straaašno usporen internet

5

straaašno usporen internet

offline
  • Pridružio: 15 Dec 2008
  • Poruke: 166
  • Gde živiš: Beograd

Od zla na gore - sad kad hoću u Console, odgovara mi da je NTLDR is missing (?) i nudi mi Ctrl, Alt, Del, da se restartujem. Restartovano više puta, sve ostaje isto.
Inače, u rutu su upravo oni fajlovi koje pominješ, ali sad se ne može u Console.

offline
  • Pridružio: 04 Sep 2003
  • Poruke: 24135
  • Gde živiš: Wien

Imas li instalacioni CD Windowsa?

Dopuna: 14 Mar 2009 22:41

Ukoliko imas taj instalacioni CD, onda ovde imas upustvo kako da udejs u Recovery Console sa tog CD-a:
http://www.mycity.rs/Windows/Recovery-konzola-i-Re.....jenja.html

Obrati samo paznju posto se u toj temi opisuju postupci za repair (popravku) windowsa i za ulazak u RC. Tebi treba samo RC (Recovery Console).

offline
  • Pridružio: 15 Dec 2008
  • Poruke: 166
  • Gde živiš: Beograd

imam sp2, po svemu moraću od početka dibidus, a?

offline
  • Pridružio: 04 Sep 2003
  • Poruke: 24135
  • Gde živiš: Wien

Dopunio sam prethodnu poruku bitnim stvarima.
Na instalacionom CD-u Windowsa takodje postoji Recovery Consola. Mozemo nju da iskoristimo.
Imas gore u prethodnoj poruci objasnjenje.

offline
  • Pridružio: 15 Dec 2008
  • Poruke: 166
  • Gde živiš: Beograd

Ulaz u Console uspeo, komanda start.bat nije prepoznata, komanda batch main.bat log1.txt se održala manje od sekunde, vratio se prompt C, exit restartovao, urađen ComboFix, u prilogu logovi, ovaj log1.txt malo neobičan.
ComboFix 09-03-10.03 - RR 2009-03-14 23:08:11.17 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1918.1445 [GMT 1:00]
Running from: c:\documents and settings\RR\Desktop\lecenje\ComboFix.exe
AV: AVG *On-access scanning disabled* (Outdated)
AV: ESET NOD32 Antivirus 3.0 *On-access scanning disabled* (Updated)
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\2.exe
C:\start.bat
c:\windows\system32\lsprst7.dll
c:\windows\system32\nsprs.dll
c:\windows\system32\serauth1.dll
c:\windows\system32\serauth2.dll
c:\windows\system32\ssprs.dll

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_restore


((((((((((((((((((((((((( Files Created from 2009-02-14 to 2009-03-14 )))))))))))))))))))))))))))))))
.

