Može li malvarbayts uklonit keyloder

poruka: 36
|
čitano: 8.449
|
moderatori: pirat, Lazarus Long, XXX-Man, vincimus
+/- sve poruke
ravni prikaz
starije poruke gore
13 godina
offline
Može li malvarbayts uklonit keyloder

Netko mi je ukrao steam acaunt i ulazio na gmail(IP  adresa je iz Čilea)pa mislim da imam keyloder odma sam skenirao sa mbam i pobrisao zaražene datoteke da li sam uklonio taj keloder ako sam ga imao

dejanceeeeeeeeee
14 godina
neaktivan
offline
RE: Može li malvarbayts uklonit keyloder
dejan1471 kaže...

Netko mi je ukrao steam acaunt i ulazio na gmail(IP  adresa je iz Čilea)pa mislim da imam keyloder odma sam skenirao sa mbam i pobrisao zaražene datoteke da li sam uklonio taj keloder ako sam ga imao

Mislis 'keylogger'?

Vjerojatno ti ga je MBAM detektirao i obrisao odnosno stavio prvo u karantenu (dakle skoro pa ista stvar) ali steta ti je kako si napisao vec ucinjena.

Napravi scan sa super antiSpyware-om,s antivirusom koji koristis za svaki slucaj i to je to.

Ubuduce opreznije po netu ako mozes.

15 godina
neaktivan
offline
Može li malvarbayts uklonit keyloder

 misliš keylogger?može,zašto ne
pa kako se štitiš,koji av,firewall?

..balkan macho boy is so hot
13 godina
offline
RE: Može li malvarbayts uklonit keyloder
seneka kaže...

 misliš keylogger?može,zašto ne
pa kako se štitiš,koji av,firewall?

Imam samo free aviru to je sve i sad sam stabio MBAM a na kompu imam avast i MBAM

dejanceeeeeeeeee
14 godina
neaktivan
offline
RE: Može li malvarbayts uklonit keyloder
dejan1471 kaže...

Imam samo free aviru to je sve i sad sam stabio MBAM a na kompu imam avast i MBAM

Preporucam Comodo za firewall uz to sto imas.

15 godina
neaktivan
offline
Može li malvarbayts uklonit keyloder

daj skeniraj s ovim,pa kopiraj log koji izbaci i zalijepi u poruku

..balkan macho boy is so hot
13 godina
offline
Može li malvarbayts uklonit keyloder

Ovo mi izbacuje kad počme da radi Hi jack this

dejanceeeeeeeeee
Poruka je uređivana zadnji put uto 25.1.2011 18:30 (dejan1471).
15 godina
neaktivan
offline
RE: Može li malvarbayts uklonit keyloder
dejan1471 kaže...

Ovo mi izbacuje kad počme da radi Hi jack this

koje windowse imaš?

..balkan macho boy is so hot
13 godina
offline
Može li malvarbayts uklonit keyloder

Win 7

dejanceeeeeeeeee
15 godina
neaktivan
offline
RE: Može li malvarbayts uklonit keyloder
dejan1471 kaže...

Win 7

desni klik na ikonu i run as administrator
do a system scan and save a log file

..balkan macho boy is so hot
15 godina
offline
Može li malvarbayts uklonit keyloder

Probaj se javiti steam supportu, možda ti vrate račun. A što si sve imao na njemu?

Isto napravi sa gmailom, imaš tamo da prijaviš ukradeni račun.

Ako netko treba pozivnicu za Digitalni bug neka javi na PP, još 3 ih imam
Poruka je uređivana zadnji put uto 25.1.2011 18:33 (Jack Sparrow).
13 godina
offline
RE: Može li malvarbayts uklonit keyloder
seneka kaže...
dejan1471 kaže...

Win 7

desni klik na ikonu i run as administrator
do a system scan and save a log file

Samo na njemu nema run as administrator

dejanceeeeeeeeee
13 godina
offline
RE: Može li malvarbayts uklonit keyloder
Jack Sparrow kaže...

Probaj se javiti steam supportu, možda ti vrate račun. A što si sve imao na njemu?

Isto napravi sa gmailom, imaš tamo da prijaviš ukradeni račun.

javio sam se več na steam imam 5 igara na njemu a na gmail sam promjenio lozinku

dejanceeeeeeeeee
13 godina
offline
RE: Može li malvarbayts uklonit keyloder
dejan1471 kaže...

Samo na njemu nema run as administrator

Odi u C:/Program Files/Trend Micro/HiJackThis i tamo ga pokreni kao administrator.

the funniest thing about this particular signature is that by the time you realise it doesn't say anything it's too late to stop reading it
15 godina
neaktivan
offline
Može li malvarbayts uklonit keyloder

nisi rekao šta ti izbacuje?
ne možeš ga pokrenuti?

