zarazen :(

2

zarazen :(

offline
  • Pridružio: 25 Mar 2009
  • Poruke: 10

Cini mi se da je sad bolje Smile. Jesmo li ga sredili?

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Izgleda da jesmo Very Happy ako sve radi kako treba i ako nema vise problema uradices jos ovo.

Klikni START a zatim RUN
U liniju za unos teksta ukucaj Combofix /u i klikni OK





Sačekaj da se proces deinstalacije završi

Gornja procedura će:
Obrisati sledeće:
ComboFix i njegove file-ove i foldere
VundoFix Backups folder, ako postoji
C:\Deckard folder, ako postoji
C:\OtMoveIt folder, ako postoji

Resetovati podešavanja sata na kompjuteru
Sakriti ekstenzije file-ova, ako je potrebno
Sakriti sistemske/skrivene file-ove/foldere, ako je potrebno
Resetovati System Restore


Dopuna: 26 Mar 2009 13:18

Ustvari kucaces eeb.exe /u posto smo menjali ime Combofixa.

offline
  • Pridružio: 25 Mar 2009
  • Poruke: 10

Ok. Hvala ti puno sto si odvojio vreme da mi pomognes i to u ovako kratkom roku. Smile Jos samo jedno pitanje: mozes li da mi preporucis koje sigurnosne programe bih trebao da imam i kako da sada proverim flash memorije koje imam za slucaj da nisu i one zarazene?

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Sto se tice AV programa tu ti ne mogu pomoci, moraces sam da odlucis koji ces koristiti. Ja koristim Avast, ako ti nesto znaci, a mozemo da uradimo proveru USB flash drajvova.


- Preuzmi USBNoRisk na Desktop i pokreni ga duplim klikom na ikonicu programa.
- Sacekaj koji sekund dok program izvrsi inicijalno skeniranje.
- Ubacuj sve USB memorijske uredjaje redom u USB slot i svaki zadrzi u slotu po 10 sekundi.
- Ukoliko imas vise uredjaja za proveru, onda na parcetu papira zapisi kojim redom su ubacivani jer ce nam kasnije trebati taj podatak
- Kada zavrsis sa svim uredjajima, klikni desno dugme misa na sred prozora programa i odaberi opciju Save log. To ce automatski otvoriti log u Notepadu. Iskopiraj nam taj log iz Notepada na forum.

Objasnjenje: U USB memorijske uredjaje spadaju svi oni uredjaji koji po prikljucivanju na kompjuter dobijaju svoju oznaku particije. Tu spadaju USB flash drajvovi, eksterni hard-diskovi, memorijske kartice, MP3 i MP4 plejeri, neki mobilni telefoni, neki GPS (navigacioni) uredjaji itd.

offline
  • Pridružio: 25 Mar 2009
  • Poruke: 10

USBNoRisk 1.6 by bobby

Started at 26.3.2009 13:42:38

Scanning for connected USB Mass storage...
----------------------------------------
========================================

Scanning for other storage...
----------------------------------------
C: {79289ac7-0ce8-11de-89b8-806d6172696f}
D: {79289ac8-0ce8-11de-89b8-806d6172696f}
========================================


Scanning fixed storage for autorun.inf files...
----------------------------------------
Autorun.inf on C: - None
----------------------------------------

Sanitizing Shell Menu...
----------------------------------------
No key found for C:
No key found for 79289ac7-0ce8-11de-89b8-806d6172696f
========================================

Autorun.inf on D: - None
----------------------------------------

Sanitizing Shell Menu...
----------------------------------------
No key found for D:
No key found for 79289ac8-0ce8-11de-89b8-806d6172696f
========================================



New device connected at 26.3.2009 13:42:59

Scanning for connected USB mass storage...
----------------------------------------
F: {7831895e-0ce5-11de-9cd2-c9e5c2bfda2f}
Added F:
========================================

Scanning USB mass storage for files...
----------------------------------------
----------------------------------------
Autorun.inf on F: - None
----------------------------------------

Sanitizing Shell Menu...
----------------------------------------
No key found for 7831895e-0ce5-11de-9cd2-c9e5c2bfda2f
========================================

----------------------------------------

Desktop.ini on F: - None
----------------------------------------

========================================

========================================
Removed F:
========================================