2009-03-14 19:37 . 2009-03-14 19:37 6,656 --a------ C:\rest.sys
2009-03-13 22:40 . 2009-03-13 22:40 738 --a------ C:\main.bat
2009-03-13 22:40 . 2009-03-13 22:40 381 --a------ C:\back.bat
2009-03-13 22:35 . 2009-03-13 22:35 23 --a------ C:\restore.bat
2009-03-12 22:22 . 2009-03-12 22:22 1,025 --a------ c:\windows\system32\sysprs7.tgz
2009-03-12 22:22 . 2009-03-12 22:22 1,025 --a------ c:\windows\system32\sysprs7.dll
2009-03-12 22:22 . 2009-03-14 00:15 351 --a------ c:\windows\system32\lsprst7.tgz
2009-03-12 22:22 . 2009-03-14 00:15 16 ---h----- c:\windows\system32\servdat.slm
2009-03-12 22:15 . 2009-03-12 22:15 1,024 --a------ c:\windows\system32\clauth2.dll
2009-03-12 22:15 . 2009-03-12 22:15 1,024 --a------ c:\windows\system32\clauth1.dll
2009-03-12 22:15 . 2009-03-14 00:15 14 --a------ c:\windows\system32\ssprs.tgz
2009-03-12 22:15 . 2009-03-12 22:15 0 --a------ c:\windows\system32\nsprs.tgz
2009-03-12 22:13 . 2009-03-14 00:15 <DIR> d-------- c:\program files\SPSSEval
2009-03-08 16:51 . 2009-03-13 16:06 <DIR> d-------- c:\program files\SpeedBit Video Accelerator
2009-03-07 22:19 . 2009-03-07 22:19 <DIR> d-------- c:\program files\Software Informer
2009-03-07 04:43 . 2005-10-31 19:17 135,168 -r------- c:\windows\system32\RtlCPAPI.dll
2009-03-07 04:42 . 2005-05-03 19:43 69,632 -r------- c:\windows\Alcmtr.exe
2009-03-05 18:38 . 2009-03-05 18:38 <DIR> d-------- c:\windows\system32\config\systemprofile\Application Data\Yahoo!
2009-03-03 16:20 . 2009-03-03 16:20 <DIR> d-------- c:\documents and settings\RR\Application Data\Thinstall
2009-03-03 16:16 . 2009-03-08 00:40 <DIR> d--hs---- c:\documents and settings\All Users\Application Data\{55A29068-F2CE-456C-9148-C869879E2357}
2009-03-03 16:14 . 2009-03-03 16:14 <DIR> d-------- c:\program files\TuneUp Utilities 2009 8.0.2000.35
2009-03-02 17:46 . 2009-03-02 17:46 <DIR> d-------- c:\program files\Reference Assemblies
2009-02-28 19:51 . 2009-02-28 19:51 <DIR> d-------- c:\documents and settings\RR\Application Data\URSoft
2009-02-28 02:00 . 2009-02-28 06:03 <DIR> d-------- c:\program files\Magic Video Converter
2009-02-28 02:00 . 2003-03-19 11:03 544,768 --a------ c:\windows\system32\msvcr71d.dll
2009-02-25 03:18 . 2009-01-09 20:19 1,089,593 -----c--- c:\windows\system32\dllcache\ntprint.cat
2009-02-25 02:51 . 2009-02-26 03:17 <DIR> d-------- c:\program files\Total Video Converter
2009-02-25 02:50 . 2009-02-28 05:51 <DIR> d-------- c:\program files\Codec Pack - All In 1
2009-02-25 02:50 . 2009-02-28 05:51 737,280 --a------ c:\windows\iun6002.exe
2009-02-24 16:59 . 2009-02-24 17:00 <DIR> d-------- c:\program files\ZC Video Converter
