uciazliwy problem z netem
mam lacze stale SDI a moj problem tkwi w tym ze ciagle mi strasznie zamula lacze gdy tylko podlacze sie do internetu ... nie wiem co sie dzieje loga sprawdzane mialem :/ ale na wszelki wypadek raz jeszcze je tu zamieszcze... jesli ktos bedzie wstanie pomoc bede wdzieczny
Logfile of HijackThis v1.97.7
Scan saved at 09:34:34, on 2004–09–22
Platform: Windows XP Dodatek SP. 1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:CWINDOWSSystem32smss.exe
C:CWINDOWSsystem32winlogon.exe
C:CWINDOWSsystem32services.exe
C:CWINDOWSsystem32lsass.exe
C:CWINDOWSsystem32svchost.exe
C:CWINDOWSSystem32svchost.exe
C:Program FilesSygateSPFsmc.exe
C:CWINDOWSsystem32spoolsv.exe
C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
C:Program FilesAlwil SoftwareAvast4ashServ.exe
C:CWINDOWSSystem32 vsvc32.exe
C:CWINDOWSSystem32svchost.exe
C:CWINDOWSExplorer.EXE
C:Program FilesJavaj2re1.4.2_04injusched.exe
C:PROGRA~1ALWILS~1Avast4ashDisp.exe
C:Program FilesCursorXPCursorXP.exe
C:Program FilesWinampwinamp.exe
C:Program FilesInternet Exploreriexplore.exe
D:ProgramyHijackThis.exe
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://wp.pl/
R0 – HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://wp.pl
O2 – BHO: myBar BHO – {0494D0D1–F8E0–41ad–92A3–14154ECE70AC} – (no file)
O2 – BHO: (no name) – {06849E9F–C8D7–4D59–B87D–784B7D6BE0B3} – C:Program FilesAdobeAcrobat 5.0 CEReaderActiveXAcroIEHelper.ocx
O2 – BHO: (no name) – {53707962–6F74–2D53–2644–206D7942484F} – C:Program FilesSpybot – Search & DestroySDHelper.dll
O3 – Toolbar: FlashGet Bar – {E0E899AB–F487–11D5–8D29–0050BA6940E3} – C:PROGRA~1FlashGetfgiebar.dll
O3 – Toolbar: &Radio – {8E718888–423F–11D2–876E–00A0C9082467} – C:CWINDOWSSystem32msdxm.ocx
O3 – Toolbar: (no name) – {0494D0D9–F8E0–41ad–92A3–14154ECE70AC} – (no file)
O4 – HKLM..Run: [SunJavaUpdateSched] C:Program FilesJavaj2re1.4.2_04injusched.exe
O4 – HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:CWINDOWSSystem32NvCpl.dll,NvStartup
O4 – HKLM..Run: [nwiz] nwiz.exe /install
O4 – HKLM..Run: [avast!] C:PROGRA~1ALWILS~1Avast4ashDisp.exe
O4 – HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:CWINDOWSSystem32NvMcTray.dll,NvTaskbarInit
O4 – HKLM..Run: [TrojanScanner] C:Program FilesTrojan RemoverTrjscan.exe
O4 – HKLM..Run: [DAEMON Tools–1033] "C:Program FilesD–Toolsdaemon.exe" –lang 1033
O4 – HKLM..Run: [NetPumper] "C:Program FilesNetPumperNetPumperIEProxy.exe"
O4 – HKLM..Run: [SmcService] C:PROGRA~1SygateSPFsmc.exe –startgui
O4 – HKCU..Run: [CursorXP] C:Program FilesCursorXPCursorXP.exe
O8 – Extra context menu item: Download All by FlashGet – C:Program FilesFlashGetjc_all.htm
O8 – Extra context menu item: Download using FlashGet – C:Program FilesFlashGetjc_link.htm
O9 – Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 – Extra button: Microsoft JavaScript Console (HKLM)
