Forumi


Povratak   PC Ekspert Forum > Računala > Problemi > Softverski problemi
Ime
Lozinka

Odgovori
 
Uređivanje
Staro 31.12.2004., 14:29   #1
Black Lotus
CurSedPala
 
Black Lotus's Avatar
 
Datum registracije: Jan 2004
Lokacija: Bec
Postovi: 173
HijackThis LOg

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccSetMgr.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
D:\Programme\Zone Labs\ZoneAlarm\zlclient.exe
C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\UsrPrmpt.exe
C:\Programme\Java\jre1.5.0\bin\jusched.exe
D:\Programme\Logitech\MouseWare\system\em_exec.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\ctfmon.exe
D:\Programme\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Dokumente und Einstellungen\Tihi\Anwendungsdaten\uoou.exe
C:\WINDOWS\System32\??oolsv.exe
D:\Programme\Norton AntiVirus\navapsvc.exe
D:\Programme\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\WINDOWS\System32\nvsvc32.exe
D:\Programme\Norton AntiVirus\SAVScan.exe
C:\Programme\Gemeinsame Dateien\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Programme\Messenger\msmsgs.exe
C:\WINDOWS\System32\mdm.exe
C:\WINDOWS\System32\wuauclt.exe
D:\downloads\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.awjfsecbfydthdetrbppjlr.n...1KcXSnrlRg.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Programme\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {318E89B4-607D-7A91-513B-4936579FA9C5} - C:\WINDOWS\System32\mqaufbrb.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - D:\Programme\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - D:\Programme\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [Zone Labs Client] "D:\Programme\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Programme\Gemeinsame Dateien\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [ICQ Lite] D:\Programme\ICQLite\ICQLite.exe -minimize
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programme\Java\jre1.5.0\bin\jusched.exe
O4 - HKLM\..\Run: [mswspl] C:\DOKUME~1\Tihi\LOKALE~1\Temp\searchbarcash.exe
O4 - HKLM\..\Run: [0ezad4xvr] c:\dokumente und einstellungen\tihi\lokale einstellungen\temp\0ezad4xvr.exe
O4 - HKLM\..\Run: [ccApp] "C:\Programme\Gemeinsame Dateien\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] D:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [LDM] D:\Programme\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [Ducd] C:\Dokumente und Einstellungen\Tihi\Anwendungsdaten\uoou.exe
O4 - HKCU\..\Run: [Pkcqcr] C:\WINDOWS\System32\??oolsv.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Programme\Gemeinsame Dateien\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = D:\Programme\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = D:\Programme\Microsoft Office\Office10\OSA.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Sun Java Konsole - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programme\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Recherche-Assistent - {9455301C-CF6B-11D3-A266-00C04F689C50} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Reference 2001\EROProj.dll
O9 - Extra button: ICQ 4.1 - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Programme\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - D:\Programme\ICQLite\ICQLite.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: concept/design's onlineTV - {E98F480C-0F90-467F-A141-A0ECC207D1A3} - D:\Programme\onlineTV\onlineTV.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\MSMSGS.EXE
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.co...?1095258899125
__________________
Viarama U8568 Pro
P4 2.66@2.8Ghz
512 ddr
Maxtor 120 Gb
9600 XT 545/310
MX 510
Black Lotus je offline   Reply With Quote
Staro 01.01.2005., 19:23   #2
ćiber_manija
CyberSky
 
ćiber_manija's Avatar
 
Datum registracije: Feb 2004
Lokacija: Jastrebarsko
Postovi: 1,168
Koja je sad svrha kaj si postal ovo?
__________________
The šuma...
ćiber_manija je offline   Reply With Quote
Oglasni prostor
Oglas
 