2009-02-24 16:42 . 2009-02-24 16:42 <DIR> d-------- c:\program files\XviD
2009-02-24 16:39 . 2001-08-23 17:00 1,700,352 --a------ c:\windows\system32\gdiplus.dll
2009-02-24 02:44 . 2009-02-24 02:44 <DIR> d-------- c:\program files\XP Codec Pack
2009-02-24 02:44 . 2008-07-09 09:05 421,888 --a------ c:\windows\system32\ac3filter.acm
2009-02-22 16:42 . 2009-02-22 16:43 <DIR> d-------- c:\program files\Any Video Converter
2009-02-22 16:42 . 2009-02-26 03:17 <DIR> d-------- c:\documents and settings\RR\Application Data\Any Video Converter
2009-02-22 16:14 . 2009-02-22 16:39 <DIR> d-------- c:\program files\Any Video Converter Professional
2009-02-22 16:14 . 2009-02-26 03:17 <DIR> d-------- c:\documents and settings\RR\Application Data\Any Video Converter Professional
2009-02-22 15:38 . 2009-02-22 15:39 <DIR> d-------- c:\program files\Media Convert Master
2009-02-22 15:38 . 2009-02-22 15:39 <DIR> d-------- c:\documents and settings\RR\Application Data\Vso
2009-02-22 15:38 . 2009-02-22 15:38 81,920 --a------ c:\documents and settings\RR\Application Data\ezpinst.exe
2009-02-22 15:38 . 2009-02-22 15:38 47,360 --a------ c:\windows\system32\drivers\pcouffin.sys
2009-02-22 15:38 . 2009-02-22 15:38 47,360 --a------ c:\documents and settings\RR\Application Data\pcouffin.sys
2009-02-22 15:20 . 2007-02-07 20:05 269,824 --a------ c:\windows\system32\baksm.dll
2009-02-22 14:14 . 2009-02-22 14:14 <DIR> d-------- c:\program files\AviSynth 2.5
2009-02-22 14:14 . 2004-05-26 21:37 719,872 --a------ c:\windows\system32\devil.dll
2009-02-22 14:14 . 2006-09-16 19:44 314,368 --a------ c:\windows\system32\avisynth.dll
2009-02-22 14:14 . 2005-02-13 00:00 186,880 -r-hs---- c:\windows\system32\RLOgg.ax
2009-02-22 14:14 . 2005-02-06 00:00 92,672 -r-hs---- c:\windows\system32\RLVorbisDec.ax
2009-02-22 14:14 . 2004-01-25 00:00 70,656 --a------ c:\windows\system32\i420vfw.dll
2009-02-22 14:14 . 2005-02-13 00:00 67,584 -r-hs---- c:\windows\system32\RLTheoraDec.ax
2009-02-22 14:14 . 2005-02-13 00:00 51,712 -r-hs---- c:\windows\system32\RLSpeexDec.ax
2009-02-22 14:13 . 2005-01-18 00:26 179,200 -r-hs---- c:\windows\system32\DiracSplitter.ax
2009-02-22 14:13 . 2005-02-22 17:55 81,920 -r-hs---- c:\windows\system32\aac_parser.ax
2009-02-22 03:31 . 2009-02-22 03:31 <DIR> d-------- c:\program files\Common Files\Download Manager
2009-02-20 20:39 . 2008-03-03 14:25 5,702 --ah----- c:\windows\nod32restoretemdono.reg
2009-02-20 20:39 . 2008-03-03 18:21 568 --ah----- c:\windows\nod32fixtemdono.reg
2009-02-20 20:33 . 2009-02-20 20:33 <DIR> d-------- c:\documents and settings\All Users\Application Data\ESET