O9 – Extra 'Tools' menuitem: JavaScript Console (HKLM)
O9 – Extra button: FlashGet (HKLM)
O9 – Extra 'Tools' menuitem: &FlashGet (HKLM)
O9 – Extra button: Microsoft JavaScript Console (HKCU)
O9 – Extra 'Tools' menuitem: JavaScript Console (HKCU)
O16 – DPF: {0A5FD7C5–A45C–49FC–ADB5–9952547D5715} (Creative Software AutoUpdate) – http://www.creative.com/SU/ocx/12119/CTSUEng.cab
O16 – DPF: {166B1BCA–3F9C–11CF–8075–444553540000} (Shockwave ActiveX Control) – http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 – DPF: {39B0684F–D7BF–4743–B050–FDC3F48F7E3B} (FilePlanet Download Control Class) – http://www.fileplanet.com/fpdlmgr/cabs/FPDC_1_0_0_42.cab
O16 – DPF: {70BA88C8–DAE8–4CE9–92BB–979C4A75F53B} (GSDACtl Class) – http://launch.gamespyarcade.com/software/launch/alaunch.cab
O16 – DPF: {9F1C11AA–197B–4942–BA54–47A8489BB47F} (Update Class) – http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38074.5414351852
O16 – DPF: {BFA1F11D–3121–AFE1–4112–894323212DAC} (GINWORDS Class) – http://gryonline.wp.pl/files/words_2_0_0_18.cab
O16 – DPF: {D27CDB6E–AE6D–11CF–96B8–444553540000} (Shockwave Flash Object) – http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 – DPF: {E7544C6C–CFD6–43EA–B4E9–360CEE20BDF7} (MainControl Class) – http://skaner.mks.com.pl/SkanerOnline.cab
O16 – DPF: {F6ACF75C–C32C–447B–9BEF–46B766368D29} (Creative Software AutoUpdate Support Package) – http://www.creative.com/SU/ocx/12119/CTPID.cab
O17 – HKLMSystemCCSServicesTcpip..{8958D136–2D71–410C–B405–D470E67FEC93}: NameServer = 194.204.159.1 194.204.152.34
Logfile of HijackThis v1.97.7
Scan saved at 09:34:34, on 2004–09–22
Platform: Windows XP Dodatek SP. 1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:CWINDOWSSystem32smss.exe
C:CWINDOWSsystem32winlogon.exe
C:CWINDOWSsystem32services.exe
C:CWINDOWSsystem32lsass.exe
C:CWINDOWSsystem32svchost.exe
C:CWINDOWSSystem32svchost.exe
C:Program FilesSygateSPFsmc.exe
C:CWINDOWSsystem32spoolsv.exe
C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
C:Program FilesAlwil SoftwareAvast4ashServ.exe
C:CWINDOWSSystem32 vsvc32.exe
C:CWINDOWSSystem32svchost.exe
C:CWINDOWSExplorer.EXE
C:Program FilesJavaj2re1.4.2_04injusched.exe
C:PROGRA~1ALWILS~1Avast4ashDisp.exe
C:Program FilesCursorXPCursorXP.exe
C:Program FilesWinampwinamp.exe
C:Program FilesInternet Exploreriexplore.exe
D:ProgramyHijackThis.exe
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://wp.pl/
R0 – HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://wp.pl
O2 – BHO: myBar BHO – {0494D0D1–F8E0–41ad–92A3–14154ECE70AC} – (no file)
O2 – BHO: (no name) – {06849E9F–C8D7–4D59–B87D–784B7D6BE0B3} – C:Program FilesAdobeAcrobat 5.0 CEReaderActiveXAcroIEHelper.ocx
O2 – BHO: (no name) – {53707962–6F74–2D53–2644–206D7942484F} – C:Program FilesSpybot – Search & DestroySDHelper.dll
O3 – Toolbar: FlashGet Bar – {E0E899AB–F487–11D5–8D29–0050BA6940E3} – C:PROGRA~1FlashGetfgiebar.dll
