Aplikacje sie nie uruchamiaja. prosze o pomoc

Witam :slight_smile:

Mam problem , spora wiekszosc aplikacji mi sie nie uruchamia. Podejrzewam jakiegos wirusa , nie wiem co robic .

Po kliknieciu na aplikacje pojawia sie na sec. klepsydra i na tym sie konczy , mozna tak 10razy i nic sie nie uruchomi , próbowałem sciagać rozne antywirusy… ale oczywiscie nie mogłem ich nawet zainstalowac :frowning:

Doradzcie mi w miare mozliwosci… :frowning:

Napiszcie jak mam dostarczyc wiecej informacji.

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 19:33:25, on 2008-11-14

Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\SYSTEM32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\userinit.exe

D:\PROGRA~1\Aston\aston.exe

D:\PROGRA~1\Aston\XP\internat.exe

C:\WINDOWS\system32\RunDLL32.exe

C:\WINDOWS\RTHDCPL.EXE

D:\Program Files\Winamp\winampa.exe

D:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe

C:\WINDOWS\Samsung\ComSMMgr\ssmmgr.exe

C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe

D:\Program Files\Gadu-Gadu\gg.exe

C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\explorer.exe

C:\WINDOWS\system32\wuauclt.exe

D:\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://adtest.gadu-gadu.pl/clickbtn.asp … =76/cath=0

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll

O4 - HKLM…\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM…\Run: [nwiz] nwiz.exe /install

O4 - HKLM…\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit

O4 - HKLM…\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM…\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM…\Run: [WinampAgent] “D:\Program Files\Winamp\winampa.exe”

O4 - HKLM…\Run: [iKeyWorks] D:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe

O4 - HKLM…\Run: [samsung Common SM] “C:\WINDOWS\Samsung\ComSMMgr\ssmmgr.exe” /autorun

O4 - HKLM…\Run: [sunJavaUpdateSched] “C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe”

O4 - HKCU…\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU…\Run: [Gadu-Gadu] “D:\Program Files\Gadu-Gadu\gg.exe” /tray

O4 - HKUS\S-1-5-19…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘USŁUGA LOKALNA’)

O4 - HKUS\S-1-5-20…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘USŁUGA SIECIOWA’)

O4 - HKUS\S-1-5-18…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘SYSTEM’)

O4 - HKUS.DEFAULT…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘Default user’)

O4 - Global Startup: Microsoft Office.lnk = D:\Program Files\Microsoft Office\Office10\OSA.EXE

O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://D:\PROGRA~1\MICROS~1\Office10\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra ‘Tools’ menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

End of file - 4133 bytes

log czysty

Zastosuj Malwarebytes’ Anti-Malware http://cybertrash.pl/Tata/MBAM/Malwarebytes_%20Anti-Malware.html pełny skan - jak coś znajdzie to usuń - pokaż log

:slight_smile:

Jak juz mówielem … nie uruchomie tego programu … Jakies inne propozycie ?

#Dla pewnosci ściągnąłem i sie nie uruchomił

Pobierz program SDFix

Zrobilem jak napisales ale po restarcie na 1sec pojawilo sie to niebieskie okno i zniklo tak wiec wnioskuje ze niedokonczył sie ten proces…

SDFix: Version 1.240

Run by Administrator on 2008-11-14 at 20:26

Microsoft Windows XP [Wersja 5.1.2600]

Running From: D:\SDFix

Checking Services :

Restoring Default Security Values

Restoring Default Hosts File

Rebooting

Spróbować jeszcze raz to samo ?

Ok udalo sie dokonczyc proces… ale co dalej ?

wklejam report

SDFix: Version 1.240

Run by Administrator on 2008-11-14 at 21:19

Microsoft Windows XP [Wersja 5.1.2600]

Running From: D:\SDFix

Checking Services :

Restoring Default Security Values

Restoring Default Hosts File

Rebooting

Checking Files :

No Trojan Files Found

Removing Temp Files

ADS Check :

Final Check :

catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2008-11-14 21:21:53

Windows 5.1.2600 Dodatek Service Pack 3 NTFS

scanning hidden processes …

scanning hidden services & system hive …

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]

“s1”=dword:2df9c43f

“s2”=dword:110480d0

“h0”=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]

“p0”=“D:\Program Files\DAEMON Tools Lite”

“h0”=dword:00000000

“khjeh”=hex:be,8b,4c,01,b7,b9,39,ae,ef,d5,b3,14,8b,30,99,3f,6a,27,0f,b2,97,…

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]

“a0”=hex:20,01,00,00,34,d7,75,12,74,01,50,ef,1c,6f,80,8d,48,17,12,4c,da,…

“khjeh”=hex:ba,b8,77,7b,7d,8e,e9,5b,87,a3,17,bb,10,3f,d1,8a,01,a2,2d,87,c8,…

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]

“khjeh”=hex:8e,f9,37,e1,15,d5,ef,b5,c5,2d,49,33,ee,89,4c,f0,af,28,82,8d,10,…

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]

“p0”=“D:\Program Files\DAEMON Tools Lite”

“h0”=dword:00000000

“khjeh”=hex:be,8b,4c,01,b7,b9,39,ae,ef,d5,b3,14,8b,30,99,3f,6a,27,0f,b2,97,…

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]

“a0”=hex:20,01,00,00,34,d7,75,12,74,01,50,ef,1c,6f,80,8d,48,17,12,4c,da,…

“khjeh”=hex:ba,b8,77,7b,7d,8e,e9,5b,87,a3,17,bb,10,3f,d1,8a,01,a2,2d,87,c8,…

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]

“khjeh”=hex:8e,f9,37,e1,15,d5,ef,b5,c5,2d,49,33,ee,89,4c,f0,af,28,82,8d,10,…

scanning hidden registry entries …

scanning hidden files …

scan completed successfully

hidden processes: 0

hidden services: 0

hidden files: 0

Remaining Services :

Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

“%windir%\system32\sessmgr.exe”="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

“D:\Program Files\cs\Valve\hl.exe”=“D:\Program Files\cs\Valve\hl.exe:*:Enabled:Half-Life Launcher”

“C:\Program Files\WoW\World of Warcraft\BackgroundDownloader.exe”=“C:\Program Files\WoW\World of Warcraft\BackgroundDownloader.exe:*:Enabled:Blizzard Downloader”

“%windir%\Network Diagnostic\xpnetdiag.exe”="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

“C:\WINDOWS\system32\dpvsetup.exe”=“C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test”

“D:\Program Files\Gadu-Gadu\gg.exe”=“D:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program g˘wny”

“D:\Program Files\Warcraft III\Warcraft III.exe”=“D:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III”

“D:\Program Files\Warcraft III\War3.exe”=“D:\Program Files\Warcraft III\War3.exe:*:Enabled:Warcraft III”

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

“%windir%\system32\sessmgr.exe”="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

“%windir%\Network Diagnostic\xpnetdiag.exe”="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

Remaining Files :

Files with Hidden Attributes :

Finished!

spróbuj uruchomić go w trybie awaryjnym

:slight_smile: