03.09.2006, 14:35
Mam problem z avirą.
Wykrywa ona wirusy ale ich nie usuwa.
Co mam zrobić?
Wykrywa ona wirusy ale ich nie usuwa.
Co mam zrobić?
Problem z wirusami
|
03.09.2006, 14:35
Mam problem z avirą.
Wykrywa ona wirusy ale ich nie usuwa. Co mam zrobić?
03.09.2006, 15:23
Wklej log na forum, zobaczymy co siedzi.
03.09.2006, 15:25
bigmagic napisał(a):Wykrywa ona wirusy ale ich nie usuwa. Jeśli premium - Overwrite and Delete, jesli normal wtedy dzialasz w trybie awaryjnym ale dla pewnosci Seth napisał(a):Wklej log na forum, zobaczymy co siedzi.
03.09.2006, 17:42
mój log:
AntiVir PersonalEdition Classic Report file date: 3 września 200618:05 Scanning for 493800 virus strains and unwanted programs. Licensed to:AntiVir PersonalEdition Classic Serial number:0000149996-WURGE-0001 Platform: Windows XP Windows versionDodatek Service Pack 2)[5.1.2600] Username: User Computer nameOM Version informations: AVSCAN.EXE : 7.0.0.42557096 2006-08-23 21:22:11 AVSCAN.DLL : 7.0.0.42532882006-08-23 21:22:11 LUKE.DLL : 7.0.0.42118824 2006-08-23 21:22:11 LUKERES.DLL: 7.0.0.42256402006-08-23 21:22:11 ANTIVIR0.VDF : 6.35.0.173712642006-08-23 21:22:11 ANTIVIR1.VDF : 6.35.1.12212707842006-08-23 21:22:11 ANTIVIR2.VDF : 6.35.1.175144896 2006-08-23 21:22:11 ANTIVIR3.VDF : 6.35.1.178112642006-08-23 21:22:11 AVEWIN32.DLL : 7.1.1.1118273282006-08-23 21:22:11 AVPREF.DLL : 7.0.0.1 491922006-08-23 21:22:11 AVREP.DLL: 6.35.1.124774184 2006-08-23 21:22:11 AVRPBASE.DLL : 7.0.0.0 21627282006-08-23 21:22:11 AVPACK32.DLL : 7.1.0.1 335912 2006-08-23 21:22:11 AVREG.DLL: 6.31.0.90 276882006-08-23 21:22:11 NETNT.DLL: 6.32.0.06696 2006-08-23 21:22:11 NETNW.DLL: 6.32.0.09768 2006-08-23 21:22:11 RCIMAGE.DLL: 7.0.0.7116425362006-08-23 21:22:12 RCTEXT.DLL : 7.0.0.75778642006-08-23 21:22:12 Configuration settings for the scan: Jobname: ''%s''.................: Local Hard Disks Configuration file............: Crogram FilesAntiVir PersonalEdition Classicalldiscs.avp Boot sectors..................: C,D Scan memory...................: 1 Process scan..................: 1 Scan all files................: 1 Scan archives.................: 1 Recursion depth...............: 20 Smart extensions..............: 1 Skipped archive types.........: 1000,1001,1002,1003,1004, Macro heuristic...............: 1 File heuristic................: 2 Primary action................: 8 Secondary action..............: 0 Start of the scan: 3 września 200618:05 The scan over running processes will be started 30 Processes was scanned Start scanning boot sectors: Boot sector ''C:'' [NOTE] No virus was found! Boot sector ''D:'' [NOTE] No virus was found! Starting to scan the registry. The registry was scanned ( 10 files ). Starting the file scan: C:pagefile.sys [WARNING]The file could not be opened! Cocuments and SettingsLocalServiceNTUSER.DAT [WARNING]The file could not be opened! Cocuments and SettingsLocalServicentuser.dat.LOG [WARNING]The file could not be opened! Cocuments and SettingsLocalServiceUstawienia lokalneDane aplikacjiMicrosoftWindowsUsrClass.dat [WARNING]The file could not be opened! Cocuments and SettingsLocalServiceUstawienia lokalneDane aplikacjiMicrosoftWindowsUsrClass.dat.LOG [WARNING]The file could not be opened! Cocuments and SettingsNetworkServiceNTUSER.DAT [WARNING]The file could not be opened! Cocuments and SettingsNetworkServicentuser.dat.LOG [WARNING]The file could not be opened! Cocuments and SettingsNetworkServiceUstawienia lokalneDane aplikacjiMicrosoftWindowsUsrClass.dat [WARNING]The file could not be opened! Cocuments and SettingsNetworkServiceUstawienia lokalneDane aplikacjiMicrosoftWindowsUsrClass.dat.LOG [WARNING]The file could not be opened! Cocuments and SettingsUserNTUSER.DAT [WARNING]The file could not be opened! Cocuments and SettingsUserntuser.dat.LOG [WARNING]The file could not be opened! Cocuments and SettingsUserDane aplikacjiMozillaFirefoxProfilesl1wfbnbk.defaultparent.lock [WARNING]The file could not be opened! Cocuments and SettingsUserDane aplikacjiThunderbirdProfilest8595b7j.defaultmaillocal foldersinbox [0]Archive type: Netscape/Mozilla Mailbox --> Mailbox_[From: "eFoxPay CO" <[email protected]>] [Subject: new vacancies] 758.mim [1]Archive type: MIME --> file0.html [DETECTION]Enthält Signatur der Phish-Datei/Email PHISH/aFoxFraud --> Mailbox_[From: "Fifth Third Bank" <customerssupport_28756313.c] [Subject: Urgent Security Notice] 870.mim [DETECTION]Enthält Signatur der Phish-Datei/Email PHISH/53Bkfraud.O [1]Archive type: MIME --> file0.mim [DETECTION]Enthält Signatur der Phish-Datei/Email PHISH/53Bkfraud.O [2]Archive type: MIME --> file1.html [DETECTION]Enthält Signatur der Phish-Datei/Email PHISH/53Bkfraud.G [WARNING]The file was ignored! Cocuments and SettingsUserDane aplikacjiThunderbirdProfilest8595b7j.defaultmaillocal folderstrash [0]Archive type: Netscape/Mozilla Mailbox --> Mailbox_[From: "eFoxPay CO" <[email protected]>] [Subject: new vacancies] 308.mim [1]Archive type: MIME --> file0.html [DETECTION]Enthält Signatur der Phish-Datei/Email PHISH/aFoxFraud --> Mailbox_[From: "Fifth Third Bank" <customerssupport_28756313.c] [Subject: Urgent Security Notice] 408.mim [DETECTION]Enthält Signatur der Phish-Datei/Email PHISH/53Bkfraud.O [1]Archive type: MIME --> file0.mim [DETECTION]Enthält Signatur der Phish-Datei/Email PHISH/53Bkfraud.O [2]Archive type: MIME --> file1.html [DETECTION]Enthält Signatur der Phish-Datei/Email PHISH/53Bkfraud.G [WARNING]The file was ignored! Cocuments and SettingsUserUstawienia lokalneDane aplikacjiMicrosoftWindowsUsrClass.dat [WARNING]The file could not be opened! Cocuments and SettingsUserUstawienia lokalneDane aplikacjiMicrosoftWindowsUsrClass.dat.LOG [WARNING]The file could not be opened! C:WINDOWSsystem32CatRoot2edb.log [WARNING]The file could not be opened! C:WINDOWSsystem32CatRoot2tmp.edb [WARNING]The file could not be opened! C:WINDOWSsystem32configdefault [WARNING]The file could not be opened! C:WINDOWSsystem32configdefault.LOG [WARNING]The file could not be opened! C:WINDOWSsystem32configSAM [WARNING]The file could not be opened! C:WINDOWSsystem32configSAM.LOG [WARNING]The file could not be opened! C:WINDOWSsystem32configSECURITY [WARNING]The file could not be opened! C:WINDOWSsystem32configSECURITY.LOG [WARNING]The file could not be opened! C:WINDOWSsystem32configsoftware [WARNING]The file could not be opened! C:WINDOWSsystem32configsoftware.LOG [WARNING]The file could not be opened! C:WINDOWSsystem32configsystem [WARNING]The file could not be opened! C:WINDOWSsystem32configsystem.LOG [WARNING]The file could not be opened! C:WINDOWSsystem32driversatapi.sys [WARNING]The file could not be opened! C:WINDOWSTempZLT03a5b.TMP [WARNING]The file could not be opened! C:WINDOWSTempZLT049c8.TMP [WARNING]The file could not be opened! D:WpeProPermEdit.exe [DETECTION]File has been compressed with an unusual runtime compression tool (PCK/MEW). Please verify the origin of the file [INFO] The file was moved to ''456d0639.qua''! D:WpeProWPE by elektro255.exe [DETECTION]File has been compressed with an unusual runtime compression tool (PCK/MEW). Please verify the origin of the file [INFO] The file was moved to ''45400624.qua''! End of the scan: 3 września 200618:41 Used time: 36:13 min The scan has been done completely. 5207 Scanning directories 196624 Files were scanned 10 viruses and/or unwanted programs was found 0 files were deleted 0 files were repaired 2 files were moved to quarantine 0 files were renamed 4501 Archives were scanned 31 Warnings 1 Notes
03.09.2006, 18:13
wklej dodatkowo dwa logi z tego tematu:
hijack this oraz silent runners [Aby zobaczyć linki, zarejestruj się tutaj]
03.09.2006, 18:55
hijack this
Kod: Logfile of HijackThis v1.99.1 silent runners Kod: "Silent Runners.vbs", revision 47, http://www.silentrunners.org/
03.09.2006, 19:03
lod silent runners jest urwany,prosze poczekac do konca ,dostaniesz komunikat
dodatkowo ustal ktore to sa twoje DNS`y: Cytat: O17 - HKLMSystemCCSServicesTcpip..{0E1D641B-4B38-40E8-90C5-0F94150388AA}: NameServer = 213.241.79.37 195.114.181.130
03.09.2006, 19:06
był komunikat przy silent runners a co do dns to niewiem o co chodzi.
Zawsze używałem antywirusów a nie skanerów.
03.09.2006, 19:08
log z silent runners musi zakonczyc sie +++++ przeskanuj i wklej raz jeszcze
03.09.2006, 19:12
Kod: "Silent Runners.vbs", revision 47, http://www.silentrunners.org/ o to chodzi?
03.09.2006, 19:15
Logi masz czyste jeden i drugi...
Dla pewnosci jeszcze ,czy mozesz przeskanowac system : [Aby zobaczyć linki, zarejestruj się tutaj] i wkleic wynik na forum,bo wychodzi na to ze avirka daje ci błedne komunikaty,wstepnie
03.09.2006, 20:48
Kasperski nic niewykrył
O co chodzi z tą avirą? Ale mimo tego i tak coś musiało być bo mi ładnie kompa przymulało tyle tylko, że niewiem dlaczego przeszło samo.
13.11.2011, 10:41
avira>>AntiVir
A jesli przeszło samo ,to bardzo się cieszę |
« Starszy wątek | Nowszy wątek »
|