Vbstub.exe - problem!


(Kamillo Voids) #1

mam problem z tym procesem dość że uruchamia mi sie razem z systemem windows to jeszcze mi zabiera ok.80% procesora a czasami załanczają sie 2 procesy naraz.patrzałem w programach w startup i nic dziwnego tam nie ma! !!


(Duch) #2

napewno podałeś poprawną nazwę :?

nie powinno być vobsub.exe :roll:

jeśli tak to zobacz: http://www.searchengines.pl/phpbb203/lo ... 42741.html


(Kamillo Voids) #3

nie podałem na 100% poprawną nazwe! !!


(Duch) #4

no skanuj chłopie kompa czym popadnie :lol:

i zapodaj loga z hijacka ;]


(Kamillo Voids) #5

i czy wie ktoś co to za proces bo jest on naprawde wnerwiający :evil:


(Qbek50) #6

Panda

Kaspersky

mks_vir

CWShredder 2.15

SpyBot - Search & Destroy v1.4 PL

Ad-aware SE Personal 1.06

PestPatrol

Hijack:

http://forum.dobreprogramy.pl/viewtopic.php?t=36654 :stuck_out_tongue:


(Kamillo Voids) #7
Logfile of HijackThis v1.99.1

Scan saved at 19:41:39, on 2005-09-23

Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)

MSIE: Unable to get Internet Explorer version!


Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe

C:\WINDOWS\system32\spoolsv.exe

d:\Programy\Alwil Software\Avast4\aswUpdSv.exe

d:\Programy\Alwil Software\Avast4\ashServ.exe

D:\Programy\Norton SystemWorks\Norton Utilities\NPROTECT.EXE

d:\Programy\Alwil Software\Avast4\ashMaiSv.exe

d:\Programy\Alwil Software\Avast4\ashWebSv.exe

D:\Programy\Thomson\SpeedTouch USB\Dragdiag.exe

D:\Programy\Alwil Software\Avast4\ashDisp.exe

C:\Program Files\Common Files\Symantec Shared\ccApp.exe

D:\Programy\Winamp\winampa.exe

C:\WINDOWS\Mixer.exe

D:\PROGRAMY\PcBoost\PcBoost.exe

D:\PROGRAMY\Gadu-Gadu\gg.exe

D:\PROGRAMY\AutoConnect\AutoConnect.exe

D:\PROGRAMY\SuperRam\SuperRam.exe

D:\PROGRAMY\Ashampoo\Ashampoo UnInstaller Platinum Suite\UIWatcher.exe

D:\PROGRAMY\Mozilla Firefox\firefox.exe

D:\PROGRAMY\RivChat\RivChat.exe

D:\PROGRAMY\DAP\DAP.EXE

C:\WINDOWS\TEMP\Rar$EX00.983\HijackThis.exe


R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cashcrawler.de/open/?id=driver44

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = 

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 

R3 - Default URLSearchHook is missing

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Programy\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Idea2 SidebarBrowserMonitor Class - {45AD732C-2CE2-4666-B366-B2214AD57A49} - D:\Programy\Desktop Sidebar\sbhelp.dll

O2 - BHO: IE PopUp-Killer - {49E0E0F0-5C30-11D4-945D-000000000003} - D:\PROGRAMY\Ashampoo\Ashampoo WinOptimizer Platinum Suite 2\PopUp.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - (no file)

O3 - Toolbar: (no name) - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - (no file)

O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)

O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics®] "D:\Programy\Thomson\SpeedTouch USB\Dragdiag.exe" /icon

O4 - HKLM\..\Run: [avast®] "d:\Programy\Alwil Software\Avast4\ashDisp.exe"

O4 - HKLM\..\Run: [ccApp®] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"

O4 - HKLM\..\Run: [WinampAgent®] "d:\Programy\Winamp\winampa.exe"

O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup

O4 - HKCU\..\Run: [Norton SystemWorks®] "D:\Programy\Norton SystemWorks\cfgwiz.exe" /GUID {05858CFD-5CC4-4ceb-AAAF-CF00BF39736A} /MODE CfgWiz

O4 - HKCU\..\Run: [PcBoost®] D:\PROGRAMY\PcBoost\PcBoost.exe

O4 - HKCU\..\Run: [Gadu-Gadu] "D:\PROGRAMY\Gadu-Gadu\gg.exe" /tray

O4 - HKCU\..\Run: [AutoConnect] D:\PROGRAMY\AutoConnect\AutoConnect.exe

O4 - HKCU\..\Run: [SuperRam] D:\PROGRAMY\SuperRam\SuperRam.exe

O4 - HKCU\..\Run: [UIWatcher] D:\PROGRAMY\Ashampoo\Ashampoo UnInstaller Platinum Suite\UIWatcher.exe

O8 - Extra context menu item: &Download with &DAP - D:\PROGRAMY\DAP\dapextie.htm

O8 - Extra context menu item: Download &all with DAP - D:\PROGRAMY\DAP\dapextie2.htm

O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://D:\Programy\Microsoft Office\OFFICE11\EXCEL.EXE/3000

O8 - Extra context menu item: Subscribe in Desktop Sidebar - res://D:\Programy\Desktop Sidebar\sbhelp.dll/menuhandler.html

O9 - Extra button: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - D:\Programy\Desktop Sidebar\sbhelp.dll

O9 - Extra 'Tools' menuitem: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - D:\Programy\Desktop Sidebar\sbhelp.dll

O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\Microsoft Office\OFFICE11\REFIEBAR.DLL

O13 - DefaultPrefix: 

O13 - WWW Prefix: 

O13 - Home Prefix: 

O13 - Mosaic Prefix: 

O13 - FTP Prefix: 

O13 - Gopher Prefix: 

O17 - HKLM\System\CCS\Services\Tcpip\..\{F6DB2F84-5EE3-423C-8CAF-8FB06F2D0B76}: NameServer = 195.114.181.130 195.114.161.61

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - d:\Programy\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - Unknown owner - d:\Programy\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - d:\Programy\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - d:\Programy\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe

O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe

O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe

O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - D:\Programy\Norton SystemWorks\Norton Utilities\NPROTECT.EXE

Złączono Posta : 24.09.2005 (Sob) 11:29

czysty mam ten log czy nie?????? :smiley: