evo gdje se nalazi:C:\WINDOWS\system32\khffcab.dll
i jos mi antivirus kaze:
Event occurred at an attempt to access the file by the application: \??\C:\WINDOWS\system32\winlogon.exe.
---------------------------
E haj ljudi pomazite
Moderator: Benq
Jel ovo:Lisac wrote:shiljak josipedruzhe
broze
daj josh malo informacijamozhda ne bi bilo zgoreg znati i o kojem je virusu rijech
mozhda i kompletan log od avasta ili NOD-a
ako necesh da ti preporuchimo MAXFLU ili COLDREX
![]()
Code: Select all
Time Module Object Name Threat Action User Information
16.9.2006 12:24:26 AMON file C:\WINDOWS\system32\khffcab.dll probably unknown WIN32 virus NT AUTHORITY\SYSTEM Event occurred at an attempt to access the file by the application: \??\C:\WINDOWS\system32\winlogon.exe.
Code: Select all
Time Module Object Name Threat Action User Information
16.9.2006 17:43:17 AMON file C:\System Volume Information\_restore{18318B3A-A841-43B5-9712-080DDFB25528}\RP24\A0027353.exe probably a variant of Win32/TrojanDownloader.Adload.NAN trojan quarantined - deleted NT AUTHORITY\SYSTEM Event occurred on a new file created by the application: C:\WINDOWS\System32\svchost.exe. The file was moved to quarantine. You may close this window.
Code: Select all
Time Module Object Name Threat Action User Information
16.9.2006 16:21:02 AMON file C:\System Volume Information\_restore{18318B3A-A841-43B5-9712-080DDFB25528}\RP24\A0027352.exe probably unknown NewHeur_PE virus quarantined - deleted NT AUTHORITY\SYSTEM Event occurred on a new file created by the application: C:\WINDOWS\System32\svchost.exe. The file was moved to quarantine. You may close this window.
Code: Select all
Time Module Object Name Threat Action User Information
16.9.2006 15:47:46 AMON file C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\RGU0Q5PI\loader[1].exe Win32/TrojanDownloader.VB.NGW trojan deleted WINDOWSXP\shiljak Event occurred at an attempt to access the file by the application: C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe.
Code: Select all
Time Module Object Name Threat Action User Information
16.9.2006 14:58:37 AMON file C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\RGU0Q5PI\drsmartload195a[1].exe Win32/TrojanDownloader.VB.NGV trojan quarantined - deleted Event occurred on a new file created by the application: C:\WINDOWS\system32\ssmc.exe. The file was moved to quarantine. You may close this window.
Code: Select all
Time Module Object Name Threat Action User Information
16.9.2006 14:58:28 AMON file C:\winde.exe Win32/TrojanDownloader.VB.NGV trojan quarantined - deleted Event occurred on a new file created by the application: C:\WINDOWS\system32\ssmc.exe. The file was moved to quarantine. You may close this window.
Code: Select all
Time Module Object Name Threat Action User Information
15.9.2006 20:38:34 Kernel file C:\WINDOWS\System32\winupcd.exe a variant of Win32/Rbot trojan