USB Shortcut virus i cudno ponasanje racunara

2

USB Shortcut virus i cudno ponasanje racunara

offline
  • lnenad  Male
  • Stručni saradnik
    Web
  • Nenad
  • Arhitetak
  • Pridružio: 16 Jan 2007
  • Poruke: 2860
  • Gde živiš: Bijeljina

>>> MCShield AllScans.txt <<<



MCShield ::Anti-Malware Tool:: [Link mogu videti samo ulogovani korisnici]

>>> v 2.8.3.24 / DB: 2013.12.27.1 / Windows 8 <<<


27-Dec-13 17:01:14 > Drive C: - scan started (no label ~97 GB, NTFS HDD )...



=> The drive is clean.


27-Dec-13 17:01:14 > Drive E: - scan started (Local Disk ~368 GB, NTFS HDD )...



=> The drive is clean.


Inace ne detektuje ni SD karticu ni usb.



offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Restartuj sistem pa opet probaj da skeniraš USB Flash disk i SD karticu.



offline
  • lnenad  Male
  • Stručni saradnik
    Web
  • Nenad
  • Arhitetak
  • Pridružio: 16 Jan 2007
  • Poruke: 2860
  • Gde živiš: Bijeljina

Nista, apsolutno ih ne detektuje, device manager mi daje uzvicnik na USB kontroler.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Huh. S obzirom da u zadnjem FRST izvještaju nemaš tragove aktivne infekcije:

Arrow

Uklonićemo korišćene alate.
Preuzmi "Xplode"-ov DelFix i sačuvaj ga na Desktop

Dvoklikom pokreni program.

Štikliraj sledeće opcije:
Remove disinfection tools
Purge System Restore
Reset system settings


Klikni na dugme "Run" i pričekaj da program završi rad.
Kada alat završi, otvoriće izvještaj u Notepadu.

Napomena: Izvještaj ce takodje biti sacuvan na C:\DelFix.txt
Taj izvještaj mi nije potreban.



Arrow

Ukoliko i nakon drugog restarta sistem ne bude prijavljivao USB uređaje, otvori temu u Windows potforumu, a ako ih prijavi i ako ih MSCHield skenira, postavi mi opet AllScans.txt

offline
  • lnenad  Male
  • Stručni saradnik
    Web
  • Nenad
  • Arhitetak
  • Pridružio: 16 Jan 2007
  • Poruke: 2860
  • Gde živiš: Bijeljina

Napisano: 27 Dec 2013 20:37

Bez rezultata, hvala u svakom slucaju Smile

Dopuna: 27 Dec 2013 23:28

Rijesio sam problem i evo logova



MCShield ::Anti-Malware Tool:: [Link mogu videti samo ulogovani korisnici]

>>> v 2.8.3.24 / DB: 2013.12.27.1 / Windows 8 <<<


27-Dec-13 23:23:17 > Drive D: - scan started (SD ~3774 MB, FAT32 flash drive )...


>>> D:\MISC.lnk - Malware > Deleted. (13.12.27. 23.23 MISC.lnk.51830; MD5: 9d09db6ee0ccb7027a62c3e2622bf7db)

>>> D:\DCIM.lnk - Malware > Deleted. (13.12.27. 23.23 DCIM.lnk.418571; MD5: a2a72ee7b8e50b48dc883d5ff2fcd1f4)

>>> D:\SYSTEM.lnk - Malware > Deleted. (13.12.27. 23.23 SYSTEM.lnk.371877; MD5: 538a29825cfef19ea777f2d149d71549)

>>> D:\WinUsbDriver.vbs - Malware > Deleted. (13.12.27. 23.23 WinUsbDriver.vbs.78671; MD5: 80e49685d1ac8a3623dd78779820ae5a)

> Resetting attributes: D:\MISC < Successful.

> Resetting attributes: D:\DCIM < Successful.

> Resetting attributes: D:\SYSTEM < Successful.


=> Malicious files : 4/4 deleted.
=> Hidden folders : 3/3 unhidden.

____________________________________________

::::: Scan duration: 24sec :::::::::::::::::
____________________________________________



MCShield ::Anti-Malware Tool:: [Link mogu videti samo ulogovani korisnici]

>>> v 2.8.3.24 / DB: 2013.12.27.1 / Windows 8 <<<


27-Dec-13 23:26:23 > Drive H: - scan started (no label ~1913 MB, FAT flash drive )...