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-14 22:13 --------- d-----w c:\documents and settings\RR\Application Data\Skype
2009-03-14 20:08 --------- d-----w c:\documents and settings\RR\Application Data\uTorrent
2009-03-14 18:00 --------- d-----w c:\documents and settings\RR\Application Data\skypePM
2009-03-14 07:27 --------- d-----w c:\program files\Everything
2009-03-14 03:33 --------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2009-03-13 15:05 --------- d-----w c:\documents and settings\All Users\Application Data\SpeedBit
2009-03-13 15:04 --------- d-----w c:\program files\DAP
2009-03-13 00:49 --------- d-----w c:\program files\SPSS
2009-03-11 07:58 --------- d-----w c:\program files\TimeLeft3
2009-03-09 07:41 --------- d-----w c:\documents and settings\RR\Application Data\FrostWire
2009-03-08 15:08 --------- d-----w c:\documents and settings\RR\Application Data\Software Informer
2009-03-07 21:57 --------- d-----w c:\program files\Windows Live
2009-03-07 03:42 --------- d-----w c:\program files\Realtek
2009-03-07 03:23 --------- d-----w c:\program files\Foxit Software
2009-03-06 14:08 --------- d-----w c:\program files\Opera
2009-03-05 17:38 --------- d-----w c:\documents and settings\All Users\Application Data\Yahoo! Companion
2009-03-03 15:17 --------- d-----w c:\documents and settings\RR\Application Data\TuneUp Software
2009-03-03 15:16 --------- d-----w c:\documents and settings\All Users\Application Data\TuneUp Software
2009-03-01 16:06 --------- d-----w c:\program files\Glary Utilities
2009-02-27 21:31 --------- d-----w c:\program files\Total Video Player
2009-02-26 02:21 --------- d-----w c:\program files\IObit
2009-02-26 02:21 --------- d-----w c:\documents and settings\RR\Application Data\IObit
2009-02-25 02:25 --------- d-----w c:\documents and settings\RR\Application Data\LimeWire
2009-02-24 02:28 --------- d-----w c:\program files\Mv2Player
2009-02-20 19:36 --------- d-----w c:\program files\ESET
2009-02-20 12:19 --------- d-----w c:\documents and settings\All Users\Application Data\Lavasoft
2009-02-15 01:30 --------- d-----w c:\program files\SpeedFan
2009-02-14 07:15 --------- dc----w c:\documents and settings\All Users\Application Data\{83C91755-2546-441D-AC40-9A6B4B860800}
2009-02-12 02:02 --------- d-----w c:\program files\Google
2009-02-12 01:23 --------- d-----w c:\documents and settings\RR\Application Data\WinPatrol
2009-02-09 01:01 --------- d-----w c:\program files\Common Files\Ahead
2009-02-09 01:01 --------- d-----w c:\program files\Ahead
2009-02-09 00:54 --------- d-----w c:\documents and settings\All Users\Application Data\Nero
2009-02-08 15:14 --------- d-----w c:\program files\DivX
2009-02-08 13:39 --------- d-----w c:\documents and settings\RR\Application Data\Ahead
2009-02-08 13:17 --------- d-----w c:\documents and settings\All Users\Application Data\Ahead
2009-02-08 13:03 --------- d-----w c:\program files\Common Files\Nero
2009-02-07 23:41 --------- d-----w c:\documents and settings\RR\Application Data\Nero
2009-02-07 12:11 --------- d-----w c:\program files\FrostWire
2009-02-04 12:17 --------- d-----w c:\program files\Wise Registry Cleaner 3
2009-02-04 12:15 --------- d-----w c:\program files\Wise Disk Cleaner
2009-02-04 11:39 --------- d-----w c:\documents and settings\All Users\Application Data\3A3E
2009-02-04 11:08 --------- d-----w c:\program files\Common Files\Skype
2009-02-04 11:08 --------- d-----w c:\documents and settings\All Users\Application Data\Skype
2009-02-04 11:08 --------- d-----r c:\program files\Skype
2009-02-02 10:41 --------- d-----w c:\documents and settings\All Users\Application Data\23CB
2009-01-31 16:45 --------- d-----w c:\documents and settings\All Users\Application Data\F138
2009-01-31 01:17 --------- d-----w c:\documents and settings\All Users\Application Data\2835B
2009-01-28 01:03 --------- d-----w c:\documents and settings\All Users\Application Data\3034B
2009-01-27 11:49 --------- d-----w c:\program files\Recuva
2009-01-25 01:40 17,920 -c--a-w c:\windows\WebFerretUninstall.exe
2009-01-25 01:40 --------- d-----w c:\program files\WebFerret
2009-01-23 23:48 --------- d-----w c:\documents and settings\All Users\Application Data\3A138
2009-01-23 23:02 --------- d-----w c:\documents and settings\All Users\Application Data\131F
2009-01-23 22:58 --------- d-----w c:\documents and settings\All Users\Application Data\1B1F
2008-10-27 13:33 69,232 -c--a-w c:\documents and settings\RR\Application Data\GDIPFONTCACHEV1.DAT
2007-12-22 13:50 32 -c--a-w c:\documents and settings\All Users\Application Data\ezsid.dat
2009-03-13 14:59 251,392 ----a-w c:\program files\opera\program\plugins\dapop.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-01-29 23975720]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"DownloadAccelerator"="c:\program files\DAP\DAP.EXE" [2009-03-13 6959104]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2008-02-20 1443072]
"RTHDCPL"="RTHDCPL.EXE" [2006-01-11 c:\windows\RTHDCPL.exe]