New device connected at 26.3.2009 13:43:49

Scanning for connected USB mass storage...
----------------------------------------
F: {78318956-0ce5-11de-9cd2-c9e5c2bfda2f}
Added F:
========================================

Scanning USB mass storage for files...
----------------------------------------
----------------------------------------
Autorun.inf on F: - None
----------------------------------------

Sanitizing Shell Menu...
----------------------------------------
No key found for 78318956-0ce5-11de-9cd2-c9e5c2bfda2f
========================================

----------------------------------------

Desktop.ini on F: - None
----------------------------------------

========================================

========================================
Removed F:
========================================


New device connected at 26.3.2009 13:45:02

Scanning for connected USB mass storage...
----------------------------------------
G: {7831895d-0ce5-11de-9cd2-c9e5c2bfda2f}
Added G:
========================================

Scanning USB mass storage for files...
----------------------------------------
----------------------------------------
Autorun.inf on G: - None
----------------------------------------

Sanitizing Shell Menu...
----------------------------------------
No key found for G:
No key found for 7831895d-0ce5-11de-9cd2-c9e5c2bfda2f
========================================

----------------------------------------

desktop.ini found on G:
----------------------------------------

Content of G:\ceo d\Backup\Desktop\desktop.ini
----------------------------------------
[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21769
----------------------------------------


Content of G:\ceo d\Downloads\2007 lil boosie\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
----------------------------------------


Content of G:\ceo d\Music\VA_-_Cuban_Beats-3CD-2006-PsyCZnP\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://windowsmedia.com/redir/buynow9.asp?providerName=AMG&albumID=365CE86A-CE33-40A1-84A9-3F8B6A43045D&a_id=R%20%20%20635181&album=Cuban%20All%20Stars%20[CD1]&artistID=80064449-C40C-486A-8D0E-D3ACB5DA99B9&p_id=%20&artist=Various%20Artists&locale=409&geoid=eb&version=10.0.0.4036&userlocale=41f
----------------------------------------


Content of G:\$RECYCLE.BIN\desktop.ini
----------------------------------------
[.ShellClassInfo]
CLSID={645FF040-5081-101B-9F08-00AA002F954E}
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-8964
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Contacts\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%CommonProgramFiles%\system\wab32res.dll,-10100
InfoTip=@%CommonProgramFiles%\system\wab32res.dll,-10200
IconResource=%SystemRoot%\system32\imageres.dll,-181
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Local\Microsoft\Feeds Cache\desktop.ini
----------------------------------------
[.ShellClassInfo]
UICLSID={7BD29E00-76C1-11CF-9DD0-00A0C9034933}
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Local\Microsoft\Feeds Cache\6N0LK3NA\desktop.ini
----------------------------------------
[.ShellClassInfo]
UICLSID={7BD29E00-76C1-11CF-9DD0-00A0C9034933}
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Local\Microsoft\Feeds Cache\71Q4H3RY\desktop.ini
----------------------------------------
[.ShellClassInfo]
UICLSID={7BD29E00-76C1-11CF-9DD0-00A0C9034933}
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Local\Microsoft\Feeds Cache\MUKNVD9Z\desktop.ini
----------------------------------------
[.ShellClassInfo]
UICLSID={7BD29E00-76C1-11CF-9DD0-00A0C9034933}
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Local\Microsoft\Feeds Cache\G5HL99NN\desktop.ini
----------------------------------------
[.ShellClassInfo]
UICLSID={7BD29E00-76C1-11CF-9DD0-00A0C9034933}
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Local\Microsoft\Windows\Burn\Burn\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21815
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21787
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21762
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21786
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21797
InfoTip=@shell32,dll,-12692
IconResource=%SystemRoot%\system32\imageres.dll,-117
CLSID={0C39A5CF-1A7A-40C8-BA74-8900E6DF5FCD}
ÿ9&p_id=%20&artist=Various%20Artists&locale=409&geoid=eb&version=10.0.0.4036&userlocale=41f
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\AppData\LocalLow\desktop.ini
----------------------------------------