..balkan macho boy is so hot
13 godina
offline
RE: Može li malvarbayts uklonit keyloder
seneka kaže...

nisi rekao šta ti izbacuje?
ne možeš ga pokrenuti?

Ne mogu ga pokrenut kao admin

dejanceeeeeeeeee
15 godina
neaktivan
offline
RE: Može li malvarbayts uklonit keyloder
dejan1471 kaže...
seneka kaže...

nisi rekao šta ti izbacuje?
ne možeš ga pokrenuti?

Ne mogu ga pokrenut kao admin

jesi probao iz program file-a,tamo di je njegov folder?

..balkan macho boy is so hot
14 godina
neaktivan
offline
Može li malvarbayts uklonit keyloder

Skini emergency kit....najucinkovitiji je....

errando discimus Make your choice
13 godina
offline
Može li malvarbayts uklonit keyloder

Evo ga

 

 

 

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:58:55, on 25.1.2011.
Platform: Windows 7  (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.7930.16406)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - (no file)
R3 - URLSearchHook: (no name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Users\dejan\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2316467580-1287886160-1208924879-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'postgres')
O4 - HKUS\S-1-5-21-2316467580-1287886160-1208924879-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'postgres')
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programs\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Programs\PartyGaming\PartyPoker\RunApp.exe
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} (PCPitstop Exam) - http://utilities.pcpitstop.com/da2/PCPitStop2.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Usluga Google ažuriranje (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Company - C:\Windows\system32\Hpservice.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PostgreSQL Server 8.4 (postgresql-8.4) - PostgreSQL Global Development Group - C:/Program Files/PostgreSQL/8.4/bin/pg_ctl.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 8147 bytes

dejanceeeeeeeeee
15 godina
neaktivan
offline
Može li malvarbayts uklonit keyloder

R3 - URLSearchHook: (no name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - (no file)

 R3 - URLSearchHook: (no name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)

 O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)

O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)

O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)

čekiraj i fix checked

..balkan macho boy is so hot
13 godina
offline
Može li malvarbayts uklonit keyloder

Napravljeno,je li to sad to

dejanceeeeeeeeee
15 godina
neaktivan
offline
RE: Može li malvarbayts uklonit keyloder
dejan1471 kaže...

Napravljeno,je li to sad to

napravi si update antivirusa,malwarebytesa i superantispywarea i quick scan sa svima
vjerovatno si čist,a sad za ubuduće ne znam,jače lozinke,wot na browsere itd

imašccleaner da makneš ove neke stvari da ti se ne ažuriraju s dizanjem windowsa,adobe reader,google updater ,gmail notifyer i sl?

 

..balkan macho boy is so hot
Poruka je uređivana zadnji put uto 25.1.2011 19:23 (seneka).
13 godina
offline
Može li malvarbayts uklonit keyloder

Stavio sam i to io napravio kako si rekao još moram i komp provjerit

 

dejanceeeeeeeeee
15 godina
neaktivan
offline
RE: Može li malvarbayts uklonit keyloder
dejan1471 kaže...

Stavio sam i to io napravio kako si rekao još moram i komp provjerit

 

ajde
i ovo bi fixao u hijackthisu:
O16 - DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} (PCPitstop Exam) - http://utilities.pcpitstop.com/da2/PCPitStop2.cab 

..balkan macho boy is so hot
13 godina
offline
Može li malvarbayts uklonit keyloder

evo loga sa kompa pa ako može tko da pogleda

 

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 19:55:07, on 25.1.2011.

Platform: Windows 7  (WinNT 6.00.3504)

MSIE: Internet Explorer v8.00 (8.00.7600.16700)

Boot mode: Normal

 

Running processes:

C:\Windows\system32\taskeng.exe

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskhost.exe

C:\Windows\Explorer.EXE

C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe

C:\Program Files\IObit\Game Booster\gbtray.exe

C:\Program Files\Alwil Software\Avast5\AvastUI.exe

C:\Program Files\Common Files\Java\Java Update\jusched.exe

C:\Program Files\Iminent\IMBooster\IMBooster.exe

C:\Users\ivan\AppData\Roaming\Stealth Software\HTC Home\HTCHome.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

C:\Program Files\DAEMON Tools Lite\DTLite.exe

C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

C:\Users\ivan\Desktop\D3DOverrider\D3DOverrider.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\Google\Chrome\Application\chrome.exe

C:\Program Files\CCleaner\CCleaner.exe

C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2405280

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 

R3 - URLSearchHook: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof0.dll

R3 - URLSearchHook: (no name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - (no file)

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll

O2 - BHO: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof0.dll

O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll

O2 - BHO: IMinent WebBooster - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files\Iminent\IMBooster4Web\Iminent.WebBooster.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll

O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O3 - Toolbar: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof0.dll

O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll

O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui

O4 - HKLM\..\Run: [B2C_AGENT] C:\ProgramData\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe

O4 - HKLM\..\Run: [Microsoft Default Manager] "C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume

O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"

O4 - HKLM\..\Run: [IMBooster] C:\Program Files\Iminent\IMBooster\imbooster.exe /warmup

O4 - HKLM\..\Run: [D3DOverrider] "C:\Users\ivan\Desktop\D3DOverrider\D3DOverriderWrapper.exe" /s

O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript

O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\steam.exe" -silent

O4 - HKCU\..\Run: [HTC Home Widget] C:\Users\ivan\AppData\Roaming\Stealth Software\HTC Home\HTCHome.exe

O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun

O4 - HKCU\..\Run: [Realtek Voice] C:\install\Realtek Voice Manager.exe

O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-21-3621814014-2523614508-3206823753-1011\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'postgres')

O4 - HKUS\S-1-5-21-3621814014-2523614508-3206823753-1011\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'postgres')

O4 - Startup: trzFE08.tmp

O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html

O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll

O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe

O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll

O15 - Trusted IP range: http://192.168.1.254

O15 - ESC Trusted IP range: http://192.168.1.254

O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe

O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

O23 - Service: Usluga Google ažuriranje (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

O23 - Service: Postgres 8.3.9 (postgresql-8.3) - PostgreSQL Global Development Group - C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe

O23 - Service: PostgreSQL Server 8.4 (postgresql-8.4) - PostgreSQL Global Development Group - C:/Program Files/PostgreSQL/8.4/bin/pg_ctl.exe

O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

 

--

End of file - 10314 bytes

dejanceeeeeeeeee
15 godina
neaktivan
offline
Može li malvarbayts uklonit keyloder

 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2405280

R3 - URLSearchHook: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof0.dll

R3 - URLSearchHook: (no name) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - (no file)

O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll

O2 - BHO: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof0.dll

 
   O3 - Toolbar: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof0.dll

O3 - Toolbar: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll 

fixaj to

..balkan macho boy is so hot
15 godina
neaktivan
offline
Može li malvarbayts uklonit keyloder

što se tiče jače zaštite,i protiv krađe podataka,passworda i ostalih neovlaštenih upada na komp,pgledaj malo ovaj program
spyshelter ,free verziju,mislim da ima i na hrvatskom,pa ako se snalaziš s takvim aplikacijama,evo preporuka,pozdrav

..balkan macho boy is so hot
13 godina
offline
RE: Može li malvarbayts uklonit keyloder
seneka kaže...

što se tiče jače zaštite,i protiv krađe podataka,passworda i ostalih neovlaštenih upada na komp,pgledaj malo ovaj program
spyshelter ,free verziju,mislim da ima i na hrvatskom,pa ako se snalaziš s takvim aplikacijama,evo preporuka,pozdrav

Hvala ti puno 

dejanceeeeeeeeee
13 godina
offline
Može li malvarbayts uklonit keyloder

25.1.2011. 20:15:39,C:\Windows\explorer.exe,11,Blocked ;Record keyboard input 25.1.2011. 20:17:13,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,40,Blocked ;Opening process or thread for modify access 25.1.2011. 20:17:56,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,38,Blocked ;Accessing to harddisk 25.1.2011. 20:17:57,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,38,Blocked ;Accessing to harddisk 25.1.2011. 20:21:55,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,38,Blocked ;Accessing to harddisk 25.1.2011. 20:21:56,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,38,Blocked ;Accessing to harddisk

 

 

Sa ovim zadnjim programom izbacuje mi ovo

dejanceeeeeeeeee
13 godina
offline
RE: Može li malvarbayts uklonit keyloder
dejan1471 kaže...

25.1.2011. 20:15:39,C:\Windows\explorer.exe,11,Blocked ;Record keyboard input 25.1.2011. 20:17:13,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,40,Blocked ;Opening process or thread for modify access 25.1.2011. 20:17:56,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,38,Blocked ;Accessing to harddisk 25.1.2011. 20:17:57,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,38,Blocked ;Accessing to harddisk 25.1.2011. 20:21:55,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,38,Blocked ;Accessing to harddisk 25.1.2011. 20:21:56,C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe,38,Blocked ;Accessing to harddisk

 

 

Sa ovim zadnjim programom izbacuje mi ovo

Jesi stisnuo Block ili? Mislim da nije za tebe punokrvni HIPS, već neki light, kao što je WinPatrol.

the funniest thing about this particular signature is that by the time you realise it doesn't say anything it's too late to stop reading it
Nova poruka
E-mail:
Lozinka:
 
vrh stranice