Stránka 1 z 1

Tr/Crypt.XPACK.Gen

Napsal: 20 říj 2011 15:14
od hanulih
Dobrý den,
stáhla jsem si Aviru a ta mi neustále hlásí Tr/Crypt.XPACK.Gen jako virus, ikdyž je v karanténě mám stále problém, zkoušela jsem zvolit i možnost smazat a nic. Avira stále tento vir hlásí. Nevím jestli je to tímto virem nebo nainstalováním nového antiviru, ale od té doby mám problém s restartováním Pc a dokonce i korektně nelze vypnout, stále probíhá vypínání a proces není dokončen. Prosím o radu jak se té potvůrky zbavit.


Avira Free Antivirus
Report file date: 20. října 2011 13:21

Scanning for 3415594 virus strains and unwanted programs.

The program is running as an unrestricted full version.
Online services are available:

Licensee : Avira AntiVir Personal - Free Antivirus
Serial number : 0000149996-ADJIE-0000001
Platform : Windows XP
Windows version : (Service Pack 3) [5.1.2600]
Boot mode : Normally booted
Username : SYSTEM
Computer name : VOBYVAKU

Version information:
BUILD.DAT : 12.0.0.855 41827 Bytes 12.10.2011 17:40:00
AVSCAN.EXE : 12.1.0.17 490448 Bytes 23.9.2011 16:04:46
AVSCAN.DLL : 12.1.0.17 54224 Bytes 23.9.2011 11:34:56
LUKE.DLL : 12.1.0.17 68304 Bytes 23.9.2011 10:55:16
AVSCPLR.DLL : 12.1.0.19 99536 Bytes 23.9.2011 10:02:36
AVREG.DLL : 12.1.0.20 227024 Bytes 23.9.2011 09:54:30
VBASE000.VDF : 7.10.0.0 19875328 Bytes 6.11.2009 18:18:34
VBASE001.VDF : 7.11.0.0 13342208 Bytes 14.12.2010 09:07:39
VBASE002.VDF : 7.11.3.0 1950720 Bytes 9.2.2011 15:08:51
VBASE003.VDF : 7.11.5.225 1980416 Bytes 7.4.2011 10:00:55
VBASE004.VDF : 7.11.8.178 2354176 Bytes 31.5.2011 10:18:22
VBASE005.VDF : 7.11.10.251 1788416 Bytes 7.7.2011 12:12:53
VBASE006.VDF : 7.11.13.60 6411776 Bytes 16.8.2011 07:26:09
VBASE007.VDF : 7.11.15.106 2389504 Bytes 5.10.2011 10:35:35
VBASE008.VDF : 7.11.15.107 2048 Bytes 5.10.2011 10:35:35
VBASE009.VDF : 7.11.15.108 2048 Bytes 5.10.2011 10:35:35
VBASE010.VDF : 7.11.15.109 2048 Bytes 5.10.2011 10:35:35
VBASE011.VDF : 7.11.15.110 2048 Bytes 5.10.2011 10:35:35
VBASE012.VDF : 7.11.15.111 2048 Bytes 5.10.2011 10:35:35
VBASE013.VDF : 7.11.15.144 161792 Bytes 7.10.2011 10:35:36
VBASE014.VDF : 7.11.15.177 130048 Bytes 10.10.2011 10:35:36
VBASE015.VDF : 7.11.15.213 113664 Bytes 11.10.2011 10:35:36
VBASE016.VDF : 7.11.16.1 163328 Bytes 14.10.2011 10:35:33
VBASE017.VDF : 7.11.16.34 187904 Bytes 18.10.2011 08:40:59
VBASE018.VDF : 7.11.16.35 2048 Bytes 18.10.2011 08:40:59
VBASE019.VDF : 7.11.16.36 2048 Bytes 18.10.2011 08:40:59
VBASE020.VDF : 7.11.16.37 2048 Bytes 18.10.2011 08:40:59
VBASE021.VDF : 7.11.16.38 2048 Bytes 18.10.2011 08:40:59
VBASE022.VDF : 7.11.16.39 2048 Bytes 18.10.2011 08:41:00
VBASE023.VDF : 7.11.16.40 2048 Bytes 18.10.2011 08:41:00
VBASE024.VDF : 7.11.16.41 2048 Bytes 18.10.2011 08:41:00
VBASE025.VDF : 7.11.16.42 2048 Bytes 18.10.2011 08:41:00
VBASE026.VDF : 7.11.16.43 2048 Bytes 18.10.2011 08:41:00
VBASE027.VDF : 7.11.16.44 2048 Bytes 18.10.2011 08:41:00
VBASE028.VDF : 7.11.16.45 2048 Bytes 18.10.2011 08:41:00
VBASE029.VDF : 7.11.16.46 2048 Bytes 18.10.2011 08:41:00
VBASE030.VDF : 7.11.16.47 2048 Bytes 18.10.2011 08:41:00
VBASE031.VDF : 7.11.16.73 122368 Bytes 20.10.2011 08:41:01
Engineversion : 8.2.6.84
AEVDF.DLL : 8.1.2.1 106868 Bytes 1.9.2011 21:46:02
AESCRIPT.DLL : 8.1.3.81 467322 Bytes 14.10.2011 10:35:41
AESCN.DLL : 8.1.7.2 127349 Bytes 1.9.2011 21:46:02
AESBX.DLL : 8.2.1.34 323957 Bytes 1.9.2011 21:46:02
AERDL.DLL : 8.1.9.15 639348 Bytes 8.9.2011 21:16:06
AEPACK.DLL : 8.2.10.11 684408 Bytes 22.9.2011 14:18:45
AEOFFICE.DLL : 8.1.2.15 201083 Bytes 15.9.2011 23:17:25
AEHEUR.DLL : 8.1.2.180 3748217 Bytes 14.10.2011 10:35:41
AEHELP.DLL : 8.1.17.7 254327 Bytes 1.9.2011 21:46:01
AEGEN.DLL : 8.1.5.9 401780 Bytes 1.9.2011 21:46:01
AEEMU.DLL : 8.1.3.0 393589 Bytes 1.9.2011 21:46:01
AECORE.DLL : 8.1.23.0 196983 Bytes 1.9.2011 21:46:01
AEBB.DLL : 8.1.1.0 53618 Bytes 1.9.2011 21:46:01
AVWINLL.DLL : 12.1.0.17 27344 Bytes 23.9.2011 10:13:18
AVPREF.DLL : 12.1.0.17 51920 Bytes 23.9.2011 09:53:57
AVREP.DLL : 12.1.0.17 179408 Bytes 23.9.2011 09:55:01
AVARKT.DLL : 12.1.0.17 223184 Bytes 23.9.2011 09:25:26
AVEVTLOG.DLL : 12.1.0.17 169168 Bytes 23.9.2011 09:34:37
SQLITE3.DLL : 3.7.0.0 398288 Bytes 16.9.2011 00:05:58
AVSMTP.DLL : 12.1.0.17 62928 Bytes 23.9.2011 10:03:47
NETNT.DLL : 12.1.0.17 17104 Bytes 23.9.2011 10:58:06
RCIMAGE.DLL : 12.1.0.17 4450000 Bytes 23.9.2011 11:37:25
RCTEXT.DLL : 12.1.0.16 96208 Bytes 23.9.2011 11:37:24

