Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Total comander

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Total comander

#1 Příspěvek od milenium0 »

Dobry Den

Potreboval by som poradit asi od stvrtku 13.5.2010 riesim problem z total comanderom mi vypisuje pri akejkolvek nainstalovanej verzii asi toto:

TOTALCMD executable file is corrupted. a potom daco v tom zmysle ze mam virus a mam spustit antivirus na preskenovanie. Niekedy mi nenacitava web ani google alebo len velmi pomaly a z nodom su tiez problemy.

Podla nod32 sa tam virus nenachadza.

Prosim o odpoved a pripajam vam log z combofixu.

Dakujem s pozdravom

ComboFix 10-05-14.06 - Stanley Basta . 05. 2010 13:32:59.1.1 - x86
Microsoft Windows XP Professional 5.1.2600.2.1250.421.1033.18.511.267 [GMT 2:00]
Running from: d:\install\ComboFix.exe
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Stanley Basta\oashdihasidhasuidhiasdhiashdiuasdhasd
c:\windows\Install.txt
c:\windows\system32\Install.txt
c:\windows\system32\tmp.reg
c:\windows\system32\x.exe

Infected copy of c:\windows\explorer.exe was found and disinfected
Restored copy from - c:\windows\ServicePackFiles\i386\explorer.exe

.
((((((((((((((((((((((((( Files Created from 2010-04-15 to 2010-05-15 )))))))))))))))))))))))))))))))
.

2010-05-15 11:12 . 2010-05-15 11:12 69632 ----a-r- c:\documents and settings\Stanley Basta\Application Data\Microsoft\Installer\{750B9AD1-4C63-4143-94C5-6FB304199BAD}\ARPPRODUCTICON.exe
2010-05-15 11:08 . 2010-05-15 11:08 -------- d-----w- c:\windows\system32\wbem\Repository
2010-05-15 10:54 . 2010-05-15 11:12 -------- d-----w- c:\program files\Opera
2010-05-15 10:54 . 2010-05-15 10:54 -------- d-----w- c:\program files\DivX
2010-05-15 10:52 . 2010-05-15 10:52 -------- d-----w- c:\program files\totalcmd
2010-05-15 10:52 . 2010-05-15 10:52 -------- d-----w- c:\program files\ICQ6.5
2010-05-15 10:43 . 2010-05-15 10:48 -------- d-----w- C:\32788R22FWJFW(2)
2010-05-14 22:02 . 2010-05-15 10:49 -------- d-----w- c:\program files\ICQ6(3).5
2010-05-14 21:49 . 2010-05-15 10:50 -------- d-----w- c:\program files\Opera(3)
2010-05-14 21:49 . 2010-05-15 10:50 -------- d-----w- c:\program files\DivX(3)
2010-05-14 21:12 . 2010-05-15 10:52 -------- d-----w- c:\program files\ICQ6(2).5
2010-05-14 20:54 . 2010-05-14 20:54 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\Lavasoft
2010-05-14 20:54 . 2010-05-14 20:54 -------- d---a-w- C:\!KillBox
2010-05-14 20:53 . 2010-05-15 10:52 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2010-05-06 17:08 . 2010-05-06 17:08 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\DivX
2010-05-06 17:05 . 2010-05-15 10:54 -------- d-----w- c:\program files\DivX(2)
2010-05-04 20:31 . 2010-05-15 10:54 -------- d-----w- c:\documents and settings\Stanley Basta\Local Settings\Application Data\Google
2010-04-28 20:45 . 2010-04-28 20:45 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\MSN6
2010-04-28 15:29 . 2010-04-28 15:29 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\ESET
2010-04-23 09:15 . 2010-05-15 10:55 -------- d-----w- c:\program files\UltraISO
2010-04-23 09:11 . 2010-04-23 09:11 -------- d-----w- c:\documents and settings\All Users\Application Data\ACD Systems
2010-04-23 09:11 . 2010-05-15 10:55 -------- d-----w- c:\program files\Common Files\ACD Systems
2010-04-23 09:11 . 2010-04-23 09:11 -------- d-----w- c:\program files\ACD Systems
2010-04-22 14:52 . 2010-04-22 14:52 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\Ahead
2010-04-22 14:51 . 2003-03-29 13:45 89184 ----a-w- c:\windows\system32\drivers\imagedrv.sys
2010-04-22 14:51 . 2001-07-06 15:24 283920 ----a-w- c:\windows\system32\ImagXpr5.dll
2010-04-22 14:51 . 2001-07-06 11:41 569344 ----a-w- c:\windows\system32\imagr5.dll
2010-04-22 14:51 . 2001-07-06 09:44 544768 ----a-w- c:\windows\system32\imagx5.dll
2010-04-22 14:51 . 2001-06-26 05:15 38912 ----a-w- c:\windows\system32\picn20.dll
2010-04-22 14:51 . 2010-04-22 14:51 -------- d-----w- c:\program files\Common Files\Ahead
2010-04-22 14:51 . 2001-07-09 08:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
2010-04-22 14:51 . 2010-04-22 14:51 -------- d-----w- c:\program files\Ahead
2010-04-21 07:42 . 2010-04-21 07:42 -------- d-----w- c:\documents and settings\All Users\Application Data\Blizzard

