Evo ovako. Gmer logovi:
GmerLog1
GMER 1.0.15.15281 -
http://www.gmer.net
Rootkit quick scan 2010-02-07 12:55:18
Windows 5.1.2600 Service Pack 2
Running: lft1w0kp.exe; Driver: C:\DOCUME~1\computer\LOCALS~1\Temp\kftdrpow.sys
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Ntfs \Ntfs AVGIDSFilter.sys (IDS Application Activity Monitor Filter Driver./AVG Technologies )
AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\Udp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\Tcpip \Device\RawIp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
---- EOF - GMER 1.0.15 ----
GmerLog2
GMER 1.0.15.15281 -
http://www.gmer.net
Rootkit scan 2010-02-07 12:56:17
Windows 5.1.2600 Service Pack 2
Running: lft1w0kp.exe; Driver: C:\DOCUME~1\computer\LOCALS~1\Temp\kftdrpow.sys
---- Modules - GMER 1.0.15 ----
Module viaide.sys (Generic PCI IDE Bus Driver/Microsoft Corporation) F837E000-F8380000 (8192 bytes)
Module PxHelp20.sys (Px Engine Device Driver for Windows 2000/XP/Sonic Solutions) F7EEA000-F7EF4000 (40960 bytes)
Module avgrkx86.sys (AVG Anti-Rootkit Driver/AVG Technologies CZ, s.r.o.) F7C7B000-F7CA1000 (155648 bytes)
Module AVGIDSxx.sys (IDS Application Activity Monitor Helper Driver./AVG Technologies ) F7F0A000-F7F13000 (36864 bytes)
Module \SystemRoot\system32\DRIVERS\vtmini.sys (VIA/S3G Miniport Driver/Copyright (C) VIA/S3 Graphics, Inc.) F76CD000-F770E000 (266240 bytes)
Module \SystemRoot\system32\drivers\ALCXWDM.SYS (Realtek AC'97 Audio Driver (WDM)/Realtek Semiconductor Corp.) F7284000-F7673000 (4124672 bytes)
Module \SystemRoot\system32\DRIVERS\fetnd5.sys (NDIS 5.0 miniport driver/VIA Technologies, Inc. ) F818A000-F8191000 (28672 bytes)
Module \SystemRoot\system32\DRIVERS\avgfwdx.sys (AVG Firewall intermediate miniport driver/AVG Technologies CZ, s.r.o.) F81A2000-F81A9000 (28672 bytes)
Module \SystemRoot\system32\DRIVERS\ptilink.sys (Parallel Technologies DirectParallel IO Library/Parallel Technologies, Inc.) F81BA000-F81BF000 (20480 bytes)
Module \SystemRoot\System32\Drivers\avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.) F5ADD000-F5B34000 (356352 bytes)
Module \??\C:\Program_Files\SUPERAntiSpyware\SASKUTIL.sys (SASKUTIL.SYS/SUPERAdBlocker.com and SUPERAntiSpyware.com) F5A6E000-F5A93000 (151552 bytes)
Module \??\C:\Program_Files\SUPERAntiSpyware\SASDIFSV.SYS (SASDIFSV.SYS/SUPERAdBlocker.com and SUPERAntiSpyware.com) F8202000-F8208000 (24576 bytes)
Module \SystemRoot\system32\DRIVERS\LV561AV.SYS (Logitech Video Driver/Logitech Inc.) F5872000-F58EA000 (491520 bytes)
Module \SystemRoot\System32\Drivers\avgmfx86.sys (AVG Resident Shield Minifilter Driver/AVG Technologies CZ, s.r.o.) F822A000-F8230000 (24576 bytes)
Module \SystemRoot\System32\Drivers\avgldx86.sys (AVG AVI Loader Driver/AVG Technologies CZ, s.r.o.) F5822000-F5872000 (327680 bytes)
Module \SystemRoot\System32\vtdisp.dll (VIA/S3G Graphics Driver/VIA/S3 Graphics, Inc.) BF9D4000-BFB99000 (1855488 bytes)
Module \??\C:\WINDOWS\system32\drivers\mbam.sys (Malwarebytes' Anti-Malware/Malwarebytes Corporation) F57E2000-F57E6000 (16384 bytes)
Module \??\C:\Program_Files\AVG\AVG9\Identity_Protection\Agent\Driver\Platform_XP\AVGIDSShim.sys (IDS Application Activity Monitor Loader Driver./AVG Technologies ) F815A000-F815F000 (20480 bytes)
Module \??\C:\Program_Files\AVG\AVG9\Identity_Protection\Agent\Driver\Platform_XP\AVGIDSFilter.sys (IDS Application Activity Monitor Filter Driver./AVG Technologies ) B69A8000-B69B2000 (40960 bytes)
