Problem sa instalacijom AV

Problem sa instalacijom AV

offline
  • Pridružio: 14 Sep 2008
  • Poruke: 6

Saljem log fajl u vezi problema instalacije AV

NOD32
Error writing to file: D\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe. Verify that you have access to that directory.

AVG Free 8.0
Local machine:installation failed
Installation:
Error:Action failed for file avgemc.exe:creating file…
Error 0xe001042c

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:58:05 AM, on 9/15/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Documents and Settings\siki\tjfn.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\AGRSMMSG.exe
D:\Program Files\System Control Manager\MGSysCtrl.exe
D:\WINDOWS\RTHDCPL.EXE
D:\Program Files\iTunes\iTunesHelper.exe
D:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\WINDOWS\AdobeR.exe
D:\Program Files\Messenger\msmsgs.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Bonjour\mDNSResponder.exe
C:\KSBOFFER\RUNTIME\V223\BIN\NATBPSVC.EXE
D:\Program Files\System Control Manager\edd.exe
D:\WINDOWS\system32\nvsvc32.exe
D:\WINDOWS\system32\o2flash.exe
C:\KSBOFFER\RUNTIME\V223\BIN\NatBPSrv.EXE
D:\WINDOWS\system32\svchost.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\WINDOWS\system32\wuauclt.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
F2 - REG:system.ini: UserInit=D:\WINDOWS\system32\userinit.exe,D:\Documents and Settings\siki\tjfn.exe \s
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - D:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {4D1C4E81-A32A-416b-BCDB-33B3EF3617D3} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - D:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [MGSysCtrl] D:\Program Files\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "D:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "D:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [RavAV] D:\WINDOWS\AdobeR.exe
O4 - HKLM\..\Run: [jvv] D:\WINDOWS\system32\jvv.exe \u
O4 - HKCU\..\Run: [MSMSGS] "D:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Search - kl.bar.need2find.com/KL/menusearch.html?p=KL
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - D:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} - eset.eu/buxus/docs/OnlineScanner.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O20 - Winlogon Notify: WLCtrl32 - D:\WINDOWS\SYSTEM32\WLCtrl32.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - D:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NATURAL 2.2.3 Bufferpool Service (NATURAL223BufferpoolService) - Unknown owner - C:\KSBOFFER\RUNTIME\V223\BIN\NATBPSVC.EXE
O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - D:\Program Files\System Control Manager\edd.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O2Micro Flash Memory (O2Flash) - Unknown owner - D:\WINDOWS\system32\o2flash.exe

--
End of file - 6678 bytes

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Pa, ne čudi me da ne možeš instalirati AV - nekoliko različitih infekcija je prisutno.




Skini ComboFix sa jedne od sledecih adresa na Desktop:
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
http://www.forospyware.com/sUBs/ComboFix.exe
http://subs.geekstogo.com/ComboFix.exe

Startuj ga i ne diraj prozor programa dok skenira.
Sledi uputstva na ekranu. Kada zavrsi pojavice se log (C:\ComboFix.txt) koji ces nam ovde iskopirati.

offline
  • Pridružio: 14 Sep 2008
  • Poruke: 6

Evo ga i ComboFix

ComboFix 08-09-15.01 - siki 2008-09-15 13:00:01.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.381.1033.18.547 [GMT -7:00]
Running from: D:\Documents and Settings\siki\Desktop\ComboFix.exe
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

