Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112
kilka problemów z windowsem • programosy.pl

  • Ogłoszenie:

kilka problemów z windowsem

Kosz, czyli miejsce gdzie wrzucamy wszystkie beznadziejne i nic nie wnoszące tematy.

Kilka problemów z Windowsem

Postprzez Pokal1 08 Kwi 2006, 14:33

Witam serdecznie. Mam kilka problemów z kompem, mianowicie:
1. nie mogę uruchomić menedżera zadań, wyskakuje mi napis, że administrator wyłączył menedżer zadań.
2. Odnośnie neostrady, gdy jest wyłączona co pare sekund pyta się czy che się połączyć.
3. Wyskakuje również info odnośnie połączeń sieciowych "użytkowniek lub program zażądał informacji od ... którego połączenia chcesz użyć" Jak to zapytanie usunąć??
4. Wyskakuje mi okno zatytuowane "usługa posłaniec" w treści komunikatu pisze m.in. Komunikat od FROM dla TO wysłany ... STOP! WINDOWS REQUIRES IMMEDIATE ATTENTION. Windows has found 55 Critical System Errors... itd itd

Log:

Kod: Zaznacz wszystko
Logfile of HijackThis v1.99.1
Scan saved at 13:18:46, on 2006-04-09
Platform: Windows XP  (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\inet20001\services.exe
C:\Program Files\Winamp\winampa.exe
C:\PROGRA~1\NEOSTR~1\CnxMon.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\System32\ctfmon.exe
D:\Program Files\Gadu-Gadu\gg.exe
C:\Program Files\Spy Emergency 2005\SpyEmergency.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
c:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\WINDOWS\System32\mssvcc.exe
C:\WINDOWS\System32\lup.exe
C:\Program Files\Neostrada TP\Watch.exe
C:\Program Files\Neostrada TP\NeostradaTP.exe
C:\Program Files\Neostrada TP\ComComp.exe
C:\WINDOWS\TEMP\40BF.tmp
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\System32\asn3.exe
C:\WINDOWS\system32\cmd.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\netconf32.exe
C:\WINDOWS\System32\win32update.exe
C:\WINDOWS\system32\tftp.exe
C:\Documents and Settings\Piters\Pulpit\getAttachment.exe
C:\WINDOWS\system32\tftp.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wp.pl/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Neostrada TP
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
R3 - Default URLSearchHook is missing
F3 - REG:win.ini: run=C:\WINDOWS\inet20001\services.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5321E378-FFAD-4999-8C62-03CA8155F0B3} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - D:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: IExplorerHelper Class - {E89097ED-3400-411D-9647-D368C3311C98} - C:\WINDOWS\System32\IeHelperExVSS.dll (file missing)
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - D:\PROGRA~1\FlashGet\fgiebar.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - D:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [Soltek] C:\WINDOWS\System32\autorun.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\NEOSTR~1\CnxMon.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\NEOSTR~1\Watch.exe
O4 - HKLM\..\Run: [HP Software Update] "c:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\RunServices: [msconfig38] mssvcc.exe
O4 - HKLM\..\RunServices: [secures23] lup.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [Gadu-Gadu] "D:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - HKCU\..\Run: [bxproxy] C:\WINDOWS\bxproxy.exe
O4 - HKCU\..\Run: [SpyEmergency] "C:\Program Files\Spy Emergency 2005\SpyEmergency.exe"
O4 - HKCU\..\Run: [xp_system] C:\WINDOWS\inet20001\services.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone - szybkie uruchamianie.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: Download All by FlashGet - D:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - D:\Program Files\FlashGet\jc_link.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\PROGRA~1\FlashGet\flashget.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{EB0E812E-608B-479E-932E-55D77B73E910}: NameServer = 194.204.152.34 217.98.63.164
O20 - Winlogon Notify: SensSrv - C:\WINDOWS\SYSTEM32\senssrv.dll
O23 - Service: Usługa bramy warstwy aplikacji (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Automatic Update Service (Automatic Update) - Unknown owner - C:\WINDOWS\System32\asn3.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: netconf32 - Unknown owner - C:\WINDOWS\netconf32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe

Pokal1
~user
 
Posty: 194
Dołączenie: 03 Sty 2006, 04:32
Miejscowość: Pila



Postprzez jeff 08 Kwi 2006, 14:35

masz troche syfu - zrób skana http://www.ewido.net/en/ i wrzuć ponownie loG
jeff
 



Postprzez Pokal1 08 Kwi 2006, 15:03

Kod: Zaznacz wszystko
+ Created on:         13:47:27, 2006-04-09
+ Report-Checksum:      B5551655

+ Scan result:

   [452] C:\WINDOWS\system32\comdlg64.dll -> Proxy.Agent.ji : Cleaned with backup
   [1164] C:\WINDOWS\System32\rpcxss.dll -> Logger.Small.dv : Cleaned with backup
   [1748] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [1912] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [1928] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [1944] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [1956] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [2028] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [124] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [132] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [204] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [360] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [392] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [292] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [1644] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [3392] C:\WINDOWS\System32\mssvcc.exe -> Backdoor.Rbot.amz : Cleaned with backup
   [3672] C:\WINDOWS\System32\lup.exe -> Backdoor.Rbot.aeu : Cleaned with backup
   [2776] C:\WINDOWS\TEMP\40BF.tmp -> Not-A-Virus.SpamTool.Win32.Agent.e : Cleaned with backup
   [2796] C:\WINDOWS\System32\comdlg64.dll -> Proxy.Agent.ji : Error during cleaning
   [3196] C:\WINDOWS\netconf32.exe -> Backdoor.SdBot.xd : Cleaned with backup
   C:\WINDOWS\bxproxy.exe -> Logger.Small.dv : Cleaned with backup
   C:\WINDOWS\inet20001\3.02.04.dll -> Adware.Ihbo : Cleaned with backup
   C:\WINDOWS\inet20001\alg.exe -> Worm.Delf.i : Cleaned with backup
   C:\WINDOWS\inet20001\mm5.exe -> Logger.Delf.ig : Cleaned with backup
   C:\WINDOWS\inet20001\mm5.exe.bak -> Logger.Delf.ig : Cleaned with backup
   C:\WINDOWS\inet20001\services.exe -> Downloader.CWS.s : Cleaned with backup
   C:\WINDOWS\netconf32.exe -> Backdoor.SdBot.xd : Cleaned with backup
   C:\WINDOWS\OEM.exe -> Trojan.Agent.fv : Cleaned with backup
   C:\WINDOWS\OEM.exe.bak -> Trojan.Agent.fv : Cleaned with backup
   C:\WINDOWS\system\svchost.dll -> Backdoor.Agent.xb : Cleaned with backup
   C:\WINDOWS\system32\comdlg64.dll -> Proxy.Agent.ji : Cleaned with backup
   C:\WINDOWS\system32\drives.exe -> Backdoor.Rbot : Cleaned with backup
   C:\WINDOWS\system32\mnmsrv.exe -> Logger.Small.dv : Cleaned with backup
   C:\WINDOWS\system32\msdconfig.exe -> Backdoor.Rbot.anl : Cleaned with backup
   C:\WINDOWS\system32\netfilt4.exe -> Proxy.Small.bo : Cleaned with backup
   C:\WINDOWS\system32\qp.dll -> Proxy.Agent.df : Cleaned with backup
   C:\WINDOWS\system32\qvxgamet2.exe -> Trojan.Small : Cleaned with backup
   C:\WINDOWS\system32\qvxgamet3.exe -> Logger.Small.dv : Cleaned with backup
   C:\WINDOWS\system32\qvxgamet4.exe -> Downloader.Agent.afl : Cleaned with backup
   C:\WINDOWS\system32\RpcxSs.dll -> Logger.Small.dv : Cleaned with backup
   C:\WINDOWS\system32\senssrv.dll -> Downloader.Agent.afl : Cleaned with backup
   C:\WINDOWS\system32\TFTP5384 -> Backdoor.SdBot.yx : Cleaned with backup
   C:\WINDOWS\system32\TFTP5476 -> Backdoor.Rbot : Cleaned with backup
   C:\WINDOWS\system32\TFTP5492 -> Backdoor.SdBot.yx : Cleaned with backup
   C:\WINDOWS\system32\vxddirectx32.exe -> Backdoor.SdBot.yx : Cleaned with backup
   C:\WINDOWS\system32\vxgame1.exe3584.exe -> Logger.Agent.ly : Cleaned with backup
   C:\WINDOWS\system32\vxgamet3.exe -> Proxy.Small.bo : Cleaned with backup
   C:\WINDOWS\system32\wuapi.exe -> Backdoor.Codbot.az : Cleaned with backup
   C:\WINDOWS\system32\__delete_on_reboot__IeHelperExVSS.dll -> Trojan.Small : Cleaned with backup
   C:\WINDOWS\Temp\40BF.tmp -> Not-A-Virus.SpamTool.Win32.Agent.e : Cleaned with backup
   C:\WINDOWS\Temp\5A6F.tmp -> Not-A-Virus.SpamTool.Win32.Agent.e : Cleaned with backup
   C:\WINDOWS\Temp\DE07.tmp -> Not-A-Virus.SpamTool.Win32.Agent.e : Cleaned with backup


::Report End


Nie wiem czy to jest o co chodzi> Zrobiłem scan potem save report i wstawiłem.
Pokal1
~user
 
Posty: 194
Dołączenie: 03 Sty 2006, 04:32
Miejscowość: Pila



Postprzez jeff 08 Kwi 2006, 15:07

Pokal1 napisał(a): Zrobiłem scan potem save report i wstawiłem.

to co znalazło skasuj i daj loga z hijacka
jeff
 



Postprzez Pokal1 09 Kwi 2006, 01:30

Wszystko już porobiłem ci się dało i dalej pełno błędów wyskakuje. Nic jutro zrobie formata i tak już dawno nie był robiony więc czas najwyższy. Dzięki za pomoc. Temat można wywalić do kosza.
Pokal1
~user
 
Posty: 194
Dołączenie: 03 Sty 2006, 04:32
Miejscowość: Pila




Powróć do Kosz

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 4 gości