Dodaj do ulubionych

prosze o pomoc

IP: *.neoplus.adsl.tpnet.pl 23.02.05, 21:39
kompletnie sie na tym wszystkim nie znam, ale chodzi o to, ze nie moge
przestawic koloru na inny niz 16bit i z rozdzielczoscia jest to samo. Poza tym
nie ma glosu i pokazuja sie rozne bledy typu C:\Windows\temp\se.dll albo
rundll32. Ktos cos zaradzi?
Obserwuj wątek
    • m.gregor Re: prosze o pomoc 23.02.05, 22:07
      1.) 16bit czy 16 kolorow (bo to roznica)?
      2.) Jaki masz program antywirusowy?
      3.) Jaki masz system?
      4.) Wklej tu loga z HiJackThis:
      spywareinfo.globalservers.com/~merijn/files/HijackThis.exe
      • Gość: ulaula Re: prosze o pomoc IP: *.neoplus.adsl.tpnet.pl 23.02.05, 22:35
        oj, ale lipa! chodzilo oczywiscie o 16 kolorow. uzywam zone labs i norton
        antivirus. po wejsciu w ustawienia i zmianie rozdzielczosci pokazuje sie
        zapytanie czy chce zrestartowac. po kliknieciu i otwarciu systemu od nowa nie ma
        zadnych zmian :(
      • Gość: ulaula Re: prosze o pomoc IP: *.neoplus.adsl.tpnet.pl 23.02.05, 22:44
        Logfile of HijackThis v1.99.1
        Scan saved at 22:42:40, on 2005-02-23
        Platform: Windows ME (Win9x 4.90.3000)
        MSIE: Internet Explorer v6.00 (6.00.2600.0000)

        Running processes:
        C:\WINDOWS\SYSTEM\KERNEL32.DLL
        C:\WINDOWS\SYSTEM\MSGSRV32.EXE
        C:\WINDOWS\SYSTEM\mmtask.tsk
        C:\WINDOWS\SYSTEM\MPREXE.EXE
        C:\WINDOWS\SYSTEM\STIMON.EXE
        C:\WINDOWS\EXPLORER.EXE
        C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
        C:\WINDOWS\SYSTEM\SYSTRAY.EXE
        C:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZLCLIENT.EXE
        C:\PROGRAM FILES\NORTON ANTIVIRUS\NAVAPW32.EXE
        C:\WINDOWS\SYSTEM\WINLOGON32.EXE
        C:\WINDOWS\RunDLL.exe
        C:\WINDOWS\SYSTEM\WMIEXE.EXE
        C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE
        C:\WINDOWS\SYSTEM\DDHELP.EXE
        C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE
        C:\WINDOWS\DESKTOP\HIJACKTHIS.EXE