>>> H:\insomnia.lnk - Malware > Deleted. (13.12.27. 23.26 insomnia.lnk.93746; MD5: ee4c1b3a6fb0fca3afec8fdf0d6f4180)

>>> H:\teorije konstr.lnk - Malware > Deleted. (13.12.27. 23.26 teorije konstr.lnk.682991; MD5: 51c46e432cb033e8937ebd5788008d60)

>>> H:\DJUKIN rodjendan.lnk - Malware > Deleted. (13.12.27. 23.26 DJUKIN rodjendan.lnk.993886; MD5: 50febb335f574ac0cb58aab99e5a22e1)

>>> H:\stampa.lnk - Malware > Deleted. (13.12.27. 23.26 stampa.lnk.310467; MD5: 31e3fa1184fbc0aafd6b8bafc1cd8a10)

>>> H:\Rhinoceros (64bit) 5.1.20927.2230.lnk - Malware > Deleted. (13.12.27. 23.26 Rhinoceros (64bit) 5.1.20927.2230.lnk.796943; MD5: fdc3da37fb4f9ebab6d502d851b7ba18)

>>> H:\Savremena Arhitektura.lnk - Malware > Deleted. (13.12.27. 23.26 Savremena Arhitektura.lnk.543707; MD5: 5ff0057cc16292502fb4670ec3527c8d)

>>> H:\repreyentacije i ostalo b.lnk - Malware > Deleted. (13.12.27. 23.26 repreyentacije i ostalo b.lnk.466532; MD5: 90fe22b104e9bb62a90c028f94102e09)

>>> H:\System Volume Information.lnk - Malware > Deleted. (13.12.27. 23.26 System Volume Information.lnk.337536; MD5: 624f000ad4ce3682c0c526cbe0d04229)

>>> H:\WinUsbDriver.vbs - Malware > Deleted. (13.12.27. 23.26 WinUsbDriver.vbs.803153; MD5: 80e49685d1ac8a3623dd78779820ae5a)

> Resetting attributes: H:\insomnia < Successful.

> Resetting attributes: H:\teorije konstr < Successful.

> Resetting attributes: H:\DJUKIN rodjendan < Successful.

> Resetting attributes: H:\stampa < Successful.

> Resetting attributes: H:\Rhinoceros (64bit) 5.1.20927.2230 < Successful.

> Resetting attributes: H:\Savremena Arhitektura < Successful.

> Resetting attributes: H:\repreyentacije i ostalo b < Successful.

> Resetting attributes: H:\System Volume Information < Successful.


=> Malicious files : 9/9 deleted.
=> Hidden folders : 8/8 unhidden.

____________________________________________

::::: Scan duration: 6sec ::::::::::::::::::
____________________________________________

Hvala vam svima na MCShieldu <3, raspali Avast i AVG su gledali u usb kao u blagosiljanu vodicu. Samo jedno pitanje, kako je moguce da iako mi je podesen prikaz sakrivenih fajlova, ja iste nisam vidio?

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Pored prikaza skrivenih fajlova potrebno je da uključiš prikaz i kritičnih sistemskih fajlova (system, supperhidden) isključivanjem opcije "Hide protected system files" pored "Show hidden files and folders" u Folder Options -> View (ne vjerujem da je mijenjano to u Win 8). Ovdje bismo završili, a ako imaš još pitanja otvori temu u odgovarajućem potforumu.

Ko je trenutno na forumu
 

Ukupno su 1446 korisnika na forumu :: 130 registrovanih, 10 sakrivenih i 1306 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 6018 - dana 19 Dec 2025 13:41

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: _Rade, ajo baba, alex71, amadeus, Apok, Ares12356, Aristotle2002, Asteker, babaroga, bbogdan, blatruc82, Bobrock1, BORUTUS, casual03, CCCP, Cicumile, cifra, colji, Crazzer, cyprus, dane007, Darko Jovanovic, Darth Malak, Demi87, Df410, Dioniss, Dragacevac, dulleo, Dungorth, Dvogled, eagle.rs, Emanuel Arsenijevič, Gheljda, Giskard, hatman, Holy Saber, icemilos, ikan, IpMan, istina, Jager715510, Jan, Jerry Drake, Jester, Jomini, Kajzer Soze, kaskadija, Kibice, kNikS, Kozi-RS, kreker, Kriglord, kybonacci, lafa008, larix, ljuba, Ljusa, M74AB3, Marko Marković, markolopin, marre, mačković, Mcdado, MIKI63, milanovic, mile.ilic75, MiljanXD, MILO-VAN, milutin134, mishkooo, mnn2, Mrav Obrad, mrdaak, nenooo, Neutral-M, Nikolajevic, Nmr, okopanja, operniki, Orc, paja69, Piicoki, PO1974, Povratak1912, predragc, Qvazimodo, rambod, RD84, royst33, ruma, Samo gledam, SamostalniReferent, sap, Savantije, savuni, Semprini, Sevetar, Sharpshooter, shlauf, Sin Boskic, Sirius, Smajser, Smiljke, Snorks, Sone1983, Stoilkovic, strn, Su 57, synergia, Tafocus, taomaster, tecataki, The Boss, tomo2, Tvrtko I, Uros Cuore Sportivo, vaci, Vanderx, Veless, Velizar Laro, veljko82, vensla, vidra1, Vlada78, vladulns, Vojkan Petrovic, Yugol33, zeka013, ZetaMan, zubri