Dodaj do ulubionych

JAK USUNĄĆ W32.WALLZ?? POMOCY LUDZIE...PLS

IP: *.neoplus.adsl.tpnet.pl 28.04.05, 19:39
Ma mcholernego wirusa na kompie a dokładnie w32.wallz
Jest w C:\WINDOWS\System32\hwclock.exe
Ciągle wyświetla mi się alert antywirusowy...co mam z tym gównem zrobić...????
Prosze o pomoc....
loga jak potrzebny moge wkleić...
Obserwuj wątek
    • Gość: Kolobos Re: JAK USUNĄĆ W32.WALLZ?? POMOCY LUDZIE...PLS IP: *.warszawa.sdi.tpnet.pl 28.04.05, 19:44
      Masz zrobic to co wszyscy pytajacy na tym forum.Wklej wyniki skanowania z
      hijackthis:
      www.spychecker.com/program/hijackthis.html
      I dopiero mozemy cos poradzic.

      A co do:
      C:\WINDOWS\System32\hwclock.exe
      To go usun i tyle.
      • Gość: snopp dogg Re: JAK USUNĄĆ W32.WALLZ?? POMOCY LUDZIE...PLS IP: *.neoplus.adsl.tpnet.pl 28.04.05, 20:11
        Oto mój log:



        Logfile of HijackThis v1.99.1
        Scan saved at 20:10:34, on 2005-04-28
        Platform: Windows XP (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 (6.00.2600.0000)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\System32\Ati2evxx.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\System32\userinit32.exe
        C:\WINDOWS\Explorer.EXE
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
        C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
        C:\WINDOWS\System32\sysuptime.exe
        C:\Program Files\Common Files\Symantec Shared\ccApp.exe
        C:\WINDOWS\System32\ctfmon.exe
        C:\Program Files\Gadu-Gadu\gg.exe
        C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
        C:\Program Files\Norton AntiVirus\navapsvc.exe
        C:\Program Files\Norton AntiVirus\SAVScan.exe
        C:\Program Files\Internet Explorer\iexplore.exe
        C:\WINDOWS\System32\wpabaln.exe
        C:\Documents and Settings\Jacek\Pulpit\programy\HijackThis.exe

        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
        C:\WINDOWS\SYSTEM\blank.htm
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
        F2 - REG:system.ini: UserInit=userinit.exe,userinit32.exe
        O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program
        Files\Norton AntiVirus\NavShExt.dll
        O2 - BHO: (no name) - {ED103D9F-3070-4580-AB1E-E5C179C1AE41} - (no file)
        O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} -
        C:\Program Files\Norton AntiVirus\NavShExt.dll
        O4 - HKLM\..\Run: [internat.exe] internat.exe
        O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
        O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control
        Panel\atiptaxx.exe
        O4 - HKLM\..\Run: [Microsoft uptime Service] sysuptime.exe
        O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
        Shared\ccApp.exe"
        O4 - HKLM\..\RunServices: [Microsoft uptime Service] sysuptime.exe
        O4 - HKLM\..\RunServices: [WindowsRegKey update] winupdate.exe
        O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
        O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
        O4 - HKCU\..\Run: [Microsoft uptime Service] sysuptime.exe
        O4 - HKCU\..\Run: [WindowsRegKey update] winupdate.exe
        O4 - Startup: MutiKeyboard Driver.lnk = C:\Program Files\MultiKeyboard
        Driver\KbdDrv.exe
        O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840
        \dslmon.exe
        O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
        Office\Office\OSA9.EXE
        O17 - HKLM\System\CCS\Services\Tcpip\..\{99A66D1B-30DD-423C-84B0-A05324776F6A}:
        NameServer = 194.204.152.34 217.98.63.164
        O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32
        \Ati2evxx.exe
        O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation -
        C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
        O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation -
        C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
        O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation -
        C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
        O23 - Service: Hardware Clock Driver (hwclock) - Unknown owner -
        C:\WINDOWS\System32\hwclock.exe (file missing)
        O23 - Service: Usługa Auto Protect programu Norton AntiVirus (navapsvc) -
        Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
        O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton
        AntiVirus\SAVScan.exe
        O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation -
        C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
        O23 - Service: Smart Card Client (SCardClnt) - Unknown owner -
        C:\WINDOWS\System32\SCardClnt.exe (file missing)
        O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec
        Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe

Nie masz jeszcze konta? Zarejestruj się


Nakarm Pajacyka