Navigacija
Lista poslednjih: 16, 32, 64, 128 poruka.

Inject.FM trojan

[es] :: Zaštita :: Inject.FM trojan

[ Pregleda: 551 | Odgovora: 5 ]

Postavi temu Odgovori

Autor

Pretraga teme: Traži
Markiranje Štampanje RSS

JankoNIS
Jankovic Vojislav
Nis

Član broj: 39200
Poruke: 331
212.200.45.*

Sajt: gpsserbia.com, put.in.r..


Profil

icon Inject.FM trojan13.11.2007. u 17:15

Prijavljuje ga obavezno kod dizanja sistema i povremeno u toku rada. NOD ga vezuje za svchost.exe. Kako se ovo otklanja? Hvala.
Kvaka 22
Prikačeni fajlovi
13.11.2007. u 17:15 

Binary Mind
11040

Član broj: 28245
Poruke: 3574
*.adsl-3.sezampro.yu.



Profil

icon Re: Inject.FM trojan14.11.2007. u 17:03
Okaci HiJackThis! log. Koristi verziju 1.99.1...
Open-mindedness is considered a virtue, and true open-mindedness is, but don’t be so open minded that your brains fall out...

...It's not enough to simply not be so open minded that your brains fall out. It is equally important to have adequate bullshit deflectors in place so that the unscrupulous don't just fill your wide open mind with lies and nonsense.

14.11.2007. u 17:03 

JankoNIS
Jankovic Vojislav
Nis

Član broj: 39200
Poruke: 331
212.200.45.*

Sajt: gpsserbia.com, put.in.r..


Profil

icon Re: Inject.FM trojan17.11.2007. u 20:46
Evo ga. Nije bas ta verzija. Ako treba da pronadjem i nju, pa da okacim sa njom. Hvala.
Kvaka 22
Prikačeni fajlovi
17.11.2007. u 20:46 

Binary Mind
11040

Član broj: 28245
Poruke: 3574
*.adsl-1.sezampro.yu.



Profil

icon Re: Inject.FM trojan18.11.2007. u 14:50
Obrisi sledece u HiJackThis!-u (stikliraj i klikni na Fix Checked):

O4 - HKLM\..\Policies\Explorer\Run: [4F27V1D89M] C:\WINDOWS\service32.exe

O4 - HKLM\..\Policies\Explorer\Run: [Service] C:\WINDOWS\sysnet32.exe

O23 - Service: FCI - Unknown owner - C:\WINDOWS\system32\svchost.exe:ext.exe


Voleo bih ipak da vidim log starije verzije HJT! 1.99.1. Uradi pretragu bas na ovom forumu jer sam sigurno postvao link gde moze da se skine.

P.S. Ako su fajlovi koji su prikazani u gornjim vrednostima za brisanje jos prisutni obrisi ih rucno.
Open-mindedness is considered a virtue, and true open-mindedness is, but don’t be so open minded that your brains fall out...

...It's not enough to simply not be so open minded that your brains fall out. It is equally important to have adequate bullshit deflectors in place so that the unscrupulous don't just fill your wide open mind with lies and nonsense.

18.11.2007. u 14:50 

JankoNIS
Jankovic Vojislav
Nis

Član broj: 39200
Poruke: 331
212.200.45.*

Sajt: gpsserbia.com, put.in.r..


Profil

icon Re: Inject.FM trojan18.11.2007. u 15:50
OK, hvala, probacu i javicu sta se desava.

Edit: Uradio sam kako si rekao, i posle reseta (jer je on to trazio) nije mi se nista pojavilo kod podizanja sistema.
Evo ti u prilogu log posle brisanja sumnjivih stavki.

Hvala jos jednom.

[Ovu poruku je menjao JankoNIS dana 18.11.2007. u 17:06 GMT+1]
Kvaka 22
Prikačeni fajlovi
18.11.2007. u 15:50 

Binary Mind
11040

Član broj: 28245
Poruke: 3574
*.adsl-2.sezampro.yu.



Profil

icon Re: Inject.FM trojan18.11.2007. u 19:02
Log izgleda dobro.
Open-mindedness is considered a virtue, and true open-mindedness is, but don’t be so open minded that your brains fall out...

...It's not enough to simply not be so open minded that your brains fall out. It is equally important to have adequate bullshit deflectors in place so that the unscrupulous don't just fill your wide open mind with lies and nonsense.

18.11.2007. u 19:02 

[es] :: Zaštita :: Inject.FM trojan

[ Pregleda: 551 | Odgovora: 5 ]

Postavi temu Odgovori

Navigacija
Lista poslednjih: 16, 32, 64, 128 poruka.