przeskanowałem go wszystkim kasperskim anyty trojanem Spybotem i ad adware znalazl jednego trojana usunol go ale nic nie pomoglo moze wklejenie loga cos da ?? czekam na odpowiedz pozdrawiam
Skontaktuj się ze swoim dostawcą internetu. Jeśli masz Neostradę, to TP.SA nagminnie obniża szybkości i dosć szybko po interwencji telefonicznej naprawia własne niechlujstwo! 0800 102 102
prosze ot log .ostatnio jak sciagnolem combo fix to na tym combo byl trojan nie wiem czemu a le to mam nadzieje ze mi pomozecie sorki ze bez polskich lit ale tak jest szybciej oto log
ComboFix 08-01-04.1 - oem 2008-01-04 16:10:01.4 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.1.1045.18.470 [GMT 1:00]
Running from: F:\filmy\ComboFix(2).exe
* Created a new restore point
.
((((((((((((((((((((((((( Files Created from 2007-12-04 to 2008-01-04 )))))))))))))))))))))))))))))))
.
2008-01-04 16:08 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe
2008-01-02 23:39 . 2008-01-03 00:14
2007-12-30 20:35 . 2007-12-30 20:35
2007-12-30 20:35 . 2007-12-30 20:35
2007-12-30 20:35 . 2006-05-25 14:52 162,304 --a------ C:\WINDOWS\system32\ztvunrar36.dll
2007-12-30 20:35 . 2003-02-02 19:06 153,088 --a------ C:\WINDOWS\system32\UNRAR3.dll
2007-12-30 20:35 . 2005-08-26 00:50 77,312 --a------ C:\WINDOWS\system32\ztvunace26.dll
2007-12-30 20:35 . 2002-03-06 00:00 75,264 --a------ C:\WINDOWS\system32\unacev2.dll
2007-12-30 20:35 . 2006-06-19 12:01 69,632 --a------ C:\WINDOWS\system32\ztvcabinet.dll
2007-12-24 19:03 . 2007-12-24 19:03
2007-12-14 18:07 . 2007-12-14 18:07
2007-12-14 18:07 . 2007-12-14 18:08
2007-12-13 11:06 . 2007-12-13 11:06
2007-12-13 11:06 . 2007-12-13 11:07
2007-12-12 19:51 . 2007-12-12 19:51
2007-12-12 19:51 . 2007-12-12 19:51
2007-12-11 20:46 . 2007-12-11 20:46 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2007-12-11 20:46 . 2007-12-11 20:46 524,288 --a------ C:\WINDOWS\system32\DivXsm.exe
2007-12-11 20:46 . 2007-12-11 20:46 4,816 --a------ C:\WINDOWS\system32\divxsm.tlb
2007-12-11 20:45 . 2007-12-11 20:45 1,044,480 --a------ C:\WINDOWS\system32\libdivx.dll
2007-12-11 20:45 . 2007-12-11 20:45 200,704 --a------ C:\WINDOWS\system32\ssldivx.dll
2007-12-11 20:43 . 2007-12-11 20:43 12,288 --a------ C:\WINDOWS\system32\DivXWMPExtType.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-04 15:11 884,256 --sha-w C:\WINDOWS\system32\drivers\fidbox2.dat
2008-01-04 15:10 27,147,040 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat
2008-01-04 15:09 --------- d-----w C:\Program Files\Kaspersky Lab
2008-01-04 14:45 --------- d-----w C:\Program Files\AutoConnect
2008-01-04 12:46 --------- d-----w C:\Documents and Settings\oem\Dane aplikacji\OpenOffice.ux.pl2
2008-01-03 21:47 84,752 --sha-w C:\WINDOWS\system32\drivers\fidbox2.idx
2008-01-03 21:47 367,256 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx
2008-01-03 19:57 --------- d-----w C:\Documents and Settings\oem\Dane aplikacji\Skype
2008-01-03 16:21 --------- d-----w C:\Documents and Settings\oem\Dane aplikacji\skypePM
2008-01-02 22:17 --------- d-----w C:\Program Files\eMule
2007-12-30 17:29 --------- d–h--w C:\Program Files\InstallShield Installation Information
2007-12-30 17:28 --------- d-----w C:\Program Files\SkanerOnline
2007-12-30 17:27 --------- d-----w C:\Program Files\Winamp
2007-12-27 18:24 --------- d-----w C:\Program Files\Ahead
2007-12-27 18:23 --------- d-----w C:\Program Files\Common Files\Ahead
2007-12-19 15:46 --------- d-----w C:\Program Files\DivX
2007-12-11 19:44 823,296 ----a-w C:\WINDOWS\system32\divx_xx0c.dll
2007-12-11 19:44 823,296 ----a-w C:\WINDOWS\system32\divx_xx07.dll
2007-12-11 19:44 81,920 ----a-w C:\WINDOWS\system32\dpl100.dll
2007-12-11 19:44 802,816 ----a-w C:\WINDOWS\system32\divx_xx11.dll
2007-12-11 19:44 682,496 ----a-w C:\WINDOWS\system32\DivX.dll
2007-12-11 19:44 593,920 ----a-w C:\WINDOWS\system32\dpuGUI11.dll
2007-12-11 19:44 57,344 ----a-w C:\WINDOWS\system32\dpv11.dll
2007-12-11 19:44 53,248 ----a-w C:\WINDOWS\system32\dpuGUI10.dll
2007-12-11 19:44 344,064 ----a-w C:\WINDOWS\system32\dpus11.dll
2007-12-11 19:44 294,912 ----a-w C:\WINDOWS\system32\dpu11.dll
2007-12-11 19:44 294,912 ----a-w C:\WINDOWS\system32\dpu10.dll
2007-12-11 19:44 196,608 ----a-w C:\WINDOWS\system32\dtu100.dll
2007-12-11 19:44 156,992 ----a-w C:\WINDOWS\system32\DivXCodecVersionChecker.exe
2007-11-28 17:35 4,608 ----a-w C:\WINDOWS\system32\w95inf32.dll
2007-11-25 16:41 32 ----a-w C:\Documents and Settings\All Users\Dane aplikacji\ezsid.dat
2007-11-25 16:37 --------- d-----w C:\Program Files\Skype
2007-11-25 16:37 --------- d-----w C:\Program Files\Common Files\Skype
2007-11-25 16:37 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\Skype
2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2007-11-12 08:35 --------- d-----w C:\Program Files\Codec Pack - All In 1
2007-10-29 22:41 1,291,264 ----a-w C:\WINDOWS\system32\quartz.dll
2007-10-25 08:28 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll
2004-10-01 13:00 40,960 ----a-w C:\Program Files\Uninstall_CDS.exe
.
