manji kapital -

Magazine
Go Back   Computer soka > Computer Software > Virus, Spyware i sigurnost

Register


 Default 

Trojanski




Reply
 
Thread Tools
  #1  
Old 24. listopad 2008, 16:18
Member Group
 
Imam Trojanac na mom PC-u System32 datoteke. Imam AVG, nego samo pitali kako da biste dobili osloboditi od Internet from AVG kao kad sam kliknite Izbriši, mislim da je to samo briše od svoda do sljedećeg skeniranja, kada je ponovno pronađen.
  #2  
Old 24. listopad 2008, 16:24
Donatorska Grupa
 
Čini se kao da će morati učiniti više nego samo pokušava izbrisati sa AVG, probati uzimanje pogledati ovaj thread.
__________________

My System: Prvo OC

Procesor (i):
Intel E2180@2.85
Matične ploče:
Gigabajt GA-P35-DS3L
RAM memorija:
2x1GB OCZ PC2-9200 žetelac CL5
Grafička kartica (e):
Gainward ATI 3850
Sound Card:
na brodu
Tvrdi disk (i):
7200,7 SEAGATE BARRACUDA 120GB
Optički pogon (e):
Hitachi DVD-ROM GD-2500
Case / PSU:
Gusar VX450
Hlađenje:
AC Pro freezer7, 2x80mm, 1x90mm, 1x120mm
Network / Internet:
na brodu / navodno 10Meg djevičansko kabel
Monitor (e):
Viewsonic Vx922; Viewsonic VE702m
Operacijski sustav (e):
XP Home
  #3  
Old 25. listopad 2008, 04:17
Member Group
 
Ok, hvala. Ja ću pokrenuti kidnapovati Ovaj sutra:)
  #4  
Old 25. listopad 2008, 10:08
Moderator / ica grupe
 
Molimo pokrenuti sve od skenira i poslati dnevnike. HijackThis obično nije dovoljno.
__________________

  #5  
Old 26. listopada 2008, 15:58
Member Group
 
I've ran SUPERAntiSpyware i dobio zapisnik. Također sam ran AVG još jednom i on je došao gore sa šest mjesta da je Trojanski okužen.

To je SUPERAntiSpyware log:

SUPERAntiSpyware Scan Prijava
http://www.superantispyware.com

Generirano 10/26/2008 at 08:30

Application Version: 4/21/1004

Core Pravila Database Version: 3609
Trace Pravila Database Version: 1595

Scan type: Cijela Scan
Ukupno Scan Vrijeme: 00:59:08

Memorija predmeta skenirane: 430
Memorija prijetnje otkrivena: 0
Registry stavke skenirane: 4950
Matični prijetnje otkrivena: 0
File skenirane podatke: 73876
File prijetnje otkrivena: 77

Trojan.Unknown Origin
C: \ WINDOWS \ mslagent \ 2_mslagent.dll
C: \ WINDOWS \ mslagent \ mslagent.exe
C: \ WINDOWS \ mslagent \ uninstall.exe
C: \ WINDOWS \ mslagent
C: \ WINDOWS \ system32 \ SMP \ msrc.exe
C: \ WINDOWS \ system32 \ SMP

Adware.INetDelivery
C: \ Program Files \ INET Dostava \ inetdl.exe
C: \ Program Files \ INET Dostava \ intdel.exe
C: \ Program Files \ INET Dostava
C: \ Program Files \ akl \ akl.dll
C: \ Program Files \ akl \ akl.exe
C: \ Program Files \ akl \ uninstall.exe
C: \ Program Files \ akl \ unsetup.exe
C: \ Program Files \ akl

