Problem sa skidanjem exe datoteka

Problem sa skidanjem exe datoteka

offline
  • Pridružio: 29 Sep 2011
  • Poruke: 114

Moj problem je sto nemogu peuzimati datoteka sa ekstenzijom .exe. Pokusavo sam u svim browserima. Reistalacijom sistema iskljucivanjem antivirusa. i i dalje nemogu da skinem ni jedan .exe fail




mycity.rs/must-login.png

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 6.0.2900.2180 BrowserJavaVersion: 10.45.2
Run by Administrator at 8:37:23 on 2014-01-23
.
============== Running Processes ================
.
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\IProsetMonitor.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe
C:\Program Files\SMART Technologies\SMART Product Drivers\UCService.exe
C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\wkgxa.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\winyywmf.exe
C:\Program Files\chrome-win32\chrome.exe
C:\Program Files\chrome-win32\chrome.exe
C:\Program Files\chrome-win32\chrome.exe
C:\Program Files\chrome-win32\chrome.exe
C:\Program Files\chrome-win32\chrome.exe
C:\Program Files\chrome-win32\chrome.exe
C:\Program Files\chrome-win32\chrome.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
uSearch Bar = hxxp://www.google.com/ie
uSearch Page = hxxp://www.google.com
uDefault_Search_URL = hxxp://www.google.com/ie
uInternet Connection Wizard,ShellNext = hxxp://www.google.com/
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: Speed Test (4354): {11C8C9C0-D918-44C0-8B5E-D297DA42F2C7} - LocalServer32 - <no file>
BHO: Free Games (4357): {2977C29A-6723-4436-90BB-F7C5FDEF88A1} - LocalServer32 - <no file>
BHO: CIEDownload Object: {67BCF957-85FC-4036-8DC4-D4D80E00A77B} - c:\program files\smart technologies\smart notebook\NotebookPlugin.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
uRun: [NextLive] c:\windows\system32\rundll32.exe "c:\documents and settings\administrator\application data\newnext.me\nengine.dll",EntryPoint -m l
uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe" /MINIMIZED
uRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil32_11_9_900_170_Plugin.exe -update plugin
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [mobilegeni daemon] c:\program files\mobogenie\DaemonProcess.exe
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-System: EnableLUA = dword:0
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
TCP: NameServer = 8.8.8.8 208.67.222.222
TCP: Interfaces\{841384EC-0EF8-4AD1-8B62-4AF3D9AFAB27} : DHCPNameServer = 8.8.8.8 208.67.222.222
Notify: igfxcui - igfxsrvc.dll
.
============= SERVICES / DRIVERS ===============
.
R? SMART SNMP Agent Service;SMART SNMP Agent Service
R? SMART Web Server;SMART Web Server
S? amsint32;amsint32
S? Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service
S? SMART Display Controller;SMART Display Controller
S? TeamViewer8;TeamViewer 8
.
=============== Created Last 30 ================
.
2014-01-23 06:34:34 5157 ----a-w- c:\windows\system32\drivers\enpgn.sys
2014-01-22 19:20:05 -------- d-----w- c:\program files\Easeware
2014-01-22 18:24:09 -------- d-----w- c:\documents and settings\administrator\application data\Easeware
2014-01-22 17:07:43 -------- d-----w- c:\windows\system32\appmgmt
2014-01-21 15:35:23 -------- d-----w- c:\documents and settings\administrator\local settings\application data\cache
2014-01-21 15:34:36 -------- d-----w- c:\documents and settings\administrator\local settings\application data\genienext
2014-01-20 16:59:23 145408 ----a-w- c:\windows\system32\javacpl.cpl
2014-01-20 16:59:08 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2014-01-13 18:23:27 12160 ----a-r- c:\windows\system32\drivers\zebrwhnt.sys
2014-01-13 18:23:26 63360 ----a-r- c:\windows\system32\drivers\zebrceb.sys
2014-01-13 18:23:26 12160 ----a-r- c:\windows\system32\drivers\zebrwh.sys
2014-01-13 18:21:49 -------- d-----w- c:\documents and settings\administrator\local settings\application data\Sony Ericsson
2014-01-13 18:21:13 -------- d-----w- c:\program files\Intuwave
2014-01-13 18:21:03 692224 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iKernel.dll
2014-01-13 18:21:03 57344 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\ctor.dll
2014-01-13 18:21:03 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\DotNetInstaller.exe
2014-01-13 18:21:03 32768 ----a-w- c:\program files\common files\installshield\professional\runtime\Objectps.dll
