![]() |
(riješeno) Bifrose.LA
..postoji li nacin da ga se makne i s cime, ja sam ga jedan dan obrisala sa Spyboot Search and Destroy, on se opet pojavljuje, pomozite kako??hvala:respekt:..a da nalazi se u hkey local maschine
|
|
Ajme to je neka komplikacija..:(
|
u safe modu ga uopce ne pronalazi, pa sta ne zn aniko nekakav program koji ovo mice??
|
A koji antivirus imaš? Jesi probala s nekim od online skenera?
|
Citiraj:
|
probaj s kasperskim iz safe moda
|
nije ga vidio kaspesrki iz safe moda..
|
nod32 free trail? bitdefender online scan? f-secure online scan? spyware doctor? safe mode + iskljucen system restore?
|
sve sam zivo pokusala i nikako nisam uspjela maknut taj bifrose , ma katastrofa..cak sam brisala disk i reinstalirala..jel moguce da dolazi sa updte win..il nekim programom..ma nemam pojma
Citiraj:
|
kaj još to nisi počistila? :)
Citiraj:
Probaj iz safe moda pokrenuti spyboot, ad-aware i ewido, svaki posebno s najnovijim definicijama. I naravno, neki dobar AV, također iz safe moda s najnovijim definicijama (NOD32 trial će ti biti ok) |
ma nemam pojma ..vec sam izludila..pa cijelo vrijeme probavam..uh
|
Citiraj:
|
Citiraj:
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:20:13, on 21.8.2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Eset\nod32kui.exe C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Program Files\Comodo\Firewall\CPF.exe C:\WINDOWS\system32\devldr32.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe C:\Program Files\Comodo\Firewall\cmdagent.exe C:\Program Files\Eset\nod32krn.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\System32\wbem\wmiprvse.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\Comodo\Firewall\CPF.exe" /background O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe" O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/micr...?1187216543785 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/micr...?1187216532699 O23 - Service: Comodo Application Agent (CmdAgent) - COMODO - C:\Program Files\Comodo\Firewall\cmdagent.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe -- End of file - 3897 bytes skenirala sam u safe modu Spybotom i NODom i tamo se uopce ne vidi, pa sta niko nema pojma????ajoooooooooj:hitthewal::hitthewal: |
Hijackthis ti je clean. Uglavnom ugasi System Restore. Desna tipka My Computer - Properties - Tab system Restore - čekiraj Turn off System restore na oba drive-a. I onda probaj pokrenut Spybot Search & Destroy i obrisat to.
Jesi radila čistu instalaciju Winsa ili upgrade? Jer to se ne bi trebalo događat ako je skroz formatirano. Inače koje programe koristiš, da nije BSPlayer možda, on voli ubacit dodatne programe u svoju instalaciju. Nabaci PrintScreen tu od Start Meni-a, nemoraš ih sve pisat ;). |
Citiraj:
e da iskljucila sam restore |
Klikneš tipku na tipkovnici 'PrtScr' i klikneš na START>PROGRAMS>ACCESSORIES>PAINT pa klikneš na EDIT i na PASTE.
|
Citiraj:
Ipak, probaj maknut slijedeće u HijackThis-u Citiraj:
|
Hvala ljudi, sta bi ja bez vas, pozdrav:goood:
cini se da sam ga maknula uz pomoc Kasperskogm a inace programi su ovi http://img519.imageshack.us/img519/3...top2hy3.th.png zbrisan je..jeeeeeeeeeeeeeeeeeeeeee:CoolRamb: |
Sva vremena su GMT +2. Sada je 08:51. |
Powered by vBulletin®
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
© 1999-2024 PC Ekspert - Sva prava pridržana ISSN 1334-2940
Ad Management by RedTyger