file)
O20 - AppInit_DLLs: pushow66.dll,wbsys.dll
O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
O20 - Winlogon Notify: LMIinit - LMIinit.dll (file missing)
O20 - Winlogon Notify: WBSrv - C:\DOCUME~1\MULTIP~1\MYDOCU~1\WINDOW~1\wbsrv.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Remote HID Service (LvHidSvc) - Philips - C:\WINDOWS\system32\lvhidsvc.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Panda Process Protection Service (PavPrSrv) - Panda Software - C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sharcmn_1. - Protection Technology - (no file)
O23 - Service: USBest Service Zero (UTSCSI) - USBest - C:\WINDOWS\system32\UTSCSI.EXE
|
|
|
|
Poslao: 16 Mar 2007 23:28
|
offline
- bobby
- Administrator
- Pridružio: 04 Sep 2003
- Poruke: 24135
- Gde živiš: Wien
|
Posalji mi na Upload za Ambulantu ( http://www.mycity.rs/ambulanta-upload.php ) sledece fajlove da ih pogledam:
C:\Program Files\Common Files\AOL\1173697284\ee\AOLSoftware.exe
C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
C:\DOCUME~1\MULTIP~1\MYDOCU~1\WINDOW~1\wbsrv.dll
i molim te potrazi misteriozni pushow66.dll
Probaj preko Search funkcije koju imas na Start > Search > For Files or Folders > All Files and folders
Kada stignes dotle klikni na More advanced options i vidi da su stiklirane sledece opcije:
- Search system folders
- Search hidden files and folders
- Search subfolders
U polju 'Look in' unesi C:
Sto se tice foldera C:\DOCUME~1\MULTIP~1\MYDOCU~1\WINDOW~1\wbsrv.dll - to je skracen oblik imena. Punu putanju mozes lako naci:
C:\DOCUME~1 je recimo C:\Documents and Settings
Lako mozes videti koje folder iz Explorera odgovara skracenoj verziji imena foldera.
|
|
|
|