Module \??\C:\Program_Files\AVG\AVG9\Identity_Protection\Agent\Driver\Platform_XP\AVGIDSDriver.sys (IDS Application Activity Monitor Driver./AVG Technologies ) B67D0000-B67F8000 (163840 bytes)
Module \SystemRoot\system32\DRIVERS\secdrv.sys (Macrovision SECURITY Driver/Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) B6217000-B623F000 (163840 bytes)
Module \SystemRoot\system32\DRIVERS\LVPr2Mon.sys F8162000-F8167000 (20480 bytes)
Module \??\C:\DOCUME~1\computer\LOCALS~1\Temp\kftdrpow.sys (GMER) B4928000-B493F000 (94208 bytes)
---- Processes - GMER 1.0.15 ----
Process C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech LVPrcSrv Module./Logitech Inc.) 260
Library C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech LVPrcSrv Module./Logitech Inc.) 0x00400000
Process C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes' Anti-Malware/Malwarebytes Corporation) 320
Library C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes' Anti-Malware/Malwarebytes Corporation) 0x00400000
Process C:\WINDOWS\Explorer.EXE (Windows Explorer/Microsoft Corporation) 348
Library C:\WINDOWS\TEMP\logishrd\LVPrcInj01.dll (Camera Helper Library./Logitech Inc.) 0x00D30000
Library C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (ShellExecuteHook/SuperAdBlocker.com) 0x10000000
Library C:\WINDOWS\system32\msdmo.dll 0x736B0000
Process C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe (AVG IDS application/AVG Technologies CZ, s.r.o.) 536
Library C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe (AVG IDS application/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\boost_thread-vc71-mt-1_32.dll 0x10000000
Library C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\boost_log-vc71-mt-1_32.dll 0x00380000
Process C:\Program Files\AVG\AVG9\avgam.exe (AVG Alert Manager/AVG Technologies CZ, s.r.o.) 820
Library C:\Program Files\AVG\AVG9\avgam.exe (AVG Alert Manager/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgcfgx.dll (AVG Configuration Module/AVG Technologies CZ, s.r.o.) 0x6A920000
Library C:\Program Files\AVG\AVG9\avglngx.dll (AVG Language Module/AVG Technologies CZ, s.r.o.) 0x6BBD0000
Library C:\Program Files\AVG\AVG9\avgidpsdkx.dll (AVG Identity Protection Library/AVG Technologies CZ, s.r.o.) 0x10000000
Library C:\Program Files\AVG\AVG9\avgameh.dll (AVG Alert Manager Library/AVG Technologies CZ, s.r.o.) 0x6A520000
Library C:\Program Files\AVG\AVG9\avgamnot.dll (AVG Event Notification Library/AVG Technologies CZ, s.r.o.) 0x6A5B0000
Process C:\PROGRA~1\AVG\AVG9\avgtray.exe (AVG Tray Monitor/AVG Technologies CZ, s.r.o.) 984
Library C:\PROGRA~1\AVG\AVG9\avgtray.exe (AVG Tray Monitor/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgcfgx.dll (AVG Configuration Module/AVG Technologies CZ, s.r.o.) 0x6A920000
Library C:\Program Files\AVG\AVG9\avglngx.dll (AVG Language Module/AVG Technologies CZ, s.r.o.) 0x6BBD0000
Library C:\Program Files\AVG\AVG9\avguires.dll (AVG User Interface Resource Library/AVG Technologies CZ, s.r.o.) 0x6D0B0000
Library C:\Program Files\AVG\AVG9\avgidpsdkx.dll (AVG Identity Protection Library/AVG Technologies CZ, s.r.o.) 0x10000000
Process C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\avgidsmonitor.exe (AVG IDS application/AVG Technologies CZ, s.r.o.) 1068
Library C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\avgidsmonitor.exe (AVG IDS application/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\boost_thread-vc71-mt-1_32.dll 0x10000000
Library C:\Program Files\AVG\AVG9\Identity Protection\agent\bin\boost_log-vc71-mt-1_32.dll 0x00380000
