Verovatno ima nešto....

Verovatno ima nešto....

offline
  • Boban  Male
  • Ugledni građanin
  • Pridružio: 23 Okt 2003
  • Poruke: 317
  • Gde živiš: Beograd

Prilikom startovanja bilo kog programa, krene i konekcija (PTT ADSL 256/64). Nije ništa hitno. Inače, Anti-Spyware Zone Elarm-a ne javlja ništa, posle skeniranja. Avast takođe, a i PC, sem navedenog radi normalno. Ja sumnjam na Windows Live Messenger, jer mi je i na starom PC-u pravio probleme (koincidirali su sa njegovom montažom) tako da sam ga zbog sličnih ekscesa i skinuo.
Ako neko ima vremena, neka pogleda.

Logfile of HijackThis v1.99.1
Scan saved at 10:44:42, on 09.12.2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
D:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\PowerMenu\PowerMenu.exe
C:\Program Files\ePrompter\ePrompter.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\msiexec.exe
D:\Downloads\HijackThis.exe

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [DiskeeperSystray] "D:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe" autostart
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: PowerMenu.lnk = C:\Program Files\PowerMenu\PowerMenu.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Prevedi sa Di recnikom - C:\Program Files\Di recnik\diie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5C.....4743440500
O17 - HKLM\System\CCS\Services\Tcpip\..\{2063D8B5-BEB5-4D68-B9BE-175E65A761C8}: NameServer = 212.62.32.1 212.62.32.5
O17 - HKLM\System\CS1\Services\Tcpip\..\{2063D8B5-BEB5-4D68-B9BE-175E65A761C8}: NameServer = 212.62.32.1 212.62.32.5
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Diskeeper - Diskeeper Corporation - D:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

Pozdrav svima

offline
  • Pridružio: 04 Sep 2003
  • Poruke: 24135
  • Gde živiš: Wien

Dosta smo razgovarali o ovome, i niko iz AMF tima nije nasao nista sporno u ovom logu.
Mozda ne bi bilo lose da probas sa nekim online antivirus skenerom:
- BitDefender - http://www.bitdefender.com/scan8/ie.html
- Kaspersky - http://www.kaspersky.com/virusscanner

Da te odmah obavestim da su oba poprilicno velika, i da Kaspersky ne brise ono sto pronadje, vec samo prijavljuje, dok BitDefender nudi i dezinfekciju.
Ukoliko se odlucis za Kaspersky, onda mozes ovde postaviti njegov log, pa da sredimo rucno ono sto je on nasao.

Osim toga, slede i standardne preporuke:
- Ad-Aware
- Ewido (sada AVG AntiSpyware)
- Spybot Search & Destroy

Ukoliko nije nista od toga, onda je moguce da ti je podeseno da se konekcija sa internetom uspostavi sama ukoliko neki program zatrazi pristup netu. Ukoliko ti je ukljucen neki program koji proverava mailbox (MSN Messenger to radi) - onda to moze da bude uzrok.
Nazalost, niko iz naseg tima ne koristi ADSL, tako da neznamo gde se ta podesavanja nalaze.

offline
  • Boban  Male
  • Ugledni građanin
  • Pridružio: 23 Okt 2003
  • Poruke: 317
  • Gde živiš: Beograd

@bobby

Hvala na trudu. Mislim da sam nasao u cemu je stvar. Serovao sam konekciju, jer treba da napravim kucnu mrezu, i cim sam to iskljucio, spontane konkecije su prestale.

Pozdrav svima, i hvala na trudu !!!

PS. Treba mi dobar back-up program koji pravi sliku sistema, ili bar particija. Sada imam mocan racunar i DVD rezac, pa mogu da je napravim. Dosadilo mi je stalno novo podizanje sistema, jer moja sklonost ka experimentisanju, mi cesto obara sistem. Ako kazem da sam probao i Vistu, jasno je sve .....

Na koji forum da se obratim !!!

offline
  • Pridružio: 04 Sep 2003
  • Poruke: 24135
  • Gde živiš: Wien

Imas par tema o Norton Ghostu i o Acronis programima, oni sluze za tako nesto.

Ko je trenutno na forumu
 

Ukupno su 995 korisnika na forumu :: 48 registrovanih, 5 sakrivenih i 942 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., Asparagus, babaroga, bojanM84, BORUTUS, BraneS, brundo65, CrazyDiablo, Dannyboy, doklevise, DonRumataEstorski, doom83, Dorcolac, DragoslavS, GenZee, Georgius, havoc995, ikan, Ivan Campo, Karla, kunktator, kybonacci, ljuba, ljubacv, LUDI, Luka Blažević, Marko Marković, mercedesamg, Metanoja, mgolub, misa1xx, mrav pesadinac, Nemanja.M, operniki, Parker, raptorsi, repac, sap, sasakrajina, savaskytec, slonic_tonic, solic, stalja, Stija zmija, Vlad000, voja64, Wrangler, zlaya011