Prosím o kontrolu logu :smile:

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
iMohos
Level 3.5
Level 3.5
Příspěvky: 745
Registrován: prosinec 07
Bydliště: Praha 8
Pohlaví: Muž
Stav:
Offline
Kontakt:

Prosím o kontrolu logu :smile:

Příspěvekod iMohos » 21 dub 2009 22:05

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:03:10, on 21.4.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\WINDOWS\System32\TUProgSt.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Taksi\Taksi.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Documents and Settings\FazyCZ\Plocha\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe
O4 - HKLM\..\Run: [GLDStart] C:\Program Files\GLDirect\gldirect.exe -filterstart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Připojit k existujícímu PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O23 - Service: Adobe Version Cue CS4 - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe

--
End of file - 5373 bytes


Mockráte děkuji
MB:ASUS M4A77TD | CPU : AMD Phenom II X4 3,2GHz@4,12 + Noctua NH-D14 |GK : MSI GTX560Ti TwinFrozrII OC @925/2100/1850 | RAM : 2x2GB DDR3 Zeppelin 1300MHz + 2x2GB OCZ LV 1300MHz | HDD : SSD OCZ Vexter4 120GB + Segate Barracuda 7200.12 500GB + WD AASD 500GB | PwR : OCZ Fatal1ty 550W | Case : Fractal Define R3

Reklama
Uživatelský avatar
memphisto
Guru Level 13
Guru Level 13
Příspěvky: 21113
Registrován: září 06
Bydliště: Zlín - České Budějovice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu :smile:

Příspěvekod memphisto » 21 dub 2009 22:19

Log je OK. Pro jistotu můžeš udělat log z Mbam
PRAVIDLA PC-HELP.CZ, PRAVIDLA sekce HijackThis, HijackThis návod, Memtest, CCleaner
Logy z programu HijackThis neposílejte prosím přes SZ, ale vkládejte je do patřičné sekce. Děkuji

Uživatelský avatar
iMohos
Level 3.5
Level 3.5
Příspěvky: 745
Registrován: prosinec 07
Bydliště: Praha 8
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosím o kontrolu logu :smile:

Příspěvekod iMohos » 22 dub 2009 13:08

Vaše zpráva obsahuje 531698 znaků. Maximální povolený počet znaků je 60000.

Tohle mi to vyhodí. Co mám odebrat z logu ?? :D

edit: jo,už je to v pohodě,posílám:


22 IV 2009 06:59:40 - **********************************************************
22 IV 2009 06:59:40 - eScan Anti Virus & Spyware Toolkit Utility.
22 IV 2009 06:59:40 - Copyright © MicroWorld Technologies
22 IV 2009 06:59:40 - **********************************************************
22 IV 2009 06:59:40 - Source: C:\DOCUME~1\FazyCZ\Plocha\mwav.exe
22 IV 2009 06:59:40 - Version 11.0.45 (C:\DOCUMENTS AND SETTINGS\FAZYCZ\LOCAL SETTINGS\TEMP\MEXE.COM)
22 IV 2009 06:59:40 - Log File: C:\Documents and Settings\FazyCZ\Local Settings\Temp\MWAV.LOG
22 IV 2009 06:59:40 - MWAV Registered: FALSE
22 IV 2009 06:59:40 - User Account: FazyCZ (Administrator Mode)
22 IV 2009 06:59:40 - OS Type: Windows Workstation
22 IV 2009 06:59:40 - OS: Windows XP [OS Install Date: 19 Mar 2009 21:47:22]
22 IV 2009 06:59:40 - Ver: Service Pack 3 (Build 2600)
22 IV 2009 06:59:40 - System Up Time: 2 Days, 21 Hours, 8 Minutes, 46 Seconds


22 IV 2009 06:59:40 - Parent Process Name : C:\Documents and Settings\FazyCZ\Plocha\mwav.exe
22 IV 2009 06:59:40 - Windows Root Folder: C:\WINDOWS
22 IV 2009 06:59:40 - Windows Sys32 Folder: C:\WINDOWS\system32
22 IV 2009 06:59:40 - DHCP NameServer: 192.168.1.1
22 IV 2009 06:59:40 - Interface0 DHCPNameServer: 192.168.1.1
22 IV 2009 06:59:40 - Local Fixed Drives: c:\,d:\
22 IV 2009 06:59:40 - MWAV Mode: Only Scan files
22 IV 2009 06:59:40 - [CREATED ZIP FILE: C:\Documents and Settings\FazyCZ\Local Settings\Temp\pinfect.zip]

