IP: *.neoplus.adsl.tpnet.pl 13.08.05, 20:17
proszę opomoc mam problem, mój komp uruchamia się prawi 20 min a jak się
uruchomi to chodzi bardzo wolno . i jeszcze jedno jak mam wysłać tego loga
do sprawdzenia
Obserwuj wątek
    • Gość: aaa Re: pomocy IP: *.neoplus.adsl.tpnet.pl 13.08.05, 20:31
      przeskanuj komp; log do HJ www.mgregor.republika.pl, wystarczy przejrzeć parę
      wątków
    • Gość: bob Re: pomocy IP: *.neoplus.adsl.tpnet.pl 13.08.05, 21:23
      bardzo dzięki;Logfile of HijackThis v1.99.1
      Scan saved at 21:19:45, on 2005-08-13
      Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\WINDOWS\Explorer.EXE
      C:\WINDOWS\system32\CTHELPER.EXE
      C:\WINDOWS\system32\rmctrl.exe
      C:\Program Files\Common Files\Symantec Shared\ccApp.exe
      C:\PROGRA~1\SYMANT~1\VPTray.exe
      C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
      C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
      C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
      C:\Program Files\Symantec AntiVirus\DefWatch.exe
      C:\Program Files\Symantec AntiVirus\Rtvscan.exe
      C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
      C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
      C:\Program Files\Gadu-Gadu\gg.exe
      C:\Program Files\Internet Explorer\IEXPLORE.EXE
      C:\Documents and Settings\Daniel\Pulpit\Nowy folder\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
      www.google.pl/
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
      www.google.pl/
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
      C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
      O2 - BHO: Need2Find Bar BHO - {4D1C4E81-A32A-416b-BCDB-33B3EF3617D3} -
      C:\Program Files\Need2Find\bar\1.bin\ND2FNBAR.DLL (file missing)
      O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
      O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
      O4 - HKLM\..\Run: [Jet Detection] "C:\Program
      Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
      O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\system32\rmctrl.exe
      O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
      O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
      Shared\ccApp.exe"
      O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02
      \bin\jusched.exe
      O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft
      AntiSpyware\gcasServ.exe"
      O8 - Extra context menu item: &Search -
      kc.bar.need2find.com/KC/menusearch.html?p=KC
      O8 - Extra context menu item: E&ksport do programu Microsoft Excel -
      res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
      C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
      O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-
      00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
      O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
      C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
      O12 - Plugin for .mp3: C:\Program Files\Internet
      Explorer\PLUGINS\npqtplugin3.dll
      O12 - Plugin for .mpeg: C:\Program Files\Internet
      Explorer\PLUGINS\npqtplugin3.dll
      O16 - DPF: {1A781DED-C22D-4153-3213-A3211E29DF13} (GameDesire Card Games) -
      67.15.101.3/g_bin/pl/cards_2_0_0_63.cab
      O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C1} (GameDesire Pool 8) -
      67.15.101.3/g_bin/pl/billard8_2_0_0_22.cab
      O17 - HKLM\System\CCS\Services\Tcpip\..\{94EE0009-5FEA-4927-9F8F-B89350246BCF}:
      NameServer = 192.168.2.1
      O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
      O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation -
      C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
      O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation -
      C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
      O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation -
      C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
      O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec
      Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
      O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec
      AntiVirus\SavRoam.exe
      O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec
      Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
      O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program
      Files\Symantec AntiVirus\Rtvscan.exe

      • Gość: tata1959 Re: pomocy IP: *.neoplus.adsl.tpnet.pl 14.08.05, 09:55
        witaj
        tak...do wywalenia:
        O2 - BHO: Need2Find Bar BHO - {4D1C4E81-A32A-416b-BCDB-33B3EF3617D3} -C:\Program
        Files\Need2Find\bar\1.bin\ND2FNBAR.DLL (file missing)
        O8 - Extra context menu item: &Search - kc.bar.need2find.com/KC/menusearch.html?p=KC
        awaryjny,fix w hijacku,kasacja folderu Need2Find z dysku.
        czy to twój DNS:
        O17 - HKLM\System\CCS\Services\Tcpip\..\{94EE0009-5FEA-4927-9F8F-B89350246BCF}:
        NameServer = 192.168.2.1

        pozdrawiam

        .
        • Gość: bob Re: pomocy IP: *.neoplus.adsl.tpnet.pl 14.08.05, 13:43
          bardzo dziękuje pozdrawiam

Nie masz jeszcze konta? Zarejestruj się


Nakarm Pajacyka