D:\Documents and Settings\siki\Application Data\m
D:\Documents and Settings\siki\Application Data\m\flec006.exe
D:\Documents and Settings\siki\Application Data\m\list.oct
D:\Documents and Settings\siki\Application Data\m\shared
D:\Documents and Settings\siki\Application Data\m\shared\2Jpeg 5.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\3_Panda.Titanium.Antivirus.2006.5.00.83.keygen.zip
D:\Documents and Settings\siki\Application Data\m\shared\3D DinoFly 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\3D Pumpkin Patch Teddy Bears 1.0 (zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\3webTotal Tv & Radio Tuner 5.501.zip
D:\Documents and Settings\siki\Application Data\m\shared\4 Digits 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\602Print Pack 5.0.06.0426.zip
D:\Documents and Settings\siki\Application Data\m\shared\A-Block 1.1 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\A2 Flash Preloader 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\AAA DVD To iPhone Converter 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\ABC Calendar Maker 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Able2Doc - PDF to Word Conversion 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AcaStat 5.3.1 SE.zip
D:\Documents and Settings\siki\Application Data\m\shared\Acronis True Image Corporate Workstation 9.1 Build 3887.zip
D:\Documents and Settings\siki\Application Data\m\shared\Active Direct Mail 1.24.zip
D:\Documents and Settings\siki\Application Data\m\shared\ActiveSyncToggle 1.0.2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Advanced Menu Bar Applet 2.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\After Hours Screensaver 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Agony and Ecstasy 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AIRMIX Sound Automation PRO 11.10.1.26.23.zip
D:\Documents and Settings\siki\Application Data\m\shared\AjmUpload 2.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Alert Phone 1.28.zip
D:\Documents and Settings\siki\Application Data\m\shared\Algematics 1.20 [(zabranjeno)ed].zip
D:\Documents and Settings\siki\Application Data\m\shared\All to AVI VCD SVCD DVD Converter 4.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\Allergy Info Finder 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\ALLinONE Multimedia Converter 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Allok RM RMVB to AVI MPEG DVD Converter 2.2.0807.zip
D:\Documents and Settings\siki\Application Data\m\shared\Alpha Journal 3.5.1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Amiasoft Color Pro 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ancient Trijong 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Antivir.Personal.Edition.Classic.v7.0.(zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\Any Video Converter Professional 2.22.zip
D:\Documents and Settings\siki\Application Data\m\shared\Apple TV Video Converter 3.1.2.6 (Patch).zip
D:\Documents and Settings\siki\Application Data\m\shared\AquaButton Control 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Architect and Contractor 2.0 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\ASC-C 2005.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ascella Log Monitor 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AspNetForum 4.2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\ASPProtect 4.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Atlast! File Notes Organizer 3.5.1.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Audio Caller ID 1.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\Audio DVD Creator 1.9.1.0 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Audio Mentor 1.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Audio Video Converter 2.5 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\Audioblast 1.6.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Audiofan MP3 to Wave Converter 1.3 [Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Automatic USB Backup 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Autoresponders Unleashed! 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AutoSSL 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\AutoUnbreak 1.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\avast!_Professional_Edition_4.7.892_Br_Pacote.Util.RoboCop.zip
D:\Documents and Settings\siki\Application Data\m\shared\Awesome Cities from Space Screen Saver 1.0 Patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Backwards Machine 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Balloon Tooltips .NET 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Banner Show 2.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Battlefield 1942 Cherbourg Map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Bg.-.Preslava.(2004).-.Preslava.-.Kompl.Mp3-Album.192Kbps.-.Incl.Cover.&.Label.-.By.Panda.1960.zip
D:\Documents and Settings\siki\Application Data\m\shared\BitDefender.AntiVirus.Plus.v10.FR.+.keygen.zip
D:\Documents and Settings\siki\Application Data\m\shared\BitDefender.Internet.Security.v10.0.Incl.Keymaker-CORE.zip
D:\Documents and Settings\siki\Application Data\m\shared\Bitstream Charter 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Blow Fish Edit 1.01 Key.zip
D:\Documents and Settings\siki\Application Data\m\shared\BM Tivoli Federated Identity Manager V6.0 Implementation Practice Exam Questions 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\BookOrganize 1.0 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\Bossa 1032.zip
D:\Documents and Settings\siki\Application Data\m\shared\BPM Counter 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\BSCOutline 5.10.zip
D:\Documents and Settings\siki\Application Data\m\shared\Bulletproof Public PC 3.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\BURNISO 0.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Butterfly Fantasia Theme 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\ByteRun Protector for PHP Professional Edition 3.8 Build 2312 KeyGen.zip
D:\Documents and Settings\siki\Application Data\m\shared\BZFlag 2.0.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Call of Duty Dedville map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Call of Duty Mogadishu map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Canon EOS Digital Rebel firmware update 1.1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\CastRipper 2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Celestial Clock 2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\CFM2ASP 2.1.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Chat Controller 1.2.2 [(zabranjeno)ed].zip
D:\Documents and Settings\siki\Application Data\m\shared\Christmas Quest 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Chromentum 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\ChurchPack Organizer Pro 1.7 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\ClearView RC Flight Simulator 4.56.zip
D:\Documents and Settings\siki\Application Data\m\shared\ClipSafe Clipboard Backup 2.5.4 (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Clone Cleaner Lite 1.04.zip
D:\Documents and Settings\siki\Application Data\m\shared\CNS Menu 1.0.6 [(zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\Code to Chart 2.0 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\CoffeeCup Web JukeBox 4.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Comparefiles 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\CompuApps OnBelay 1.03 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\(zabranjeno).Panda.Antivirus+Firewall.2007.zip
D:\Documents and Settings\siki\Application Data\m\shared\Credit Card Verifier 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Crime Catcher 3.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\CRON-O-Meter 0.2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Cross+A 7.02.zip
D:\Documents and Settings\siki\Application Data\m\shared\Crossword Construction Kit 4.0c build 4.0.31 [(zabranjeno)ed].zip
D:\Documents and Settings\siki\Application Data\m\shared\csXGraph 1.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Cucusoft Zune Video Converter Suite 5.63.15.zip
D:\Documents and Settings\siki\Application Data\m\shared\Cue Player Pro 2.4.4 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\Culinary Delights 220 Recipes for Masterpiece Dishes 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\CurveUnscan 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Custom Screensaver Selection 5 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Cutter 2.24 ((zabranjeno)ed).zip
D:\Documents and Settings\siki\Application Data\m\shared\Daniusoft DVD to Zune Converter 1.1.10 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\Dark Files 4.0.1.1 Patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Data Disc Recovery (DDR) 0.9.9.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Database Viewer Plus (Access,Excel,Oracle) 3.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\DataGuard 2.0 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\DB Visual Architect for Java Platform 4.1 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\dbCOPY 3.1.7 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\DDObjects 0.9.95 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Demolition Derby & Figure 8 Race 1.22.zip
