Provera kumovog kompa

1

Provera kumovog kompa

offline
  • Pridružio: 24 Dec 2011
  • Poruke: 1586
  • Gde živiš: Novi Banovci

Kum kaze da mu malo baguje komp pa da proverim sta je u pitanju


DDS (Ver_2012-10-19.01) - NTFS_x86
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 10.9.2
Run by Admin at 17:35:56 on 2012-10-28
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.2047.1115 [GMT 1:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}
SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\HPSIsvc.exe
C:\Program Files\Hotspot Shield\bin\openvpnas.exe
C:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe
C:\Program Files\Hotspot Shield\bin\hsswd.exe
C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
C:\Program Files\Sendori\sndappv2.exe
C:\Program Files\Sendori\SendoriSvc.exe
C:\Program Files\Sendori\Sendori.Service.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Sendori\SendoriUp.exe
c:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Sendori\SendoriTray.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\FK_Monitor\freeklogger.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
uURLSearchHooks: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
mURLSearchHooks: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: Hotspot Shield Class: {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - c:\program files\hotspot shield\hssie\HssIE.dll
BHO: Yontoo: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - c:\program files\yontoo\YontooIEClient.dll
TB: uTorrentControl_v2 Toolbar: {7473B6BD-4691-4744-A82B-7854EB3D70B6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
TB: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
uRun: [freeklogger.exe] c:\program files\fk_monitor\freeklogger.exe
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office11\EXCEL.EXE/3000
IE: Free YouTube to MP3 Converter - c:\users\admin\appdata\roaming\dvdvideosoftiehelpers\freeyoutubetomp3converter.htm
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
LSP: c:\windows\system32\Sendori.dll
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{C01857F3-3386-4B13-943D-0A14CC0A92AA} : NameServer = 216.146.35.240,216.146.36.240,192.168.1.1
TCP: Interfaces\{C01857F3-3386-4B13-943D-0A14CC0A92AA} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{F2D11977-EEC5-4480-83D7-6953E2FBF48B} : NameServer = 8.8.8.8
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\admin\appdata\roaming\mozilla\firefox\profiles\qos58snq.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\update\1.3.21.123\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_4_402_287.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
FF - ExtSQL: 2012-10-05 21:58; plugin@yontoo.com; c:\users\admin\appdata\roaming\mozilla\firefox\profiles\qos58snq.default\extensions\plugin@yontoo.com
FF - ExtSQL: 2012-10-06 09:57; afurladvisor@anchorfree.com; c:\program files\mozilla firefox\extensions\afurladvisor@anchorfree.com
FF - ExtSQL: 2012-10-06 10:03; {C8FEEBE8-43E8-11E0-AA39-0786DFD72085}; c:\program files\mozilla firefox\extensions\{C8FEEBE8-43E8-11E0-AA39-0786DFD72085}
.
---- FIREFOX POLICIES ----
FF - user.js: extentions.y2layers.installId - 0f456c13-2f4f-4ad8-ac89-5dda21d60da7
FF - user.js: extentions.y2layers.defaultEnableAppsList - Buzzdock,Buzzdock,
FF - user.js: extensions.autoDisableScopes - 14
FF - user.js: security.csp.enable - false
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2012-8-30 193552]
R1 HssDRV6;Hotspot Shield Routing Driver 6;c:\windows\system32\drivers\hssdrv6.sys [2012-8-1 35560]
R1 MpKsl1d97b7e1;MpKsl1d97b7e1;c:\programdata\microsoft\microsoft antimalware\definition updates\{ffea40b7-82d2-4e9d-85f7-6dbcc74aad9e}\MpKsl1d97b7e1.sys [2012-10-28 29904]
R1 qwaved2k;qwaved2k;c:\windows\system32\drivers\qwaved2k.sys [2012-10-5 33352]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 48128]
