Blaster? nieeee

"Za 60 sekund nastąpi ponowne uruchomienie komputera..." Wszystko jak przy blasterze... tyle źe go nie mam... skanowałem kompa wieloma antyvirami ale nie przyniosło skutku... co jeszcze mogło to wywołać? Prosze nie kasować tego topica albo przynjamniej napisać uzasadnienie iskasować po 5 min :P

Odpowiedzi: 6

a co jest napisane pod tym komunikatem o ponownym uruchomieniu?
Przemo (JARO)
Dodano
19.12.2004 18:18:50
Usun sobie tylko te wpisy (no file)

^^EL_WooD^^: co sie wywala ??
lsass czy RPC
W archiwalnych postach bylo sporo tematow o tych bledach
Zechciej je znalesc i przeczytac
Bobi
Dodano
19.12.2004 09:33:42
Wykonałem wszystko co kazałeś, nie mam blastera a oto Hijack Log File:

Logfile of HijackThis v1.99.0
Scan saved at 01:32:28, on 2004–12–19
Platform: Windows XP Dodatek SP. 1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2900.2180)

Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesCommon FilesSymantec SharedccSetMgr.exe
C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe
C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSExplorer.EXE
C:WINDOWSSystem32RUNDLL32.EXE
C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe
C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE
C:Program FilesCommon FilesSymantec SharedccProxy.exe
C:WINDOWSsystem32CTsvcCDA.exe
C:PROGRA~1NORTON~1Norton UtilitiesNPROTECT.EXE
C:WINDOWSsystem32 vsvc32.exe
C:Program FilesNorton SystemWorksNorton AntivirusSAVScan.exe
C:Program FilesLavasoftAd–Aware SE ProfessionalAd–Watch.exe
C:Program FilesNorton SystemWorksPassword ManagerAcctMgr.exe
C:Program FilesCommon FilesSymantec SharedccApp.exe
C:Program FilesCreativeMediaSourceGOCTCMSGo.exe
C:Program FilesMSN Messengermsnmsgr.exe
C:Program FilesMessengermsmsgs.exe
C:WINDOWSSystem32ctfmon.exe
C:Program FilesSkypePhoneSkype.exe
C:PROGRA~1NORTON~1Norton UtilitiesSpeed DiskNOPDB.EXE
C:WINDOWSsystem32MsPMSPSv.exe
C:Program FilesGadu–Gadugg.exe
C:Program FilesNorton SystemWorksNorton Antivirus avapsvc.exe
C:WINDOWSSystem32wuauclt.exe
C:WINDOWSSystem32wuauclt.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesWinRARWinRAR.exe
C:DOCUME~1DawidUSTAWI~1TempRar$EX00.672HijackThis.exe