Trojan.Fake-Drop/Gen
C: \ Windows \ System32 \ VBSYS2.DLL
C: \ Windows \ System32 \ AWTOOLB.DLL
C: \ Windows \ System32 \ SYSREQ.EXE
C: \ Windows \ System32 \ WINWGPX.EXE
C: \ Windows \ System32 \ BDN.COM
C: \ Windows \ System32 \ MSSECU.EXE
C: \ Windows \ System32 \ VCATCHPI.DLL
C: \ Windows \ System32 \ AKTTZN.EXE
C: \ Windows \ System32 \ WINSYSTEM.EXE
C: \ Windows \ System32 \ NEWSD32.EXE
C: \ Windows \ System32 \ EMESX.DLL
C: \ Windows \ System32 \ RUNDL1.EXE
C: \ Windows \ System32 \ ANTICIPATOR.DLL
C: \ Windows \ System32 \ THUN.DLL
C: \ Windows \ System32 \ THUN32.DLL
C: \ Windows \ System32 \ MSVCHOST.EXE
C: \ Windows \ System32 \ REGC64.DLL
C: \ Windows \ System32 \ REGM64.DLL
C: \ Windows \ System32 \ SSVCHOST.COM
C: \ Windows \ System32 \ SSVCHOST.EXE
C: \ Windows \ System32 \ Temp # 01.EXE
C: \ Windows \ System32 \ MSGP.EXE
C: \ Windows \ System32 \ MTR2.EXE
C: \ Windows \ System32 \ H @ @ @ K. TKEYSH DLL
C: \ Windows \ System32 \ NETODE.EXE
C: \ Windows \ System32 \ MEDUP012.DLL
C: \ Windows \ System32 \ MEDUP020.DLL
C: \ Windows \ System32 \ SSURF022.DLL
C: \ Windows \ System32 \ MSNBHO.DLL
C: \ Windows \ System32 \ BSVA-EGIHSG52.EXE
C: \ Windows \ System32 \ PS1.EXE
C: \ Windows \ System32 \ HXIWLGPM.DAT
C: \ Windows \ System32 \ HXIWLGPM.EXE
C: \ Windows \ System32 \ TAACK.DAT
C: \ Windows \ System32 \ TAACK.EXE
C: \ Windows \ System32 \ MWIN32.EXE
C: \ Windows \ System32 \ VBIEWER.OCX
C: \ Windows \ System32 \ HOPROXY.DLL
C: \ Windows \ System32 \ WINLOGONPC.EXE
C: \ WINDOWS \ BDN.COM
C: \ WINDOWS \ MSSECU.EXE
C: \ WINDOWS \ WINSYSTEM.EXE
C: \ WINDOWS \ ITUNESMUSIC.EXE
C: \ WINDOWS \ A. BAT
C: \ WINDOWS \ BASE64.TMP
C: \ WINDOWS \ FVPROTECT.EXE
C: \ WINDOWS \ USERCONFIG9X.DLL
C: \ WINDOWS \ ZIP1.TMP
C: \ WINDOWS \ ZIP2.TMP
C: \ WINDOWS \ ZIP3.TMP
C: \ WINDOWS \ ZIPPED.TMP

Dpcproxy
C: \ Windows \ System32 \ DPCPROXY.EXE

Porijeklo Unclassified.Unknown / System
C: \ Windows \ System32 \ PSOF1.EXE

Adware.Pacer D
C: \ Windows \ System32 \ PSOFT1.EXE

Trojan.Dluca-I
C: \ Windows \ System32 \ SNCNTR.EXE

Adware.Vundo-Varijanta / J
C: \ WINDOWS \ QRBGLTOS.DLL

Trojan.Net-MSV/VPS-Variant
C: \ WINDOWS \ GRFXBANOMOK.DLL

Adware.180solutions/Seekmo/Zango
C: \ Documents and Settings \ GOST \ Desktop \ setup.exe

Adware.Tracking Cookie
C: \ Documents and Settings \ Gost \ Cookies \ gost @ doubleclick [2]. Txt
C: \ Documents and Settings \ Gost \ Cookies \ gost @ posluživanje sys-[2]. Txt
C: \ Documents and Settings \ Gost \ Cookies \ gost @ atdmt [2]. Txt
C: \ Documents and Settings \ Gost \ Cookies \ gost @ tradedoubler [2]. Txt
C: \ Documents and Settings \ Gost \ Cookies \ guest@bs.serving-sys [2]. Txt
  #6  
Old 26. listopada 2008, 16:11
Member Group
 
Prijavite MalwareByres:

Malwarebytes' Anti-zaštita od zlonamjernih programa 1,30
Database version: 1324
5/1/2600 Windows Service Pack 2

26/10/2008 23:09:02
mbam-log-2008-10-26 (23-09-02). txt

Scan type: Quick Scan
Objekti skenirane: 52045
Proteklo vrijeme: 4 minute (s), 36 Drugi (a / e)

Memory Processes zaraženih: 0
Memorijske module zaraženih: 0
Ključevi registra zaraženih: 0
Registry Values zaraženih: 0
Registry Data Items zaraženih: 0
Mape zaraženih: 1
Zaraženih datoteka: 1

Memory Processes zaraženih:
(Nema stavki otkrivenih zlonamjernih)

Memorijske module zaraženih:
(Nema stavki otkrivenih zlonamjernih)

Ključevi registra zaraženih:
(Nema stavki otkrivenih zlonamjernih)

Registry Values zaraženih:
(Nema stavki otkrivenih zlonamjernih)

Registry Data Items zaraženih:
(Nema stavki otkrivenih zlonamjernih)

Mape zaraženih:
C: \ Documents and Settings \ Gost \ Local Settings \ Temp \ ac8zt2 (Trojan.FakeAlert) ->

Karanteni i uspješno izbrisan.

Zaražene datoteke:
C: \ WINDOWS \ egsf.exe (Trojan.FakeAlert) -> karanteni i uspješno izbrisan.
  #7  
Old 26. listopada 2008, 17:27
Moderator / ica grupe
 
Potrebno je da se prijavite sada HijackThis
__________________

  #8  
Old 27. listopada 2008, 14:27
Member Group
 
Quote:
Originally Posted by jamesjon View Post
NOD32 je najbolji za trojanskih.
Skrb da se prošire?
  #9  
Old 27. listopada 2008, 14:35
Moderator / ica grupe
 
Molimo samo nastaviti sa slanjem logove ako vam je potrebna pomoć.
__________________

  #10  
Old 27. listopada 2008, 16:03
Member Group
 
Logfile of Trend Micro HijackThis v2.0.2
Scan spremljena u 23:01:07, dana 27/10/2008
Platforma: Windows XP SP2 (Winnt 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Pokretanje procesa:
C: \ WINDOWS \ System32 \ smss.exe
C: \ WINDOWS \ system32 \ Winlogon.exe
C: \ WINDOWS \ system32 \ services.exe
C: \ WINDOWS \ system32 \ lsass.exe
C: \ WINDOWS \ system32 \ Svchost.exe
C: \ WINDOWS \ System32 \ Svchost.exe
C: \ WINDOWS \ system32 \ spoolsv.exe
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
C: \ programa ~ 1 \ AVG \ AVG8 \ avgwdsvc.exe
C: \ Program Files \ WIDCOMM \ Bluetooth Software \ bin \ btwdins.exe
C: \ Program Files \ Java \ jre6 \ bin \ jqs.exe
C: \ WINDOWS \ system32 \ Svchost.exe
C: \ WINDOWS \ explorer.exe
C: \ programa ~ 1 \ AVG \ AVG8 \ avgrsx.exe
C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe
C: \ WINDOWS \ SOUNDMAN.EXE
C: \ Acer \ Osnaživanje Tehnologija \ eRecovery \ Monitor.exe
C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe
C: \ Program Files \ BroadJump \ Client Foundation \ CFD.exe
C: \ Program Files \ Virgin Širokopojasni \ savjetnik \ Broadbandadvisor.exe
C: \ Program Files \ Pro TextBridge Millenium \ Bin \ InstantAccess.exe
C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe
C: \ Program Files \ iTunes \ iTunesHelper.exe
C: \ programa ~ 1 \ AVG \ AVG8 \ avgtray.exe
C: \ WINDOWS \ sm56hlpr.exe
C: \ Program Files \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe
C: \ WINDOWS \ system32 \ Ctfmon.exe
C: \ WINDOWS \ system32 \ sistray.exe
C: \ Program Files \ WIDCOMM \ Bluetooth Software \ BTTray.exe
C: \ Program Files \ Ulead Systems \ Ulead Photo Express 3,0 SE \ CalCheck.exe
C: \ Program Files \ iPod \ bin \ iPodService.exe
C: \ Program Files \ Trust \ Easy Webscan 19200 \ ScanPanel \ ScnPanel.exe
C: \ Program Files \ FinePixViewerS \ QuickDCF2.exe
C: \ programa ~ 1 \ WIDCOMM \ BLUETO ~ 1 \ BTSTAC ~ 1.EXE
C: \ WINDOWS \ system32 \ wuauclt.exe
C: \ Program Files \ HijackThis \ Analyse.exe.exe