c:\documents and settings\RR\Start Menu\Programs\Startup\
TimeLeft.lnk - c:\program files\TimeLeft3\TimeLeft.exe [2007-12-22 1981112]
Yahoo! Widgets.lnk - c:\program files\Yahoo!\Widgets\YahooWidgets.exe [2008-03-19 4742184]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.I420"= i420vfw.dll
"VIDC.XVID"= xvid.dll
"msacm.ac3filter"= ac3filter.acm

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]

[HKLM\~\startupfolder\C:^Documents and Settings^RR^Start Menu^Programs^Startup^FrostWire On Startup.lnk]
backup=c:\windows\pss\FrostWire On Startup.lnkStartup

[HKLM\~\startupfolder\C:^Documents and Settings^RR^Start Menu^Programs^Startup^ppcb_32.lnk]
backup=c:\windows\pss\ppcb_32.lnkStartup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
--a------ 2008-04-14 01:12 15360 c:\windows\system32\ctfmon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
--a----t- 2008-09-03 12:13 133104 c:\documents and settings\RR\Local Settings\Application Data\Google\Update\GoogleUpdate.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"ctfmon.exe"=c:\windows\system32\ctfmon.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\K-Lite Codec Pack\\Media Player Classic\\mplayerc.exe"=
"c:\\Program Files\\WebFerret\\WebFerret.exe"=
"c:\\Program Files\\FrostWire\\FrostWire.exe"=
"c:\\Program Files\\Real\\RealPlayer\\realplay.exe"=
"c:\\Program Files\\DAP\\DAP.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [2008-02-20 33800]
R2 ekrn;Eset Service;c:\program files\ESET\ESET NOD32 Antivirus\ekrn.exe [2008-02-20 472320]
R2 VideoAcceleratorService;VideoAcceleratorService;c:\progra~1\SPEEDB~1\VideoAcceleratorService.exe -start -scm --> c:\progra~1\SPEEDB~1\VideoAcceleratorService.exe -start -scm [?]
S2 NOD32FiXTemDono;Eset Nod32 Boot;c:\windows\system32\regedt32.exe [2001-08-23 3584]
S3 EuMusDesignVirtualAudioCableWdm_lcs;Breakaway Pipeline (WDM);c:\windows\system32\DRIVERS\vaclcskd.sys --> c:\windows\system32\DRIVERS\vaclcskd.sys [?]
S3 PsSdk41;PsSdk41;c:\windows\system32\drivers\pssdk41.sys [2008-10-19 36928]
S3 w89c940;Winbond W89C940 PCI Ethernet Adapter Driver;c:\windows\system32\drivers\w940nd.sys [2007-12-21 16925]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d8351d48-3147-11dd-857d-0016767e8929}]
\Shell\AutoRun\command - E:\
\Shell\open\Command - rundll32.exe .\\wowfar.dll,InstallM
.
Contents of the 'Scheduled Tasks' folder

2009-03-13 c:\windows\Tasks\AWC Update.job
- c:\program files\IObit\Advanced SystemCare 3\IObitUpdate.exe [2009-02-23 17:38]

2009-03-13 c:\windows\Tasks\AWC Update.job
- c:\program files\IObit\Advanced SystemCare 3\ [2009-03-13 19:46]

2009-03-14 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-436374069-527237240-725345543-1003.job
- c:\documents and settings\RR\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2008-09-03 12:13]

2009-03-02 c:\windows\Tasks\SmartDefrag.job
- c:\program files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe [2009-02-13 18:15]

2009-03-02 c:\windows\Tasks\SmartDefrag.job
- c:\program files\IObit\IObit SmartDefrag\ [2009-02-26 03:21]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.yahoo.com/
mStart Page = hxxp://www.krstarica.com
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
IE: &Clean Traces - c:\program files\DAP\Privacy Package\dapcleanerie.htm
IE: &Download with &DAP - c:\program files\DAP\dapextie.htm
IE: &Search - ?p=ZCfox000
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Download &all with DAP - c:\program files\DAP\dapextie2.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
LSP: c:\progra~1\SPEEDB~1\sblsp.dll
Name-Space Handler: ftp\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - c:\progra~1\DAP\dapie.dll
Name-Space Handler: http\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - c:\progra~1\DAP\dapie.dll
FF - ProfilePath - c:\documents and settings\RR\Application Data\Mozilla\Firefox\Profiles\qq1l57ie.default\
FF - prefs.js: browser.startup.homepage - yahoo.com
FF - component: c:\program files\DAP\DAPFireFox\components\DAPFireFox.dll
FF - plugin: c:\documents and settings\RR\Local Settings\Application Data\Google\Update\1.2.141.5\npGoogleOneClick7.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa2.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\Opera\program\plugins\npFoxitReaderPlugin.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll

---- FIREFOX POLICIES ----
FF - user.js: network.http.max-persistent-connections-per-server - 3
FF - user.js: nglayout.initialpaint.delay - 750
FF - user.js: content.notify.interval - 750000
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.switch.threshold - 750000
FF - user.js: network.http.max-connections-per-server - 6
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, gmer.net
Rootkit scan 2009-03-14 23:13:17
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(712)
c:\windows\system32\Ati2evxx.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\ati2evxx.exe
c:\windows\system32\ati2evxx.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\snmp.exe
c:\progra~1\SPEEDB~1\VideoAcceleratorService.exe
c:\progra~1\SPEEDB~1\VideoAcceleratorEngine.exe
.
**************************************************************************
.
Completion time: 2009-03-14 23:16:32 - machine was rebooted
ComboFix-quarantined-files.txt 2009-03-14 22:16:29

Pre-Run: 26,344,656,896 bytes free
Post-Run: 26,483,961,856 bytes free

265 --- E O F --- 2009-03-11 17:48:35











1 file(s) copied.

1 file(s) copied.

1 file(s) copied.

1 file(s) copied.

The system cannot find the file specified.

The system cannot find the file specified.

1 file(s) copied.

1 file(s) copied.

1 file(s) copied.

1 file(s) copied.

1 file(s) copied.

1 file(s) copied.

The registry entry for the restore service was found.
The restore service is already disabled.

