- Beranda
- Komunitas
- Tech
- Computer Stuff
[urgent] Virus berbahaya belum terdeteksi oleh antivirus satupun sampai detik ini
TS
rifgie
[urgent] Virus berbahaya belum terdeteksi oleh antivirus satupun sampai detik ini
gan pc ane win 8 kena virus, sering ada hidden upload n download n ngabisin bandwith, kemudian disk usage jika mendekati tempat2 folder ato aplikasi yang sensitif disk usagenya selalu mendekati 98-100 % ane liat d resources gak ada aplikasi yg memakan banwith disk sebesar itu, sering macet n susah booting, tapi kemudian lancar lagi, setelah ane scan pakai removeit, terdeteksi hampir ribuan malware di tiap file2 system32, dengan nama sys32.xxx, n g bisa d hapus bingung ane, udah ane scan pake av apapun, bitdefender, avast, norton, symantec, avira, norman, avg, tidak terdeteksi apa2, begitu ane bawa flashdisk ke pc satunya yg win 7 gejalanya sama. ada solusi gan?
ini yg win 8 ane coba scan pake hijack hunter
ini yg win 8 ane coba scan pake hijack hunter
Quote:
[+] Running processes
[System Process] (0 bytes) (Unknown) () (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
System (0 bytes) (Unknown) () (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
C:\Windows\system32\nvvsvc.exe (129640 bytes) (NVIDIA Corporation) (09/07/2010 16:20:06) (--A-) (4ed813efd77a9b7e57e341cdc1c5cbc4)
C:\Program Files\AVAST Software\Avast\AvastSvc.exe (44808 bytes) (AVAST Software) (21/01/2013 6:12:34) (--A-) (8fa553e9ae69808d99c164733a0f9590)
C:\Program Files\FULLSPEED\C+WEject.exe (269312 bytes) (Unknown) (25/07/2012 21:41:30) (--A-) (25cbdad41710f9539fdd180da68e39e7)
C:\ProgramData\DatacardService\HWDeviceService.exe (271712 bytes) (Unknown) (14/03/2011 22:27:28) (--A-) (5ef3427ae503b5c03a48f7c9ff458b69)
mdservice.exe (0 bytes) (Unknown) () (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
MalwareDefender.exe (0 bytes) (Unknown) () (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
C:\ProgramData\DatacardService\DCSHelper.exe (236384 bytes) (Huawei Technologies Co., Ltd.) (14/03/2011 22:27:28) (--A-) (349ab4f70e2ac44970894e7f03e1576e)
C:\Program Files\AHA Dialer\AHA Dialer.exe (103936 bytes) (Unknown) (02/01/2013 14:56:31) (--A-) (930958e04f29caa8d5749934cc7af70f)
C:\Program Files\AVAST Software\Avast\AvastUI.exe (4297136 bytes) (AVAST Software) (21/01/2013 6:12:34) (--A-) (083649ef692a066880c9326020915afe)
C:\Program Files\smadAV\SM?RTP.exe (1527808 bytes) (Unknown) (06/01/2013 9:01:12) (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
C:\Program Files\Internet Download Manager\IDMan.exe (3507648 bytes) (Tonec Inc.) (06/07/2012 11:44:59) (--A-) (ff9a3a8d3ab29c3b08e7ace027177f0b)
C:\Program Files\Internet Download Manager\IEMonitor.exe (263600 bytes) (Tonec Inc.) (06/07/2012 11:44:19) (--A-) (207b16fa69f61d1895f8d8532f587e4b)
C:\Program Files\Mozilla Firefox\firefox.exe (913888 bytes) (Mozilla Corporation) (02/01/2013 6:22:06) (--A-) (3f677172f23fc17283d9bce4b42e3f65)
C:\Program Files\Mozilla Firefox\plugin-container.exe (16864 bytes) (Mozilla Corporation) (02/01/2013 6:22:07) (--A-) (a06ab1550658a19e871a6fd7ff1c2cdb)
C:\Program Files\KBBI Offline\kbbi.exe (100864 bytes) (ebsoft) (02/01/2013 19:22:00) (--A-) (ca71a100d984500042a314a830821534)
C:\Users\admin\Desktop\New folder\HijackHunter.exe (628736 bytes) (NoVirusThanks Company Srl) (25/01/2013 16:27:06) (--A-) (b6ffa83b91d78a0369fe0e15e4dba69c)
[+] Loaded Modules
C:\Windows\system32\nvwgf2um.dll (12170600 bytes) (NVIDIA Corporation) (26/07/2012 3:25:49) (--A-) (f8509a792732836b4e87edb0a25a4703)
