Dodaj do ulubionych

Prosze o pomoc

25.10.05, 22:40
Otwieraja mi sie same dziwne strony. powiedziano mi, aby podac loga z HJ to
ktos zyczliwy mi pomoze, bo nie wiem co z tym zrobic.
prosze o pomoc

Logfile of HijackThis v1.99.1
Scan saved at 22:45:24, on 2005-10-25
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\System32\Ati2evxx.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINNT\S2FteWtp\command.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINNT\system32\rundll32.exe
C:\WINNT\system32\Ati2evxx.exe
C:\WINNT\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINNT\System32\spool\drivers\w32x86\3\hpztsb04.exe
C:\SCANJET\PrecisionScanPro\HPLamp.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\windows\sp2update00.exe
C:\WINNT\system32\mpcsvc.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\WINNT\system32\internat.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Gadu-Gadu\gg.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
D:\instalki\DllCompare.exe
C:\WINNT\system32\NOTEPAD.EXE
C:\wincmd\WINCMD32.EXE
C:\DOCUME~1\Kamyki\USTAWI~1\Temp\$wc1\HIJACK~1.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
www.google.pl/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
www.o2.pl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control
Panel\atiptaxx.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINNT\System32
\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe
O4 - HKLM\..\Run: [HP Lamp] C:\SCANJET\PrecisionScanPro\HPLamp.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program
Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [msresearch] c:\windows\msresearch.exe
O4 - HKLM\..\Run: [ntdll.dll] C:\windows\msresearch.exe
O4 - HKLM\..\Run: [sp2update] C:\windows\sp2update00.exe
O4 - HKLM\..\Run: [SiS Mpc Service] C:\WINNT\system32\mpcsvc.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft
AntiSpyware\gcasServ.exe"
O4 - HKCU\..\Run: [internat.exe] internat.exe
O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - HKCU\..\Run: [ntdll.dll] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
Office\Office\OSA9.EXE
O15 - Trusted Zone: skaner.mks.com.pl
O20 - Winlogon Notify: CSCSettings - C:\WINNT\system32\l6r0lg9m16.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner -
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINNT\System32
\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINNT\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil
Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil
Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil
Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Command Service (cmdService) - Unknown owner -
C:\WINNT\S2FteWtp\command.exe
O23 - Service: Usługa administracyjna Menedżera dysków logicznych (dmadmin) -
VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe

Obserwuj wątek
    • Gość: Kolobos Re: Prosze o pomoc IP: *.warszawa.sdi.tpnet.pl 26.10.05, 00:16
      Zakoncz w menadzerze zadan:
      C:\WINNT\S2FteWtp\command.exe
      C:\windows\sp2update00.exe
      C:\WINNT\system32\mpcsvc.exe

      W hijackthis:

      O4 - HKLM\..\Run: [msresearch] c:\windows\msresearch.exe
      O4 - HKLM\..\Run: [ntdll.dll] C:\windows\msresearch.exe <- usun plik
      O4 - HKLM\..\Run: [sp2update] C:\windows\sp2update00.exe <- usun plik
      O4 - HKLM\..\Run: [SiS Mpc Service] C:\WINNT\system32\mpcsvc.exe <- usun plik
      O4 - HKCU\..\Run: [ntdll.dll] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
      O20 - Winlogon Notify: CSCSettings - C:\WINNT\system32\l6r0lg9m16.dll <- na
      stronie www.pchell.com/support/look2me.shtml masz link do uninstallera
      look2me
      O23 - Service: Command Service (cmdService) - Unknown owner -
      C:\WINNT\S2FteWtp\command.exe <- uruchom services.msc i wylacz ta ta usluge,
      nastepnie w hijackthis delete nt service wpisz cmdService katalog S2FteWtp usun.

Nie masz jeszcze konta? Zarejestruj się


Nakarm Pajacyka