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-15 10:55 . 2010-03-29 18:01 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\uTorrent
2010-05-15 10:55 . 2010-03-26 10:14 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-15 10:54 . 2010-04-09 07:48 -------- d-----w- c:\documents and settings\All Users\Application Data\DivX
2010-05-15 10:29 . 2010-03-26 15:10 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\ICQ
2010-04-09 07:55 . 2010-04-09 07:55 57344 ----a-w- c:\documents and settings\All Users\Application Data\DivX\RunAsUser\RUNASUSERPROCESS.dll
2010-04-09 07:48 . 2010-04-09 07:54 1180952 ----a-w- c:\documents and settings\All Users\Application Data\DivX\Setup\DivXSetup.exe
2010-04-01 14:17 . 2010-04-01 14:17 -------- d-----w- c:\documents and settings\All Users\Application Data\GRETECH
2010-04-01 14:17 . 2010-04-01 14:17 -------- d-----w- c:\program files\GRETECH
2010-04-01 10:02 . 2010-03-26 11:43 42944 ----a-w- c:\documents and settings\Stanley Basta\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2010-04-01 10:00 . 2010-04-01 10:00 -------- d-----w- c:\program files\Microsoft.NET
2010-03-29 18:01 . 2010-03-26 15:32 -------- d-----w- c:\program files\uTorrent
2010-03-27 18:34 . 2010-03-27 18:34 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\ACD Systems
2010-03-27 18:33 . 2010-03-27 18:33 9856 ----a-w- c:\windows\system32\drivers\pfc.sys
2010-03-27 18:24 . 2010-03-27 18:24 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\InterVideo
2010-03-27 18:24 . 2010-03-27 18:22 -------- d-----w- c:\program files\Common Files\InterVideo
2010-03-27 18:23 . 2010-03-27 18:23 -------- d-----w- c:\program files\InterActual
2010-03-27 18:23 . 2010-03-27 18:23 -------- d-----w- c:\program files\MSXML 4.0
2010-03-27 18:22 . 2010-03-27 18:21 -------- d-----w- c:\program files\InterVideo
2010-03-27 18:22 . 2010-03-26 10:17 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-03-27 18:22 . 2010-03-27 18:22 -------- d-----w- c:\program files\Creative
2010-03-27 18:16 . 2010-03-27 18:16 -------- d-----w- c:\program files\Disk Explorer Professional 3
2010-03-27 18:14 . 2010-03-27 18:10 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\Winamp
2010-03-27 18:12 . 2010-03-27 18:10 -------- d-----w- c:\program files\Winamp
2010-03-27 18:08 . 2010-03-27 18:08 -------- d-----w- c:\program files\Trend Micro
2010-03-27 18:07 . 2010-03-27 18:06 -------- d-----w- c:\program files\AIDA32 - Enterprise System Information
2010-03-27 18:05 . 2010-03-27 18:05 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\AdobeUM
2010-03-27 18:05 . 2010-03-27 18:05 -------- d-----w- c:\program files\Common Files\Adobe
2010-03-26 22:04 . 2010-03-26 22:04 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\Media Player Classic
2010-03-26 15:10 . 2010-03-26 15:10 -------- d-----w- c:\program files\ICQ6Toolbar
2010-03-26 15:10 . 2010-03-26 15:10 -------- d-----w- c:\documents and settings\All Users\Application Data\ICQ
2010-03-26 12:16 . 2010-03-26 12:15 -------- d-----w- c:\program files\The KMPlayer
2010-03-26 11:49 . 2010-03-26 11:49 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-03-26 11:37 . 2010-03-26 09:35 3316 ----a-w- c:\windows\PCHEALTH\HELPCTR\PackageStore\SkuStore.bin
2010-03-26 11:37 . 2010-03-26 09:35 86327 ----a-w- c:\windows\PCHEALTH\HELPCTR\OfflineCache\index.dat
2010-03-26 11:35 . 2010-03-26 09:35 8972 ----a-w- c:\windows\PCHEALTH\HELPCTR\Config\Cntstore.bin
2010-03-26 10:25 . 2010-03-26 10:25 -------- d-----w- c:\program files\ESET
2010-03-26 09:43 . 2010-03-26 09:43 -------- d-----w- c:\documents and settings\Stanley Basta\Application Data\ESET
2010-03-26 09:42 . 2010-03-26 09:42 -------- d-----w- c:\documents and settings\All Users\Application Data\ESET
2010-03-26 09:36 . 2010-03-26 09:36 -------- d-----w- c:\program files\microsoft frontpage
2010-03-26 09:33 . 2010-03-26 09:33 21640 ----a-w- c:\windows\system32\emptyregdb.dat
.

------- Sigcheck -------

[-] 2004-08-03 . 9332932F3579D326D7F046D692D125B3 . 118272 . . [5.4.3790.2180] . . c:\windows\ServicePackFiles\i386\wuauclt.exe
[-] 2004-08-03 . 7C90AE046E570852DD020DBE17E5A220 . 118272 . . [5.4.3790.2180] . . c:\windows\system32\wuauclt.exe
[-] 2002-08-29 . B7B2508ADAFC608849135756F9450B68 . 146944 . . [5.4.3630.1106] . . c:\windows\$NtServicePackUninstall$\wuauclt.exe

[-] 2004-08-03 . DA5551180456E633C90F09235788D463 . 31744 . . [5.1.2600.2180] . . c:\windows\ServicePackFiles\i386\userinit.exe
[-] 2004-08-03 . 1930DE2187D9345C8B7CD508CFCD3927 . 31744 . . [5.1.2600.2180] . . c:\windows\system32\userinit.exe
[-] 2002-08-29 . C3ADAA9DCB9CC6E7A23D41843E33EC9A . 29184 . . [5.1.2600.1106] . . c:\windows\$NtServicePackUninstall$\userinit.exe

[-] 2004-08-03 . B977849F20A4DFBDBD8F57989A1FED96 . 20992 . . [5.1.2600.2180] . . c:\windows\ServicePackFiles\i386\wscntfy.exe
[-] 2004-08-03 . B26C1AE48139AF298023A3008777E0C5 . 20992 . . [5.1.2600.2180] . . c:\windows\system32\wscntfy.exe

[-] 2004-08-03 . 4A99043FE005301E23D44206CD962053 . 22528 . . [5.1.2600.2180] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2004-08-03 . 64783877322CCACAE0A938D7162FBC9B . 22528 . . [5.1.2600.2180] . . c:\windows\system32\ctfmon.exe
[-] 2002-08-29 . D26E5E192F8B0BD73DEA65957E8599D5 . 20480 . . [5.1.2600.1106] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^InterVideo WinCinema Manager.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\InterVideo WinCinema Manager.lnk
backup=c:\windows\pss\InterVideo WinCinema Manager.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
2004-08-03 23:56 22528 ----a-w- c:\windows\system32\ctfmon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
2004-08-03 23:56 1667584 ----a-w- c:\program files\Messenger\msmsgs.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=
"c:\\Program Files\\uTorrent\\utorrent.exe"=

S4 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [26. 3. 2010 17:10 222968]
.
- - - - ORPHANS REMOVED - - - -

MSConfigStartUp-LiveMonitor - c:\program files\MSI\Live Update 2\LMonitor.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-05-15 13:36
Windows 5.1.2600 Service Pack 2 NTFS

detected NTDLL code modification:
ZwOpenFile

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\wdfmgr.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2010-05-15 13:38:20 - machine was rebooted
ComboFix-quarantined-files.txt 2010-05-15 11:38

Pre-Run: 22 235 541 504 bytes free
Post-Run: 22 191 923 200 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /fastdetect /NoExecute=OptIn

- - End Of File - - 366429ED1B092A480CFBE79C655D0884

Stano z Presova

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#2 Příspěvek od milenium0 »

Nazdar

Dakujem za ochotu, problem sa zda byt vyrieseny a to asi tak ze som nainstaloval opat nod32. Spustil som ho no a potom naslo asi 266 infiltracii vselijakeho typu.
Po dokonceni scanu som restartoval pc a iba podotykam,ze scan mi trval 2h a 51m co je asi slusny cas. Po restarte som spustil combofix a ono to vyzera zatial bez problemov. Trvalo mi to dlho ale nechcelo sa mi instalovat cely windows xp a este vselijake programy.

Dakujem este raz a keby daco,tak sa urcite ozvem.

Subor bol otestovany,tak ako ste mi poradili a naslo rozne viry od roznych antivirovych programov.
Keby takych ludi bolo viac ako ste vy.

S pozdravom

Stano

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#3 Příspěvek od milenium0 »

Nazdar

Pripajam otestovany subor cftmon.exe,ale ciste to este nebude.
Pomozete sa mi toho zbavit.
Tu je odkaz po prip. dole log.:http://www.virustotal.com/cs/reanalisis ... 1273965590
Po teste vyslo daco take.

