Prosim o kontrolu diky
Logfile of HijackThis v1.99.1
Scan saved at ¤W¤Č 02:27:58, on 2008/2/21
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\CCleaner\ccleaner.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Last.fm\LastFM.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\PROGRA~1\AVANTB~1\avant.exe
C:\Program Files\MSN Messenger\msvs.exe
C:\Program Files\Symantec AntiVirus\vpc32.exe
C:\Documents and Settings\Yip\Desktop\HijackThis.exe
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [IMJPMIG8.1] ; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [CJIMETIPSYNC] ; C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\CHANGJIE\CINTLCFG.EXE /CJIMETIPSync
O4 - HKLM\..\Run: [PHIMETIPSYNC] C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\PHONETIC\TINTLCFG.EXE /PHIMETIPSync
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [LogitechCommunicationsManager] ; "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] ; "C:\Program Files\Logitech\QuickCam10\QuickCam10.exe" /hide
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] ; "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [FreeRAM XP] "C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe" -win
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Last.fm Helper.lnk = C:\Program Files\Last.fm\LastFMHelper.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Ą[¨ěĽs§i¶Â¦Włć - C:\PROGRA~1\AVANTB~1\AddToADBlackList.htm
O8 - Extra context menu item: ¦b·sŞş Avant Browser ¶}±Ň - C:\PROGRA~1\AVANTB~1\OpenInNewBrowser.htm
O8 - Extra context menu item: ·j´M - C:\PROGRA~1\AVANTB~1\Search.htm
O8 - Extra context menu item: ¶}±Ň¦ąşô¶¤¤©Ň¦łŞşłsµ˛... - C:\PROGRA~1\AVANTB~1\OpenAllLinks.htm
O8 - Extra context menu item: Şýľ×©Ň¦ł¨Ó¦ŰłoÓ¦řŞAľąŞşąĎ¤ů - C:\PROGRA~1\AVANTB~1\AddAllToADBlackList.htm
O8 - Extra context menu item: °Ş«G«×ĽĐ°O - C:\PROGRA~1\AVANTB~1\Highlight.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: °Ń¦Ň¸ę®Ć - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra 'Tools' menuitem: °Ń¦Ň¸ę®Ć - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{89E32270-3E6F-46CC-BDE4-C40C1A6A981D}: NameServer = 205.252.144.28 218.102.23.77
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: iPod ŞA°Č (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
podivnejch znaku si nevsimejte, je to tak trochu cinskej hijackthis log =)
Prosim kontrola logu
- zlobyl
- Tvůrce článků
-
Level 4.5
- Příspěvky: 1760
- Registrován: duben 06
- Bydliště: Slaný
- Pohlaví:
- Stav:
Offline
- Kontakt:
Já tam osobně nic nevidím.Je nějaký problém, nebo je to jenom prevence?
Prosím, omluvte mou častou nepřítomnost na fóru.Bohužel jsou věci, které člověk nemůže ovlivnit a já tudíž nemám moc času, abych se sem dostal.Budu se snažit tady být vždy, když to bude možné, ale nic zaručit nemohu.Je mi to líto.
Mno tak Mwav...
Mon Sep 24 00:32:58 2007 => Offending Key found: HKLM\Software\magnet !!!
Mon Sep 24 00:32:58 2007 => Object "grokster Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:32:58 2007 => Offending Key found: HKLM\Software\tencent !!!
Mon Sep 24 00:32:58 2007 => Object "tencent qq Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:32:58 2007 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\gator.com !!!
Mon Sep 24 00:32:58 2007 => Object "gain.gator Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:32:58 2007 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\look2me !!!
Mon Sep 24 00:32:58 2007 => Object "look2me Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:32:59 2007 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\p3p\history\gator.com !!!
Mon Sep 24 00:32:59 2007 => Object "gain.gator Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:01 2007 => Offending Key found: HKCR\magnet !!!
Mon Sep 24 00:33:01 2007 => Object "grokster Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:09 2007 => Offending Folder found: C:\Documents and Settings\Yip\Favorites\film\adv
Mon Sep 24 00:33:09 2007 => Object "titanshield antispyware Corrupted Adware/Spyware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:10 2007 => Offending file found: C:\Documents and Settings\Yip\Favorites\łsµ˛\amazon.com.url
Mon Sep 24 00:33:10 2007 => System found infected with ezula Spyware/Adware (amazon.com.url)! Action taken: No Action Taken.
Mon Sep 24 00:33:21 2007 => Offending Folder found: C:\Documents and Settings\All Users\Application Data\cyberlink\powerdvd\ipower\tw\images\hd
Mon Sep 24 00:33:21 2007 => Object "wareout Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:27 2007 => Offending file found: C:\WINDOWS\system32\unrar.dll
Mon Sep 24 00:33:27 2007 => System found infected with savenow Adware (C:\WINDOWS\system32\unrar.dll)! Action taken: No Action Taken.
Mon Sep 24 00:33:39 2007 => Invalid Command Found in D\Shell\AutoRun\command: D:\LaunchU3.exe -a
Mon Sep 24 00:33:39 2007 => Offending Key found: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\D !!!
Mon Sep 24 00:33:39 2007 => Object "Possible Fujacks-type Worm" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:39 2007 => Invalid Command Found in {a42789fe-bc34-11db-934f-001676c5bdf3}\Shell\Autoplay\DropTarget\AutoRun\command: Iexplores.exe
Mon Sep 24 00:33:39 2007 => Offending Key found: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a42789fe-bc34-11db-934f-001676c5bdf3} !!!