R2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2012-8-30 99272]
R3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\NisSrv.exe [2012-9-12 287824]
R3 RTL8187;Realtek RTL8187 Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8187.sys [2010-1-7 375808]
R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\drivers\yk62x86.sys [2009-9-28 315392]
R4 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\common files\adobe\arm\1.0\armsvc.exe [2012-7-27 63960]
R4 Application Sendori;Application Sendori;c:\program files\sendori\SendoriSvc.exe [2012-9-26 118632]
R4 HPSIService;HP SI Service;c:\windows\system32\HPSIsvc.exe [2012-10-9 99896]
R4 hshld;Hotspot Shield Service;c:\program files\hotspot shield\bin\openvpnas.exe [2012-10-13 523632]
R4 HssWd;Hotspot Shield Monitoring Service;c:\program files\hotspot shield\bin\hsswd.exe [2012-10-12 389488]
R4 PanService;PandoraService;c:\program files\pandora.tv\panservice\PandoraService.exe [2012-9-28 625816]
R4 Service Sendori;Service Sendori;c:\program files\sendori\Sendori.Service.exe [2012-9-26 15208]
R4 sndappv2;sndappv2;c:\program files\sendori\sndappv2.exe [2012-9-26 3569512]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2012-10-28 116648]
S3 androidusb;ADB Interface Driver;c:\windows\system32\drivers\androidusb.sys [2010-10-18 32408]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2012-10-28 116648]
S3 mvusbews;USB EWS Device;c:\windows\system32\drivers\mvusbews.sys [2012-9-25 17408]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-9-27 15872]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-9-29 52224]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\macromed\flash\FlashPlayerUpdateService.exe [2012-9-29 250808]
S4 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\mozilla maintenance service\maintenanceservice.exe [2012-9-28 115168]
S4 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-7-13 160944]
.
=============== Created Last 30 ================
.
2012-10-28 10:09:50 29904 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{ffea40b7-82d2-4e9d-85f7-6dbcc74aad9e}\MpKsl1d97b7e1.sys
2012-10-28 08:19:06 6918632 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{ffea40b7-82d2-4e9d-85f7-6dbcc74aad9e}\mpengine.dll
2012-10-26 15:31:23 6918632 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2012-10-23 05:36:08 93672 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2012-10-20 18:35:45 740784 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\{7a76d5ff-6418-4356-aad8-757de8e72527}\gapaengine.dll
2012-10-15 13:05:32 -------- d-----w- c:\windows\system32\Hotspot Shield
2012-10-14 07:41:31 249856 ----a-w- c:\windows\system32\uxtheme.dll.backup
2012-10-14 07:41:23 2755072 ----a-w- c:\windows\system32\themeui.dll.backup
2012-10-14 07:41:20 37376 ----a-w- c:\windows\system32\themeservice.dll.backup
2012-10-10 06:20:52 140288 ----a-w- c:\windows\system32\cryptsvc.dll
2012-10-10 06:20:52 1159680 ----a-w- c:\windows\system32\crypt32.dll
2012-10-10 06:20:51 103936 ----a-w- c:\windows\system32\cryptnet.dll
2012-10-10 06:20:44 1211760 ----a-w- c:\windows\system32\drivers\ntfs.sys
2012-10-10 06:20:43 542208 ----a-w- c:\windows\system32\kerberos.dll
2012-10-10 06:20:40 3914096 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-10-10 06:20:39 3968880 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-10-09 18:49:02 -------- d-----w- c:\program files\FK_Monitor
2012-10-09 18:33:09 -------- d-sh--w- c:\windows\ftpcache
2012-10-09 18:29:54 99896 ----a-w- c:\windows\system32\HPSIsvc.exe
2012-10-09 18:29:47 69632 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\HP1100PP.dll
2012-10-09 18:29:26 284160 ----a-w- c:\windows\system32\mvhlewsi.DLL
2012-10-09 18:29:26 1511424 ----a-w- c:\windows\system32\HP1100SM.EXE