Gjveri
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Videos\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21791
InfoTip=@%SystemRoot%\system32\shell32.dll,-12690
IconResource=%SystemRoot%\system32\imageres.dll,-189
IconFile=%SystemRoot%\system32\shell32.dll
IconIndex=-238
[LocalizedFileNames]
Sample Videos.lnk=@%SystemRoot%\system32\shell32.dll,-21807
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Pictures\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21779
InfoTip=@%SystemRoot%\system32\shell32.dll,-12688
IconResource=%SystemRoot%\system32\imageres.dll,-113
IconFile=%SystemRoot%\system32\shell32.dll
IconIndex=-236
[LocalizedFileNames]
Sample Pictures.lnk=@%SystemRoot%\system32\shell32.dll,-21805
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Desktop\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21769
IconResource=%SystemRoot%\system32\imageres.dll,-183
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Desktop\Recover.My.Files.v3.98.B6218_nd\desktop.ini
----------------------------------------
[{BE098140-A513-11D0-A3A4-00C04FD706EC}]
IconArea_Image = bheesham\bg.gif
IconArea_Text = 0x000000FF
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Favorites\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21796
IconResource=%SystemRoot%\system32\imageres.dll,-115
IconFile=%SystemRoot%\system32\shell32.dll
IconIndex=-173
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Favorites\Links\desktop.ini
----------------------------------------
[.ShellClassInfo]
LocalizedResourceName=@%windir%\System32\ieframe.dll,-12385
˙
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Music\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21790
InfoTip=@%SystemRoot%\system32\shell32.dll,-12689
IconResource=%SystemRoot%\system32\imageres.dll,-108
IconFile=%SystemRoot%\system32\shell32.dll
IconIndex=-237
[LocalizedFileNames]
Sample Music.lnk=@%SystemRoot%\system32\shell32.dll,-21806
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Searches\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-9031
IconResource=%SystemRoot%\system32\imageres.dll,-18
[LocalizedFileNames]
Indexed Locations.search-ms=@shell32.dll,-32811
Everywhere.search-ms=@shell32.dll,-32814
Shared By Me.search-ms=@shell32.dll,-32802
Recent Music.search-ms=@shell32.dll,-32803
Recent Documents.search-ms=@shell32.dll,-32804
Recent Pictures and Videos.search-ms=@shell32.dll,-32806
Recent E-mail.search-ms=@shell32.dll,-32807
Recently Changed.search-ms=@shell32.dll,-32813
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Downloads\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21798
IconResource=%SystemRoot%\system32\imageres.dll,-184
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Documents\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21770
IconResource=%SystemRoot%\system32\imageres.dll,-112
IconFile=%SystemRoot%\system32\shell32.dll
IconIndex=-235
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Links\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21810
IconResource=%SystemRoot%\system32\imageres.dll,-185
DefaultDropEffect=4
[LocalizedFileNames]
Public.lnk=@shell32.dll,-21816
Searches.lnk=@shell32.dll,-9031
Recently Changed.lnk=@shell32.dll,-32813
Music.lnk=@shell32.dll,-21790
Pictures.lnk=@shell32.dll,-21779
Documents.lnk=@shell32.dll,-21770
----------------------------------------


Content of G:\$RECYCLE.BIN\$RODQQ0S\Users\jelena\Saved Games\desktop.ini
----------------------------------------