Process C:\WINDOWS\system32\winlogon.exe (Windows NT Logon Application/Microsoft Corporation) 1136
Library C:\WINDOWS\system32\avgrsstx.dll (AVG Resident Shield Starter/AVG Technologies CZ, s.r.o.) 0x6C1B0000
Process C:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Watchdog Service/AVG Technologies CZ, s.r.o.) 1360
Library C:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Watchdog Service/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgwd.dll (AVG Watchdog Module/AVG Technologies CZ, s.r.o.) 0x6D740000
Library C:\Program Files\AVG\AVG9\avgcfgx.dll (AVG Configuration Module/AVG Technologies CZ, s.r.o.) 0x6A920000
Library C:\Program Files\AVG\AVG9\avgidpsdkx.dll (AVG Identity Protection Library/AVG Technologies CZ, s.r.o.) 0x10000000
Library C:\Program Files\AVG\AVG9\avgaspmx.dll (AVG Antispam Module/AVG Technologies CZ, s.r.o.) 0x6A7F0000
Library C:\Program Files\AVG\AVG9\avgsched.dll (AVG Scheduler Module/AVG Technologies CZ, s.r.o.) 0x6C250000
Library C:\Program Files\AVG\AVG9\avgwdwsc.dll (AVG Windows Security Center Module/AVG Technologies CZ, s.r.o.) 0x6D930000
Library C:\Program Files\AVG\AVG9\avglngx.dll (AVG Language Module/AVG Technologies CZ, s.r.o.) 0x6BBD0000
Process C:\Program Files\AVG\AVG9\avgfws9.exe (AVG Firewall Service/AVG Technologies CZ, s.r.o.) 1496
Library C:\Program Files\AVG\AVG9\avgfws9.exe (AVG Firewall Service/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avgcertx.dll (AVG Cert SDK/AVG Technologies CZ, s.r.o.) 0x6E780000
Library C:\Program Files\AVG\AVG9\avgclitx.dll (AVG Scanning Core Module - Lite Version/AVG Technologies CZ, s.r.o.) 0x6AA70000
Library C:\Program Files\AVG\AVG9\avgchclx.dll (AVG Cache Manager Module - Client Part/AVG Technologies CZ, s.r.o.) 0x6E700000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgcfgx.dll (AVG Configuration Module/AVG Technologies CZ, s.r.o.) 0x6A920000
Library C:\Program Files\AVG\AVG9\avgidpsdkx.dll (AVG Identity Protection Library/AVG Technologies CZ, s.r.o.) 0x10000000
Library C:\Program Files\AVG\AVG9\avgmtrapx.dll (AVG M-TRAP Reporting Library/AVG Technologies CZ, s.r.o.) 0x02230000
Process C:\Program Files\AVG\AVG9\avgchsvx.exe (AVG Cache Server/AVG Technologies CZ, s.r.o.) 1736
Library C:\Program Files\AVG\AVG9\avgchsvx.exe (AVG Cache Server/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgchjwx.dll (AVG Scanning Cache Module/AVG Technologies CZ, s.r.o.) 0x6E870000
Library C:\Program Files\AVG\AVG9\avgcertx.dll (AVG Cert SDK/AVG Technologies CZ, s.r.o.) 0x6E780000
Library C:\Program Files\AVG\AVG9\avgclitx.dll (AVG Scanning Core Module - Lite Version/AVG Technologies CZ, s.r.o.) 0x6AA70000
Process C:\Program Files\AVG\AVG9\avgrsx.exe (AVG Resident Shield Service/AVG Technologies CZ, s.r.o.) 1744
Library C:\Program Files\AVG\AVG9\avgrsx.exe (AVG Resident Shield Service/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgcclix.dll (AVG Scanning Core Module - Client Part/AVG Technologies CZ, s.r.o.) 0x6A870000
Process C:\Program Files\Java\jre6\bin\jqs.exe (Java(TM) Quick Starter Service/Sun Microsystems, Inc.) 1760
Library C:\Program Files\Java\jre6\bin\jqs.exe (Java(TM) Quick Starter Service/Sun Microsystems, Inc.) 0x00400000
Process C:\Program Files\AVG\AVG9\avgcsrvx.exe (AVG Scanning Core Module - Server Part/AVG Technologies CZ, s.r.o.) 1956
Library C:\Program Files\AVG\AVG9\avgcsrvx.exe (AVG Scanning Core Module - Server Part/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgcorex.dll (AVG Scanning Core Module/AVG Technologies CZ, s.r.o.) 0x6AB10000
