Skocz do zawartości


Zdjęcie

> Dialnet 4mb + Asmax AR 801MP


  • Zaloguj się, aby dodać odpowiedź
7 odpowiedzi w tym temacie

#1 szpara

szpara

    Nowy

  • 4 postów

Napisano 03 02 2008 - 17:48

Witam. Jest to mój pierwszy post na tym forum więc chciałem się przywitać :rolleyes:

Mam problem. Od zeszłego czwartku mam dialnet 4mb + Asmax AR 801MP.
I tu zaczynają się problemy... Co jakiś czas mam "laga" ... Wtedy w ogóle nie mogę zpingować stron... wywala mnie z aplikacji, które używają neta... np. gry.

Dzwoniłem do nich... pani konsultant nie wiedziała o czym mówię... Pan technik wymienił mi modem na ten sam - nadal to samo... Przekierowali mi porty - nadal to samo...

Mam 3 kabelki od Modemu...
-zasilanie
-do karty sieciowej
-od telefonu (tam do tego gniazdka)

Nie mam żadnego syfu na kompie, bo robiłem formata... Raczej to też nie jest wina kabla ani karty sieciowej... bo mam x2.

Dołączona grafika

Dołączona grafika

Zaznaczyłem na czerwono tego "laga" ... Nie ma wtedy informacji, że internet nie działa... Po 30sec wszystko wraca do normy... ale z gier,gg i tak wywala.

  • 0

#2 wncvirus

wncvirus

    Leń !

  • 851 postów

Napisano 04 02 2008 - 00:24

A kiedy był format robiony?.Nie wiem czemu wygląda to mi na jakiś problem od dostawcy.

  • 0

#3 szpara

szpara

    Nowy

  • 4 postów

Napisano 04 02 2008 - 00:36

Format był robiony 30 stycznia... :rolleyes:
  • 0

#4 wncvirus

wncvirus

    Leń !

  • 851 postów

Napisano 04 02 2008 - 01:18

Ale chodzi mi czy zaraz po formacie problem zaczął występować.Jeśli nie to daj logi z combofixa
  • 0

#5 szpara

szpara

    Nowy

  • 4 postów

Napisano 04 02 2008 - 01:26

Nie... problem zaczął występywać ok. 2 dni po tym jak mam internet... Próbowałem go rozwiązać... ale nic nie pomagało, strzeliłem formata i nadal to samo jest :rolleyes:

BTW: Żadnego syfu nie mam na 100%
  • 0

#6 wncvirus

wncvirus

    Leń !

  • 851 postów

Napisano 04 02 2008 - 01:42

No ale mimo wszytko daj logi combofixa + hjt
  • 0

#7 szpara

szpara

    Nowy

  • 4 postów

Napisano 04 02 2008 - 01:58

ComboFix 08-02.03.1 - donSZPAResko 2008-02-04 1:08:36.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.1.1033.18.1592 [GMT 1:00]
Running from: E:\ComboFix.exe

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED Dołączona grafika
.

((((((((((((((((((((((((( Files Created from 2008-01-04 to 2008-02-04 )))))))))))))))))))))))))))))))
.

2008-02-04 01:06 . 2008-02-04 01:06 <DIR> d-------- C:\WINDOWS\system32\xircom
2008-02-04 01:06 . 2008-02-04 01:06 <DIR> d-------- C:\Program Files\microsoft frontpage
2008-02-04 01:04 . 2008-02-04 01:04 0 --a------ C:\temp00
2008-02-02 19:38 . 2008-02-03 21:21 <DIR> d-------- C:\Program Files\wwwspeeder
2008-02-02 00:13 . 2008-02-02 00:13 <DIR> d---s---- C:\Program Files\HLSW
2008-02-02 00:13 . 2008-02-02 02:50 <DIR> d-------- C:\Documents and Settings\donSZPAResko\Application Data\HLSW
2008-02-01 17:41 . 2008-02-04 00:39 69 --a------ C:\WINDOWS\NeroDigital.ini
2008-02-01 17:32 . 2008-02-01 17:32 <DIR> d-------- C:\Program Files\Peer2Mail
2008-02-01 15:00 . 2008-02-01 15:04 <DIR> d-------- C:\Program Files\CryptLoad_1.0.4
2008-02-01 13:32 . 2008-02-01 13:32 <DIR> d-------- C:\Program Files\Alcohol Soft
2008-02-01 13:11 . 2008-02-01 13:11 <DIR> d-------- C:\Documents and Settings\donSZPAResko\Application Data\Nero
2008-02-01 13:08 . 2008-02-01 13:08 <DIR> d-------- C:\Program Files\Nero
2008-02-01 13:08 . 2008-02-01 13:09 <DIR> d-------- C:\Program Files\Common Files\Nero
2008-02-01 13:08 . 2008-02-01 13:08 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Nero
2008-02-01 13:06 . 2006-10-04 09:48 215,552 --------- C:\WINDOWS\system32\dllcache\osk.exe
2008-02-01 13:06 . 2006-10-04 09:48 72,704 --------- C:\WINDOWS\system32\dllcache\magnify.exe
2008-02-01 13:06 . 2006-10-04 09:48 53,760 --------- C:\WINDOWS\system32\dllcache\narrator.exe
2008-02-01 13:06 . 2006-10-04 09:48 50,176 --------- C:\WINDOWS\system32\dllcache\utilman.exe
2008-02-01 13:06 . 2006-10-04 14:33 35,840 --------- C:\WINDOWS\system32\dllcache\umandlg.dll
2008-02-01 12:54 . 2008-02-01 12:54 <DIR> d-------- C:\Program Files\MSXML 6.0
2008-02-01 12:52 . 2008-02-01 12:52 <DIR> d-------- C:\Program Files\MSXML 4.0
2008-02-01 12:52 . 2004-08-04 01:56 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
2008-01-31 23:56 . 2008-01-31 23:56 <DIR> d-------- C:\WINDOWS\system32\XPSViewer
2008-01-31 23:56 . 2008-01-31 23:56 <DIR> d-------- C:\Program Files\MSBuild
2008-01-31 23:56 . 2008-01-31 23:57 <DIR> d-------- C:\Program Files\MoorHunt
2008-01-31 23:55 . 2008-01-31 23:55 <DIR> d-------- C:\Program Files\Reference Assemblies
2008-01-31 23:55 . 2006-06-29 13:07 14,048 --------- C:\WINDOWS\system32\spmsg2.dll
2008-01-31 14:59 . 2007-10-11 00:55 6,065,664 --------- C:\WINDOWS\system32\dllcache\ieframe.dll
2008-01-31 14:58 . 2007-10-29 23:35 1,287,680 --------- C:\WINDOWS\system32\dllcache\quartz.dll
2008-01-31 14:58 . 2007-04-16 17:07 986,112 --------- C:\WINDOWS\system32\dllcache\kernel32.dll
2008-01-31 14:58 . 2007-11-07 10:50 727,040 --------- C:\WINDOWS\system32\dllcache\lsasrv.dll
2008-01-31 14:58 . 2006-10-19 14:59 713,216 --------- C:\WINDOWS\system32\dllcache\sxs.dll
2008-01-31 14:58 . 2007-08-21 07:25 683,520 --------- C:\WINDOWS\system32\dllcache\inetcomm.dll
