Problem sa Windowsom

Problem sa Windowsom

offline
  • Pridružio: 08 Jan 2012
  • Poruke: 35

Pozdrav svima. Potrebna mi je pomoc.

U pocetku bio je problem samo sa flash player-om, zakuca se kada gledam nesto na yt (preko google chrome, ie, mozille..). Radi ok 20-30minuta i onda pukne. Nekako sam pokusavao da napravim, brisao flash player, opet instalirao i nista. Sada je problem jos veci. Obrisao sam mozillu, imam samo ie i chrome. Chrome koristim cesce i sada pukne iz cista mira, nebitno na kom sam sajtu. Dok ovo kucam chrome je pao 2x. :@ Kada upalim kameru na msnu/skype program se gasi posle par minuta. Prijavljuje error i kada gledam nesto preko BS playera. Winamp/MS office/Adobe photoshop/cak i glupa Zuma pukne posle nekoliko minuta. Pre 2-3 dana poceo je da se resetuje iz cista mira. Imam ESET smart security poslednju verziju i njime ne prijavljuje ni jedan virus.
Koristim windows xp sp3.

Kao sto sam vec rekao, problem se javio pre mesec dana, mozda malo ranije. U pocetku je samo flash player zezao, a sada je haos. Brisao sam flash player, opet instalirao i nista. Programima memset i MHDD sam proverio ram i hdd, i to je u redu. Koristim ADSL 1Mb/s.

Sadrzaj DDS.txt

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702
Run by MChemicalR at 5:01:46 on 2012-01-09
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.767.380 [GMT 1:00]
.
AV: ESET Smart Security 5.0 *Enabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET Personal firewall *Enabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\Ati2evxx.exe
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\PixArt\PAC207\Monitor.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\Update\1.3.21.79\GoogleCrashHandler.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
svchost.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\wuauclt.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = [Link mogu videti samo ulogovani korisnici]
mSearchAssistant = [Link mogu videti samo ulogovani korisnici]{searchTerms}&f=4
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 5.0\reader\activex\AcroIEHelper.ocx
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - c:\program files\divx\divx plus web player\ie\divxhtml5\DivXHTML5.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:\progra~1\micros~4\office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [BitTorrent] "c:\program files\bittorrent\BitTorrent.exe"
mRun: [ATIPTA] "c:\program files\ati technologies\ati control panel\atiptaxx.exe"
mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
mRun: [PAC207_Monitor] c:\windows\pixart\pac207\Monitor.exe
mRun: [Monitor] c:\windows\pixart\pac207\Monitor.exe
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [egui] "c:\program files\eset\eset smart security\egui.exe" /hide /waitservice
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
mPolicies-system: EnableLinkedConnections = 1 (0x1)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office14\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_70C5B381380DB17F.dll/cmsidewiki.html
IE: Se&nd to OneNote - c:\progra~1\micros~4\office14\ONBttnIE.dll/105
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} - [Link mogu videti samo ulogovani korisnici]
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - [Link mogu videti samo ulogovani korisnici]
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - [Link mogu videti samo ulogovani korisnici]
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - [Link mogu videti samo ulogovani korisnici]
DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} - [Link mogu videti samo ulogovani korisnici]
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{C6490C26-536A-4C6F-95FF-7034C0628F77} : DhcpNameServer = 192.168.1.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Notify: AtiExtEvent - Ati2evxx.dll
.
============= SERVICES / DRIVERS ===============
.
R1 dk2drv;DK2 WindowsNT Driver;c:\windows\system32\drivers\dk2drv.sys [2011-9-14 49720]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2011-6-3 118104]
R2 ekrn;ESET Service;c:\program files\eset\eset smart security\ekrn.exe [2011-9-22 974944]
R2 NAUpdate;@c:\program files\nero\update\nasvc.exe,-200;c:\program files\nero\update\NASvc.exe [2010-3-25 490280]
R2 trysftnt;trysftnt;c:\windows\system32\drivers\TRYSFTNT.SYS [2011-7-13 39136]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\tuneup utilities 2011\TuneUpUtilitiesService32.exe [2011-12-8 1527104]
R3 PAC207;Eye 110;c:\windows\system32\drivers\PFC027.SYS [2011-7-13 616064]
R3 SydexFDD;Sydex Diskette Driver;c:\windows\system32\drivers\SYDEXFDD.SYS [2011-7-13 13037]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\tuneup utilities 2011\TuneUpUtilitiesDriver32.sys [2011-7-7 10064]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2011-7-15 136176]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2011-7-15 136176]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2011-9-14 137344]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2011-9-14 8320]
S3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]
.
=============== Created Last 30 ================
.
2012-01-08 23:38:06 -------- d-----w- C:\Tri D Corpus
2012-01-08 22:31:55 57328 ----a-w- c:\windows\system\OLE2CONV.DLL
2012-01-08 22:31:55 51712 ----a-w- c:\windows\system\OLE2PROX.DLL
2012-01-08 22:31:55 304640 ----a-w- c:\windows\system\OLE2.DLL
2012-01-08 22:31:55 27397 ----a-w- c:\windows\system\OLE2.REG
2012-01-08 22:31:55 25088 ----a-w- c:\windows\system\OLE2THK.DLL
2012-01-08 22:31:55 177744 ----a-w- c:\windows\system\TYPELIB.DLL
2012-01-08 22:31:55 163408 ----a-w- c:\windows\system\OLE2DISP.DLL
2012-01-08 22:31:55 157696 ----a-w- c:\windows\system\STORAGE.DLL
2012-01-08 22:31:55 124512 ----a-w- c:\windows\system\OLE2NLS.DLL
2012-01-08 22:31:55 109056 ----a-w- c:\windows\system\COMPOBJ.DLL
2012-01-08 22:29:02 -------- d-----w- c:\documents and settings\mchemicalr\application data\DAEMON Tools Pro
2012-01-08 22:29:02 -------- d-----w- c:\documents and settings\all users\application data\DAEMON Tools Pro
2012-01-08 03:36:55 -------- d-----w- c:\documents and settings\all users\application data\Chief Architect Premier X3
2012-01-08 03:36:45 -------- d-----w- c:\documents and settings\mchemicalr\application data\Chief Architect Premier X3
2012-01-08 03:34:33 -------- d-----w- c:\program files\Chief Architect
2011-12-30 22:12:47 29504 ----a-w- c:\windows\system32\uxtuneup.dll
2011-12-26 00:12:57 -------- d-sh--w- C:\found.000
2011-12-25 22:32:44 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-12-20 21:23:26 -------- d-----w- c:\documents and settings\all users\application data\Driver Tool
.
==================== Find3M ====================
.
2011-12-08 16:38:12 31552 ----a-w- c:\windows\system32\TURegOpt.exe
2011-11-24 20:20:35 0 ----a-w- c:\windows\ativpsrm.bin
2011-11-23 18:00:00 74752 ----a-w- c:\windows\system32\ff_vfw.dll
.
============= FINISH: 5:02:26.78 ===============


