Log z HJ

Moźecie zerknąć na loga...

Logfile of HijackThis v1.99.1
Scan saved at 10:59:55, on 2005–11–27
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Pro\D–Tools\daemon.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Radeon Omega Drivers\v2.6.71\ATI Tray Tools\atitray.exe
C:\Pro\RivChat2\RivChat.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Pro\UltraVNC\winvnc.exe
C:\Pro\Ftp\G6FTPSRV.EXE
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\Program Files\Agnitum\Outpost Firewall\outpost.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Pro\Gadu–Gadu\gg.exe
C:\Pro\Opera\Opera.exe
C:\Pro\TC\Totalcmd.exe
C:\Pro\HiJack\HijackThis.exe

O2 – BHO: AcroIEHlprObj Class – {06849E9F–C8D7–4D59–B87D–784B7D6BE0B3} – C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 – BHO: FlashFXP Helper for Internet Explorer – {E5A1691B–D188–4419–AD02–90002030B8EE} – C:\Pro\fxp\IEFlash.dll
O4 – HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 – HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 – HKLM\..\Run: [DAEMON Tools–1033] "C:\Pro\D–Tools\daemon.exe" –lang 1033
O4 – HKLM\..\Run: [Outpost Firewall] C:\Program Files\Agnitum\Outpost Firewall\outpost.exe /waitservice
O4 – HKLM\..\Run: [OutpostFeedBack] C:\Program Files\Agnitum\Outpost Firewall\feedback.exe /dump:os_startup
O4 – HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 – HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 – HKCU\..\Run: [AtiTrayTools] C:\Program Files\Radeon Omega Drivers\v2.6.71\ATI Tray Tools\atitray.exe
O4 – HKCU\..\Run: [RivChat] C:\Pro\RivChat2\RivChat.exe
O4 – Startup: Skrót do G6FTPSRV.lnk = C:\Pro\Ftp\G6FTPSRV.EXE
O4 – Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 – Global Startup: UltraVNC Server.lnk = C:\Pro\UltraVNC\winvnc.exe
O8 – Extra context menu item: E&ksport do programu Microsoft Excel – res://C:\PROGRA~1\MICROS~1\Office10\EXCEL.EXE/3000
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 – Extra button: Outpost Firewall Pro Quick Tune – {44627E97–789B–40d4–B5C2–58BD171129A1} – C:\Program Files\Agnitum\Outpost Firewall\Plugins\BrowserBar\ie_bar.dll
O9 – Extra button: Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:\Program Files\Messenger\msmsgs.exe
O9 – Extra 'Tools' menuitem: Windows Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:\Program Files\Messenger\msmsgs.exe
O10 – Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 – Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 – Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 – Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 – Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 – Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O16 – DPF: {92ECE6FA–AC2E–4042–BFAE–0C8608E52A43} (SignActivX Control) – https://www.bph.pl/pi/components/SignActivX.cab
O16 – DPF: {9A9307A0–7DA4–4DAF–B042–5009F29E09E1} (ActiveScan Installer Class) – http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 – DPF: {E7544C6C–CFD6–43EA–B4E9–360CEE20BDF7} (MainControl Class) – http://skaner.mks.com.pl/SkanerOnline.cab
O20 – AppInit_DLLs: C:\PROGRA~1\Agnitum\OUTPOS~1\wl_hook.dll
O23 – Service: app_filter – Unknown owner – C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 – Service: Ati HotKey Poller – ATI Technologies Inc. – C:\WINDOWS\system32\Ati2evxx.exe
O23 – Service: ATI Smart – Unknown owner – C:\WINDOWS\system32\ati2sgag.exe
O23 – Service: Forceware Web Interface (ForcewareWebInterface) – Unknown owner – C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe" –k runservice (file missing)
O23 – Service: MySql – Unknown owner – D:/usr/mysql/bin/mysqld–nt.exe (file missing)
O23 – Service: ForceWare IP service (nSvcIp) – Unknown owner – C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 – Service: ForceWare user log service (nSvcLog) – Unknown owner – C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
O23 – Service: Outpost Firewall Service (OutpostFirewall) – Agnitum Ltd. – C:\Program Files\Agnitum\Outpost Firewall\outpost.exe

Co jest wg Was nie tak jak byc powinno?