Soubor ctfmon.exe přijatý 2010.05.15 23:17:24 (UTC)
Současný stav: Dokončeno
Výsledek: 38/40 (95.00%)
Formátované
Vytisknout výsledky Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.05.10 Virus.Win32.Virut!IK
AhnLab-V3 2010.05.16.00 2010.05.15 Win32/Virut.Gen
AntiVir 8.2.1.242 2010.05.14 W32/Virut.Gen
Antiy-AVL 2.0.3.7 2010.05.14 -
Authentium 5.2.0.5 2010.05.15 W32/Virut.gen4
Avast 4.8.1351.0 2010.05.15 Win32:Virtob
Avast5 5.0.332.0 2010.05.15 Win32:Virtob
AVG 9.0.0.787 2010.05.15 Win32/Virut
BitDefender 7.2 2010.05.15 Win32.Virut.M
CAT-QuickHeal 10.00 2010.05.15 W32.Virut.AC
ClamAV 0.96.0.3-git 2010.05.15 W32.Virut-21
Comodo 4853 2010.05.16 Virus.Win32.Virut.BF
DrWeb 5.0.2.03300 2010.05.16 Win32.Virut.35
eSafe 7.0.17.0 2010.05.13 -
eTrust-Vet 35.2.7490 2010.05.15 Win32/Virut.7096
F-Prot 4.5.1.85 2010.05.15 W32/Virut.gen4
F-Secure 9.0.15370.0 2010.05.15 Win32.Virut.M
Fortinet 4.1.133.0 2010.05.15 W32/Virut.J
GData 21 2010.05.15 Win32.Virut.M
Ikarus T3.1.1.84.0 2010.05.15 Virus.Win32.Virut
Jiangmin 13.0.900 2010.05.15 Win32/Virut.ar
Kaspersky 7.0.0.125 2010.05.16 Virus.Win32.Virut.bf
McAfee 5.400.0.1158 2010.05.16 W32/Virut.j
McAfee-GW-Edition 2010.1 2010.05.15 Heuristic.LooksLike.Win32.SuspiciousPE.J
Microsoft 1.5703 2010.05.14 Virus:Win32/Virut.AQ
NOD32 5117 2010.05.15 Win32/Virut.BF
Norman 6.04.12 2010.05.15 W32/Virut.BH
nProtect 2010-05-15.01 2010.05.15 Virus/W32.Virut.K
Panda 10.0.2.7 2010.05.15 W32/Virutas.FG
PCTools 7.0.3.5 2010.05.15 Win32.Virut.Gen.4
Rising 22.47.04.03 2010.05.14 Win32.Agent.bj
Sophos 4.53.0 2010.05.16 W32/Virut-Gen
Sunbelt 6308 2010.05.16 Virus.Win32.Virut.a (v)
Symantec 20101.1.0.89 2010.05.16 W32.Virut.W
TheHacker 6.5.2.0.280 2010.05.14 W32/Virut.gen2
TrendMicro 9.120.0.1004 2010.05.15 PE_VIRUT.SA
TrendMicro-HouseCall 9.120.0.1004 2010.05.16 PE_VIRUT.SA
VBA32 3.12.12.5 2010.05.14 Virus.Win32.Virut.bf
ViRobot 2010.5.15.2318 2010.05.15 Win32.Virut.Gen
VirusBuster 5.0.27.0 2010.05.15 Win32.Virut.Gen.4
Rozšiřující informace
File size: 22528 bytes
MD5 : 64783877322ccacae0a938d7162fbc9b
SHA1 : a7ff466b4e1cd77171903000f7df09ac59f01f6e
SHA256: 454ba018a6077cbfa852a86dce4219556940dcf2623b5efacdd274a8c2e06b01
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x5A00
timedatestamp.....: 0x41107BFA (Wed Aug 4 08:02:34 2004)
machinetype.......: 0x14C (Intel I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x2AB8 0x2C00 6.75 e75af9431e119ddb814611dfdeca25c1
.data 0x4000 0x210 0x200 1.07 bd8c5cd346a9f53dc0dbc69260ab2240
.rsrc 0x5000 0x7A00 0x2600 7.34 c6c835d5c57fe950914ca7269a57d5e3

( 6 imports )

> advapi32.dll: RegDeleteValueA, RegOpenKeyExA, RegCloseKey, RegSetValueExA, RegCreateKeyA, RegCreateKeyExA
> kernel32.dll: lstrcpynA, lstrlenA, GetSystemDirectoryA, GetSystemWindowsDirectoryA, GetVersionExA, GetACP, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, LocalFree, CloseHandle, ResetEvent, OpenEventA, CreateProcessA, lstrcatA, GetSystemInfo, lstrcmpiA, FreeLibrary, LoadLibraryA, CreateEventA, QueryPerformanceCounter, GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetModuleHandleA, GetStartupInfoA, LocalAlloc, GetProcAddress
> msctf.dll: TF_InitSystem, TF_GetGlobalCompartment, TF_InvalidAssemblyListCacheIfExist, TF_InvalidAssemblyListCache, TF_PostAllThreadMsg, TF_CreateCicLoadMutex, TF_UninitSystem
> msutb.dll: ClosePopupTipbar, GetPopupTipbar
> msvcrt.dll: _controlfp, _except_handler3, __set_app_type, __p__fmode, __p__commode, _adjust_fdiv, __setusermatherr, _initterm, __getmainargs, _acmdln, exit, _cexit, _XcptFilter, _exit, _c_exit
> user32.dll: EnumWindows, GetClassNameA, FindWindowA, PostMessageA, SetTimer, KillTimer, MsgWaitForMultipleObjects, PeekMessageA, TranslateMessage, DispatchMessageA, GetMessageA, SetWindowPos, LoadCursorA, RegisterClassExA, DefWindowProcA, PostQuitMessage, CreateWindowExA, GetSystemMetrics

( 0 exports )
TrID : File type identification
Generic Win/DOS Executable (49.9%)
DOS Executable Generic (49.8%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
ssdeep: 384:BAx107NY8MPTIaW7/l9lNgRdJSW781gWnMiTpsZ7cPhzP:BAwpITIaWh9gn+1FJps
sigcheck: publisher....: Microsoft Corporation
copyright....: (c) Microsoft Corporation. All rights reserved.
product......: Microsoft_ Windows_ Operating System
description..: CTF Loader
original name: CTFMON.EXE
internal name: CTFMON
file version.: 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
PEiD : -
RDS : NSRL Reference Data Set
Prosim o odpoved

Dakujem

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#4 Příspěvek od milenium0 »

Ahoj

Prave scanujem cez nod a potom hodim log.
Mne ten virus napada vacsinou html, co sa prejavuje kazdou strankou co otvorim
operou ze je infikovana, ten log zo vcera nemam, ale vacsinou sa to nachadzalo v systeme32 a v servis packu tam toho bolo asi najviac s priponou html.
Ja som vcera nic nemazal proste som to len chcel co najskor vyriesit cfez programy.
Stiahol som Spyware terminatora,dufam ze som neurobil nic zle.

