Problem z antywirusem II
:x Witam.
Mam nadzieje ze uda mi sie tutaj znalesc pomoc na moj problem.
Do tej pory mialem zainstalowanego Nortona Antywirus. I taki z nim problem...
Wystzko bylo dobrze ale do epwnego czasu. Zawsze Norton uruchamial mi sie wraz ze startem kompa. Od pewnego czasu juz tego nie robi. Jak probuje go najnormalnie w swiecie wlaczyc ... to dziala jakies 10 sekund i jak gdyby nigdy nic sam z siebie sie wylancza Hmmm pomysalalem no dobra moze to od antywira. norton byl juz stary kupilem Pande. Zainstalowalem. I dokaldnie dzieje sie to samo. Mowie zrobie formata i przeinstaluje system. I tak tez zrobilem. Zainstalowalem Pande dziala dobrze i po 3 godzinach normalnego dzialania znowu to samo tzn. ze startem sie nieuruchamia mimo iz w msconfig jest zaznaczona. A jak rpbuje wlaczyc ja to dziala 10 sekund i sie wylancza Prosze pomozcie bo juz tarce sily Co to mzoe byc ?
Z internetu korzystam przez miastowa siec LAN. Jak sprawdzic czy ktos czasem nie ryje mi w kompie?
Prosze o pomoc :x sry ale skopiowalem ten text, bo to text karkana mam taki sam problem a to moj scan z HijackThis Logfile of HijackThis v1.98.0
Scan saved at 12:13:25, on 2004–07–26
Platform: Windows XP Dodatek SP. 1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSExplorer.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32cisvc.exe
C:PROGRA~1NORTON~1NORTON~2GHOSTS~2.EXE
C:Program FilesMKSBinNetMonSv.exe
C:Program FilesMKSBinmksmonsv.exe
C:Program FilesNorton SystemWorksNorton UtilitiesNPROTECT.EXE
C:PROGRA~1NORTON~1SPEEDD~1 opdb.exe
C:Program FilesInternet Exploreriexplore.exe
C:WINDOWSsystem32cidaemon.exe
C:Documents and SettingsMPulpithijackthis1980.exe
R1 – HKCUSoftwareMicrosoftInternet Explorer,SearchURL = about:blank
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = about:blank
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = about:blank
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.pl/
R1 – HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = about:blank
R0 – HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = about:blank
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page_bak = http://www.webshots.com/r/internal/start/client/RAND
R0 – HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Łącza
F2 – REG:system.ini: Shell=Explorer.exe C:WINDOWSWinIogon.exe
O2 – BHO: TwaintecObj Class – {000020DD–C72E–4113–AF77–DD56626C6C42} – C:WINDOWS waintec.dll
O2 – BHO: URLLink Class – {4A2AACF3–ADF6–11D5–98A9–00E018981B9E} – C:Program FilesNewDotNet ewdotnet6_30.dll
O2 – BHO: ohb – {4D568F0F–8AC9–40AB–88B7–415134C78777} – C:WINDOWSSystem32winb2s32.dll
O2 – BHO: NAV Helper – {BDF3E430–B101–42AD–A544–FADC6B084872} – C:Program FilesNorton SystemWorksNorton AntiVirusNavShExt.dll
O2 – BHO: IEHlprObj Class – {CD4C3CF0–4B15–11D1–ABED–709549C10000} – C:Program FilesGo!ZillaGoIEHlp.dll (file missing)
O2 – BHO: Core Library – {F281FFC7–6C63–4bf9–83F2–AB7A6157B109} – C:WINDOWSSystem32KDP14bb.dll