Oglas
Staro 01.01.2005., 19:25   #3
Darth Revan
Premium
Moj komp
 
Darth Revan's Avatar
 
Datum registracije: Mar 2004
Lokacija: Ireland
Postovi: 1,565
Citiraj:
Originally posted by ćiber_manija
Koja je sad svrha kaj si postal ovo?
da mu Costa kaze sto nevalja i treba uklonit?
Darth Revan je offline   Reply With Quote
Staro 01.01.2005., 19:50   #4
Black Lotus
CurSedPala
 
Black Lotus's Avatar
 
Datum registracije: Jan 2004
Lokacija: Bec
Postovi: 173
tocno
__________________
Viarama U8568 Pro
P4 2.66@2.8Ghz
512 ddr
Maxtor 120 Gb
9600 XT 545/310
MX 510
Black Lotus je offline   Reply With Quote
Staro 02.01.2005., 18:23   #5
ćiber_manija
CyberSky
 
ćiber_manija's Avatar
 
Datum registracije: Feb 2004
Lokacija: Jastrebarsko
Postovi: 1,168
Onda je mogal napisati kaj hoće ili ja nisam vidio da je to napisao
__________________
The šuma...
ćiber_manija je offline   Reply With Quote
Staro 02.01.2005., 21:03   #6
Black Lotus
CurSedPala
 
Black Lotus's Avatar
 
Datum registracije: Jan 2004
Lokacija: Bec
Postovi: 173
sry zaboravio sam napisat
__________________
Viarama U8568 Pro
P4 2.66@2.8Ghz
512 ddr
Maxtor 120 Gb
9600 XT 545/310
MX 510
Black Lotus je offline   Reply With Quote
Staro 02.01.2005., 22:04   #7
Costa
Moderator
 
Costa's Avatar
 
Datum registracije: Aug 2003
Lokacija: Zagreb
Postovi: 3,193
Citiraj:
Originally posted by ćiber_manija
Onda je mogal napisati kaj hoće ili ja nisam vidio da je to napisao
Tebi je puno dosadno, jel?

@ Black Lotus:

Izgasi:
C:\Dokumente und Einstellungen\Tihi\Anwendungsdaten\uoou.exe
C:\WINDOWS\System32\??oolsv.exe

Ukloni:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.awjfsecbfydthdetrbppjlr....E1KcXSnrlRg.htm
O2 - BHO: (no name) - {318E89B4-607D-7A91-513B-4936579FA9C5} - C:\WINDOWS\System32\mqaufbrb.dll
O4 - HKLM\..\Run: [mswspl] C:\DOKUME~1\Tihi\LOKALE~1\Temp\searchbarcash.exe
O4 - HKLM\..\Run: [0ezad4xvr] c:\dokumente und einstellungen\tihi\lokale einstellungen\temp\0ezad4xvr.exe
O4 - HKCU\..\Run: [Ducd] C:\Dokumente und Einstellungen\Tihi\Anwendungsdaten\uoou.exe
O4 - HKCU\..\Run: [Pkcqcr] C:\WINDOWS\System32\??oolsv.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.c...b?1095258899125

a ovo jedino ako si sam promjenio (stavljeno ti je da ti Internet Explorer koristi lokalni proxy)
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
Costa je offline   Reply With Quote
Staro 03.01.2005., 10:29   #8
Black Lotus
CurSedPala
 
Black Lotus's Avatar
 
Datum registracije: Jan 2004
Lokacija: Bec
Postovi: 173
thx Costa
__________________
Viarama U8568 Pro
P4 2.66@2.8Ghz
512 ddr
Maxtor 120 Gb
9600 XT 545/310
MX 510
Black Lotus je offline   Reply With Quote
Oglasni prostor
Oglas
 
Oglas
Odgovori



Pravila postanja
Vi ne možete otvarati nove teme
Vi ne možete pisati odgovore
Vi ne možete uploadati priloge
Vi ne možete uređivati svoje poruke

BB code je Uključeno
Smajlići su Uključeno
[IMG] kod je Uključeno
HTML je Isključeno

Idi na