Problem sa instalacijom AV

Problem sa instalacijom AV

offline
  • Pridružio: 14 Sep 2008
  • Poruke: 6

Saljem log fajl u vezi problema instalacije AV

NOD32
Error writing to file: D\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe. Verify that you have access to that directory.

AVG Free 8.0
Local machine:installation failed
Installation:
Error:Action failed for file avgemc.exe:creating file…
Error 0xe001042c

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:58:05 AM, on 9/15/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Documents and Settings\siki\tjfn.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\AGRSMMSG.exe
D:\Program Files\System Control Manager\MGSysCtrl.exe
D:\WINDOWS\RTHDCPL.EXE
D:\Program Files\iTunes\iTunesHelper.exe
D:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\WINDOWS\AdobeR.exe
D:\Program Files\Messenger\msmsgs.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Bonjour\mDNSResponder.exe
C:\KSBOFFER\RUNTIME\V223\BIN\NATBPSVC.EXE
D:\Program Files\System Control Manager\edd.exe
D:\WINDOWS\system32\nvsvc32.exe
D:\WINDOWS\system32\o2flash.exe
C:\KSBOFFER\RUNTIME\V223\BIN\NatBPSrv.EXE
D:\WINDOWS\system32\svchost.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\WINDOWS\system32\wuauclt.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
F2 - REG:system.ini: UserInit=D:\WINDOWS\system32\userinit.exe,D:\Documents and Settings\siki\tjfn.exe \s
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - D:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {4D1C4E81-A32A-416b-BCDB-33B3EF3617D3} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - D:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [MGSysCtrl] D:\Program Files\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "D:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "D:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [RavAV] D:\WINDOWS\AdobeR.exe
O4 - HKLM\..\Run: [jvv] D:\WINDOWS\system32\jvv.exe \u
O4 - HKCU\..\Run: [MSMSGS] "D:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Search - [Link mogu videti samo ulogovani korisnici]
O8 - Extra context menu item: E&xport to Microsoft Excel - [Link mogu videti samo ulogovani korisnici]\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - D:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} - [Link mogu videti samo ulogovani korisnici]
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O20 - Winlogon Notify: WLCtrl32 - D:\WINDOWS\SYSTEM32\WLCtrl32.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - D:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NATURAL 2.2.3 Bufferpool Service (NATURAL223BufferpoolService) - Unknown owner - C:\KSBOFFER\RUNTIME\V223\BIN\NATBPSVC.EXE
O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - D:\Program Files\System Control Manager\edd.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O2Micro Flash Memory (O2Flash) - Unknown owner - D:\WINDOWS\system32\o2flash.exe

--
End of file - 6678 bytes



offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Pa, ne čudi me da ne možeš instalirati AV - nekoliko različitih infekcija je prisutno.




Skini ComboFix sa jedne od sledecih adresa na Desktop:
[Link mogu videti samo ulogovani korisnici]
[Link mogu videti samo ulogovani korisnici]
[Link mogu videti samo ulogovani korisnici]

Startuj ga i ne diraj prozor programa dok skenira.
Sledi uputstva na ekranu. Kada zavrsi pojavice se log (C:\ComboFix.txt) koji ces nam ovde iskopirati.



offline
  • Pridružio: 14 Sep 2008
  • Poruke: 6

Evo ga i ComboFix

ComboFix 08-09-15.01 - siki 2008-09-15 13:00:01.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.381.1033.18.547 [GMT -7:00]
Running from: D:\Documents and Settings\siki\Desktop\ComboFix.exe
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