2008-01-31 14:58 . 2007-02-09 12:10 574,464 --------- C:\WINDOWS\system32\dllcache\ntfs.sys
2008-01-31 14:58 . 2006-11-27 15:54 539,136 --------- C:\WINDOWS\system32\dllcache\msftedit.dll
2008-01-31 14:58 . 2006-11-27 15:54 433,152 --------- C:\WINDOWS\system32\dllcache\riched20.dll
2008-01-31 14:58 . 2007-04-25 15:21 144,896 --------- C:\WINDOWS\system32\dllcache\schannel.dll
2008-01-31 14:57 . 2007-07-09 14:16 582,656 --------- C:\WINDOWS\system32\dllcache\rpcrt4.dll
2008-01-31 14:34 . 2008-01-31 14:34 <DIR> d-------- C:\Program Files\SubEdit-Player
2008-01-31 14:33 . 2008-01-31 14:33 <DIR> d-------- C:\Program Files\NAPI-PROJEKT
2008-01-31 14:21 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
2008-01-31 14:21 . 2007-07-30 19:18 34,136 --a------ C:\WINDOWS\system32\wucltui.dll.mui
2008-01-31 14:21 . 2007-07-30 19:19 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-01-31 14:21 . 2007-07-30 19:19 25,944 --a------ C:\WINDOWS\system32\wuaucpl.cpl.mui
2008-01-31 14:21 . 2007-07-30 19:19 25,944 --a------ C:\WINDOWS\system32\wuapi.dll.mui
2008-01-31 14:21 . 2007-07-30 19:18 20,312 --a------ C:\WINDOWS\system32\wuaueng.dll.mui
2008-01-30 23:09 . 2008-01-30 23:09 <DIR> d-------- C:\Documents and Settings\donSZPAResko\Application Data\InstallShield
2008-01-30 23:09 . 2006-03-14 02:26 53,248 --a------ C:\WINDOWS\system32\ImageOle.dll
2008-01-30 23:01 . 2008-01-30 23:01 <DIR> d-------- C:\WINDOWS\Sun
2008-01-30 23:01 . 2007-09-24 23:31 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl
2008-01-30 23:00 . 2008-01-30 23:01 <DIR> d-------- C:\Program Files\Java
2008-01-30 23:00 . 2008-01-30 23:00 <DIR> d-------- C:\Program Files\Common Files\Java
2008-01-30 22:24 . 2008-01-30 22:24 <DIR> d-------- C:\Documents and Settings\donSZPAResko\Application Data\vlc
2008-01-30 21:53 . 2008-02-03 16:37 <DIR> d-------- C:\Program Files\mIRC
2008-01-30 21:53 . 2008-02-04 00:42 <DIR> d-------- C:\Documents and Settings\donSZPAResko\Application Data\mIRC
2008-01-30 21:00 . 2008-01-30 21:04 139,264 --a------ C:\WINDOWS\War3Unin.exe
2008-01-30 21:00 . 2008-01-30 21:10 77,679 --a------ C:\WINDOWS\War3Unin.dat
2008-01-30 21:00 . 2008-01-30 21:04 2,829 --a------ C:\WINDOWS\War3Unin.pif
2008-01-30 18:10 . 2008-01-30 18:10 <DIR> d-------- C:\Program Files\DAEMON Tools
2008-01-30 17:39 . 2008-02-01 13:30 715,248 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2008-01-30 17:28 . 2008-01-30 17:28 <DIR> d-------- C:\Documents and Settings\donSZPAResko\Application Data\Ventrilo
2008-01-30 17:22 . 2008-01-30 17:22 <DIR> d-------- C:\Documents and Settings\donSZPAResko\dwhelper
2008-01-30 17:15 . 2008-02-04 00:42 <DIR> d-------- C:\Documents and Settings\donSZPAResko\Application Data\foobar2000
2008-01-30 17:05 . 2004-06-28 12:08 42,752 --------- C:\WINDOWS\system32\drivers\ser2pl.sys
2008-01-30 17:02 . 2005-05-28 07:14 142,464 --a------ C:\WINDOWS\system32\drivers\aec.sys
