blkowanie !!!
mam sp2 wpakowal mi sie jakis syf, ktory reguralnie co okolo 5–6 min otwiera nowe okno z jakas strona (gry,zabawy) jak nie mam przegladarki to ja otwiera, to samo na avascie i na firefox, probowalem f–secure, adaware, spyboot, wszystkie z najnowszymi bazami i nic co zrobic pomocy!!
Odpowiedzi: 14
pomoglo i nie ma sprawy juz ! dzieki!
Niewyrazny ? Proponuje przetrzec monitor.MR. Anderson:Log, który podałeś jest kompletnie niewyraźny
Log, który podałeś jest kompletnie niewyraźny, wklej go poprostu tu na forum :wink:
EL NINO ściągnij na dysk i zobacz sam , wszystko posklejane, najpierw sprawdz zanim napiszesz :roll:
EL NINO ściągnij na dysk i zobacz sam , wszystko posklejane, najpierw sprawdz zanim napiszesz :roll:
wydaje mi sie ze juz pomoglo! wielkie dzieki!
http://www.stud.ics.p.lodz.pl/~maroch/report.txt
tutaj ten log
tutaj ten log
http://www.megasecurity.org/Needed_files.html
gdy probuje look2me mam – commponent mswinsck.ocx or one of this dependencies not corectly registered : a file was missing or valid
Slad Troj/Slogger–Imaroch:O21 – SSODL: SysTray.Exbr – {6368D1FC–6F5C–4f1b–B164–E67214F678E9} – (no file)
O20 – Winlogon Notify: Run – C:\WINDOWS\system32\lv0209doe.dll
No ja się nie dziwie, VX2
Zrób tak:
Najpierw uźyj Look2Me–Destroyer – automatyczne usuwanie VX2 we wszystkich wersjach, później ściągnij l2mfix http://www.downloads.subratam.org/l2mfix.exe , odpal, wybierz opcje nr.1, daj log, który wygeneruje.
te wszystkie cleanery rejestru tez juz byly, nadal badziewia wyskakuje zblokowane tylko jakas wtyczka do firefoxa, nie wyswietli sie ale probuje, np jak to pisze to wyskoczyly mi dwa okienka:
http://popunder.paypopup.com/adsDirect.php?ban=&id=BundleWare&cid=1569722&sid=23782&cpm=&tid=&campaign=&type=&ref=&rurl=&clater=&defurl=
http://www.uniqueoffer–s.com/normal/yyy65.html
a to log
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\F–Secure Internet Security\backweb\4476822\program\fsbwsys.exe
C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Wapster\AQQ\AQQ.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\BitLord\BitLord.exe
C:\WINDOWS\System32\svchost.exe
C:\Downloads\HijackThis.exe
R0 – HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 – HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R0 – HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 – HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R0 – HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
O4 – HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 – HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 – HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 – Startup: PowerReg Scheduler.exe
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 – Extra button: Badanie – {92780B25–18CC–41C8–B9BE–3C9C571A8263} – C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O20 – Winlogon Notify: Run – C:\WINDOWS\system32\lv0209doe.dll
O21 – SSODL: SysTray.Exbr – {6368D1FC–6F5C–4f1b–B164–E67214F678E9} – (no file)
O23 – Service: avast! iAVS4 Control Service (aswUpdSv) – Unknown owner – C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 – Service: avast! Antivirus – Unknown owner – C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 – Service: avast! Mail Scanner – Unknown owner – C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 – Service: avast! Web Scanner – Unknown owner – C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 – Service: F–Secure 2006 (BackWeb Plug–in – 4476822) – F–Secure Internet Security 2005 – C:\PROGRA~1\F–SECU~1\backweb\4476822\Program\SERVIC~1.EXE
O23 – Service: Diskeeper – Executive Software International, Inc. – C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 – Service: fsbwsys – F–Secure Corp. – C:\Program Files\F–Secure Internet Security\backweb\4476822\program\fsbwsys.exe
O23 – Service: GhostStartService – Symantec Corporation – C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
O23 – Service: NVIDIA Display Driver Service (NVSvc) – NVIDIA Corporation – C:\WINDOWS\system32\nvsvc32.exe
O23 – Service: TrueVector Internet Monitor (vsmon) – Zone Labs, LLC – C:\WINDOWS\system32\ZoneLabs\vsmon.exe
http://popunder.paypopup.com/adsDirect.php?ban=&id=BundleWare&cid=1569722&sid=23782&cpm=&tid=&campaign=&type=&ref=&rurl=&clater=&defurl=
http://www.uniqueoffer–s.com/normal/yyy65.html
a to log
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\F–Secure Internet Security\backweb\4476822\program\fsbwsys.exe
C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Wapster\AQQ\AQQ.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\BitLord\BitLord.exe
C:\WINDOWS\System32\svchost.exe
C:\Downloads\HijackThis.exe
R0 – HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 – HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R0 – HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 – HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R0 – HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
O4 – HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 – HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 – HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 – Startup: PowerReg Scheduler.exe
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 – Extra button: Badanie – {92780B25–18CC–41C8–B9BE–3C9C571A8263} – C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O20 – Winlogon Notify: Run – C:\WINDOWS\system32\lv0209doe.dll
O21 – SSODL: SysTray.Exbr – {6368D1FC–6F5C–4f1b–B164–E67214F678E9} – (no file)
O23 – Service: avast! iAVS4 Control Service (aswUpdSv) – Unknown owner – C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 – Service: avast! Antivirus – Unknown owner – C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 – Service: avast! Mail Scanner – Unknown owner – C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 – Service: avast! Web Scanner – Unknown owner – C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 – Service: F–Secure 2006 (BackWeb Plug–in – 4476822) – F–Secure Internet Security 2005 – C:\PROGRA~1\F–SECU~1\backweb\4476822\Program\SERVIC~1.EXE
O23 – Service: Diskeeper – Executive Software International, Inc. – C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 – Service: fsbwsys – F–Secure Corp. – C:\Program Files\F–Secure Internet Security\backweb\4476822\program\fsbwsys.exe
O23 – Service: GhostStartService – Symantec Corporation – C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe
O23 – Service: NVIDIA Display Driver Service (NVSvc) – NVIDIA Corporation – C:\WINDOWS\system32\nvsvc32.exe
O23 – Service: TrueVector Internet Monitor (vsmon) – Zone Labs, LLC – C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Co "rejestr" ? Co "RegCleaner" ?
maroch, pokaz jednak log z HJ. Przygladniemy sie wspolnie.
maroch, pokaz jednak log z HJ. Przygladniemy sie wspolnie.
A moźe rejestr, polecam program. RegCleaner
niestety nie pomoglo
http://forum.centrumxp.pl/viewtopic.php?t=37513
Strona 1 / 1