D:\Documents and Settings\siki\Application Data\m
D:\Documents and Settings\siki\Application Data\m\flec006.exe
D:\Documents and Settings\siki\Application Data\m\list.oct
D:\Documents and Settings\siki\Application Data\m\shared
D:\Documents and Settings\siki\Application Data\m\shared\2Jpeg 5.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\3_Panda.Titanium.Antivirus.2006.5.00.83.keygen.zip
D:\Documents and Settings\siki\Application Data\m\shared\3D DinoFly 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\3D Pumpkin Patch Teddy Bears 1.0 (zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\3webTotal Tv & Radio Tuner 5.501.zip
D:\Documents and Settings\siki\Application Data\m\shared\4 Digits 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\602Print Pack 5.0.06.0426.zip
D:\Documents and Settings\siki\Application Data\m\shared\A-Block 1.1 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\A2 Flash Preloader 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\AAA DVD To iPhone Converter 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\ABC Calendar Maker 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Able2Doc - PDF to Word Conversion 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AcaStat 5.3.1 SE.zip
D:\Documents and Settings\siki\Application Data\m\shared\Acronis True Image Corporate Workstation 9.1 Build 3887.zip
D:\Documents and Settings\siki\Application Data\m\shared\Active Direct Mail 1.24.zip
D:\Documents and Settings\siki\Application Data\m\shared\ActiveSyncToggle 1.0.2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Advanced Menu Bar Applet 2.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\After Hours Screensaver 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Agony and Ecstasy 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AIRMIX Sound Automation PRO 11.10.1.26.23.zip
D:\Documents and Settings\siki\Application Data\m\shared\AjmUpload 2.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Alert Phone 1.28.zip
D:\Documents and Settings\siki\Application Data\m\shared\Algematics 1.20 [(zabranjeno)ed].zip
D:\Documents and Settings\siki\Application Data\m\shared\All to AVI VCD SVCD DVD Converter 4.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\Allergy Info Finder 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\ALLinONE Multimedia Converter 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Allok RM RMVB to AVI MPEG DVD Converter 2.2.0807.zip
D:\Documents and Settings\siki\Application Data\m\shared\Alpha Journal 3.5.1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Amiasoft Color Pro 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ancient Trijong 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Antivir.Personal.Edition.Classic.v7.0.(zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\Any Video Converter Professional 2.22.zip
D:\Documents and Settings\siki\Application Data\m\shared\Apple TV Video Converter 3.1.2.6 (Patch).zip
D:\Documents and Settings\siki\Application Data\m\shared\AquaButton Control 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Architect and Contractor 2.0 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\ASC-C 2005.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ascella Log Monitor 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AspNetForum 4.2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\ASPProtect 4.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Atlast! File Notes Organizer 3.5.1.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Audio Caller ID 1.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\Audio DVD Creator 1.9.1.0 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Audio Mentor 1.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Audio Video Converter 2.5 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\Audioblast 1.6.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Audiofan MP3 to Wave Converter 1.3 [Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Automatic USB Backup 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Autoresponders Unleashed! 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AutoSSL 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AutoUnbreak 1.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\avast!_Professional_Edition_4.7.892_Br_Pacote.Util.RoboCop.zip
D:\Documents and Settings\siki\Application Data\m\shared\Awesome Cities from Space Screen Saver 1.0 Patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Backwards Machine 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Balloon Tooltips .NET 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Banner Show 2.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Battlefield 1942 Cherbourg Map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Bg.-.Preslava.(2004).-.Preslava.-.Kompl.Mp3-Album.192Kbps.-.Incl.Cover.&.Label.-.By.Panda.1960.zip
D:\Documents and Settings\siki\Application Data\m\shared\BitDefender.AntiVirus.Plus.v10.FR.+.keygen.zip
D:\Documents and Settings\siki\Application Data\m\shared\BitDefender.Internet.Security.v10.0.Incl.Keymaker-CORE.zip
D:\Documents and Settings\siki\Application Data\m\shared\Bitstream Charter 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Blow Fish Edit 1.01 Key.zip
D:\Documents and Settings\siki\Application Data\m\shared\BM Tivoli Federated Identity Manager V6.0 Implementation Practice Exam Questions 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\BookOrganize 1.0 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\Bossa 1032.zip
D:\Documents and Settings\siki\Application Data\m\shared\BPM Counter 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\BSCOutline 5.10.zip
D:\Documents and Settings\siki\Application Data\m\shared\Bulletproof Public PC 3.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\BURNISO 0.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Butterfly Fantasia Theme 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\ByteRun Protector for PHP Professional Edition 3.8 Build 2312 KeyGen.zip
D:\Documents and Settings\siki\Application Data\m\shared\BZFlag 2.0.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Call of Duty Dedville map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Call of Duty Mogadishu map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Canon EOS Digital Rebel firmware update 1.1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\CastRipper 2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Celestial Clock 2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\CFM2ASP 2.1.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Chat Controller 1.2.2 [(zabranjeno)ed].zip
D:\Documents and Settings\siki\Application Data\m\shared\Christmas Quest 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Chromentum 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\ChurchPack Organizer Pro 1.7 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\ClearView RC Flight Simulator 4.56.zip
D:\Documents and Settings\siki\Application Data\m\shared\ClipSafe Clipboard Backup 2.5.4 (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Clone Cleaner Lite 1.04.zip
D:\Documents and Settings\siki\Application Data\m\shared\CNS Menu 1.0.6 [(zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\Code to Chart 2.0 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\CoffeeCup Web JukeBox 4.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Comparefiles 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\CompuApps OnBelay 1.03 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\(zabranjeno).Panda.Antivirus+Firewall.2007.zip
D:\Documents and Settings\siki\Application Data\m\shared\Credit Card Verifier 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Crime Catcher 3.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\CRON-O-Meter 0.2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Cross+A 7.02.zip
D:\Documents and Settings\siki\Application Data\m\shared\Crossword Construction Kit 4.0c build 4.0.31 [(zabranjeno)ed].zip
D:\Documents and Settings\siki\Application Data\m\shared\csXGraph 1.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Cucusoft Zune Video Converter Suite 5.63.15.zip
D:\Documents and Settings\siki\Application Data\m\shared\Cue Player Pro 2.4.4 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\Culinary Delights 220 Recipes for Masterpiece Dishes 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\CurveUnscan 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Custom Screensaver Selection 5 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Cutter 2.24 ((zabranjeno)ed).zip
D:\Documents and Settings\siki\Application Data\m\shared\Daniusoft DVD to Zune Converter 1.1.10 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\Dark Files 4.0.1.1 Patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Data Disc Recovery (DDR) 0.9.9.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Database Viewer Plus (Access,Excel,Oracle) 3.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\DataGuard 2.0 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\DB Visual Architect for Java Platform 4.1 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\dbCOPY 3.1.7 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\DDObjects 0.9.95 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Demolition Derby & Figure 8 Race 1.22.zip