2012-10-09 18:29:25 151552 ----a-w- c:\windows\system32\HP1100LM.DLL
2012-10-09 18:26:04 -------- d-----w- c:\program files\HP
2012-10-09 15:41:16 -------- d-----w- c:\program files\CCleaner
2012-10-09 15:36:36 -------- d-----w- c:\users\admin\appdata\roaming\Awem
2012-10-09 15:35:52 -------- d-----w- c:\program files\Cradle Of Rome
2012-10-09 12:43:06 -------- d-----w- c:\users\admin\appdata\roaming\The Creative Assembly
2012-10-09 10:18:27 -------- d-----w- c:\program files\common files\Steam
2012-10-09 10:18:24 -------- d-----w- c:\program files\Steam
2012-10-08 07:13:42 -------- d-----w- c:\users\admin\appdata\roaming\Mp3CompressorFreeEdition
2012-10-08 07:09:10 -------- d-----w- c:\program files\Winamp Detect
2012-10-08 07:08:59 -------- d-----w- c:\program files\common files\PX Storage Engine
2012-10-08 06:51:40 321384 ----a-w- c:\windows\system32\Sendori.dll
2012-10-08 06:51:36 -------- d-----w- c:\programdata\Sendori
2012-10-08 06:51:33 -------- d-----w- c:\program files\Sendori
2012-10-08 06:51:16 -------- d-----w- c:\users\admin\appdata\roaming\DVDVideoSoftIEHelpers
2012-10-08 06:51:01 -------- d-----w- c:\users\admin\appdata\roaming\OpenCandy
2012-10-08 06:51:01 -------- d-----w- c:\program files\common files\DVDVideoSoft
2012-10-08 06:51:00 -------- d-----w- c:\program files\DVDVideoSoft
2012-10-08 06:50:07 -------- d-----w- c:\users\admin\appdata\roaming\DVDVideoSoft
2012-10-06 08:03:44 -------- d-----w- c:\users\admin\appdata\local\IsolatedStorage
2012-10-06 07:57:28 -------- d-----w- c:\programdata\Hotspot Shield
2012-10-06 07:57:20 -------- d-----w- c:\program files\Hotspot Shield
2012-10-05 19:58:19 -------- d-----w- c:\program files\Yontoo
2012-10-05 19:58:17 -------- d-----w- c:\programdata\Tarma Installer
2012-10-05 19:54:15 740784 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\nisbackup\gapaengine.dll
2012-10-05 19:33:46 227475254 ----a-w- c:\windows\system32\dpncache.dll
2012-10-05 19:33:32 1024 ----a-w- c:\windows\system32\thunk.dll
2012-10-05 19:32:05 33352 ----a-w- c:\windows\system32\drivers\qwaved2k.sys
2012-10-05 19:32:05 32 ----a-w- c:\windows\system32\Tabcom.dat.dll
2012-09-30 11:03:13 -------- d-----w- c:\program files\Aspyr
2012-09-30 08:41:36 -------- d-----w- c:\users\admin\appdata\local\Adobe
2012-09-29 15:37:35 805376 ----a-w- c:\windows\system32\FntCache.dll
2012-09-29 15:37:35 739840 ----a-w- c:\windows\system32\d2d1.dll
2012-09-29 15:37:34 514560 ----a-w- c:\windows\system32\qdvd.dll
2012-09-29 15:28:07 712048 ----a-w- c:\windows\system32\drivers\ndis.sys
2012-09-29 15:28:07 33280 ----a-w- c:\windows\system32\drivers\RNDISMP.sys
2012-09-29 15:28:02 240496 ----a-w- c:\windows\system32\drivers\netio.sys
2012-09-29 15:28:02 187760 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-09-29 15:28:02 1292144 ----a-w- c:\windows\system32\drivers\tcpip.sys
2012-09-29 15:27:12 245760 ----a-w- c:\windows\system32\OxpsConverter.exe
2012-09-29 14:57:38 -------- d-----w- c:\users\admin\appdata\roaming\NVIDIA
2012-09-29 14:57:18 -------- d-----w- c:\program files\Speccy
2012-09-29 13:52:35 -------- d-----r- c:\program files\Skype
2012-09-29 13:23:11 -------- d-----w- c:\program files\SystemRequirementsLab
2012-09-29 13:07:19 821736 ----a-w- c:\windows\system32\npDeployJava1.dll
2012-09-29 12:54:19 -------- d-----w- c:\windows\system32\appmgmt
2012-09-29 12:47:05 746984 ----a-w- c:\windows\system32\deployJava1.dll
2012-09-29 11:44:53 319968 ----a-w- c:\windows\difxapi.dll
2012-09-29 11:44:53 303104 ------w- c:\windows\system32\CmiInstallResAll.dll
2012-09-29 11:32:16 962612 ----a-w- c:\windows\system32\mfc42d.dll
2012-09-29 11:32:16 434252 ----a-w- c:\windows\system32\MSVCRTD.DLL
2012-09-29 11:32:06 24576 ----a-w- c:\windows\system32\AsIO.dll
2012-09-29 11:32:06 12400 ----a-w- c:\windows\system32\drivers\AsIO.sys
2012-09-29 11:32:03 11832 ----a-w- c:\windows\system32\drivers\AsInsHelp64.sys
