Log


(Flinam) #1

prosze o sprawdzenie mojego log:):):):):):):)Logfile of HijackThis v1.99.1

Scan saved at 20:44:26, on 28.03.2005

Platform: Windows XP (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:

E:\WINDOWS\System32\smss.exe

E:\WINDOWS\system32\winlogon.exe

E:\WINDOWS\system32\services.exe

E:\WINDOWS\system32\lsass.exe

E:\WINDOWS\system32\svchost.exe

E:\WINDOWS\System32\svchost.exe

E:\WINDOWS\system32\spoolsv.exe

E:\WINDOWS\Explorer.EXE

E:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe

E:\Programme\Logitech\iTouch\iTouch.exe

E:\Programme\Gemeinsame Dateien\Real\Update_OB\rnathchk.exe

E:\Programme\Logitech\MouseWare\system\em_exec.exe

D:\Programme\neue downloads mps\ime\AVGNT.EXE

E:\WINDOWS\System32\ctfmon.exe

D:\Programme\neue downloads mps\ime\AVGUARD.EXE

D:\Programme\neue downloads mps\ime\AVWUPSRV.EXE

E:\WINDOWS\System32\nvsvc32.exe

E:\Programme\Mozilla Firefox\firefox.exe

E:\WINDOWS\System32\wuauclt.exe

C:\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://de.yahoo.com/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.cannabis.center.prv.pl/

R3 - Default URLSearchHook is missing

O2 - BHO: myBar BHO - {0494D0D1-F8E0-41ad-92A3-14154ECE70AC} - E:\Programme\MyWay\myBar\5.bin\MYBAR.DLL

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Programme\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

O2 - BHO: (no name) - {DE3BEBDB-AEE7-4277-8B6E-4EEFFA9508AE} - (no file)

O3 - Toolbar: My &Search Bar - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - E:\Programme\MyWay\myBar\5.bin\MYBAR.DLL

O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - E:\WINDOWS\System32\msdxm.ocx

O4 - HKLM..\Run: [Logitech Utility] Logi_MwX.Exe

O4 - HKCU..\Run: [Gadu-Gadu] "D:\Programme\neue downloads mps\1\Gadu-Gadu\gg.exe" /tray

O16 - DPF: Yahoo! Chat - http://us.chat1.yimg.com/us.yimg.com/i/ ... 1/chat.cab

O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - http://us.dl1.yimg.com/download.compani ... 3_16_0.cab

O17 - HKLM\System\CCS\Services\Tcpip..{D13242C1-CDC2-4DC9-985A-DACAAD36D1DA}: NameServer = 217.237.151.225 217.237.150.225

O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - D:\Programme\neue downloads mps\ime\AVGUARD.EXE

O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - D:\Programme\neue downloads mps\ime\AVWUPSRV.EXE

O23 - Service: Creative Service for CDROM Access - Unknown owner - E:\WINDOWS\System32\CTsvcCDA.exe (file missing)

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - E:\WINDOWS\System32\nvsvc32.exe

O23 - Service: STOPzilla Local Service - Unknown owner - E:\Programme\STOPzilla!\szntsvc.exe (file missing)


(Siekiera666) #2

stary ale żeś zrobił przypołnie ten dział :x :slight_smile:


(lazikar) #3

Przenosze>> Bezpieczeństwo ....


(Dzony) #4

usun to


(Xiao19) #5

(wylacz przywracanie systemu)

wywalasz TAK: (tryb awaryjny)

R3 - Default URLSearchHook is missing

O2 - BHO: myBar BHO - {0494D0D1-F8E0-41ad-92A3-14154ECE70AC} - E:\Programme\MyWay\myBar\5.bin\MYBAR.DLL

3 - Toolbar: My &Search Bar - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - E:\Programme\MyWay\myBar\5.bin\MYBAR.DLL

O23 - Service: Creative Service for CDROM Access - Unknown owner - E:\WINDOWS\System32\CTsvcCDA.exe (file missing)

O23 - Service: STOPzilla Local Service - Unknown owner - E:\Programme\STOPzilla!\szntsvc.exe (file missing)

1.)

sciagasz ETD_Security, Ad-aware (na vortalu masz)

http://www.download.com/ETD-Security-Sc ... 29424.html

skanujesz system

2.)

recznie wywalasz tak

E:\Programme\ MyWay

caly katalog

oraz pliki

E:\WINDOWS\System32\ CTsvcCDA.exe

E:\Programme\STOPzilla!\ szntsvc.exe

3.)

zasysasz G DATA

skanujesz w trybie awaryjnym kompa

http://dobreprogramy.com/index.php?dz=2&t=73&id=846

4.)

skan skanerami AV

--F-Secure--

http://support.f-secure.com/enu/home/ols.shtml

--GeCAD (RAV)--

http://www.ravantivirus.com/scan/

--Softwin (BitDefender)--

http://www.bitdefender.com/scan/licence.php