Spajver i virus problem

2

Spajver i virus problem

offline
  • Pridružio: 20 Maj 2007
  • Poruke: 230
  • Gde živiš: Mali Las Vegas

Nemogu da uradi upload nikako a folder aplikacion data ne pojstoji

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

U čemu je problem sa upload-om?

offline
  • Pridružio: 20 Maj 2007
  • Poruke: 230
  • Gde živiš: Mali Las Vegas

The page cannot be displayed
The page you are looking for is currently unavailable. The Web site might be experiencing technical difficulties, or you may need to adjust your browser settings.

--------------------------------------------------------------------------------

Please try the following:

Click the Refresh button, or try again later.

If you typed the page address in the Address bar, make sure that it is spelled correctly.

To check your connection settings, click the Tools menu, and then click Internet Options. On the Connections tab, click Settings. The settings should match those provided by your local area network (LAN) administrator or Internet service provider (ISP).
See if your Internet connection settings are being detected. You can set Microsoft Windows to examine your network and automatically discover network connection settings (if your network administrator has enabled this setting).
Click the Tools menu, and then click Internet Options.
On the Connections tab, click LAN Settings.
Select Automatically detect settings, and then click OK.
Some sites require 128-bit connection security. Click the Help menu and then click About Internet Explorer to determine what strength security you have installed.
If you are trying to reach a secure site, make sure your Security settings can support it. Click the Tools menu, and then click Internet Options. On the Advanced tab, scroll to the Security section and check settings for SSL 2.0, SSL 3.0, TLS 1.0, PCT 1.0.
Click the Back button to try another link.



Cannot find server or DNS Error
Internet Explorer
NEMAM POJMA

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Da li se isto događa u Operi?

offline
  • Pridružio: 20 Maj 2007
  • Poruke: 230
  • Gde živiš: Mali Las Vegas

Ma ne otvara mi taj program samo preko explorera

Dopuna: 19 Okt 2007 0:01

Da i u operi se desava isto

Dopuna: 19 Okt 2007 0:05

Uspeo sam nesto sa mozilom ali nisam dobio obavestenje sta se desilo sa fajlom

Dopuna: 19 Okt 2007 0:08

Logfile of HijackThis v1.99.1
Scan saved at 12:07:01 AM, on 10/19/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\TIADSL~1\bin\win2k\tidslmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\POP Peeper\POPPeeper.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Opera\Opera.exe
C:\Documents and Settings\Administrator\Desktop\TR3.exe

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [TIxDSL] C:\PROGRA~1\TIADSL~1\bin\win2k\tidslmon.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [POP Peeper] "C:\Program Files\POP Peeper\POPPeeper.exe" -min
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O17 - HKLM\System\CCS\Services\Tcpip\..\{33AA275E-C066-4C4A-8D86-F8753E5E72C9}: NameServer = 80.74.164.249 80.74.160.38
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Ok... Do file-ova nisam došao.
No, uzevši u obzir neke druge činjenice i mišljenja kolega, file-ovi su legitimni.
Takođe, ovaj poslednji log je čist.

Da li ti primetiš neke probleme, reklamne prozore i sl?

offline
  • Pridružio: 20 Maj 2007
  • Poruke: 230
  • Gde živiš: Mali Las Vegas

Neznam na kakve reklamne prozore mislis ali osim sto mi se desava da cesto pazarim viruse i spajvere a da sa neta do skoro nisam nista skidao koristio sam ga samo za proveru mojih mail-ova.Problem koji ja vidim je to sto mi je masina dosta sporija u odnosu na ranije.
Jedno mozda glupo pitanje da la moze da mi stvara problem to sto sam imao instaliran Vistin skin koji je sad deinstaliran?Da nije mozda ostalo nesto sto sad pravi probleme?

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Kada govorim o problemima i reklamnim prozorima, mislim na sledeće:
rekao si da ti se WinSpyControl sam ponudio da se instalira.
1) WinSpyControl je rogue (lažni) AV softver
2) Nije se on sam ponudio, već je jedan trojanac odradio to za njega.

U pitanju je Zlob kojeg si skupio instalacijom nekog kodeka na nekom sajtu (najverovatnije, sajt za odrasle).
Znači, pripazi ubuduće kuda surfaš... i ne instaliraj bilo šta što ti nije poznato kao legitimno.

Što se tiče ''Vistinog skina'', ne vidim da je nešto konkretno zaostalo.
Da bi dobio na brzini, za početak pobriši privremene file-ove i defragmentuj hard disk. Verujem da ćeš primetiti bar malo razliku u brzini rada.



Uradi sledeće:

Ukljucivanje prikaza skrivenih fajlova i foldera:
Otvorite My Computer.
Odaberite Tools meni i kliknite Folder Options.
Odaberite View Tab.
U grupi Hidden files and folders stiklirajte Show hidden files and folders.
Destiklirajte Hide protected operating system files (recommended).
Kliknite Yes da bi ste potvrdili izbor.
Kliknite OK.


Sada ćeš moći videti i obrisati sledeće foldere:
C:\Documents and Settings\Administrator\Application Data\WinSpyControl
C:\qoobox



Sada bi sve trebalo biti OK.

offline
  • Pridružio: 20 Maj 2007
  • Poruke: 230
  • Gde živiš: Mali Las Vegas

Dr.Bora hvala ti na pomoci. Odradio sam i ovo sto si poslao u zadnjem odgovoru pa cemo videti sta ce se desavati dalje.Pozdrav i jos jednom hvala.

Dopuna: 19 Okt 2007 22:58

Dr.Bora uspeo sam daa ti uploadujem ona dva fajla koja si trazio.Izgleda da neradi link koji si mi postavio jer sam pricao sa drugarom koji mi je dao drugi link i preko njega je uspeo upload.

offline
  • dr_Bora  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 24 Jul 2007
  • Poruke: 12280
  • Gde živiš: Höganäs, SE

Čudno... Proveravao sam link i juče i malopre: radio je.
No, nije sada toliko ni bitno.

Ovi file-ovi su OK.

Poz...

Ko je trenutno na forumu
 

Ukupno su 830 korisnika na forumu :: 52 registrovanih, 7 sakrivenih i 771 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., aleksmajstor, amaterSRB, Atomski čoban, ccoogg123, cenejac111, CikaKURE, darionis, darkangel, Dimitrise93, Dorcolac, Excalibur13, FOX, Frunze, Georgius, Hans Gajger, ikan, ILGromovnik, Instruktor 1223, Karla, Kibice, kihot, kjkszpj, Krvava Devetka, kybonacci, Lazarus, Metanoja, milan.vukovic, Milos ZA, MiroslavD, Mixelotti, moldway, mrav pesadinac, mrvica78, nuke92, oldtimer, Panter, panzerwaffe, pein, pristinski korpus, S1Mk3, sasa87, Sirius, slonic_tonic, Srle993, stegonosa, styg, suton, vathra, Vlajman1957, wizzardone, |_MeD_|