Forum.hr

Natrag   Forum.hr > Informatička tehnologija > IT Help service > Security
Korisničko ime
Lozinka

Security Antivirusi, firewalli, patchevi, service packovi, updatei, ... Sve o sigurnosti vašeg računala.

Odgovor
 
Tematski alati Opcije prikaza
Old 29.05.2004., 02:52   #1
PETKA 3BEPKA
Registrirani korisnik
 
PETKA 3BEPKA Avatar
 
Registracija: Apr 2004.
Lokacija: U divljinama pitomine
Postova: 15
Question Da li me je TROJANAC uništio??

Pre desetak dana mi je EXPLORER crk'o, pa sam morao da ga gasim sa END TASK, a kada sam konačno nabavio KASPERSKY, našao je jedan virus, u hvala bogu neotovorenom SCREEN SAVER-u...
U panici sam ga obrisao, ali sam uspeo da zapamtim da je imao TROJAN u nazivu.
Obrisao sam verziju explorera IE 5, i reinstalirao IE 4...

Ali, posle svakog novog skeniranja KASPERSKY-jem, dobijam poruke da ima CORRUPTED files i I/O errors...i to ovakve sadržine...
I/O Errors Master Boot Records of HDD2, pa do HDD16, ukupno 60 grešaka, sve po 4 komada na svakom HDD!!
A evo i dva poslednja izveštaja KASPERSKOG, koja sam sejvovao, da bih pitao nekog ko zna:
1.;
;
#Friday, May 28, 2004, 2:12:26 AM
;
;
; ;
;
;
<200.1500.10101.2.103>
OK Warning Suspicious Infected <200.904.1204.1304.e04>
Disinfected Deleted Renamed Quarantined <200.b04.d04.c04.1804>
Will be deleted after reboot Will be renamed after reboot Disinfection failed Packed <200.1704.1604.a04.1004>
Archive Encrypted Corrupted Unknown format <200.1104.f04.704.1404>
Password protected Locked by another process Read access denied Disk is out of space <200.804.304.504.604>
I/O Error Kernel fault Interface fault Second pass <200.404.204.104.1904>
Object Result Description <100.3c00000c.f000018.19000010>
c:\WINDOWS\WIN386.SWP Read access denied <d60000.0.5>
c:\WINDOWS\TEMP\yahoo!_messenger_install.exe Corrupted <d00000.0.7>
c:\WINDOWS\TEMP\yahoo!_messenger_install.exe Corrupted <d00000.0.7>
c:\WINDOWS\TEMP\kav81C0.TMP Read access denied <d60000.0.5>
c:\WINDOWS\Temporary Internet Files\Content.IE5\NKJTYPGJ\WUInstSEWC[1].cab Unknown format CAB <d90000.0.14>
c:\WINDOWS\Temporary Internet Files\Content.IE5\SRC3964C\c23_animation_1738[1].swf Unknown format GZIP <d90000.0.14>
c:\WINDOWS\Temporary Internet Files\Content.IE5\6HWF15VY\stinger[1].zip/stinger/stinger.exe Corrupted <d00000.0.7>
c:\WINDOWS\Temporary Internet Files\Content.IE5\6HWF15VY\stinger[1].zip/stinger/stinger.exe Corrupted <d00000.0.7>
c:\WINDOWS\Temporary Internet Files\Content.IE5\6HWF15VY\iuctl[1].CAB Unknown format CAB <d90000.0.14>
c:\WINDOWS\Temporary Internet Files\Content.IE5\CTI7CPUR\toplist[1].html Unknown format GZIP <d90000.0.14>
c:\WINDOWS\Temporary Internet Files\Content.IE5\GD6N0DEB\MPSetup[1].exe Unknown format CAB <d90000.0.14>
c:\WINDOWS\Temporary Internet Files\Content.IE5\GD6N0DEB\WUInstSECS[1].cab Unknown format CAB <d90000.0.14>
c:\My Documents\stinger.zip/stinger/stinger.exe Corrupted <d00000.0.7>
c:\My Documents\stinger.zip/stinger/stinger.exe Corrupted <d00000.0.7>
c:\My Documents\My eBooks\ymsgrca.exe Corrupted <d00000.0.7>
c:\My Documents\My eBooks\ymsgrca.exe Corrupted <d00000.0.7>
c:\Program Files\Common Files\CMEII\apps\PrecisionTime\precisiontime2300.z ip/InstallPrecisionTime.exe Corrupted <d00000.0.7>
c:\Program Files\Common Files\CMEII\apps\PrecisionTime\precisiontime2300.z ip/InstallPrecisionTime.exe Corrupted <d00000.0.7>
c:\Program Files\Common Files\CMEII\apps\PrecisionTime\InstallPrecisionTim e.exe Corrupted <d00000.0.7>
c:\Program Files\Common Files\CMEII\apps\PrecisionTime\InstallPrecisionTim e.exe Corrupted <d00000.0.7>
c:\Program Files\Yahoo!\Installs\ymsgrie.exe Corrupted <d00000.0.7>
c:\Program Files\Yahoo!\Installs\ymsgrie.exe Corrupted <d00000.0.7>
:
:
:Object Result <100.3c000000.28000000>
:Friday, May 28, 2004 2:12:26 AM Kaspersky Anti-Virus Scanner : started
:_________________________________________________ _____________________
:
:Scanned:
:
:Sectors 3
:Files 103055
:Folders 1441
:Archives 1573
:Packed files 198
:
:Found:
:
nown viruses 0
:Virus bodies 0
isinfected 0
eleted 0
:Renamed 0
:Quarantined 0
arnings 0
:Suspicious 0
:Corrupted 14
:I/O Errors 2
:
:
:Scan speed (Kb/sec) 1029
:Scan time 50:45
:_________________________________________________ _____________________
:
:Friday, May 28, 2004 3:03:11 AM Kaspersky Anti-Virus Scanner : finished
:
:
Izveštaj broj 2.
;
;
#Friday, May 28, 2004, 6:50:19 AM
;
;
; ;
;
; ;
<200.1000.10201.2.103>
OK Warning Suspicion Infected <200.904.1204.1304.e04>
Disinfected Deleted Renamed Quarantined <200.b04.d04.c04.2204>
Will be deleted after reboot Will be renamed after reboot Disinfection failed Packed <200.1b04.1a04.a04.1004>
Archive Encrypted Corrupted Unknown format <200.1104.f04.704.1404>
Password protected Locked by other process Read access denied Disk out of space <200.804.304.504.604>
I/O error Missed Kernel fault Interface fault <200.404.1c04.204.104>
Object Result Description <100.3c00000c.f000018.19000010>