2014-01-13 18:21:03 237568 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iscript.dll
2014-01-13 18:21:03 155648 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iuser.dll
2014-01-13 18:20:57 163972 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iGdi.dll
2014-01-13 18:20:55 286720 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\setup.dll
2014-01-13 18:20:47 -------- d-----w- c:\program files\Symbian
2014-01-13 18:18:35 -------- d-----w- c:\program files\MSXML 6.0
2014-01-13 18:04:08 -------- d-----w- C:\Application Data
2014-01-13 17:31:58 -------- d-----w- C:\Bluetooth
2014-01-13 17:29:56 -------- d-----w- c:\program files\IVT Corporation
2014-01-13 17:28:17 100992 -c--a-w- c:\windows\system32\dllcache\bthpan.sys
2014-01-13 17:28:17 100992 ----a-w- c:\windows\system32\drivers\bthpan.sys
2014-01-13 17:28:04 59648 -c--a-w- c:\windows\system32\dllcache\rfcomm.sys
2014-01-13 17:28:04 59648 ----a-w- c:\windows\system32\drivers\rfcomm.sys
2014-01-13 17:28:03 8192 -c--a-w- c:\windows\system32\dllcache\wshirda.dll
2014-01-13 17:28:03 8192 ----a-w- c:\windows\system32\wshirda.dll
2014-01-13 17:28:03 27136 -c--a-w- c:\windows\system32\dllcache\irmon.dll
2014-01-13 17:28:03 27136 ----a-w- c:\windows\system32\irmon.dll
2014-01-13 17:28:03 17024 -c--a-w- c:\windows\system32\dllcache\bthenum.sys
2014-01-13 17:28:03 17024 ----a-w- c:\windows\system32\drivers\BthEnum.sys
2014-01-13 17:28:03 152576 -c--a-w- c:\windows\system32\dllcache\irftp.exe
2014-01-13 17:28:03 152576 ----a-w- c:\windows\system32\irftp.exe
2014-01-13 17:27:46 274304 -c--a-w- c:\windows\system32\dllcache\bthport.sys
2014-01-13 17:27:46 274304 ----a-w- c:\windows\system32\drivers\bthport.sys
2014-01-13 17:27:45 18944 -c--a-w- c:\windows\system32\dllcache\bthusb.sys
2014-01-13 17:27:45 18944 ----a-w- c:\windows\system32\drivers\BTHUSB.SYS
2014-01-13 17:18:27 -------- d-----w- c:\documents and settings\administrator\application data\Teleca
2014-01-13 17:17:00 -------- d-----w- c:\documents and settings\administrator\application data\Sony Ericsson
2014-01-13 17:13:31 -------- d-----w- c:\documents and settings\all users\application data\Sony Ericsson
2014-01-13 17:12:58 -------- d-----w- c:\program files\common files\Sony Ericsson Shared
2014-01-13 17:12:52 -------- d-----w- c:\program files\common files\Teleca Shared
2014-01-13 17:12:49 -------- d-----w- c:\program files\Sony Ericsson
2014-01-13 17:12:49 -------- d-----w- c:\documents and settings\all users\application data\Teleca
2014-01-13 17:12:12 -------- d-----w- c:\windows\Downloaded Installations
2014-01-12 15:05:12 -------- d-----w- c:\program files\FastStone Capture
2014-01-11 17:52:36 -------- d-----w- c:\windows\system32\wbem\repository\FS
2014-01-11 17:52:36 -------- d-----w- c:\windows\system32\wbem\Repository
2014-01-08 11:53:18 -------- d-----w- c:\documents and settings\administrator\application data\IDM
2014-01-02 09:31:37 -------- d-----w- c:\program files\Foxy Games
2014-01-02 09:31:12 -------- d-----w- C:\Downloads
2014-01-01 16:04:37 -------- d-----w- c:\program files\uTorrent
2014-01-01 16:04:26 -------- d-----w- c:\documents and settings\administrator\local settings\application data\uTorrent
2014-01-01 15:45:09 -------- d-----w- c:\program files\ChickenInvadersROTYdemo
2013-12-31 08:55:52 -------- d-----w- c:\program files\Chicken Invaders 3 1
2013-12-29 20:47:19 -------- d-----w- c:\program files\Chicken Invaders 3(2)
2013-12-29 19:49:47 -------- d-----w- c:\program files\Mobogenie(2)
2013-12-29 19:45:48 -------- d-----w- c:\documents and settings\administrator\application data\uTorrent
2013-12-29 17:35:50 -------- d-----w- c:\program files\ReflexiveArcade
2013-12-29 10:10:10 -------- d-----w- c:\documents and settings\administrator\.android
2013-12-29 10:09:58 -------- d-----w- c:\documents and settings\administrator\application data\newnext.me
2013-12-29 10:09:52 -------- d-----w- c:\documents and settings\administrator\local settings\application data\Mobogenie
2013-12-29 10:08:03 -------- d-----w- c:\documents and settings\all users\application data\InterAction studios
2013-12-29 10:03:11 -------- d-----w- c:\program files\Chicken Invaders
.
==================== Find3M ====================
.
2013-12-22 19:36:47 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-12-22 19:36:47 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
.
============= FINISH: 8:39:19,10 ===============