[.ShellClassInfo]
LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21814
IconResource=%SystemRoot%\system32\imageres.dll,-186
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\1990_Aaron Neville - Greatest Hits-1990\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=providerName=AMG&albumID=F1A6D69E-2A0D-4628-9DF9-06536A6B17F7&a_id=R%20%20%20%2013910&album=Greatest%20Hits&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.5721.5145&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\1991_Aaron Neville - Warm Your Heart-1991\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=1C087436-2575-4836-8C30-970F7F7829CA&a_id=R%20%20%20%2013916&album=Warm%20Your%20Heart&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\1993_Aaron Neville - The Grand Tour-1993\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=76F27A88-3992-4764-BD65-924C17261321&a_id=R%20%20%20169792&album=The%20Grand%20Tour&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\1995_Aaron Neville - The Tattooed Heart-1995\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=547BF5DF-42E6-4477-AEF3-523E4220E01B&a_id=R%20%20%20212784&album=The%20Tattooed%20Heart&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\1997_Aaron Neville - To Make Me Who I Am-1997\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=providerName=AMG&albumID=1F2F3D5F-A634-46F4-8343-2419992B3EA7&a_id=R%20%20%20315306&album=To%20Make%20Me%20Who%20I%20Am&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.5721.5145&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\1999_Aaron Neville - Make Me Strong-1999\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=3E32347C-FFAE-46B7-8B6A-7FFF7A1437C4&a_id=R%20%20%20212404&album=Make%20Me%20Strong&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.5721.5145&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\2000_Aaron Neville - Devotion\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=53C91983-6345-447D-9348-1F2DE8BE1350&a_id=R%20%20%20494761&album=Devotion&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.5721.5145&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\2000_Aaron Neville - Very Best Of Aaron Neville\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=8B9FB51A-798D-491C-A975-B55CE7C4C4C5&a_id=R%20%20%20460417&album=The%20Very%20Best%20of%20Aaron%20Neville&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\2002_Aaron Neville - Millennium Collection-2002\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=F7EABD39-AB66-4EE7-A872-24D8F8F20064&a_id=R%20%20%20595320&album=20th%20Century%20Masters%20-%20The%20Millennium%20Collection:%20The%20Best%20of%20Aaron%20Neville&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\2003_Aaron Neville - Love Songs\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=601B3E80-B86C-46FF-B7CB-4BB0DDD6672B&a_id=R%20%20%20623789&album=Love%20Songs&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\2003_Aaron Neville - Nature boy-2003\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=A8F8BFAC-AD50-42A3-AAD9-9C4CAADDAC3B&a_id=R%20%20%20640794&album=Nature%20Boy:%20The%20Standards%20Album&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\2005_Aaron Neville - Gospel Roots-2005_[Gospel Soul]\Cd 1\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=47746F1D-E656-4AAB-822A-4CB823AD9FC3&a_id=R%20%20%20730601&album=Gospel%20Roots&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\2005_Aaron Neville - Gospel Roots-2005_[Gospel Soul]\Cd 2\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=47746F1D-E656-4AAB-822A-4CB823AD9FC3&a_id=R%20%20%20730601&album=Gospel%20Roots&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\2005_Aaron Neville - Gospel Roots-2005_[Gospel Soul]\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=47746F1D-E656-4AAB-822A-4CB823AD9FC3&a_id=R%20%20%20730601&album=Gospel%20Roots&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.5721.5145&userlocale=41d
----------------------------------------


Content of G:\Music\Aaron Neville__[Soul And R&B]\2006_Aaron Neville - Bring it on home-The Soul Classics-2006\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=A39DC3E7-461E-4618-B653-28AD357FAFC7&a_id=R%20%20%20853979&album=Bring%20It%20on%20Home...%20The%20Soul%20Classics&artistID=8AE7BA4A-7EFB-4F57-848D-6A0F044D869E&p_id=P%20%20%20%20%205008&artist=Aaron%20Neville&locale=41d&geoid=dd&version=11.0.6000.6344&userlocale=41d
----------------------------------------


Content of G:\Music\Mostar Sevdah Reunion - Discography-The Bridge of Bosnian Blues\1999 - Mostar Sevdah Reunion\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=400CC67B-E8D2-4C43-86B9-BB8C8903EEBC&a_id=R%20%20%20530811&album=Mostar%20Sevdah%20Reunion&artistID=43190388-D2E8-41E9-951D-75B3ACBB70C8&p_id=P%20%20%20479619&artist=Mostar%20Sevdah%20Reunion&locale=409&geoid=19&version=11.0.5721.5230&userlocale=141a
----------------------------------------


Content of G:\Music\Mostar Sevdah Reunion - Discography-The Bridge of Bosnian Blues\2001 - A Gypsy Legend\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=073DB5FA-70E8-4DD9-9345-68DA7CD2A42A&a_id=R%20%20%20604520&album=A%20Gypsy%20Legend&artistID=2EFE995C-5A3F-4555-AC8C-38C3ED63802C&p_id=P%20%20%20534502&artist=Saban%20Bajramovic&locale=409&geoid=19&version=11.0.5721.5230&userlocale=141a
----------------------------------------


