[ Slobodan Miskovic @ 22.08.2004. 15:48 ] @
Naime imam ogroman problem, sve mi je poludelo od kada je neki glupi

proglam za ciscenje sistema od spyware-a obrisao neke file-ove, non stop mi

trazi neki winupd.dll, kao RUNDLL je aplikacija i obavestava me sledece..

Error loading winupd.dll, The specified module could not be found. Inace ne

mogu ni da pisem poruke na ES-u, niti da citam privatne poruke pa moram

preko News servera...
[ Marenović Slaviša @ 22.08.2004. 16:02 ] @
Jesi li pokusao da skines taj fajl sa neta????
[ borstale @ 22.08.2004. 16:11 ] @
http://forums.thatcomputerguy.us/index.php?showtopic=5105
Mogao si ovo i sam da nađeš, al nema veze...
[ crews_adder @ 22.08.2004. 16:19 ] @
Meni nedostaje hpfsched.src . Googlao sam ali sam samo nasao da je u vezi sa Panda Antivirus Platinumom, mada mi lici na neki fajl koji pripada HP-u (Desk ili OfficeJet-u). Zna li neko nesto vise?
[ Nabukodonosor @ 22.08.2004. 23:04 ] @
STELLANOVA, sta je sa tobom? Nit se javljas, niti pises! Jel citas PP?
[ Goran Mijailovic @ 23.08.2004. 00:16 ] @
Citat:
Nabukodonosor: STELLANOVA, sta je sa tobom? Nit se javljas, niti pises! Jel citas PP?
Citat:
STELLANOVA: Inace ne
mogu ni da pisem poruke na ES-u, niti da citam privatne poruke pa moram
preko News servera...

MISLIM???
[ Nabukodonosor @ 23.08.2004. 01:15 ] @
Nisam citao sta je pisao, samo sam na brzinu video da je on. Ko nema u glavi...
[ Slobodan Miskovic @ 23.08.2004. 09:26 ] @
Evo javljam se...ovo sto sto je bilo u prethodnom linku nije resilo

problem...inace ako neko moze da pomogne evo copy-paste-ovan log file iz

hijackthis programa...




Logfile of HijackThis v1.98.2

Scan saved at 10.21.14, on 23/08/2004

Platform: Windows XP SP1 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)


Running processes:

