Evo pre neki dan sam pridikovao da svaki je računar zaštićen onoliko koliko ga on sam ume zaštiti i evo i ja sam natrapao na celu kolekciju virusa.
Skinuo sam bio sa net-a igricu preko torrenta , preskenirao antivirusom i ono ništa nije pokazalo. Krenuo sa instalacijom i komp mi je zablokirao kada je antivirus (Avast) krenuo da vrišti izbacujući mi gomilu upozorenja i bla bla bla....... , restartovao sam kompjuter u safe modu podigao antivirus i zakazao "sheduler" pri sledecem podizanju sistema i imao sam šta da vidim negde oko 40 fajlova sam imao zaraženo koje je antivirus obrisao iz c diska , , uključujući i viruse koji se skrivaju inače u radnoj memoriji.zatim opet restart sistema i upotreba cele palete programa za zaštitu od spayvera i malwera:
- Hijjack this
- Spyboat Search and Destroy
- Ad awere
- UnHack Me
- Superantispyvere
- smitrfraudfix
- vundofix
- Dr web
- Fixwareout
Ostao na 10 nerešenih problema koje mi je prikazivao još jedino "spyboat serch and destroy" i tada sam naleteo na program Malwarebytes , koji je u jednom potezu uklonio sve odjednom. Program je izuzetno funkcionalan i dobar i moja pohvala i preporuka za njeno korištenje:
Inače log fajl :
Malwarebytes' Anti-Malware 1.31
Database version: 1596
Windows 5.1.2600 Service Pack 2
2.1.2009 13:01:06
mbam-log-2009-01-02 (13-01-06).txt
Scan type: Quick Scan
Objects scanned: 50638
Time elapsed: 2 minute(s), 14 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 2
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 6
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\urqricdu -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\URQRICDU.DLL.del (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\xpaaovpp.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\XXYXVONH.DLL.del (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\iifeeEwT.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\mcrh.tmp (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSlxcp.dll (Trojan.Agent) -> Quarantined and deleted successfully.
Posle ovoga više ni spyboat nije prikazivao probleme!
Skinuo sam bio sa net-a igricu preko torrenta , preskenirao antivirusom i ono ništa nije pokazalo. Krenuo sa instalacijom i komp mi je zablokirao kada je antivirus (Avast) krenuo da vrišti izbacujući mi gomilu upozorenja i bla bla bla....... , restartovao sam kompjuter u safe modu podigao antivirus i zakazao "sheduler" pri sledecem podizanju sistema i imao sam šta da vidim negde oko 40 fajlova sam imao zaraženo koje je antivirus obrisao iz c diska , , uključujući i viruse koji se skrivaju inače u radnoj memoriji.zatim opet restart sistema i upotreba cele palete programa za zaštitu od spayvera i malwera:
- Hijjack this
- Spyboat Search and Destroy
- Ad awere
- UnHack Me
- Superantispyvere
- smitrfraudfix
- vundofix
- Dr web
- Fixwareout
Ostao na 10 nerešenih problema koje mi je prikazivao još jedino "spyboat serch and destroy" i tada sam naleteo na program Malwarebytes , koji je u jednom potezu uklonio sve odjednom. Program je izuzetno funkcionalan i dobar i moja pohvala i preporuka za njeno korištenje:
Inače log fajl :
Malwarebytes' Anti-Malware 1.31
Database version: 1596
Windows 5.1.2600 Service Pack 2
2.1.2009 13:01:06
mbam-log-2009-01-02 (13-01-06).txt
Scan type: Quick Scan
Objects scanned: 50638
Time elapsed: 2 minute(s), 14 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 2
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 6
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\urqricdu -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\URQRICDU.DLL.del (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\xpaaovpp.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\XXYXVONH.DLL.del (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\iifeeEwT.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\mcrh.tmp (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSlxcp.dll (Trojan.Agent) -> Quarantined and deleted successfully.
Posle ovoga više ni spyboat nije prikazivao probleme!