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_893961408605e985\comctl32.dll (2046976 bytes) (Microsoft Corporation) (26/07/2012 6:29:54) (--A-) (4e743fa4d61a2ef8ca1642f49dc4784d)
C:\Windows\system32\NVSVC.DLL (1469544 bytes) (NVIDIA Corporation) (09/07/2010 16:20:06) (--A-) (8d25336a9a2d28b325f60d7d8402eb05)
C:\Windows\system32\nvapi.dll (1625192 bytes) (NVIDIA Corporation) (10/07/2010 5:37:00) (--A-) (a57325004255fe3980394501b41b8cd1)
C:\Windows\system32\NVSVCR.DLL (1881704 bytes) (NVIDIA Corporation) (09/07/2010 16:20:06) (--A-) (d7bbf48e83f2aa76fdadb67b2624b2a6)
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6871_none_50944e7cbcb706e5\MSVCP90.dll (570440 bytes) (Microsoft Corporation) (26/07/2012 3:13:14) (--A-) (874c8b1317c58ffe62d4d6aa591eabe2)
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6871_none_50944e7cbcb706e5\MSVCR90.dll (653896 bytes) (Microsoft Corporation) (26/07/2012 3:13:14) (--A-) (f1f9eeef647cfa62a7104c054ce0999b)
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16384_none_ba245425e0986353\gdiplus.dll (1437696 bytes) (Microsoft Corporation) (26/07/2012 6:54:56) (--A-) (4597e07bc81426015b9bb8def62524a2)
C:\Windows\SYSTEM32\MSVCR100.dll (773968 bytes) (Microsoft Corporation) (11/06/2011 1:58:52) (--A-) (0e37fbfa79d349d672456923ec5fbbe3)
C:\Windows\SYSTEM32\MSVCP100.dll (421200 bytes) (Microsoft Corporation) (11/06/2011 1:58:52) (--A-) (bc83108b18756547013ed443b8cdb31b)
C:\Windows\SYSTEM32\ATL100.DLL (138056 bytes) (Microsoft Corporation) (11/06/2011 1:58:52) (--A-) (c85670ab64068f8080998aeba6c5019c)
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.9200.16384_none_bf100cd445f4d954\comctl32.dll (541184 bytes) (Microsoft Corporation) (26/07/2012 9:14:35) (--A-) (7a3b96de45ed3ab1b6baa1d0b7b9869b)
C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll (3781960 bytes) (Microsoft Corporation) (06/01/2013 11:04:26) (--A-) (ca6ade4f7761bb15b3325356dc3b82bb)
C:\Windows\WinSxS\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL (53584 bytes) (Microsoft Corporation) (06/01/2013 11:04:29) (--A-) (fbfca1a574d47ee575448b719cbbf2e4)
C:\Windows\SYSTEM32\nvd3dum.dll (15385960 bytes) (NVIDIA Corporation) (28/06/2012 9:06:15) (--A-) (6a4a2c9ffd855c0e8404c0ac9243b927)
[+] Registry startups
Value: avast
Data: "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value: SM?RT-Protection
Data: Unknown
Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value: HijackThis startup scan
Data: C:\Users\admin\Downloads\Programs\HijackThis.exe /startupscan
Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value: IDMan
Data: C:\Program Files\Internet Download Manager\IDMan.exe /onboot
Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value: StubPath
Data: %SystemRoot%\system32\unregmp2.exe /FirstLogon
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}
Value: StubPath
Data: regsvr32.exe /s /n /i:U %SystemRoot%\System32\shell32.dll
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}
Value: StubPath
Data: C:\Windows\System32\ie4uinit.exe -UserConfig
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}
Value: SecurityProviders
Data: credssp.dll
Key: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders
Value: {0055C089-8582-441B-A0BF-17B458C2A3A8}
Data: C:\Program Files\Internet Download Manager\IDMIECC.dll
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Value: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Data: C:\Program Files\Microsoft Office\Office15\OCHelper.dll