O3 – Toolbar: &Radio – {8E718888–423F–11D2–876E–00A0C9082467} – C:CWINDOWSSystem32msdxm.ocx
O3 – Toolbar: (no name) – {0494D0D9–F8E0–41ad–92A3–14154ECE70AC} – (no file)
O4 – HKLM..Run: [SunJavaUpdateSched] C:Program FilesJavaj2re1.4.2_04injusched.exe
O4 – HKLM..Run: [NvCplDaemon] RUNDLL32.EXE C:CWINDOWSSystem32NvCpl.dll,NvStartup
O4 – HKLM..Run: [nwiz] nwiz.exe /install
O4 – HKLM..Run: [avast!] C:PROGRA~1ALWILS~1Avast4ashDisp.exe
O4 – HKLM..Run: [NvMediaCenter] RUNDLL32.EXE C:CWINDOWSSystem32NvMcTray.dll,NvTaskbarInit
O4 – HKLM..Run: [TrojanScanner] C:Program FilesTrojan RemoverTrjscan.exe
O4 – HKLM..Run: [DAEMON Tools–1033] "C:Program FilesD–Toolsdaemon.exe" –lang 1033
O4 – HKLM..Run: [NetPumper] "C:Program FilesNetPumperNetPumperIEProxy.exe"
O4 – HKLM..Run: [SmcService] C:PROGRA~1SygateSPFsmc.exe –startgui
O4 – HKCU..Run: [CursorXP] C:Program FilesCursorXPCursorXP.exe
O8 – Extra context menu item: Download All by FlashGet – C:Program FilesFlashGetjc_all.htm
O8 – Extra context menu item: Download using FlashGet – C:Program FilesFlashGetjc_link.htm
O9 – Extra 'Tools' menuitem: Sun Java Console (HKLM)
O9 – Extra button: Microsoft JavaScript Console (HKLM)
O9 – Extra 'Tools' menuitem: JavaScript Console (HKLM)
O9 – Extra button: FlashGet (HKLM)
O9 – Extra 'Tools' menuitem: &FlashGet (HKLM)
O9 – Extra button: Microsoft JavaScript Console (HKCU)
O9 – Extra 'Tools' menuitem: JavaScript Console (HKCU)
O16 – DPF: {0A5FD7C5–A45C–49FC–ADB5–9952547D5715} (Creative Software AutoUpdate) – http://www.creative.com/SU/ocx/12119/CTSUEng.cab
O16 – DPF: {166B1BCA–3F9C–11CF–8075–444553540000} (Shockwave ActiveX Control) – http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 – DPF: {39B0684F–D7BF–4743–B050–FDC3F48F7E3B} (FilePlanet Download Control Class) – http://www.fileplanet.com/fpdlmgr/cabs/FPDC_1_0_0_42.cab
O16 – DPF: {70BA88C8–DAE8–4CE9–92BB–979C4A75F53B} (GSDACtl Class) – http://launch.gamespyarcade.com/software/launch/alaunch.cab
O16 – DPF: {9F1C11AA–197B–4942–BA54–47A8489BB47F} (Update Class) – http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38074.5414351852
O16 – DPF: {BFA1F11D–3121–AFE1–4112–894323212DAC} (GINWORDS Class) – http://gryonline.wp.pl/files/words_2_0_0_18.cab
O16 – DPF: {D27CDB6E–AE6D–11CF–96B8–444553540000} (Shockwave Flash Object) – http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 – DPF: {E7544C6C–CFD6–43EA–B4E9–360CEE20BDF7} (MainControl Class) – http://skaner.mks.com.pl/SkanerOnline.cab
O16 – DPF: {F6ACF75C–C32C–447B–9BEF–46B766368D29} (Creative Software AutoUpdate Support Package) – http://www.creative.com/SU/ocx/12119/CTPID.cab
O17 – HKLMSystemCCSServicesTcpip..{8958D136–2D71–410C–B405–D470E67FEC93}: NameServer = 194.204.159.1 194.204.152.34
Odpowiedzi: 1
Usuń tylko klucze z no file, pozatym nic podejrzanego nie masz.
Strona 1 / 1