Dodaj do ulubionych

Bezsilność

16.06.05, 22:48
Próbowałem, jak tylko mogłem. I nic... :( Co to za twór: 180search
Assistant???) usuwałem w Dodaj/Usuń, potem ręcznie z Program Files. I co? I
nic :(((
Wiem, że mnóstwo tu osób, które potrafią pomóc. Pomóżcie, proszę...
Poniżej wkleję log.

Logfile of HijackThis v1.99.1
Scan saved at 22:46:47, on 2005-06-16
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\SYSTEM32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\spoolsv.exe
D:\PROGRA~1\NORTON~1\navapw32.exe
D:\WINDOWS\Mixer.exe
D:\WINDOWS\mHotkey.exe
D:\WINDOWS\CNYHKey.exe
D:\Program Files\Winamp\winampa.exe
D:\Program Files\Media Access\MediaAccK.exe
D:\Program Files\Media Access\MediaAccess.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Gadu-Gadu\gg.exe
D:\Program Files\Messenger\msmsgs.exe
D:\WINDOWS\system32\RUNDLL32.EXE
D:\Program Files\Norton AntiVirus\navapsvc.exe
D:\WINDOWS\system32\nvsvc32.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\180searchassistant\salm.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Documents and Settings\Administrator\Pulpit\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
www.onet.pl/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
D:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SABHO - {21B4ACC4-8874-4AEC-AEAC-F567A249B4D4} - d:\program
files\180searchassistant\salmhook.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1
\SPYBOT~1\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - D:\Program
Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} -
D:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [NAV Agent] D:\PROGRA~1\NORTON~1\navapw32.exe
O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [CHotkey] mHotkey.exe
O4 - HKLM\..\Run: [ledpointer] CNYHKey.exe
O4 - HKLM\..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [hpfsched] D:\WINDOWS\hpfsched.exe
O4 - HKLM\..\Run: [Media Access] D:\Program Files\Media Access\MediaAccK.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32
\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [salm] d:\program files\180searchassistant\salm.exe
O4 - HKLM\..\Run: [sfizcj] D:\WINDOWS\sfizcj.exe
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Gadu-Gadu] "D:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - HKCU\..\Run: [Symantec NetDriver Monitor] D:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKCU\..\Run: [MSMSGS] "D:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32
\NVMCTRAY.DLL,NvTaskbarInit
O16 - DPF: komentator - sport.onet.pl/komentator.cab
O16 - DPF: {99410CDE-6F16-42ce-9D49-3807F78F0287} (ClientInstaller Class) -
www.180searchassistant.com/180saax.cab
O16 - DPF: {E7544C6C-CFD6-43EA-B4E9-360CEE20BDF7} (MainControl Class) -
skaner.mks.com.pl/SkanerOnline.cab
O23 - Service: MkS_Vir Monitor (MksVirMonSvc) - Unknown owner - D:\Program
Files\MKS\Bin\mksmonsv.exe (file missing)
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec
Corporation - D:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation -
D:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation -
D:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec
Corporation - D:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
Obserwuj wątek
    • tomeczqu Re: Bezsilność 16.06.05, 23:13
      Chcę tylko nadmienic, że "zfixowałem"
      O2 - BHO: SABHO - {21B4ACC4-8874-4AEC-AEAC-F567A249B4D4} - d:\program
      files\180searchassistant\salmhook.dll

      O16 - DPF: {99410CDE-6F16-42ce-9D49-3807F78F0287} (ClientInstaller Class) -
      www.180searchassistant.com/180saax.cab

      i dalej nic.
      • neder Re: Bezsilność 16.06.05, 23:22
        może spróbuj uwalić to killboxem?
    • Gość: T-800 Re: Bezsilność IP: *.tpnet.pl / *.tpnet.pl 16.06.05, 23:34
      Odinstaluj Media Acces i 180searchassistant

      Do wywalenia (najlepiej w awaryjnym):

      > O2 - BHO: SABHO - {21B4ACC4-8874-4AEC-AEAC-F567A249B4D4} - d:\program
      > files\180searchassistant\salmhook.dll

      > O4 - HKLM\..\Run: [Media Access] D:\Program Files\Media Access\MediaAccK.exe

      > O4 - HKLM\..\Run: [salm] d:\program files\180searchassistant\salm.exe
      > O4 - HKLM\..\Run: [sfizcj] D:\WINDOWS\sfizcj.exe

      > O16 - DPF: {99410CDE-6F16-42ce-9D49-3807F78F0287} (ClientInstaller Class) -
      > www.180searchassistant.com/180saax.cab

      > O23 - Service: MkS_Vir Monitor (MksVirMonSvc) - Unknown owner - D:\Program
      > Files\MKS\Bin\mksmonsv.exe (file missing)

      Wklej nowego loga.
    • tomeczqu Re: Bezsilność 17.06.05, 00:16
      Dzięki, dzięki, dzięki za Waszą pomoc!!!! Jak będziecie mieli jakiś problem z
      polskim - to ja owszem, chętnie :) A póki co, wklejam log i czekam na
      komentarz, co dalej?