Configuration settings for the scan:
Jobname.............................: AVGuardAsyncScan
Configuration file..................: C:\Documents and Settings\All Users\Data aplikací\Avira\AntiVir Desktop\TEMP\AVGUARD_4e9fc042\guard_slideup.avp
Logging.............................: default
Primary action......................: repair
Secondary action....................: quarantine
Scan master boot sector.............: on
Scan boot sector....................: off
Process scan........................: on
Scan registry.......................: off
Search for rootkits.................: off
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: Complete

Start of the scan: 20. října 2011 13:21

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'chrome.exe' - '1' Module(s) have been scanned
Scan process 'chrome.exe' - '1' Module(s) have been scanned
Scan process 'chrome.exe' - '1' Module(s) have been scanned
Scan process 'chrome.exe' - '1' Module(s) have been scanned
Scan process 'x-lite.exe' - '1' Module(s) have been scanned
Scan process 'msdtc.exe' - '1' Module(s) have been scanned
Scan process 'dllhost.exe' - '1' Module(s) have been scanned
Scan process 'chrome.exe' - '1' Module(s) have been scanned
Scan process 'chrome.exe' - '1' Module(s) have been scanned
Scan process 'chrome.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'apcsystray.exe' - '1' Module(s) have been scanned
Scan process 'soffice.BIN' - '1' Module(s) have been scanned
Scan process 'soffice.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'ONENOTEM.EXE' - '1' Module(s) have been scanned
Scan process 'WindowsSearch.exe' - '1' Module(s) have been scanned
Scan process 'avshadow.exe' - '1' Module(s) have been scanned
Scan process 'ICQ.exe' - '1' Module(s) have been scanned
Scan process 'CTLTray.exe' - '1' Module(s) have been scanned
Scan process 'msmsgs.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'Mediadet.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'AdobeARM.exe' - '1' Module(s) have been scanned
Scan process 'DivXUpdate.exe' - '1' Module(s) have been scanned
Scan process 'CtNotify.exe' - '1' Module(s) have been scanned
Scan process 'BJMyPrt.exe' - '1' Module(s) have been scanned
Scan process 'vsnp2std.exe' - '1' Module(s) have been scanned
Scan process 'tsnp2std.exe' - '1' Module(s) have been scanned
Scan process 'GrooveMonitor.exe' - '1' Module(s) have been scanned
Scan process 'WFWIZ.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process '1328626:230353919.exe' - '1' Module(s) have been scanned
Module is infected -> <C:\WINDOWS\1328626:230353919.exe>
[DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
[NOTE] Process '1328626:230353919.exe' was terminated
[NOTE] For the final repair, a restart of the computer is instigated.
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
Scan process 'dllhost.exe' - '1' Module(s) have been scanned
Scan process 'vssvc.exe' - '1' Module(s) have been scanned
Scan process 'rsmsink.exe' - '1' Module(s) have been scanned
Scan process 'vssvc.exe' - '1' Module(s) have been scanned

Re: Tr/Crypt.XPACK.Gen

Napsal: 20 říj 2011 18:53
od jaro3
Vlož log z HJT:
viewtopic.php?f=70&t=5119
do sekce HiJackThis