22 IV 2009 06:59:40 - ****** Files/Folders created/modified during last fortnight in Windows and ROOT Folder ******
22 IV 2009 06:59:42 - C:\WINDOWS\system32\MRT.exe (24921544), 06-Apr-2009, Microsoft Corporation, Nástroj pro odstranění škodlivého softwaru systému Microsoft Windows
22 IV 2009 06:59:42 - C:\io64.sys (660), 07-Apr-2009 [HSR] [Added C:\io64.sys to ZIP FILE]
22 IV 2009 06:59:42 - C:\WINDOWS\system32\dllcache\advapi32.dll (684032), 15-Apr-2009, Microsoft Corporation, Operační systém Microsoft® Windows®
22 IV 2009 06:59:42 - C:\WINDOWS\system32\dllcache\fastprox.dll (473600), 15-Apr-2009, Microsoft Corporation, Microsoft® Windows® Operating System
22 IV 2009 06:59:43 - C:\WINDOWS\system32\dllcache\lsasrv.dll (728064), 15-Apr-2009, Microsoft Corporation, Operační systém Microsoft® Windows®
22 IV 2009 06:59:43 - C:\WINDOWS\system32\dllcache\ntdll.dll (709632), 15-Apr-2009, Microsoft Corporation, Operační systém Microsoft® Windows®
22 IV 2009 06:59:43 - C:\WINDOWS\system32\dllcache\pdh.dll (284160), 15-Apr-2009, Microsoft Corporation, Operační systém Microsoft® Windows®
22 IV 2009 06:59:43 - C:\WINDOWS\system32\dllcache\rpcss.dll (401408), 15-Apr-2009, Microsoft Corporation, Microsoft® Windows® Operating System
22 IV 2009 06:59:43 - C:\WINDOWS\system32\dllcache\services.exe (111104), 15-Apr-2009, Microsoft Corporation, Operační systém Microsoft® Windows®
22 IV 2009 06:59:43 - C:\WINDOWS\system32\dllcache\wmiprvsd.dll (453120), 15-Apr-2009, Microsoft Corporation, Microsoft® Windows® Operating System
22 IV 2009 06:59:43 - C:\WINDOWS\system32\dllcache\wmiprvse.exe (227840), 15-Apr-2009, Microsoft Corporation, Microsoft® Windows® Operating System
22 IV 2009 06:59:43 - C:\WINDOWS\system32\drivers\openglv3.dll (278528), 06-Apr-2009, Metabyte, Inc., Opengl32
22 IV 2009 06:59:43 - C:\WINDOWS\system32\drivers\openglv5.dll (352256), 06-Apr-2009, Metabyte, Inc., Opengl32
22 IV 2009 06:59:43 - C:\WINDOWS\system32\drivers\pmfilt.sys (10112), 07-Apr-2009, SciTech Software Inc., SciTech SNAP Graphics
22 IV 2009 06:59:43 - C:\WINDOWS\system32\drivers\pmhelp.sys (50464), 07-Apr-2009, SciTech Software Inc., SciTech Multi-Platform Graphics Library

22 IV 2009 06:59:43 - C:\WINDOWS\$hf_mig$, 20-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\$MSI31Uninstall_KB893803v2$, 19-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\$NtUninstallMSCompPackV1$, 24-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\$NtUninstallWIC$, 20-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\$NtUninstallWMFDist11$, 24-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\$NtUninstallwmp11$, 24-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\$NtUninstallWudf01000$, 24-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\$NtUninstallXPSEPSCLP$, 20-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\$NtUninstall_Xbox_360_CC_Driver$, 19-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\Fonts, 19-Mar-2009 [SR] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\gldirect, 07-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\inf, 19-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\msdownld.tmp, 25-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\PIF, 20-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\pss, 08-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\SxsCaPendDel, 18-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\system32\dllcache, 19-Mar-2009 [HSR] [Folder]
22 IV 2009 06:59:43 - C:\WINDOWS\system32\Microsoft, 19-Mar-2009 [S] [Folder]
22 IV 2009 06:59:43 - C:\fsc.tmp, 11-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\MSOCache, 20-Mar-2009 [HR] [Folder]
22 IV 2009 06:59:43 - C:\Tmp, 19-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\Program Files\GLDirect, 07-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\Program Files\Microsoft Silverlight, 15-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\Program Files\Motorola, 11-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\Program Files\Nero, 14-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\Program Files\Privacy center, 09-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\Program Files\Taksi, 19-Apr-2009 [Folder]
22 IV 2009 06:59:43 - C:\Program Files\WindowsUpdate, 19-Mar-2009 [H] [Folder]
22 IV 2009 06:59:43 - C:\Program Files\Common Files\Ahead, 14-Apr-2009 [Folder]