Library C:\Program Files\AVG\AVG9\avgcrlpx.dll (AVG Core RLP Module/AVG Technologies CZ, s.r.o.) 0x6B1F0000
Library C:\Program Files\AVG\AVG9\avgcertx.dll (AVG Cert SDK/AVG Technologies CZ, s.r.o.) 0x6E780000
Library C:\Program Files\AVG\AVG9\avgchclx.dll (AVG Cache Manager Module - Client Part/AVG Technologies CZ, s.r.o.) 0x6E700000
Process C:\Program Files\AVG\AVG9\avgemc.exe (AVG E-Mail Scanner/AVG Technologies CZ, s.r.o.) 2012
Library C:\Program Files\AVG\AVG9\avgemc.exe (AVG E-Mail Scanner/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\libsasl.dll (Cyrus SASL API implementation/AVG Technologies CZ, s.r.o.) 0x6DD70000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgapix.dll (AVG API Module/AVG Technologies CZ, s.r.o.) 0x6A630000
Library C:\Program Files\AVG\AVG9\avgcfgx.dll (AVG Configuration Module/AVG Technologies CZ, s.r.o.) 0x6A920000
Library C:\Program Files\AVG\AVG9\avglngx.dll (AVG Language Module/AVG Technologies CZ, s.r.o.) 0x6BBD0000
Library C:\Program Files\AVG\AVG9\avgscanx.dll (AVG Scanning Module/AVG Technologies CZ, s.r.o.) 0x6C1C0000
Library C:\Program Files\AVG\AVG9\avgsrmx.dll (AVG Scan Result Manager Module/AVG Technologies CZ, s.r.o.) 0x6C550000
Library C:\Program Files\AVG\AVG9\avgvvx.dll (AVG Virus Vault Module/AVG Technologies CZ, s.r.o.) 0x6D670000
Library C:\Program Files\AVG\AVG9\avgmvflx.dll (AVG Move File Library/AVG Technologies CZ, s.r.o.) 0x6BD30000
Library C:\Program Files\AVG\AVG9\avgcclix.dll (AVG Scanning Core Module - Client Part/AVG Technologies CZ, s.r.o.) 0x6A870000
Library C:\Program Files\AVG\AVG9\saslcrammd5.dll (Cyrus SASL API implementation/AVG Technologies CZ, s.r.o.) 0x6DDB0000
Library C:\Program Files\AVG\AVG9\sasldigestmd5.dll (Cyrus SASL API implementation/AVG Technologies CZ, s.r.o.) 0x6DDC0000
Library C:\Program Files\AVG\AVG9\sasllogin.dll (Cyrus SASL API implementation/AVG Technologies CZ, s.r.o.) 0x6DDA0000
Library C:\Program Files\AVG\AVG9\saslplain.dll (Cyrus SASL API implementation/AVG Technologies CZ, s.r.o.) 0x6DD90000
Library C:\Program Files\AVG\AVG9\avgaspmx.dll (AVG Antispam Module/AVG Technologies CZ, s.r.o.) 0x02120000
Library C:\Program Files\AVG\AVG9\winspamcatcher.dll (Mailshell Anti-Spam SDK/Mailshell) 0x10000000
Process C:\Program Files\AVG\AVG9\avgnsx.exe (AVG Network scanner Service/AVG Technologies CZ, s.r.o.) 2064
Library C:\Program Files\AVG\AVG9\avgnsx.exe (AVG Network scanner Service/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgcfgx.dll (AVG Configuration Module/AVG Technologies CZ, s.r.o.) 0x6A920000
Library C:\Program Files\AVG\AVG9\imsdk32.dll (IMFilter SDK/Winco Sistemas) 0x6DCF0000
Library C:\Program Files\AVG\AVG9\avgxpl.dll (LinkScanner SDK/AVG Technologies CZ, s.r.o.) 0x6DB90000
Library C:\Program Files\AVG\AVG9\avglvex.dll (AVG Prevalence Reporting Library/AVG Technologies CZ, s.r.o.) 0x10000000
Library C:\Program Files\AVG\AVG9\avgcclix.dll (AVG Scanning Core Module - Client Part/AVG Technologies CZ, s.r.o.) 0x6A870000
Process C:\Program Files\AVG\AVG9\avgcsrvx.exe (AVG Scanning Core Module - Server Part/AVG Technologies CZ, s.r.o.) 2412
Library C:\Program Files\AVG\AVG9\avgcsrvx.exe (AVG Scanning Core Module - Server Part/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgcorex.dll (AVG Scanning Core Module/AVG Technologies CZ, s.r.o.) 0x6AB10000
Library C:\Program Files\AVG\AVG9\avgcrlpx.dll (AVG Core RLP Module/AVG Technologies CZ, s.r.o.) 0x6B1F0000
Library C:\Program Files\AVG\AVG9\avgcertx.dll (AVG Cert SDK/AVG Technologies CZ, s.r.o.) 0x6E780000