Mon Sep 24 00:33:39 2007 => Object "Possible Fujacks-type Worm" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:39 2007 => Invalid Command Found in {cad595bc-1b55-11dc-9434-001060a9254f}\Shell\AutoRun\command: D:\LaunchU3.exe -a
Mon Sep 24 00:33:39 2007 => Offending Key found: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cad595bc-1b55-11dc-9434-001060a9254f} !!!
Mon Sep 24 00:33:39 2007 => Object "Possible Fujacks-type Worm" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:38:53 2007 => ***** Scanning complete. *****
Mon Sep 24 00:38:53 2007 => Total Objects Scanned: 30091
Mon Sep 24 00:38:53 2007 => Total Critical Objects: 13
Mon Sep 24 00:38:53 2007 => Total Disinfected Objects: 0
Mon Sep 24 00:38:53 2007 => Total Objects Renamed: 0
Mon Sep 24 00:38:53 2007 => Total Deleted Objects: 0
Mon Sep 24 00:38:53 2007 => Total Errors: 29
Mon Sep 24 00:38:53 2007 => Time Elapsed: 00:08:11
Mon Sep 24 00:38:53 2007 => Virus Database Date: 9/23/2007
Mon Sep 24 00:38:53 2007 => Virus Database Count: 422601
Mon Sep 24 00:38:53 2007 => Scan Completed.
Mon Sep 24 00:32:58 2007 => Offending Key found: HKLM\Software\magnet !!!
Mon Sep 24 00:32:58 2007 => Object "grokster Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:32:58 2007 => Offending Key found: HKLM\Software\tencent !!!
Mon Sep 24 00:32:58 2007 => Object "tencent qq Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:32:58 2007 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\gator.com !!!
Mon Sep 24 00:32:58 2007 => Object "gain.gator Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:32:58 2007 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\look2me !!!
Mon Sep 24 00:32:58 2007 => Object "look2me Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:32:59 2007 => Offending Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\p3p\history\gator.com !!!
Mon Sep 24 00:32:59 2007 => Object "gain.gator Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:01 2007 => Offending Key found: HKCR\magnet !!!
Mon Sep 24 00:33:01 2007 => Object "grokster Spyware/Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:09 2007 => Offending Folder found: C:\Documents and Settings\Yip\Favorites\film\adv
Mon Sep 24 00:33:09 2007 => Object "titanshield antispyware Corrupted Adware/Spyware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:10 2007 => Offending file found: C:\Documents and Settings\Yip\Favorites\łsµ˛\amazon.com.url
Mon Sep 24 00:33:10 2007 => System found infected with ezula Spyware/Adware (amazon.com.url)! Action taken: No Action Taken.
Mon Sep 24 00:33:21 2007 => Offending Folder found: C:\Documents and Settings\All Users\Application Data\cyberlink\powerdvd\ipower\tw\images\hd
Mon Sep 24 00:33:21 2007 => Object "wareout Adware" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:27 2007 => Offending file found: C:\WINDOWS\system32\unrar.dll
Mon Sep 24 00:33:27 2007 => System found infected with savenow Adware (C:\WINDOWS\system32\unrar.dll)! Action taken: No Action Taken.
Mon Sep 24 00:33:39 2007 => Invalid Command Found in D\Shell\AutoRun\command: D:\LaunchU3.exe -a
Mon Sep 24 00:33:39 2007 => Offending Key found: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\D !!!
Mon Sep 24 00:33:39 2007 => Object "Possible Fujacks-type Worm" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:39 2007 => Invalid Command Found in {a42789fe-bc34-11db-934f-001676c5bdf3}\Shell\Autoplay\DropTarget\AutoRun\command: Iexplores.exe
Mon Sep 24 00:33:39 2007 => Offending Key found: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a42789fe-bc34-11db-934f-001676c5bdf3} !!!
Mon Sep 24 00:33:39 2007 => Object "Possible Fujacks-type Worm" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:33:39 2007 => Invalid Command Found in {cad595bc-1b55-11dc-9434-001060a9254f}\Shell\AutoRun\command: D:\LaunchU3.exe -a
Mon Sep 24 00:33:39 2007 => Offending Key found: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cad595bc-1b55-11dc-9434-001060a9254f} !!!
Mon Sep 24 00:33:39 2007 => Object "Possible Fujacks-type Worm" found in File System! Action Taken: No Action Taken.
Mon Sep 24 00:38:53 2007 => ***** Scanning complete. *****
Mon Sep 24 00:38:53 2007 => Total Objects Scanned: 30091
Mon Sep 24 00:38:53 2007 => Total Critical Objects: 13
Mon Sep 24 00:38:53 2007 => Total Disinfected Objects: 0
Mon Sep 24 00:38:53 2007 => Total Objects Renamed: 0
Mon Sep 24 00:38:53 2007 => Total Deleted Objects: 0
Mon Sep 24 00:38:53 2007 => Total Errors: 29
Mon Sep 24 00:38:53 2007 => Time Elapsed: 00:08:11
Mon Sep 24 00:38:53 2007 => Virus Database Date: 9/23/2007
Mon Sep 24 00:38:53 2007 => Virus Database Count: 422601
Mon Sep 24 00:38:53 2007 => Scan Completed.
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 50 hostů