Nic nie pomogło.... ;( ;(
:( :( :( :( :( Cały czas włączają mi się jakoś te głupie dialery prubowałem juź ad–warem ale nie usuwa go ;( ;( ;( prosze specjalistow źeby się zainteresowali tym tematem ;( ;( ;( pozdrawiam
a o to ten dialer :
a o to ten dialer :
Odpowiedzi: 6
Przyjrzyj sie temu tematowi –> http://webwarper.net/ww/www.centrumxp.pl/forum/viewtopic.php?p=154512&*#154512
Masz to samo, z tym ze u Ciebie plik nazywa sie "kalvuwt32.exe" a tam "kalvwgo32.exe". Roznica wystepuje dlatego, ze srodek nazwy jest generowany losowo a identyczny jest poczatek i koniec.
Zrobisz to samo co dolek i problem masz z glowy.
Masz to samo, z tym ze u Ciebie plik nazywa sie "kalvuwt32.exe" a tam "kalvwgo32.exe". Roznica wystepuje dlatego, ze srodek nazwy jest generowany losowo a identyczny jest poczatek i koniec.
Zrobisz to samo co dolek i problem masz z glowy.
Nic nie pomogło dalej wychodzi ten dialer :( :( :( :( :( :( :( jest coś co moźe mnie uratować ?? czy format ?? :cry: :cry: :cry: :cry: [/list]
Zaznaczasz i usuwasz. Pozniej pliki z dysku:
C:WINDOWSSystem32 asmgr.exe
C:WINDOWSsystem32svphost.exe
C:WINDOWSSystem32swwhost.exe
O2 – BHO: (no name) – {ED103D9F–3070–4580–AB1E–E5C179C1AE41} – (no file)
O4 – HKLM..Run: [Tasmgr Starup] tasmgr.exe
O4 – HKLM..Run: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..Run: [MSN] exe.exe
O4 – HKLM..Run: [kalvsys] C:windowssystem32kalvuwt32.exe
O4 – HKLM..RunServices: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..RunServices: [MSN] exe.exe
O4 – HKLM..RunServices: [Tasmgr Starup] tasmgr.exe
O4 – HKLM..RunOnce: [Microsoft Windows Update] swwhost.exe
O4 – HKCU..Run: [Microsoft Windows Update] swwhost.exe
O4 – HKCU..Run: [MSN] exe.exe
O4 – HKCU..RunServices: [MSN] exe.exe
O4 – HKCU..RunOnce: [Microsoft Windows Update] swwhost.exe
C:WINDOWSSystem32 asmgr.exe
C:WINDOWSsystem32svphost.exe
C:WINDOWSSystem32swwhost.exe
O2 – BHO: (no name) – {ED103D9F–3070–4580–AB1E–E5C179C1AE41} – (no file)
O4 – HKLM..Run: [Tasmgr Starup] tasmgr.exe
O4 – HKLM..Run: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..Run: [MSN] exe.exe
O4 – HKLM..Run: [kalvsys] C:windowssystem32kalvuwt32.exe
O4 – HKLM..RunServices: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..RunServices: [MSN] exe.exe
O4 – HKLM..RunServices: [Tasmgr Starup] tasmgr.exe
O4 – HKLM..RunOnce: [Microsoft Windows Update] swwhost.exe
O4 – HKCU..Run: [Microsoft Windows Update] swwhost.exe
O4 – HKCU..Run: [MSN] exe.exe
O4 – HKCU..RunServices: [MSN] exe.exe
O4 – HKCU..RunOnce: [Microsoft Windows Update] swwhost.exe
Juź naprawde niewiem co mam robić....... co 1 minute to wyskakuje ;(... no i bardzo kompa zwalnia;(
Logfile of HijackThis v1.99.0
Scan saved at 19:50:46, on 2004–12–29
Platform: Windows XP Dodatek SP. 1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSSystem32alg.exe
C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
C:WINDOWSSystem32NMSSvc.exe
C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
C:WINDOWSSystem32 asmgr.exe
C:WINDOWSsystem32svphost.exe
C:WINDOWSexplorer.exe
C:WINDOWSSystem32swwhost.exe