Library C:\Program Files\AVG\AVG9\avgchclx.dll (AVG Cache Manager Module - Client Part/AVG Technologies CZ, s.r.o.) 0x6E700000
Process C:\Program Files\Mozilla Firefox\firefox.exe (Firefox/Mozilla Corporation) 2668
Library C:\Program Files\Mozilla Firefox\firefox.exe (Firefox/Mozilla Corporation) 0x00400000
Library C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation) 0x10000000
Library C:\Program Files\Mozilla Firefox\sqlite3.dll (SQLite Database Library/sqlite.org) 0x002D0000
Library C:\Program Files\Mozilla Firefox\MOZCRT19.dll (User-Generated Microsoft (R) C/C++ Runtime Library/Mozilla Foundation) 0x78130000
Library C:\Program Files\Mozilla Firefox\js3250.dll (Netscape 32-bit JavaScript Module/Netscape Communications Corporation) 0x004E0000
Library C:\Program Files\Mozilla Firefox\nspr4.dll (NSPR Library/Mozilla Foundation) 0x00350000
Library C:\Program Files\Mozilla Firefox\smime3.dll (NSS S/MIME Library/Mozilla Foundation) 0x00380000
Library C:\Program Files\Mozilla Firefox\nss3.dll (NSS Base Library/Mozilla Foundation) 0x005D0000
Library C:\Program Files\Mozilla Firefox\nssutil3.dll (NSS Utility Library/Mozilla Foundation) 0x003A0000
Library C:\Program Files\Mozilla Firefox\plc4.dll (PLC Library/Mozilla Foundation) 0x003C0000
Library C:\Program Files\Mozilla Firefox\plds4.dll (PLDS Library/Mozilla Foundation) 0x003D0000
Library C:\Program Files\Mozilla Firefox\ssl3.dll (NSS SSL Library/Mozilla Foundation) 0x003E0000
Library C:\WINDOWS\system32\USP10.dll (Uniscribe Unicode script processor/Microsoft Corporation) 0x74D90000
Library C:\Program Files\Mozilla Firefox\xpcom.dll (Mozilla Foundation) 0x00670000
Library C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll (Mozilla Foundation) 0x012F0000
Library C:\Program Files\Mozilla Firefox\softokn3.dll (NSS PKCS #11 Library/Mozilla Foundation) 0x01860000
Library C:\Program Files\Mozilla Firefox\nssdbm3.dll (Legacy Database Driver/Mozilla Foundation) 0x01890000
Library C:\Program Files\Mozilla Firefox\freebl3.dll (NSS freebl Library/Mozilla Foundation) 0x018B0000
Library C:\Program Files\Mozilla Firefox\nssckbi.dll (NSS Builtin Trusted Root CAs/Mozilla Foundation) 0x01C00000
Library C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll (Mozilla Foundation) 0x01E50000
Library C:\Program Files\AVG\AVG9\Firefox\components\avgssff.dll (Safe Search for Firefox/AVG Technologies CZ, s.r.o.) 0x6C660000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgxpl.dll (LinkScanner SDK/AVG Technologies CZ, s.r.o.) 0x6DB90000
Library C:\Program Files\AVG\AVG9\avglvex.dll (AVG Prevalence Reporting Library/AVG Technologies CZ, s.r.o.) 0x03380000
Library C:\Program Files\AVG\AVG9\avgcfgx.dll (AVG Configuration Module/AVG Technologies CZ, s.r.o.) 0x6A920000
Library C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll 0x06000000
Process C:\Program Files\AVG\AVG9\avgcsrvx.exe (AVG Scanning Core Module - Server Part/AVG Technologies CZ, s.r.o.) 3108
Library C:\Program Files\AVG\AVG9\avgcsrvx.exe (AVG Scanning Core Module - Server Part/AVG Technologies CZ, s.r.o.) 0x00400000
Library C:\Program Files\AVG\AVG9\avglogx.dll (AVG Logging Library/AVG Technologies CZ, s.r.o.) 0x6BC50000
Library C:\Program Files\AVG\AVG9\avgcorex.dll (AVG Scanning Core Module/AVG Technologies CZ, s.r.o.) 0x6AB10000
Library C:\Program Files\AVG\AVG9\avgcrlpx.dll (AVG Core RLP Module/AVG Technologies CZ, s.r.o.) 0x6B1F0000
Library C:\Program Files\AVG\AVG9\avgcertx.dll (AVG Cert SDK/AVG Technologies CZ, s.r.o.) 0x6E780000