No matching files were found.

offline
  • Pridružio: 04 Sep 2003
  • Poruke: 24135
  • Gde živiš: Wien

Yessss!

Daj mi minut da ti spremim dalja upustva.

Dopuna: 14 Mar 2009 23:49

Kazi mi, jesi li instalirao neki novi program dok smo resavali ovu infekciju?

Interesuje me i kada se od prilike racunar inficirao.

Dopuna: 14 Mar 2009 23:53

Daj mi na upload sledece fajlove:
c:\nd1.sys
c:\nd2.sys
c:\nd3.sys
c:\svc.exe
c:\ae.sys

Upload uradi preko sledece forme:
http://www.mycity.rs/ambulanta-upload.php

offline
  • Pridružio: 15 Dec 2008
  • Poruke: 166
  • Gde živiš: Beograd

Ne znam tačno šta me pitaš, radimo već dva, tri dana i više, u očajanju neke sam programe brisao sumnjajući da su uzrok (DAP accelerator), pa ih vraćao s proverene adrese, neki su ostali izbrisani, ali sad ih nema ni u recycle binu, pa ne znam, sav sam rastrešen jer mi je komp beoma važan i hitno potreban, pa ne mogu da čekam pet minuta da otvori stranicu na netu.

Uzgred, i folderi su u lokalu menjali mesta, šortkati su se pojavljivali gde im se ne nadam, ali je lokalno mašina uglavnom funkcionisala.

Ovo drugo pitanje, kada se otprilike računar instalirao, misliš li na sam početak otkad je na njemu XP SP3 (pola godine ili godina) ili na ovo što si mi uradio pre desetak minuta.

??

offline
  • Pridružio: 04 Sep 2003
  • Poruke: 24135
  • Gde živiš: Wien

rradovan ::
Ovo drugo pitanje, kada se otprilike računar instalirao, misliš li na sam početak otkad je na njemu XP SP3 (pola godine ili godina) ili na ovo što si mi uradio pre desetak minuta.

??

Moja greska u kucanju, mislio sam "od kada se inficirao".

offline
  • Pridružio: 15 Dec 2008
  • Poruke: 166
  • Gde živiš: Beograd

Ovo sad ide sa kvarne mašine, deluje kao da je OK.

Dopuna: 15 Mar 2009 0:10

Pa traje desetak dana (sjeti se Mujo), može biti da sam ja skrivio instalirajući neke dodatne aplikacije na poverenje (dao mi čovek), koje imaju veze sa konvertovanjem i editovanjem video fajlova, ili tragajući za koječim na netu (speed conect), ali sam se uzdao u NOD.

Sad ću restartovati opet da vidim da li NOD i dalje nalazi i gura u karantin nešto što mu je u TEMP - BN1, BNA, BN3, BN7, pa sve i BN32, što se dosad pri svakom butovanju pojavljivalo.

offline
  • Pridružio: 04 Sep 2003
  • Poruke: 24135
  • Gde živiš: Wien

Aman rradovane, napisao sam ti gore gde da ih uploadujes...

Sledeci program ti se direktno mesa u internet konekciju, pa mozda ne bi bilo lose da probas da ga deinstaliras i da vidis kako ide bez njega:
SpeedBit Video Accelerator

Dopuna: 15 Mar 2009 0:11

Ako budes skenirao NOD-om, postavi mi log ovde da vidim sta je nasao.
Ako ne umes da nadjes gde su mu logovi, onda jednostavno okaci screenshot ako nadje nesto.

Ko je trenutno na forumu
 

Ukupno su 925 korisnika na forumu :: 50 registrovanih, 8 sakrivenih i 867 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: bagor10, bojank, cavatina, darkangel, DH, Dorcolac, ekozelj, FOX, gasha, Gosha101980, ikan, ILGromovnik, Joja, kosticmilanko, kuntalo, Ligavesh, mackenzie, Mcdado, mercedesamg, Milan A. Nikolic, misa2, mnn2, nenad81, Nobunaga, ObelixSRB, ofbeyond, oganj123, pein, Petarvu, RobinHood12, S2M, sakota79, Sale1423, Shinobi, shone34, Sirius, Skakac7, Snorks, SOVO515, Stoilkovic, stokssone, TITAN DUDIN JARAN, Toni, Trpe Grozni, VladaNS1978, vlahale, vukovi, zixmix, Zmaj001, Zoca