2008-01-30 17:02 . 2004-08-04 00:15 60,800 --a------ C:\WINDOWS\system32\drivers\sysaudio.sys
2008-01-30 17:02 . 2001-08-17 15:00 54,272 --a------ C:\WINDOWS\system32\drivers\swmidi.sys
2008-01-30 17:02 . 2006-06-14 16:50 6,272 --a------ C:\WINDOWS\system32\drivers\splitter.sys
2008-01-30 17:02 . 2004-08-04 00:07 2,944 --a------ C:\WINDOWS\system32\drivers\drmkaud.sys
2008-01-30 17:01 . 2006-06-14 16:50 172,416 --a------ C:\WINDOWS\system32\drivers\kmixer.sys
2008-01-30 17:01 . 2006-06-14 17:17 82,944 --a------ C:\WINDOWS\system32\drivers\wdmaud.sys
2008-01-30 17:01 . 2004-08-03 23:59 57,472 --a------ C:\WINDOWS\system32\drivers\redbook.sys
2008-01-30 17:01 . 2004-08-04 00:07 52,864 --a------ C:\WINDOWS\system32\drivers\DMusic.sys
2008-01-30 17:01 . 2004-08-03 23:58 7,552 --a------ C:\WINDOWS\system32\drivers\MSKSSRV.sys
2008-01-30 17:01 . 2004-08-03 23:58 5,376 --a------ C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2008-01-30 17:01 . 2004-08-03 23:58 4,992 --a------ C:\WINDOWS\system32\drivers\MSPQM.sys
2008-01-30 17:01 . 2001-08-17 14:59 3,072 --a------ C:\WINDOWS\system32\drivers\audstub.sys
2008-01-30 17:00 . 2006-07-12 14:50 146,048 --a------ C:\WINDOWS\system32\drivers\portcls.sys
2008-01-30 17:00 . 2004-08-03 18:56 130,048 --a------ C:\WINDOWS\system32\ksproxy.ax
2008-01-30 17:00 . 2004-08-04 01:56 74,240 --a------ C:\WINDOWS\system32\usbui.dll
2008-01-30 17:00 . 2004-08-03 17:08 60,288 --a------ C:\WINDOWS\system32\drivers\drmk.sys
2008-01-30 17:00 . 2004-08-03 18:56 4,096 --a------ C:\WINDOWS\system32\ksuser.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-04 00:08 --------- d-----w C:\Program Files\cFosSpeed
2008-02-04 00:08 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-02-04 00:06 --------- d-----w C:\Program Files\AutoConnect
2008-02-04 00:04 180,256 --sha-w C:\WINDOWS\system32\drivers\fidbox2.dat
2008-02-03 23:48 3,942,432 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat
2008-02-03 14:51 60,056 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx
2008-02-03 14:51 21,968 --sha-w C:\WINDOWS\system32\drivers\fidbox2.idx
2008-02-01 15:54 --------- d-----w C:\Program Files\Konnekt
2008-02-01 14:00 --------- d-----w C:\Program Files\Unlocker
2008-01-31 17:22 91,700 ----a-w C:\WINDOWS\system32\drivers\klin.dat
2008-01-30 22:09 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-01-30 16:00 --------- d-----w C:\Program Files\SBCL
2008-01-30 15:45 --------- d-----w C:\Program Files\ToniArts
2008-01-30 15:44 --------- d-----w C:\Program Files\VentriloMIX
2008-01-30 15:44 --------- d-----w C:\Program Files\IrfanView
2008-01-30 15:43 --------- d-----w C:\Program Files\VideoLAN
2008-01-30 15:42 85,860 ----a-w C:\WINDOWS\system32\drivers\klick.dat
2008-01-30 15:42 --------- d-----w C:\Program Files\foobar2000
2008-01-30 15:39 --------- d-----w C:\Program Files\Microsoft IntelliPoint