S pozdravom

Stano

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#5 Příspěvek od milenium0 »

Tu je prvy>

Soubor wuauclt.exe[/b] přijatý 2010.05.16 08:26:24 (UTC)
Současný stav: Dokončeno
Výsledek: 38/41 (92.69%)
Formátované
Vytisknout výsledky Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.05.10 Virus.Win32.Virut!IK
AhnLab-V3 2010.05.16.00 2010.05.15 Win32/Virut.Gen
AntiVir 8.2.1.242 2010.05.14 W32/Virut.Gen
Antiy-AVL 2.0.3.7 2010.05.14 -
Authentium 5.2.0.5 2010.05.15 W32/Virut.gen4
Avast 4.8.1351.0 2010.05.16 Win32:Virtob
Avast5 5.0.332.0 2010.05.16 Win32:Virtob
AVG 9.0.0.787 2010.05.15 Win32/Virut
BitDefender 7.2 2010.05.16 Win32.Virut.M
CAT-QuickHeal 10.00 2010.05.15 W32.Virut.AC
ClamAV 0.96.0.3-git 2010.05.16 W32.Virut-21
Comodo 4856 2010.05.16 Virus.Win32.Virut.BF
DrWeb 5.0.2.03300 2010.05.16 Win32.Virut.35
eSafe 7.0.17.0 2010.05.13 -
eTrust-Vet 35.2.7490 2010.05.15 Win32/Virut.7096
F-Prot 4.5.1.85 2010.05.15 W32/Virut.gen4
F-Secure 9.0.15370.0 2010.05.15 Win32.Virut.M
Fortinet 4.1.133.0 2010.05.15 W32/Virut.J
GData 21 2010.05.16 Win32.Virut.M
Ikarus T3.1.1.84.0 2010.05.16 Virus.Win32.Virut
Jiangmin 13.0.900 2010.05.15 Win32/Virut.ar
Kaspersky 7.0.0.125 2010.05.16 Virus.Win32.Virut.bf
McAfee 5.400.0.1158 2010.05.16 W32/Virut.j
McAfee-GW-Edition 2010.1 2010.05.16 W32/Virut.j
Microsoft 1.5703 2010.05.16 Virus:Win32/Virut.AQ
NOD32 5117 2010.05.15 Win32/Virut.BF
Norman 6.04.12 2010.05.16 W32/Virut.CT
nProtect 2010-05-16.01 2010.05.16 Virus/W32.Virut.K
Panda 10.0.2.7 2010.05.16 W32/Virutas.FG
PCTools 7.0.3.5 2010.05.16 Win32.Virut.Gen.4
Prevx 3.0 2010.05.16 -
Rising 22.47.06.03 2010.05.16 Win32.Agent.bj
Sophos 4.53.0 2010.05.16 W32/Virut-Gen
Sunbelt 6308 2010.05.16 Virus.Win32.Virut.a (v)
Symantec 20101.1.0.89 2010.05.16 W32.Virut.W
TheHacker 6.5.2.0.280 2010.05.14 W32/Virut.gen2
TrendMicro 9.120.0.1004 2010.05.16 PE_VIRUT.SA
TrendMicro-HouseCall 9.120.0.1004 2010.05.16 PE_VIRUT.SA
VBA32 3.12.12.5 2010.05.14 Virus.Win32.Virut.bf
ViRobot 2010.5.15.2318 2010.05.15 Win32.Virut.Gen
VirusBuster 5.0.27.0 2010.05.15 Win32.Virut.Gen.4

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#6 Příspěvek od milenium0 »

asi budu vsetky rovnake ide mi to dost pomaly strasne mi brzdi system.
Urobim co sa da.
Tu mam druhy>

Soubor wuauclt.exe přijatý 2010.05.16 08:35:53 (UTC)
Současný stav: Dokončeno
Výsledek: 38/41 (92.69%)
Formátované
Vytisknout výsledky Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.05.10 Virus.Win32.Virut!IK
AhnLab-V3 2010.05.16.00 2010.05.15 Win32/Virut.Gen
AntiVir 8.2.1.242 2010.05.14 W32/Virut.Gen
Antiy-AVL 2.0.3.7 2010.05.14 -
Authentium 5.2.0.5 2010.05.15 W32/Virut.gen4
Avast 4.8.1351.0 2010.05.16 Win32:Virtob
Avast5 5.0.332.0 2010.05.16 Win32:Virtob
AVG 9.0.0.787 2010.05.15 Win32/Virut
BitDefender 7.2 2010.05.16 Win32.Virut.M
CAT-QuickHeal 10.00 2010.05.15 W32.Virut.AC
ClamAV 0.96.0.3-git 2010.05.16 W32.Virut-21
Comodo 4856 2010.05.16 Virus.Win32.Virut.BF
DrWeb 5.0.2.03300 2010.05.16 Win32.Virut.35
eSafe 7.0.17.0 2010.05.13 -
eTrust-Vet 35.2.7490 2010.05.15 Win32/Virut.7096
F-Prot 4.5.1.85 2010.05.15 W32/Virut.gen4
F-Secure 9.0.15370.0 2010.05.15 Win32.Virut.M
Fortinet 4.1.133.0 2010.05.15 W32/Virut.J
GData 21 2010.05.16 Win32.Virut.M
Ikarus T3.1.1.84.0 2010.05.16 Virus.Win32.Virut
Jiangmin 13.0.900 2010.05.15 Win32/Virut.ar
Kaspersky 7.0.0.125 2010.05.16 Virus.Win32.Virut.bf
McAfee 5.400.0.1158 2010.05.16 W32/Virut.j
McAfee-GW-Edition 2010.1 2010.05.16 W32/Virut.j
Microsoft 1.5703 2010.05.16 Virus:Win32/Virut.AQ
NOD32 5117 2010.05.15 Win32/Virut.BF
Norman 6.04.12 2010.05.16 W32/Virut.BH
nProtect 2010-05-16.01 2010.05.16 Virus/W32.Virut.K
Panda 10.0.2.7 2010.05.16 W32/Virutas.FG
PCTools 7.0.3.5 2010.05.16 Win32.Virut.Gen.4
Prevx 3.0 2010.05.16 -
Rising 22.47.06.03 2010.05.16 Win32.Agent.bj
Sophos 4.53.0 2010.05.16 W32/Virut-Gen
Sunbelt 6308 2010.05.16 Virus.Win32.Virut.a (v)
Symantec 20101.1.0.89 2010.05.16 W32.Virut.W
TheHacker 6.5.2.0.280 2010.05.14 W32/Virut.gen2
TrendMicro 9.120.0.1004 2010.05.16 PE_VIRUT.SA
TrendMicro-HouseCall 9.120.0.1004 2010.05.16 PE_VIRUT.SA
VBA32 3.12.12.5 2010.05.14 Virus.Win32.Virut.bf
ViRobot 2010.5.15.2318 2010.05.15 Win32.Virut.Gen
VirusBuster 5.0.27.0 2010.05.15 Win32.Virut.Gen.4

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#7 Příspěvek od milenium0 »

To je po lecbe nodem.

V pohode aj tak dakujem za spolupracu.

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#8 Příspěvek od milenium0 »

Treti subor nemozem najst.

Posielam 4>


Analýza Hledání součtů Statistiky Email/Uploader O VT

Soubor userinit.exe přijatý 2010.05.16 08:46:21 (UTC)
Současný stav: Dokončeno
Výsledek: 38/41 (92.69%)
Formátované
Vytisknout výsledky Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.05.10 Trojan.Agent2!IK
AhnLab-V3 2010.05.16.00 2010.05.15 Win32/Virut.Gen
AntiVir 8.2.1.242 2010.05.14 W32/Virut.Gen
Antiy-AVL 2.0.3.7 2010.05.14 -
Authentium 5.2.0.5 2010.05.15 W32/Virut.gen4
Avast 4.8.1351.0 2010.05.16 Win32:Virtob
Avast5 5.0.332.0 2010.05.16 Win32:Virtob
AVG 9.0.0.787 2010.05.15 Win32/Virut
BitDefender 7.2 2010.05.16 Win32.Virut.M
CAT-QuickHeal 10.00 2010.05.15 W32.Virut.AC
ClamAV 0.96.0.3-git 2010.05.16 W32.Virut-21
Comodo 4856 2010.05.16 Virus.Win32.Virut.BF
DrWeb 5.0.2.03300 2010.05.16 Win32.Virut.35
eSafe 7.0.17.0 2010.05.13 -
eTrust-Vet 35.2.7490 2010.05.15 Win32/Virut.7096
F-Prot 4.5.1.85 2010.05.15 W32/Virut.gen4
F-Secure 9.0.15370.0 2010.05.15 Win32.Virut.M
Fortinet 4.1.133.0 2010.05.15 W32/Virut.J
GData 21 2010.05.16 Win32.Virut.M
Ikarus T3.1.1.84.0 2010.05.16 Trojan.Agent2
Jiangmin 13.0.900 2010.05.15 Win32/Virut.ar
Kaspersky 7.0.0.125 2010.05.16 Virus.Win32.Virut.bf
McAfee 5.400.0.1158 2010.05.16 W32/Virut.j
McAfee-GW-Edition 2010.1 2010.05.16 Heuristic.LooksLike.Win32.SuspiciousPE.J
Microsoft 1.5703 2010.05.16 Virus:Win32/Virut.AQ
NOD32 5117 2010.05.15 Win32/Virut.BF
Norman 6.04.12 2010.05.16 W32/Virut.CT
nProtect 2010-05-16.01 2010.05.16 Virus/W32.Virut.K
Panda 10.0.2.7 2010.05.16 W32/Virutas.FG
PCTools 7.0.3.5 2010.05.16 Win32.Virut.Gen.4
Prevx 3.0 2010.05.16 -
Rising 22.47.06.04 2010.05.16 Win32.Agent.bj
Sophos 4.53.0 2010.05.16 W32/Virut-Gen
Sunbelt 6308 2010.05.16 Virus.Win32.Virut.a (v)
Symantec 20101.1.0.89 2010.05.16 W32.Virut.W
TheHacker 6.5.2.0.280 2010.05.14 W32/Virut.gen2
TrendMicro 9.120.0.1004 2010.05.16 PE_VIRUT.SA
TrendMicro-HouseCall 9.120.0.1004 2010.05.16 PE_VIRUT.SA
VBA32 3.12.12.5 2010.05.14 Virus.Win32.Virut.bf
ViRobot 2010.5.15.2318 2010.05.15 Win32.Virut.Gen
VirusBuster 5.0.27.0 2010.05.15 Win32.Virut.Gen.4

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#9 Příspěvek od milenium0 »

Nemam moznost napalit na druhy pc, mam len jeden.

Posielam prvy:

Soubor smss.exe přijatý 2010.05.16 08:50:31 (UTC)
Současný stav: Dokončeno
Výsledek: 0/41 (0%)
Formátované
Vytisknout výsledky Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.05.10 -
AhnLab-V3 2010.05.16.00 2010.05.15 -
AntiVir 8.2.1.242 2010.05.14 -
Antiy-AVL 2.0.3.7 2010.05.14 -
Authentium 5.2.0.5 2010.05.15 -
Avast 4.8.1351.0 2010.05.16 -
Avast5 5.0.332.0 2010.05.16 -
AVG 9.0.0.787 2010.05.15 -
BitDefender 7.2 2010.05.16 -
CAT-QuickHeal 10.00 2010.05.15 -
ClamAV 0.96.0.3-git 2010.05.16 -
Comodo 4857 2010.05.16 -
DrWeb 5.0.2.03300 2010.05.16 -
eSafe 7.0.17.0 2010.05.13 -
eTrust-Vet 35.2.7490 2010.05.15 -
F-Prot 4.5.1.85 2010.05.15 -
F-Secure 9.0.15370.0 2010.05.15 -
Fortinet 4.1.133.0 2010.05.16 -
GData 21 2010.05.16 -
Ikarus T3.1.1.84.0 2010.05.16 -
Jiangmin 13.0.900 2010.05.15 -
Kaspersky 7.0.0.125 2010.05.16 -
McAfee 5.400.0.1158 2010.05.16 -
McAfee-GW-Edition 2010.1 2010.05.16 -
Microsoft 1.5703 2010.05.16 -
NOD32 5117 2010.05.15 -
Norman 6.04.12 2010.05.16 -
nProtect 2010-05-16.01 2010.05.16 -
Panda 10.0.2.7 2010.05.16 -
PCTools 7.0.3.5 2010.05.16 -
Prevx 3.0 2010.05.16 -
Rising 22.47.06.04 2010.05.16 -
Sophos 4.53.0 2010.05.16 -
Sunbelt 6308 2010.05.16 -
Symantec 20101.1.0.89 2010.05.16 -
TheHacker 6.5.2.0.280 2010.05.14 -
TrendMicro 9.120.0.1004 2010.05.16 -
TrendMicro-HouseCall 9.120.0.1004 2010.05.16 -
VBA32 3.12.12.5 2010.05.14 -
ViRobot 2010.5.15.2318 2010.05.15 -
VirusBuster 5.0.27.0 2010.05.15 -

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#10 Příspěvek od milenium0 »

Posielam vysledky z nodu:


C:\pagefile.sys - error opening
C:\Documents and Settings\All Users\Application Data\ESET\ESET Smart Security\Charon\CACHE.NDB - error opening
C:\Documents and Settings\LocalService\NTUSER.DAT - error opening
C:\Documents and Settings\LocalService\ntuser.dat.LOG - error opening
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - error opening
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG - error opening
C:\Documents and Settings\NetworkService\NTUSER.DAT - error opening
C:\Documents and Settings\NetworkService\ntuser.dat.LOG - error opening
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - error opening
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG - error opening
C:\Documents and Settings\Stanley Basta\ntuser.dat - error opening
C:\Documents and Settings\Stanley Basta\ntuser.dat.LOG - error opening
C:\Documents and Settings\Stanley Basta\Application Data\ICQ\Application.mdb - error opening
C:\Documents and Settings\Stanley Basta\Application Data\ICQ\338262601\Messages.mdb - error opening
C:\Documents and Settings\Stanley Basta\Application Data\ICQ\338262601\Owner.mdb - error opening
C:\Documents and Settings\Stanley Basta\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat - error opening
C:\Documents and Settings\Stanley Basta\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG - error opening
C:\Documents and Settings\Stanley Basta\Local Settings\temp\fla62F.tmp - error opening
C:\Documents and Settings\Stanley Basta\Local Settings\temp\JETFC24.tmp - error opening
C:\Program Files\Ahead\Nero\CDI\CDI_VCD.CFG » MIME - is OK (internal scanning not performed)
C:\Program Files\Winamp\UninstWA.exe » NSIS - internal error
C:\WINDOWS\dxdgns.dll - Win32/Beastdoor.207 trojan - cleaned by deleting - quarantined
C:\WINDOWS\system32\config\default - error opening
C:\WINDOWS\system32\config\default.LOG - error opening
C:\WINDOWS\system32\config\SAM - error opening
C:\WINDOWS\system32\config\SAM.LOG - error opening
C:\WINDOWS\system32\config\SECURITY - error opening
C:\WINDOWS\system32\config\SECURITY.LOG - error opening
C:\WINDOWS\system32\config\software - error opening
C:\WINDOWS\system32\config\software.LOG - error opening
C:\WINDOWS\system32\config\system - error opening
C:\WINDOWS\system32\config\system.LOG - error opening
D:\Dokumenty\Mhd\04psa.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\04si3.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\08si3.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\08sib.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\12nkp.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\12sib.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\32sib.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\32tro.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\36psa.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\36tro.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\38si3.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\38sib.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia32A.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia36A.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_1.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_11.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_12.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_13.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_14.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_15.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_16.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_17.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_18.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_19.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_2.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_20.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_21.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_22.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_23.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_24.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_25.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_27.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_28.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_29.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_32.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_33.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_34.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_35.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_36.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_37.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_38.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_39.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_4.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_40.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_41.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_42.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_43.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_44.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_45.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_46.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_5.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_7.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_8.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_N1.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_N2.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\Linia_N3.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\N2psa.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\N2si3.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\N3si3.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Mhd\N3sib.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\Rogue (14_51_0) - Talent Calculator - World of Warcraft.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\The World of Warcraft Armory.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\The World of Warcraft Armory1.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\Alone In The Dark 4\Edward Carnby\tiscali.cznavodyaitd4navod1.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\Alone In The Dark 4\Edward Carnby\index.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\Alone In The Dark 4\Edward Carnby\aloneinthedark4nav3.html - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\Silent Hill\SH2 1.cast.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\Silent Hill\SH2 2.cast.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\Silent Hill\SH2 3.cast.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\Silent Hill\SH2 4.cast.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Navody Hier\Metal Gear Soid 2 Substance\Metal Gear Soid 2 Substance cast 1.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Dokumenty\Stano\Dialkove ovladanie\Dialkove ovladanie.part1.rar » RAR » Dialkove ovladanie\girder329b.exe - next archive volume not found
D:\Dokumenty\Stano\Vietcong\Vietcong1.files\PAGEID=3176560815.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Install\playboy_the_mansion-patch_nude.zip » ZIP » readme.txt » MIME - is OK (internal scanning not performed)
D:\Install\[PC] Sony Vegas 5 + DVD Production Suite + Keygen.zip » ZIP » DVD Architect 2.0/main.cab » CAB » Sony_DVD_Architect_2_ShuttlePro_v2.mht » MIME - is OK (internal scanning not performed)
D:\Install\[PC] Sony Vegas 5 + DVD Production Suite + Keygen.zip » ZIP » DVD Architect 2.0/main.cab » CAB » Sony_DVD_Architect_2_ShuttlePro.mht » MIME - is OK (internal scanning not performed)
D:\Install\[PC] Sony Vegas 5 + DVD Production Suite + Keygen.zip » ZIP » DVD Architect 2.0/main.cab » CAB » Sony_DVD_Architect_2_ShuttleXpress.mht » MIME - is OK (internal scanning not performed)
D:\Install\[PC] Sony Vegas 5 + DVD Production Suite + Keygen.zip » ZIP » Vegas 5.0/subcomp.cab » CAB » Sony_Vegas_5--ShuttlePRO_v2.mht » MIME - is OK (internal scanning not performed)
D:\Install\[PC] Sony Vegas 5 + DVD Production Suite + Keygen.zip » ZIP » Vegas 5.0/subcomp.cab » CAB » Sony_Vegas_5--ShuttlePRO.mht » MIME - is OK (internal scanning not performed)
D:\Install\[PC] Sony Vegas 5 + DVD Production Suite + Keygen.zip » ZIP » Vegas 5.0/subcomp.cab » CAB » Sony_Vegas_5--ShuttleXpress.mht » MIME - is OK (internal scanning not performed)
D:\Install\winamp5541_full_emusic-7plus_en-us.exe » NSIS - internal error
D:\Install\subtitleworkshop251a.zip » ZIP » SubtitleWorkshop251.exe - archive damaged
D:\Install\winamp5551_full_emusic-7plus_en-us.exe » NSIS - internal error
D:\Install\Shockwave_Installer_Slim.exe » NSIS - internal error
D:\Install\GraboidVideoSetup.exe » NSIS » MozillaControl.exe » NSIS » installed-chrome.txt » MIME - is OK (internal scanning not performed)
D:\Install\GraboidVideoSetup.exe » NSIS » par2cmdline-0.4-tbb-20080420.tar.gz » GZIP » par2cmdline-0.4-tbb-20080420.tar » TAR » par2cmdline-0.4-tbb-20080420/ROADMAP » MIME - is OK (internal scanning not performed)
D:\Install\NVIDIA\nForceWinXP\2.78\USB20\XPUSB20.htm - Win32/Virut.NAT virus - deleted - quarantined
D:\Obrazky\B5_1x17.part1.rar » RAR » B5 1x17.avi - archive damaged
D:\Downloads\babki II\Patcher\vsp_upgrade_143.exe » NSIS » esp_umowa.txt » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0033660.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0034018.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0034100.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0034221.exe » NSIS » MozillaControl.exe » NSIS » installed-chrome.txt » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0034221.exe » NSIS » par2cmdline-0.4-tbb-20080420.tar.gz » GZIP » par2cmdline-0.4-tbb-20080420.tar » TAR » par2cmdline-0.4-tbb-20080420/ROADMAP » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0034901.exe » NSIS » esp_umowa.txt » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0035064.exe - Win32/TrojanDropper.Agent.B trojan - cleaned by deleting - quarantined
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0036215.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0036228.exe » NSIS » MozillaControl.exe » NSIS » installed-chrome.txt » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0036228.exe » NSIS » par2cmdline-0.4-tbb-20080420.tar.gz » GZIP » par2cmdline-0.4-tbb-20080420.tar » TAR » par2cmdline-0.4-tbb-20080420/ROADMAP » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0036551.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0036571.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0036595.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0036596.exe » NSIS » MozillaControl.exe » NSIS » installed-chrome.txt » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0036596.exe » NSIS » par2cmdline-0.4-tbb-20080420.tar.gz » GZIP » par2cmdline-0.4-tbb-20080420.tar » TAR » par2cmdline-0.4-tbb-20080420/ROADMAP » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037039.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037059.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037072.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037073.exe » NSIS » MozillaControl.exe » NSIS » installed-chrome.txt » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037073.exe » NSIS » par2cmdline-0.4-tbb-20080420.tar.gz » GZIP » par2cmdline-0.4-tbb-20080420.tar » TAR » par2cmdline-0.4-tbb-20080420/ROADMAP » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037217.exe » NSIS » esp_umowa.txt » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037412.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037446.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037459.exe » NSIS - internal error
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037460.exe » NSIS » MozillaControl.exe » NSIS » installed-chrome.txt » MIME - is OK (internal scanning not performed)
D:\System Volume Information\_restore{DC268709-67B6-4A73-9CE1-C9C0ACD7E312}\RP38\A0037460.exe » NSIS » par2cmdline-0.4-tbb-20080420.tar.gz » GZIP » par2cmdline-0.4-tbb-20080420.tar » TAR » par2cmdline-0.4-tbb-20080420/ROADMAP » MIME - is OK (internal scanning not performed)
D:\Humor\Bordel\reklama_na_pradlo.mpeg » MIME - is OK (internal scanning not performed)
D:\Humor\Bordel\toyota2.mpeg » MIME - is OK (internal scanning not performed)
E:\World of Warcraft - wotlk\Patch.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\connection-help.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Credits.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Credits_BC.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Credits_LK.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\eula.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\tos.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Layout\BSpacer.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Layout\CSpacer.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Layout\Greeting.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Layout\Nav.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Layout\Splash.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Layout\TBorder.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(Mac)Foreword.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(Mac)Installation.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(Mac)Patching.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(Mac)ReadMeMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(Mac)SystemRequirements.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(Mac)Uninstall.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(PC)Foreword.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(PC)Installation.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(PC)Patching.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(PC)ReadMeMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(PC)SystemRequirements.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\(PC)Uninstall.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\BasicCommands.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\CharacterNaming.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\GettingStarted.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\ManualErrata.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\RealmSelection.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\ReadMe\EULA.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\(Mac)SupportMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\(Mac)TechnicalSupport.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\(PC)SupportMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\(PC)TechnicalSupport.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\AccountAdministration.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\BlizzardInsider.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\Employment.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\GameSuggestions.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\GameSupport.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Support\Password.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(Mac)AudioProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(Mac)BlizzardDownloaderProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(Mac)ConnectionLoginProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(Mac)GameplayProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(Mac)Install.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(Mac)PreventiveMaintenance.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(Mac)StartupProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(Mac)TroubleshootingMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(Mac)VideoProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(PC)AudioProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(PC)BlizzardDownloaderProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(PC)ConnectionLoginProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(PC)GameplayProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(PC)Install.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(PC)PreventiveMaintenance.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(PC)StartupProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(PC)TroubleshootingMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Data\enUS\Documentation\Troubleshooting\(PC)VideoProblems.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Logs\Wrath of the Lich King Install Log.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Logs\Blizzard Updater Log.html - Win32/Virut.NAT virus - deleted - quarantined
E:\World of Warcraft - wotlk\Screenshots\Rogue Talents - World of Warcraft Talent Calculator version 3.3.3 - WoW Use.htm - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\BattleNet\(PC)BNetMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\BattleNet\(PC)BNetTroubleshooting.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\BattleNet\ChatHelp.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\cb_center.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\cb_left.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\cb_right.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\ct_center.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\ct_left.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\ct_right.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\c_center.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\c_left.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\c_right.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\header_c.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\header_l.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\header_lf.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\header_r.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\header_rf.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\m_bottom.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\m_mc.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\m_mc2.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\m_ml.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\m_mr.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\m_top.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Layout\WorldEditLocationBar.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\(PC)Foreword.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\(PC)InGame.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\(PC)PatchUninstall.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\(PC)ReadMeMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\(PC)Start.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\(PC)UIMainMenus.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\Addendum.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\BNTOU.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\Contact.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\EULA.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\ReadMe\Games.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Support\(PC)InstallUninstall.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Support\(PC)LAN.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Support\(PC)LockCrashDrivers.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Support\(PC)Patches.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\Support\(PC)SupportMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\(PC)WorldEditMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\CreationSet.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\FeaturesNav.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\Intro.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\LocationBar.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\Menus.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\ObjectManager.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\SoundEditor.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\TerrainEdit.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\TriggerEdit.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\UnitEdit.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Warcraft 3\support\WorldEdit\WorldEditMenu.html - Win32/Virut.NAT virus - deleted - quarantined
E:\Hry\x - com - terror from the deep\ufo navod.htm - Win32/Virut.NAT virus - deleted - quarantined