R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.google.co.uk/
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://global.acer.com
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Postavke, ProxyOverride = *. lokalne
O2 - BHO: AcroIEHlprObj Class - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Adobe \ Acrobat 7,0 \ ActiveX \ AcroIEHelper.dll
O2 - BHO: StumbleUpon Launcher - (145B29F4-A56B-4b90-BBAC-45784EBEBBB7) - C: \ Program Files \ StumbleUpon \ StumbleUponIEBar.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - (3CA2F312-6F6E-4B53-A66E-4E65E497C8C0) - C: \ Program Files \ AVG \ AVG8 \ avgssie.dll
O2 - BHO: Java (tm) Plug-in SSV Helper - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre6 \ bin \ ssv.dll
O2 - BHO: Windows Live Sign-in Helper - (9030D464-4C02-4ABF-8ECC-5164760863C6) - C: \ Program Files \ Common Files \ Microsoft Shared \ Windows Live \ WindowsLiveLogin.dll
O2 - BHO: AVG Sigurnost Toolbar - (A057A204-BACC-4D26-9990-79A187E2698E) - C: \ programa ~ 1 \ AVG \ AVG8 \ AVGTOO ~ 1.DLL
O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8333-CF10577473F7) - c: \ program files \ google \ googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Program Files \ Google \ GoogleToolbarNotifier \ 3.1.807.1746 \ sw g.dll
O2 - BHO: Java (tm) Plug-in 2 SSV Helper - (DBC80044-A445-435b-BC74-9C25C1C588A9) - C: \ Program Files \ Java \ jre6 \ bin \ jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - (E7E6F031-17CE-4C07-BC86-EABFE594F69C) - C: \ Program Files \ Java \ jre6 \ lib \ rasporediti \ jqs \ ie \ jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - (E99421FB-68DD-40F0-B4AC-B7027CAE2F1A) - C: \ Program Files \ EPSON \ EPSON Web-To-Page \ EPSON Web-To-Page.dll
O3 - Toolbar: & Google - (2318C2B1-4965-11d4-9B18-009027A5CD4F) - c: \ program files \ google \ googletoolbar1.dll
O3 - Toolbar: EPSON Web-To-Page - (EE5D279F-081B-4404-994D-C6B60AAEBA6D) - C: \ Program Files \ EPSON \ EPSON Web-To-Page \ EPSON Web-To-Page.dll
O3 - Toolbar: StumbleUpon Toolbar - (5093EB4C-3E93-40AB-9266-B607BA87BDC8) - C: \ Program Files \ StumbleUpon \ StumbleUponIEBar.dll
O3 - Toolbar: AVG Sigurnost Toolbar - (A057A204-BACC-4D26-9990-79A187E2698E) - C: \ programa ~ 1 \ AVG \ AVG8 \ AVGTOO ~ 1.DLL
O4 - HKLM \ .. \ Run: [LaunchApp] Alaunch
O4 - HKLM \ .. \ Run: [ntiMUI] C: \ Program Files \ NewTech Infosystems \ NTI CD & DVD Maker 7 \ ntiMUI.exe
O4 - HKLM \ .. \ Run: [RemoteControl] "C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe"
O4 - HKLM \ .. \ Run: [IMJPMIG8.1] "C: \ WINDOWS \ IME \ imjp8_1 \ IMJPMIG.EXE" / ukvariti / RemAdvDef / Migration32
O4 - HKLM \ .. \ Run: [MSPY2002] C: \ Windows \ System32 \ IME \ PINTLGNT \ ImScInst.exe / Sync
O4 - HKLM \ .. \ Run: [PHIME2002ASync] C: \ Windows \ System32 \ IME \ TINTLGNT \ TINTSETP.EXE / Sync
O4 - HKLM \ .. \ Run: [PHIME2002A] C: \ Windows \ System32 \ IME \ TINTLGNT \ TINTSETP.EXE / IMEName
O4 - HKLM \ .. \ Run: [SiSPower] Rundll32.exe SiSPower.dll, ModeAgent
O4 - HKLM \ .. \ Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM \ .. \ Run: [eRecoveryService] C: \ Acer \ Osnaživanje Tehnologija \ eRecovery \ Monitor.exe
O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe"
O4 - HKLM \ .. \ Run: [BJCFD] C: \ Program Files \ BroadJump \ Client Foundation \ CFD.exe
O4 - HKLM \ .. \ Run: [Broadbandadvisor.exe] "C: \ Program Files \ Virgin Širokopojasni \ savjetnik \ Broadbandadvisor.exe" / autorun
O4 - HKLM \ .. \ Run: [InstantAccess] C: \ Program Files \ Pro TextBridge Millenium \ Bin \ InstantAccess.exe / h
O4 - HKLM \ .. \ Run: [TkBellExe] "C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe"-osboot
O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files \ QuickTime \ qttask.exe"-atboottime
O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files \ iTunes \ iTunesHelper.exe"
O4 - HKLM \ .. \ Run: [AVG8_TRAY] C: \ programa ~ 1 \ AVG \ AVG8 \ avgtray.exe
O4 - HKLM \ .. \ Run: [SMSERIAL] sm56hlpr.exe
O4 - HKCU \ .. \ Run: [MsnMsgr] "C: \ Program Files \ MSN Messenger \ MsnMsgr.Exe" / background
O4 - HKCU \ .. \ Run: [swg] C: \ Program Files \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe
O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe
O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'SYSTEM')
O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ WINDOWS \ system32 \ Ctfmon.exe (User 'Default user')
O4 - Startup: Comet Screensaver.lnk = C: \ Program Files \ Comet Screensaver \ Comet Screensaver.exe
O4 - Startup: IMVU.lnk = C: \ Program Files \ IMVU \ IMVUClient.exe
O4 - Startup: Pribor
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C: \ Program Files \ Adobe \ Acrobat 7,0 \ Reader \ reader_sl.exe
O4 - Global Startup: Utility Tray.lnk = C: \ WINDOWS \ system32 \ sistray.exe
O4 - Global Startup: Bluetooth.lnk =?
O4 - Global Startup: Ulead Photo Express 3,0 SE Kalendar Checker.lnk = C: \ Program Files \ Ulead Systems \ Ulead Photo Express 3,0 SE \ CalCheck.exe
O4 - Global Startup: ScanPanel.lnk = C: \ Program Files \ Trust \ Easy Webscan 19200 \ ScanPanel \ ScnPanel.exe
O4 - Global Startup: Exif Launcher S.lnk =?
O4 - Global Startup: Adobe Gamma Loader.lnk = C: \ Program Files \ Common Files \ Adobe \ Kalibracija \ Adobe Gamma Loader.exe
O8 - Extra kontekst meni stavka: Add to Windows & Live Favorites -- http://favorites.live.com/quickadd.aspx
O8 - Extra kontekst meni stavka: E & zvezi u Microsoft Excel - res: / / C: \ programa ~ 1 \ MICROS ~ 2 \ OFFICE11 \ EXCEL.EXE/3000
O8 - Extra kontekst meni stavka: Pošalji u & Bluetooth - C: \ Program Files \ Belkin \ Bluetooth Software \ btsendto_ie_ctx.htm
O8 - Extra kontekst meni stavka: Send to & Bluetooth Device ... - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie_ctx.htm
O8 - Extra kontekst meni stavka: fotoblog StumbleUpon It! - Res: / / StumbleUponIEBar.dll / blogimage
O9 - Extra button: StumbleUpon - (75C9223A-409A-4795-A3CA-08DE6B075B4B) - C: \ Program Files \ StumbleUpon \ StumbleUponIEBar.dll