Master Boot Record of HDD2 I/O error <d50000.0.4>
Master Boot Record of HDD2 I/O error <d50000.0.4>
Master Boot Record of HDD2 I/O error <d50000.0.4>
Master Boot Record of HDD2 I/O error <d50000.0.4>
Master Boot Record of HDD3 I/O error <d50000.0.4>
Master Boot Record of HDD3 I/O error <d50000.0.4>
Master Boot Record of HDD3 I/O error <d50000.0.4>
Master Boot Record of HDD3 I/O error <d50000.0.4>
Master Boot Record of HDD4 I/O error <d50000.0.4>
Master Boot Record of HDD4 I/O error <d50000.0.4>
Master Boot Record of HDD4 I/O error <d50000.0.4>
Master Boot Record of HDD4 I/O error <d50000.0.4>
Master Boot Record of HDD5 I/O error <d50000.0.4>
Master Boot Record of HDD5 I/O error <d50000.0.4>
Master Boot Record of HDD5 I/O error <d50000.0.4>
Master Boot Record of HDD5 I/O error <d50000.0.4>
Master Boot Record of HDD6 I/O error <d50000.0.4>
Master Boot Record of HDD6 I/O error <d50000.0.4>
Master Boot Record of HDD6 I/O error <d50000.0.4>
Master Boot Record of HDD6 I/O error <d50000.0.4>
Master Boot Record of HDD7 I/O error <d50000.0.4>
Master Boot Record of HDD7 I/O error <d50000.0.4>
Master Boot Record of HDD7 I/O error <d50000.0.4>
Master Boot Record of HDD7 I/O error <d50000.0.4>
Master Boot Record of HDD8 I/O error <d50000.0.4>
Master Boot Record of HDD8 I/O error <d50000.0.4>
Master Boot Record of HDD8 I/O error <d50000.0.4>
Master Boot Record of HDD8 I/O error <d50000.0.4>
Master Boot Record of HDD9 I/O error <d50000.0.4>
Master Boot Record of HDD9 I/O error <d50000.0.4>
Master Boot Record of HDD9 I/O error <d50000.0.4>
Master Boot Record of HDD9 I/O error <d50000.0.4>
Master Boot Record of HDD10 I/O error <d50000.0.4>
Master Boot Record of HDD10 I/O error <d50000.0.4>
Master Boot Record of HDD10 I/O error <d50000.0.4>
Master Boot Record of HDD10 I/O error <d50000.0.4>
Master Boot Record of HDD11 I/O error <d50000.0.4>
Master Boot Record of HDD11 I/O error <d50000.0.4>
Master Boot Record of HDD11 I/O error <d50000.0.4>
Master Boot Record of HDD11 I/O error <d50000.0.4>
Master Boot Record of HDD12 I/O error <d50000.0.4>
Master Boot Record of HDD12 I/O error <d50000.0.4>
Master Boot Record of HDD12 I/O error <d50000.0.4>
Master Boot Record of HDD12 I/O error <d50000.0.4>
Master Boot Record of HDD13 I/O error <d50000.0.4>
Master Boot Record of HDD13 I/O error <d50000.0.4>
Master Boot Record of HDD13 I/O error <d50000.0.4>
Master Boot Record of HDD13 I/O error <d50000.0.4>
Master Boot Record of HDD14 I/O error <d50000.0.4>
Master Boot Record of HDD14 I/O error <d50000.0.4>
Master Boot Record of HDD14 I/O error <d50000.0.4>
Master Boot Record of HDD14 I/O error <d50000.0.4>
Master Boot Record of HDD15 I/O error <d50000.0.4>
Master Boot Record of HDD15 I/O error <d50000.0.4>
Master Boot Record of HDD15 I/O error <d50000.0.4>
Master Boot Record of HDD15 I/O error <d50000.0.4>
Master Boot Record of HDD16 I/O error <d50000.0.4>
Master Boot Record of HDD16 I/O error <d50000.0.4>
Master Boot Record of HDD16 I/O error <d50000.0.4>
Master Boot Record of HDD16 I/O error <d50000.0.4>