D:\Documents and Settings\siki\Application Data\m\shared\DentSuite 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Deskbolt 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Didj'tizer 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Digital Alarm Clock 2.11.zip
D:\Documents and Settings\siki\Application Data\m\shared\Digital Photo Resizer 2006 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\DIManagerX 7.0.0.123 Final.zip
D:\Documents and Settings\siki\Application Data\m\shared\Dimlog 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Dirt Track Racing 1.03 patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\DisCatalog 2.00.417 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\DoInventory Plus 4.6.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\Doom 3 Nitro Gore mod.zip
D:\Documents and Settings\siki\Application Data\m\shared\Doom 3 Power Up Destroyer mod.zip
D:\Documents and Settings\siki\Application Data\m\shared\Down2Home 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Dr.Explain 2.6.103 Patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Drm2Free 0.99.zip
D:\Documents and Settings\siki\Application Data\m\shared\DrWeb.4.33.rus.full.(+key).zip
D:\Documents and Settings\siki\Application Data\m\shared\DS WaterSurf 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\DWG to PDF Converter 2006 2.00 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\E-mail Sitextract Pro 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\E22-183 Practice Exam Testing Engine Software 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\EarthDesk 4.1 ((zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Easy CHM 3.75 build 500.zip
D:\Documents and Settings\siki\Application Data\m\shared\Easy File Sharing Web Server 4.5 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\Easy File Sharing Web Server 4.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Easy RSS Content Generator 2.1 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\Eazibo Standard Edition 1.3.22.zip
D:\Documents and Settings\siki\Application Data\m\shared\eFAXy 3.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Eggblog 3.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\EMX Movie Converter 2007 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Enterprise Port Management Solution 1.3.2 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Equations! 1.0 (zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\EscapeClose Pro 2.1 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Eset_Nod32__Antivirus_2.51.12.zip
D:\Documents and Settings\siki\Application Data\m\shared\Essential Budget 0.8.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\eTrust Antivirus r8 8.0.403.0 ((zabranjeno)ed).zip
D:\Documents and Settings\siki\Application Data\m\shared\EugeneShredder 1.20.zip
D:\Documents and Settings\siki\Application Data\m\shared\ewido-setup.v4.0.beta.incl.keygen.zip
D:\Documents and Settings\siki\Application Data\m\shared\Excel Remove (Break) File Links In Multiple Files Software 7.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Explorer View 3.4.0.125.zip
D:\Documents and Settings\siki\Application Data\m\shared\eXScrollBar 1.0.0.1.4477.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ext2Fsd 0.31a.zip
D:\Documents and Settings\siki\Application Data\m\shared\Extension Changer 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\EZ Save MHT 3.4.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\EzWeb Monitor 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Fairy Match 1.311.zip
D:\Documents and Settings\siki\Application Data\m\shared\Far Cry K-9 Vision 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Far Cry MP Oasis map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Fedut 2.0.1 [KeyGen].zip
D:\Documents and Settings\siki\Application Data\m\shared\File-O-Scope 1.9 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\FileRecovery for miniSD 1.8.zip
D:\Documents and Settings\siki\Application Data\m\shared\Files Together 1.6.5.0 (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\FineSplit 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Finger Server 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\FIR HDL Writer 0.9 Beta.zip
D:\Documents and Settings\siki\Application Data\m\shared\Flash Movie Player 1.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\FlashMap 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Flight Explorer Personal Edition 5.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\FloSpace FloPrompter 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Fonts in Action 1.2 [Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Forges 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Form-Z Update 3.0.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Fourier transform library 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\FREE Hi-Q Recorder 1.92.zip
D:\Documents and Settings\siki\Application Data\m\shared\Free MP3 Recorder 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Free Spam Fix 2.1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Freecell-on-the-Palm 1.26.zip
D:\Documents and Settings\siki\Application Data\m\shared\FRS Money Math 1.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\FX Saver Toolbox 2.0c.zip
D:\Documents and Settings\siki\Application Data\m\shared\Gallery Downloader 1.2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Game Organizer 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Genius's Puzzle Pack 3.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\GenSaver 1.1 (zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\GetScreen 1.1.9.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ghost Hunter 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Global Downloader 1.3 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Golden Autumn 3D Screensaver 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Google Ranking Search Engine Optimization Tool 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Halo Combat Evolved War of the Helots map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Hardwood Hearts 2.2.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Heroes of Might and Magic 2 Editor 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Heroes of Might and Magic V v1.02 Russian patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Hide-A-File 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Hitler's Europe 1914-45 The Animated Atlas of the Third Reich 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\HobbyDebug toolbar for Firefox 1.5.0.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Home Video Converter 4.2.9.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Hotmail Messenger Fix 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\How to Study Ebook 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\HTML Password Lock 3.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\HTML2PDF Add-on 3.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\HVRaster - Programmers Font for Windows 1.02.zip
D:\Documents and Settings\siki\Application Data\m\shared\iCarbon 2.2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\ICQ Monitor Sniffer 3.0 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\IDAutomation.com Linear Barcode Image Generator 2006 R2.zip
D:\Documents and Settings\siki\Application Data\m\shared\IFS Builder 3d 1.6.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\II_WorldTimeClocks 1.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Image Master 2000 1.0.107 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Image Transformer 1.2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Industrial Audio Editor 1.0.25 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\iNeeda Password & Tracker Pro 3.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Infima Jpeg Optimization SDK 1.3 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\InSight 2.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Internet Bargain Center 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Intertech iPod Converter 2.3 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\iolo Antivirus 1.1.10.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\iPod nano 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\iPureSearch Search Anything Widget 3.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Job Cost Calculators (Framing) 1.0.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Julia Stiles Sex-E Screensaver 3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Kandyan Crystal Glass Icons 2.00.zip
D:\Documents and Settings\siki\Application Data\m\shared\Karaoke Sound Recorder 2.02 Key.zip
D:\Documents and Settings\siki\Application Data\m\shared\Kaspersky.5018.zip
D:\Documents and Settings\siki\Application Data\m\shared\Kaspersky.Internet.Security.2006.v6.0.0.290.RC6.(zabranjeno).keygen.serial.patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Kaspersky.Internet.Security.v6.0.1.411.fr.incl.keys.by.Balloo888.zip
