| Autor | Správa |
alfasex
 Užívateľ
 Založený: 28.03.2008 Príspevky: 12
 | Zaslal: Pi 04.04.08 18:09 |   |
a ved prave to, ja som v pc nic nemenil, ani nic som neinstaloval, a ako je mijasne ze samo od seba to zacat nemoze, ale s problemom si neviem dat rady... ju a mal som aj avast ani ten nic neporiesil... |
| |
  |
 |
Tech
 Skúsený užívateľ
 Založený: 27.03.2008 Príspevky: 700
 | Zaslal: Ne 06.04.08 15:14 |   |
Dobre, vylúčme nákazu ak tam nie je.
Otvor si Internet Explorer (ak používaš iný prehliadač) a pastni tam toto: http://www.pandasecurity.com/activescan/index/?track=1&Lang=en-US&IdPais=63 , neregistruj sa. Vypni všetky programy ktoré nutne nepotrebuješ (okrem antivíru a firewallu) a daj "scan now". Bude to chvíľu trvať samozrejme, keď dokončí scan, vpravo hore sa objaví možnosť uložiť výsledok do textového súboru, ten si ulož a potom ho sem pastni. |
| |
  |
 |
alfasex
 Užívateľ
 Založený: 28.03.2008 Príspevky: 12
 | Zaslal: Ne 06.04.08 21:56 |   |
;***********************************************************************************************************************************************************************************
ANALYSIS: 2008-04-06 21:51:27
PROTECTIONS: 0
MALWARE: 22
SUSPECTS: 0
;***********************************************************************************************************************************************************************************
PROTECTIONS
Description Version Active Updated
;===================================================================================================================================================================================
;===================================================================================================================================================================================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===================================================================================================================================================================================
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.casalemedia.com/]
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.casalemedia.com/]
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.casalemedia.com/]
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.casalemedia.com/]
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.casalemedia.com/]
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.doubleclick.net/]
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Cookies\@lfa@doubleclick[2].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.atdmt.com/]
00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.fastclick.net/]
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.tribalfusion.com/]
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.tribalfusion.com/]
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.tribalfusion.com/]
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.tribalfusion.com/]
00145869 Cookie/SpyLog TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.spylog.com/]
00159564 Cookie/WUpd TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.revenue.net/]
00167642 Cookie/Com.com TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.com.com/]
00167647 Cookie/Yadro TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.yadro.ru/]
00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.xiti.com/]
00167724 Cookie/HotLog TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.hotlog.ru/]
00167749 Cookie/Toplist TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.toplist.cz/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[ad.yieldmanager.com/]
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[ad.yieldmanager.com/]
00168061 Cookie/Apmebf TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.apmebf.com/]
00168114 Cookie/onestat.com TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[stat.onestat.com/]
00168114 Cookie/onestat.com TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[stat.onestat.com/]
00168114 Cookie/onestat.com TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[stat.onestat.com/]
00168114 Cookie/onestat.com TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[stat.onestat.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.advertising.com/]
00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.advertising.com/]
00170556 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.realmedia.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.adultfriendfinder.com/]
00191644 Cookie/adultfriendfinder TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Mozilla\Firefox\Profiles\7d32wkkr.default\cookies.txt[.adultfriendfinder.com/]
00262020 Cookie/Atwola TrackingCookie No 0 Yes No C:\Documents and Settings\@lfa\Cookies\@lfa@atwola[1].txt
00513107 Trj/Ruins.IC Virus/Trojan No 1 Yes No C:\WINDOWS\system32\kdiju.exe
01143518 Trj/Downloader.OTR Virus/Trojan No 1 Yes No C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\java.class-a70697f-3a0d41e1.class
01143518 Trj/Downloader.OTR Virus/Trojan No 1 Yes No C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\6.0\40\2b2d8ee8-71f4c877
01143518 Trj/Downloader.OTR Virus/Trojan No 1 Yes No C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\6.0\8\36851408-2ac8bd1c
01143518 Trj/Downloader.OTR Virus/Trojan No 1 Yes No C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\java.class-37cb8dd2-3ba9f3ca.class
01942368 Exploit/Gimsh.A HackTools No 0 Yes No C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\6.0\3\785b6d83-7a132c9e[BaaaaBaa.class]
;===================================================================================================================================================================================
SUSPECTS
Sent Location 8
;===================================================================================================================================================================================
;===================================================================================================================================================================================
VULNERABILITIES
Id Severity Description 8
;===================================================================================================================================================================================
184380 MEDIUM MS08-002 8
184379 MEDIUM MS08-001 8
182048 HIGH MS07-069 8
182046 HIGH MS07-067 8
182043 HIGH MS07-064 8
179553 HIGH MS07-061 8
176382 HIGH MS07-057 8
176383 HIGH MS07-058 8
170911 HIGH MS07-050 8
170907 HIGH MS07-046 8
170906 HIGH MS07-045 8
170904 HIGH MS07-043 8
164915 HIGH MS07-035 8
164913 HIGH MS07-033 8
164911 HIGH MS07-031 8
160623 HIGH MS07-027 8
157262 HIGH MS07-022 8
157261 HIGH MS07-021 8
157260 HIGH MS07-020 8
157259 HIGH MS07-019 8
156477 HIGH MS07-017 8
150253 HIGH MS07-016 8
150249 HIGH MS07-013 8
150248 HIGH MS07-012 8
150247 HIGH MS07-011 8
150243 HIGH MS07-008 8
150242 HIGH MS07-007 8
150241 MEDIUM MS07-006 8
141034 HIGH MS06-076 8
141033 MEDIUM MS06-075 8
141030 HIGH MS06-072 8
137571 HIGH MS06-070 8
137568 HIGH MS06-067 8
131654 HIGH MS06-055 8
126083 HIGH MS06-042 8
120815 HIGH MS06-022 8
120814 HIGH MS06-021 8
114664 HIGH MS06-013 8
;=================================================================================================================================================================================== |
| |
  |
 |
Tech
 Skúsený užívateľ
 Založený: 27.03.2008 Príspevky: 700
 | Zaslal: Ut 08.04.08 12:16 |   |
Toto stiahni, rozbaľ a spusti: http://www.gmer.net/gmer.zip
V programe choď na položku "Rootkit/Malware", hore.