C:Program FilesMSNMSNCoreFilesmsn6.exe
C:Program FilesMessengermsmsgs.exe
C:WINDOWSSystem32svchost.exe
E:KomunikatoryGadu–Gadugg.exe
C:Documents and SettingsMarcinPulpitHijackThis.com.exe
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 – HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Łącza
O2 – BHO: (no name) – {ED103D9F–3070–4580–AB1E–E5C179C1AE41} – (no file)
O4 – HKLM..Run: [SpyStopper] C:Program FilesSpyStopperspystopper.exe
O4 – HKLM..Run: [Tasmgr Starup] tasmgr.exe
O4 – HKLM..Run: [MSConfig] C:WINDOWSPCHealthHelpCtrBinariesMSConfig.exe /auto
O4 – HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSSystem32NvCpl.dll,NvStartup
O4 – HKLM..Run: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..Run: [MSN] exe.exe
O4 – HKLM..Run: [kalvsys] C:windowssystem32kalvuwt32.exe
O4 – HKLM..RunServices: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..RunServices: [MSN] exe.exe
O4 – HKLM..RunServices: [Tasmgr Starup] tasmgr.exe
O4 – HKLM..RunOnce: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..RunOnce: [AAW] "C:Program FilesLavasoftAd–Aware SE PersonalAd–Aware.exe" "+b1"
O4 – HKCU..Run: [Gadu–Gadu] "E:KomunikatoryGadu–Gadugg.exe" /tray
O4 – HKCU..Run: [Komunikator] E:KomunikatoryTlen len.exe
O4 – HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background
O4 – HKCU..Run: [Microsoft Windows Update] swwhost.exe
O4 – HKCU..Run: [MSN] exe.exe
O4 – HKCU..RunServices: [MSN] exe.exe
O4 – HKCU..RunOnce: [Microsoft Windows Update] swwhost.exe
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:WINDOWSsystem32msjava.dll
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:WINDOWSsystem32msjava.dll
O9 – Extra button: Badanie – {92780B25–18CC–41C8–B9BE–3C9C571A8263} – E:DOWWW~1MICROS~1OFFICE11REFIEBAR.DLL
O9 – Extra button: Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:Program FilesMessengerMSMSGS.EXE
O9 – Extra 'Tools' menuitem: Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:Program FilesMessengerMSMSGS.EXE
O16 – DPF: {2BC66F54–93A8–11D3–BEB6–00105AA9B6AE} (Symantec AntiVirus scanner) – http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 – DPF: {644E432F–49D3–41A1–8DD5–E099162EEEC5} (Symantec RuFSI Utility Class) – http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 – DPF: {9A9307A0–7DA4–4DAF–B042–5009F29E09E1} (ActiveScan Installer Class) – http://www.pandasoftware.com/activescan/as5/asinst.cab
O16 – DPF: {E7544C6C–CFD6–43EA–B4E9–360CEE20BDF7} (MainControl Class) – http://skaner.mks.com.pl/SkanerOnline.cab
O23 – Service: AntiVir Service – H+BEDV Datentechnik GmbH – C:Program FilesAVPersonalAVGUARD.EXE
O23 – Service: AntiVir Update – H+BEDV Datentechnik GmbH, Germany – C:Program FilesAVPersonalAVWUPSRV.EXE
O23 – Service: Intel(R) NMS – Intel Corporation – C:WINDOWSSystem32NMSSvc.exe
O23 – Service: NVIDIA Display Driver Service – NVIDIA Corporation – C:WINDOWSSystem32 vsvc32.exe
O23 – Service: SoundMAX Agent Service – Analog Devices, Inc. – C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
o to log, a o co chodzi z tym firevallem ??