((((((((((((((((((((((((((((( snapshot@2007-12-23_ 9.56.59.26 )))))))))))))))))))))))))))))))))))))))))
.
- 2007-12-13 20:26:50 156,160 ----a-w C:\WINDOWS\system32\swreg.exe
- 2000-08-31 07:00:00 156,160 ----a-w C:\WINDOWS\system32\swreg.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“CTFMON.EXE”=“C:\WINDOWS\system32\ctfmon.exe” [2004-08-04 00:44 15360]
“PowerBar”="" []
“MSMSGS”=“C:\Program Files\Messenger\msmsgs.exe” [2004-10-13 08:21 1694208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“NvCplDaemon”=“C:\WINDOWS\system32\NvCpl.dll” [2007-04-19 12:26 7700480]
“nwiz”=“nwiz.exe” [2007-04-19 12:26 1626112 C:\WINDOWS\system32\nwiz.exe]
“RTHDCPL”=“RTHDCPL.EXE” [2007-01-30 11:54 16116224 C:\WINDOWS\RTHDCPL.exe]
“SkyTel”=“SkyTel.EXE” [2006-05-16 11:04 2879488 C:\WINDOWS\SkyTel.exe]
“kis”=“C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe” [2006-03-24 18:09 139367]
“RemoteControl”=“C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe” [2004-11-02 19:24 32768]
“SunJavaUpdateSched”=“C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe” [2007-09-25 01:11 132496]
“NvMediaCenter”=“C:\WINDOWS\system32\NvMcTray.dll” [2007-04-19 12:26 86016]
“WinampAgent”=“C:\Program Files\Winamp\winampa.exe” [2007-05-14 23:22 35328]
“SSBkgdUpdate”=“C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe” [2003-10-14 10:22 155648]
“PaperPort PTD”=“C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe” [2005-03-17 14:25 57393]
“IndexSearch”=“C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe” [2005-03-17 14:45 40960]
“BrMfcWnd”=“C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe” [2006-03-28 15:48 622592]
“SetDefPrt”=“C:\Program Files\Brother\Brmfl06a\BrStDvPt.exe” [2005-01-26 18:02 49152]
“ControlCenter3”=“C:\Program Files\Brother\ControlCenter3\brctrcen.exe” [2006-04-10 14:58 61440]
“TrojanScanner”=“F:\Program Files\Trojan Remover\Trjscan.exe” [2007-12-24 03:14 737360]
[HKEY_USERS.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
“CTFMON.EXE”=“C:\WINDOWS\system32\CTFMON.EXE” [2004-08-04 00:44 15360]
C:\Documents and Settings\oem\Menu Start\Programy\Autostart\
OpenOffice.ux.pl 2.0.lnk - C:\Program Files\OpenOffice.ux.pl 2.0\program\quickstart.exe [2005-10-26 12:36:02]
C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\
DSLMON.lnk - C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe [2007-05-17 09:50:59]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
“NoBandCustomize”= 0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
“NoBandCustomize”= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
“AppInit_DLLs”=C:\PROGRA~1\KASPER~1\KASPER~1.0\adialhk.dll
R3 e4usbaw;USB ADSL2 WAN Adapter;C:\WINDOWS\system32\DRIVERS\e4usbaw.sys [2006-09-19 10:03]
S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys);C:\WINDOWS\system32\Drivers\e4ldr.sys [2006-09-15 10:07]
S3 BrScnUsb;Brother USB Still Image driver;C:\WINDOWS\system32\DRIVERS\BrScnUsb.sys [2004-10-15 12:50]
S3 gdrv;gdrv;C:\WINDOWS\gdrv.sys [2007-05-14 20:02]
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-01-04 16:11:14
Windows 5.1.2600 Dodatek Service Pack 2 NTFS
scanning hidden processes …
scanning hidden autostart entries …
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
PowerBar = ???l?@?l?@?D???~?6~???6~l?@?l?@??? ???w?9~??6~???6~??6~x???6~??? ???|x???0??? nt??6~???n???K???l?@?l?@???q?7~???t?@???l?@?8?@?l?@?3??s???8?@?_??s8?@?8?@
scanning hidden files …
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-01-04 16:11:48
ComboFix-quarantined-files.txt 2008-01-04 15:11:39
ComboFix2.txt 2007-12-23 08:57:33
.
2007-12-29 19:27:03 — E O F —
W logu nic nie widze, ale pamiętaj: Zmiana zasad wklejania logów na forum - viewtopic.php?f=16&t=213350