O9 - Extra button: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ programa ~ 1 \ MICROS ~ 2 \ OFFICE11 \ REFIEBAR.DLL
O9 - Extra button: @ btrez.dll, -4015 - (CCA281CA-C863-46ef-9331-5C8D4460577F) - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie.htm
O9 - Extra 'Tools' MENUITEM: @ btrez.dll, -12650 - (CCA281CA-C863-46ef-9331-5C8D4460577F) - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie.htm
O9 - Extra button: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra 'Tools' MENUITEM: @ xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe
O9 - Extra button: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
O16 - DPF: (20A60F0D-9AFA-4515-A0FD-83BD84642501) (dame Class) -- http://messenger.zone.msn.com/binary...r.cab56986.cab
O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) (YInstStarter Class) - C: \ Program Files \ Yahoo! \ Common \ yinsthelper.dll
O16 - DPF: (48DD0448-9209-4F81-9F6D-D83562940134) (MySpace Uploader Control) -- http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: (4F1E5B1A-2A80-42CA-8532-2D05CB959537) (MSN Photo Upload Tool) -- http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: (5C051655-FCD5-4969-9182-770EA5AA5565) (Solitaire Showdown Class) -- http://messenger.zone.msn.com/binary...n.cab56986.cab
O16 - DPF: (5D6F45B3-9043-443D-A792-115447494D24) (UnoCtrl Class) -- http://messenger.zone.msn.com/EN-GB/.../GAME_UNO1.cab
O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) -- http://update.microsoft.com/windowsu...?1177956484625
O16 - DPF: (C3F79A2B-B9B4-4A66-B012-3EE46475B072) (MessengerStatsClient Class) -- http://messenger.zone.msn.com/binary...t.cab56907.cab
O16 - DPF: (F5A7706B-B9C0-4C89-A715-7A0C6B05DD48) (minolovac Zastave klase) -- http://messenger.zone.msn.com/binary...r.cab56986.cab
O18 - Protocol: linkscanner - (F274614C-63F8-47D5-A4D1-FBDDE494F8D1) - C: \ Program Files \ AVG \ AVG8 \ avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O20 - Winlogon Obavijesti:! SASWinLogon - C: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll
O23 - Service: Apple Mobile Device - Apple, Inc - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: AVG8 upozoravanje (avg8wd) - AVG Technologies CZ, sro - C: \ programa ~ 1 \ AVG \ AVG8 \ avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ bin \ btwdins.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd - C: \ Program Files \ Common Files \ Macrovision Shared \ FLEXnet Izdavač \ FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc - C: \ Program Files \ iPod \ bin \ iPodService.exe
O23 - Service: Quick Početničko Java (JavaQuickStarterService) - Sun Microsystems, Inc - C: \ Program Files \ Java \ jre6 \ bin \ jqs.exe

--
End of file - 11086 bytes


Mislim da je trojanski (a) su došli iz sestra preuzimanje igara za nju telefon, nisam siguran, ali oni zaraziti se vratiti odmah.
Reply

Register
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright © 2006 - 2009 Computer soka.

Powered by vBulletin ® Copyright © 2000 - 2009 Jelsoft Enterprises Ltd SEO by vBSEO © 2009, Crawlability, Inc