Library C:\Program Files\AVG\AVG9\avgchclx.dll (AVG Cache Manager Module - Client Part/AVG Technologies CZ, s.r.o.) 0x6E700000
Process C:\Documents and Settings\computer\Desktop\lft1w0kp.exe 3932
Library C:\Documents and Settings\computer\Desktop\lft1w0kp.exe 0x00400000
---- Services - GMER 1.0.15 ----
Service C:\WINDOWS\system32\drivers\ALCXWDM.SYS (Realtek AC'97 Audio Driver (WDM)/Realtek Semiconductor Corp.) [MANUAL] ALCXWDM
Service AVG
Service C:\Program Files\AVG\AVG9\avgemc.exe (AVG E-Mail Scanner/AVG Technologies CZ, s.r.o.) [AUTO] avg9emc
Service C:\Program Files\AVG\AVG9\avgwdsvc.exe (AVG Watchdog Service/AVG Technologies CZ, s.r.o.) [AUTO] avg9wd
Service C:\WINDOWS\system32\DRIVERS\avgfwdx.sys (AVG Firewall intermediate miniport driver/AVG Technologies CZ, s.r.o.) [MANUAL] Avgfwdx
Service C:\WINDOWS\system32\DRIVERS\avgfwdx.sys (AVG Firewall intermediate miniport driver/AVG Technologies CZ, s.r.o.) [MANUAL] Avgfwfd
Service C:\Program Files\AVG\AVG9\avgfws9.exe (AVG Firewall Service/AVG Technologies CZ, s.r.o.) [AUTO] avgfws9
Service C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe (AVG IDS application/AVG Technologies CZ, s.r.o.) [AUTO] AVGIDSAgent
Service C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSDriver.sys (IDS Application Activity Monitor Driver./AVG Technologies ) [MANUAL] AVGIDSDriverxpx
Service C:\WINDOWS\System32\Drivers\AVGIDSxx.sys (IDS Application Activity Monitor Helper Driver./AVG Technologies ) [BOOT] AVGIDSErHrxpx
Service C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSFilter.sys (IDS Application Activity Monitor Filter Driver./AVG Technologies ) [MANUAL] AVGIDSFilterxpx
Service C:\Program Files\AVG\AVG9\Identity Protection\Agent\Driver\Platform_XP\AVGIDSShim.sys (IDS Application Activity Monitor Loader Driver./AVG Technologies ) [MANUAL] AVGIDSShimxpx
Service C:\WINDOWS\System32\Drivers\avgldx86.sys (AVG AVI Loader Driver/AVG Technologies CZ, s.r.o.) [SYSTEM] AvgLdx86
Service C:\WINDOWS\System32\Drivers\avgmfx86.sys (AVG Resident Shield Minifilter Driver/AVG Technologies CZ, s.r.o.) [SYSTEM] AvgMfx86
Service C:\WINDOWS\System32\Drivers\avgrkx86.sys (AVG Anti-Rootkit Driver/AVG Technologies CZ, s.r.o.) [BOOT] AvgRkx86
Service C:\WINDOWS\System32\Drivers\avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.) [SYSTEM] AvgTdiX
Service C:\DOCUME~1\computer\LOCALS~1\Temp\catchme.sys [MANUAL] catchme
Service C:\WINDOWS\system32\DRIVERS\fetnd5.sys (NDIS 5.0 miniport driver/VIA Technologies, Inc. ) [MANUAL] FETNDIS
Service C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Activation Licensing Service/Acresso Software Inc.) [MANUAL] FLEXnet Licensing Service
Service C:\Program Files\Java\jre6\bin\jqs.exe (Java(TM) Quick Starter Service/Sun Microsystems, Inc.) [AUTO] JavaQuickStarterService
Service C:\WINDOWS\system32\drivers\Lvckap.sys [MANUAL] Lvckap
Service C:\WINDOWS\system32\DRIVERS\LVPr2Mon.sys [MANUAL] LVPr2Mon
Service C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Logitech LVPrcSrv Module./Logitech Inc.) [AUTO] LVPrcSrv
Service C:\WINDOWS\system32\drivers\mbam.sys (Malwarebytes' Anti-Malware/Malwarebytes Corporation) [MANUAL] MBAMProtector
Service C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes' Anti-Malware/Malwarebytes Corporation) [AUTO] MBAMService
Service C:\WINDOWS\system32\DRIVERS\LV561AV.SYS (Logitech Video Driver/Logitech Inc.) [MANUAL] PID_0928
Service PQNTDrv
Service C:\WINDOWS\system32\DRIVERS\ptilink.sys (Parallel Technologies DirectParallel IO Library/Parallel Technologies, Inc.) [MANUAL] Ptilink