R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = http://google.icq.com/search/search_frame.php
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.netsprint.pl/
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 – HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page =
R1 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = localhost
R0 – HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName =
O2 – BHO: AcroIEHlprObj Class – {06849E9F–C8D7–4D59–B87D–784B7D6BE0B3} – C:Program FilesAdobeAcrobat 5.0ReaderActiveXAcroIEHelper.ocx
O2 – BHO: (no name) – {53707962–6F74–2D53–2644–206D7942484F} – C:Program FilesSpybot – Search & DestroySDHelper.dll
O2 – BHO: (no name) – {99CE4A8E–87DF–1254–8137–DF0E734EE10C} – (no file)
O2 – BHO: Web assistant – {9ECB9560–04F9–4bbc–943D–298DDF1699E1} – C:Program FilesCommon FilesSymantec SharedAdBlockingNISShExt.dll
O2 – BHO: NAV Helper – {BDF3E430–B101–42AD–A544–FADC6B084872} – C:Program FilesNorton SystemWorksNorton AntivirusNavShExt.dll
O3 – Toolbar: Norton AntiVirus – {42CDD1BF–3FFB–4238–8AD1–7859DF00B1D6} – C:Program FilesNorton SystemWorksNorton AntivirusNavShExt.dll
O3 – Toolbar: Web assistant – {0B53EAC3–8D69–4b9e–9B19–A37C9A5676A7} – C:Program FilesCommon FilesSymantec SharedAdBlockingNISShExt.dll
O4 – HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSsystem32NvCpl.dll,NvStartup
O4 – HKLM..Run: [SBDrvDet] C:Program FilesCreativeSB Drive DetSBDrvDet.exe /r
O4 – HKLM..Run: [QuickTime Task] "C:WINDOWSsystem32qttask.exe" –atboottime
O4 – HKLM..Run: [nwiz] nwiz.exe /install
O4 – HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 – HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe
O4 – HKLM..Run: [CTSysVol] C:Program FilesCreativeSBAudigy2Surround MixerCTSysVol.exe
O4 – HKLM..Run: [CTDVDDet] C:Program FilesCreativeSBAudigy2DVDAudioCTDVDDet.EXE
O4 – HKLM..Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 – HKLM..Run: [CloneCDElbyCDFL] "C:Program FilesElaborate BytesCloneCDElbyCheck.exe" /L ElbyCDFL
O4 – HKLM..Run: [AWMON] "C:Program FilesLavasoftAd–Aware SE ProfessionalAd–Watch.exe"
O4 – HKLM..Run: [AcctMgr] C:Program FilesNorton SystemWorksPassword ManagerAcctMgr.exe /startup
O4 – HKLM..Run: [ccApp] "C:Program FilesCommon FilesSymantec SharedccApp.exe"
O4 – HKLM..Run: [Symantec NetDriver Monitor] C:PROGRA~1SymNetDrvSNDMon.exe
O4 – HKCU..Run: [Creative MediaSource Go] C:Program FilesCreativeMediaSourceGOCTCMSGo.exe /SCB
O4 – HKCU..Run: [msnmsgr] "C:Program FilesMSN Messengermsnmsgr.exe" /background
O4 – HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background
O4 – HKCU..Run: [ctfmon.exe] C:WINDOWSSystem32ctfmon.exe
O4 – HKCU..Run: [MessengerPlus3] "C:Program FilesMessenger Plus! 3MsgPlus.exe" /WinStart
O4 – HKCU..Run: [Skype] "C:Program FilesSkypePhoneSkype.exe" /nosplash /minimized
O4 – HKCU..Run: [Norton SystemWorks] C:Program FilesCommon FilesSymantec SharedCfgWiz.exe /GUID {DA9935BA–22F7–44ee–BD12–BD8B87700BEA}
O4 – HKCU..Run: [Gadu–Gadu] "C:Program FilesGadu–Gadugg.exe" /tray
O4 – Global Startup: Adobe Gamma Loader.lnk = C:Program FilesCommon FilesAdobeCalibrationAdobe Gamma Loader.exe
O8 – Extra context menu item: Download with GetRight – C:Program FilesGetRightGRdownload.htm
O8 – Extra context menu item: E&ksport do programu Microsoft Excel – res://C:PROGRA~1MICROS~2Office10EXCEL.EXE/3000
O8 – Extra context menu item: Open with GetRight Browser – C:Program FilesGetRightGRbrowse.htm
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:WINDOWSSystem32msjava.dll
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:WINDOWSSystem32msjava.dll
O9 – Extra button: Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:Program FilesMessengermsmsgs.exe
O9 – Extra 'Tools' menuitem: Windows Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:Program FilesMessengermsmsgs.exe
O16 – DPF: RaptisoftGameLoader – http://www.miniclip.com/hamsterball/raptisoftgameloader.cab
O16 – DPF: {288C5F13–7E52–4ADA–A32E–F5BF9D125F98} (CR64Loader Object) – http://www.miniclip.com/platypus/miniclipGameLoader.dll
O16 – DPF: {2917297F–F02B–4B9D–81DF–494B6333150B} (Minesweeper Flags Class) – http://messenger.zone.msn.com/binary/MineSweeper.cab30149.cab