D:\Documents and Settings\siki\Application Data\m\shared\King Kong AIM Icons 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Knitting Wizard 122.0.0 (Patch).zip
D:\Documents and Settings\siki\Application Data\m\shared\Kurumix 0.3.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\LandZone 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Laptop Lid Tweaks XP 1.1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Laundry Timer 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\LingvoSoft Picture Dictionary 2007 English - Serbian 1.1.17 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\ListFont 1.2a.zip
D:\Documents and Settings\siki\Application Data\m\shared\LTF-Cimulator 1.0 (KeyGen).zip
D:\Documents and Settings\siki\Application Data\m\shared\m3uEdit1 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Magenta Systems File Transfer Components 1.8.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mail Access Monitor for SendMail 3.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Make List Files 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Math Logic 4.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\McAfee.Internet.Security.Suite.2007.Full.8-In-1.zip
D:\Documents and Settings\siki\Application Data\m\shared\McAfee.VirusScan.for.Mac.v8.5=.zip
D:\Documents and Settings\siki\Application Data\m\shared\Meeting Timer 1.0 [Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Mega! Search 1.11.zip
D:\Documents and Settings\siki\Application Data\m\shared\Memory Stick Data Recovery Software 2.0.1.5 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\MESH 2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Messenger Backup Wizard 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Microsoft Windows NT 4.0 Service Pack 6a (Alpha) with Standard Encryption.zip
D:\Documents and Settings\siki\Application Data\m\shared\MiniDiary 3.12.zip
D:\Documents and Settings\siki\Application Data\m\shared\miWeekendWho 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\MMOGer 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mobile 3GP Converter 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mollensoft FTP Server 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mondrichart 1.0 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\Mouse Meter 1.41 (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Movie DB 3.10 build 190.zip
D:\Documents and Settings\siki\Application Data\m\shared\Movie Outline 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mp3Converter 2.50 (KeyGen).zip
D:\Documents and Settings\siki\Application Data\m\shared\MPEG Encoder 1.10.zip
D:\Documents and Settings\siki\Application Data\m\shared\MSDict Cambridge Advanced Learner's Dictionary 7.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\MSDict English-German Pro Dictionary (Pocket PC) 4.30.zip
D:\Documents and Settings\siki\Application Data\m\shared\Multimedia Calculator.Net 2.0.0.10.zip
D:\Documents and Settings\siki\Application Data\m\shared\Multimedia Icon Collection 1.0 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Music File Merger 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\MusicGiants 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Musition 3.01.30.zip
D:\Documents and Settings\siki\Application Data\m\shared\My Address Book pro 2.8.4 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\My CPU 1.13g.zip
D:\Documents and Settings\siki\Application Data\m\shared\MySQL Developer Tools for Visual Studio .NET 2.0 beta With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\MySQL PostgreSQL Import, Export & Convert Software 7.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Narbacular Drop.zip
D:\Documents and Settings\siki\Application Data\m\shared\NASCAR Thunder 2003 demo.zip
D:\Documents and Settings\siki\Application Data\m\shared\Netreviver 1.02.zip
D:\Documents and Settings\siki\Application Data\m\shared\NETUSE 1.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\network Camera Command Center 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\ngrep 1.45.zip
D:\Documents and Settings\siki\Application Data\m\shared\Nod32.Antivirus.2007.Full.zip
D:\Documents and Settings\siki\Application Data\m\shared\NOD32.v2.12.4.ITA.WinXP.Andy.zip
D:\Documents and Settings\siki\Application Data\m\shared\NutriGenie Omega 3 Counter 3.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\O&O Defrag Professional 10.0.1634 Patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Odyssey 1.13.zip
D:\Documents and Settings\siki\Application Data\m\shared\Office Count 'N' Invoice Suit 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Okoker Optimize Expert 1.9 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\OmniChex Web 5.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Omnidrive 0.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\Online Store Kit 3.0 Standard.zip
D:\Documents and Settings\siki\Application Data\m\shared\Optical Illusion Of The Day 4.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\OraDeveloper Tools 2.00 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\OutDisk FTP for Outlook 1.5.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Outlook Email Attachments Extractor Pro 2.1 KeyGen.zip
D:\Documents and Settings\siki\Application Data\m\shared\Outlook Thumbnail Viewer 1.0 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Over the Hedge IM icons.zip
D:\Documents and Settings\siki\Application Data\m\shared\Oxygen 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Panda.Antivirus.Platinum7.05.03.Retail-F4CG.ShareConnector.com.zip
D:\Documents and Settings\siki\Application Data\m\shared\Parallel Greek New Testament 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Pasoor 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Password Keyper 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PC-Repair 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PC Foto 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PC Pranks 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PDF Snake 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Perf'Control Personal Edition 1.1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Philipp Winterberg - Tier und Verderben 2004 1.77.zip
D:\Documents and Settings\siki\Application Data\m\shared\PicViewer 3.0.2.32 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Polestar Virtual Printer 1.0 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Powerpoint Millionaire 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PPSee 1.251.zip
D:\Documents and Settings\siki\Application Data\m\shared\pptXtreme Effects Library for PowerPoint 1.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Print Explorer 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Private Desktop 1.91.zip
D:\Documents and Settings\siki\Application Data\m\shared\ProChat 2.8.zip
D:\Documents and Settings\siki\Application Data\m\shared\Professor X 0.4.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\ProList Guardian 1.0.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\ProMimport 4.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PropertiesList 3.40.1299.zip
D:\Documents and Settings\siki\Application Data\m\shared\Proview Video to iPhone Converter 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PSP Feeder 1.24.zip
D:\Documents and Settings\siki\Application Data\m\shared\PSYBEncrypter 2.72.zip
D:\Documents and Settings\siki\Application Data\m\shared\Qsel 1.52b-4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Quick Cleaner for Brontok.A 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\QuickReminder 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\QuickResizer 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\RapidDXF 4.0 Serial.zip
D:\Documents and Settings\siki\Application Data\m\shared\Readiris Pro 9.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Real Estate Closing 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\RealtyCruncher 6.9.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\Rebecca's Letters & Numbers 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Receipt Book Manager 6.8.4 (Patch).zip
D:\Documents and Settings\siki\Application Data\m\shared\Report Guru Credit Repair Kit 1.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\Reuters 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Rich Chart Server 1.0.128.0 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\Roadkil's Scan Port 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\RPF Viewer 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\RPM Browser Beta 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\RSS Aggregator 4.11 (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Rumpus (Classic) 3.5.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\ScriptFTP 2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\SecureCRT 5.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\SelfImage 1.2.1.92.zip
