USB Shortcut virus i cudno ponasanje racunara

2

USB Shortcut virus i cudno ponasanje racunara

offline
  • lnenad  Male
  • Stručni saradnik
    Web
  • Nenad
  • Arhitetak
  • Pridružio: 16 Jan 2007
  • Poruke: 2860
  • Gde živiš: Bijeljina

>>> MCShield AllScans.txt <<<



MCShield ::Anti-Malware Tool:: [Link mogu videti samo ulogovani korisnici]

>>> v 2.8.3.24 / DB: 2013.12.27.1 / Windows 8 <<<


27-Dec-13 17:01:14 > Drive C: - scan started (no label ~97 GB, NTFS HDD )...



=> The drive is clean.


27-Dec-13 17:01:14 > Drive E: - scan started (Local Disk ~368 GB, NTFS HDD )...



=> The drive is clean.


Inace ne detektuje ni SD karticu ni usb.



offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Restartuj sistem pa opet probaj da skeniraš USB Flash disk i SD karticu.



offline
  • lnenad  Male
  • Stručni saradnik
    Web
  • Nenad
  • Arhitetak
  • Pridružio: 16 Jan 2007
  • Poruke: 2860
  • Gde živiš: Bijeljina

Nista, apsolutno ih ne detektuje, device manager mi daje uzvicnik na USB kontroler.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Huh. S obzirom da u zadnjem FRST izvještaju nemaš tragove aktivne infekcije:

Arrow

Uklonićemo korišćene alate.
Preuzmi "Xplode"-ov DelFix i sačuvaj ga na Desktop

Dvoklikom pokreni program.

Štikliraj sledeće opcije:
Remove disinfection tools
Purge System Restore
Reset system settings


Klikni na dugme "Run" i pričekaj da program završi rad.
Kada alat završi, otvoriće izvještaj u Notepadu.

Napomena: Izvještaj ce takodje biti sacuvan na C:\DelFix.txt
Taj izvještaj mi nije potreban.



Arrow

Ukoliko i nakon drugog restarta sistem ne bude prijavljivao USB uređaje, otvori temu u Windows potforumu, a ako ih prijavi i ako ih MSCHield skenira, postavi mi opet AllScans.txt

offline
  • lnenad  Male
  • Stručni saradnik
    Web
  • Nenad
  • Arhitetak
  • Pridružio: 16 Jan 2007
  • Poruke: 2860
  • Gde živiš: Bijeljina

Napisano: 27 Dec 2013 20:37

Bez rezultata, hvala u svakom slucaju Smile

Dopuna: 27 Dec 2013 23:28

Rijesio sam problem i evo logova



MCShield ::Anti-Malware Tool:: [Link mogu videti samo ulogovani korisnici]

>>> v 2.8.3.24 / DB: 2013.12.27.1 / Windows 8 <<<


27-Dec-13 23:23:17 > Drive D: - scan started (SD ~3774 MB, FAT32 flash drive )...


>>> D:\MISC.lnk - Malware > Deleted. (13.12.27. 23.23 MISC.lnk.51830; MD5: 9d09db6ee0ccb7027a62c3e2622bf7db)

>>> D:\DCIM.lnk - Malware > Deleted. (13.12.27. 23.23 DCIM.lnk.418571; MD5: a2a72ee7b8e50b48dc883d5ff2fcd1f4)

>>> D:\SYSTEM.lnk - Malware > Deleted. (13.12.27. 23.23 SYSTEM.lnk.371877; MD5: 538a29825cfef19ea777f2d149d71549)

>>> D:\WinUsbDriver.vbs - Malware > Deleted. (13.12.27. 23.23 WinUsbDriver.vbs.78671; MD5: 80e49685d1ac8a3623dd78779820ae5a)

> Resetting attributes: D:\MISC < Successful.

> Resetting attributes: D:\DCIM < Successful.

> Resetting attributes: D:\SYSTEM < Successful.


=> Malicious files : 4/4 deleted.
=> Hidden folders : 3/3 unhidden.

____________________________________________

::::: Scan duration: 24sec :::::::::::::::::
____________________________________________



MCShield ::Anti-Malware Tool:: [Link mogu videti samo ulogovani korisnici]

>>> v 2.8.3.24 / DB: 2013.12.27.1 / Windows 8 <<<


27-Dec-13 23:26:23 > Drive H: - scan started (no label ~1913 MB, FAT flash drive )...


