paleidziant IE atsiranda dar 1 langas
wa pasijungiu neta (dial-up) ir matau dar 1 langa papildoma. adresas a.as-eu.falkag.net/dat/dlv/aslframe.html?dat=205545&xl=0&am p;yl=0&wrd=&prf = taciau to lango nesimato, jis lyg numinimizint’as ar panasiai ir jo restorint neimanoma. kas tai, po velniu, yra?
pravalyk kompa su ad-aware
kiek ji sveria ir kur gaut?
Geras adresas, triskart kreipiausi ir vis kitą reklamą meta Jei ad-aware nepadės, naudok hijackthis, čia instrukcija: [bite.lt/plius/bendravimas/klubai/2forum.showPosts/336884.46 1-=(271781286](http://www.bite.lt/plius/bendravimas/klubai/2forum.showPosts/336884.461-=(271781286) Ten bus tavo papildomas langas kaip ant delno, galėsi ištrinti. Naudok iškart, nedaug sveria, nežaisk su ad-aware.
atsisiunciau hijackthis ir jis man primete daug failu. ka man su jais dabar veikt??? paskaiciau manuala tai ten tipo ne visus trint reikia… ka daryt? (t.y. paleidus hijackthis)
kam ta savo loga,sverianti 3 mb cia patalpinai,Andriau?
Na vat naujametinė dovanėlė, rekordiškai adwarais apkrėstas kompas. Vien tik procesuose šnipai: istvc.exe sais.exe tsm2.exe ts2.exe SPBBsvc.e xe osspro xy rhnrnu optimizer nebijok - nekanda, jei išeis, nagrinėsiu toliau, pratęsiu žinutę.
Ištrink, ką paliksiu.
Kiek žmonių tiek nuomonių. Ištrink, restartuok, gali pakartoti logą. Kas dabar nustojo veikti, kas blogai, kas gerai?
Kiek žmonių tiek nuomonių. Ištrink, restartuok, gali pakartoti logą. Kas dabar nustojo veikti, kas blogai, kas gerai? Krutas logas, ar bent palikai jam ka nors kompe? …
Po hijacko operacijos shita langa turetu nebemesti, bet nors ir sveria - parsisiusk ad-aware. Dar pravalys visokiu brudu likuciu, tikrai nepakenks…
aciu
ka padarysi, kai pastaruosius puse metu newapinau tai negalvojau kad waperiai cia lankysis sorry… beje, cia naujas log’as: waperiams nepatariu skaityt
Logfile of HijackThis v1.99.0 Scan saved at 20:51:13, on 2004.12.31 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon .exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.ex e C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\ Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoo lsv.exe C:\Program Files\Norton AntiVirus
avapsvc.exe C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe C:\WINDOWS\System32
vsvc32.exe C:\WINDOW S\System32\svchost.exe C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\Syste m32\RUNDLL32.EXE C:\D-Tools\daemon.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\rhnr nu.exe C:\WINDOWS\System32\rundll32.exe C:\Program Files\ISTsvc\istsvc.exe C:\Program Files\HotKey\HotKey.exe C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe C:\Program Files\Messenger\msmsgs.exe C:\Documents and Settings\Andrius\Desktop\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = google.lt/ O2 - BHO: DownloadRedirect Class - {00000000-6CB0-410C-8C3D-8FA8D2011D0A} - C:\Program Files\iMesh\iMesh5\iMeshBHO.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM…\Run: [internat.exe] internat.exe O4 - HKLM…\Run: [SystemTray] SysTray.Exe O4 - HKLM…\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM…\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM…\Run: [nwiz] nwiz.exe /install O4 - HKLM…\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM…\Run: [DAEMON Tools-1033] “C:\D-Tools\daemon.exe” -lang 1033 O4 - HKLM…\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM…\Run: [ccApp] “C:\Program Files\Common Files\Symantec Shared\ccApp.exe” O4 - HKLM…\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe O4 - HKLM…\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM…\Run: [ў‰ёu0Ф@ФБФ ;]ъ"ь‰ьћiC:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\rhnrnu.exe O4 - HKLM…\Run: [ў‰ёu0Ф@ФБФ ;]ъ"ь‰ёu0C:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\rhnrnu.exe O4 - HKLM…\Run: [ў‰ёu0Ф@ФБФ ;БФ]ъ"ь‰ьC: \P rogram Files\ISTsvc\istsvc.exe] C:\WINDOWS\rhnrnu.exe O4 - HKLM…\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,NewDotNetStartup -s O4 - HKLM…\Run: [IST Service] C:\Program Files\ISTsvc\istsvc.exe O4 - Global Startup: HotKey Driver.lnk = C:\Program Files\HotKey\HotKey.exe O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html O8 - Extra context menu item: Download &all with DAP - C:\DAP\dapextie2.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra ‘Tools’ menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O10 - Hijacked Internet access by New.Net O10 - Hijacked Internet access by New.Net O10 - Hijacked Internet access by New.Net O10 - Hijacked Internet access by New.Net O10 - Hijacked Internet access by New.Net O23 - Service: Symantec Event Manager - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Norton AntiVirus Auto-Protect Service - Symantec Corporation - C:\Program Files\Norton AntiVirus
avapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe O23 - Service: NVIDIA Display Driver Service - NVIDIA Corporation - C:\WINDOWS\System32
vsvc32.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe kai kuriu failu netryne P.S. pastebejau kad kompas daug greiciau veikia
Trink ta pati pagal alsta ishvalyta loga. Reikes tau ad-aware parsipusti - ji su newnet lengvai susitvarkys. Dar newnet gali per addremove programs bandyti ishinstaliuoti, tik skaityk ydemiai …
Praskanuok su ad-aware, rasi lavasoft.de , rasi prie ad-aware personal. Vykdyk ad-aware nurodymus, ko nepanaikins, išnaikinsim su hijackthis, matome mes abu, kad kai kurios trintinos eilutės neišsitrynė.
Dar pabandyk trinti ka paliksiu:
pravaliau su HijackThis, Ad-Aware ir spekit? dingo Language toolbara’s nuo start’o!!! kaip tureciau pasielgt?