C:WINDOWSSystem32smss.exe

C:WINDOWSsystem32winlogon.exe

C:WINDOWSsystem32services.exe

C:WINDOWSsystem32lsass.exe

C:WINDOWSsystem32svchost.exe

C:WINDOWSSystem32svchost.exe

C:WINDOWSExplorer.EXE

C:WINDOWSsystem32spoolsv.exe

C:CFusionMXruntimebinjrunsvc.exe

C:CFusionMXdbslserver52binswagent.exe

C:CFusionMXdbslserver52binswstrtr.exe

C:CFusionMXruntimebinjrun.exe

C:CFusionMXdbslserver52binswsoc.exe

C:Program FilesNetwork AssociatesCommon FrameworkFrameworkService.exe

C:Program FilesNetwork AssociatesVirusScanMcshield.exe

C:Program FilesNetwork AssociatesVirusScanVsTskMgr.exe

C:WINDOWSSystem32nvsvc32.exe

C:WINDOWSSystem32PGPsdkServ.exe

C:WINDOWSSystem32svchost.exe

C:Program FilesNetwork AssociatesVirusScanSHSTAT.EXE

C:Program FilesNetwork AssociatesCommon FrameworkUpdaterUI.exe

C:Program FilesFarStoneVirtualDrivevdtask.exe

C:PROGRA~1KYEGENIUS~1mouseElf.exe

C:WINDOWSSystem32cfpsys.exe

C:Program FilesFarStoneVirtualDriveNetsrv.exe

C:Program FilesJavaj2re1.4.2_03binjusched.exe

C:Program FilesCommon filesupdmgrupdmgr.exe

C:WINDOWSAGRSMMSG.exe

C:WINDOWSSystem32RUNDLL32.EXE

C:DOCUME~1MiskovicLOCALS~1TempFreeRAM XP Pro 1.40.exe

C:WINDOWSSystem32ctfmon.exe

C:WINDOWSSystem32wbemwmiapsrv.exe

C:PROGRA~1ICQICQ.exe

C:Program FilesInternet Exploreriexplore.exe

C:Program Files40tude Dialogdialog.exe

C:Documents and SettingsMiskovicDesktopNEWhijackthis1982.exe


O2 - BHO: DNSProxyObj Class - {06594350-D723-11D8-9669-0800200C9A66} -

c:windowssystem32DNSProxy.dll

O2 - BHO: CATLEvents Object - {3EC8E271-FAB9-418a-8A8E-65AEB4029E64} -

C:DOCUME~1MiskovicLOCALS~1Tempdrahksid.dat

O2 - BHO: CATLEvents Object - {60112085-E1CE-4e0e-823A-EBB1AD98804C} -

C:DOCUME~1MiskovicLOCALS~1Tempdrahksid.dat

O2 - BHO: CATLEvents Object - {72AC6865-B1D3-4C32-A27B-4B3BF04DE655} -

C:DOCUME~1MiskovicLOCALS~1Tempdrahksid.dat

O2 - BHO: NLS UrlCatcher Class - {AEECBFDA-12FA-4881-BDCE-8C3E1CE4B344} -

C:WINDOWSSystem32nvms.dll

O2 - BHO: CB UrlCatcher Class - {CE188402-6EE7-4022-8868-AB25173A3E14} -

C:WINDOWSSystem32mscb.dll

O2 - BHO: ADP UrlCatcher Class - {F4E04583-354E-4076-BE7D-ED6A80FD66DA} -

C:WINDOWSSystem32msbe.dll

O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} -

C:PROGRA~1FLASHGETfgiebar.dll

O4 - HKLM..Run: [SystemTray] SysTray.Exe

O4 - HKLM..Run: [ShStatEXE] "C:Program FilesNetwork

AssociatesVirusScanSHSTAT.EXE" /STANDALONE

O4 - HKLM..Run: [McAfeeUpdaterUI] "C:Program FilesNetwork

AssociatesCommon FrameworkUpdaterUI.exe"

O4 - HKLM..Run: [Virtual Drive] "C:Program

FilesFarStoneVirtualDrivevdtask.exe"

O4 - HKLM..Run: [mouseElf] C:PROGRA~1KYEGENIUS~1mouseElf.exe

O4 - HKLM..Run: [Warning: do not remove it! (system)] cfpsys.exe

O4 - HKLM..Run: [SunJavaUpdateSched] C:Program

FilesJavaj2re1.4.2_03binjusched.exe

O4 - HKLM..Run: [updmgr] C:Program FilesCommon filesupdmgrupdmgr.exe

O4 - HKLM..Run: [Babylon Client] C:Program FilesBabylonBabylon.exe

-AutoStart

O4 - HKLM..Run: [updater] C:Program FilesCommon

filesupdaterwupdater.exe

O4 - HKLM..Run: [Mirabilis ICQ] C:PROGRA~1ICQICQNet.exe

O4 - HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe

O4 - HKLM..Run: [AGRSMMSG] AGRSMMSG.exe

O4 - HKLM..Run: [NvCplDaemon] RUNDLL32.EXE

C:WINDOWSSystem32NvCpl.dll,NvStartup

O4 - HKCU..Run: [NvMediaCenter] RUNDLL32.EXE

C:WINDOWSSystem32NVMCTRAY.DLL,NvTaskbarInit

O4 - HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe"

/background

O4 - HKCU..Run: [FreeRAM XP] "C:DOCUME~1MiskovicLOCALS~1TempFreeRAM

XP Pro 1.40.exe" -win

O4 - HKCU..Run: [ctfmon.exe] C:WINDOWSSystem32ctfmon.exe

O4 - Startup: PalNetaware.lnk = C:Program FilesPaltalkpnetaware.exe

O4 - Global Startup: Adobe Gamma Loader.lnk = C:Program FilesCommon

FilesAdobeCalibrationAdobe Gamma Loader.exe

O4 - Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft

OfficeOffice10OSA.EXE

O4 - Global Startup: Microsoft Office OneNote 2003 Quick Launch.lnk =

C:Program FilesMicrosoft OfficeOFFICE11ONENOTEM.EXE

O8 - Extra context menu item: Download All by FlashGet - C:Program

FilesFlashGetjc_all.htm

O8 - Extra context menu item: Download using FlashGet - C:Program

FilesFlashGetjc_link.htm

O8 - Extra context menu item: E&xport to Microsoft Excel -

res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000

O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} -

C:PROGRA~1ICQICQ.exe

O9 - Extra "Tools" menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} -

C:PROGRA~1ICQICQ.exe

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -

C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL

O9 - Extra button: ICQ 4.0 - {B863453A-26C3-4e1f-A54D-A2CD196348E9} -

C:Program FilesICQLiteICQLite.exe

O9 - Extra "Tools" menuitem: ICQ Lite -

{B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:Program

FilesICQLiteICQLite.exe

O10 - Unknown file in Winsock LSP: c:windowssystem32inetadpt.dll

O10 - Unknown file in Winsock LSP: c:windowssystem32inetadpt.dll

O10 - Unknown file in Winsock LSP: c:windowssystem32inetadpt.dll

O10 - Unknown file in Winsock LSP: c:windowssystem32inetadpt.dll

O12 - Plugin for .mov: C:Program FilesInternet

ExplorerPLUGINSnpqtplugin.dll

O12 - Plugin for .mp3: C:Program FilesInternet

ExplorerPLUGINSnpqtplugin3.dll

O12 - Plugin for .mpeg: C:Program FilesInternet

ExplorerPLUGINSnpqtplugin3.dll

O17 -

HKLMSystemCCSServicesTcpip..{58E2AB2F-572F-46CD-AA67-9E737FCCC037}:

NameServer = 212.124.160.1 212.124.160.2