Service C:\WINDOWS\System32\Drivers\PxHelp20.sys (Px Engine Device Driver for Windows 2000/XP/Sonic Solutions) [BOOT] PxHelp20
Service C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS (SASDIFSV.SYS/SUPERAdBlocker.com and SUPERAntiSpyware.com) [SYSTEM] SASDIFSV
Service C:\Program Files\SUPERAntiSpyware\SASENUM.SYS (SASENUM.SYS/ SUPERAdBlocker.com and SUPERAntiSpyware.com) [MANUAL] SASENUM
Service C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys (SASKUTIL.SYS/SUPERAdBlocker.com and SUPERAntiSpyware.com) [SYSTEM] SASKUTIL
Service C:\WINDOWS\system32\DRIVERS\secdrv.sys (Macrovision SECURITY Driver/Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [AUTO] Secdrv
Service C:\WINDOWS\system32\DRIVERS\StreamIP.sys (Microsoft IP Test Driver/Microsoft Corporation) [MANUAL] streamip
Service C:\WINDOWS\system32\DRIVERS\vtmini.sys (VIA/S3G Miniport Driver/Copyright (C) VIA/S3 Graphics, Inc.) [MANUAL] viagfx
Service C:\WINDOWS\system32\DRIVERS\viaide.sys (Generic PCI IDE Bus Driver/Microsoft Corporation) [BOOT] ViaIde
---- EOF - GMER 1.0.15 ----
GmerLog3
GMER 1.0.15.15281 -
http://www.gmer.net
Autostart scan 2010-02-07 12:57:06
Windows 5.1.2600 Service Pack 2
HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems@Windows = %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon@Userinit = C:\WINDOWS\system32\userinit.exe,
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter@DLLName = avgrsstx.dll
HKLM\SYSTEM\CurrentControlSet\Services\ >>>
avg9emc@ = "C:\Program Files\AVG\AVG9\avgemc.exe"
avg9wd@ = "C:\Program Files\AVG\AVG9\avgwdsvc.exe"
avgfws9@ = "C:\Program Files\AVG\AVG9\avgfws9.exe"
AVGIDSAgent@ = "C:\Program Files\AVG\AVG9\Identity Protection\Agent\Bin\AVGIDSAgent.exe" AVGIDSAgent
JavaQuickStarterService@ = "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"
LVPrcSrv@ = "C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe"
MBAMService@ = "C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe"
HKLM\Software\Microsoft\Windows\CurrentVersion\Run@AVG9_TRAY = C:\PROGRA~1\AVG\AVG9\avgtray.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks@{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} = C:\Program Files\SUPERAntiSpyware\SASSEH.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved >>>
@{42071714-76d4-11d1-8b24-00a0c9068ff3} /*Display Panning CPL Extension*/deskpan.dll /*file not found*/ = deskpan.dll /*file not found*/
@{596AB062-B4D2-4215-9F74-E9109B0A8153} /*Previous Versions Property Page*/%SystemRoot%\system32\twext.dll = %SystemRoot%\system32\twext.dll
@{9DB7A13C-F208-4981-8353-73CC61AE2783} /*Previous Versions*/%SystemRoot%\system32\twext.dll = %SystemRoot%\system32\twext.dll
@{00E7B358-F65B-4dcf-83DF-CD026B94BFD4} /*Autoplay for SlideShow*/(null) =
@{692F0339-CBAA-47e6-B5B5-3B84DB604E87} /*Extensions Manager Folder*/%SystemRoot%\system32\extmgr.dll = %SystemRoot%\system32\extmgr.dll
@{BDEADF00-C265-11D0-BCED-00A0C90AB50F} /*Web Folders*/C:\Program Files\Common Files\Microsoft Shared\Web Folders\msonsext.dll = C:\Program Files\Common Files\Microsoft Shared\Web Folders\msonsext.dll
@{B41DB860-8EE4-11D2-9906-E49FADC173CA} /*WinRAR shell extension*/C:\Program Files\WinRAR\rarext.dll = C:\Program Files\WinRAR\rarext.dll
@{e82a2d71-5b2f-43a0-97b8-81be15854de8} /*ShellLink for Application References*/C:\WINDOWS\system32\dfshim.dll = C:\WINDOWS\system32\dfshim.dll
@{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} /*Shell Icon Handler for Application References*/C:\WINDOWS\system32\dfshim.dll = C:\WINDOWS\system32\dfshim.dll