Odpowiedzi: 7

eeee Nie konkurs ;) To tylko młodszy brat bawił się u mnie na kompie (jak byłem na andrzejkach) coś poistalował i bał się, źe mu *&^*&%*& sklepie jak coś zauwaze niedobrego :))))))
Dzieki Żółty, źe mu pomogłeś, a teraz sorry ide mu *(^*(^*(& twarz, źe mi syfił w kompie:)
Egzek–JKD
Dodano
27.11.2005 13:55:24
Na moje oko wszystko w porządku.
Ale tak się zapytam – to konkurs jakiś był czy coś Ci się dzieje z systemem ??
Bo jak konkurs to ... coś wygrałem ?? :lol:
Żółty
Dodano
27.11.2005 13:49:35
A teraz? Czy coś jeszcze przydalo by sie opprawic/zmienic? (i czy napewno dobrze pousuwalem tego NVidii FW

Logfile of HijackThis v1.99.1
Scan saved at 12:43:24, on 2005–11–27
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Pro\D–Tools\daemon.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Radeon Omega Drivers\v2.6.71\ATI Tray Tools\atitray.exe
C:\Pro\RivChat2\RivChat.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Pro\UltraVNC\winvnc.exe
C:\Pro\Ftp\G6FTPSRV.EXE
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Agnitum\Outpost Firewall\outpost.exe
C:\Pro\TC\Totalcmd.exe
C:\Pro\Opera\Opera.exe
C:\Pro\HiJack\HijackThis.exe

O2 – BHO: AcroIEHlprObj Class – {06849E9F–C8D7–4D59–B87D–784B7D6BE0B3} – C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 – BHO: FlashFXP Helper for Internet Explorer – {E5A1691B–D188–4419–AD02–90002030B8EE} – C:\Pro\fxp\IEFlash.dll
O4 – HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 – HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 – HKLM\..\Run: [DAEMON Tools–1033] "C:\Pro\D–Tools\daemon.exe" –lang 1033
O4 – HKLM\..\Run: [Outpost Firewall] C:\Program Files\Agnitum\Outpost Firewall\outpost.exe /waitservice
O4 – HKLM\..\Run: [OutpostFeedBack] C:\Program Files\Agnitum\Outpost Firewall\feedback.exe /dump:os_startup
O4 – HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 – HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 – HKCU\..\Run: [AtiTrayTools] C:\Program Files\Radeon Omega Drivers\v2.6.71\ATI Tray Tools\atitray.exe
O4 – HKCU\..\Run: [RivChat] C:\Pro\RivChat2\RivChat.exe
O4 – Startup: Skrót do G6FTPSRV.lnk = C:\Pro\Ftp\G6FTPSRV.EXE
O4 – Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 – Global Startup: UltraVNC Server.lnk = C:\Pro\UltraVNC\winvnc.exe
O8 – Extra context menu item: E&ksport do programu Microsoft Excel – res://C:\PROGRA~1\MICROS~1\Office10\EXCEL.EXE/3000
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 – Extra button: Outpost Firewall Pro Quick Tune – {44627E97–789B–40d4–B5C2–58BD171129A1} – C:\Program Files\Agnitum\Outpost Firewall\Plugins\BrowserBar\ie_bar.dll
O9 – Extra button: Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:\Program Files\Messenger\msmsgs.exe
O9 – Extra 'Tools' menuitem: Windows Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:\Program Files\Messenger\msmsgs.exe
O16 – DPF: {92ECE6FA–AC2E–4042–BFAE–0C8608E52A43} (SignActivX Control) – https://www.bph.pl/pi/components/SignActivX.cab
O16 – DPF: {9A9307A0–7DA4–4DAF–B042–5009F29E09E1} (ActiveScan Installer Class) – http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 – DPF: {E7544C6C–CFD6–43EA–B4E9–360CEE20BDF7} (MainControl Class) – http://skaner.mks.com.pl/SkanerOnline.cab
O20 – AppInit_DLLs: C:\PROGRA~1\Agnitum\OUTPOS~1\wl_hook.dll
O23 – Service: Ati HotKey Poller – ATI Technologies Inc. – C:\WINDOWS\system32\Ati2evxx.exe
O23 – Service: ATI Smart – Unknown owner – C:\WINDOWS\system32\ati2sgag.exe
O23 – Service: MySql – Unknown owner – D:/usr/mysql/bin/mysqld–nt.exe (file missing)
O23 – Service: Outpost Firewall Service (OutpostFirewall) – Agnitum Ltd. – C:\Program Files\Agnitum\Outpost Firewall\outpost.exe

Dzieki za pomoc!
Behem0th
Dodano
27.11.2005 13:43:00
Behem0th:
eee który gdzie co jak? Cholera bo mega zamotany jestem...


NVidii jeden a Outpost drugi.
Żółty
Dodano
27.11.2005 12:46:53
Behem0th:
eee który gdzie co jak? Cholera bo mega zamotany jestem...


NVidii jeden a Outpost drugi.
Żółty
Dodano
27.11.2005 12:46:53
eee który gdzie co jak? Cholera bo mega zamotany jestem...
Behem0th
Dodano
27.11.2005 12:38:05
O jeden firewall za duźo ??
Żółty
Dodano
27.11.2005 12:13:57
Behem0th
Dodano:
27.11.2005 12:02:49
Komentarzy:
7
Strona 1 / 1