D:\Documents and Settings\siki\Application Data\m\shared\DentSuite 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Deskbolt 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Didj'tizer 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Digital Alarm Clock 2.11.zip
D:\Documents and Settings\siki\Application Data\m\shared\Digital Photo Resizer 2006 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\DIManagerX 7.0.0.123 Final.zip
D:\Documents and Settings\siki\Application Data\m\shared\Dimlog 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Dirt Track Racing 1.03 patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\DisCatalog 2.00.417 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\DoInventory Plus 4.6.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\Doom 3 Nitro Gore mod.zip
D:\Documents and Settings\siki\Application Data\m\shared\Doom 3 Power Up Destroyer mod.zip
D:\Documents and Settings\siki\Application Data\m\shared\Down2Home 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Dr.Explain 2.6.103 Patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Drm2Free 0.99.zip
D:\Documents and Settings\siki\Application Data\m\shared\DrWeb.4.33.rus.full.(+key).zip
D:\Documents and Settings\siki\Application Data\m\shared\DS WaterSurf 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\DWG to PDF Converter 2006 2.00 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\E-mail Sitextract Pro 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\E22-183 Practice Exam Testing Engine Software 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\EarthDesk 4.1 ((zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Easy CHM 3.75 build 500.zip
D:\Documents and Settings\siki\Application Data\m\shared\Easy File Sharing Web Server 4.5 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\Easy File Sharing Web Server 4.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Easy RSS Content Generator 2.1 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\Eazibo Standard Edition 1.3.22.zip
D:\Documents and Settings\siki\Application Data\m\shared\eFAXy 3.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Eggblog 3.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\EMX Movie Converter 2007 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Enterprise Port Management Solution 1.3.2 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Equations! 1.0 (zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\EscapeClose Pro 2.1 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Eset_Nod32__Antivirus_2.51.12.zip
D:\Documents and Settings\siki\Application Data\m\shared\Essential Budget 0.8.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\eTrust Antivirus r8 8.0.403.0 ((zabranjeno)ed).zip
D:\Documents and Settings\siki\Application Data\m\shared\EugeneShredder 1.20.zip
D:\Documents and Settings\siki\Application Data\m\shared\ewido-setup.v4.0.beta.incl.keygen.zip
D:\Documents and Settings\siki\Application Data\m\shared\Excel Remove (Break) File Links In Multiple Files Software 7.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Explorer View 3.4.0.125.zip
D:\Documents and Settings\siki\Application Data\m\shared\eXScrollBar 1.0.0.1.4477.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ext2Fsd 0.31a.zip
D:\Documents and Settings\siki\Application Data\m\shared\Extension Changer 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\EZ Save MHT 3.4.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\EzWeb Monitor 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Fairy Match 1.311.zip
D:\Documents and Settings\siki\Application Data\m\shared\Far Cry K-9 Vision 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Far Cry MP Oasis map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Fedut 2.0.1 [KeyGen].zip
D:\Documents and Settings\siki\Application Data\m\shared\File-O-Scope 1.9 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\FileRecovery for miniSD 1.8.zip
D:\Documents and Settings\siki\Application Data\m\shared\Files Together 1.6.5.0 (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\FineSplit 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Finger Server 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\FIR HDL Writer 0.9 Beta.zip
D:\Documents and Settings\siki\Application Data\m\shared\Flash Movie Player 1.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\FlashMap 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Flight Explorer Personal Edition 5.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\FloSpace FloPrompter 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Fonts in Action 1.2 [Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Forges 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Form-Z Update 3.0.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Fourier transform library 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\FREE Hi-Q Recorder 1.92.zip
D:\Documents and Settings\siki\Application Data\m\shared\Free MP3 Recorder 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Free Spam Fix 2.1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Freecell-on-the-Palm 1.26.zip
D:\Documents and Settings\siki\Application Data\m\shared\FRS Money Math 1.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\FX Saver Toolbox 2.0c.zip
D:\Documents and Settings\siki\Application Data\m\shared\Gallery Downloader 1.2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Game Organizer 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Genius's Puzzle Pack 3.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\GenSaver 1.1 (zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\GetScreen 1.1.9.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ghost Hunter 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Global Downloader 1.3 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Golden Autumn 3D Screensaver 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Google Ranking Search Engine Optimization Tool 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Halo Combat Evolved War of the Helots map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Hardwood Hearts 2.2.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Heroes of Might and Magic 2 Editor 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Heroes of Might and Magic V v1.02 Russian patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Hide-A-File 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Hitler's Europe 1914-45 The Animated Atlas of the Third Reich 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\HobbyDebug toolbar for Firefox 1.5.0.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Home Video Converter 4.2.9.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Hotmail Messenger Fix 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\How to Study Ebook 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\HTML Password Lock 3.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\HTML2PDF Add-on 3.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\HVRaster - Programmers Font for Windows 1.02.zip
D:\Documents and Settings\siki\Application Data\m\shared\iCarbon 2.2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\ICQ Monitor Sniffer 3.0 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\IDAutomation.com Linear Barcode Image Generator 2006 R2.zip
D:\Documents and Settings\siki\Application Data\m\shared\IFS Builder 3d 1.6.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\II_WorldTimeClocks 1.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Image Master 2000 1.0.107 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Image Transformer 1.2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Industrial Audio Editor 1.0.25 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\iNeeda Password & Tracker Pro 3.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Infima Jpeg Optimization SDK 1.3 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\InSight 2.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Internet Bargain Center 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Intertech iPod Converter 2.3 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\iolo Antivirus 1.1.10.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\iPod nano 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\iPureSearch Search Anything Widget 3.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Job Cost Calculators (Framing) 1.0.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Julia Stiles Sex-E Screensaver 3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Kandyan Crystal Glass Icons 2.00.zip
D:\Documents and Settings\siki\Application Data\m\shared\Karaoke Sound Recorder 2.02 Key.zip
D:\Documents and Settings\siki\Application Data\m\shared\Kaspersky.5018.zip
D:\Documents and Settings\siki\Application Data\m\shared\Kaspersky.Internet.Security.2006.v6.0.0.290.RC6.(zabranjeno).keygen.serial.patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Kaspersky.Internet.Security.v6.0.1.411.fr.incl.keys.by.Balloo888.zip
D:\Documents and Settings\siki\Application Data\m\shared\King Kong AIM Icons 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Knitting Wizard 122.0.0 (Patch).zip
