Results 1 to 8 of 8

Hybrid View

Previous Post Previous Post   Next Post Next Post
  1. #1
    Registered User
    Join Date: May:2005
    Location: Kazanlak
    Posts: 23

    Õâàíàõ âèðóñ

    Õâàíàõ ãàäåí âèðóñ. Ñ NOD32 ñúì è òîé íå ñïèðà äà ïèùè, îòâàðÿò ñå åäíè ïðîçîðöè åäíî ÷óäî. Ïîÿâÿâà ñå è ñúîáùåíèå ÷å êîìïþòúðà ìè å çàðàçåí ñ spyware è malware. ×åòîõ òåìàòà "Êàê äà ñå ñïðàâèì ñ viruses, spyware, adware è âñÿêàêâè ïîäîáíè",íî òàêà êàòî ñúì íà òè ñ êîìïþòðèòå íåçíàì êàê äà ñêàíèðàì â Save mode, çàòîâà ñêàíèðàõ â Normal ñ "Spybot Search and destroy" è ñ "ewido-micro". Ïóñíàõ è "HijackThis". Òîâà å ëîã ôàéëà: Logfile of HijackThis v1.99.1
    Scan saved at 20:24, on 08-02-2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Eset\nod32kui.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe
    C:\WINDOWS\ATKKBService.exe
    C:\Program Files\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe
    D:\Ïðîãðàìè\Èíòåðíåò\QIP\qip.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\VIA\RAID\raid_tool.exe
    C:\Program Files\BinarySense\HDDlife\HDDlifePro.exe
    C:\WINDOWS\System32\ups.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Program Files\Opera\Opera.exe
    D:\Íîâà ïàïêà\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskb arInit
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [ioloDelayModule] C:\Program Files\iolo\System Mechanic Professional 6\delay.exe
    O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
    O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [FreeRAM XP] "C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe" -win
    O4 - HKCU\..\Run: [µTorrent] "C:\Program Files\uTorrent\utorrent.exe"
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [QIP2005] D:\Ïðîãðàìè\Èíòåðíåò\QIP\qip.exe
    O4 - HKCU\..\Run: [System Mechanic Popup Blocker] "C:\Program Files\iolo\System Mechanic Professional 6\PopupBlocker.exe"
    O4 - HKCU\..\Run: [RegClean Expert Scheduler] "C:\Program Files\Registry Clean Expert\RCHelper.exe" /startup
    O4 - Startup: HDDlife.lnk = C:\Program Files\BinarySense\HDDlife\HDDlifePro.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
    O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.D LL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O17 - HKLM\System\CCS\Services\Tcpip\..\{29B6E 96C-BC30-45E0-A3D1-572B8037C99C}: NameServer = 10.0.1.100
    O17 - HKLM\System\CCS\Services\Tcpip\..\{E7899 E80-B00D-44BA-A245-8B86CFEA6B4C}: NameServer = 10.0.1.1
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
    O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
    O23 - Service: Autodata Limited License Service - Autodata Limited - C:\Program Files\Common Files\Autodata Limited Shared\Service\ADCDLicSvc.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\Program Files\Norman\Nvc\BIN\nipsvc.exe (file missing)
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    Ìîëÿ ïîìàãàéòå.

  2. #2
    Registered User
    Join Date: Dec:2005
    Location: yvr
    Posts: 5,167
    Íèùî èíòåðåñíî â ëîãà, ïîëçâàé ñàìî åäíà îò äâåòå àíòèâèðóñíè, ïðåïîðú÷âàì òè KAV, ñåãà ñêàíèðàé ñ ïîíå 2 îò antirootkit ïðîãðàìèòå, ÿâíî èìàø íåùî ñêðèòî.
    Ñúùî äðúïíè SilentRunners è ãî ïóñíè äà èçâàäè ëîã è ãî ïóñíè òóê.

  3. #3
    Outcast DeathKnight's Avatar
    Join Date: Jul:2003
    Location: Ñîôèÿ
    Posts: 1,772
    Äîëó äî ÷àñîâíèêà òè èçëèçà åäíà èêîíêà ñ óäèâèòåëíà, è òè ïîêàçâà áàëîí÷å, ÷å ñè çàðàçåí ñúñ spyware?

    Äàé screenshot íà äåñêòîïà è íà add/remove programs, äà âèäÿ äàëè å òîâà êîåòî ñè ìèñëÿ...
    Ïî äîëó å ñïèñúêúò íà õîðàòà, íà êîèòî íå ÷åòà ìíåíèÿòà, ïðèëîæèë ñúì template çà Adwords çà ìîæå è âèå äà íå ãè ÷åòåòå è âàøèòå äåöà, êàêòî è íàñòðîéêà çà firewall-a íà âàøàòà ôèðìà òàêà, ÷å è îò òàì íèêîé äà íå ìîæå äà èì ÷åòå ãëóïîñòèòå... êàêòî ïî òîçè òàêà è ïî äðóãè ôîðóìè <template>

  4. #4
    Registered User
    Join Date: May:2005
    Location: Kazanlak
    Posts: 23
    Çíà÷è ïóñíàõ îíëàèí ñêàíèðàíå ñ Bitdefender ïî âðåìå íà ñêàíèðàíåòî NOD-à èçïèùÿ ÷å èìà çàðàçåíè ôàèëîâå è àç ãè èçòðèõ. Ñëåä ðåñòàðò íà êîìïþòúðà èç÷åçíà èêîíàòà â òðåÿ è íå ñå ïîêàçâàò áàëîíè ÷å ñúì çàðàçåí, NOD-à ñïðÿ äà ïèùè, à äðóãèòå àíòèâèðóñíè íå íàìèðàò íèùî. Ìàé ïðîáëåìà å ðåøåí, ìíîãî áëàãîäàðÿ çà ïîìîùà.