O3 – Toolbar: Norton AntiVirus – {42CDD1BF–3FFB–4238–8AD1–7859DF00B1D6} – C:Program FilesNorton SystemWorksNorton AntiVirusNavShExt.dll
O3 – Toolbar: Begin2Search.com Bar – {52FE5233–367C–4EFB–BDD7–0BE4D212C107} – C:WINDOWSSystem32winb2s32.dll
O3 – Toolbar: &Radio – {8E718888–423F–11D2–876E–00A0C9082467} – C:WINDOWSSystem32msdxm.ocx
O4 – HKLM..Run: [S3TRAY2] S3tray2.exe
O4 – HKLM..Run: [SpeedTouch USB Diagnostics] "C:Program FilesAlcatelSpeedTouch USBDragdiag.exe" /icon
O4 – HKLM..Run: [ccApp] "C:Program FilesCommon FilesSymantec SharedccApp.exe"
O4 – HKLM..Run: [ccRegVfy] "C:Program FilesCommon FilesSymantec SharedccRegVfy.exe"
O4 – HKLM..Run: [KAZAA] "C:Program FilesKazaa Lite K++kpp.exe" "C:Program FilesKazaa Lite K++Kazaa.kpp" /SYSTRAY
O4 – HKLM..Run: [Kazaa Download Accelerator Updater] regsvr32 /s C:WINDOWSSystem32kdpupd.dll
O4 – HKLM..Run: [msbb] C:Program FilesKaZaA Download Accelerator180solutionsmsbb.exe
O4 – HKLM..Run: [mzzbhugsc] C:WINDOWSSystem32xmkjfv.exe
O4 – HKLM..Run: [Windows Logon Application] C:WINDOWSWinIogon.exe
O4 – HKLM..Run: [New.net Startup] rundll32 C:PROGRA~1NEWDOT~1NEWDOT~1.DLL,NewDotNetStartup –s
O4 – HKLM..Run: [utqnobmn] C:WINDOWSutqnobmn.exe
O4 – HKLM..Run: [WinFavorites] C:Program FilesWinFavoritesWinFavorites.exe1
O4 – HKLM..Run: [DirectX64] C:WINDOWSSystem32DirectXset.exe
O4 – HKLM..Run: [Kazaa Download Accelerator Updater (required)] regsvr32 /s C:WINDOWSSystem32KDP14bb.dll
O4 – HKLM..Run: [MKS_MENU] C:Program FilesMKSBinmks_menu.exe
O4 – HKLM..Run: [alchem] C:WINDOWSalchem.exe
O4 – HKCU..Run: [CTFMON.EXE] C:WINDOWSSystem32ctfmon.exe
O4 – HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background
O4 – HKCU..Run: [startkey] C:WINDOWSSystem32server.exe
O4 – HKCU..Run: [ClockSync] C:Program FilesClockSyncSync.exe /q
O4 – HKCU..Run: [KaZaA Download Accelerator] C:Program FilesKaZaA Download Acceleratorkda.exe
O4 – Global Startup: DSLMON.lnk = C:Program FilesSAGEMSAGEM F@st 800–840DSLMON.exe
O4 – Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft OfficeOfficeOSA9.EXE
O8 – Extra context menu item: Download with Go!Zilla – file://C:Program FilesGo!Zilladownload–with–gozilla.html
O9 – Extra button: Related – {c95fe080–8f5d–11d2–a20b–00aa003c157a} – C:WINDOWSweb elated.htm
O9 – Extra 'Tools' menuitem: Show &Related Links – {c95fe080–8f5d–11d2–a20b–00aa003c157a} – C:WINDOWSweb elated.htm
O9 – Extra button: Search cracks at CrackSpider.NET – {10954C80–4F0F–11d3–B17C–00C0DFE39736} – http://crackspider.net/ie/btn.php (file missing) (HKCU)
O9 – Extra 'Tools' menuitem: Search cracks at CrackSpider.NET – {10954C80–4F0F–11d3–B17C–00C0DFE39736} – http://crackspider.net/ie/btn.php (file missing) (HKCU)
O10 – Hijacked Internet access by New.Net
O10 – Hijacked Internet access by New.Net
O10 – Hijacked Internet access by New.Net
O10 – Hijacked Internet access by New.Net
O10 – Hijacked Internet access by New.Net
