Results 1 to 25 of 30

Thread:

Hybrid View

Previous Post Previous Post   Next Post Next Post
  1. #1
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026

    . , . , , , 10 , . Kaspersky 6, Email Worm, , . , Blaster Worm, . , , , .
    Attached Thumbnails Attached Thumbnails Click image for larger version. 

Name:	error.jpg‎ 
Views:	123 
Size:	56.7 KB 
ID:	11730  

  2. #2
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167

  3. #3
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026
    , . , 10 , , . fix Symantec, . - Windows.

  4. #4
    Registered User ieti's Avatar
    Join Date: Nov:2006
    Location:
    Posts: 343
    Blaster. . Windows- . FireWall. Blaster/Sasser . SP2( WinXP), SP4 + UpdateRollup1( Win2k) ... Microsoft.

  5. #5
    Master of Magic Ar4i's Avatar
    Join Date: Nov:2001
    Location:
    Posts: 6,563
    WindowsXP 2 ( firewall ) - 15- . , SP2 windows . , - SP2. .
    Ar4i

  6. #6
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026
    , Sp2 v. 2096, - . MS , .

    ieti, Blaster/Sasser, .
    Last edited by ; 24th November 2006 at 10:10.

  7. #7
    Private's Avatar
    Join Date: Jan:2002
    Location:
    Posts: 32,170
    Quote Originally Posted by
    , .
    - Windows.
    Quote Originally Posted by ilko
    - windows
    , ,
    .
    , .
    -= All our life, we are beta testers =-
    -= ! , [] ! =-
    -= =-= : Fo , goblin =-

  8. #8

  9. #9
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026
    Quote Originally Posted by Private View Post
    , .
    , , ? , , , , . 7-8. .

    Ar4i, ....

  10. #10
    Master of Magic Ar4i's Avatar
    Join Date: Nov:2001
    Location:
    Posts: 6,563
    1 firewall , 2 . firewall , . hijack this.
    Ar4i

  11. #11
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167
    .8 HJT , HJT. - . - .

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = file://C:\WINXP\system32\secure32.html
    O4 - HKLM\..\Run: [audiag] C:\WINXP\system32\audconf.exe
    O4 - HKLM\..\Run: [dssdiag] C:\WINXP\system32\dssconf.exe
    O20 - AppInit_DLLs: iasamsre.dll e1.dll confaud.dll audstat.dll diagdss.dll statdss.dll diagcre.dll statcre.dll diagdxt.dll statdxt.dll
    O20 - Winlogon Notify: atkcadpt - C:\WINXP\
    O20 - Winlogon Notify: audmgr - audmgr32.dll (file missing)
    O20 - Winlogon Notify: deiconf - C:\WINXP\SYSTEM32\cfgdei.dll
    O20 - Winlogon Notify: dxtconf - C:\WINXP\SYSTEM32\cfgdxt.dll
    btw - secure32.html hijackthis.de unknown, ?

  12. #12
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026
    , , , hijack , Nasty , . Hijack fix-, , -

    O20 - Winlogon Notify: deiconf - C:\WINXP\SYSTEM32\cfgdei.dll
    O20 - Winlogon Notify: dxtconf - C:\WINXP\SYSTEM32\cfgdxt.dll
    O17 - HKLM\System\CCS\Services\Tcpip\..\{24583 40E-E0C0-4F0A-8C1A-4F41C5F70C2B}: NameServer = 195.149.248.30 195.149.248.1

  13. #13
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167
    KillBox
    ctrl+c:
    C:\WINXP\SYSTEM32\cfgdei.dll
    C:\WINXP\SYSTEM32\cfgdxt.dll
    KillBox, paste from clipboard, delete on reboot , HJT. , .

    O17 - HKLM\System\CCS\Services\Tcpip\..\{24583 40E-E0C0-4F0A-8C1A-4F41C5F70C2B}: NameServer = 195.149.248.30 195.149.248.1
    DNS , HJT!

    HJT - c:\rapport.txt - smitfraudfix

  14. #14
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026
    , , kill- killbox, Hijackthis, Unnecessarily -Unnecessary (deactivated) entry that can be fixed.

    ... ? . .

  15. #15
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167
    HJT c:\rapport.txt -- . 2 .
    Unnecessarily -Unnecessary (deactivated) HJT? , . .

  16. #16
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026
    . .
    Unnecessarily, . .
    Attached Files

  17. #17
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167
    2:

    O20 - Winlogon Notify: deiconf - cfgdei.dll (file missing)
    O20 - Winlogon Notify: dxtconf - cfgdxt.dll (file missing)
    c:\rapport.txt ?

    BlackLight , .


    edit: - copy-paste , ..
    Last edited by ilko; 25th November 2006 at 15:52.

  18. #18
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026
    Quote Originally Posted by ilko View Post
    2:


    c:\rapport.txt ?

    BlackLight , .


    edit: - copy-paste , ..
    , Hijackthis fix- , .

    . . -, . 30 pc-.

  19. #19
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167
    my computer, o c: , notepad copy- paste , attachment.

    BlackLight ? rootkits

  20. #20
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026
    , , SmitFraudFix- rapport-, -

    SmitFraudFix v2.124

    Scan done at 14:53:36,68, 25.11.2006 .
    Run from C:\Documents and Settings\? *\Desktop\SmitfraudFix\SmitfraudFix
    OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
    Fix run in normal mode

    C:\


    Scanning wininet.dll infection


    C:\WINXP


    C:\WINXP\system


    C:\WINXP\Web


    C:\WINXP\system32


    C:\Documents and Settings\? *


    C:\Documents and Settings\? *\Application Data


    Start Menu


    C:\DOCUME~1\6524~1\FAVORI~1


    Desktop


    C:\Program Files


    Corrupted keys


    Desktop Components

    [HKEY_CURRENT_USER\Software\Microsoft\Int ernet Explorer\Desktop\Components\0]
    "Source"="About:Home"
    "SubscribedURL"="About:Home"
    "FriendlyName"="My Current Home Page"


    Sharedtaskscheduler
    !!!Attention, following keys are not inevitably infected!!!

    SrchSTS.exe by S!Ri
    Search SharedTaskScheduler's .dll


    AppInit_DLLs
    !!!Attention, following keys are not inevitably infected!!!

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wi ndows NT\CurrentVersion\Windows]
    "AppInit_DLLs"=""


    pe386-msguard-lzx32


    Scanning wininet.dll infection


    End

    - Scanning wininet.dll infection

    BlackLight

    edit- Blacklight .
    Last edited by ; 25th November 2006 at 16:35.

  21. #21
    Registered Loser 's Avatar
    Join Date: Jul:2004
    Location: Sofia
    Posts: 1,026
    , . . ilko, , , -. , .

  22. #22
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167

    .

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

Copyright © 1999-2011 . .
iskamPC.com | mobility.BG | Bloody's Techblog | | 3D Vision Blog |