[Log]Fachowcy, rzućcie okiem na to ..

Podczas startu MKS pokazuje źe mam jakiś syf w Temprary Internet Files. Moźe coś z logu wynika, oto on:
Logfile of HijackThis v1.97.7
Scan saved at 16:28:25, on 2004–11–30
Platform: Windows XP Dodatek SP. 1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesSygateSPFsmc.exe
C:WINDOWSsystem32spoolsv.exe
C:Program FilesMKSBinNetMonSv.exe
C:Program FilesMKSBinmksmonsv.exe
C:WINDOWSSystem32 vsvc32.exe
C:Program FilesMKSBinmks_scan.exe
C:Program FilesMKSBinmks_menu.exe
C:Program FilesCreativeAudioPROGRAMCTMIX32.EXE
C:WINDOWSsystem32xpsp2fw.exe
C:Program FilesKonnektkonnekt.exe
C:WINDOWSsystem32wuclient.exe
C:WINDOWSexplorer.exe
C:Program FilesAvant Browseravant.exe
C:Program FilesMKSBinmks_virw.exe
C:Documents and SettingsJacekPulpitHijackThis.exe

R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.pl/
R1 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = 127.0.0.1
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 – HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 – HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Łącza
O2 – BHO: (no name) – {0000CC75–ACF3–4cac–A0A9–DD3868E06852} – C:Program FilesDAPDAPBHO.dll
O3 – Toolbar: &Radio – {8E718888–423F–11D2–876E–00A0C9082467} – C:WINDOWSSystem32msdxm.ocx
O3 – Toolbar: DAP Bar – {62999427–33FC–4baf–9C9C–BCE6BD127F08} – C:Program FilesDAPDAPIEBar.dll
O4 – HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSSystem32NvCpl.dll,NvStartup
O4 – HKLM..Run: [nwiz] nwiz.exe /install
O4 – HKLM..Run: [MKS_MENU] C:Program FilesMKSBinmks_menu.exe
O4 – HKLM..Run: [NeroFilterCheck] C:WINDOWSsystem32NeroCheck.exe
O4 – HKLM..Run: [CreativeMixer] C:Program FilesCreativeAudioPROGRAMCTMIX32.EXE /t
O4 – HKLM..Run: [XPSP2 Firewall] C:WINDOWSsystem32xpsp2fw.exe
O4 – HKLM..Run: [SmcService] C:PROGRA~1SygateSPFsmc.exe –startgui
O4 – HKLM..Run: [FX] C:WINDOWSDownloaded Program Filesieloader.exe
O4 – HKCU..Run: [Konnekt] "C:Program FilesKonnektkonnekt.exe" /autostart
O4 – HKCU..Run: [Windows Update Client ] C:WINDOWSsystem32wuclient.exe
O8 – Extra context menu item: &Download with &DAP – C:PROGRA~1DAPdapextie.htm
O8 – Extra context menu item: Blokuj wszystkie obrazy z tego serwera – C:Program FilesAvant BrowserAddAllToADBlackList.htm
O8 – Extra context menu item: Dodaj do listy blokowanych reklam – C:Program FilesAvant BrowserAddToADBlackList.htm
O8 – Extra context menu item: Download &all with DAP – C:PROGRA~1DAPdapextie2.htm
O8 – Extra context menu item: Download the ¤t page with Offline Explorer – file://D:InstalkiOffline ExplorerAdd_AllO.htm
O8 – Extra context menu item: Download using Offline &Explorer – file://D:InstalkiOffline ExplorerAdd_UrlO.htm
O8 – Extra context menu item: Otwórz wszystkie adresy z tej strony... – C:Program FilesAvant BrowserOpenAllLinks.htm
O8 – Extra context menu item: Podświetl – C:Program FilesAvant BrowserHighlight.htm
O8 – Extra context menu item: Szukaj – C:Program FilesAvant BrowserSearch.htm
O9 – Extra button: Run DAP (HKLM)
O9 – Extra button: Related (HKLM)
O9 – Extra 'Tools' menuitem: Show &Related Links (HKLM)
O16 – DPF: {10003000–1000–0000–1000–000000000000} – ms–its:mhtml:file://c: osuch.mht!http://xyz.aflashcounter.com/a/masta.chm::/exe
O16 – DPF: {6414512B–B978–451D–A0D8–FCFDF33E833C} (WUWebControl Class) – http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1101491860918
O16 – DPF: {D27CDB6E–AE6D–11CF–96B8–444553540000} (Shockwave Flash Object) – http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

Pozdrawiam.

Odpowiedzi: 2

EL NINO:
gusioo:
Podczas startu MKS pokazuje źe mam jakiś syf w Temprary Internet Files.


C:WINDOWSsystem32xpsp2fw.exe
C:WINDOWSsystem32wuclient.exe

R1 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = 127.0.0.1

O4 – HKLM..Run: [XPSP2 Firewall] C:WINDOWSsystem32xpsp2fw.exe

O4 – HKLM..Run: [FX] C:WINDOWSDownloaded Program Filesieloader.exe
O4 – HKCU..Run: [Windows Update Client ] C:WINDOWSsystem32wuclient.exe
O16 – DPF: {10003000–1000–0000–1000–000000000000} – ms–its:mhtml:file://c: osuch.mht!http://xyz.aflashcounter.com/a/masta.chm::/exe
No to dlaczego nie usuniesz wszystkiego z Tempow ?
Skad masz tego firewalla xpsp2fw.exe, tego klienta windows update wuclient.exe ? :P
Jak zainstalowac firewalla z SP2 na windzie z SP1 ?

THX EL NINO :)
Anonymous
Dodano
01.12.2004 13:27:35
gusioo:
Podczas startu MKS pokazuje źe mam jakiś syf w Temprary Internet Files.


C:WINDOWSsystem32xpsp2fw.exe
C:WINDOWSsystem32wuclient.exe

R1 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyOverride = 127.0.0.1

O4 – HKLM..Run: [XPSP2 Firewall] C:WINDOWSsystem32xpsp2fw.exe

O4 – HKLM..Run: [FX] C:WINDOWSDownloaded Program Filesieloader.exe
O4 – HKCU..Run: [Windows Update Client ] C:WINDOWSsystem32wuclient.exe
O16 – DPF: {10003000–1000–0000–1000–000000000000} – ms–its:mhtml:file://c: osuch.mht!http://xyz.aflashcounter.com/a/masta.chm::/exe
No to dlaczego nie usuniesz wszystkiego z Tempow ?
Skad masz tego firewalla xpsp2fw.exe, tego klienta windows update wuclient.exe ? :P
Jak zainstalowac firewalla z SP2 na windzie z SP1 ?
EL NINO
Dodano
30.11.2004 19:34:33
Anonymous
Dodano:
30.11.2004 17:33:22
Komentarzy:
2
Strona 1 / 1