O16 – DPF: {10954C80–4F0F–11D3–B17C–00C0DFE39736} – http://hot.thebugs.ws/fav.exe
O16 – DPF: {12398DD6–40AA–4C40–A4EC–A42CFC0DE797} (Installer Class) – http://www.xxxtoolbar.com/ist/softwares/v4.0/0006_regular.cab
O16 – DPF: {288C5F13–7E52–4ADA–A32E–F5BF9D125F98} (CR64Loader Object) – http://www.miniclip.com/bestfriends/retro64_loader.dll
O16 – DPF: {706F3805–27D7–478D–80E5–E25D2BB030B3} (VacPro.internazionale_ver3) – http://www.advnt01.com/dialer/internazionale_ver3.CAB
O16 – DPF: {9C691A33–7DDA–4C2F–BE4C–C176083F35CF} (brdg Class) – http://static.flingstone.com/cab/2000XP/ClickYesToContinue/bridge–c1.cab
O16 – DPF: {A3009861–330C–4E10–822B–39D16EC8829D} (CRAVOnline Object) – http://www.ravantivirus.com/scan/ravonline.cab
O16 – DPF: {DA9A0B1E–9B7B–11D3–B8A4–00C04F79641C} (NSUpdateLiteCtrl Class) – http://204.177.92.201/quickdl/proclaim/NSupd9x.cab
O16 – DPF: {E0B795B4–FD95–4ABD–A375–27962EFCE8CF} (StarInstall Control) – http://www.service–url.de/install/StarInstall.ocx
O16 – DPF: {E7544C6C–CFD6–43EA–B4E9–360CEE20BDF7} (MainControl Class) – http://skaner.mks.com.pl/SkanerOnline.cab
O16 – DPF: {E8EDB60C–951E–4130–93DC–FAF1AD25F8E7} (MoneyTree Dialer) – http://xbscc1.mtree.com/mt/dialers/fc/UniDist.CAB
O16 – DPF: {EF86873F–04C2–4A95–A373–5703C08EFC7B} (Installer Class) – http://www.xxxtoolbar.com/ist/softwares/v3.0/0006.cab
O16 – DPF: {EFB22865–F3BC–4309–ADFA–C8E078A7F762} (SysWebTelecomInt Class) – http://www.sponsoradulto.com/en/SysWebTelecom.cab
O16 – DPF: {FE1A240F–B247–4E06–A600–30E28F5AF3A0} (iiittt Class) – http://toolbar2.i–lookup.com/toolbar2/windec32.cab
O17 – HKLMSystemCCSServicesTcpip..{41C7F458–7B7A–4C7C–B329–820E0004C9AE}: NameServer = 194.204.152.34 217.98.63.164
O17 – HKLMSystemCS1ServicesTcpip..{41C7F458–7B7A–4C7C–B329–820E0004C9AE}: NameServer = 194.204.152.34 217.98.63.164
O17 – HKLMSystemCS2ServicesTcpip..{41C7F458–7B7A–4C7C–B329–820E0004C9AE}: NameServer = 194.204.152.34 217.98.63.164
Mam nadzieje ze uda mi sie tutaj znalesc pomoc na moj problem.
Do tej pory mialem zainstalowanego Nortona Antywirus. I taki z nim problem...
Wystzko bylo dobrze ale do epwnego czasu. Zawsze Norton uruchamial mi sie wraz ze startem kompa. Od pewnego czasu juz tego nie robi. Jak probuje go najnormalnie w swiecie wlaczyc ... to dziala jakies 10 sekund i jak gdyby nigdy nic sam z siebie sie wylancza Hmmm pomysalalem no dobra moze to od antywira. norton byl juz stary kupilem Pande. Zainstalowalem. I dokaldnie dzieje sie to samo. Mowie zrobie formata i przeinstaluje system. I tak tez zrobilem. Zainstalowalem Pande dziala dobrze i po 3 godzinach normalnego dzialania znowu to samo tzn. ze startem sie nieuruchamia mimo iz w msconfig jest zaznaczona. A jak rpbuje wlaczyc ja to dziala 10 sekund i sie wylancza Prosze pomozcie bo juz tarce sily Co to mzoe byc ?
Z internetu korzystam przez miastowa siec LAN. Jak sprawdzic czy ktos czasem nie ryje mi w kompie?