D:\Documents and Settings\siki\Application Data\m\shared\Kurumix 0.3.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\LandZone 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Laptop Lid Tweaks XP 1.1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Laundry Timer 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\LingvoSoft Picture Dictionary 2007 English - Serbian 1.1.17 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\ListFont 1.2a.zip
D:\Documents and Settings\siki\Application Data\m\shared\LTF-Cimulator 1.0 (KeyGen).zip
D:\Documents and Settings\siki\Application Data\m\shared\m3uEdit1 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Magenta Systems File Transfer Components 1.8.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mail Access Monitor for SendMail 3.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Make List Files 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Math Logic 4.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\McAfee.Internet.Security.Suite.2007.Full.8-In-1.zip
D:\Documents and Settings\siki\Application Data\m\shared\McAfee.VirusScan.for.Mac.v8.5=.zip
D:\Documents and Settings\siki\Application Data\m\shared\Meeting Timer 1.0 [Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Mega! Search 1.11.zip
D:\Documents and Settings\siki\Application Data\m\shared\Memory Stick Data Recovery Software 2.0.1.5 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\MESH 2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Messenger Backup Wizard 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Microsoft Windows NT 4.0 Service Pack 6a (Alpha) with Standard Encryption.zip
D:\Documents and Settings\siki\Application Data\m\shared\MiniDiary 3.12.zip
D:\Documents and Settings\siki\Application Data\m\shared\miWeekendWho 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\MMOGer 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mobile 3GP Converter 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mollensoft FTP Server 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mondrichart 1.0 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\Mouse Meter 1.41 (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Movie DB 3.10 build 190.zip
D:\Documents and Settings\siki\Application Data\m\shared\Movie Outline 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Mp3Converter 2.50 (KeyGen).zip
D:\Documents and Settings\siki\Application Data\m\shared\MPEG Encoder 1.10.zip
D:\Documents and Settings\siki\Application Data\m\shared\MSDict Cambridge Advanced Learner's Dictionary 7.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\MSDict English-German Pro Dictionary (Pocket PC) 4.30.zip
D:\Documents and Settings\siki\Application Data\m\shared\Multimedia Calculator.Net 2.0.0.10.zip
D:\Documents and Settings\siki\Application Data\m\shared\Multimedia Icon Collection 1.0 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Music File Merger 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\MusicGiants 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Musition 3.01.30.zip
D:\Documents and Settings\siki\Application Data\m\shared\My Address Book pro 2.8.4 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\My CPU 1.13g.zip
D:\Documents and Settings\siki\Application Data\m\shared\MySQL Developer Tools for Visual Studio .NET 2.0 beta With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\MySQL PostgreSQL Import, Export & Convert Software 7.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Narbacular Drop.zip
D:\Documents and Settings\siki\Application Data\m\shared\NASCAR Thunder 2003 demo.zip
D:\Documents and Settings\siki\Application Data\m\shared\Netreviver 1.02.zip
D:\Documents and Settings\siki\Application Data\m\shared\NETUSE 1.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\network Camera Command Center 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\ngrep 1.45.zip
D:\Documents and Settings\siki\Application Data\m\shared\Nod32.Antivirus.2007.Full.zip
D:\Documents and Settings\siki\Application Data\m\shared\NOD32.v2.12.4.ITA.WinXP.Andy.zip
D:\Documents and Settings\siki\Application Data\m\shared\NutriGenie Omega 3 Counter 3.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\O&O Defrag Professional 10.0.1634 Patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Odyssey 1.13.zip
D:\Documents and Settings\siki\Application Data\m\shared\Office Count 'N' Invoice Suit 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Okoker Optimize Expert 1.9 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\OmniChex Web 5.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Omnidrive 0.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\Online Store Kit 3.0 Standard.zip
D:\Documents and Settings\siki\Application Data\m\shared\Optical Illusion Of The Day 4.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\OraDeveloper Tools 2.00 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\OutDisk FTP for Outlook 1.5.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Outlook Email Attachments Extractor Pro 2.1 KeyGen.zip
D:\Documents and Settings\siki\Application Data\m\shared\Outlook Thumbnail Viewer 1.0 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Over the Hedge IM icons.zip
D:\Documents and Settings\siki\Application Data\m\shared\Oxygen 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Panda.Antivirus.Platinum7.05.03.Retail-F4CG.ShareConnector.com.zip
D:\Documents and Settings\siki\Application Data\m\shared\Parallel Greek New Testament 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Pasoor 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Password Keyper 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PC-Repair 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PC Foto 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PC Pranks 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PDF Snake 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Perf'Control Personal Edition 1.1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Philipp Winterberg - Tier und Verderben 2004 1.77.zip
D:\Documents and Settings\siki\Application Data\m\shared\PicViewer 3.0.2.32 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Polestar Virtual Printer 1.0 (With (zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Powerpoint Millionaire 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PPSee 1.251.zip
D:\Documents and Settings\siki\Application Data\m\shared\pptXtreme Effects Library for PowerPoint 1.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Print Explorer 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Private Desktop 1.91.zip
D:\Documents and Settings\siki\Application Data\m\shared\ProChat 2.8.zip
D:\Documents and Settings\siki\Application Data\m\shared\Professor X 0.4.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\ProList Guardian 1.0.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\ProMimport 4.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PropertiesList 3.40.1299.zip
D:\Documents and Settings\siki\Application Data\m\shared\Proview Video to iPhone Converter 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\PSP Feeder 1.24.zip
D:\Documents and Settings\siki\Application Data\m\shared\PSYBEncrypter 2.72.zip
D:\Documents and Settings\siki\Application Data\m\shared\Qsel 1.52b-4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Quick Cleaner for Brontok.A 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\QuickReminder 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\QuickResizer 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\RapidDXF 4.0 Serial.zip
D:\Documents and Settings\siki\Application Data\m\shared\Readiris Pro 9.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Real Estate Closing 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\RealtyCruncher 6.9.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\Rebecca's Letters & Numbers 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Receipt Book Manager 6.8.4 (Patch).zip
D:\Documents and Settings\siki\Application Data\m\shared\Report Guru Credit Repair Kit 1.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\Reuters 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Rich Chart Server 1.0.128.0 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\Roadkil's Scan Port 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\RPF Viewer 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\RPM Browser Beta 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\RSS Aggregator 4.11 (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Rumpus (Classic) 3.5.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\ScriptFTP 2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\SecureCRT 5.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\SelfImage 1.2.1.92.zip
D:\Documents and Settings\siki\Application Data\m\shared\ShoView 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Simple Desktop Lock 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Sitelogz 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\SlimServer 6.5.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\SLS (Sanitary Lift Station) 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Small WMA MP3 Converter 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\SmartSMS 5.1 (zabranjeno)ed.zip