[Link mogu videti samo ulogovani korisnici]

GMER mi je 3x restartovao kompjuter tako da sam skenirao sa RootRepeal-om.

[Link mogu videti samo ulogovani korisnici]



offline
  • Fil  Male
  • Legendarni građanin
  • Pridružio: 11 Jun 2009
  • Poruke: 16586

U logovima nema tragova aktivne infekcije.

Slučaj nastavljamo u ovoj temi:
[Link mogu videti samo ulogovani korisnici]



Ko je trenutno na forumu
 

Ukupno su 2257 korisnika na forumu :: 90 registrovanih, 7 sakrivenih i 2160 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 6018 - dana 19 Dec 2025 13:41

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., Agape, babaroga, Belac91, Betty25, binfa, Bo96, bobor, Bobrock1, boxbole, BOXRR, cavatina, Cicumile, CikaKURE, Comyymoc, DeerHunter, Deki Duga Devetka, Despot Đurađ, dexteroza, Dimitrije Paunovic, Dioniss, djonsule, Dogma21, Draganeli, draganl, Electron, Fabius, Fliper, Georgius, GveX, howyesno, Ivoo, Jager715510, Jan, jarovitt, Jaxupa, jodzula, Jonbonjovi, Jose, Jovan.D, Kajzer Soze, Kruger, kuntakinte, Levi, LostInSpaceandTime, M74AB3, MaCS, Major91, Makeitdrip, Marko Marković, MarkoDzimi, mercedesamg, mexo, mikrimaus, mileta4, Milo97, Milos ZA, minke, Mrav Obrad, nelezele, nobutado, oldusername, Orc, Paklenica, Parker, Petrusci, pobeda, Povratak1912, procesor, raptorsi, sales, saputnik plavetnila, sedan, Sevatar, Sevetar, Shilok, Smiljkovich, stegonosa, Stoilkovic, Str2022, Tafocus, tamno.nebo, theNedjeljko, tooljan, Tumansky, VanZan, vathra, Vlada1389, vuksa72, 800077