      Logfile of HijackThis v1.99.1
      Scan saved at 00:13:34, on 2005-06-17
      Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

      Running processes:
      D:\WINDOWS\System32\smss.exe
      D:\WINDOWS\SYSTEM32\winlogon.exe
      D:\WINDOWS\system32\services.exe
      D:\WINDOWS\system32\lsass.exe
      D:\WINDOWS\system32\svchost.exe
      D:\WINDOWS\System32\svchost.exe
      D:\WINDOWS\Explorer.EXE
      D:\WINDOWS\system32\spoolsv.exe
      D:\PROGRA~1\NORTON~1\navapw32.exe
      D:\WINDOWS\Mixer.exe
      D:\WINDOWS\mHotkey.exe
      D:\WINDOWS\CNYHKey.exe
      D:\Program Files\Winamp\winampa.exe
      D:\WINDOWS\system32\ctfmon.exe
      D:\Program Files\Gadu-Gadu\gg.exe
      D:\Program Files\Messenger\msmsgs.exe
      D:\WINDOWS\system32\RUNDLL32.EXE
      D:\Program Files\Norton AntiVirus\navapsvc.exe
      D:\WINDOWS\system32\nvsvc32.exe
      D:\WINDOWS\System32\svchost.exe
      D:\Documents and Settings\Administrator\Pulpit\hijackthis\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
      www.onet.pl/
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
      D:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
      O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1
      \SPYBOT~1\SDHelper.dll
      O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - D:\Program
      Files\Norton AntiVirus\NavShExt.dll
      O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} -
      D:\Program Files\Norton AntiVirus\NavShExt.dll
      O4 - HKLM\..\Run: [NAV Agent] D:\PROGRA~1\NORTON~1\navapw32.exe
      O4 - HKLM\..\Run: [NeroFilterCheck] D:\WINDOWS\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
      O4 - HKLM\..\Run: [CHotkey] mHotkey.exe
      O4 - HKLM\..\Run: [ledpointer] CNYHKey.exe
      O4 - HKLM\..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe
      O4 - HKLM\..\Run: [hpfsched] D:\WINDOWS\hpfsched.exe
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32
      \NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
      O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [Gadu-Gadu] "D:\Program Files\Gadu-Gadu\gg.exe" /tray
      O4 - HKCU\..\Run: [Symantec NetDriver Monitor] D:\PROGRA~1\SYMNET~1\SNDMon.exe
      O4 - HKCU\..\Run: [MSMSGS] "D:\Program Files\Messenger\msmsgs.exe" /background
      O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32
      \NVMCTRAY.DLL,NvTaskbarInit
      O16 - DPF: komentator - sport.onet.pl/komentator.cab
      O16 - DPF: {E7544C6C-CFD6-43EA-B4E9-360CEE20BDF7} (MainControl Class) -
      skaner.mks.com.pl/SkanerOnline.cab
      O23 - Service: MkS_Vir Monitor (MksVirMonSvc) - Unknown owner - D:\Program
      Files\MKS\Bin\mksmonsv.exe (file missing)
      O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec
      Corporation - D:\Program Files\Norton AntiVirus\navapsvc.exe
      O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation -
      D:\WINDOWS\system32\nvsvc32.exe
      O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation -
      D:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
      O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec
      Corporation - D:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
      • Gość: T-800 Re: Bezsilność IP: *.tpnet.pl / *.tpnet.pl 17.06.05, 00:20
        Wywal jeszcze to:

        > O23 - Service: MkS_Vir Monitor (MksVirMonSvc) - Unknown owner - D:\Program
        > Files\MKS\Bin\mksmonsv.exe (file missing)

        Przeskanuj system Ad-Aware'em:
        ftp://ftp.download.com/pub/win95/utilities/aawsepersonal.exe ,

        usuń wszystko, co znajdzie i idź spać. ;-)
        • tomeczqu Re: Bezsilność 17.06.05, 00:26
          Wywaliłem, a jakże!
          Dziękuję!

Nie masz jeszcze konta? Zarejestruj się


Nakarm Pajacyka