22 IV 2009 06:59:43 - *********************************************************************************************

22 IV 2009 06:59:45 - Loading/Creating FileScan Database C:\Documents and Settings\All Users\Data aplikací\MicroWorld\MWAV\MWAVDBX.MDB [Log: C:\DOCUME~1\FazyCZ\LOCALS~1\Temp\MWAVDB.LOG]
22 IV 2009 06:59:46 - Loaded/Created FileScan Database...
22 IV 2009 06:59:46 - Loading AV Library [DB]...
22 IV 2009 07:00:04 - AV Library Loaded [DB-DIRECT].
22 IV 2009 07:00:04 - MWAV doing self scanning...
22 IV 2009 07:00:04 - Scanning File C:\Documents and Settings\FazyCZ\Local Settings\Temp\avxdisk.dll
22 IV 2009 07:00:04 - Scanning File C:\Documents and Settings\FazyCZ\Local Settings\Temp\scan.dll
22 IV 2009 07:00:04 - Scanning File C:\Documents and Settings\FazyCZ\Local Settings\Temp\bdcore.dll
22 IV 2009 07:00:05 - Scanning File C:\Documents and Settings\FazyCZ\Local Settings\Temp\bdupdateservice.dll
22 IV 2009 07:00:05 - MWAV files are clean.
22 IV 2009 07:00:20 - Datum vydání databáze: 15 Apr 2009
22 IV 2009 07:00:20 - Verze virové databáze: 2846508

ale jsou 2 ty logy,a u toho druhýho na konci mi to vypsalo:

22 IV 2009 12:49:52 - ***** Test dokončen *****

22 IV 2009 12:49:52 - Testovaných objektů: 69770
22 IV 2009 12:49:52 - Kritických objektů: 5
22 IV 2009 12:49:52 - Celkem vyléčených objektů: 0
22 IV 2009 12:49:52 - Celkem přejmenováno: 0
22 IV 2009 12:49:52 - Smazaných objektů: 0
22 IV 2009 12:49:52 - Celkem chyb: 69
22 IV 2009 12:49:52 - Uplynulý čas: 04:21:47
22 IV 2009 12:49:52 - Datum vydání databáze: 15 Apr 2009
22 IV 2009 12:49:52 - Verze virové databáze: 2846508

22 IV 2009 12:49:52 - Test je dokončen
MB:ASUS M4A77TD | CPU : AMD Phenom II X4 3,2GHz@4,12 + Noctua NH-D14 |GK : MSI GTX560Ti TwinFrozrII OC @925/2100/1850 | RAM : 2x2GB DDR3 Zeppelin 1300MHz + 2x2GB OCZ LV 1300MHz | HDD : SSD OCZ Vexter4 120GB + Segate Barracuda 7200.12 500GB + WD AASD 500GB | PwR : OCZ Fatal1ty 550W | Case : Fractal Define R3

Uživatelský avatar
iMohos
Level 3.5
Level 3.5
Příspěvky: 745
Registrován: prosinec 07
Bydliště: Praha 8
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosím o kontrolu logu :smile:

Příspěvekod iMohos » 23 dub 2009 07:11

PLs nikdo nic ??
MB:ASUS M4A77TD | CPU : AMD Phenom II X4 3,2GHz@4,12 + Noctua NH-D14 |GK : MSI GTX560Ti TwinFrozrII OC @925/2100/1850 | RAM : 2x2GB DDR3 Zeppelin 1300MHz + 2x2GB OCZ LV 1300MHz | HDD : SSD OCZ Vexter4 120GB + Segate Barracuda 7200.12 500GB + WD AASD 500GB | PwR : OCZ Fatal1ty 550W | Case : Fractal Define R3


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 6 hostů