![]() |
| |||||||
| Registracija | Mapa Spy | Member List | Donacije | Pretraživanje | Today's Posts | Označi Sve Forume Kao Pročitane | Forum Rules |
|
![]() |
| | Thread Tools |
|
#1
| |||
| |||
| Bok, Kako mogu riješiti ovaj problem ...? Je li to spyware ili virus problem? Neke web stranice koje prikazuju kodiran, kao što je MSN ... zašto? Thx unaprijed. |
|
#2
| |||
| |||
| Mi ćemo morati znati točan greška poruke kako bi određivanje. Download HijackThis Ovdje Nakon što ste ga preuzeli Install / spremite ga u svoj 'vlastiti folder! To je važno za njega kako bi ispravno funkcionirao. Na primjer spremiti u C: \ Program Files \ hijackthis Potom možete stvoriti prečac na radnoj površini. Jednom instalirana otvorite program i odaberite Da li je sustav skenirati i spasiti logfile. Važno ** Nemate Hijack To škripac išta još. Većina onoga što će se pronađe bezopasni ili čak obavezna. Spremite se prijavite na radnu površinu. U narednih post Idi kliknite Advanced. Pomaknite se dolje i kliknite na Manage Attachments i dodati kao privitak zapisniku. |
|
#3
| ||||||||||||
| ||||||||||||
| Mogu li uzeti jedan screenshot i pošta Internet ovdje.
__________________
My System: Hybr! D
|
|
#4
| |||
| |||
| BBBBBBBBBBBB na vrhu stranice (leftside ).... ne svaka stranica ..... iako ne mogu dobiti zaslon hvatanje upravo sada. |
|
#5
| |||
| |||
| Trčanje Hijack This kao predložen, pa ćemo vidjeti što svibanj biti uplitanja. |
|
#6
| |||
| |||
| U redu momci ... evo logfile Logfile of HijackThis v1.99.1 Skenirajte spremljena u 1:07:17, on 8/15/2007 Platforma: Windows XP SP2 (Winnt 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Pokretanje procesa: C: \ WINDOWS \ System32 \ smss.exe C: \ WINDOWS \ system32 \ Winlogon.exe C: \ WINDOWS \ system32 \ services.exe C: \ WINDOWS \ system32 \ lsass.exe C: \ WINDOWS \ system32 \ Svchost.exe C: \ WINDOWS \ System32 \ Svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe C: \ WINDOWS \ explorer.exe C: \ Program Files \ Common Files \ Symantec Shared \ AppCore \ AppSvc32.exe C: \ WINDOWS \ system32 \ spoolsv.exe C: \ Program Files \ Lavasoft \ Ad-Aware 2007 \ aawservice.exe C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe C: \ Program Files \ Common Files \ Microsoft Shared \ VS7Debug \ mdm.exe C: \ WINDOWS \ System32 \ Svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe C: \ Program Files \ HP \ hpcoretech \ hpcmpmgr.exe C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe C: \ Program Files \ Adobe \ Photoshop Album Starter Edition \ 3,0 \ Apps \ apdproxy.exe C: \ WINDOWS \ system32 \ Ctfmon.exe C: \ Program Files \ Yahoo! \ Traži Zaštita \ SearchProtection.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqnrs08.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqSTE08.exe C: \ Program Files \ Internet Explorer \ iexplore.exe C: \ Program Files \ Microsoft Office \ Office10 \ Outlook.exe C: \ WINDOWS \ system32 \ HPZinw12.exe C: \ Program Files \ Microsoft Office \ Office10 \ WINWORD.EXE C: \ WINDOWS \ system32 \ HPZipm12.exe C: \ Program Files \ Internet Explorer \ iexplore.exe C: \ DOCUME ~ 1 \ SBTAR \ LOCALS ~ 1 \ Temp \ Temporary Directory 1 for hijackthis [1]. Poštanski \ HijackThis.exe R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = http://us.rd.yahoo.com/customize/yco...search/ie.html R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://us.rd.yahoo.com/customize/yco.../www.yahoo.com R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.yahoo.com/ R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.yahoo.com R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.yahoo.com R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ SearchURL, (Default) = http://us.rd.yahoo.com/customize/yco.../www.yahoo.com R3 - URLSearchHook: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ Instalira \ cpn1 \ yt.dll O1 - Hosts: HPF5CC32 HP0019BBF5CC32 O2 - BHO: & Yahoo! Traka s alatima Helper - (02478D38-C3F9-4EFB-9B51-7695ECA05670) - C: \ Program Files \ Yahoo! \ Companion \ Instalira \ cpn1 \ yt.dll O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Adobe \ Acrobat 7,0 \ ActiveX \ AcroIEHelper.dll O2 - BHO: (no name) - (1E8A6170-7264-4D0F-BEAE-D42A53123C75) - C: \ Program Files \ Common Files \ Symantec Shared \ coShared \ Browser \ 1.0 \ NppBho.dll O2 - BHO: Yahoo! IE Services Button - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ Instalira \ cpn1 \ yt.dll O3 - Toolbar: Norton Show Toolbar - (90222687-F593-4738-B738-FBEE9C7B26DF) - C: \ Program Files \ Common Files \ Symantec Shared \ coShared \ Browser \ 1.0 \ UIBHO.dll O4 - HKLM \ .. \ Run: [IMJPMIG8.1] "C: \ WINDOWS \ IME \ imjp8_1 \ IMJPMIG.EXE" / ukvariti / RemAdvDef / Migration32 O4 - HKLM \ .. \ Run: [MSPY2002] C: \ WINDOWS \ System32 \ IME \ PINTLGNT \ ImScInst.exe / Sync O4 - HKLM \ .. \ Run: [PHIME2002ASync] C: \ WINDOWS \ System32 \ IME \ TINTLGNT \ TINTSETP.EXE / Sync O4 - HKLM \ .. \ Run: [PHIME2002A] C: \ WINDOWS \ System32 \ IME \ TINTLGNT \ TINTSETP.EXE / IMEName O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [osCheck] "C: \ Program Files \ Norton Internet Security \ osCheck.exe" O4 - HKLM \ .. \ Run: [DXDllRegExe] dxdllreg.exe O4 - HKLM \ .. \ Run: [HP Component Manager] "C: \ Program Files \ HP \ hpcoretech \ hpcmpmgr.exe" O4 - HKLM \ .. \ Run: [HP Software Update] C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe O4 - HKLM \ .. \ Run: [Adobe Photo Downloader] "C: \ Program Files \ Adobe \ Photoshop Album Starter Edition \ 3,0 \ Apps \ apdproxy.exe" O4 - HKLM \ .. \ Run: [MSConfig] C: \ WINDOWS \ PCHealth \ HelpCtr \ binarne datoteke \ programu Msconfig.exe / auto O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [YSearchProtection] C: \ Program Files \ Yahoo! \ Traži Zaštita \ SearchProtection.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe O4 - Global Startup: Microsoft Office.lnk = C: \ Program Files \ Microsoft Office \ Office10 \ OSA.EXE O4 - Global Startup: QuickBooks Update Agent.lnk = C: \ Program Files \ Common Files \ Intuit \ QuickBooks \ QBUpdate \ qbupdate.exe Ø8 - Extra context menu item: & Yahoo! Traži -- file: / / / C: \ Program Files \ Yahoo! \ Common / ycsrch.htm O8 - Extra kontekst meni stavka: E & zvezi u Microsoft Excel - res: / / C: \ programa ~ 1 \ MICROS ~ 2 \ Office10 \ EXCEL.EXE/3000 Ø8 - Extra context menu item: Yahoo! Dictionary & -- file: / / / C: \ Program Files \ Yahoo! \ Common / ycdict.htm Ø8 - Extra context menu item: Yahoo! & Maps -- file: / / / C: \ Program Files \ Yahoo! \ Common / ycmap.htm Ø8 - Extra context menu item: Yahoo! SMS & -- file: / / / C: \ Program Files \ Yahoo! \ Common / ycsms.htm O9 - Extra button: Yahoo! Services - (5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897) - C: \ Program Files \ Yahoo! \ Common \ yiesrvc.dll O9 - Extra button: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O16 - DPF: (8C875948-9C60-4381-9248-0DF180542D53) -- http://installs.hotbar.com/installs/...ms/hbtools.cab O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C: \ Program Files \ Lavasoft \ Ad-Aware 2007 \ aawservice.exe O23 - Service: Automatic LiveUpdate Planer - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown vlasnika - C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe "/ h ccCommon (file missing) O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown vlasnika - C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe "/ h ccCommon (file missing) O23 - Service: Symantec Lic NetConnect usluga (CLTNetCnService) - Unknown vlasnika - C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe "/ h ccCommon (file missing) O23 - Service: Host COM (comHost) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ VAScanner \ comHost.exe O23 - Service: HP Port resolver - Hewlett-Packard Company - C: \ WINDOWS \ system32 \ spool \ drivers \ w32x86 \ 3 \ HPBPRO. EXE O23 - Service: HP Status Server - Hewlett-Packard Company - C: \ WINDOWS \ system32 \ spool \ drivers \ w32x86 \ 3 \ HPBOID. EXE O23 - Service: Symantec Password Validation IS (ISPwdSvc) - Symantec Corporation - C: \ Program Files \ Norton Internet Security \ isPwdSvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ programa ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Pml Driver HPZ12 - HP - C: \ WINDOWS \ system32 \ HPZipm12.exe O23 - Service: Symantec Core LC - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ CCPD-LC \ symlcsvc.exe O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ AppCore \ AppSvc32.exe Thx unaprijed, Bog blagosloviti. |
|
#7
| |||
| |||
| HijackThis treba pokrenuti iz stalnog mjesta na tvrdom disku. Molimo da ovu prvu: Odite na C: i stvoriti novi stalni mapu (nazvati hijackthis). Zatim stavite (ili download - odaberite "Save" ne "pokrenuti") je hijackthis.exe datoteke u njemu (morate otvoriti rajsfešlus ga ako je zazipan). Sada bi trebali imati C: \ hijackthis \ hijackthis.exe. Zatim pokrenite hijackthis klikom ovo. Exe datoteku. Mimo događaj ovaj, imat ćete sigurnosne kopije, ako ste slučajno ukloniti pogrešan predmet (izvodi iz privremene mape tih sigurnosnih kopija može lako se izgubiti). Imam od mina u C: \ Program Files \ hijackthis. Možete zatim desni klik na ikonu i stvoriti prečac na radnoj površini. Idi na Dodaj / Ukloni programe i vidjeti ako išta znaš ne bi trebali biti tamo da je instaliran, možete de-instalirati. Kao i alatne trake. Zatim pokrenite CCleaner. Koristi zadane opcije. Ukoliko nemate CCleaner molimo ga instalirali. Ovdje Nakon što je otvoren CCleaner koristiti zadane opcije i kliknite Analizirajte i ona će se prikazati evidencija što će biti uklonjen. Sljedeća kliknite Pokreni čistiju ukloniti sve. Sljedeća na gornjoj lijevoj strani odaberite CCleaner pitanja karticu. Sljedeća kliknite Scan for pitanja. Sljedeća kliknite Popravi odabrane probleme. On će od vas zatražiti da napravite backup. Na prvoj vožnji Htjela predlažemo da radim tako. Ukoliko nemate Spybot Search & Destroy molimo preuzmite / instalirati. Ovdje Provjeri ažuriranja za sada i dobiti bilo kakve promjene. Potražite na cijepiti značajka u Spybot i koristiti ga. Ne koristite Teatimer funkciju. Pokreni Spybot i neka ga popraviti ono što se nađe. Onda post svježe zapisnik HJT. |
|
#8
| |||
| |||
| Mnogo dužan evilFantasy, ja ću učiniti samo da prema tome .... pa to je kao da nismo u vlasništvo virus ili nešto? Zatim, upravo sada nismo mogli vidjeti naše mreže. Netko je sjeckanje mreža, misliš? Hvala toliko, Bog blagosloviti. |
|
#9
| |||
| |||
| Imate instaliran Hotbar alatnoj traci. To je malware da. Nakon trčanje spybot ćemo znati ako ima je više. Također ćete morati napraviti ovaj. Trčanje HijackThis opet, kliknite Scan, i Put kvačica pored svake od njih. Zatim zatvorite sve ostale prozore - samo treba vidjeti HijackThis na svoj Desktop - i kliknite na Fix Checked gumb. Budite sigurni da zatvorite sve prozore prije nego fiksiranje. O16 - DPF: (8C875948-9C60-4381-9248-0DF180542D53) -- http://installs.hotbar.com/installs/...ms/hbtools.cab |
|
#10
| |||
| |||
| Vaša nova prijava je u novi thread ovdje; http://www.thecomputerforums.co.uk/f...checking-6779/ |
![]() |
|
| Bookmarks |
Slične teme | ||||
| Nit | Temu Započeo | Forum | Odgovori | Zadnji Post |
| Greška popup; IE7 naišao i pogreške ... | jonkon2 | Web Browsers & FTP Klijenti | 1 | 30. svibanj 2009 00:30 |
| Greška harddrive na Bootup - "Disk Error" "Pritisnite bilo koju tipku da biste ponovo" | ashaiba | General Hardware Chat | 6 | 13. ožujak 2009 15:56 |
| Pogreška 17?!?! | gaza14 | Linux OS i alternativna | 4 | 9. travanj 2008 09:08 |
| DMA-driver error, CRC error | ghbnic | Drives & Izmjenjivi mediji | 6 | 2. travanj 2008 11:44 |
| The error BBBBBBBBBBBBB na lijevom vrhu preglednika. | paskall | Virus, Spyware i sigurnost | 1 | 29. ožujak 2008 15:28 |
| Thread Tools | |
| |