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Value: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
Data: C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
Value: {B4F3A835-0E21-4959-BA22-42B3008E02FF}
Data: C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}
Value: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}
Data: C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}
[System Process] (0 bytes) (Unknown) () (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
System (0 bytes) (Unknown) () (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
C:\Windows\system32\nvvsvc.exe (129640 bytes) (NVIDIA Corporation) (09/07/2010 16:20:06) (--A-) (4ed813efd77a9b7e57e341cdc1c5cbc4)
C:\Program Files\AVAST Software\Avast\AvastSvc.exe (44808 bytes) (AVAST Software) (21/01/2013 6:12:34) (--A-) (8fa553e9ae69808d99c164733a0f9590)
C:\Program Files\FULLSPEED\C+WEject.exe (269312 bytes) (Unknown) (25/07/2012 21:41:30) (--A-) (25cbdad41710f9539fdd180da68e39e7)
C:\ProgramData\DatacardService\HWDeviceService.exe (271712 bytes) (Unknown) (14/03/2011 22:27:28) (--A-) (5ef3427ae503b5c03a48f7c9ff458b69)
mdservice.exe (0 bytes) (Unknown) () (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
MalwareDefender.exe (0 bytes) (Unknown) () (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
C:\ProgramData\DatacardService\DCSHelper.exe (236384 bytes) (Huawei Technologies Co., Ltd.) (14/03/2011 22:27:28) (--A-) (349ab4f70e2ac44970894e7f03e1576e)
C:\Program Files\AHA Dialer\AHA Dialer.exe (103936 bytes) (Unknown) (02/01/2013 14:56:31) (--A-) (930958e04f29caa8d5749934cc7af70f)
C:\Program Files\AVAST Software\Avast\AvastUI.exe (4297136 bytes) (AVAST Software) (21/01/2013 6:12:34) (--A-) (083649ef692a066880c9326020915afe)
C:\Program Files\smadAV\SM?RTP.exe (1527808 bytes) (Unknown) (06/01/2013 9:01:12) (HSAR) (d41d8cd98f00b204e9800998ecf8427e)
C:\Program Files\Internet Download Manager\IDMan.exe (3507648 bytes) (Tonec Inc.) (06/07/2012 11:44:59) (--A-) (ff9a3a8d3ab29c3b08e7ace027177f0b)
C:\Program Files\Internet Download Manager\IEMonitor.exe (263600 bytes) (Tonec Inc.) (06/07/2012 11:44:19) (--A-) (207b16fa69f61d1895f8d8532f587e4b)
C:\Program Files\Mozilla Firefox\firefox.exe (913888 bytes) (Mozilla Corporation) (02/01/2013 6:22:06) (--A-) (3f677172f23fc17283d9bce4b42e3f65)
C:\Program Files\Mozilla Firefox\plugin-container.exe (16864 bytes) (Mozilla Corporation) (02/01/2013 6:22:07) (--A-) (a06ab1550658a19e871a6fd7ff1c2cdb)
C:\Program Files\KBBI Offline\kbbi.exe (100864 bytes) (ebsoft) (02/01/2013 19:22:00) (--A-) (ca71a100d984500042a314a830821534)
C:\Users\admin\Desktop\New folder\HijackHunter.exe (628736 bytes) (NoVirusThanks Company Srl) (25/01/2013 16:27:06) (--A-) (b6ffa83b91d78a0369fe0e15e4dba69c)
[+] Loaded Modules
C:\Windows\system32\nvwgf2um.dll (12170600 bytes) (NVIDIA Corporation) (26/07/2012 3:25:49) (--A-) (f8509a792732836b4e87edb0a25a4703)
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16384_none_893961408605e985\comctl32.dll (2046976 bytes) (Microsoft Corporation) (26/07/2012 6:29:54) (--A-) (4e743fa4d61a2ef8ca1642f49dc4784d)
C:\Windows\system32\NVSVC.DLL (1469544 bytes) (NVIDIA Corporation) (09/07/2010 16:20:06) (--A-) (8d25336a9a2d28b325f60d7d8402eb05)
C:\Windows\system32\nvapi.dll (1625192 bytes) (NVIDIA Corporation) (10/07/2010 5:37:00) (--A-) (a57325004255fe3980394501b41b8cd1)
C:\Windows\system32\NVSVCR.DLL (1881704 bytes) (NVIDIA Corporation) (09/07/2010 16:20:06) (--A-) (d7bbf48e83f2aa76fdadb67b2624b2a6)
