Antivirusni alati

Hardware, software, mobiteli, programiranje, internet...

Moderator: Benq

The_Fluid
Posts: 5591
Joined: 02/08/2002 00:00
Location: Earth

#76

Post by The_Fluid »

Novi crv koji se pojavio na Internetu preko vikenda zarazio je samo vrlo maleni broj Internet korisnika, te nije poprimio masovne razmjere. Originalna Zotob.A verzija zarazila je preko vikenda samo pedesetak računala diljem svijeta, a prva preinaka Zotob.B zarazila je tek oko 1000 računala, prema izvještaju antivirusne tvrtke TrendMicro. Zanimljivo je da Zotob napada samo korisnike Windows 2000 i starijih operativnih sustava dok su korisnici Windowsa XP potpuno sigurni. (it.monitor.hr)
User avatar
Qler
Posts: 25731
Joined: 18/10/2004 14:49
Location: Sarajevo

#77

Post by Qler »

ja sam sebi sinoc instalirao ZA 6 pro, izbrisao avast!-a, microsoft antyspyware i ad-aware!

Sada sam samo ostao na ZA 6 i njegovom firewall-u, anti virusu i anti spyware-u i nadam se da ce dobro raditi posao! Uglavnom sad mi je vise RAM-a slobodno, manje procesa windows vrti.... :roll:
kirk13
Posts: 118
Joined: 23/04/2005 21:19
Location: Ljubljana

#78

Post by kirk13 »

Kao što već spomenuše Zone Alarm je pravo dobar, ali je stvarno dosadan dok se ne ''istrenira''. Do sada sam koristio ZA5 ali sada definitivno prijelazim na ZA6. Vidjećemo... :-)
The_Fluid
Posts: 5591
Joined: 02/08/2002 00:00
Location: Earth

#79

Post by The_Fluid »

svchost.exe

svchost.exe je dio operativnog sistema koji je zaduzen za ucitavanje DLL fajlova prilikom starta kompjutera. Može ih biti ucitano vise u isto vrijeme.

Fajl se nalazi u folderu c:\\windows\\System32, ukoliko ima drugu lokaciju onda se radi o parazitu.

Paraziti tipa Blaster, Sasser, Agobot, Welchia... su poznati po tome da koriste takvo ime.

Ispravna lokacija: c:\\windows\\System32\\svchost.exe

Ukoliko se radi o virusu onda je najcesce u sljedecem obliku:

c:\\windows\\System32\\svchost .exe <<< ima prazno mjesto poslije slova \„t\”
c:\\windows\\System32\\ svchost.exe <<< ima prazno mjesto ispred slova \„s\”
c:\\windows\\System32\\scvhost.exe <<< ovdje je sCVhost umjesto sVChost
c:\\windows\\System32\\svchost_.exe <<< ima liniju
c:\\windows\\svchost.exe <<< ne nalazi se u \\system32 folderu
The_Fluid
Posts: 5591
Joined: 02/08/2002 00:00
Location: Earth

#80

Post by The_Fluid »

Image

Ashampoo AntiMail virus
Avast AntiVirus Pro
Bit Defender Pro 9
Etrust Antivirus
F-Prot Retail
F-Secure Antivirus
Kaspersky Antivrus
MaAfee Corp 8.0i
Panda Antivirus 2006
Symantec Antivirus Corp 9


Image
link
kucati: NoNaMe
Schulz
Posts: 45
Joined: 29/09/2005 21:05
Location: Seher
Contact:

#81

Post by Schulz »

The_Fluid wrote:Image

Ashampoo AntiMail virus
Avast AntiVirus Pro
Bit Defender Pro 9
Etrust Antivirus
F-Prot Retail
F-Secure Antivirus
Kaspersky Antivrus
MaAfee Corp 8.0i
Panda Antivirus 2006
Symantec Antivirus Corp 9


Image
link
kucati: NoNaMe
The Fluid, ima li šanse da obnoviš ovaj link. Treba mi što prije neki antivirus, može po tvojoj preporuci, pošto vidim da se razumiješ. Ako obnoviš link, koji od ovih preporučuješ? :)
mr2
Posts: 815
Joined: 27/06/2005 20:03
Location: amsterdam

#82

Post by mr2 »

komi wrote:drugovi trebam pomoć

ne mogu izvršiti update mekafijevog antispywarea i ostalih njihovih proizvoda jer mi neki pop up kiler sprečava downlodiranje

koji je to program kada sve isključim što sam instalirao

prozor na kojem se vidi početak downlodiranja
se zatvori i pojavi se obavijest da je downlodiranje otkazano

u vrhu internet stranice postoji obavijest

da neki korsnici imaju pop up kiler kojeg treba privremeno iskljuciti...