Scan saved at 19:50:46, on 2004–12–29
Platform: Windows XP Dodatek SP. 1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSSystem32alg.exe
C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
C:WINDOWSSystem32NMSSvc.exe
C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
C:WINDOWSSystem32 asmgr.exe
C:WINDOWSsystem32svphost.exe
C:WINDOWSexplorer.exe
C:WINDOWSSystem32swwhost.exe
C:Program FilesMSNMSNCoreFilesmsn6.exe
C:Program FilesMessengermsmsgs.exe
C:WINDOWSSystem32svchost.exe
E:KomunikatoryGadu–Gadugg.exe
C:Documents and SettingsMarcinPulpitHijackThis.com.exe
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R0 – HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Łącza
O2 – BHO: (no name) – {ED103D9F–3070–4580–AB1E–E5C179C1AE41} – (no file)
O4 – HKLM..Run: [SpyStopper] C:Program FilesSpyStopperspystopper.exe
O4 – HKLM..Run: [Tasmgr Starup] tasmgr.exe
O4 – HKLM..Run: [MSConfig] C:WINDOWSPCHealthHelpCtrBinariesMSConfig.exe /auto
O4 – HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:WINDOWSSystem32NvCpl.dll,NvStartup
O4 – HKLM..Run: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..Run: [MSN] exe.exe
O4 – HKLM..Run: [kalvsys] C:windowssystem32kalvuwt32.exe
O4 – HKLM..RunServices: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..RunServices: [MSN] exe.exe
O4 – HKLM..RunServices: [Tasmgr Starup] tasmgr.exe
O4 – HKLM..RunOnce: [Microsoft Windows Update] swwhost.exe
O4 – HKLM..RunOnce: [AAW] "C:Program FilesLavasoftAd–Aware SE PersonalAd–Aware.exe" "+b1"
O4 – HKCU..Run: [Gadu–Gadu] "E:KomunikatoryGadu–Gadugg.exe" /tray
O4 – HKCU..Run: [Komunikator] E:KomunikatoryTlen len.exe
O4 – HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background
O4 – HKCU..Run: [Microsoft Windows Update] swwhost.exe
O4 – HKCU..Run: [MSN] exe.exe
O4 – HKCU..RunServices: [MSN] exe.exe
O4 – HKCU..RunOnce: [Microsoft Windows Update] swwhost.exe
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:WINDOWSsystem32msjava.dll
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – C:WINDOWSsystem32msjava.dll
O9 – Extra button: Badanie – {92780B25–18CC–41C8–B9BE–3C9C571A8263} – E:DOWWW~1MICROS~1OFFICE11REFIEBAR.DLL
O9 – Extra button: Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:Program FilesMessengerMSMSGS.EXE
O9 – Extra 'Tools' menuitem: Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:Program FilesMessengerMSMSGS.EXE
O16 – DPF: {2BC66F54–93A8–11D3–BEB6–00105AA9B6AE} (Symantec AntiVirus scanner) – http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 – DPF: {644E432F–49D3–41A1–8DD5–E099162EEEC5} (Symantec RuFSI Utility Class) – http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 – DPF: {9A9307A0–7DA4–4DAF–B042–5009F29E09E1} (ActiveScan Installer Class) – http://www.pandasoftware.com/activescan/as5/asinst.cab
O16 – DPF: {E7544C6C–CFD6–43EA–B4E9–360CEE20BDF7} (MainControl Class) – http://skaner.mks.com.pl/SkanerOnline.cab
O23 – Service: AntiVir Service – H+BEDV Datentechnik GmbH – C:Program FilesAVPersonalAVGUARD.EXE
O23 – Service: AntiVir Update – H+BEDV Datentechnik GmbH, Germany – C:Program FilesAVPersonalAVWUPSRV.EXE
O23 – Service: Intel(R) NMS – Intel Corporation – C:WINDOWSSystem32NMSSvc.exe
O23 – Service: NVIDIA Display Driver Service – NVIDIA Corporation – C:WINDOWSSystem32 vsvc32.exe
O23 – Service: SoundMAX Agent Service – Analog Devices, Inc. – C:Program FilesAnalog DevicesSoundMAXSMAgent.exe
o to log, a o co chodzi z tym firevallem ??
Skan HiJack plus instalacja firewalla.
Strona 1 / 1