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6871_none_50944e7cbcb706e5\MSVCP90.dll (570440 bytes) (Microsoft Corporation) (26/07/2012 3:13:14) (--A-) (874c8b1317c58ffe62d4d6aa591eabe2)
C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6871_none_50944e7cbcb706e5\MSVCR90.dll (653896 bytes) (Microsoft Corporation) (26/07/2012 3:13:14) (--A-) (f1f9eeef647cfa62a7104c054ce0999b)
C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.9200.16384_none_ba245425e0986353\gdiplus.dll (1437696 bytes) (Microsoft Corporation) (26/07/2012 6:54:56) (--A-) (4597e07bc81426015b9bb8def62524a2)
C:\Windows\SYSTEM32\MSVCR100.dll (773968 bytes) (Microsoft Corporation) (11/06/2011 1:58:52) (--A-) (0e37fbfa79d349d672456923ec5fbbe3)
C:\Windows\SYSTEM32\MSVCP100.dll (421200 bytes) (Microsoft Corporation) (11/06/2011 1:58:52) (--A-) (bc83108b18756547013ed443b8cdb31b)
C:\Windows\SYSTEM32\ATL100.DLL (138056 bytes) (Microsoft Corporation) (11/06/2011 1:58:52) (--A-) (c85670ab64068f8080998aeba6c5019c)
C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.9200.16384_none_bf100cd445f4d954\comctl32.dll (541184 bytes) (Microsoft Corporation) (26/07/2012 9:14:35) (--A-) (7a3b96de45ed3ab1b6baa1d0b7b9869b)
C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll (3781960 bytes) (Microsoft Corporation) (06/01/2013 11:04:26) (--A-) (ca6ade4f7761bb15b3325356dc3b82bb)
C:\Windows\WinSxS\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90ENU.DLL (53584 bytes) (Microsoft Corporation) (06/01/2013 11:04:29) (--A-) (fbfca1a574d47ee575448b719cbbf2e4)
C:\Windows\SYSTEM32\nvd3dum.dll (15385960 bytes) (NVIDIA Corporation) (28/06/2012 9:06:15) (--A-) (6a4a2c9ffd855c0e8404c0ac9243b927)
[+] Registry startups
Value: avast
Data: "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value: SM?RT-Protection
Data: Unknown
Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value: HijackThis startup scan
Data: C:\Users\admin\Downloads\Programs\HijackThis.exe /startupscan
Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value: IDMan
Data: C:\Program Files\Internet Download Manager\IDMan.exe /onboot
Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value: StubPath
Data: %SystemRoot%\system32\unregmp2.exe /FirstLogon
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}
Value: StubPath
Data: regsvr32.exe /s /n /i:U %SystemRoot%\System32\shell32.dll
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}
Value: StubPath
Data: C:\Windows\System32\ie4uinit.exe -UserConfig
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}
Value: SecurityProviders
Data: credssp.dll
Key: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurityProviders
Value: {0055C089-8582-441B-A0BF-17B458C2A3A8}
Data: C:\Program Files\Internet Download Manager\IDMIECC.dll
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Value: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Data: C:\Program Files\Microsoft Office\Office15\OCHelper.dll
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}
Value: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
Data: C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
Value: {B4F3A835-0E21-4959-BA22-42B3008E02FF}
Data: C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}
Value: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}
Data: C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}
0
5.2K
Kutip
43
Balasan
Guest
Tulis komentar menarik atau mention replykgpt untuk ngobrol seru
Urutan
Terbaru
Terlama
Guest
Tulis komentar menarik atau mention replykgpt untuk ngobrol seru
Komunitas Pilihan