2008-01-30 15:39 --------- d-----w C:\Program Files\ATI Tray Tools
2008-01-30 15:39 --------- d-----w C:\Documents and Settings\donSZPAResko\Application Data\atitray
2008-01-30 15:36 60,416 ----a-w C:\WINDOWS\ALCFDRTM.EXE
2008-01-30 15:30 --------- d-----w C:\Documents and Settings\donSZPAResko\Application Data\Talkback
2008-01-30 09:20 --------- d-----w C:\Program Files\Kaspersky Lab
2008-01-30 09:19 --------- d-----w C:\Program Files\XG WarCat 7.4
2008-01-30 09:19 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-01-30 09:19 --------- d-----w C:\Program Files\ATI Technologies
2008-01-30 09:18 --------- d-----w C:\Program Files\Realtek Sound Manager
2008-01-30 09:18 --------- d-----w C:\Program Files\Realtek AC97
2008-01-30 09:18 --------- d-----w C:\Program Files\AvRack
2008-01-30 09:03 --------- d-----w C:\Program Files\Windows Media Connect 2
2008-01-30 09:03 --------- d-----w C:\Program Files\Microsoft PowerToys
2008-01-30 09:03 --------- d-----w C:\Program Files\LClock
2008-01-30 09:03 --------- d-----w C:\Program Files\HashTab Shell Extension
2008-01-25 09:16 717,528 ----a-r C:\WINDOWS\system32\drivers\cfosspeed.sys
2008-01-25 09:16 298,200 ----a-w C:\WINDOWS\system32\cfosspeed.dll
2007-11-07 09:50 727,040 ----a-w C:\WINDOWS\system32\lsasrv.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AtiTrayTools"="C:\Program Files\ATI Tray Tools\atitray.exe" [2007-05-22 10:04 521128]
"Steam"="d:\program files\steam\steam.exe" [2008-01-30 16:40 1266936]
"Konnekt"="C:\Program Files\Konnekt\konnekt.exe" [2005-05-24 22:41 503808]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 01:56 15360]
"AutoConnect"="C:\Program Files\AutoConnect\AutoConnect.exe" [2004-08-28 19:27 295424]
"AlcoholAutomount"="C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" [2007-12-22 08:23 221568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"UnlockerAssistant"="C:\Program Files\Unlocker\UnlockerAssistant.exe" [2006-09-07 07:19 15872]
"LClock"="C:\Program Files\LClock\LClock.exe" [2004-09-19 06:27 65536]
"Vistadrv"="C:\WINDOWS\system32\vsdrv.exe" [2006-07-29 21:37 121089]
"SoundMan"="SOUNDMAN.EXE" [2006-08-02 23:12 577536 C:\WINDOWS\soundman.exe]
"AVP"="C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" [2007-03-09 14:50 200768]
"cFosSpeed"="C:\Program Files\cFosSpeed\cFosSpeed.exe" [2008-01-25 10:16 863448]
"IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [2007-08-31 06:01 1037736]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]
"NeroFilterCheck"="C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 15:57 153136]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 01:56 15360]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [ ]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide3"="cmd.exe" [2004-08-04 01:56 388608 C:\WINDOWS\system32\cmd.exe]
"nltide2"="cmd.exe" [2004-08-04 01:56 388608 C:\WINDOWS\system32\cmd.exe]