Potom vpravo dole daj "scan" a po dokončení daj "save".
Keďže som si všimol že sem pastnuté logy nemajú dodržané tabulátory, zvyknú byť neprehľadné.
A tento výstupný log bude o dosť väčší, pošli mi ho preto sem: Sentinel.info@yahoo.com |
| |
  |
 |
Tech
 Skúsený užívateľ
 Založený: 27.03.2008 Príspevky: 700
 | Zaslal: St 09.04.08 12:45 |   |
Toto vymaž ručne:
C:\WINDOWS\system32\kdiju.exe
C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\java.class-a70697f-3a0d41e1.class
C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\6.0\40\2b2d8ee8-71f4c877
C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\6.0\8\36851408-2ac8bd1c
C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\java.class-37cb8dd2-3ba9f3ca.class
C:\Documents and Settings\@lfa\Application Data\Sun\Java\Deployment\cache\6.0\3\785b6d83-7a132c9e[BaaaaBaa.class]
Aktualizuj JAVU:
https://sdlc6d.sun.com/ECom/EComActionServlet;jsessionid=E69580D905A705009F0F26347D2EF489
A zapni si automatické aktualizácie windows XP, nečakaj na SP3!  |
| |
  |
 |
alfasex
 Užívateľ
 Založený: 28.03.2008 Príspevky: 12
 | Zaslal: Pi 11.04.08 20:05 |   |
ahoj
vies co sa mi stalo, a nic som ani neurobil... po tom gmer teste mi po restarte hodilo neaku chybu v services.exe, automaticky sa mi restartol comp a odvtedy ten hdd uz poslucha:)) |
| |
  |
 |
Tech
 Skúsený užívateľ
 Založený: 27.03.2008 Príspevky: 700
 |
To je fajn , len škoda, že nevieme čo je prapríčina . |
| |
  |
 |
mirogta
 Užívateľ
 Založený: 09.10.2008 Príspevky: 13
 | Zaslal: Ut 21.10.08 16:52 |   |
mam jednu otazku pouzivam len mozzilu a internet exproler nepouzivam ked sa pozriem do cookie suborov internetu explorelu mam tam cokie aj ked nepouzivam internet explorer
mam tam cookie:
toplist
prosim o pomoc |
| |
  |
 |
mirogta
 Užívateľ
 Založený: 09.10.2008 Príspevky: 13
 | Zaslal: Ut 21.10.08 16:54 |   |
mam jednu otazku pouzivam len mozzilu a internet exproler nepouzivam ked sa pozriem do cookie suborov internetu explorelu mam tam cokie aj ked nepouzivam internet explorer
mam tam cookie:
toplist
prosim o pomoc |
| |
  |
 |
Tech
 Skúsený užívateľ
 Založený: 27.03.2008 Príspevky: 700
 | Zaslal: Po 27.10.08 21:27 |   |
Na to aby sa Ti objavilo cookie nemusíš IE vôbec otvoriť. Vyobrazovacie jadro IE používajú aj niektoré programy, ktoré pristupujú na internet. Otvor si IE a v nastaveniach -> ochrana osobných údajov -> blokovať všetky cookie. Všetky programy ktoré využívajú IE na prístup k internetu tak budú ovplyvnené. Ale rozmysli si to, či Ti to takto neovplyvní funkcionalitu programov ktoré cookie vyžadujú. Cookies ak nepoužívaš IE sú neškodné... |
| |
  |
 |
mirogta
 Užívateľ
 Založený: 09.10.2008 Príspevky: 13
 | Zaslal: Ut 28.10.08 14:33 |   |
ok diki ja uz som to urobil a uz sa mi nerobia
lebo mne sa robili aj tracing cokie ale teraz uz nie |
| |
  |
 |
|