  5. #5
    Outcast DeathKnight's Avatar
    Join Date: Jul:2003
    Location: Ñîôèÿ
    Posts: 1,772
    Çíà÷è âñå ïàê ñè èìàë èêîíà äîëó â tray-a?
    Ïðîáëåìà íå å ðåøåí!
    Ïðåèíñòàëèðàé âñè÷êî. (ïðî÷åòè è òåìàòà çà rootkit-âåòå)
    Ïî äîëó å ñïèñúêúò íà õîðàòà, íà êîèòî íå ÷åòà ìíåíèÿòà, ïðèëîæèë ñúì template çà Adwords çà ìîæå è âèå äà íå ãè ÷åòåòå è âàøèòå äåöà, êàêòî è íàñòðîéêà çà firewall-a íà âàøàòà ôèðìà òàêà, ÷å è îò òàì íèêîé äà íå ìîæå äà èì ÷åòå ãëóïîñòèòå... êàêòî ïî òîçè òàêà è ïî äðóãè ôîðóìè <template>

  6. #6
    Registered User midas's Avatar
    Join Date: Apr:2004
    Location: Plovdiv
    Posts: 31
    Âçåìè ÿ ìàõíè òàÿ ÍÎÄ32 è ñè ñëîæè åäèí Symantec Antivirus Corporate ×óâàë ñúì ÷å ÍÎÄ îò âðåìå íà âðåìå çàñè÷à âèðóñè áåç äà èìà òàêèâà, à è íå ñàìî òîâà.
    Ñâàëè ñè è Ad-Àware çà spywares è ñêàíèðâàé ~âåäíúæ ñåäìè÷íî...
    À àêî òîâà îò ëîã ôàéëà âñè÷êî ñà âèðóñè çíà÷è ñè ïèïíàë îíèÿ âèðóñ, êîéòî çàðàçÿâà âñè÷êè exe-òà... Òðÿáâà äà ñè ôîðìàòèðàø öåëèÿ õàðä äèñê.
    Ìîæåø äà ñè çàïàçèø ôèëìèòå è ìï3-êèòå , òàì íÿìà âèðóñè...

  7. #7
    motherfather The Penalty's Avatar
    Join Date: Mar:2002
    Location: ÑÔ
    Posts: 20,472
    Quote Originally Posted by midas View Post
    Âçåìè ÿ ìàõíè òàÿ ÍÎÄ32 è ñè ñëîæè åäèí Symantec Antivirus Corporate...
    Àéäå ïàê...

    • Ìîæåø äà èçâàäèø ÷îâåêà îò ñåëîòî, íî ñåëîòî îò ÷îâåêà - íèêîãà
    • Sometimes I think the surest sign that intelligent life exists elsewhere in the universe is that none of it has tried to contact us
    • Soul platinum 1 and 2. See? It's not the game - you suck.


  8. #8
    Registered User edakov's Avatar
    Join Date: Jun:2004
    Location: Ïëîâäèâ
    Posts: 7,373
    Quote Originally Posted by midas View Post
    Âçåìè ÿ ìàõíè òàÿ ÍÎÄ32 è ñè ñëîæè åäèí Symantec Antivirus Corporate ×óâàë ñúì ÷å ÍÎÄ îò âðåìå íà âðåìå çàñè÷à âèðóñè áåç äà èìà òàêèâà, à è íå ñàìî òîâà.
    ...Òðÿáâà äà ñè ôîðìàòèðàø öåëèÿ õàðä äèñê.
    Ìîæåø äà ñè çàïàçèø ôèëìèòå è ìï3-êèòå , òàì íÿìà âèðóñè...
    Óô...òðÿáâà äà ìè êàæåø òàéíàòà íà òîâà óíèêàëíî èçêàçâàíå...äà íå å òàåí êîä íà øàìàíèòå íåùî...
    ASRock Z68 Pro 3 / Core I3 2100 (ex Q9550) / 4Gb Kingstîn HyperX 1600Mhz / Sapphire 4870X2 / 1TB HDD Hitachi / CFT 750W-14CS / BenQ 21.5" [1920x1080]
    www.WildLifeInBulgaria.com

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

Copyright © 1999-2011 Õàðäóåð ÁÃ. Âúçìîæíî å ñúäúðæàíèåòî íà òàçè ñòðàíèöà äà å îáåêò íà àâòîðñêè ïðàâà.
iskamPC.com | mobility.BG | Bloody's Techblog | Êðèïòîâàëóòè è ìàéíèíã | 3D Vision Blog | Ìàãàçèí çà åëåêòðîííè öèãàðè