D:\Documents and Settings\siki\Application Data\m\shared\Software Virtualization Solution 2.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Sound System Modeler 1.0 (Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\Sound Wheel 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Spam-Filter-Mailbox Filter 4.1.09.zip
D:\Documents and Settings\siki\Application Data\m\shared\SplitIt System 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Splitz 1.0.czip
D:\Documents and Settings\siki\Application Data\m\shared\Spyware and Pest Remover 3.0 Serial.zip
D:\Documents and Settings\siki\Application Data\m\shared\Stani's Python Editor 0.8.2a.zip
D:\Documents and Settings\siki\Application Data\m\shared\Star Trek Armada II Enhanced Defiant Class.zip
D:\Documents and Settings\siki\Application Data\m\shared\Star Wars Battlefront II v1.1 patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\Start Menu Tuner 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\StarTag 1.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Stellar Phoenix Mailbox--Exchange Desktop 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Stock Quotes Pro 1.29 [Key].zip
D:\Documents and Settings\siki\Application Data\m\shared\Stress Prime 2004 0.30.zip
D:\Documents and Settings\siki\Application Data\m\shared\Studiometry 3.2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Su Doku Classic 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Summer Butterflies 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Super WinSpy 3.20.zip
D:\Documents and Settings\siki\Application Data\m\shared\Supreme Text Scrambler 1.1 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Surfingcash 2.0.0107.zip
D:\Documents and Settings\siki\Application Data\m\shared\SWF 'n Slide Pro 1.017.zip
D:\Documents and Settings\siki\Application Data\m\shared\Swiffer 0.0.0.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Swiftedit 2.0 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\Synthetic Wallpaper 1.0 [Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Sys Monitor 1.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\Systweak Photo Studio 1.00.zip
D:\Documents and Settings\siki\Application Data\m\shared\TablEdit 2.64.zip
D:\Documents and Settings\siki\Application Data\m\shared\Tactics United 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\TANX-Color 3.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ten Clipboards 1.12 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\TexRD 0.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Text To Speech Live Player 1.73 [Patch].zip
D:\Documents and Settings\siki\Application Data\m\shared\The Bard's Tale updated demo.zip
D:\Documents and Settings\siki\Application Data\m\shared\The Collection Screensaver 2005 - Vade 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\The Daily Show with Jon Stewart Screensaver.zip
D:\Documents and Settings\siki\Application Data\m\shared\The Games Factory 2 build D240.zip
D:\Documents and Settings\siki\Application Data\m\shared\The Neverhood demo (large).zip
D:\Documents and Settings\siki\Application Data\m\shared\The WYSIWYG Immigration Forms Processor 1.90 (KeyGen).zip
D:\Documents and Settings\siki\Application Data\m\shared\ThumbPrint 0.2 BETA.zip
D:\Documents and Settings\siki\Application Data\m\shared\TM Desktop Currency Converter 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Toolbar Remover 2.1.12 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Toolbar Studio 1.0 [(zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\Top of the League 1.7.zip
D:\Documents and Settings\siki\Application Data\m\shared\Tortuga Island Screensaver 5.07.zip
D:\Documents and Settings\siki\Application Data\m\shared\ToYcon 0.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Tree Notes 1.60 With (zabranjeno).zip
D:\Documents and Settings\siki\Application Data\m\shared\Trustix AntiVirus 2005 Edition.zip
D:\Documents and Settings\siki\Application Data\m\shared\TuHex 2.12 Key+Serial.zip
D:\Documents and Settings\siki\Application Data\m\shared\TurboCrypt Disk Encryption 6.58.zip
D:\Documents and Settings\siki\Application Data\m\shared\Turkey Time Clock Demo Screensaver 1.0 (KeyGen).zip
D:\Documents and Settings\siki\Application Data\m\shared\U4 Screen Magnifier 2.0 (Key+Serial).zip
D:\Documents and Settings\siki\Application Data\m\shared\UDC 2.0.8.4 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\UK and Ireland Map Locator 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\UK TV Guide 1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ultimate Date Calculator 2.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Ultra QuickTime Converter 2.2.0723.zip
D:\Documents and Settings\siki\Application Data\m\shared\Uninstall Manager 2.50.zip
D:\Documents and Settings\siki\Application Data\m\shared\Universal Software Oscilloscope Library 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Universe Screen Saver 1.0.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Unreal Tournament 2003 - Crater Forts CTF map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Unreal Tournament 2003 - Lab13 deathmatch map.zip
D:\Documents and Settings\siki\Application Data\m\shared\Unreal Tournament 2003 - Masons Storage map.zip
D:\Documents and Settings\siki\Application Data\m\shared\upiea 1.50.zip
D:\Documents and Settings\siki\Application Data\m\shared\Uptime Clock 3.9.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\USRLogging 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Utility Ping 2.1.2 [Key+Serial].zip
D:\Documents and Settings\siki\Application Data\m\shared\Veox 4.31 (Key).zip
D:\Documents and Settings\siki\Application Data\m\shared\VideoSync 1.0.5.37.zip
D:\Documents and Settings\siki\Application Data\m\shared\Vincent Van Gogh Screen Saver 1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\VirgoFTP 1.3.5.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Virtual Vision 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\VisNetic MailFlow 3.0.1.3.zip
D:\Documents and Settings\siki\Application Data\m\shared\Visual Mind 8.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\VP6 6.1.0.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\VUBB forum2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\W32.Bropia Free Removal Tool 1.3.2.zip
D:\Documents and Settings\siki\Application Data\m\shared\WallShuffler X 1.0 [(zabranjeno)ed].zip
D:\Documents and Settings\siki\Application Data\m\shared\watchDirectory 4.1.1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Wave Enhancer 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Web Services Accelerator 2.01.zip
D:\Documents and Settings\siki\Application Data\m\shared\WebButtons 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\WebcamGreetings Studio 0.94.zip
D:\Documents and Settings\siki\Application Data\m\shared\Webetiser 3.1 Serial.zip
D:\Documents and Settings\siki\Application Data\m\shared\Whois Extractor 1.2 ((zabranjeno)).zip
D:\Documents and Settings\siki\Application Data\m\shared\Wildlife Tycoon Venture Africa 1.0.5.zip
D:\Documents and Settings\siki\Application Data\m\shared\Windows Clock and Alarm 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Winged Warrior II 2.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Winter Waterfall ScreenSaver 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Winz 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\Wlsoft Media Player 2.zip
D:\Documents and Settings\siki\Application Data\m\shared\wodWebServer 1.2.4 (Patch).zip
D:\Documents and Settings\siki\Application Data\m\shared\Work At Home Moms Masters Course 1.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\World of Warcraft v1.8.0 patch.zip
D:\Documents and Settings\siki\Application Data\m\shared\World of Where 3.0.4.zip
D:\Documents and Settings\siki\Application Data\m\shared\Writing Suite 2.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\XL2CAD Project 2.5.6.zip
D:\Documents and Settings\siki\Application Data\m\shared\XLang10 1.2.9 [With (zabranjeno)].zip
D:\Documents and Settings\siki\Application Data\m\shared\XP Recovery CD Maker 1.01.09.zip
D:\Documents and Settings\siki\Application Data\m\shared\Zeppelin 3D 1.zip
D:\Documents and Settings\siki\Application Data\m\shared\Zip Password Recovery Key 8.0 build 2514.zip
D:\Documents and Settings\siki\Application Data\m\shared\ZipItFast! 3.0.zip
D:\Documents and Settings\siki\Application Data\m\shared\ZW GI To ISO 2.0.zip
D:\Documents and Settings\siki\Application Data\m\srvlist.oct
D:\Documents and Settings\siki\ravmonlog
D:\Program Files\Mozilla Firefox\plugins\NPNd2fn.dll
D:\Program Files\Need2Find
D:\Program Files\Need2Find\bar\1.bin\N2FFXTBR.JAR
D:\Program Files\Need2Find\bar\1.bin\N2NTSTBR.JAR
D:\Program Files\Need2Find\bar\1.bin\NPND2FN.DLL
D:\Program Files\Need2Find\bar\1.bin\PARTNER.DAT
D:\Program Files\Need2Find\bar\Cache\00172EEF
D:\Program Files\Need2Find\bar\Cache\files.ini
D:\Program Files\Need2Find\bar\History\search
D:\Program Files\Need2Find\bar\Settings\prevcfg.htm
D:\WINDOWS\adober.exe
D:\WINDOWS\exefld
D:\WINDOWS\exefld\21341218.exe
D:\WINDOWS\Fonts\acrsecB.fon
D:\WINDOWS\Fonts\acrsecI.fon
D:\WINDOWS\smdat32a.sys
D:\WINDOWS\smdat32m.sys
D:\WINDOWS\system32\drivers\hidr.exe
d:\windows\system32\Drivers\Oxg21.sys
D:\WINDOWS\system32\MSINET.oca
D:\WINDOWS\system32\WLCtrl32.dll
F:\AUTORUN.INF