        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = wp.pl/
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant =
        searchbar.linksummary.com/
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
        R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
        R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
        allwebseek.com/
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
        R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
        O1 - Hosts: 69.20.16.183 #eautosearch
        O1 - Hosts: 69.20.16.183 #eautosearch
        O3 - Toolbar: (no name) - {69550BE2-9A78-11d2-BA91-00600827878D} -
        C:\WINDOWS\SYSTEM\shdocvw.dll
        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
        C:\WINDOWS\SYSTEM\MSDXM.OCX
        O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program
        files\google\googletoolbar1.dll
        O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
        O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone
        Labs\ZoneAlarm\zlclient.exe"
        O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
        O4 - HKLM\..\Run: [SysTime] C:\WINDOWS\SYSTEM\systime.exe
        O4 - HKLM\..\Run: [Norton Auto-Protect] C:\PROGRA~1\NORTON~1\NAVAPW32.EXE /LOADQUIET
        O4 - HKLM\..\Run: [startup] C:\WINDOWS\SYSTEM\winlogon32.exe
        O4 - HKLM\..\RunServices: [StillImageMonitor] C:\WINDOWS\SYSTEM\STIMON.EXE
        O4 - HKLM\..\RunServices: [MiniLog] C:\WINDOWS\SYSTEM\ZONELABS\MINILOG.EXE -service
        O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\StateMgr.exe
        O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe
        powrprof.dll,LoadCurrentPwrScheme
        O4 - HKCU\..\Run: [Gadu-Gadu] "C:\PROGRAM FILES\GADU-GADU\GG.EXE" /tray
        O4 - HKCU\..\Run: [SysTime] C:\WINDOWS\SYSTEM\systime.exe
        O4 - HKCU\..\Run: [Taskbar Display Controls] RunDLL
        deskcp16.dll,QUICKRES_RUNDLLENTRY
        O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
        O8 - Extra context menu item: Cached Snapshot of Page - res://C:\PROGRAM
        FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmcache.html
        O8 - Extra context menu item: Similar Pages - res://C:\PROGRAM
        FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmsimilar.html
        O8 - Extra context menu item: Backward Links - res://C:\PROGRAM
        FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmbacklinks.html
        O8 - Extra context menu item: &Google Search - res://C:\PROGRAM
        FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsearch.html
        O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\PROGRAM
        FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmcache.html
        O8 - Extra context menu item: Si&milar Pages - res://C:\PROGRAM
        FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmsimilar.html
        O8 - Extra context menu item: Backward &Links - res://C:\PROGRAM
        FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmbacklinks.html
        O8 - Extra context menu item: Translate into English - res://C:\PROGRAM
        FILES\GOOGLE\GOOGLETOOLBAR1.DLL/cmtrans.html
        O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -
        C:\WINDOWS\web\related.htm
        O9 - Extra 'Tools' menuitem: Show &Related Links -
        {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
        O9 - Extra button: RealGuide - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} -
        C:\WINDOWS\SYSTEM\Shdocvw.dll
        O9 - Extra button: (no name) - {44EFB53C-C965-43CF-9F45-52242D134187} - (no file)
        O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} -
        C:\PROGRA~1\SPYWAR~1\TOOLS\IESDPB.DLL (file missing)
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
        C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
        O9 - Extra 'Tools' menuitem: Sun Java Console -
        {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program
        Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
        O15 - Trusted Zone: *.windupdates.com
        O15 - Trusted Zone: *.searchmiracle.com
        O15 - Trusted Zone: *.searchbarcash.com
        O15 - Trusted Zone: *.skoobidoo.com
        O15 - Trusted Zone: *.my-internet.info
        O15 - Trusted Zone: *.xxxtoolbar.com
        O15 - Trusted Zone: *.slotch.com
        O15 - Trusted Zone: *.flingstone.com
        O15 - Trusted Zone: *.mt-download.com
        O15 - Trusted Zone: *.blazefind.com
        O15 - Trusted Zone: *.clickspring.net
        O15 - Trusted Zone: *.ysbweb.com
        O15 - Trusted Zone: *.slotchbar.com
        O15 - Trusted Zone: *.iframedollars.biz
        O15 - Trusted Zone: *.windupdates.com (HKLM)
        O15 - Trusted Zone: *.searchbarcash.com (HKLM)
        O15 - Trusted Zone: *.searchmiracle.com (HKLM)
        O15 - Trusted Zone: *.skoobidoo.com (HKLM)
        O15 - Trusted Zone: *.my-internet.info (HKLM)
        O15 - Trusted Zone: *.xxxtoolbar.com (HKLM)
        O15 - Trusted Zone: *.slotch.com (HKLM)
        O15 - Trusted Zone: *.flingstone.com (HKLM)
        O15 - Trusted Zone: *.mt-download.com (HKLM)
        O15 - Trusted Zone: *.blazefind.com (HKLM)
        O15 - Trusted Zone: *.clickspring.net (HKLM)
        O15 - Trusted Zone: *.ysbweb.com (HKLM)
        O15 - Trusted Zone: *.slotchbar.com (HKLM)
        O15 - Trusted Zone: *.iframedollars.biz (HKLM)
        O15 - Trusted IP range: 213.159.117.202
        O15 - Trusted IP range: 213.159.117.202 (HKLM)
        O16 - DPF: {37A49D66-2735-4BB9-8503-82BA5E2333D0} (MailCfg Control) -
        nowa-poczta.wp.pl/3/mailcfg.ocx
        O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -
        static.windupdates.com/cab/CDTInc/ie/bridge-c54.cab
        O16 - DPF: {79849612-A98F-45B8-95E9-4D13C7B6B35C} (Loader2 Control) -
        iframedollars.biz/tb/loader2.ocx
        O16 - DPF: {9EB320CE-BE1D-4304-A081-4B4665414BEF} (MediaTicketsInstaller
        Control) - www.mt-download.com/MediaTicketsInstaller.cab?refid=2732