O16 – DPF: {2BC66F54–93A8–11D3–BEB6–00105AA9B6AE} (Symantec AntiVirus scanner) – http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 – DPF: {6414512B–B978–451D–A0D8–FCFDF33E833C} (WUWebControl Class) – http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1093870593390
O16 – DPF: {644E432F–49D3–41A1–8DD5–E099162EEEC5} (Symantec RuFSI Utility Class) – http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 – DPF: {74D05D43–3236–11D4–BDCD–00C04F9A3B61} (HouseCall Control) – http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
O16 – DPF: {80DD2229–B8E4–4C77–B72F–F22972D723EA} (AvxScanOnline Control) – http://www.bitdefender.com/scan/Msie/bitdefender.cab
O16 – DPF: {8E0D4DE5–3180–4024–A327–4DFAD1796A8D} (MessengerStatsClient Class) – http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 – DPF: {9A9307A0–7DA4–4DAF–B042–5009F29E09E1} (ActiveScan Installer Class) – http://www.pandasoftware.com/activescan/as5/asinst.cab
O16 – DPF: {AE9FE2BF–C5CE–4311–90C5–25B2CAB01B32} (FileSharingCtrl Class) – http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/FileSharing/pl/filesharingctrl.cab
O16 – DPF: {E7544C6C–CFD6–43EA–B4E9–360CEE20BDF7} (MainControl Class) – http://skaner.mks.com.pl/SkanerOnline.cab
O16 – DPF: {EF791A6B–FC12–4C68–99EF–FB9E207A39E6} (McFreeScan Class) – http://download.mcafee.com/molbin/iss–loc/vso/en–us/tools/mcfscan/2,0,0,4403/mcfscan.cab
O23 – Service: Symantec Event Manager – Symantec Corporation – C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe
O23 – Service: Symantec Network Proxy – Symantec Corporation – C:Program FilesCommon FilesSymantec SharedccProxy.exe
O23 – Service: Symantec Password Validation – Symantec Corporation – C:Program FilesCommon FilesSymantec SharedccPwdSvc.exe
O23 – Service: Symantec Settings Manager – Symantec Corporation – C:Program FilesCommon FilesSymantec SharedccSetMgr.exe
O23 – Service: Creative Service for CDROM Access – Creative Technology Ltd – C:WINDOWSsystem32CTsvcCDA.exe
O23 – Service: F–Secure Management Agent – F–Secure Corporation – (no file)
O23 – Service: F–Secure Windows Security Center Legacy Detection Service – F–Secure Corporation – (no file)
O23 – Service: Usługa Auto Protect programu Norton AntiVirus – Symantec Corporation – C:Program FilesNorton SystemWorksNorton Antivirus avapsvc.exe
O23 – Service: Norton Unerase Protection – Symantec Corporation – C:PROGRA~1NORTON~1Norton UtilitiesNPROTECT.EXE
O23 – Service: NVIDIA Display Driver Service – NVIDIA Corporation – C:WINDOWSsystem32 vsvc32.exe
O23 – Service: Remote Packet Capture Protocol v.0 (experimental) – Unknown – %ProgramFiles%WinPcap pcapd.exe (file missing)
O23 – Service: SAVScan – Symantec Corporation – C:Program FilesNorton SystemWorksNorton AntivirusSAVScan.exe
O23 – Service: ScriptBlocking Service – Symantec Corporation – C:PROGRA~1COMMON~1SYMANT~1Script BlockingSBServ.exe
O23 – Service: Symantec Network Drivers Service – Symantec Corporation – C:Program FilesCommon FilesSymantec SharedSNDSrvc.exe
O23 – Service: Speed Disk service – Symantec Corporation – C:PROGRA~1NORTON~1Norton UtilitiesSpeed DiskNOPDB.EXE
O23 – Service: SymWMI Service – Symantec Corporation – C:Program FilesCommon FilesSymantec SharedSecurity CenterSymWSC.exe
^^EL_WooD^^
Dodano
19.12.2004 02:34:17
Sprobuj jeszcze:
mój komputer – zaawansowane – uruchamianie i odzyskiewanie
– odznaczyć "w wypadku awarii automatycznie uruchom ponownie"

Uruchom dla pewnosci program usuwajacy blastera.

http://www.centrumxp.pl/forum/viewtopic.php?t=9601

Aktualizuj antywirusa.
przelec skanerem:
http://skaner.mks.com.pl

Daj loga z Hijack This.

I co najwazniejsze nie powielaj tematow!
Ivaho
Dodano
19.12.2004 01:56:34
W losowym momencie, nie zawsze przy przeglądaniu neta... Łaty są ale nie jestem pewny czy działają poprawnie bo ostatnio Naprawiałem obecną instalację XP... automatyczne ściąganie poprawek instalowało je jeszcze raz... Mam Norton Personal Fire wall i niedziałającego sp2... :P
^^EL_WooD^^
Dodano
19.12.2004 01:45:24
Wszystkie laty aktualizowane?
SP1 czy SP2?
Ivaho
Dodano
19.12.2004 01:42:46
^^EL_WooD^^
Dodano:
19.12.2004 01:37:47
Komentarzy:
6
Strona 1 / 1