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#11 Příspěvek od milenium0 »

Tu je druhy

Soubor winlogon.exe přijatý 2010.05.16 08:55:50 (UTC)
Současný stav: Dokončeno
Výsledek: 0/41 (0%)
Formátované
Vytisknout výsledky Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.05.10 -
AhnLab-V3 2010.05.16.00 2010.05.15 -
AntiVir 8.2.1.242 2010.05.14 -
Antiy-AVL 2.0.3.7 2010.05.14 -
Authentium 5.2.0.5 2010.05.15 -
Avast 4.8.1351.0 2010.05.16 -
Avast5 5.0.332.0 2010.05.16 -
AVG 9.0.0.787 2010.05.15 -
BitDefender 7.2 2010.05.16 -
CAT-QuickHeal 10.00 2010.05.15 -
ClamAV 0.96.0.3-git 2010.05.16 -
Comodo 4857 2010.05.16 -
DrWeb 5.0.2.03300 2010.05.16 -
eSafe 7.0.17.0 2010.05.13 -
eTrust-Vet 35.2.7490 2010.05.15 -
F-Prot 4.5.1.85 2010.05.15 -
F-Secure 9.0.15370.0 2010.05.15 -
Fortinet 4.1.133.0 2010.05.16 -
GData 21 2010.05.16 -
Ikarus T3.1.1.84.0 2010.05.16 -
Jiangmin 13.0.900 2010.05.15 -
Kaspersky 7.0.0.125 2010.05.16 -
McAfee 5.400.0.1158 2010.05.16 -
McAfee-GW-Edition 2010.1 2010.05.16 -
Microsoft 1.5703 2010.05.16 -
NOD32 5117 2010.05.15 -
Norman 6.04.12 2010.05.16 -
nProtect 2010-05-16.01 2010.05.16 -
Panda 10.0.2.7 2010.05.16 -
PCTools 7.0.3.5 2010.05.16 -
Prevx 3.0 2010.05.16 -
Rising 22.47.06.04 2010.05.16 -
Sophos 4.53.0 2010.05.16 -
Sunbelt 6308 2010.05.16 -
Symantec 20101.1.0.89 2010.05.16 -
TheHacker 6.5.2.0.280 2010.05.14 -
TrendMicro 9.120.0.1004 2010.05.16 -
TrendMicro-HouseCall 9.120.0.1004 2010.05.16 -
VBA32 3.12.12.5 2010.05.14 -
ViRobot 2010.5.15.2318 2010.05.15 -
VirusBuster 5.0.27.0 2010.05.15 -

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#12 Příspěvek od milenium0 »

Treti:

Soubor services.exe přijatý 2010.05.16 09:01:05 (UTC)
Současný stav: Dokončeno
Výsledek: 0/41 (0.00%)
Formátované
Vytisknout výsledky Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.05.10 -
AhnLab-V3 2010.05.16.00 2010.05.15 -
AntiVir 8.2.1.242 2010.05.14 -
Antiy-AVL 2.0.3.7 2010.05.14 -
Authentium 5.2.0.5 2010.05.15 -
Avast 4.8.1351.0 2010.05.16 -
Avast5 5.0.332.0 2010.05.16 -
AVG 9.0.0.787 2010.05.15 -
BitDefender 7.2 2010.05.16 -
CAT-QuickHeal 10.00 2010.05.15 -
ClamAV 0.96.0.3-git 2010.05.16 -
Comodo 4857 2010.05.16 -
DrWeb 5.0.2.03300 2010.05.16 -
eSafe 7.0.17.0 2010.05.13 -
eTrust-Vet 35.2.7490 2010.05.15 -
F-Prot 4.5.1.85 2010.05.15 -
F-Secure 9.0.15370.0 2010.05.15 -
Fortinet 4.1.133.0 2010.05.16 -
GData 21 2010.05.16 -
Ikarus T3.1.1.84.0 2010.05.16 -
Jiangmin 13.0.900 2010.05.15 -
Kaspersky 7.0.0.125 2010.05.16 -
McAfee 5.400.0.1158 2010.05.16 -
McAfee-GW-Edition 2010.1 2010.05.16 -
Microsoft 1.5703 2010.05.16 -
NOD32 5117 2010.05.15 -
Norman 6.04.12 2010.05.16 -
nProtect 2010-05-16.01 2010.05.16 -
Panda 10.0.2.7 2010.05.16 -
PCTools 7.0.3.5 2010.05.16 -
Prevx 3.0 2010.05.16 -
Rising 22.47.06.04 2010.05.16 -
Sophos 4.53.0 2010.05.16 -
Sunbelt 6308 2010.05.16 -
Symantec 20101.1.0.89 2010.05.16 -
TheHacker 6.5.2.0.280 2010.05.14 -
TrendMicro 9.120.0.1004 2010.05.16 -
TrendMicro-HouseCall 9.120.0.1004 2010.05.16 -
VBA32 3.12.12.5 2010.05.14 -
ViRobot 2010.5.15.2318 2010.05.15 -
VirusBuster 5.0.27.0 2010.05.15 -