ALI NE ZNAM KOJI POP UP jer nemam nijedan u tom trenutku... sve programe za zastitu iskljucim :(
evo pa skini novi sa svim 2006
http://www.newnova.org/list_torrents/apps.html
Schulz
Posts: 45
Joined: 29/09/2005 21:05
Location: Seher
Contact:

#83

Post by Schulz »

Ima li išta od ovog linka? Gdje je onaj The Fluid?! :P
The_Fluid
Posts: 5591
Joined: 02/08/2002 00:00
Location: Earth

#85

Post by The_Fluid »

The_Fluid
Posts: 5591
Joined: 02/08/2002 00:00
Location: Earth

#87

Post by The_Fluid »

The_Fluid
Posts: 5591
Joined: 02/08/2002 00:00
Location: Earth

#88

Post by The_Fluid »

3. veljače aktivirat će se virus Nyxem

U petak 3. veljače aktivirat će se vrlo zločesti virus Nyxem koji će na zaraženim računalima pobrisati sve Word, Powerpoint, Excel, Acrobat i druge datoteke. Pretpostavlja se da je Nyxem zarazio mnoga računala jer dolazi attachmentom maila koji obećava pornografiju. Kompanije koje se bave zaštitom od virusa zaustavili su mnoge kopije Nyxema na osnovu čega se također može pretpostaviti da su zaražena mnoga računala. Vlasnicima računala stoga je sugerirano da osvježe svoje anti-virusne programe i skeniraju računala.


vise na news.bbc.co.uk:

SAMPLE SUBJECT LINES
Fw: Funny :)
Fw: Picturs
*Hot Movie*
Fw: SeX.mpg
Re: Sex Video
Miss Lebanon 2006
School girl fantasies gone bad


NYXEM FILE TARGETS
DMP - Oracle files
DOC - Word document
MDB - Microsoft Access
MDE - Microsoft Access/Office
PDF - Adobe Acrobat
PPS - PowerPoint slideshow
PPT - PowerPoint
PSD - Photoshop
RAR - Compressed archive
XLS - Excel spreadsheet
ZIP - Compressed file



The Nyxem-E Windows virus first emerged on 16 January and has been steadily racking up victims ever since. Nyxem-E is also known as the Blackmal, MyWife, Kama Sutra, Grew and CME-24 virus.

Helpfully, the virus reports every fresh infection back to an associated website which displays the total via a counter. Late last week the counter was reporting millions of infections, but detective work by security firm Lurhq found that many of these reports were bogus.

However, Lurhq reported that more than 300,000 machines are known to have fallen victim to Nyxem-E.

Like many recent viruses, Nyxem tries to spread by making people open attachments on e-mail messages that are infected with the destructive code.

The subject lines and body text of the various messages Nyxem uses vary, but many falsely claim that pornographic videos and pictures are in the attachments.

On infected machines the virus raids address books to find e-mail addresses to send itself to.

The virus also tries to spread by searching for machines on the same local network as any computer it has compromised.

Unlike many recent viruses Nyxem is set to overwrite 11 different types of file on infected machines on the third of every month. The list of files to be over-written includes the most widely used sorts of formats.

Separately, the virus also tries to disable anti-virus software to stop it updating and can also disable the mouse and keyboard on infected machines.

Users were being urged to update anti-virus software and to scan their system to ensure they had not been caught out. Many anti-virus firms have also produced tools that help clean up infected systems.
The_Fluid
Posts: 5591
Joined: 02/08/2002 00:00
Location: Earth

#89

Post by The_Fluid »

Windows disinfector za Nyxem virus (226kB)
--

W32/Nyxem disinfection instructions

Resolve is the name for a set of small, downloadable Sophos utilities designed to remove and undo the changes made by certain viruses, Trojans and worms. They terminate any virus processes and reset any registry keys that the virus changed. Existing infections can be cleaned up quickly and easily, both on individual workstations and over networks with large numbers of computers.

Windows 95/98/Me and Windows NT/2000/XP/2003

W32/Nyxem-C and W32/Nyxem-D can be removed from Windows 95/98/Me and Windows NT/2000/XP/2003 computers automatically with the following Resolve tools.

Note: When disinfecting variants not listed above, use the recovery instructions in the appropriate virus analysis.

Windows disinfector

NYXEMGUI is a disinfector for standalone Windows computers

* open NYXEMGUI
* run it
* then click GO.

If you are disinfecting several computers; download it, save it to floppy disk, write-protect the floppy disk and run it from there.

Command line disinfector

NYXEMSFX.EXE (300 kB) is a self-extracting archive containing NYXEMCLI, a Resolve command line disinfector for use by system administrators on Windows networks. Read the notes enclosed in the self-extractor for details on running this program.
rajvosa4ever
Posts: 168
Joined: 04/11/2003 00:00

#90

Post by rajvosa4ever »

Ahhhhh....
Citam I Kontam, Bas je pravo Lijepo Imati Mac
Zadig
Posts: 5755
Joined: 25/02/2005 19:39
Location: British Columbia

#91

Post by Zadig »

:x

ne zajebavaj nas
:D

elem, ja koristim AVG i to onaj free edition za home usage i nikada nisam imao problema
Post Reply