2012-09-29 11:32:03 10216 ----a-w- c:\windows\system32\drivers\AsInsHelp32.sys
2012-09-29 11:32:03 -------- d-----w- c:\program files\ASUS
2012-09-29 11:31:45 6504 ----a-w- c:\windows\system32\drivers\ASACPI.sys
2012-09-29 11:12:33 -------- d-----w- c:\users\admin\appdata\local\Google
2012-09-29 11:12:30 -------- d-----w- c:\users\admin\appdata\local\CRE
2012-09-29 11:12:20 -------- d-----w- c:\program files\Conduit
2012-09-29 11:12:18 -------- d-----w- c:\users\admin\appdata\local\Conduit
2012-09-29 11:12:17 -------- d-----w- c:\program files\uTorrentControl_v2
2012-09-29 11:12:10 -------- d-----w- c:\program files\PowerISO
2012-09-29 11:11:31 -------- d-----w- c:\program files\uTorrent
2012-09-29 10:44:01 -------- d-----w- c:\users\admin\appdata\roaming\FK_Monitor
2012-09-29 10:30:53 -------- d-----w- c:\users\admin\appdata\local\Macromedia
2012-09-29 10:29:30 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-09-29 10:29:30 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-09-29 10:15:32 -------- d-----w- c:\users\admin\appdata\roaming\uTorrent
2012-09-29 07:53:05 -------- d-----w- c:\windows\system32\SPReview
2012-09-29 07:52:36 -------- d-----w- c:\windows\system32\EventProviders
2012-09-29 07:46:59 932352 ----a-w- c:\windows\system32\printui.dll
2012-09-29 07:45:56 189952 ----a-w- c:\windows\system32\wdscore.dll
2012-09-29 07:45:44 606208 ----a-w- c:\windows\system32\wbem\fastprox.dll
2012-09-29 07:45:44 363008 ----a-w- c:\windows\system32\wbemcomn.dll
2012-09-29 07:45:44 189952 ----a-w- c:\program files\windows portable devices\sqmapi.dll
2012-09-29 07:45:37 189952 ----a-w- c:\windows\system32\sqmapi.dll
.
==================== Find3M ====================
.
2012-10-14 07:41:31 249856 ----a-w- c:\windows\system32\uxtheme.dll
2012-10-14 07:41:23 2755072 ----a-w- c:\windows\system32\themeui.dll
2012-10-14 07:41:20 37376 ----a-w- c:\windows\system32\themeservice.dll
2012-09-29 08:13:22 152576 ----a-w- c:\windows\system32\msclmd.dll
2012-09-25 08:52:10 1461992 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll
2012-09-25 08:52:08 47104 ----a-w- c:\windows\system32\HP1100SMs.dll
2012-09-25 08:52:06 81920 ----a-w- c:\windows\system32\mvusbews.dll
2012-09-25 08:52:06 17408 ----a-w- c:\windows\system32\drivers\mvusbews.sys
2012-09-24 04:49:06 3563520 ----a-w- c:\windows\system32\pcasvr.exe
2012-09-24 04:40:04 1171456 ----a-w- c:\windows\system32\ser32.dll
2012-09-24 04:40:04 1171456 ----a-w- c:\windows\system32\nsg206C.tmp
2012-09-24 04:39:02 2237440 ----a-w- c:\windows\system32\msscx64.dll
2012-09-24 04:35:34 1530880 ----a-w- c:\windows\system32\deskx32.dll
2012-09-24 04:32:14 1557504 ----a-w- c:\windows\system32\mslx64a.dll
2012-09-24 04:31:42 1128448 ----a-w- c:\windows\system32\winsx86.dll
2012-09-14 18:28:53 2048 ----a-w- c:\windows\system32\tzres.dll
2012-08-30 20:03:50 99272 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys
2012-08-30 20:03:50 193552 ----a-w- c:\windows\system32\drivers\MpFilter.sys
2012-08-24 16:57:48 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-08-20 17:40:31 169984 ----a-w- c:\windows\system32\winsrv.dll
2012-08-20 17:40:01 293376 ----a-w- c:\windows\system32\KernelBase.dll
2012-08-20 17:37:58 271360 ----a-w- c:\windows\system32\conhost.exe
2012-08-20 15:33:28 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-08-20 15:33:28 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-20 15:33:28 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-08-20 15:33:28 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-08-02 16:57:20 490496 ----a-w- c:\windows\system32\d3d10level9.dll
2012-08-01 18:13:42 35560 ----a-w- c:\windows\system32\drivers\hssdrv6.sys
2012-08-01 18:13:40 33512 ----a-w- c:\windows\system32\drivers\taphss.sys
.
============= FINISH: 17:36:37.62 ===============