mycity.rs/must-login.png

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15874
  • Gde živiš: Beograd

Pozdrav,


Stvari stoje ovako. Sistem ti je inficiran Sality virusom, koji inficira sve izvrsne fajlove (.exe) i koji je skoro nemoguce ukloniti iz Windowsa. Verovatno je dosao preko nekog USB-a, ako ih koristis ili sa necega drugog za prenos podataka.

Imas tri solucije:

- prva solucija je da ponovo reinstaliras Windows pri tome bi bilo najbolje da formatiras sve particije ili samo sistemsku, ali da ne otvaras ostale pre nego ih skeniras sa antivirusom. Pri tome, odmah po instalaciji sistema bi ti prve dve stvari bile instalacija Antivirusa i obavezno MCShield ako koristis USB

- druga solucija je da taj hard disk prikacis na drugi racunar i bez ulaska na hard disk skeniras isti antivirusom

- treca solucija je koriscenje neke Rescue Disk distribucije radi uklanjanja virusa izvan Windows-a, ali nije zagarantovano.


Ja bih se najpre odlucio za prvu, ako zelis tako, onda se javi da razradimo detalje.

offline
  • Pridružio: 29 Sep 2011
  • Poruke: 114

Napokon neko ko yna sta je Zagrljaj pa najlaksa mi je ova prva solucija. Imam 2 HDD na racunaru jedan je za sistem a drugi je samo nakacen. Koji da instaliram AV

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15874
  • Gde živiš: Beograd

Ma bilo koji, recimo Avast. I obavezno MCShield...

Ja bih ti cak preporucio da prvo instaliras MCShield, pa onda Avast.

offline
  • Pridružio: 29 Sep 2011
  • Poruke: 114

Moj problem je rijesen mogu sad da skidam exe datoteke ali mi je AV detektovo i blokiro neke fajlove pa sad nemogu da ih otvorim. Kako da ih ocistim a da ih ne brisem dali postoji mogucnost?

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15874
  • Gde živiš: Beograd

Probaj ako ima opcija Disinfect, ako nema, moras da ih obrises jer su zarazeni virusom...

Ko je trenutno na forumu
 

Ukupno su 645 korisnika na forumu :: 24 registrovanih, 4 sakrivenih i 617 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3028 - dana 22 Nov 2019 07:47

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: axa, babaroga, bojank, BOKIII, brundo65, djordje92sm, doom83, gile58, GreenMan, gzoki, Joja2, Lieutenant, Lord Sith, MarKhan, MrNo, mushroom, Panonsky, pein, Sass Drake, spektorsky, Srki94, ssekir75, vladas87, zlaya011