lukaszm
(Lukaszm Zdw)
27 Wrzesień 2006 21:15
#1
siema… mam prosbe moglby ktos sprawdzic loga…
z gory dzieki
Logfile of HijackThis v1.99.1 Scan saved at 23:14:03, on 2006-09-27 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe h:\Program Files\Alwil Software\Avast4\aswUpdSv.exe h:\Program Files\Alwil Software\Avast4\ashServ.exe H:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\system32\svchost.exe h:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe H:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe h:\Program Files\Alwil Software\Avast4\ashMaiSv.exe h:\Program Files\Alwil Software\Avast4\ashWebSv.exe H:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe H:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe H:\Program Files\D-Tools\daemon.exe H:\Program Files\DU Meter\DUMeter.exe H:\Program Files\Motherboard Monitor 5\MBM5.EXE C:\Program Files\ATI Technologies\ATI.ACE\cli.exe H:\Program Files\Winamp\winampa.exe H:\Program Files\Desktop Sidebar\dsidebar.exe C:\WINDOWS\system32\ctfmon.exe H:\Program Files\Gadu-Gadu\gg.exe C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe H:\Program Files\stickies\stickies.exe H:\Program Files\BitComet\BitComet.exe H:\Program Files\Winamp\winamp.exe H:\Program Files\PopTray\PopTray.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\wuauclt.exe D:\Moje Dane Prywatne\Ustawienia Windows; Screeny, Problemy, logi\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.vline.net.pl:8080 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Idea2 SidebarBrowserMonitor Class - {45AD732C-2CE2-4666-B366-B2214AD57A49} - H:\Program Files\Desktop Sidebar\sbhelp.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - h:\PROGRA~1\FlashFXP\IEFlash.dll O4 - HKLM…\Run: [iKeyWorks] C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe O4 - HKLM…\Run: [WheelMouse] C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe O4 - HKLM…\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe O4 - HKLM…\Run: [avast!] h:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM…\Run: [DAEMON Tools-1033] “H:\Program Files\D-Tools\daemon.exe” -lang 1045 O4 - HKLM…\Run: [DU Meter] H:\Program Files\DU Meter\DUMeter.exe O4 - HKLM…\Run: [MBM 5] “H:\Program Files\Motherboard Monitor 5\MBM5.EXE” O4 - HKLM…\Run: [iSUSPM Startup] “C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe” -startup O4 - HKLM…\Run: [iSUSScheduler] “C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\issch.exe” -start O4 - HKLM…\Run: [ATICCC] “C:\Program Files\ATI Technologies\ATI.ACE\cli.exe” runtime O4 - HKLM…\Run: [WinampAgent] “H:\Program Files\Winamp\winampa.exe” O4 - HKCU…\Run: [sIDEBAR] “H:\Program Files\Desktop Sidebar\dsidebar.exe” O4 - HKCU…\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU…\Run: [Gadu-Gadu] “H:\Program Files\Gadu-Gadu\gg.exe” /tray O4 - Startup: PopTray.lnk = H:\Program Files\PopTray\PopTray.exe O4 - Startup: Stickies.lnk = H:\Program Files\stickies\stickies.exe O4 - Global Startup: ATI CATALYST – pasek zadań.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions present O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://H:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Subscribe in Desktop Sidebar - res://H:\Program Files\Desktop Sidebar\sbhelp.dll/menuhandler.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra ‘Tools’ menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - H:\Program Files\Desktop Sidebar\sbhelp.dll O9 - Extra ‘Tools’ menuitem: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - H:\Program Files\Desktop Sidebar\sbhelp.dll O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - h:\Program Files\ICQ-PL\ICQLite.exe O9 - Extra ‘Tools’ menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - h:\Program Files\ICQ-PL\ICQLite.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204 O17 - HKLM\System\CCS\Services\Tcpip…{8CB93762-1650-41EE-86B7-FD3CDFE7BB85}: NameServer = 217.96.107.2,193.16.255.2 O18 - Protocol: wpmsg - {2E0AC5A0-3597-11D6-B3ED-0001021DC1C3} - h:\Program Files\Spik\url_wpmsg.dll O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - h:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: avast! Antivirus - Unknown owner - h:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - h:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - h:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - H:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - h:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
Bieniol
(Bbieniol)
27 Wrzesień 2006 21:20
#2
Do usunięcia ten wpis (chyba, że był on ustawiany):
Poza tym czysto
Możesz troche bardziej to rozwinąć?
lukaszm
(Lukaszm Zdw)
28 Wrzesień 2006 14:03
#3
wygląda tak jakby zawieszał się na zamykaniu sytemu windows xp chodzi mi o ten napis…
Bieniol
(Bbieniol)
28 Wrzesień 2006 14:48
#4
Poczytaj tutaj -> http://www.searchengines.pl/phpbb203/in … topic=5989
A dokładniej: System się nie zamyka
lukaszm
(Lukaszm Zdw)
28 Wrzesień 2006 15:03
#5
wiesz co… WaitToKillServiceTimeout miałem ustawione na 190 000 może to było przyczyna… mam taka nadzieje zmienilem sobie na 100 tylko zastanawia mnie jedno skoro zawsze po formacie ustawiam na 100 to czemu sie zmieniło;/