Pitanja:
Šta radi TROJANAC virus?
Da li je KASPERSKZ pomogao?
Kakve su ovo greške?

Često moram sa END TASK da zatvaram sledeće:
Msgsrz32
Rundlmn
Agsrm

a i sam rođeni KASPERSKY nije bio responding dva-tri puta!

KOLIKo kaspersky USPORAVA RAD SISTEMA, I DA LI JE MOGUĆE DA SE ON DISEJBLUJE DOK SURFUJEM??

Hvala unapred.
__________________
FAVORITE EXPRESSIONS:
"Louder!", "Food now!" and "Want Woman!"
LAST BOOK EATEN:
"The Musicians' Guide to Drums, Women & Food"
NEVER LEAVES HOME WITHOUT:
An appetite.
Ко то сече муда нашем добу
И шта нас то држи у колективном трансу
Због чега се костури окрећу у гробу
Ко нам то одузима и последњу шансу?
PETKA 3BEPKA is offline  
Odgovori s citatom
Old 29.05.2004., 08:27   #2
Blixa
Ne-Registrirani Korisnik
 
Blixa Avatar
 
Registracija: Feb 2004.
Postova: 3,370
Nisi rekao jeli PRO verzija ili ona druga!

To za CAB i archive pogledaj jeli aktivirano da ti scana Archives.
Za usporavanje on te sam upozori sta ti moze usporiti sve kad biras opcije.
Za surfanje ti i treba i ne treba,ovisi kako surfas.Svako malo kaspersky zna vrisnuti za neki code ili malicious scriptu.Sta one mogu uraditi nisam nikad imao zivaca studirati,nemam vremena za to.
Vecinu tih scripti on javi redovno mada sumnjam da bi prosle na Operi tako da se ne sekiram.
Mozes ga ako hoces ugasiti pa scanati manuelno sve sto skines sa net-a na svoj rizik.
A to da kaspersky nije bio responding,ne znam,trebas vidjeti kad se to desi jeli mozda nesto drugo ne zajebava jer onda zna svaki program biti non responding kad nesto zdere resurse,kao npr CD koji nece da se ucita pa ga vrti unedogled,samo primjer.
Ako se desi da ne responding kad nista drugo nije,bar od tebe,aktivirano onda se treba zamisliti,mozda probati reinstall ako nista.

Bilo bi fino da si upamtio naziv tog trojana ili bar da napises kako se screensaver zove!

To sto ti javlja za neke stvari da su Corrupted kad scana te ne treba brinuti,to nema veze sa trojanom,mislim.

Evo sta kaze FAQ za neke tvoje probleme!



"I/O Errors

I/O (Input/Output) Errors are generated when AVP can not open a file or sector object for scanning. I/O errors on files can occur when another application is locking the file in question. E.g. Windows' temporary files

They can be ignored as if any other these files report did contain malicious code, the monitor program would alert you.


Corrupt File Message

A "corrupted" file means one of the following:

1. A .COM file is out of 64K limit (some viruses infect Win32 COMMAND.COM as a COM file, and it stays corrupted).
2. an executable (COM, EXE, SYS, NE, PE, LE, LX) file's Entry Point is outside of the file body.
3. Win NE/PE executables have corrupted internal structure.
4. OLE documents have corrupted internal structure.
5. Archives have corrupted internal structure.

