Duża liczba hostów. Malware?


(don maciej) #1

Ostatnio sporo spadł transfer w Internecie, bardzo proszę o sprawdzenie loga.

http://wklejto.pl/10965


(Spandau) #2

Usuń te wpisy w HJT

Uruchom HijackThis - Do a system scan only - w oknie programu pokaże się log - zaznacz kratki przy podanych wpisach - klikasz Fix checked

O1 - Hosts: 80.239.151.16 rs15.rapidshare.com

O1 - Hosts: 80.239.151.160 rs159.rapidshare.com

O1 - Hosts: 82.129.39.160 rs159cg.rapidshare.com

O1 - Hosts: 82.129.35.160 rs159cg2.rapidshare.com

O1 - Hosts: 80.152.62.160 rs159dt.rapidshare.com

O1 - Hosts: 64.215.245.160 rs159gc.rapidshare.com

O1 - Hosts: 207.138.168.160 rs159gc2.rapidshare.com

O1 - Hosts: 80.239.151.160 rs159l3.rapidshare.com

O1 - Hosts: 80.239.151.160 rs159l32.rapidshare.com

O1 - Hosts: 80.239.236.160 rs159l33.rapidshare.com

O1 - Hosts: 64.215.245.160 rs159l34.rapidshare.com

O1 - Hosts: 195.219.1.160 rs159tg.rapidshare.com

O1 - Hosts: 80.239.151.160 rs159tl.rapidshare.com

O1 - Hosts: 80.239.236.160 rs159tl2.rapidshare.com

O1 - Hosts: 82.129.39.16 rs15cg.rapidshare.com

O1 - Hosts: 82.129.35.16 rs15cg2.rapidshare.com

O1 - Hosts: 80.152.62.16 rs15dt.rapidshare.com

O1 - Hosts: 64.215.245.16 rs15gc.rapidshare.com

O1 - Hosts: 207.138.168.16 rs15gc2.rapidshare.com

O1 - Hosts: 80.239.151.16 rs15l3.rapidshare.com

O1 - Hosts: 80.239.151.16 rs15l32.rapidshare.com

O1 - Hosts: 80.239.236.16 rs15l33.rapidshare.com

O1 - Hosts: 64.215.245.16 rs15l34.rapidshare.com

O1 - Hosts: 195.219.1.16 rs15tg.rapidshare.com

O1 - Hosts: 80.239.151.16 rs15tl.rapidshare.com

O1 - Hosts: 80.239.236.16 rs15tl2.rapidshare.com

O1 - Hosts: 80.239.151.17 rs16.rapidshare.com

O1 - Hosts: 80.239.151.161 rs160.rapidshare.com

O1 - Hosts: 82.129.39.161 rs160cg.rapidshare.com

O1 - Hosts: 82.129.35.161 rs160cg2.rapidshare.com

O1 - Hosts: 80.152.62.161 rs160dt.rapidshare.com

O1 - Hosts: 64.215.245.161 rs160gc.rapidshare.com

O1 - Hosts: 207.138.168.161 rs160gc2.rapidshare.com

O1 - Hosts: 80.239.151.161 rs160l3.rapidshare.com

O1 - Hosts: 80.239.151.161 rs160l32.rapidshare.com

O1 - Hosts: 80.239.236.161 rs160l33.rapidshare.com

O1 - Hosts: 64.215.245.161 rs160l34.rapidshare.com

O1 - Hosts: 195.219.1.161 rs160tg.rapidshare.com

O1 - Hosts: 80.239.151.161 rs160tl.rapidshare.com

O1 - Hosts: 80.239.236.161 rs160tl2.rapidshare.com

O1 - Hosts: 80.239.151.162 rs161.rapidshare.com

O1 - Hosts: 82.129.39.162 rs161cg.rapidshare.com

O1 - Hosts: 82.129.35.162 rs161cg2.rapidshare.com

O1 - Hosts: 80.152.62.162 rs161dt.rapidshare.com

O1 - Hosts: 64.215.245.162 rs161gc.rapidshare.com

O1 - Hosts: 207.138.168.162 rs161gc2.rapidshare.com

O1 - Hosts: 80.239.151.162 rs161l3.rapidshare.com

O1 - Hosts: 80.239.151.162 rs161l32.rapidshare.com

O1 - Hosts: 80.239.236.162 rs161l33.rapidshare.com

O1 - Hosts: 64.215.245.162 rs161l34.rapidshare.com

O1 - Hosts: 195.219.1.162 rs161tg.rapidshare.com

O1 - Hosts: 80.239.151.162 rs161tl.rapidshare.com

O1 - Hosts: 80.239.236.162 rs161tl2.rapidshare.com

O1 - Hosts: 80.239.151.163 rs162.rapidshare.com

O1 - Hosts: 82.129.39.163 rs162cg.rapidshare.com

O1 - Hosts: 82.129.35.163 rs162cg2.rapidshare.com

O1 - Hosts: 80.152.62.163 rs162dt.rapidshare.com

O1 - Hosts: 64.215.245.163 rs162gc.rapidshare.com

O1 - Hosts: 207.138.168.163 rs162gc2.rapidshare.com

O1 - Hosts: 80.239.151.163 rs162l3.rapidshare.com

O1 - Hosts: 80.239.151.163 rs162l32.rapidshare.com

O1 - Hosts: 80.239.236.163 rs162l33.rapidshare.com

O1 - Hosts: 64.215.245.163 rs162l34.rapidshare.com

O1 - Hosts: 195.219.1.163 rs162tg.rapidshare.com

O1 - Hosts: 80.239.151.163 rs162tl.rapidshare.com

O1 - Hosts: 80.239.236.163 rs162tl2.rapidshare.com

O1 - Hosts: 80.239.151.164 rs163.rapidshare.com

O1 - Hosts: 82.129.39.164 rs163cg.rapidshare.com

O1 - Hosts: 82.129.35.164 rs163cg2.rapidshare.com

O1 - Hosts: 80.152.62.164 rs163dt.rapidshare.com

O1 - Hosts: 64.215.245.164 rs163gc.rapidshare.com

O1 - Hosts: 207.138.168.164 rs163gc2.rapidshare.com

O1 - Hosts: 80.239.151.164 rs163l3.rapidshare.com

O1 - Hosts: 80.239.151.164 rs163l32.rapidshare.com

O1 - Hosts: 80.239.236.164 rs163l33.rapidshare.com

O1 - Hosts: 64.215.245.164 rs163l34.rapidshare.com

O1 - Hosts: 195.219.1.164 rs163tg.rapidshare.com

O1 - Hosts: 80.239.151.164 rs163tl.rapidshare.com

O1 - Hosts: 80.239.236.164 rs163tl2.rapidshare.com

O1 - Hosts: 80.239.151.165 rs164.rapidshare.com

O1 - Hosts: 82.129.39.165 rs164cg.rapidshare.com

O1 - Hosts: 82.129.35.165 rs164cg2.rapidshare.com

O1 - Hosts: 80.152.62.165 rs164dt.rapidshare.com

O1 - Hosts: 64.215.245.165 rs164gc.rapidshare.com

O1 - Hosts: 207.138.168.165 rs164gc2.rapidshare.com

O1 - Hosts: 80.239.151.165 rs164l3.rapidshare.com

O1 - Hosts: 80.239.151.165 rs164l32.rapidshare.com

O1 - Hosts: 80.239.236.165 rs164l33.rapidshare.com

O1 - Hosts: 64.215.245.165 rs164l34.rapidshare.com

O1 - Hosts: 195.219.1.165 rs164tg.rapidshare.com

O1 - Hosts: 80.239.151.165 rs164tl.rapidshare.com

O1 - Hosts: 80.239.236.165 rs164tl2.rapidshare.com

O1 - Hosts: 80.239.151.166 rs165.rapidshare.com

O1 - Hosts: 82.129.39.166 rs165cg.rapidshare.com

O1 - Hosts: 82.129.35.166 rs165cg2.rapidshare.com

O1 - Hosts: 80.152.62.166 rs165dt.rapidshare.com

O1 - Hosts: 64.215.245.166 rs165gc.rapidshare.com

O1 - Hosts: 207.138.168.166 rs165gc2.rapidshare.com

O1 - Hosts: 80.239.151.166 rs165l3.rapidshare.com

O1 - Hosts: 80.239.151.166 rs165l32.rapidshare.com

O1 - Hosts: 80.239.236.166 rs165l33.rapidshare.com

Pobierz ATFCleaner http://dobreprogramy.pl/index.php?dz=2& ... TF+Cleaner i opróżnij katalogi Temp

Pobierz Combofix przeskanuj system i daj log na forum.

Loga wklej na www.wklejto.pl lub http://www.wklej.org/ a w poście daj tylko linka


(don maciej) #3

Zrobiłem wszystko co jest napisane powyżej, log ComboFix : http://wklejto.pl/10972


(Spandau) #4

Pobierz Malwarebytes' Anti-Malware Instrukcja http://cybertrash.pl/Tata/MBAM/Malwareb ... lware.html

wykobnaj pełny skan i usuń wszystko co znajdzie

Start - Uruchom - wpisujesz cmd Enter

sc stop Video3D Enter

sc delete Video3D Enter

Log wygląda na czysty.

usuń folder C: \Qoobox oraz instalkę Combofix z dysku.

Przeczyść system oraz rejestr CCleaner

Wykonaj optymalizacje Autostartu

Wyłącz i włącz przywracanie systemu na wszystkich dyskach. Instrukcja

Przeskanuj obszar Mój komputer Kaspersky Online Scanner Uruchom pod IE daj raport na forum

lub Dr.WEB CureIt!