D:\Documents and Settings\siki\Application Data\m\shared\ShoView 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Simple Desktop Lock 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Sitelogz 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\SlimServer 6.5.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\SLS (Sanitary Lift Station) 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Small WMA MP3 Converter 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\SmartSMS 5.1 (zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\Software Virtualization Solution 2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Sound System Modeler 1.0 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Sound Wheel 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Spam-Filter-Mailbox Filter 4.1.09.zip
D:\Documents and Settings\siki\Application Data\m\shared\SplitIt System 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Splitz 1.0.czip
D:\Documents and Settings\siki\Application Data\m\shared\Spyware and Pest Remover 3.0 Serial.zip
D:\Documents and Settings\siki\Application Data\m\shared\Stani's Python Editor 0.8.2a.zip
D:\Documents and Settings\siki\Application Data\m\shared\Star Trek Armada II Enhanced Defiant Class.zip
D:\Documents and Settings\siki\Application Data\m\shared\Star Wars Battlefront II v1.1 patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Start Menu Tuner 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\StarTag 1.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Stellar Phoenix Mailbox--Exchange Desktop 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Stock Quotes Pro 1.29 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\Stress Prime 2004 0.30.zip
D:\Documents and Settings\siki\Application Data\m\shared\Studiometry 3.2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Su Doku Classic 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Summer Butterflies 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Super WinSpy 3.20.zip
D:\Documents and Settings\siki\Application Data\m\shared\Supreme Text Scrambler 1.1 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Surfingcash 2.0.0107.zip
D:\Documents and Settings\siki\Application Data\m\shared\SWF 'n Slide Pro 1.017.zip
D:\Documents and Settings\siki\Application Data\m\shared\Swiffer 0.0.0.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Swiftedit 2.0 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\Synthetic Wallpaper 1.0 [Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Sys Monitor 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Systweak Photo Studio 1.00.zip
D:\Documents and Settings\siki\Application Data\m\shared\TablEdit 2.64.zip
D:\Documents and Settings\siki\Application Data\m\shared\Tactics United 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\TANX-Color 3.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ten Clipboards 1.12 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\TexRD 0.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Text To Speech Live Player 1.73 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\The Bard's Tale updated demo.zip
D:\Documents and Settings\siki\Application Data\m\shared\The Collection Screensaver 2005 - Vade 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\The Daily Show with Jon Stewart Screensaver.zip
D:\Documents and Settings\siki\Application Data\m\shared\The Games Factory 2 build D240.zip
D:\Documents and Settings\siki\Application Data\m\shared\The Neverhood demo (large).zip
D:\Documents and Settings\siki\Application Data\m\shared\The WYSIWYG Immigration Forms Processor 1.90 (KeyGen).zip
D:\Documents and Settings\siki\Application Data\m\shared\ThumbPrint 0.2 BETA.zip
D:\Documents and Settings\siki\Application Data\m\shared\TM Desktop Currency Converter 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Toolbar Remover 2.1.12 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Toolbar Studio 1.0 [(zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\Top of the League 1.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\Tortuga Island Screensaver 5.07.zip
D:\Documents and Settings\siki\Application Data\m\shared\ToYcon 0.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Tree Notes 1.60 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Trustix AntiVirus 2005 Edition.zip
D:\Documents and Settings\siki\Application Data\m\shared\TuHex 2.12 Key+Serial.zip
D:\Documents and Settings\siki\Application Data\m\shared\TurboCrypt Disk Encryption 6.58.zip
D:\Documents and Settings\siki\Application Data\m\shared\Turkey Time Clock Demo Screensaver 1.0 (KeyGen).zip
D:\Documents and Settings\siki\Application Data\m\shared\U4 Screen Magnifier 2.0 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\UDC 2.0.8.4 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\UK and Ireland Map Locator 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\UK TV Guide 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ultimate Date Calculator 2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ultra QuickTime Converter 2.2.0723.zip
D:\Documents and Settings\siki\Application Data\m\shared\Uninstall Manager 2.50.zip
D:\Documents and Settings\siki\Application Data\m\shared\Universal Software Oscilloscope Library 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Universe Screen Saver 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Unreal Tournament 2003 - Crater Forts CTF map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Unreal Tournament 2003 - Lab13 deathmatch map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Unreal Tournament 2003 - Masons Storage map.zip
D:\Documents and Settings\siki\Application Data\m\shared\upiea 1.50.zip
D:\Documents and Settings\siki\Application Data\m\shared\Uptime Clock 3.9.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\USRLogging 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Utility Ping 2.1.2 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Veox 4.31 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\VideoSync 1.0.5.37.zip
D:\Documents and Settings\siki\Application Data\m\shared\Vincent Van Gogh Screen Saver 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\VirgoFTP 1.3.5.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Virtual Vision 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\VisNetic MailFlow 3.0.1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Visual Mind 8.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\VP6 6.1.0.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\VUBB forum2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\W32.Bropia Free Removal Tool 1.3.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\WallShuffler X 1.0 [(zabranjeno)ed].zip
D:\Documents and Settings\siki\Application Data\m\shared\watchDirectory 4.1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Wave Enhancer 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Web Services Accelerator 2.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\WebButtons 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\WebcamGreetings Studio 0.94.zip
D:\Documents and Settings\siki\Application Data\m\shared\Webetiser 3.1 Serial.zip
D:\Documents and Settings\siki\Application Data\m\shared\Whois Extractor 1.2 ((zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Wildlife Tycoon Venture Africa 1.0.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Windows Clock and Alarm 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Winged Warrior II 2.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Winter Waterfall ScreenSaver 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Winz 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Wlsoft Media Player 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\wodWebServer 1.2.4 (Patch).zip
D:\Documents and Settings\siki\Application Data\m\shared\Work At Home Moms Masters Course 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\World of Warcraft v1.8.0 patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\World of Where 3.0.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Writing Suite 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\XL2CAD Project 2.5.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\XLang10 1.2.9 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\XP Recovery CD Maker 1.01.09.zip
D:\Documents and Settings\siki\Application Data\m\shared\Zeppelin 3D 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Zip Password Recovery Key 8.0 build 2514.zip
D:\Documents and Settings\siki\Application Data\m\shared\ZipItFast! 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\ZW GI To ISO 2.0.zip
D:\Documents and Settings\siki\Application Data\m\srvlist.oct
D:\Documents and Settings\siki\ravmonlog
D:\Program Files\Mozilla Firefox\plugins\NPNd2fn.dll
D:\Program Files\Need2Find
D:\Program Files\Need2Find\bar\1.bin\N2FFXTBR.JAR
D:\Program Files\Need2Find\bar\1.bin\N2NTSTBR.JAR
D:\Program Files\Need2Find\bar\1.bin\NPND2FN.DLL
D:\Program Files\Need2Find\bar\1.bin\PARTNER.DAT
D:\Program Files\Need2Find\bar\Cache\00172EEF
D:\Program Files\Need2Find\bar\Cache\files.ini
D:\Program Files\Need2Find\bar\History\search
D:\Program Files\Need2Find\bar\Settings\prevcfg.htm
D:\WINDOWS\adober.exe
D:\WINDOWS\exefld
D:\WINDOWS\exefld\21341218.exe
D:\WINDOWS\Fonts\acrsecB.fon
D:\WINDOWS\Fonts\acrsecI.fon
D:\WINDOWS\smdat32a.sys
D:\WINDOWS\smdat32m.sys
D:\WINDOWS\system32\drivers\hidr.exe
d:\windows\system32\Drivers\Oxg21.sys
D:\WINDOWS\system32\MSINET.oca
D:\WINDOWS\system32\WLCtrl32.dll
F:\AUTORUN.INF

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_OXG21
-------\Service_Oxg21


((((((((((((((((((((((((( Files Created from 2008-08-15 to 2008-09-15 )))))))))))))))))))))))))))))))
.

2008-09-15 11:57 . 2008-09-15 11:57 <DIR> d-------- D:\Program Files\Trend Micro
2008-09-15 11:27 . 2008-09-15 11:29 <DIR> d-------- D:\Program Files\Wise Registry Cleaner 3
2008-09-14 13:15 . 2008-09-14 13:15 <DIR> d-------- D:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-09-14 13:04 . 2008-09-14 13:04 <DIR> d-------- D:\Program Files\Yahoo!
2008-09-14 13:04 . 2008-09-14 13:04 <DIR> d-------- D:\Program Files\CCleaner
2008-09-13 12:40 . 2008-09-13 12:40 33,280 --a------ D:\WINDOWS\system32\jvv.exe
2008-09-13 12:40 . 2008-09-13 12:40 33,280 ---h----- D:\Documents and Settings\siki\tjfn.exe
2008-09-13 05:28 . 2008-09-13 05:28 <DIR> d-------- D:\Program Files\Alwil Software
2008-09-02 17:01 . 2008-09-02 17:06 <DIR> d-------- D:\Program Files\IrfanView

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-15 17:27 --------- d-----w D:\Documents and Settings\siki\Application Data\ChessBase
2008-09-12 18:23 --------- d-----w D:\Documents and Settings\siki\Application Data\Skype
2008-07-22 19:50 --------- d-----w D:\Program Files\Common Files\xing shared
2008-07-22 19:50 --------- d-----w D:\Program Files\Common Files\Real
2008-06-17 17:10 356,352 ----a-w D:\WINDOWS\eSellerateEngine.dll
2007-12-09 19:52 27 ----a-w D:\Program Files\DEINSTAL.INI
2007-12-04 04:28 32 ----a-w D:\Documents and Settings\All Users\Application Data\ezsid.dat
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="D:\Program Files\Messenger\msmsgs.exe" [2004-08-04 1667584]
"ctfmon.exe"="D:\WINDOWS\system32\ctfmon.exe" [2004-08-03 15360]
"swg"="D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-05-12 68856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="D:\WINDOWS\system32\NvCpl.dll" [2006-06-14 7573504]
"MGSysCtrl"="D:\Program Files\System Control Manager\MGSysCtrl.exe" [2006-12-13 180736]
"NeroFilterCheck"="D:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 155648]
"QuickTime Task"="D:\Program Files\QuickTime\qttask.exe" [2008-03-28 413696]
"iTunesHelper"="D:\Program Files\iTunes\iTunesHelper.exe" [2008-03-30 267048]
"TkBellExe"="D:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-07-22 185896]
"jvv"="D:\WINDOWS\system32\jvv.exe" [2008-09-13 33280]
"nwiz"="nwiz.exe" [2006-06-14 D:\WINDOWS\system32\nwiz.exe]
"SkyTel"="SkyTel.EXE" [2006-05-16 D:\WINDOWS\SkyTel.exe]
"AGRSMMSG"="AGRSMMSG.exe" [2005-09-08 D:\WINDOWS\AGRSMMSG.exe]
"RTHDCPL"="RTHDCPL.EXE" [2006-09-12 D:\WINDOWS\RTHDCPL.exe]

D:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 29696]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.xvid"= xvid.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Oxg21.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"D:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"D:\\Program Files\\iTunes\\iTunes.exe"=
"D:\\Program Files\\Skype\\Phone\\Skype.exe"=
"D:\\Documents and Settings\\siki\\tjfn.exe"=
"D:\\WINDOWS\\system32\\jvv.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"17588:TCP"= 17588:TCP:NortonAV
"16014:TCP"= 16014:TCP:NortonAV
"14599:TCP"= 14599:TCP:NortonAV
"16839:TCP"= 16839:TCP:NortonAV
"14338:TCP"= 14338:TCP:NortonAV
"12095:TCP"= 12095:TCP:NortonAV
"13145:TCP"= 13145:TCP:NortonAV
"13642:TCP"= 13642:TCP:NortonAV