https://www.mycity.rs/must-login.png
https://www.mycity.rs/must-login.png
https://www.mycity.rs/must-login.png
https://www.mycity.rs/must-login.png

Ovo je konfiguracija i njihove temperature. Da li su dobre temperature ili ne?

Intel Core 2 Duo E6400 @ 2.13GHz 59 °C
Conroe 65nm Technology
RAM
2.00 GB Dual-Channel DDR2 @ 333MHz (5-5-5-15)
Motherboard
ASUSTeK Computer INC. P5W DH Deluxe (LGA 775) 46 °C
Graphics
SyncMaster (1280x1024@60Hz)
1024MB GeForce GT 240 (CardExpert Technology) 39 °C
Hard Drives
233GB Western Digital WDC WD2500JS-00NCB1 ATA Device (SATA) 29 °C

Hvala unapred. SmileSmileSmileSmileSmileSmile

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Pozdrav, djole


Arrow Pitaj kuma da li je on instalirao Keylogger?



Arrow Uploaduj mi fajl preko sledećeg linka:

http://www.mycity.rs/ambulanta-upload.php

Klikneš na Choose File, pronađeš fajl i klikneš sa Upload. Fajl se nalazi na ovoj lokaciji:

c:\windows\system32\drivers\qwaved2k.sys

Arrow Otidji u Control Panel i obrisi sledece programe:
- Yontoo 1.10.02
- uTorrentControl_v2 Toolbar
- Hotspot Shield 2.74

offline
  • Pridružio: 24 Dec 2011
  • Poruke: 1586
  • Gde živiš: Novi Banovci

Keylogger je instalirao, a hitspot shield je instalirao jer kako kaze da taj program proverava da li na nekom sajtu ima virusa.