C:\Documents and Settings\donSZPAResko\Start Menu\Programs\Startup\
SBCL v1.1b.lnk - C:\Program Files\SBCL\SBCL v1.1b.exe [2008-01-30 16:41:11 779264]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoSMConfigurePrograms"= 1 (0x1)

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoSMConfigurePrograms"= 1 (0x1)

R0 nvcchflt;NVIDIA Disk Cache Filter Driver;C:\WINDOWS\system32\DRIVERS\nvcchflt.sys [2006-02-26 16:21]
R1 atitray;atitray;C:\Program Files\ATI Tray Tools\atitray.sys [2007-05-22 10:04]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
WudfServiceGroup REG_SZ hex(7):57,00,55,00,44,00,46,00,53,00,76,00,63,00,00,00,00,00

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{56d5db68-cf4b-11dc-bba2-806d6172696f}]
\Shell\AutoRun\command - G:\setup.exe

.
**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-04 01:10:11
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\WudfPf]
"ImagePath"="hex(2):73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,52,00,49
,00,56,00,45,00,52,00,53,00,5c,00,57,00,75,00,64,00,66,00,50,00,66,00,2e,00,73,0
0
,79,00,73,00,00,00"

[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\WudfRd]
"ImagePath"="hex(2):73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,52,00,49
,00,56,00,45,00,52,00,53,00,5c,00,77,00,75,00,64,00,66,00,72,00,64,00,2e,00,73,0
0
,79,00,73,00,00,00"

[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\WudfSvc]
"ImagePath"="hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25
,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,00,76,00,63,0
0
,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,6b,00,20,00,57,00,7
5
,00,64,00,66,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,47,00,72,00,6f,00,75,0
0
,70,00,00,00"
"ServiceDll"="hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25
,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,57,00,55,00,44,0
0
,46,00,53,00,76,00,63,00,2e,00,64,00,6c,00,6c,00,00,00"
.
--------------------- DLLs Loaded Under Running Processes ---------------------

PROCESS: C:\WINDOWS\explorer.exe [6.00.2900.3156]
-> C:\Program Files\ATI Tray Tools\raphook.dll
-> C:\Program Files\Unlocker\UnlockerHook.dll
-> C:\Program Files\LClock\LC.dll
.
Completion time: 2008-02-04 1:10:50
.
2008-02-01 12:07:20 --- E O F ---















Logfile of HijackThis v1.99.1
Scan saved at 01:14, on 2008-02-04
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\LClock\LClock.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
C:\Program Files\cFosSpeed\cFosSpeed.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\ATI Tray Tools\atitray.exe
C:\Program Files\Konnekt\konnekt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AutoConnect\AutoConnect.exe
C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\Program Files\SBCL\SBCL v1.1b.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe
C:\Program Files\cFosSpeed\spd.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\DOCUME~1\DONSZP~1\LOCALS~1\Temp\Rar$EX00.859\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.daemonsearch.com/intl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O4 - HKLM\..\Run: [UnlockerAssistant] C:\Program Files\Unlocker\UnlockerAssistant.exe -H
O4 - HKLM\..\Run: [LClock] C:\Program Files\LClock\LClock.exe
O4 - HKLM\..\Run: [Vistadrv] C:\WINDOWS\system32\vsdrv.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe"
O4 - HKLM\..\Run: [cFosSpeed] C:\Program Files\cFosSpeed\cFosSpeed.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKCU\..\Run: [AtiTrayTools] "C:\Program Files\ATI Tray Tools\atitray.exe"
O4 - HKCU\..\Run: [Steam] "d:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [Konnekt] "C:\Program Files\Konnekt\konnekt.exe" /autostart
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AutoConnect] C:\Program Files\AutoConnect\AutoConnect.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - Startup: SBCL v1.1b.lnk = C:\Program Files\SBCL\SBCL v1.1b.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Statystyki ochrony WWW - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\scieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O17 - HKLM\System\CCS\Services\Tcpip\..\{3CE838A9-E766-4050-A235-84314A97A5FA}: NameServer = 217.30.129.149
O17 - HKLM\System\CCS\Services\Tcpip\..\{5FC8EDDB-614E-42A3-8A49-7BF19BB3E0C8}: NameServer = 217.30.129.149
O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0\avp.exe" -r (file missing)
O23 - Service: cFosSpeed System Service (cFosSpeedS) - Unknown owner - C:\Program Files\cFosSpeed\spd.exe" -service (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Windows Driver Foundation - User-mode Driver Framework (WudfSvc) - Unknown owner - hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,00,5
c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,00,76,00,63,00,68,0
0,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,6b,00,20,00,57,00,75,00,6
4,00,66,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,47,00,72,00,6f,00,75,00,70,0
0,00,00 (file missing)
  • 0

#8 wncvirus

wncvirus

    Leń !

  • 851 postów

Napisano 04 02 2008 - 19:20

logi są czyste.No to opcja że spowodowane to jest wirusem odpada.Więc jak bym admina atakował.

  • 0




Użytkownicy przeglądający ten temat: 0

0 użytkowników, 0 gości, 0 anonimowych