Results 1 to 25 of 30
Hybrid View
-
24th November 2006 00:24 #1
. , . , , , 10 , . Kaspersky 6, Email Worm, , . , Blaster Worm, . , , , .
-
24th November 2006 00:30 #2Registered User
Join Date: Dec:2005
Location: yvr
Posts: 5,167
-
24th November 2006 09:31 #3
, . , 10 , , . fix Symantec, . - Windows.
-
24th November 2006 09:46 #4
Blaster. . Windows- . FireWall. Blaster/Sasser . SP2( WinXP), SP4 + UpdateRollup1( Win2k) ... Microsoft.
-
24th November 2006 09:56 #5
WindowsXP 2 ( firewall ) - 15- . , SP2 windows . , - SP2. .
Ar4i
-
24th November 2006 10:03 #6
, Sp2 v. 2096, - . MS , .
ieti, Blaster/Sasser, .Last edited by ; 24th November 2006 at 10:10.
-
24th November 2006 11:15 #7
-
24th November 2006 11:25 #8
-
24th November 2006 11:26 #9
-
24th November 2006 11:56 #10
1 firewall , 2 . firewall , . hijack this.
Ar4i
-
25th November 2006 14:01 #11Registered User
Join Date: Dec:2005
Location: yvr
Posts: 5,167
.8 HJT , HJT. - . - .
btw - secure32.html hijackthis.de unknown, ?R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = file://C:\WINXP\system32\secure32.html
O4 - HKLM\..\Run: [audiag] C:\WINXP\system32\audconf.exe
O4 - HKLM\..\Run: [dssdiag] C:\WINXP\system32\dssconf.exe
O20 - AppInit_DLLs: iasamsre.dll e1.dll confaud.dll audstat.dll diagdss.dll statdss.dll diagcre.dll statcre.dll diagdxt.dll statdxt.dll
O20 - Winlogon Notify: atkcadpt - C:\WINXP\
O20 - Winlogon Notify: audmgr - audmgr32.dll (file missing)
O20 - Winlogon Notify: deiconf - C:\WINXP\SYSTEM32\cfgdei.dll
O20 - Winlogon Notify: dxtconf - C:\WINXP\SYSTEM32\cfgdxt.dll
-
25th November 2006 14:50 #12
, , , hijack , Nasty , . Hijack fix-, , -
O20 - Winlogon Notify: deiconf - C:\WINXP\SYSTEM32\cfgdei.dll
O20 - Winlogon Notify: dxtconf - C:\WINXP\SYSTEM32\cfgdxt.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{24583 40E-E0C0-4F0A-8C1A-4F41C5F70C2B}: NameServer = 195.149.248.30 195.149.248.1
-
25th November 2006 15:08 #13Registered User
Join Date: Dec:2005
Location: yvr
Posts: 5,167
KillBox
ctrl+c:
KillBox, paste from clipboard, delete on reboot , HJT. , .C:\WINXP\SYSTEM32\cfgdei.dll
C:\WINXP\SYSTEM32\cfgdxt.dll
DNS , HJT!O17 - HKLM\System\CCS\Services\Tcpip\..\{24583 40E-E0C0-4F0A-8C1A-4F41C5F70C2B}: NameServer = 195.149.248.30 195.149.248.1
HJT - c:\rapport.txt - smitfraudfix
-
25th November 2006 15:22 #14
, , kill- killbox, Hijackthis, Unnecessarily -Unnecessary (deactivated) entry that can be fixed.
... ? . .
-
25th November 2006 15:33 #15Registered User
Join Date: Dec:2005
Location: yvr
Posts: 5,167
HJT c:\rapport.txt
-- . 2 .
Unnecessarily -Unnecessary (deactivated) HJT? , . .
-
25th November 2006 15:41 #16
. .
Unnecessarily, . .
-
25th November 2006 15:46 #17Registered User
Join Date: Dec:2005
Location: yvr
Posts: 5,167
2:
c:\rapport.txt ?O20 - Winlogon Notify: deiconf - cfgdei.dll (file missing)
O20 - Winlogon Notify: dxtconf - cfgdxt.dll (file missing)
BlackLight , .
edit: - copy-paste , ..Last edited by ilko; 25th November 2006 at 15:52.
-
25th November 2006 16:15 #18
-
25th November 2006 16:17 #19Registered User
Join Date: Dec:2005
Location: yvr
Posts: 5,167
my computer, o c: , notepad copy- paste , attachment.
BlackLight ? rootkits
-
25th November 2006 16:18 #20
, , SmitFraudFix- rapport-, -
SmitFraudFix v2.124
Scan done at 14:53:36,68, 25.11.2006 .
Run from C:\Documents and Settings\? *\Desktop\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix run in normal mode
C:\
Scanning wininet.dll infection
C:\WINXP
C:\WINXP\system
C:\WINXP\Web
C:\WINXP\system32
C:\Documents and Settings\? *
C:\Documents and Settings\? *\Application Data
Start Menu
C:\DOCUME~1\6524~1\FAVORI~1
Desktop
C:\Program Files
Corrupted keys
Desktop Components
[HKEY_CURRENT_USER\Software\Microsoft\Int ernet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
AppInit_DLLs
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Wi ndows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
pe386-msguard-lzx32
Scanning wininet.dll infection
End
- Scanning wininet.dll infection
BlackLight
edit- Blacklight .Last edited by ; 25th November 2006 at 16:35.
-
26th November 2006 22:06 #21
, . . ilko, , , -. , .
-
26th November 2006 23:29 #22Registered User
Join Date: Dec:2005
Location: yvr
Posts: 5,167

.




Reply With Quote

...
7th May 2023, 14:24 in