Wirus w kompie ...jak przy takim wirusie postąpić?


(system) #1

Słowo nigdzie nie łaziłem !Tylko na tej stronie Zune w skórki kliknołem ! i masz babo placek ! daje logo i proszę o pomoc ? czy mam to skasowac Arcą ? czy zostawić w Avirze w kwarantannie ! w czasie skanowania Awira nie przyjęła opcji Delete? dlaczego nie ?

Avira AntiVir Premium

Report file date: 25 maja 2008 18:50

Scanning for 1286436 virus strains and unwanted programs.

Licensed to:

Serial number: 1101885814-PEPWE-0001

Platform: Windows XP

Windows version: (Dodatek Service Pack 2) [5.1.2600]

Boot mode: Normally booted

Username: SYSTEM

Computer name: TEST-876988C509

Version information:

BUILD.DAT : 8.1.00.332 19215 Bytes 08-04-29 10:46:00

AVSCAN.EXE : 8.1.2.12 311553 Bytes 08-05-14 21:09:54

AVSCAN.DLL : 8.1.1.0 53505 Bytes 08-05-14 21:09:54

LUKE.DLL : 8.1.2.9 151809 Bytes 08-05-14 21:09:55

LUKERES.DLL : 8.1.2.1 12033 Bytes 08-05-14 21:09:55

ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 07-07-18 13:27:15

ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 08-03-07 21:09:56

ANTIVIR2.VDF : 7.0.4.53 1848832 Bytes 08-05-17 07:48:07

ANTIVIR3.VDF : 7.0.4.88 158720 Bytes 08-05-25 10:53:56

Engineversion : 8.1.0.46

AEVDF.DLL : 8.1.0.5 102772 Bytes 08-05-14 21:09:57

AESCRIPT.DLL : 8.1.0.33 266618 Bytes 08-05-15 20:38:10

AESCN.DLL : 8.1.0.18 119156 Bytes 08-05-15 20:38:05

AERDL.DLL : 8.1.0.20 418165 Bytes 08-05-14 21:09:57

AEPACK.DLL : 8.1.1.5 364918 Bytes 08-05-15 20:38:03

AEOFFICE.DLL : 8.1.0.18 192890 Bytes 08-05-14 21:09:57

AEHEUR.DLL : 8.1.0.29 1253750 Bytes 08-05-15 20:38:00

AEHELP.DLL : 8.1.0.14 115063 Bytes 08-05-14 21:09:56

AEGEN.DLL : 8.1.0.21 303477 Bytes 08-05-15 20:37:51

AEEMU.DLL : 8.1.0.6 430451 Bytes 08-05-14 21:09:56

AECORE.DLL : 8.1.0.29 168311 Bytes 08-05-15 20:37:47

AVWINLL.DLL : 1.0.0.7 14593 Bytes 08-05-14 21:09:54

AVPREF.DLL : 8.0.0.1 25857 Bytes 08-05-14 21:09:54

AVREP.DLL : 7.0.0.1 155688 Bytes 07-04-16 12:16:24

AVREG.DLL : 8.0.0.0 30977 Bytes 08-05-14 21:09:54

AVARKT.DLL : 1.0.0.23 307457 Bytes 08-05-14 21:09:53

AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 08-05-14 21:09:53

SQLITE3.DLL : 3.3.17.1 339968 Bytes 08-05-14 21:09:56

SMTPLIB.DLL : 1.2.0.19 28929 Bytes 08-05-14 21:09:56

NETNT.DLL : 8.0.0.1 7937 Bytes 08-05-14 21:09:55

RCIMAGE.DLL : 8.0.0.31 2564353 Bytes 08-05-14 21:09:49

RCTEXT.DLL : 8.0.32.0 86273 Bytes 08-05-14 21:09:49

Configuration settings for the scan:

Jobname..........................: Complete system scan

Configuration file...............: c:\program files\avira\antivir personaledition premium\sysscan.avp

Logging..........................: low

Primary action...................: interactive

Secondary action.................: ignore

Scan master boot sector..........: off

Scan boot sector.................: on

Boot sectors.....................: C:, D:, E:, F:,

Scan memory......................: on

Process scan.....................: on

Scan registry....................: on

Search for rootkits..............: off

Scan all files...................: Intelligent file selection

Scan archives....................: on

Recursion depth..................: 20

Smart extensions.................: on

Macro heuristic..................: on

File heuristic...................: medium

Start of the scan: 25 maja 2008 18:50

The scan of running processes will be started

Scan process 'avscan.exe' - '1' Module(s) have been scanned

Scan process 'avcenter.exe' - '1' Module(s) have been scanned

Scan process 'firefox.exe' - '1' Module(s) have been scanned

Scan process 'wuauclt.exe' - '1' Module(s) have been scanned

Scan process 'skypePM.exe' - '1' Module(s) have been scanned

Scan process 'Skype.exe' - '1' Module(s) have been scanned

Scan process 'ctfmon.exe' - '1' Module(s) have been scanned

Scan process 'RAM_XP.exe' - '1' Module(s) have been scanned

Scan process 'RTHDCPL.exe' - '1' Module(s) have been scanned

Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned

Scan process 'WinPatrol.exe' - '1' Module(s) have been scanned

Scan process 'avgnt.exe' - '1' Module(s) have been scanned

Scan process 'dragdiag.exe' - '1' Module(s) have been scanned

Scan process 'IAAnotif.exe' - '1' Module(s) have been scanned

Scan process 'explorer.exe' - '1' Module(s) have been scanned

Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned

Scan process 'alg.exe' - '1' Module(s) have been scanned

Scan process 'avmailc.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'snmp.exe' - '1' Module(s) have been scanned