        • m.gregor Re: prosze o pomoc 23.02.05, 22:59
          > R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
          > R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant =
          > searchbar.linksummary.com/
          > R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
          > R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:b
          > lank
          > R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:b
          > lank
          > R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
          > allwebseek.com/
          > R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
          > R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
          > R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no f
          > ile)
          > O1 - Hosts: 69.20.16.183 #eautosearch
          > O1 - Hosts: 69.20.16.183 #eautosearch
          > O3 - Toolbar: (no name) - {69550BE2-9A78-11d2-BA91-00600827878D} -
          > C:\WINDOWS\SYSTEM\shdocvw.dll
          > O4 - HKLM\..\Run: [SysTime] C:\WINDOWS\SYSTEM\systime.exe
          > O4 - HKLM\..\Run: [startup] C:\WINDOWS\SYSTEM\winlogon32.exe
          > O4 - HKCU\..\Run: [SysTime] C:\WINDOWS\SYSTEM\systime.exe
          > O4 - HKCU\..\Run: [Taskbar Display Controls] RunDLL
          > deskcp16.dll,QUICKRES_RUNDLLENTRY
          > O9 - Extra button: (no name) - {44EFB53C-C965-43CF-9F45-52242D134187} - (no fil
          > e)
          > O15 - Trusted Zone: *.windupdates.com
          > O15 - Trusted Zone: *.searchmiracle.com
          > O15 - Trusted Zone: *.searchbarcash.com
          > O15 - Trusted Zone: *.skoobidoo.com
          > O15 - Trusted Zone: *.my-internet.info
          > O15 - Trusted Zone: *.xxxtoolbar.com
          > O15 - Trusted Zone: *.slotch.com
          > O15 - Trusted Zone: *.flingstone.com
          > O15 - Trusted Zone: *.mt-download.com
          > O15 - Trusted Zone: *.blazefind.com
          > O15 - Trusted Zone: *.clickspring.net
          > O15 - Trusted Zone: *.ysbweb.com
          > O15 - Trusted Zone: *.slotchbar.com
          > O15 - Trusted Zone: *.iframedollars.biz
          > O15 - Trusted Zone: *.windupdates.com (HKLM)
          > O15 - Trusted Zone: *.searchbarcash.com (HKLM)
          > O15 - Trusted Zone: *.searchmiracle.com (HKLM)
          > O15 - Trusted Zone: *.skoobidoo.com (HKLM)
          > O15 - Trusted Zone: *.my-internet.info (HKLM)
          > O15 - Trusted Zone: *.xxxtoolbar.com (HKLM)
          > O15 - Trusted Zone: *.slotch.com (HKLM)
          > O15 - Trusted Zone: *.flingstone.com (HKLM)
          > O15 - Trusted Zone: *.mt-download.com (HKLM)
          > O15 - Trusted Zone: *.blazefind.com (HKLM)
          > O15 - Trusted Zone: *.clickspring.net (HKLM)
          > O15 - Trusted Zone: *.ysbweb.com (HKLM)
          > O15 - Trusted Zone: *.slotchbar.com (HKLM)
          > O15 - Trusted Zone: *.iframedollars.biz (HKLM)
          > O15 - Trusted IP range: 213.159.117.202
          > O15 - Trusted IP range: 213.159.117.202 (HKLM)
          > O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -
          > static.windupdates.com/cab/CDTInc/ie/bridge-c54.cab
          > O16 - DPF: {79849612-A98F-45B8-95E9-4D13C7B6B35C} (Loader2 Control) -
          > iframedollars.biz/tb/loader2.ocx
          > O16 - DPF: {9EB320CE-BE1D-4304-A081-4B4665414BEF} (MediaTicketsInstaller
          > Control) - www.mt-download.com/MediaTicketsInstaller.cab?refid=2732
          Zaznaczasz, klikasz FIX CHECKED, robisz nowego loga i wklejasz.

Nie masz jeszcze konta? Zarejestruj się


Nakarm Pajacyka