R0 O2MDRDR;O2MDRDR;D:\WINDOWS\system32\DRIVERS\o2media.sys [2006-08-18 36576]
R0 O2SDRDR;O2SDRDR;D:\WINDOWS\system32\DRIVERS\o2sd.sys [2006-06-21 29184]
R2 NATURAL223BufferpoolService;NATURAL 2.2.3 Bufferpool Service;C:\KSBOFFER\RUNTIME\V223\BIN\NATBPSVC.EXE [1997-03-25 26112]
R2 NishService;SCM Driver Daemon;D:\Program Files\System Control Manager\edd.exe [2006-03-22 40960]
R3 MGHwCtrl;MGHwCtrl;D:\WINDOWS\system32\drivers\MGHwCtrl.sys [2006-07-03 9088]
S3 iadusb;MT882;D:\WINDOWS\system32\DRIVERS\glauiad.sys [2006-03-20 30336]
.
Contents of the 'Scheduled Tasks' folder
.
.
------- Supplementary Scan -------
.
FireFox -: Profile - D:\Documents and Settings\siki\Application Data\Mozilla\Firefox\Profiles\cfjh3nj7.default\
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [Link mogu videti samo ulogovani korisnici]
Rootkit scan 2008-09-15 13:03:41
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\WINDOWS\system32\nvsvc32.exe
C:\KSBOffer\runtime\V223\BIN\NATBPSRV.EXE
D:\WINDOWS\system32\o2flash.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\ComboFix\pv.cfexe
.
**************************************************************************
.
Completion time: 2008-09-15 13:05:58 - machine was rebooted [siki]
ComboFix-quarantined-files.txt 2008-09-15 20:05:54

Pre-Run: 27,428,438,016 bytes free
Post-Run: 27,363,414,016 bytes free

598

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Otvoriti Notepad i iskopirati sledeci tekst:

File::
D:\WINDOWS\system32\jvv.exe
D:\Documents and Settings\siki\tjfn.exe

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"jvv"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Oxg21.sys]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"17588:TCP"=-
"16014:TCP"=-
"14599:TCP"=-
"16839:TCP"=-
"14338:TCP"=-
"12095:TCP"=-
"13145:TCP"=-
"13642:TCP"=-
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"D:\\Documents and Settings\\siki\\tjfn.exe"=-
"D:\\WINDOWS\\system32\\jvv.exe"=-


Snimiti na Desktop fajl iz Notepada kao "CFScript"




Prevuci snimljeni skript/tekst na ComboFix ikonicu kao na slici.
Postaviti u sledecoj poruci log koji bude bio napravljen na kraju ciscenja/skeniranja.


-------------------------------------------------------------------------------------


Kada završiš sa ovim gore, restartuj kompjuter i pokušaj instalirati antivirus.

offline
  • Pridružio: 14 Sep 2008
  • Poruke: 6

Evo ga novi log

ComboFix 08-09-15.01 - siki 2008-09-15 13:49:19.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.381.1033.18.576 [GMT -7:00]
Running from: D:\Documents and Settings\siki\Desktop\ComboFix.exe
Command switches used :: D:\Documents and Settings\siki\Desktop\CFScript.txt
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

D:\Documents and Settings\siki\tjfn.exe
D:\WINDOWS\system32\jvv.exe

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_SROSA


((((((((((((((((((((((((( Files Created from 2008-08-15 to 2008-09-15 )))))))))))))))))))))))))))))))
.

2008-09-15 11:57 . 2008-09-15 11:57 <DIR> d-------- D:\Program Files\Trend Micro
2008-09-15 11:27 . 2008-09-15 11:29 <DIR> d-------- D:\Program Files\Wise Registry Cleaner 3
2008-09-14 13:15 . 2008-09-14 13:15 <DIR> d-------- D:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-09-14 13:04 . 2008-09-14 13:04 <DIR> d-------- D:\Program Files\Yahoo!
2008-09-14 13:04 . 2008-09-14 13:04 <DIR> d-------- D:\Program Files\CCleaner
2008-09-13 05:28 . 2008-09-13 05:28 <DIR> d-------- D:\Program Files\Alwil Software
2008-09-02 17:01 . 2008-09-02 17:06 <DIR> d-------- D:\Program Files\IrfanView


.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-15 17:27 --------- d-----w D:\Documents and Settings\siki\Application Data\ChessBase
2008-09-12 18:23 --------- d-----w D:\Documents and Settings\siki\Application Data\Skype
2008-07-22 19:50 499,712 ----a-w D:\WINDOWS\system32\msvcp71.dll
2008-07-22 19:50 348,160 ----a-w D:\WINDOWS\system32\msvcr71.dll
2008-07-22 19:50 --------- d-----w D:\Program Files\Common Files\xing shared
2008-07-22 19:50 --------- d-----w D:\Program Files\Common Files\Real
2008-07-19 05:10 94,920 ----a-w D:\WINDOWS\system32\cdm.dll
2008-07-19 05:10 53,448 ----a-w D:\WINDOWS\system32\wuauclt.exe
2008-07-19 05:10 45,768 ----a-w D:\WINDOWS\system32\wups2.dll
2008-07-19 05:10 36,552 ----a-w D:\WINDOWS\system32\wups.dll
2008-07-19 05:09 563,912 ----a-w D:\WINDOWS\system32\wuapi.dll
2008-07-19 05:09 325,832 ----a-w D:\WINDOWS\system32\wucltui.dll
2008-07-19 05:09 205,000 ----a-w D:\WINDOWS\system32\wuweb.dll
2008-07-19 05:09 1,811,656 ----a-w D:\WINDOWS\system32\wuaueng.dll
2008-06-17 17:10 356,352 ----a-w D:\WINDOWS\eSellerateEngine.dll
2007-12-09 19:52 27 ----a-w D:\Program Files\DEINSTAL.INI
2007-12-04 04:28 32 ----a-w D:\Documents and Settings\All Users\Application Data\ezsid.dat
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="D:\Program Files\Messenger\msmsgs.exe" [2004-08-04 1667584]
"ctfmon.exe"="D:\WINDOWS\system32\ctfmon.exe" [2004-08-03 15360]
"swg"="D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-05-12 68856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="D:\WINDOWS\system32\NvCpl.dll" [2006-06-14 7573504]
"MGSysCtrl"="D:\Program Files\System Control Manager\MGSysCtrl.exe" [2006-12-13 180736]
"NeroFilterCheck"="D:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 155648]
"QuickTime Task"="D:\Program Files\QuickTime\qttask.exe" [2008-03-28 413696]
"iTunesHelper"="D:\Program Files\iTunes\iTunesHelper.exe" [2008-03-30 267048]
"TkBellExe"="D:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-07-22 185896]
"nwiz"="nwiz.exe" [2006-06-14 D:\WINDOWS\system32\nwiz.exe]
"SkyTel"="SkyTel.EXE" [2006-05-16 D:\WINDOWS\SkyTel.exe]
"AGRSMMSG"="AGRSMMSG.exe" [2005-09-08 D:\WINDOWS\AGRSMMSG.exe]
"RTHDCPL"="RTHDCPL.EXE" [2006-09-12 D:\WINDOWS\RTHDCPL.exe]

D:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 29696]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.xvid"= xvid.dll

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"D:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"D:\\Program Files\\iTunes\\iTunes.exe"=
"D:\\Program Files\\Skype\\Phone\\Skype.exe"=

R0 O2MDRDR;O2MDRDR;D:\WINDOWS\system32\DRIVERS\o2media.sys [2006-08-18 36576]
R0 O2SDRDR;O2SDRDR;D:\WINDOWS\system32\DRIVERS\o2sd.sys [2006-06-21 29184]
R2 NATURAL223BufferpoolService;NATURAL 2.2.3 Bufferpool Service;C:\KSBOFFER\RUNTIME\V223\BIN\NATBPSVC.EXE [1997-03-25 26112]
R2 NishService;SCM Driver Daemon;D:\Program Files\System Control Manager\edd.exe [2006-03-22 40960]
R3 MGHwCtrl;MGHwCtrl;D:\WINDOWS\system32\drivers\MGHwCtrl.sys [2006-07-03 9088]
S3 iadusb;MT882;D:\WINDOWS\system32\DRIVERS\glauiad.sys [2006-03-20 30336]
.
Contents of the 'Scheduled Tasks' folder
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [Link mogu videti samo ulogovani korisnici]
Rootkit scan 2008-09-15 13:51:47
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Bonjour\mDNSResponder.exe
C:\KSBOffer\runtime\V223\BIN\NATBPSRV.EXE
D:\WINDOWS\system32\nvsvc32.exe
D:\WINDOWS\system32\o2flash.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\ComboFix\pv.cfexe
.
**************************************************************************
.
Completion time: 2008-09-15 13:53:27 - machine was rebooted
ComboFix-quarantined-files.txt 2008-09-15 20:53:24
ComboFix2.txt 2008-09-15 20:05:58

Pre-Run: 27,345,702,912 bytes free
Post-Run: 27,338,534,912 bytes free

115

Dopuna: 15 Sep 2008 23:14

BORO CARE!!

Sta reci,na muci se poznaju pravi junaci.
Instalirao sam Avast i radi bez problema.

Pozdrav i jedno veliko hvala!

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Uradi još i ovo:
Klikni START a zatim RUN
U liniju za unos teksta ukucaj Combofix /u i klikni OK





Sačekaj da se proces deinstalacije završi

Gornja procedura će:
Obrisati sledeće:
ComboFix i njegove file-ove i foldere
VundoFix Backups folder, ako postoji
C:\Deckard folder, ako postoji
C:\OtMoveIt folder, ako postoji

Resetovati podešavanja sata na kompjuteru
Sakriti ekstenzije file-ova, ako je potrebno
Sakriti sistemske/skrivene file-ove/foldere, ako je potrebno
Resetovati System Restore



To je sve.

Ko je trenutno na forumu
 

Ukupno su 1968 korisnika na forumu :: 100 registrovanih, 6 sakrivenih i 1862 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 5623 - dana 13 Dec 2025 19:56

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 015, 357magnum, 9k38, acatomic, Air_Force_82, alex71, Apis Dr, blue, Bo96, Bojan198527, bojank, bojanstros9, Boris90, borya90, Boxy, bozo13, Buzdovan, Ciri1994, colji, cyprus, Darko8, darkojbn, dekan.m, Deki Duga Devetka, delboy, Demi87, desmeki, dijica, divison, Djokislav, djuradj, DonRumataEstorski, draganl, drale12, Drugard72, eulereix, foksmolder, Igritelj, In_hero, istina, iznurenitragalac, Jezekijel, K a s p e r, K-1A, Kajzer Soze, Kozi-RS, Lester Freamon, lukisa, markolopin, mat, Miki281, milanstankovic087, MiljanXD, Milos ZA, milutin134, Mitogna, mkukoleca, Mrav Obrad, Neutral-M, Niki2024, Nikola.M, obsc, Paklenica, Pavel Medved, pceklic, Primus17, procesor, raf87, Razdroid, RJ, rodoljub, S-lash, sap, sarma, Sevatar, Sinisa76, Skenderbeg, Smiljkovich, stegonosa, Stod, styg, tehnika, tomo2, Uros Cuore Sportivo, Username1000, Vanderx, vathra, Vatreni Zmaj, veljko82, virked, VJ, vlad4, voja64, VonDrobac, vrlenija, vuk77, zmajbre, Zorge, zubri, ZZZ