Scan process 'IAANTMon.exe' - '1' Module(s) have been scanned

Scan process 'avesvc.exe' - '1' Module(s) have been scanned

Scan process 'AppleMobileDeviceService.exe' - '1' Module(s) have been scanned

Scan process 'sched.exe' - '1' Module(s) have been scanned

Scan process 'avguard.exe' - '1' Module(s) have been scanned

Scan process 'spoolsv.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned

Scan process 'lsass.exe' - '1' Module(s) have been scanned

Scan process 'services.exe' - '1' Module(s) have been scanned

Scan process 'winlogon.exe' - '1' Module(s) have been scanned

Scan process 'csrss.exe' - '1' Module(s) have been scanned

Scan process 'smss.exe' - '1' Module(s) have been scanned

37 processes with 37 modules were scanned

Start scanning boot sectors:

Boot sector 'C:\'

[iNFO] No virus was found!

Boot sector 'D:\'

[iNFO] No virus was found!

Boot sector 'E:\'

[iNFO] No virus was found!

Boot sector 'F:\'

[iNFO] No virus was found!

Starting to scan the registry.

The registry was scanned ( '42' files ).

Starting the file scan:

Begin scan in 'C:\'

C:\pagefile.sys

[WARNING] The file could not be opened!

C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcrst.dll

[0] Archive type: RSRC

--> Object

[DETECTION] Contains detection pattern of the worm WORM/Pykse.M.1

[NOTE] The file was moved to '48a69a5e.qua'!

C:\RECYCLER\NPROTECT\00007975.exe

[0] Archive type: RSRC

--> Object

[1] Archive type: RSRC

--> Object

[DETECTION] Contains detection pattern of the worm WORM/Pykse.M.1

[NOTE] The file was deleted!

C:\RECYCLER\NPROTECT\00007976.dll

[0] Archive type: RSRC

--> Object

[DETECTION] Contains detection pattern of the worm WORM/Pykse.M.1

[NOTE] The file was moved to '48699ad9.qua'!

C:\System Volume Information_restore{ADA6F917-217B-4929-96D6-240D36703D08}\RP5\A0000425.dll

[0] Archive type: RSRC

--> Object

[DETECTION] Contains detection pattern of the worm WORM/Pykse.M.1

[NOTE] The file was moved to '48699aef.qua'!

C:\System Volume Information_restore{ADA6F917-217B-4929-96D6-240D36703D08}\RP5\A0000426.exe

[0] Archive type: RSRC

--> Object

[1] Archive type: RSRC

--> Object

[DETECTION] Contains detection pattern of the worm WORM/Pykse.M.1

[NOTE] The file was moved to '48699af2.qua'!

C:\System Volume Information_restore{ADA6F917-217B-4929-96D6-240D36703D08}\RP5\A0000427.dll

[0] Archive type: RSRC

--> Object

[DETECTION] Contains detection pattern of the worm WORM/Pykse.M.1

[NOTE] The file was moved to '48699af4.qua'!

Begin scan in 'D:\'

Begin scan in 'E:\'

Begin scan in 'F:\'

End of the scan: 25 maja 2008 19:07

Used time: 16:55 min

The scan has been done completely.

4410 Scanning directories

120630 Files were scanned

6 viruses and/or unwanted programs were found

0 Files were classified as suspicious:

1 files were deleted

0 files were repaired

5 files were moved to quarantine

0 files were renamed

1 Files cannot be scanned

120624 Files not concerned

989 Archives were scanned

1 Warnings

6 Notes


(huber2t) #2

Przeskanuj obszar mojego komputera http://www.kaspersky.pl/virusscanner.html (uruchom przez IE) Daj raport z niego na forum


(system) #3

Skanuje Kasperskim . ale pisze ten post bo sprawdziłem teraz !te pliki są w kwarantannie Awiry ! Czy mam tam je pozostawic ? czy skasować jednak ? dzięki za pomoc !


(huber2t) #4

Usuń wszystkie te pliki z kwaranatanny


(Agatonster) #5

SPóZNIONY DZIADEK ,

Proszę poprawić tytuł tematu na konkretny, mówiący o problemie.

W celu dokonania zaleconej korekty - proszę użyć przycisku ac7a4cd89050aa6e.gifprzy poście otwierającym ten temat.

Zignorowanie zalecenia będzie skutkowało usunięciem tematu do Kosza.

Gdybyś zamierzał wklejać dalsze logi - pamiętaj o zaleceniach określonych w tym temacie.

Temat przenoszę do działu Bezpieczeństwo...