Prosze o pomoc :x sry ale skopiowalem ten text, bo to text karkana mam taki sam problem a to moj scan z HijackThis Logfile of HijackThis v1.98.0
Scan saved at 12:13:25, on 2004–07–26
Platform: Windows XP Dodatek SP. 1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSExplorer.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSsystem32cisvc.exe
C:PROGRA~1NORTON~1NORTON~2GHOSTS~2.EXE
C:Program FilesMKSBinNetMonSv.exe
C:Program FilesMKSBinmksmonsv.exe
C:Program FilesNorton SystemWorksNorton UtilitiesNPROTECT.EXE
C:PROGRA~1NORTON~1SPEEDD~1 opdb.exe
C:Program FilesInternet Exploreriexplore.exe
C:WINDOWSsystem32cidaemon.exe
C:Documents and SettingsMPulpithijackthis1980.exe
R1 – HKCUSoftwareMicrosoftInternet Explorer,SearchURL = about:blank
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = about:blank
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = about:blank
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.pl/
R1 – HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = about:blank
R0 – HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = about:blank
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page_bak = http://www.webshots.com/r/internal/start/client/RAND
R0 – HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Łącza
F2 – REG:system.ini: Shell=Explorer.exe C:WINDOWSWinIogon.exe
O2 – BHO: TwaintecObj Class – {000020DD–C72E–4113–AF77–DD56626C6C42} – C:WINDOWS waintec.dll
O2 – BHO: URLLink Class – {4A2AACF3–ADF6–11D5–98A9–00E018981B9E} – C:Program FilesNewDotNet ewdotnet6_30.dll
O2 – BHO: ohb – {4D568F0F–8AC9–40AB–88B7–415134C78777} – C:WINDOWSSystem32winb2s32.dll
O2 – BHO: NAV Helper – {BDF3E430–B101–42AD–A544–FADC6B084872} – C:Program FilesNorton SystemWorksNorton AntiVirusNavShExt.dll
O2 – BHO: IEHlprObj Class – {CD4C3CF0–4B15–11D1–ABED–709549C10000} – C:Program FilesGo!ZillaGoIEHlp.dll (file missing)
O2 – BHO: Core Library – {F281FFC7–6C63–4bf9–83F2–AB7A6157B109} – C:WINDOWSSystem32KDP14bb.dll
O3 – Toolbar: Norton AntiVirus – {42CDD1BF–3FFB–4238–8AD1–7859DF00B1D6} – C:Program FilesNorton SystemWorksNorton AntiVirusNavShExt.dll
O3 – Toolbar: Begin2Search.com Bar – {52FE5233–367C–4EFB–BDD7–0BE4D212C107} – C:WINDOWSSystem32winb2s32.dll
O3 – Toolbar: &Radio – {8E718888–423F–11D2–876E–00A0C9082467} – C:WINDOWSSystem32msdxm.ocx
O4 – HKLM..Run: [S3TRAY2] S3tray2.exe
O4 – HKLM..Run: [SpeedTouch USB Diagnostics] "C:Program FilesAlcatelSpeedTouch USBDragdiag.exe" /icon
O4 – HKLM..Run: [ccApp] "C:Program FilesCommon FilesSymantec SharedccApp.exe"
O4 – HKLM..Run: [ccRegVfy] "C:Program FilesCommon FilesSymantec SharedccRegVfy.exe"
O4 – HKLM..Run: [KAZAA] "C:Program FilesKazaa Lite K++kpp.exe" "C:Program FilesKazaa Lite K++Kazaa.kpp" /SYSTRAY
O4 – HKLM..Run: [Kazaa Download Accelerator Updater] regsvr32 /s C:WINDOWSSystem32kdpupd.dll
O4 – HKLM..Run: [msbb] C:Program FilesKaZaA Download Accelerator180solutionsmsbb.exe
O4 – HKLM..Run: [mzzbhugsc] C:WINDOWSSystem32xmkjfv.exe
O4 – HKLM..Run: [Windows Logon Application] C:WINDOWSWinIogon.exe
O4 – HKLM..Run: [New.net Startup] rundll32 C:PROGRA~1NEWDOT~1NEWDOT~1.DLL,NewDotNetStartup –s
O4 – HKLM..Run: [utqnobmn] C:WINDOWSutqnobmn.exe
O4 – HKLM..Run: [WinFavorites] C:Program FilesWinFavoritesWinFavorites.exe1
O4 – HKLM..Run: [DirectX64] C:WINDOWSSystem32DirectXset.exe
O4 – HKLM..Run: [Kazaa Download Accelerator Updater (required)] regsvr32 /s C:WINDOWSSystem32KDP14bb.dll
O4 – HKLM..Run: [MKS_MENU] C:Program FilesMKSBinmks_menu.exe