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_OXG21
-------\Service_Oxg21


((((((((((((((((((((((((( Files Created from 2008-08-15 to 2008-09-15 )))))))))))))))))))))))))))))))
.

2008-09-15 11:57 . 2008-09-15 11:57 <DIR> d-------- D:\Program Files\Trend Micro
2008-09-15 11:27 . 2008-09-15 11:29 <DIR> d-------- D:\Program Files\Wise Registry Cleaner 3
2008-09-14 13:15 . 2008-09-14 13:15 <DIR> d-------- D:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-09-14 13:04 . 2008-09-14 13:04 <DIR> d-------- D:\Program Files\Yahoo!
2008-09-14 13:04 . 2008-09-14 13:04 <DIR> d-------- D:\Program Files\CCleaner
2008-09-13 12:40 . 2008-09-13 12:40 33,280 --a------ D:\WINDOWS\system32\jvv.exe
2008-09-13 12:40 . 2008-09-13 12:40 33,280 ---h----- D:\Documents and Settings\siki\tjfn.exe
2008-09-13 05:28 . 2008-09-13 05:28 <DIR> d-------- D:\Program Files\Alwil Software
2008-09-02 17:01 . 2008-09-02 17:06 <DIR> d-------- D:\Program Files\IrfanView

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-15 17:27 --------- d-----w D:\Documents and Settings\siki\Application Data\ChessBase
2008-09-12 18:23 --------- d-----w D:\Documents and Settings\siki\Application Data\Skype
2008-07-22 19:50 --------- d-----w D:\Program Files\Common Files\xing shared
2008-07-22 19:50 --------- d-----w D:\Program Files\Common Files\Real
2008-06-17 17:10 356,352 ----a-w D:\WINDOWS\eSellerateEngine.dll
2007-12-09 19:52 27 ----a-w D:\Program Files\DEINSTAL.INI
2007-12-04 04:28 32 ----a-w D:\Documents and Settings\All Users\Application Data\ezsid.dat
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="D:\Program Files\Messenger\msmsgs.exe" [2004-08-04 1667584]
"ctfmon.exe"="D:\WINDOWS\system32\ctfmon.exe" [2004-08-03 15360]
"swg"="D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-05-12 68856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="D:\WINDOWS\system32\NvCpl.dll" [2006-06-14 7573504]
"MGSysCtrl"="D:\Program Files\System Control Manager\MGSysCtrl.exe" [2006-12-13 180736]
"NeroFilterCheck"="D:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 155648]
"QuickTime Task"="D:\Program Files\QuickTime\qttask.exe" [2008-03-28 413696]
"iTunesHelper"="D:\Program Files\iTunes\iTunesHelper.exe" [2008-03-30 267048]
"TkBellExe"="D:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-07-22 185896]
"jvv"="D:\WINDOWS\system32\jvv.exe" [2008-09-13 33280]
"nwiz"="nwiz.exe" [2006-06-14 D:\WINDOWS\system32\nwiz.exe]
"SkyTel"="SkyTel.EXE" [2006-05-16 D:\WINDOWS\SkyTel.exe]
"AGRSMMSG"="AGRSMMSG.exe" [2005-09-08 D:\WINDOWS\AGRSMMSG.exe]
"RTHDCPL"="RTHDCPL.EXE" [2006-09-12 D:\WINDOWS\RTHDCPL.exe]

D:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 29696]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.xvid"= xvid.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Oxg21.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"D:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"D:\\Program Files\\iTunes\\iTunes.exe"=
"D:\\Program Files\\Skype\\Phone\\Skype.exe"=
"D:\\Documents and Settings\\siki\\tjfn.exe"=
"D:\\WINDOWS\\system32\\jvv.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"17588:TCP"= 17588:TCP:NortonAV
"16014:TCP"= 16014:TCP:NortonAV
"14599:TCP"= 14599:TCP:NortonAV
"16839:TCP"= 16839:TCP:NortonAV
"14338:TCP"= 14338:TCP:NortonAV
"12095:TCP"= 12095:TCP:NortonAV
"13145:TCP"= 13145:TCP:NortonAV
"13642:TCP"= 13642:TCP:NortonAV

R0 O2MDRDR;O2MDRDR;D:\WINDOWS\system32\DRIVERS\o2media.sys [2006-08-18 36576]
R0 O2SDRDR;O2SDRDR;D:\WINDOWS\system32\DRIVERS\o2sd.sys [2006-06-21 29184]
R2 NATURAL223BufferpoolService;NATURAL 2.2.3 Bufferpool Service;C:\KSBOFFER\RUNTIME\V223\BIN\NATBPSVC.EXE [1997-03-25 26112]
R2 NishService;SCM Driver Daemon;D:\Program Files\System Control Manager\edd.exe [2006-03-22 40960]
R3 MGHwCtrl;MGHwCtrl;D:\WINDOWS\system32\drivers\MGHwCtrl.sys [2006-07-03 9088]
S3 iadusb;MT882;D:\WINDOWS\system32\DRIVERS\glauiad.sys [2006-03-20 30336]
.
Contents of the 'Scheduled Tasks' folder
.
.
------- Supplementary Scan -------
.
FireFox -: Profile - D:\Documents and Settings\siki\Application Data\Mozilla\Firefox\Profiles\cfjh3nj7.default\
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, gmer.net
Rootkit scan 2008-09-15 13:03:41
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\WINDOWS\system32\nvsvc32.exe
C:\KSBOffer\runtime\V223\BIN\NATBPSRV.EXE
D:\WINDOWS\system32\o2flash.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\ComboFix\pv.cfexe
.
**************************************************************************
.
Completion time: 2008-09-15 13:05:58 - machine was rebooted [siki]
ComboFix-quarantined-files.txt 2008-09-15 20:05:54

Pre-Run: 27,428,438,016 bytes free
Post-Run: 27,363,414,016 bytes free

598

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Otvoriti Notepad i iskopirati sledeci tekst:

File::
D:\WINDOWS\system32\jvv.exe
D:\Documents and Settings\siki\tjfn.exe

Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"jvv"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Oxg21.sys]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"17588:TCP"=-
"16014:TCP"=-
"14599:TCP"=-
"16839:TCP"=-
"14338:TCP"=-
"12095:TCP"=-
"13145:TCP"=-
"13642:TCP"=-
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"D:\\Documents and Settings\\siki\\tjfn.exe"=-
"D:\\WINDOWS\\system32\\jvv.exe"=-


Snimiti na Desktop fajl iz Notepada kao "CFScript"




Prevuci snimljeni skript/tekst na ComboFix ikonicu kao na slici.
Postaviti u sledecoj poruci log koji bude bio napravljen na kraju ciscenja/skeniranja.


-------------------------------------------------------------------------------------


Kada završiš sa ovim gore, restartuj kompjuter i pokušaj instalirati antivirus.

offline
  • Pridružio: 14 Sep 2008
  • Poruke: 6

Evo ga novi log

ComboFix 08-09-15.01 - siki 2008-09-15 13:49:19.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.381.1033.18.576 [GMT -7:00]
Running from: D:\Documents and Settings\siki\Desktop\ComboFix.exe
Command switches used :: D:\Documents and Settings\siki\Desktop\CFScript.txt
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

D:\Documents and Settings\siki\tjfn.exe
D:\WINDOWS\system32\jvv.exe

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_SROSA


((((((((((((((((((((((((( Files Created from 2008-08-15 to 2008-09-15 )))))))))))))))))))))))))))))))
.

2008-09-15 11:57 . 2008-09-15 11:57 <DIR> d-------- D:\Program Files\Trend Micro
2008-09-15 11:27 . 2008-09-15 11:29 <DIR> d-------- D:\Program Files\Wise Registry Cleaner 3
2008-09-14 13:15 . 2008-09-14 13:15 <DIR> d-------- D:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-09-14 13:04 . 2008-09-14 13:04 <DIR> d-------- D:\Program Files\Yahoo!
2008-09-14 13:04 . 2008-09-14 13:04 <DIR> d-------- D:\Program Files\CCleaner
2008-09-13 05:28 . 2008-09-13 05:28 <DIR> d-------- D:\Program Files\Alwil Software
2008-09-02 17:01 . 2008-09-02 17:06 <DIR> d-------- D:\Program Files\IrfanView