Content of G:\Music\Mostar Sevdah Reunion - Discography-The Bridge of Bosnian Blues\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicArtist
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=073DB5FA-70E8-4DD9-9345-68DA7CD2A42A&a_id=R%20%20%20604520&album=A%20Gypsy%20Legend&artistID=2EFE995C-5A3F-4555-AC8C-38C3ED63802C&p_id=P%20%20%20534502&artist=Saban%20Bajramovic&locale=409&geoid=19&version=11.0.5721.5230&userlocale=141a
----------------------------------------


Content of G:\Music\VA_-_Cuban_Beats-3CD-2006-PsyCZnP\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://windowsmedia.com/redir/buynow9.asp?providerName=AMG&albumID=365CE86A-CE33-40A1-84A9-3F8B6A43045D&a_id=R%20%20%20635181&album=Cuban%20All%20Stars%20[CD1]&artistID=80064449-C40C-486A-8D0E-D3ACB5DA99B9&p_id=%20&artist=Various%20Artists&locale=409&geoid=eb&version=10.0.0.4036&userlocale=41f
----------------------------------------


Content of G:\Music\VJM\VJM 15 - Charlie Parker [160cbr]\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=providerName=AMG&albumID=076F1E29-343C-4B45-ABAF-0B31F6D0ED8B&a_id=R%20%20%20199424&album=Verve%20Jazz%20Masters%2015&artistID=3DE3A42E-9420-47F4-BD56-F9AC36ABFFE3&p_id=P%20%20%20112401&artist=Charlie%20Parker&locale=409&version=9.0.0.2980
----------------------------------------


Content of G:\Music\Jazz and Bles\desktop.ini
----------------------------------------
[.ShellClassInfo]
ConfirmFileOp=0
NoSharing=1
IconFile=C:\WINDOWS\BricoPacks\Vista Inspirat\iColorFolder\iColorFolder.dll
IconIndex=4
----------------------------------------


Content of G:\Recycled\desktop.ini
----------------------------------------
[.ShellClassInfo]
CLSID={645FF040-5081-101B-9F08-00AA002F954E}
----------------------------------------


Content of G:\Miljana\Joe Cocker\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicArtist
MusicBuyUrl=providerName=AMG&albumID=6158B9E3-33BD-4D03-8E9B-777120CEAB8E&a_id=R%20%20%20385533&album=Greatest%20Hits%20[EMI]&artistID=D67AA1C3-601B-4798-BEDD-9FE0EFF5BCD9&p_id=P%20%20%20%20%203931&artist=Joe%20Cocker&locale=415&geoid=bf&version=10.0.0.3646&userlocale=415
----------------------------------------


Content of G:\Miljana\Joe Cocker\Greatest Hits [EMI]\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=providerName=AMG&albumID=6158B9E3-33BD-4D03-8E9B-777120CEAB8E&a_id=R%20%20%20385533&album=Greatest%20Hits%20[EMI]&artistID=D67AA1C3-601B-4798-BEDD-9FE0EFF5BCD9&p_id=P%20%20%20%20%203931&artist=Joe%20Cocker&locale=415&geoid=bf&version=10.0.0.3646&userlocale=415
----------------------------------------


Content of G:\Acko\Scarface Soundtrack\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://windowsmedia.com/redir/buynow9.asp?providerName=AMG&albumID=10E2F71E-73CB-4B0C-976B-FF76FBB156CD&a_id=R%20%20%20118661&album=Scarface%20[Original%20Soundtrack]&artistID=3C9E4F5B-0F93-4FF5-931B-1CB16B1B881D&p_id=%20&artist=Soundtrack&locale=409&geoid=f4&version=10.0.0.4019&userlocale=81a
----------------------------------------


Content of G:\Acko\The Very Best Of MTV Unplugged Vol 1 2 3\The Very Best Of MTV Unplugged - Vol 3\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=ZACR DBS&albumID=03B6E18B-948A-43EF-A2EB-3E1D3F59ADE2&a_id=%20&album=Awake-The%20Best%20Of%20Live&artistID=2DBCBB0F-32E3-425C-A764-A5C32CC07DAC&p_id=%20&artist=Live&locale=409&geoid=f4&version=11.0.5721.5212&userlocale=409
----------------------------------------