>>> H:\insomnia.lnk - Malware > Deleted. (13.12.27. 23.26 insomnia.lnk.93746; MD5: ee4c1b3a6fb0fca3afec8fdf0d6f4180)

>>> H:\teorije konstr.lnk - Malware > Deleted. (13.12.27. 23.26 teorije konstr.lnk.682991; MD5: 51c46e432cb033e8937ebd5788008d60)

>>> H:\DJUKIN rodjendan.lnk - Malware > Deleted. (13.12.27. 23.26 DJUKIN rodjendan.lnk.993886; MD5: 50febb335f574ac0cb58aab99e5a22e1)

>>> H:\stampa.lnk - Malware > Deleted. (13.12.27. 23.26 stampa.lnk.310467; MD5: 31e3fa1184fbc0aafd6b8bafc1cd8a10)

>>> H:\Rhinoceros (64bit) 5.1.20927.2230.lnk - Malware > Deleted. (13.12.27. 23.26 Rhinoceros (64bit) 5.1.20927.2230.lnk.796943; MD5: fdc3da37fb4f9ebab6d502d851b7ba18)

>>> H:\Savremena Arhitektura.lnk - Malware > Deleted. (13.12.27. 23.26 Savremena Arhitektura.lnk.543707; MD5: 5ff0057cc16292502fb4670ec3527c8d)

>>> H:\repreyentacije i ostalo b.lnk - Malware > Deleted. (13.12.27. 23.26 repreyentacije i ostalo b.lnk.466532; MD5: 90fe22b104e9bb62a90c028f94102e09)

>>> H:\System Volume Information.lnk - Malware > Deleted. (13.12.27. 23.26 System Volume Information.lnk.337536; MD5: 624f000ad4ce3682c0c526cbe0d04229)

>>> H:\WinUsbDriver.vbs - Malware > Deleted. (13.12.27. 23.26 WinUsbDriver.vbs.803153; MD5: 80e49685d1ac8a3623dd78779820ae5a)

> Resetting attributes: H:\insomnia < Successful.

> Resetting attributes: H:\teorije konstr < Successful.

> Resetting attributes: H:\DJUKIN rodjendan < Successful.

> Resetting attributes: H:\stampa < Successful.

> Resetting attributes: H:\Rhinoceros (64bit) 5.1.20927.2230 < Successful.

> Resetting attributes: H:\Savremena Arhitektura < Successful.

> Resetting attributes: H:\repreyentacije i ostalo b < Successful.

> Resetting attributes: H:\System Volume Information < Successful.


=> Malicious files : 9/9 deleted.
=> Hidden folders : 8/8 unhidden.

____________________________________________

::::: Scan duration: 6sec ::::::::::::::::::
____________________________________________

Hvala vam svima na MCShieldu <3, raspali Avast i AVG su gledali u usb kao u blagosiljanu vodicu. Samo jedno pitanje, kako je moguce da iako mi je podesen prikaz sakrivenih fajlova, ja iste nisam vidio?

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Pored prikaza skrivenih fajlova potrebno je da uključiš prikaz i kritičnih sistemskih fajlova (system, supperhidden) isključivanjem opcije "Hide protected system files" pored "Show hidden files and folders" u Folder Options -> View (ne vjerujem da je mijenjano to u Win 8). Ovdje bismo završili, a ako imaš još pitanja otvori temu u odgovarajućem potforumu.

Ko je trenutno na forumu
 

Ukupno su 904 korisnika na forumu :: 52 registrovanih, 7 sakrivenih i 845 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 20624 - dana 04 Apr 2026 04:18

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 9k38, Akiro, Apok, Asparagus, Baždaranac, Bo96, bojanM84, boromir, Brankojle, curiosity, debeli, dejan1972, Demi87, Dežurni pod palubom, djonsule, dusan.l, eighty-one, EVIDENTICAR, Georgius, JOntra, KimiMR, komsija1, Krin, lcc, Lotus, maksi007, marsi, mat, MB120mm, Metanoja, mile.ilic75, milenko crazy north, Milometer, Mrav Obrad, nixos, nnovakis, nuke92, Orc, Panter, Papadubi, pein, procesor, Radoslava, Sharpshooter, Shilok, skok, skvara, Srky Boy, vathra, vazduh, vensla, zgoljo