@{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} /*AVG Shell Extension*/C:\Program Files\AVG\AVG9\avgse.dll = C:\Program Files\AVG\AVG9\avgse.dll
@{9F97547E-460A-42C5-AE0C-81C61FFAEBC3} /*AVG Find Extension*/(null) =
HKLM\Software\Classes\*\shellex\ContextMenuHandlers\ >>>
AVG9 Shell Extension@{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} = C:\Program Files\AVG\AVG9\avgse.dll
WinRAR@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll
HKLM\Software\Classes\*\shellex\ContextMenuHandlers@{CA8ACAFA-5FBB-467B-B348-90DD488DE003} = C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL
HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\WinRAR@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll
HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers@{CA8ACAFA-5FBB-467B-B348-90DD488DE003} = C:\Program Files\SUPERAntiSpyware\SASCTXMN.DLL
HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\ >>>
AVG9 Shell Extension@{9F97547E-4609-42C5-AE0C-81C61FFAEBC3} = C:\Program Files\AVG\AVG9\avgse.dll
MBAMShlExt@{57CE581A-0CB6-4266-9CA0-19364C90A0B3} = C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll
WinRAR@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects >>>
@{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}C:\Program Files\AVG\AVG9\avgssie.dll = C:\Program Files\AVG\AVG9\avgssie.dll
@{9030D464-4C02-4ABF-8ECC-5164760863C6}C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll = C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
@{DBC80044-A445-435b-BC74-9C25C1C588A9}C:\Program Files\Java\jre6\bin\jp2ssv.dll = C:\Program Files\Java\jre6\bin\jp2ssv.dll
@{E7E6F031-17CE-4C07-BC86-EABFE594F69C}C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll = C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
HKCU\Control Panel\
[email protected] = C:\WINDOWS\System32\logon.scr
HKLM\Software\Microsoft\Internet Explorer\Main >>>
@Default_Page_URL
http://go.microsoft.com/fwlink/?LinkId=69157 =
http://go.microsoft.com/fwlink/?LinkId=69157
@Start Page
http://www.microsoft.com/isapi...mp;pver={SUB_PVER}&ar=home =
http://www.microsoft.com/isapi...mp;pver={SUB_PVER}&ar=home
@Local PageC:\windows\system32\blank.htm = C:\windows\system32\blank.htm
HKCU\Software\Microsoft\Internet Explorer\Main >>>
@Start Page
http://www.microsoft.com/isapi...d=ie&pver=6&ar=msnhome =
http://www.microsoft.com/isapi...d=ie&pver=6&ar=msnhome
@Local PageC:\windows\system32\blank.htm = C:\windows\system32\blank.htm
HKLM\Software\Classes\PROTOCOLS\Handler\ >>>
dvd@CLSID = C:\WINDOWS\system32\msvidctl.dll
its@CLSID = C:\WINDOWS\system32\itss.dll
linkscanner@CLSID = C:\Program Files\AVG\AVG9\avgpp.dll
livecall@CLSID = C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
mhtml@CLSID = %SystemRoot%\system32\inetcomm.dll
ms-its@CLSID = C:\WINDOWS\system32\itss.dll
msnim@CLSID = C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
skype4com@CLSID = C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
tv@CLSID = C:\WINDOWS\system32\msvidctl.dll
HKLM\Software\Classes\PROTOCOLS\Handler\wia@CLSID = C:\WINDOWS\system32\wiascr.dll
---- EOF - GMER 1.0.15 ----
kristi1, predlažeš mi dakle da ponovo formatiram c particiju i kad podignem sistem ništa ne diram ni instaliram,
nego da antivirusom detaljno prečešljam sve particije. pretpostavio sam i sam dase jedino natakav način prenosi jer d particiju nikada ne diram, a virusi ne idu isključivo na c jel tako?
Uh i veoma s me ohrabrio sa onim "da mi je sve uništeno"... Možda ne bi bilo loše da formatiram sve hdd-ove na kompu?