Content of G:\Acko\The Very Best Of MTV Unplugged Vol 1 2 3\The Very Best Of MTV Unplugged - Vol 2\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=718AF1B5-FB4B-4ACB-A97B-F42DEAB8D04A&a_id=R%20%20%20631561&album=The%20Very%20Best%20of%20MTV%20Unplugged%2C%20Vol.%202&artistID=80064449-C40C-486A-8D0E-D3ACB5DA99B9&p_id=%20&artist=Various%20Artists&locale=409&geoid=f4&version=11.0.5721.5212&userlocale=409
----------------------------------------


Content of G:\Acko\The Very Best Of MTV Unplugged Vol 1 2 3\The Very Best Of MTV Unplugged - Vol 1\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://redir.metaservices.microsoft.com/redir/buynow/?providerName=AMG&albumID=DDB963C2-3583-4024-9512-B3B1F635E87F&a_id=R%20%20%20602098&album=Very%20Best%20of%20MTV%20Unplugged&artistID=80064449-C40C-486A-8D0E-D3ACB5DA99B9&p_id=%20&artist=Various%20Artists&locale=409&geoid=f4&version=11.0.5721.5212&userlocale=409
----------------------------------------


Content of G:\Acko\Pressing 25.07.2008\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://windowsmedia.com/redir/buynow9.asp?providerName=AMG&albumID=1BF2BB14-B4CB-431B-BE7B-D3F19759805B&a_id=R%20%20%20401354&album=The%20Very%20Best%20of%20Alannah%20Myles&artistID=BDC842F9-8F59-490D-AFBC-2CD2EFF56FC8&p_id=P%20%20%20%20%204985&artist=Alannah%20Myles&locale=409&geoid=f4&version=10.0.0.4019&userlocale=81a
----------------------------------------


Content of G:\Acko\Goran Bregovic-10 albuma-mp3\Ederlezi\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://windowsmedia.com/redir/buynow9.asp?providerName=AMG&albumID=6CD072B5-25EB-4562-83E0-5B0CC23C5976&a_id=R%20%20%20401106&album=Ederlezi&artistID=0DCDE0D1-3658-4EDF-B44B-286A01BD3A31&p_id=P%20%20%20141900&artist=Goran%20Bregovic&locale=409&geoid=f4&version=10.0.0.4019&userlocale=81a
----------------------------------------


Content of G:\Acko\Goran Bregovic-10 albuma-mp3\Balkanica 2005\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://windowsmedia.com/redir/buynow9.asp?providerName=AMG&albumID=4BCAE8D6-4AD0-4063-BCEA-0AD3F2782554&a_id=R%20%20%20546806&album=Balkanica&artistID=C800B36E-9254-499D-9FA5-1A7F73D17101&p_id=P%20%20%20507746&artist=Athens%20Symphony%20Orchestra&locale=409&geoid=f4&version=10.0.0.4019&userlocale=81a
----------------------------------------


Content of G:\Acko\Goran Bregovic-10 albuma-mp3\Arizona Dream Original Motion Picture Sound\desktop.ini
----------------------------------------
[.ShellClassInfo]
FolderType=MusicAlbum
MusicBuyUrl=http://windowsmedia.com/redir/buynow9.asp?providerName=AMG&albumID=40B38AF9-5862-463D-A542-31BAAC93A42C&a_id=R%20%20%20638549&album=Arizona%20Dream%20[France%20Bonus%20Tracks]&artistID=0DCDE0D1-3658-4EDF-B44B-286A01BD3A31&p_id=P%20%20%20141900&artist=Goran%20Bregovic&locale=409&geoid=f4&version=10.0.0.4019&userlocale=81a
----------------------------------------

========================================

Dopuna: 26 Mar 2009 14:15

E da i avast mi se i dalje zali pri startu, ali sad na C:\WINDOWS\TEMP\BN3.tmp

Dopuna: 26 Mar 2009 14:19

I u procesima mi pokazuje IEXPOLRE.EXE koji zauzima ~32Mb, a nisam startovao nista slicno, ja mislim.

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Preuzmi gmer.zip sa ovog linka i sačuvaj na Desktopu.
Raspakuj ga u neki folder.

Dupli klik na gmer.exe za početak: Izaberi Rootkit/Malware Tab na vrhu.
Klikni na Scan.
Kada je skeniranje završeno, klik na Copy dugme ispod - ovo će sačuvati rezultate skeniranja u Clipboard.
Iskoristi opciju Paste u Notepad-u da bi to prebacio u tekst. Snimi taj tekst iz Notepada kao file1.txt.
Ponovi ovo isto sa Autostart Tab-om. Snimi taj tekst iz Notepada kao file2.txt.