.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-15 17:27 --------- d-----w D:\Documents and Settings\siki\Application Data\ChessBase
2008-09-12 18:23 --------- d-----w D:\Documents and Settings\siki\Application Data\Skype
2008-07-22 19:50 499,712 ----a-w D:\WINDOWS\system32\msvcp71.dll
2008-07-22 19:50 348,160 ----a-w D:\WINDOWS\system32\msvcr71.dll
2008-07-22 19:50 --------- d-----w D:\Program Files\Common Files\xing shared
2008-07-22 19:50 --------- d-----w D:\Program Files\Common Files\Real
2008-07-19 05:10 94,920 ----a-w D:\WINDOWS\system32\cdm.dll
2008-07-19 05:10 53,448 ----a-w D:\WINDOWS\system32\wuauclt.exe
2008-07-19 05:10 45,768 ----a-w D:\WINDOWS\system32\wups2.dll
2008-07-19 05:10 36,552 ----a-w D:\WINDOWS\system32\wups.dll
2008-07-19 05:09 563,912 ----a-w D:\WINDOWS\system32\wuapi.dll
2008-07-19 05:09 325,832 ----a-w D:\WINDOWS\system32\wucltui.dll
2008-07-19 05:09 205,000 ----a-w D:\WINDOWS\system32\wuweb.dll
2008-07-19 05:09 1,811,656 ----a-w D:\WINDOWS\system32\wuaueng.dll
2008-06-17 17:10 356,352 ----a-w D:\WINDOWS\eSellerateEngine.dll
2007-12-09 19:52 27 ----a-w D:\Program Files\DEINSTAL.INI
2007-12-04 04:28 32 ----a-w D:\Documents and Settings\All Users\Application Data\ezsid.dat
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="D:\Program Files\Messenger\msmsgs.exe" [2004-08-04 1667584]
"ctfmon.exe"="D:\WINDOWS\system32\ctfmon.exe" [2004-08-03 15360]
"swg"="D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-05-12 68856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="D:\WINDOWS\system32\NvCpl.dll" [2006-06-14 7573504]
"MGSysCtrl"="D:\Program Files\System Control Manager\MGSysCtrl.exe" [2006-12-13 180736]
"NeroFilterCheck"="D:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 155648]
"QuickTime Task"="D:\Program Files\QuickTime\qttask.exe" [2008-03-28 413696]
"iTunesHelper"="D:\Program Files\iTunes\iTunesHelper.exe" [2008-03-30 267048]
"TkBellExe"="D:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-07-22 185896]
"nwiz"="nwiz.exe" [2006-06-14 D:\WINDOWS\system32\nwiz.exe]
"SkyTel"="SkyTel.EXE" [2006-05-16 D:\WINDOWS\SkyTel.exe]
"AGRSMMSG"="AGRSMMSG.exe" [2005-09-08 D:\WINDOWS\AGRSMMSG.exe]
"RTHDCPL"="RTHDCPL.EXE" [2006-09-12 D:\WINDOWS\RTHDCPL.exe]

D:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 29696]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.xvid"= xvid.dll

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"D:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"D:\\Program Files\\iTunes\\iTunes.exe"=
"D:\\Program Files\\Skype\\Phone\\Skype.exe"=

R0 O2MDRDR;O2MDRDR;D:\WINDOWS\system32\DRIVERS\o2media.sys [2006-08-18 36576]
R0 O2SDRDR;O2SDRDR;D:\WINDOWS\system32\DRIVERS\o2sd.sys [2006-06-21 29184]
R2 NATURAL223BufferpoolService;NATURAL 2.2.3 Bufferpool Service;C:\KSBOFFER\RUNTIME\V223\BIN\NATBPSVC.EXE [1997-03-25 26112]
R2 NishService;SCM Driver Daemon;D:\Program Files\System Control Manager\edd.exe [2006-03-22 40960]
R3 MGHwCtrl;MGHwCtrl;D:\WINDOWS\system32\drivers\MGHwCtrl.sys [2006-07-03 9088]
S3 iadusb;MT882;D:\WINDOWS\system32\DRIVERS\glauiad.sys [2006-03-20 30336]
.
Contents of the 'Scheduled Tasks' folder
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, gmer.net
Rootkit scan 2008-09-15 13:51:47
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
D:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
D:\Program Files\Bonjour\mDNSResponder.exe
C:\KSBOffer\runtime\V223\BIN\NATBPSRV.EXE
D:\WINDOWS\system32\nvsvc32.exe
D:\WINDOWS\system32\o2flash.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\ComboFix\pv.cfexe
.
**************************************************************************
.
Completion time: 2008-09-15 13:53:27 - machine was rebooted
ComboFix-quarantined-files.txt 2008-09-15 20:53:24
ComboFix2.txt 2008-09-15 20:05:58

Pre-Run: 27,345,702,912 bytes free
Post-Run: 27,338,534,912 bytes free

115

Dopuna: 15 Sep 2008 23:14

BORO CARE!!

Sta reci,na muci se poznaju pravi junaci.
Instalirao sam Avast i radi bez problema.

Pozdrav i jedno veliko hvala!

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Uradi još i ovo:
Klikni START a zatim RUN
U liniju za unos teksta ukucaj Combofix /u i klikni OK





Sačekaj da se proces deinstalacije završi

Gornja procedura će:
Obrisati sledeće:
ComboFix i njegove file-ove i foldere
VundoFix Backups folder, ako postoji
C:\Deckard folder, ako postoji
C:\OtMoveIt folder, ako postoji

Resetovati podešavanja sata na kompjuteru
Sakriti ekstenzije file-ova, ako je potrebno
Sakriti sistemske/skrivene file-ove/foldere, ako je potrebno
Resetovati System Restore



To je sve.

Ko je trenutno na forumu
 

Ukupno su 1234 korisnika na forumu :: 39 registrovanih, 11 sakrivenih i 1184 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: amaterSRB, Andrija357, aramis s, Denaya, Dimitrise93, dragoljub11987, FOX, Georgius, hatman, ikan, Istman, ivica976, kjkszpj, Kriglord, Kubovac, kybonacci, ladro, laki_bb, M1los, Milometer, Mixelotti, nemkea71, Pakito93, panzerwaffe, pein, Pohovani_00, Recce, RJ, Sale.S, sasa76, Shinobi, solic, Srle993, stankolich, Stefan M, stegonosa, Tvrtko I, vathra, vukovi