Although these files may work correctly, the AV software can not do a scan. If the files did contain malicious code the monitor program would detect this when the files are run."

Za te servise sto moras gasiti google nema nista,jesi dobro napisao!?

A to za problem sa MBR trebao bi naci neki AV i scanati sa diskete ili bar iz Safe Mode ako nista.Da budes siguran da nije nista.
Blixa is offline  
Odgovori s citatom
Old 30.05.2004., 01:20   #3
PETKA 3BEPKA
Registrirani korisnik
 
PETKA 3BEPKA Avatar
 
Registracija: Apr 2004.
Lokacija: U divljinama pitomine
Postova: 15
Hvala na iscrpnom odgovoru...
Evo koji se problemi javljaju posle tretmana Kaspersky-jem.
Sinoć dobijam poruku (istina posle 6 sati rada) da NO FREE MEMORY, pa ne mogu niti jedan shortcut sa desktopa da otvorim.

A ima 5,9 slobodnih GB na hard disku...

Moguće je da ono što vrti disk ne ume više d aga otvori kako treba?=

Opet mi se desilo da Agsrm nije respond, pa sam morao sa end task...
Isti slučaj, sa Agrsm, mi se javio i malo pre, usred Mz Connection, a kad je došlo do logging onto network, trebalo mu je 5 minuta dse uloguje, a onda je sve stalo.
Posle višekratnih end taskova sve ikonice su mi nestale i morao sam da ga isključim nepravilno, jer ni Ctrl+Alt+Del nije ništa delovalo.

I sve češće ne mogu da izvedem Shutting proces kako treba.

Šta mu to znači SZSTEM IS BUSY, kad ništa ne radi??

A dešava se i ovo
Poruka na plavoj podloyi FATAL ERROR ili EXCEPTION sa uvek istim brojkama...

Predlagali su mi PREFORMATIRANJE I BRISANJE DISKA, pa da se sve ispočetka stavi na njega.
Mislim da mi to ostaje.
Inače Windows je 98, ali ekran je preistorijski, i ja nešto mislim da on ne može da prati višesatni rad. Greje kao traktor.
Možda se zaista radio o tome, da disk ne može više da se otvori kako treba.

Inače na Kasperskyju mi stalno radi clipped mode, jer NO KEYS FOUND, iako imam opciju UPDATE svakog dana u pola osam uveče.

Inače današnji izveštaj sa skeniranja oko podne opet sadrži 60 I/O Errors Master Boot Records...


I ovo: jel treba da obrišem Temporary Internet Files?? Da oni ne usporavaju?.

Što se tiče virusa sa screen savera, mislim da ću moći da otkrijem kako se tačno zove; čekam druga da mi preformatira disk.
Inače je to sa nekom golom slavnom glumicom, ili Liv Tajler ili Pamela Anderson, i to sam pokupio a sajta Nude Celebrities, zajedno sa video plejereom za gledanje Film i video klipinga i trejlera, koji nisu ušli u film...
__________________
FAVORITE EXPRESSIONS:
"Louder!", "Food now!" and "Want Woman!"
LAST BOOK EATEN:
"The Musicians' Guide to Drums, Women & Food"
NEVER LEAVES HOME WITHOUT:
An appetite.
Ко то сече муда нашем добу
И шта нас то држи у колективном трансу
Због чега се костури окрећу у гробу
Ко нам то одузима и последњу шансу?
PETKA 3BEPKA is offline  
Odgovori s citatom
Old 30.05.2004., 14:03   #4
Blixa
Ne-Registrirani Korisnik
 
Blixa Avatar
 
Registracija: Feb 2004.
Postova: 3,370
Ne znam,problem moze imati dosta razloga zasto je nastao.
Savjetovao bi ti da skines zadnju verziju Kasperskog i pravi KEY samo da odbacis tu mogucnostda nije do njega.
Poslije trazis na drugom mjestu.

Skini njihov ovaj zadnji 5.0 a key ces lako naci na google ili astalavista.
Blixa is offline  
Odgovori s citatom
Sponsored links
Advertisement
 
Advertisement
Odgovor


Tematski alati
Opcije prikaza

Pravila postanja
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smajlići su On
[IMG] kôd je On
HTML kôd je Off





Sva vremena su GMT +1. Trenutno vrijeme je: 08:34.



Powered by vBulletin Version 3.8.4 (hrvatski)
Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Site content ©1999-2009 Forum.hr
Ad Management by RedTyger