Iskoristi opciju Prikači fajl ispod polja za pisanje poruke na forumu, i prikači nam ovde ta dva fajla koja smo malopre snimili.

offline
  • Pridružio: 25 Mar 2009
  • Poruke: 10

Evo ih fajlovi:


mycity.rs/must-login.png


mycity.rs/must-login.png

rip
  • argus  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 27 Apr 2008
  • Poruke: 9160
  • Gde živiš: Prokuplje

Mladjo. pogledacu veceras logove posto imam privatne obaveze, ceo dan sam zauzet.

offline
  • Pridružio: 25 Mar 2009
  • Poruke: 10

Ok. Nema frke. Hvala jos jednom. Smile

offline
  • Pridružio: 04 Sep 2003
  • Poruke: 24135
  • Gde živiš: Wien

Pozdrav mladenreg,

Zapatio si infekciju koja je prilicno nova, i za sada ni jedan antivirus program ne ume da je otkloni efikasno.
Morali samo da zapnemo, pa da sami napisemo program za dezinfekciju.

Sledece upustvo zapisi ili odstampaj, posto neces imati internet konekciju dok budes cistio racunar.

Prvo skini na C: u osnovni folder particije sledeci program:
http://amf.mycity.rs/personal/bobby/ndis_fixer.exe
Jako je bitno da taj program skines bas u osnovni folder C: particije, ili da ga tamo iskopiras nakon sto ga skines sa gornjeg linka.

Sada je potrebno preci iz Windowsa u Recovery Console.
Trebalo bi da ti je ComboFix pri prvom pokretanju ponudio opciju da instaliras Recovery Console. Ukoliko jeste, onda ces restartovati komp, i iz boot menija odabrati da udjes u Recovery Console.

Kada udjes u Recovery Console, pitace te ne koji Windows zelis da se ulogujes. Tu odaberi broj koji stoji ispred instalacije Windowsa sa spiska koji ti bude ponudjen.
Nakon toga ce te pitati za administratorski pass. Ukoliko nisi postavljao administratorski pass, onda tu samo stisni Enter.

Kada sve to uspesno uradis, na ekranu ce stajati prompt koji izgleda nesto tipa C:\>
Tu sada kucaj sledece naredbe (iza svake stiskas Enter):

cd \
ndis_fixer


Kada se ponovo pojavi prompt, to znaci da je ndis_fixer zavrsio svoj posao. Sada kucas naredbu exit i stisnes Enter.
To ce restartovati kompjuter.
Udji normalno u Windows sada (ne u Recovery Console).

Na disku, u osnovnom folderu C: particije ces imati fajl koji se zove NDIS_Fixer.txt. Klikni duplo na njega da bi se otvorio u Notepadu.
Sadrzaj tog fajla sada iskopiraj na forum.

Nakon toga pokreni ponovo ComboFix duplim klikom na ikonicu ComboFixa i postavi ovde log koji ce biti napravljen na kraju.

Onda pokreni i GMER, i ponovo napravi logove kao sto si jednom vec uradio. Te logove prikaci uz poruku preko opcije Prikaci fajl

Ko je trenutno na forumu
 

Ukupno su 1092 korisnika na forumu :: 52 registrovanih, 10 sakrivenih i 1030 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., Andrija357, babaroga, Ben Roj, Bojan85, bojanM84, bojcistv, ccoogg123, chichabg, darkojbn, Denaya, djboj, Dorcolac, draganca, Duh sa sekirom, dule10savic, Džordžino, Frunze, Karla, kokodakalo, Krusarac, Krvava Devetka, Kubovac, Lubica, mean_machine, mercedesamg, Mercury, MiG-29M2, milimoj, minmatar34957, mrav pesadinac, oldtimer, operniki, opt1, panzerwaffe, Petarvu, prle122, procesor, rasok, royst33, ruso, S2M, Shinobi, Smajser, srbijaiznadsvega, styg, t84dar, tubular, TwinHeadedEagle, voja64, wulfy, xpforswodniw