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Kako zeli za Hotspot, mada je on klasifikovan kao maliciozan --> http://www.systemlookup.com/CLSID/56214-HssIE_dll_HssIE_64_dll.html

Postoji mnogo legitimnijih programa za proveru sajtova...

Da li si uploadovao trazeni fajl?

offline
  • Pridružio: 24 Dec 2011
  • Poruke: 1586
  • Gde živiš: Novi Banovci

Nece da mi posalje preko maila kum.

offline
  • Pridružio: 24 Dec 2011
  • Poruke: 1586
  • Gde živiš: Novi Banovci

ne moze sistemski fajl da se posalje preko maila

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Napisano: 29 Oct 2012 20:53

Ja tebe nista ne razumem, sta nece da posalje? Mislis na fajl...?

Dopuna: 29 Oct 2012 20:56

Neka ga zapakuje u arhivu i posalje tako?

offline
  • Pridružio: 24 Dec 2011
  • Poruke: 1586
  • Gde živiš: Novi Banovci

Napisano: 29 Okt 2012 21:01

Da, fajl nece da se posalje.

Dopuna: 29 Okt 2012 21:13

Uploadovo sam Smile

offline
  • Research Engineer @MalwareBytes
  • Pridružio: 09 Avg 2011
  • Poruke: 15877
  • Gde živiš: Beograd

Arrow Racunar je čist što se malware-a tiče.



Arrow Preporučujem da za zaštitu USB memorijskih uredjaja koristiš MCShield v2. Nema nikakve veze sa AntiVirus-om tj. nece ometati njegov rad, a pokazao se kao jedan od najboljih vidova zaštite od malware-a koji se prenosi putem USB mem. uređaja. Skineš, instaliraš, ubodeš USB mem. uređaj, izvrši se skeniranje nakon čega dobiješ obaveštenje da je uređaj čist (ukoliko je stvarno tako); ili dobiješ log u kome vidiš informacije o malware-u koji je nađen i obrisan.


Home Page MCShield-a ::Anti-Malware Tool:: v2: http://amf.mycity.rs/mcshield/

Više o MCShield-u možeš saznati u ovim temama:
v1: http://www.mycity.rs/MyCity-Laboratorija/MCShield.html
v2: http://www.mycity.rs/MyCity-Laboratorija/MCShield-v2.html




Arrow Obavezno poseti temu "Testirajte da li vam je pretraživač ranjiv", pročitaj i isprati link koji stoji u njoj.
Link do teme je: http://www.mycity.rs/Web-browseri/Testirajte-da-li.....anjiv.html



Arrow Takode, isprati i temu "Kako izbeci i ukloniti toolbar-ove" , procitaj i isprati korake u njoj. Link do teme je: http://www.mycity.rs/Zastita/Kako-izbeci-i-ukloniti-toolbar-ove.html



TwinHeadedEagle (AMF Tim)

offline
  • Pridružio: 24 Dec 2011
  • Poruke: 1586
  • Gde živiš: Novi Banovci

Napisano: 30 Okt 2012 0:36

Hvaka puno SmileSmileSmileSmileSmileSmile

Dopuna: 30 Okt 2012 0:37

Hvala* SmileSmileSmileSmile

Ko je trenutno na forumu
 

Ukupno su 592 korisnika na forumu :: 25 registrovanih, 3 sakrivenih i 564 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 4fat, _Sale, A.R.Chafee.Jr., babaroga, CrazyDiablo, croato, djboj, Dukelander, GveX, ivan1973, Koca Popovic, KUZMAR, Lieutenant, MiroslavD, mrav pesadinac, oddsock, repac, stegonosa, t.mile, trajkoni018, Trpe Grozni, Vlada1389, wizzardone, zlaya011, |_MeD_|