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#13 Příspěvek od milenium0 »

Subor lsass.exe je cisty tak jak tie ostatne bez znamky viru.

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#14 Příspěvek od milenium0 »

Predposledny

Soubor svchost.exe přijatý 2010.05.16 09:10:47 (UTC)
Současný stav: Dokončeno
Výsledek: 0/41 (0%)
Formátované
Vytisknout výsledky Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.05.10 -
AhnLab-V3 2010.05.16.00 2010.05.15 -
AntiVir 8.2.1.242 2010.05.14 -
Antiy-AVL 2.0.3.7 2010.05.14 -
Authentium 5.2.0.5 2010.05.15 -
Avast 4.8.1351.0 2010.05.16 -
Avast5 5.0.332.0 2010.05.16 -
AVG 9.0.0.787 2010.05.15 -
BitDefender 7.2 2010.05.16 -
CAT-QuickHeal 10.00 2010.05.15 -
ClamAV 0.96.0.3-git 2010.05.16 -
Comodo 4857 2010.05.16 -
DrWeb 5.0.2.03300 2010.05.16 -
eSafe 7.0.17.0 2010.05.13 -
eTrust-Vet 35.2.7490 2010.05.15 -
F-Prot 4.5.1.85 2010.05.15 -
F-Secure 9.0.15370.0 2010.05.15 -
Fortinet 4.1.133.0 2010.05.16 -
GData 21 2010.05.16 -
Ikarus T3.1.1.84.0 2010.05.16 -
Jiangmin 13.0.900 2010.05.15 -
Kaspersky 7.0.0.125 2010.05.16 -
McAfee 5.400.0.1158 2010.05.16 -
McAfee-GW-Edition 2010.1 2010.05.16 -
Microsoft 1.5703 2010.05.16 -
NOD32 5117 2010.05.15 -
Norman 6.04.12 2010.05.16 -
nProtect 2010-05-16.01 2010.05.16 -
Panda 10.0.2.7 2010.05.16 -
PCTools 7.0.3.5 2010.05.16 -
Prevx 3.0 2010.05.16 -
Rising 22.47.06.04 2010.05.16 -
Sophos 4.53.0 2010.05.16 -
Sunbelt 6308 2010.05.16 -
Symantec 20101.1.0.89 2010.05.16 -
TheHacker 6.5.2.0.280 2010.05.14 -
TrendMicro 9.120.0.1004 2010.05.16 -
TrendMicro-HouseCall 9.120.0.1004 2010.05.16 -
VBA32 3.12.12.5 2010.05.14 -
ViRobot 2010.5.15.2318 2010.05.15 -
VirusBuster 5.0.27.0 2010.05.15 -

milenium0
Návštěvník
Návštěvník
Příspěvky: 46
Registrován: 15 kvě 2010 17:17

Re: Total comander

#15 Příspěvek od milenium0 »

Posledny

Soubor explorer.exe přijatý 2010.05.16 09:13:59 (UTC)
Současný stav: Dokončeno
Výsledek: 38/41 (92.68%)
Formátované
Vytisknout výsledky Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.50 2010.05.10 Virus.Win32.Virut.q!IK
AhnLab-V3 2010.05.16.00 2010.05.15 Win32/Virut.Gen
AntiVir 8.2.1.242 2010.05.14 W32/Virut.Gen
Antiy-AVL 2.0.3.7 2010.05.14 -
Authentium 5.2.0.5 2010.05.15 W32/Virut.gen4
Avast 4.8.1351.0 2010.05.16 Win32:Virtob
Avast5 5.0.332.0 2010.05.16 Win32:Virtob
AVG 9.0.0.787 2010.05.15 Win32/Virut
BitDefender 7.2 2010.05.16 Win32.Virut.M
CAT-QuickHeal 10.00 2010.05.15 W32.Virut.AC
ClamAV 0.96.0.3-git 2010.05.16 W32.Virut-21
Comodo 4857 2010.05.16 Virus.Win32.Virut.BF
DrWeb 5.0.2.03300 2010.05.16 Win32.Virut.35
eSafe 7.0.17.0 2010.05.13 -
eTrust-Vet 35.2.7490 2010.05.15 Win32/Virut.7096
F-Prot 4.5.1.85 2010.05.15 W32/Virut.gen4
F-Secure 9.0.15370.0 2010.05.15 Win32.Virut.M
Fortinet 4.1.133.0 2010.05.16 W32/Virut.J
GData 21 2010.05.16 Win32.Virut.M
Ikarus T3.1.1.84.0 2010.05.16 Virus.Win32.Virut.q
Jiangmin 13.0.900 2010.05.15 Win32/Virut.ar
Kaspersky 7.0.0.125 2010.05.16 Virus.Win32.Virut.bf
McAfee 5.400.0.1158 2010.05.16 W32/Virut.j
McAfee-GW-Edition 2010.1 2010.05.16 W32/Virut.j
Microsoft 1.5703 2010.05.16 Virus:Win32/Virut.AQ
NOD32 5117 2010.05.15 Win32/Virut.BF
Norman 6.04.12 2010.05.16 W32/Virut.CT
nProtect 2010-05-16.01 2010.05.16 Virus/W32.Virut.K
Panda 10.0.2.7 2010.05.16 W32/Virutas.FG
PCTools 7.0.3.5 2010.05.16 Win32.Virut.Gen.4
Prevx 3.0 2010.05.16 -
Rising 22.47.06.04 2010.05.16 Win32.Agent.bj
Sophos 4.53.0 2010.05.16 W32/Virut-Gen
Sunbelt 6308 2010.05.16 Virus.Win32.Virut.a (v)
Symantec 20101.1.0.89 2010.05.16 W32.Virut.W
TheHacker 6.5.2.0.280 2010.05.14 W32/Virut.gen2
TrendMicro 9.120.0.1004 2010.05.16 PE_VIRUT.SA
TrendMicro-HouseCall 9.120.0.1004 2010.05.16 PE_VIRUT.SA
VBA32 3.12.12.5 2010.05.14 Virus.Win32.Virut.bf
ViRobot 2010.5.15.2318 2010.05.15 Win32.Virut.Gen
VirusBuster 5.0.27.0 2010.05.15 Win32.Virut.Gen.4


Da sa z tym nieco urobit.

Odpovědět