O4 – HKLM..Run: [alchem] C:WINDOWSalchem.exe
O4 – HKCU..Run: [CTFMON.EXE] C:WINDOWSSystem32ctfmon.exe
O4 – HKCU..Run: [MSMSGS] "C:Program FilesMessengermsmsgs.exe" /background
O4 – HKCU..Run: [startkey] C:WINDOWSSystem32server.exe
O4 – HKCU..Run: [ClockSync] C:Program FilesClockSyncSync.exe /q
O4 – HKCU..Run: [KaZaA Download Accelerator] C:Program FilesKaZaA Download Acceleratorkda.exe
O4 – Global Startup: DSLMON.lnk = C:Program FilesSAGEMSAGEM F@st 800–840DSLMON.exe
O4 – Global Startup: Microsoft Office.lnk = C:Program FilesMicrosoft OfficeOfficeOSA9.EXE
O8 – Extra context menu item: Download with Go!Zilla – file://C:Program FilesGo!Zilladownload–with–gozilla.html
O9 – Extra button: Related – {c95fe080–8f5d–11d2–a20b–00aa003c157a} – C:WINDOWSweb elated.htm
O9 – Extra 'Tools' menuitem: Show &Related Links – {c95fe080–8f5d–11d2–a20b–00aa003c157a} – C:WINDOWSweb elated.htm
O9 – Extra button: Search cracks at CrackSpider.NET – {10954C80–4F0F–11d3–B17C–00C0DFE39736} – http://crackspider.net/ie/btn.php (file missing) (HKCU)
O9 – Extra 'Tools' menuitem: Search cracks at CrackSpider.NET – {10954C80–4F0F–11d3–B17C–00C0DFE39736} – http://crackspider.net/ie/btn.php (file missing) (HKCU)
O10 – Hijacked Internet access by New.Net
O10 – Hijacked Internet access by New.Net
O10 – Hijacked Internet access by New.Net
O10 – Hijacked Internet access by New.Net
O10 – Hijacked Internet access by New.Net
O16 – DPF: {10954C80–4F0F–11D3–B17C–00C0DFE39736} – http://hot.thebugs.ws/fav.exe
O16 – DPF: {12398DD6–40AA–4C40–A4EC–A42CFC0DE797} (Installer Class) – http://www.xxxtoolbar.com/ist/softwares/v4.0/0006_regular.cab
O16 – DPF: {288C5F13–7E52–4ADA–A32E–F5BF9D125F98} (CR64Loader Object) – http://www.miniclip.com/bestfriends/retro64_loader.dll
O16 – DPF: {706F3805–27D7–478D–80E5–E25D2BB030B3} (VacPro.internazionale_ver3) – http://www.advnt01.com/dialer/internazionale_ver3.CAB
O16 – DPF: {9C691A33–7DDA–4C2F–BE4C–C176083F35CF} (brdg Class) – http://static.flingstone.com/cab/2000XP/ClickYesToContinue/bridge–c1.cab
O16 – DPF: {A3009861–330C–4E10–822B–39D16EC8829D} (CRAVOnline Object) – http://www.ravantivirus.com/scan/ravonline.cab
O16 – DPF: {DA9A0B1E–9B7B–11D3–B8A4–00C04F79641C} (NSUpdateLiteCtrl Class) – http://204.177.92.201/quickdl/proclaim/NSupd9x.cab
O16 – DPF: {E0B795B4–FD95–4ABD–A375–27962EFCE8CF} (StarInstall Control) – http://www.service–url.de/install/StarInstall.ocx
O16 – DPF: {E7544C6C–CFD6–43EA–B4E9–360CEE20BDF7} (MainControl Class) – http://skaner.mks.com.pl/SkanerOnline.cab
O16 – DPF: {E8EDB60C–951E–4130–93DC–FAF1AD25F8E7} (MoneyTree Dialer) – http://xbscc1.mtree.com/mt/dialers/fc/UniDist.CAB
O16 – DPF: {EF86873F–04C2–4A95–A373–5703C08EFC7B} (Installer Class) – http://www.xxxtoolbar.com/ist/softwares/v3.0/0006.cab
O16 – DPF: {EFB22865–F3BC–4309–ADFA–C8E078A7F762} (SysWebTelecomInt Class) – http://www.sponsoradulto.com/en/SysWebTelecom.cab
O16 – DPF: {FE1A240F–B247–4E06–A600–30E28F5AF3A0} (iiittt Class) – http://toolbar2.i–lookup.com/toolbar2/windec32.cab
O17 – HKLMSystemCCSServicesTcpip..{41C7F458–7B7A–4C7C–B329–820E0004C9AE}: NameServer = 194.204.152.34 217.98.63.164
O17 – HKLMSystemCS1ServicesTcpip..{41C7F458–7B7A–4C7C–B329–820E0004C9AE}: NameServer = 194.204.152.34 217.98.63.164
O17 – HKLMSystemCS2ServicesTcpip..{41C7F458–7B7A–4C7C–B329–820E0004C9AE}: NameServer = 194.204.152.34 217.98.63.164
Odpowiedzi: 1
Odpowiedz dostales w http://www.centrumxp.pl/forum/viewtopic.php?p=113851#113851
Nie powielaj postow.
Nie powielaj postow.
Strona 1 / 1